We are in search for multiple Cyber Security Engineers with varying technical backgrounds. Required to work at our customer site in Huntingdon, Cambridgeshire with occasional travel to other UK sites. In this role, you will work within a team of engineers to ensure that the customer sites maintain a strong cyber security posture.
Responsibilities
- Develop creative solutions to complex technical issues and problems.
- Work with the engineering teams to ensure systems remain at the required security posture against baseline requirements.
- Work with the Security Monitoring engineering team to ensure logs are forwarded to the SIEM capability.
- Work with the customer and appropriate agencies to develop new policies, design processes, and procedures, and develop technical designs.
- Assess system vulnerabilities, implement risk mitigation strategies, validate secure systems, and test security products and systems to detect security weakness.
- Maintain and support security enforcing functions.
Qualifications & Experience
- Experience working in MOD or Home Office project environments.
- Strong knowledge of network and system security, including firewalls, IDS/IPS, micro-segmentation, and host security.
- Hands‑on experience with the following security products: Trellix, Ivanti, ClearSwift, Yubikey.
- Understanding of secure coding practices and common vulnerabilities (OWASP Top 10, SANS Top 25).
- Expertise in identity and access management (IAM), including RBAC, ABAC, JWT and cookie‑based authentication.
- Incident detection and response in MOD environments.
- Security compliance and regulatory frameworks (e.g., NIST, CIS Benchmarks).
- Experience working with Kubernetes at an administrative level.
Soft Skills
- Strong leadership and mentoring abilities.
- Effective communication with development, operations, and security teams.
- Ability to advocate for security best practices in a DevOps culture.
Desirable Skills – Containerisation Security
- Expertise in Kubernetes security (e.g., RBAC, network policies, pod security standards, secrets management).
- Knowledge of container runtime security (e.g., container escapes, rootless containers, sandboxing).
- Image security best practices, including scanning, signing, and provenance verification.
- Secure deployment patterns using Tanzu & Kubernetes.
- Runtime security monitoring.
DevSecOps & CI/CD Security
- Secure CI/CD pipeline design with security testing using Git and SonarQube.
- Implementation of Infrastructure as Code (IaC) security (e.g., Terraform, Ansible).
- Secrets management in CI/CD pipelines using Vault or Kubernetes Secrets.
- Security automation and policy enforcement using tools like GitHub Actions, GitLab CI and Jenkins.
Cloud & Infrastructure Security
- Strong knowledge of cloud security principles in a containerised environment.
- Kubernetes security posture management (KSPM) using tools like Trivy.
- Secure ingress/egress controls, service mesh security (e.g., Istio).
- Encryption strategies for data at rest, in transit, and in use.
- Network security best practices for Tanzu container networking (e.g., NSX, Rancher).
- Compliance monitoring and security auditing for cloud-native environments.
Automation & Scripting
- Scripting skills in Python, PowerShell for security automation.
- API security knowledge (e.g., OAuth, JWT, API gateways, rate limiting).
- Experience with Security as Code for automated policy enforcement.
Are you ready to make an impact? Begin your journey of a flourishing and meaningful career, share your CV with us today!
Salary: £47,600.00 – £61,000.00
Location: Huntingdon, Cambridgeshire (customer site)