Security & Infrastructure Engineer

Amplity

Chalfont St. Peter

Hybrid

GBP 65,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid working arrangement

Job summary

Amplity is seeking a hands-on Security & Infrastructure Engineer to support cloud, identity, endpoint and security operations. You will work across Microsoft cloud security, endpoint management, vulnerability management and compliance activities, strengthening security posture while keeping core services secure and reliable.

Role involves occasional out-of-hours patching and maintenance. Travel to the Chalfont St Peter office may be required, with a hybrid working arrangement and home-office

Qualifications

  • Hands-on experience with Microsoft Entra ID, Microsoft 365 administration and device management.
  • Experience across EDR platforms, vulnerability management and incident response.
  • Ability to troubleshoot security and infrastructure issues across cloud, identity and endpoint environments.
  • Familiarity with ISO 27001, SOC 2 and related audits.

Responsibilities

  • Manage Microsoft Entra ID (users, groups, apps) and identity-related configurations.
  • Support CA, MFA, SSO and identity security controls.
  • Assist with privileged access management and access reviews.
  • Patch management and maintenance, including out-of-hours work as needed.
  • Support Azure administration and cloud security initiatives.
  • Contribute to documentation, runbooks and security procedures.

Skills

Microsoft Entra ID
Microsoft 365
Intune
EDR
PowerShell
ISO 27001
SOC 2
NIST framework
Vulnerability management
Cloud security

Tools

Azure
Microsoft Defender
MDM

Job description

Business Unit: Corporate - Information Technology

Reports to: Sr. Manager, Global Security & Infrastructure

Location: Home office based with a hybrid working arrangement. Employee must be within a commutable distance of our office in Chalfont St Peter, Buckinghamshire, with travel to the office required when necessary.

About the Role

We are seeking a hands-on Security & Infrastructure Engineer to support and improve our cloud, identity, endpoint and security operations capabilities.

This is not a pure SOC role. The successful candidate will work across Microsoft cloud security, endpoint management, vulnerability management, infrastructure support and compliance activities, helping to strengthen the organisation's security posture while ensuring core services remain secure, reliable and well managed.

This position includes occasional out-of-hours patch management and maintenance activities.

Key Responsibilities
Identity & Access Management
  • Administer Microsoft Entra ID, including users, groups, enterprise applications and identity-related configurations.
  • Support Conditional Access, MFA, SSO and identity security controls.
  • Assist with identity governance, access reviews, privileged access controls and user lifecycle processes.
  • Troubleshoot authentication, access and account-related issues across Microsoft cloud services.
  • Administer Microsoft Intune and Mobile Device Management (MDM) policies across corporate devices.
  • Manage device compliance, configuration profiles, security baselines and application deployment.
  • Support endpoint lifecycle activities, including enrolment, configuration, troubleshooting and remediation.
  • Work closely with IT and security colleagues to improve endpoint hardening and operational consistency.
  • Perform server and endpoint patching, including out-of-hours maintenance where required.
Security Operations & EDR
  • Support the management and optimisation of Endpoint Detection and Response (EDR) platforms, including Microsoft Defender and similar technologies.
  • Investigate security alerts, validate findings and assist with incident response activities.
  • Contribute to improvements in monitoring, alert handling, endpoint protection and security control effectiveness.
  • Maintain clear documentation for operational processes and security procedures.
Vulnerability Management
  • Support vulnerability scanning, triage, prioritisation and remediation tracking.
  • Work with infrastructure, application and business stakeholders to drive timely remediation of security weaknesses.
  • Validate remediation actions and help maintain accurate vulnerability reporting.
  • Support external penetration testing activities and track remediation actions through to completion.
Cloud, Microsoft 365 & Infrastructure
  • Support Azure administration and cloud security improvement initiatives.
  • Assist with Microsoft 365 administration, security configuration and operational support.
  • Contribute to infrastructure projects covering endpoints, identity, networking, resilience and platform improvements.
  • Provide technical escalation support for security and infrastructure-related issues.
  • Assist with ISO 27001, SOC 2 and similar audit and compliance activities.
  • Support evidence collection, access reviews, control validation and audit remediation actions.
  • Contribute to security standards, procedures, operational checklists and technical documentation.
  • Support vendor security reviews and third-party risk management activities where required.
  • Use PowerShell and other scripting approaches to automate repeatable operational tasks.
  • Identify opportunities to simplify processes, improve control visibility and reduce manual effort.
  • Create and maintain technical documentation, runbooks and knowledge articles.
  • Support ongoing improvements in security maturity, operational resilience and service reliability.
Qualifications & Experience
  • Previous experience in a Security Engineer, Infrastructure Engineer, Systems Administrator or similar technical role.
  • Strong working knowledge of Microsoft Entra ID and Microsoft 365 administration.
  • Hands-on experience with Microsoft Intune, MDM and endpoint management.
  • Experience working with EDR or endpoint security platforms.
  • Experience supporting vulnerability management processes and remediation tracking.
  • Good understanding of cloud, endpoint, identity and access management concepts.
  • Ability to troubleshoot technical issues across security and infrastructure environments.
  • Strong communication skills and the ability to work effectively with both technical and non-technical stakeholders.
  • Strong documentation skills and a practical, process-driven approach to operational improvement.
  • Azure administration or cloud security experience.
  • Networking knowledge, including firewalls, VPNs, DNS, routing and secure remote access.
  • PowerShell scripting or automation experience.
  • Exposure to ISO 27001, SOC 2, Cyber Essentials, NIST or similar security frameworks.
  • Penetration testing, vulnerability assessment or remediation experience.
  • Experience supporting audits, evidence collection, access reviews or security questionnaires.
  • Relevant certifications such as Security+, AZ-104, SC-300, SC-200, MD-102, CISSP Associate or similar.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Sanderson • Greater London

On-site
GBP 70,000 - 90,000
Junior Cyber Security Engineer
Junior Cyber Security Engineer

Broaden • Greater London

Hybrid
GBP 90,000 - 120,000
IT Infrastructure Security Engineer
IT Infrastructure Security Engineer

Tria • City Of London

Hybrid
GBP 60,000 - 65,000
Infrastructure & Security Engineer
Infrastructure & Security Engineer

Mobilus Limited • City Of London

On-site
GBP 55,000 - 75,000
Security Engineer
Security Engineer

identifi Global Resources • Milton Keynes

Hybrid
GBP 63,000 - 77,000
Hybrid work model
Annual bonus
Private medical cover
+3
Cyber Security Engineer
Cyber Security Engineer

Digital Waffle • Manchester

On-site
GBP 45,000 - 65,000
Infrastructure & Security Engineer
Infrastructure & Security Engineer

Mobilus Ltd • City Of London

On-site
GBP 55,000 - 85,000
Cyber Security Engineer
Cyber Security Engineer

Marks Sattin • England

On-site
GBP 60,000 - 80,000
Cyber Security Engineer (Identity & Cloud)
Cyber Security Engineer (Identity & Cloud)

Xcede Recruitment Solutions • Warrington

On-site
GBP 60,000 - 75,000
Information Security Engineer
Information Security Engineer

Digital Gurus • Burton upon Trent

On-site
GBP 40,000 - 60,000
33 days' holiday
On-site canteen
Golf course access