- Company Name
- Applause IT Recruitment
- Job Title
- Security Engineer
- Job Description
-
Job title: Security Engineer
Role Summary:
Lead and elevate the organization’s security posture by managing day‑to‑day security operations, developing and enforcing an information security strategy, and ensuring compliance with ISO 27001, SOC 2 Type II, and data‑protection regulations. Drive incident response, tool implementation, and security awareness across cloud and on‑premises environments.
Expectations:
- Deliver comprehensive security program leadership, aligning controls with strategic objectives.
- Act as the primary security liaison to senior leadership, providing actionable insights and metrics.
- Maintain a proactive, risk‑based approach to threat detection, mitigation, and continuous improvement.
Key Responsibilities:
- Design, update, and enforce information security policies, procedures, and frameworks.
- Manage daily security operations: access control, patch management, log analytics, and alert triage.
- Deploy and configure security controls in Azure and AWS (preferred), including SIEM, IAM/PAM, endpoint protection, and vulnerability management tools.
- Lead incident response, root‑cause investigations, and post‑incident remediation.
- Support compliance activities for ISO 27001, SOC 2 Type II, GDPR, HIPAA, and other data‑protection standards.
- Produce regular security reports, KPI dashboards, and executive briefings.
- Champion security awareness training and best‑practice adoption across the organization.
Required Skills:
- 5+ years of experience in information security, risk, or compliance.
- Deep knowledge of ISMS principles (ISO 27001) and audit support for SOC 2 Type II.
- Hands‑on expertise with SIEM, IAM/PAM, endpoint/anti‑malware, and vulnerability management solutions.
- Proficiency in cloud security practices (Azure/AWS).
- Strong understanding of data‑protection laws (GDPR, HIPAA).
- Excellent communication, stakeholder management, and problem‑solving abilities.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (preferred).
- Relevant certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Implementer/Lead Auditor highly regarded.
Knutsford, United kingdom
Hybrid
Mid level
29-10-2025