Job Search and Career Advice Platform

Enable job alerts via email!

Senior Security Engineer

Eligo Recruitment Ltd

Greater London

Hybrid

GBP 70,000 - 90,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading UK retail organization is seeking a skilled Senior Security Engineer to design and implement security controls within a hybrid environment. The ideal candidate will have 5-10 years of experience in cloud security, particularly with Azure, and a strong understanding of Zero Trust principles. Responsibilities include managing threat detection and incident response, compliance support, and collaborating on network security. This role offers a challenging opportunity in a dynamic digital transformation setting.

Qualifications

  • 5‑10 years in cloud or infrastructure security roles.
  • Deep experience with Defender for Cloud and Sentinel.
  • Strong knowledge of Microsoft Entra ID and Active Directory.
  • Hands-on experience with vulnerability management platforms.
  • Practical understanding of security compliance frameworks.

Responsibilities

  • Design and implement security controls across a hybrid environment.
  • Manage the certificate lifecycle and implement data protection strategies.
  • Operate the SIEM/SOAR stack for threat detection and incident response.
  • Support audit readiness for ISO 27001 and PCI DSS.
  • Collaborate with Network Engineering for secure firewall configurations.

Skills

Cloud security experience
Azure security configurations
Hands-on EDR experience
Identity security knowledge
Understanding of Zero Trust architecture

Education

Bachelor's degree in Computer Science

Tools

Microsoft Sentinel
Defender for Cloud
PowerShell
Terraform
Job description
About the Role

We are exclusively partnered with a leading UK retail organisation that is currently undergoing a significant digital transformation. We are seeking a technical and hands‑on Senior Security Engineer to design, implement, and operate robust security controls across a complex hybrid environment.

Key Responsibilities
  • Hybrid Architecture & Governance: Design and implement security controls across Azure, on‑prem servers, and SaaS applications while maintaining hardening standards based on CIS and NIST benchmarks.
  • Identity & Access Security: Define standards for Entra ID and Active Directory, overseeing requirements for Conditional Access, MFA, SSO, and PIM.
  • Threat Detection & Incident Response: Own and operate the SIEM/SOAR stack, including Microsoft Sentinel and Defender XDR, to develop detection rules and support forensic investigations.
  • Infrastructure Hardening: Enforce secure baselines across virtualised environments (VMware/Hyper‑V), Windows Servers, and Azure IaaS workloads.
  • Data Protection: Manage the certificate lifecycle (PKI/AD CS) and implement data classification and DLP strategies using Microsoft Purview.
  • Cloud Security Posture: Manage Azure Landing Zone security and connectivity, collaborating with Network Engineering to validate secure firewall and VPN configurations.
  • Compliance & Risk: Support audit readiness for ISO 27001, PCI DSS, and Cyber Essentials Plus, ensuring all remediation progress is tracked and documented.
Essential Skills & Experience
  • Experience: 5‑10 years in cloud or infrastructure security roles.
  • Azure Expertise: Deep experience with Defender for Cloud, Sentinel, and Azure security configurations.
  • Identity Mastery: Strong knowledge of Microsoft Entra ID, AD DS, RBAC, and hybrid identity security.
  • Technical Proficiency: Hands‑on experience with EDR (MDE), CSPM tools, and vulnerability management platforms.
  • Security Principles: Practical understanding of Zero Trust architecture and secure‑by‑design methodologies.
  • Compliance Knowledge: Familiarity with PCI DSS, NIST, and ISO 27001 frameworks.
  • Desirable Skills:
    • Awareness of AWS security fundamentals (Guard Duty, KMS, IAM Identity Centre).
    • Experience with Infrastructure as Code (IaC) security (Terraform, Bicep) and DevSecOps practices.
    • Scripting for automation using PowerShell or Python.
Qualifications & Soft Skills
  • Education: Bachelor's degree in Computer Science, Information Security, or equivalent experience.
  • Certifications: Preferred certifications include AZ‑500, SC‑300, SC‑100, or CISSP/CCSP.
  • Attributes: An analytical mindset with the ability to remain composed under pressure during security incidents.
  • Collaboration: Excellent communication skills to engage with diverse stakeholders across the technology organisation.

Eligo Recruitment is proud to be an equal opportunity employer dedicated to fostering diversity and creating an inclusive and equitable environment for employees and applicants. We actively celebrate and embrace differences, including but not limited to race, colour, religion, sex, sexual orientation, gender identity, national origin, veteran status, and disability. We encourage applications from individuals of all backgrounds and experiences and all will be considered for employment without discrimination.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.