Lead Cyber Security Engineer

New Today

Overview

Join to apply for the Lead Cyber Security Engineer role at Charles Russell Speechlys. The Lead Cyber Security Engineer will be instrumental in helping to build a new SecOps function, reporting to the Infrastructure Platforms Manager. This role will be responsible for helping to implement and maintain robust security across our infrastructure and incident response. The role supports moving towards a zero-trust operating model and assisting with ISO 27001 certification and implementing CIS controls.

Responsibilities

  • Overall management and maintenance of the CrowdStrike platform, including configuring EDR policies, tuning SIEM rules, and optimizing the system for performance
  • Work with network engineers to implement posture management (ICE/NAC segmentation, lateral movement control) and firewalls
  • Proactive collaboration with InfoSec to align CrowdStrike and other security platforms with our security strategy and policies
  • Lead or participate in incident response efforts, conduct root cause analysis, and develop runbooks for incident handling
  • Monitor for security threats, analyze alerts, respond to incidents using CrowdStrike and other security tools; conduct vulnerability scans and support remediation and risk mitigation
  • Oversee WAF, DDoS protection, VPN, and perimeter firewalls
  • Manage Email and Web Security Gateways
  • Work with Endpoints team to administer MFA, SSO, PAM, MDM/MAM, and Conditional Access
  • Maintain security certificates, encryption keys, and IDS/IPS systems
  • Lead ad-hoc security projects
  • Collaborate with third-party penetration testers to identify, prioritize, and remediate vulnerabilities
  • Crearate detailed reports on detected threats, incidents, and response actions, and document configurations, processes, and runbooks
  • Keep informed of the latest cybersecurity trends, emerging threats, and updates
  • Comply with all relevant legal and regulatory obligations including SRA Standards and Regulations and Principles

Skills and Experience

  • CrowdStrike EDR
  • Mimecast
  • Tessian or equivalent email DLP
  • Deep understanding of Security Frameworks & Compliance: PCI-DSS, ISO 27001, NIST, CIS
  • Networking

Qualifications

  • Crest Practitioner Security Analyst – CPSA
  • Certified Information Systems Security Professional – CISSP
  • Palo Alto Networks Certified Security Operations Professional

Personal and Professional Qualities

  • Working together
  • Integrity and respect
  • Inclusive
  • Personal impact and growth
  • Driving high standards
  • Client-centric
  • Responsible Business

Hybrid working

Hybrid working – we adopt a hybrid and flexible working approach, dependent on the requirements of the role and subject to manager approval.

Additional information

For a detailed specification please download the job description in the documents section of this page.

#J-18808-Ljbffr
Location:
City Of London, England, United Kingdom
Salary:
£80,000 - £100,000
Job Type:
FullTime
Category:
Other

We found some similar jobs based on your search