security engineer in legal services

Enfint

Greater London

On-site

GBP 70,000 - 110,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Kennedys is seeking a skilled IT Security professional to maintain and optimise its security platform from the London base. The role involves configuring EDR policies, tuning SIEM rules, and monitoring threats across the firm’s IT landscape.

You will lead incident response, perform root cause analyses, and interact with third-party testers to remediate vulnerabilities while coordinating with IAM, email security and firewall teams. Flexibility for remote work is noted.

Qualifications

  • Experience managing EDR platforms and tuning SIEM rules.
  • Proficiency with Microsoft Defender ATP, Azure Security Centre, Entra ID, Intune, and Conditional Access.
  • Experience with Palo Alto Prisma or similar next-gen firewalls.
  • Knowledge of Mimecast, Exchange Online, DMARC and email DLP tools.
  • Experience with IAM including CyberArk, Entra ID, SSO, MFA and PAM.
  • Familiarity with SIEM tools (Sentinel, Exabeam, Splunk).
  • Vulnerability management with Tenable or similar tools.
  • Scripting/automation experience (PowerShell) and KQL.
  • Experience with DLP solutions such as MS Purview Compliance Manager.
  • Industry certifications (CISSP, CPSA, etc) are a plus.

Responsibilities

  • Maintain and optimise the security platform, including configuring EDR policies and tuning SIEM rules.
  • Monitor threats, analyse alerts, respond to incidents, conduct vulnerability scans and remediation.
  • Lead incident response, root cause analysis, and develop incident-handling runbooks.
  • Oversee WAF, DDoS, VPN, and perimeter firewalls.
  • Manage email and web security gateways and security certificates.
  • Perform security scanning to reduce operational risk and manage IAM/CA controls.
  • Collaborate with penetration testers to identify and remediate vulnerabilities.
  • Create reports on threats, incidents and responses; document configurations and runbooks.

Skills

EDR platforms
SIEM tuning
Microsoft Security
Next-gen firewalls
Email security
IAM solutions
SIEM tools
Vulnerability management
Scripting (PowerShell)
KQL
Data Loss Prevention
Security certifications (CISSP CPSA,等)

Tools

Palo Alto Prisma
Mimecast
Exchange Online
DMARC
Tessian
CyberArk
Entra ID
SSO
MFA
PAM
Sentinel
Exabeam
Splunk
Tenable
PowerShell

Job description

Описание:

Kennedys provides legal, legal services, and alternative dispute resolution services. Its IT team maintains technology systems, security, and managed bespoke and off-the-shelf applications across the firm.

Задачи:
  • Maintain and optimise the security platform, including configuring EDR policies, tuning SIEM rules, and optimising system performance
  • Monitor security threats, analyse alerts, respond to incidents, conduct vulnerability scans, and support remediation and risk mitigation
  • Lead and participate in incident response, conduct root cause analysis, and develop incident-handling runbooks
  • Oversee WAF, DDoS, VPN, and perimeter firewalls
  • Manage email and web security gateways
  • Maintain security certificates, encryption keys, and IDS/IPS systems
  • Perform security scanning and vulnerability management to reduce operational risk
  • Work with network engineers to implement posture management, ICE/NAC segmentation, lateral movement controls, and firewalls
  • Work with the Endpoints team to administer MFA, SSO, PAM, MDM/MAM, and Conditional Access
  • Manage Identity and Access Management solutions
  • Develop and deploy automation tools and scripts for common IT Security Operations tasks
  • Collaborate with third-party penetration testers to identify, prioritise, and remediate security vulnerabilities
  • Create reports on detected threats, incidents, and response actions
  • Document configurations, processes, and runbooks
  • Keep informed about cybersecurity trends, emerging threats, and updates
  • Comply with relevant legal and regulatory obligations, including Solicitors Regulation Authority standards, regulations, and principles
Требования:
  • Experience managing EDR platforms, configuring EDR policies, and tuning SIEM
  • Experience with Microsoft Security, including Defender ATP, Azure Security Centre, Entra ID, Intune, and Conditional Access
  • Experience configuring and managing next-generation firewalls, preferably Palo Alto Prisma or similar
  • Experience with email security, including Mimecast, Exchange Online, DMARC, and email DLP such as Tessian or equivalent
  • Experience with Identity and Access Management, including CyberArk, Entra ID, SSO, MFA, and PAM solutions
  • Experience with SIEM tools such as Sentinel, Exabeam, Splunk, or equivalent
  • Experience with vulnerability management using Tenable or equivalent enterprise toolsets
  • Experience with scripting and automation, preferably PowerShell, and KQL or similar
  • Experience with Data Loss Prevention solutions, including MS Purview Compliance Manager
  • Nice to have: CISSP, CREST Practitioner Security Analyst (CPSA), Palo Alto Networks Certified Security Operations Professional, CEH, OSCP, SANS, or ISACA certifications
Условия:
  • Work is based in Greater London, England, United Kingdom; The global IT team works flexibly and remotely
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

security engineer for AI adoption
security engineer for AI adoption

Enfint • Greater London

On-site
GBP 90,000 - 130,000
Benefits package
IT Security Operations & Assurance Analyst
IT Security Operations & Assurance Analyst

Oliver James Associates Ltd. • Greater London

Hybrid
GBP 60,000 - 90,000
security engineer cyber insurance
security engineer cyber insurance

Enfint • Greater London

Hybrid
GBP 90,000 - 130,000
Information Security Analyst
Information Security Analyst

Herbert Smith Freehills Kramer • City Of London

On-site
GBP 60,000 - 80,000
Information Security Analyst
Information Security Analyst

Herbert Smith Freehills Kramer • City Of London

On-site
GBP 40,000 - 60,000
Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Cyber Security Analyst
Cyber Security Analyst

Elite Cloud Care LTD. • Greater London

Hybrid
GBP 50,000 - 65,000
Comprehensive health and dental保险
security engineer
security engineer

Enfint • Greater London

On-site
GBP 65,000 - 90,000
Security Analyst
Security Analyst

Doherty • Greater London

Hybrid
GBP 32,000 - 42,000
Basic salary + performance bonus
34 days annual leave
Private medical insurance
+3
Security Analyst
Security Analyst

Doherty Associates • City Of London

On-site
GBP 35,000 - 52,000
Performance bonus
34 days annual leave
Private medical insurance
+2