A leading cybersecurity firm in Greater London seeks an experienced security engineer to leverage data sources for threat detection and implement high-fidelity detection mechanisms. Candidates should have a degree in computer science or cyber security, along with 3 years of security engineering experience, preferably in finance. Key qualifications include creating detections in query languages, possessing security certifications, and familiarity with modern security tooling. The role requires a proactive team player capable of enforcing security policies within a dynamic environment.
Qualifications
3 years’ experience working in a security engineering role, financial industry experience preferred.
Experience creating detections in modern query languages.
Possesses security certifications such as Security+, OSCP, CISSP, CEH, GCIA, GCIH.
Responsibilities
Leverage multiple data sources to identify evolving threats.
Create and operate high-fidelity detection mechanisms.
Own, operate, and automate detection and response workflows.
Skills
Threat Hunting
Detection Engineering
Playbook Creation
Team Player
Technical Prowess
Security Ambassador
Threat Intel
Operational Excellence
Education
Bachelor or master's degree in computer science or cyber security
Tools
KQL
SQL
SPL
PowerShell
Python
Active Directory
Microsoft 365
Linux
MacOS
Job description
Principal Responsibilities
Threat Hunting – The ability to leverage multiple data sources to identify modern evolving threats and develop new detection and response approaches.
Detection Engineering – Creation and operation of high-fidelity detections mechanisms that drive efficient, effective and repeatable response.
Playbook Creation – Own, operate and automate detection and response workflows, that enable the team to focus on strategic objectives.
Lead Information Security response activities for the firm.
Team Player – Ability to work across business and technology teams to deliver positive outcomes across the firm.
Technical Prowess – Comfortable explaining complex technology and information security related concepts to a wide range of stakeholders.
Security Ambassador - Enforce security policies and procedures by administering and monitoring appropriate systems, events and answering stakeholder queries.
Threat Intel - Actively monitor new and emerging security and privacy related technologies, trends, issues, and solutions and assess their applicability to Millennium key business initiatives and business strategies.
Operational Excellence – Ensure Millennium Information Security capabilities remain fit for purpose and evolve to meet the changing threat landscape.
Qualifications/Skills Required
Bachelor or master’s degree in computer science or cyber security with strong IT background or equivalent demonstrable experience.
3 years’ experience working in a security engineering role, financial industry experience preferred.
Experience in creating detections in modern query languages (KQL, SQL, SPL).
Experience with modern security tooling across security domains; network, endpoint, data, identity and cloud.
Experience in standard enterprise technology stack, Active Directory, Entra, Group Policy, Intune, DNS, TCP/IP, PKI, Microsoft 365, Windows, Linux, MacOS, etc.
Ability to handle sensitive and/or confidential materials with appropriate discretion.
Required scripting, development and automation skills using PowerShell or Python and proficient development tools.
Experience in OSINT, Threat hunting and analysing malicious emails.
Able to prioritize in a fast moving, high pressure, constantly changing environment