cover image
Inspire People

Cyber Security Engineer

On site

Salford, United kingdom

£ 79,133 /year

Full Time

04-08-2025

Share this job:
Expired

Skills

Leadership SQL Network Security Incident Response SIEM (Security Information and Event Management) DevOps Monitoring Azure AWS Django Software Development

Job Specifications

Join a team at the heart of the global economy! The Department for Business and Trade ("DBT") and Inspire People are partnering together to bring you an exciting opportunity for a Lead Cyber Security Engineer you will play a vital role in safeguarding the department's digital estate, supporting the UK's economic resilience and global competitiveness. You'll lead the design and implementation of secure-by-design solutions across cloud, hybrid, and on-premises environments, embedding security throughout the digital life cycle. Salary between PS59,634 to PS79,133 (including allowances) plus excellent Civil Service benefits including 27% pension contribution. Salary is dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Cardiff, Darlington, Belfast, Birmingham, Salford and Edinburgh.
About the role
Your responsibilities will span both strategic and operational domains. You'll lead security engineering across DBT's digital platforms, ensuring robust protection of trade, business, and investment systems. You'll also be at the forefront of the Security Operations Centre (SOC), overseeing the identification, collection, and analysis of security event data to generate high-fidelity, actionable alerts for cyber analysts. Working closely with the SOC Manager, you'll ensure that security tooling and data pipelines are current, effective, and tailored to reduce alert fatigue. You'll create bespoke analytic rules and collaborate with analysts to refine detection capabilities. You'll also take an active role in managing security alerts and leading incident response and investigation efforts.
As a senior colleague, you'll advise on cyber risks, emerging threats, and mitigation strategies aligned with the Government Security Framework and standards. You'll collaborate across government, industry, and international partners to uphold the UK's cyber reputation. Additionally, you'll mentor and develop talent within the cyber team, fostering a culture of innovation, continuous improvement, and shared learning.
About you
Be a good, open communicator through written, verbal and virtual mediums.
Be a good decision-maker
Possess strong collaboration skills recognising the role must work with other Cyber team members and with various Service teams and third parties
Be able to prioritise own workload based on the overall requirements of the SOC and SOC manager.
Main responsibilities
You will be:
Leading large, cross-functional technical team in the design, development, and enablement of automated monitoring processes, advising on the latest SIEM (Security Information and Event Management) and network analysis tools, techniques, and procedures to detect malicious activity, while communicating directly with leadership on the progress and status of monitoring.
Leading wider implementation of a monitoring strategy, ensuring roadmaps are achieved as expected, ensuring requirements, policies, and standards to govern all activities and outputs are met.
Reviewing high-priority or high-complexity analysis of security event data to manage security incident response, making key decisions on reporting or escalations for monitoring
Containing and remediating those incidents, identifying potential process improvements.
Communicating with a broad range of senior stakeholders and be responsible for defining the vision, principles, and strategy for incident response
Deputising for the SOC manager as a when required.
Reviewing incident documentation ensuring that appropriate lessons learned are captured and implemented.
Maintaining and integrating Cyber Threat Intelligence services to enhance the Departments capabilities to detect threats.
Mentor junior engineers and contribute to the development of the security profession.
Skills and experience
It is essential that you have:
Proven experience in cloud cyber security engineering in a SecOps/Security environment
Ability to lead technical teams and influence senior stakeholders.
Expertise in Log management.
Experience working in a DevOps environment and following DevOps practices.
A good working knowledge of multi-cloud environments, or expert knowledge in at least one recognised major cloud services provider, (eg AWS, Azure etc) network security, and secure software development.
Incident management and alerts triage experience
Experience in Microsoft Sentinel
Strong understanding of security principles, technologies, and frameworks (eg, NCSC guidance, ISO 27001, NIST).
It is desirable that you have:
Experience working with Django framework
Good working knowledge of Query Languages (SQL, KQL (Kusto), etc.)
How to apply
As part of the application process you will be asked to upload a CV which outlines your experience, skills and fit for the role, and to complete a short, pre-recorded video screening interview (alternately you can provide written answers to questions). Inspire People will assess your application against the essential criteria listed a

About the Company

We believe that technology has the power to change the world for the better and we love working with businesses whose technology or purpose has a positive impact. We help businesses that share our vision access the people, resources and strategic advice they need to achieve their digital transformation goals. Our service is designed to accelerate your digital growth. We created our offer in response to emerging challenges in an uncertain business landscape: a blend of Advisory, Talent and Project led services that will hel... Know more