- Company Name
- RedRock Resourcing
- Job Title
- Cyber Security Engineer x 2 – Bristol – New (REF46)
- Job Description
-
**Job Title:**
Cyber Security Engineer (2 positions)
**Role Summary:**
Hands‑on, consultative role responsible for designing, implementing, and maintaining security controls across hybrid on‑premises and Microsoft Azure environments. Works closely with infrastructure engineers, architects, and project/program managers to embed security throughout the delivery lifecycle, ensure compliance with internal policies and external regulations, and support incident response.
**Expectations:**
- Obtain SC security clearance (eligible).
- Apply 5+ years of cyber/infrastructure security experience to secure Microsoft‑centric estates.
- Align solutions with frameworks such as NIST, CIS, ISO 27001, and Cyber Essentials Plus.
- Produce clear security artefacts and drive consistent adoption of hardening standards.
**Key Responsibilities:**
- Design, implement, and optimise security controls for hybrid/on‑prem Microsoft and Azure environments.
- Define and enforce hardening baselines (CIS Benchmarks, Microsoft Security Baselines).
- Conduct threat modelling, risk assessments, and security validation/UAT; assist incident response.
- Maintain Software Bill of Materials (SBOM) for vulnerability management and supply‑chain assurance.
- Integrate and enhance security monitoring, logging, and alerting (SIEM, threat detection).
- Create and maintain security documentation: designs, risk assessments, mitigation plans, runbooks, and operational procedures.
- Collaborate with project/program managers and stakeholders to ensure effective control implementation.
**Required Skills:**
- SC‑eligible status.
- 5+ years in cybersecurity or infrastructure security.
- Strong technical knowledge of Microsoft and Azure (cloud and on‑prem).
- Network security fundamentals (firewalls, segmentation, secure remote access).
- IAM expertise (MFA, RBAC, conditional access) and data protection (classification, encryption).
- Experience with security frameworks (NIST, CIS Controls, ISO 27001, Cyber Essentials Plus).
- Proficiency in SIEM, logging, alerting, and vulnerability management tools.
- Ability to define, document, and enforce security configurations across estates.
- Experience producing security artefacts (risk assessments, hardening standards, runbooks).
- Understanding of security automation (SOAR) and scripting/automation capabilities.
**Required Education & Certifications:**
- Relevant degree (e.g., Computer Science, Information Security) – desirable but not mandatory.
- ITIL Foundation certification – desirable.
- Security or cloud security certifications (e.g., CISSP, CISM, Azure Security Engineer Associate, CCSP) – desirable.
- Additional qualifications in governance/compliance, networking, or infrastructure fundamentals – desirable.