Security Operations Technician

CMS Distribution

Castleford

Hybrid

GBP 42,000 - 62,000

Full time

38 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

CMS Distribution is seeking a Security Operations Technician to join the Cyber Security Team in the United Kingdom. You will help manage security platforms, improve controls and support vulnerability management, endpoint security and compliance initiatives.

Working with IT Operations, you will analyse security data, coordinate remediation, implement improvements and help maintain certifications and best practices across governance frameworks.

Qualifications

  • Experience in vulnerability management, including assessment and remediation tracking.
  • Knowledge of security hardening principles and endpoint security controls.
  • Ability to analyse security data and identify risks and operational trends.
  • Understanding of governance, regulatory requirements and accreditation frameworks.
  • Experience using security tools such as Microsoft Defender to monitor and remediate risks.

Responsibilities

  • Monitor changes in governance and accreditation requirements to maintain compliance.
  • Own vulnerability management activities, including assessment and remediation tracking.
  • Manage workloads and prioritise risks to ensure timely resolution.
  • Create and manage change requests through the change enablement process.
  • Support problem management by driving root-cause resolution.
  • Apply risk management framework and remediation actions.
  • Maintain security hardening standards and baseline configurations.
  • Analyse security data to identify vulnerabilities and operational risks.
  • Identify opportunities to automate remediation and monitoring.
  • Develop and implement new security capabilities to improve posture.
  • Manage supplier relationships to ensure service continuity.

Skills

Vulnerability management
Security hardening
Endpoint security
Security governance
Security data analysis
Incident management
Change management
Risk management

Tools

Microsoft Defender

Job description

Select how often (in days) to receive an alert:

The Security Operations Technician plays a key role within the Cyber Security Team, supporting the ongoing management, improvement and effectiveness of the organisation's security platforms and controls.

This position is responsible for maintaining and enhancing the organisation's security posture through the administration of our security technologies, supporting vulnerability management, endpoint security, security hardening and compliance initiatives.

The role involves analysing security data, prioritising and coordinating remediation activities, implementing security improvements, and ensuring security controls remain effective against evolving threats and business requirements.

Working closely with IT Operations Team, the Security Operations Technician will contribute to the achievement and retention of security standards, accreditations and best practice security frameworks through the continuous improvement of security controls, configurations and operational processes.

The role will also support the development and enhancement of security platforms, helping to reduce organisational risk, strengthen cyber resilience and enable secure business growth.

Role Responsibilities
  • Monitor changes in governance, legislation and accreditation requirements, assessing impact and supporting updates to policies, procedures and controls to maintain compliance.
  • Own vulnerability management activities, including assessment, prioritisation, remediation tracking and reporting, ensuring risks are reduced and compliance requirements are maintained.
  • Manage and prioritise workloads, proactively identifying risks to contractualy and legislative obligation, taking corrective action to ensure timely resolution.
  • Create and manage change requests, ensuring changes are properly documented, reviewed, approved and implemented through the change enablement process.
  • Support problem management activities by driving resolution of underlying issues, reducing service impact and improving user experience.
  • Apply the organisation's risk management framework by identifying risks, maintaining risk records and taking ownership of remediation actions.
  • Apply, maintain and validate security hardening standards, endpoint security controls and security baselines to ensure systems remain secure and compliant.
  • Analyse security data, metrics and trends to identify vulnerabilities, hardening opportunities and operational risks, coordinating remediation activities as required.
  • Adhere to security policies, standards and operational procedures, ensuring activities remain aligned to governance and compliance requirements.
  • Identify opportunities to automate vulnerability remediation, reporting and security monitoring activities.
  • Develop and implement new security capabilities, configurations and controls to improve organisational security posture.
  • Contribute to continuous service improvement by identifying performance gaps, recommending enhancements and supporting the implementation of improvements.
  • Manage supplier relationships, ensuring contractual obligations and service level agreements are met and issues are resolved to maintain service continuity.
Additional Responsibilities
Skills & Personal Attributes
  • Experience of vulnerability management activities, including vulnerability assessment, risk prioritisation, remediation tracking and reporting.
  • Knowledge of security hardening principles, endpoint security controls and security baselines across Windows and enterprise environments.
  • Ability to analyse security data, metrics and trends to identify vulnerabilities, operational risks and opportunities for security improvement.
  • Understanding of cyber security governance, regulatory requirements and accreditation frameworks, with the ability to support compliance activities.
  • Experience using Microsoft Defender and other security tools to monitor, investigate and remediate security risks.
  • Working knowledge of change, problem and incident management processes within an IT service management environment.
  • Ability to assess, document and manage security and operational risks, taking ownership of remediation activities where required.
  • Experience working with third-party suppliers and support partners to resolve issues and maintain service continuity.
  • Strong analytical and troubleshooting skills, with the ability to identify root causes and implement effective solutions.
  • Excellent organisational skills with the ability to manage workloads, prioritise tasks and meet agreed service levels.
  • Strong written and verbal communication skills, with the ability to document findings, recommendations and remediation activities clearly.
  • Relevant cyber security, Microsoft or IT service management certifications, or equivalent demonstrable experience in a related role.

CMS believes that a diverse and inclusive workforce enriches and is integral to the success of our company. We value diverse opinions and perspectives, and therefore welcome candidates from all backgrounds including but not limited to, ethnicity, gender, age, nationality, culture, religious beliefs, sexual orientation and neuro-diversity.

Registered in England No. 2214562 | VAT No. GB125478505 | UK WEEE Reg No. WE/JB0057TS/PRO | IE WEEE Reg No. IE/00190/WB

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SecOps Engineer - M365 Security, Intune, Purview
SecOps Engineer - M365 Security, Intune, Purview

Areti Group | B Corp™ • Greater London

Hybrid
GBP 70,000 - 110,000
Technology Department - Junior Blue Team Analyst
Technology Department - Junior Blue Team Analyst

CACI Limited • Greater London

Hybrid
GBP 26,000 - 38,000
Security Analyst
Security Analyst

Doherty Associates • City Of London

On-site
GBP 35,000 - 52,000
Performance bonus
34 days annual leave
Private medical insurance
+2
Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Security Analyst
Security Analyst

Doherty Associates • Greater London

On-site
GBP 30,000 - 42,000
34 days annual leave
Private medical insurance
Company Pension
+1
Senior Security Operations Centre Analyst
Senior Security Operations Centre Analyst

Sopra Steria • Farnborough

On-site
GBP 52,000 - 64,000
25 days annual leave
Health cash plan
Life assurance
+2
Security Business Partner – IT Operations
Security Business Partner – IT Operations

A2Dominion • City Of London

Hybrid
GBP 70,000 - 76,000
Holiday entitlement
Pension (8%)
Flexible working
+1
Security Analyst
Security Analyst

Doherty • Greater London

Hybrid
GBP 32,000 - 42,000
Basic salary + performance bonus
34 days annual leave
Private medical insurance
+3
Senior Security Consultant
Senior Security Consultant

ITC Secure • Greater London

Hybrid
GBP 70,000 - 90,000
25 days annual leave
Private health insurance
Enhanced maternity and paternity leave
+2
Security Operations Specialist
Security Operations Specialist

Cyber UK • Greater London

Hybrid
GBP 60,000 - 90,000
Hybrid working model
Competitive salary
Private medical insurance
+3