About this role
Salary: £40,000 - 50,000 per year
Requirements: A qualification in Cyber Security, Information Technology, Computer Science or a related disciplineCommercial experience working in a cyber security or infrastructure security roleStrong knowledge of Microsoft-based environments, including Microsoft 365, Exchange Online and IntunePractical experience with Microsoft Azure and Azure virtual infrastructureStrong understanding of network security, including TCP/IP, DNS, VPNs and network segmentationExperience securing both on-premises and cloud environmentsKnowledge of Windows and Linux/Unix securityUnderstanding of IAM, encryption, PKI and TLSKnowledge of web security principles, including OWASP Top 10, WAF and API securityExperience with vulnerability management, patching and security remediationKnowledge of the MITRE ATT&CK Framework and common attack techniquesExperience applying security standards such as NCSC guidance, CIS benchmarks or Microsoft Security BaselinesUnderstanding of data classification, secure storage and access controlsExperience working within an ITIL-aligned environmentStrong networking and troubleshooting skillsExperience with scripting, automation or infrastructure-as-code would be advantageousKnowledge or experience of Microsoft SQL Server would be beneficial Responsibilities: Monitor security alerts, investigate potential incidents and lead incident response activitiesConduct forensic investigations and contribute to threat detection and intelligence activitiesDevelop and refine security monitoring, detection rules and use casesCarry out vulnerability scanning and support remediation and patch managementContribute to penetration testing and application security testingSecure and maintain Microsoft Azure cloud environmentsImplement and maintain Identity and Access Management (IAM) solutionsSupport the security of Microsoft 365, Exchange Online and Intune environmentsEnsure infrastructure and applications align with appropriate security standards and best practiceWork with frameworks and standards including Cyber Essentials, ISO 27001, SOC 2, GDPR and NCSC guidanceApply security principles across network infrastructure, applications and systemsMonitor and improve system resilience, performance and operational integritySupport log management, archiving and retention processesDevelop and maintain security documentation, procedures and operating standardsProvide technical guidance and security awareness support to colleaguesWork closely with third-party suppliers to maintain and improve security standardsParticipate in an IT technical on-call rotaTake a lead role during major or high-pressure incidents, providing both technical direction and clear stakeholder communication Technologies: APIAzureCloudIAMSupportITILLinuxMicrosoft 365NetworkOWASPSQLSecurityTCP/IPUnixWAFWebWindowsOffice 365 More:
Our client is a well-established organisation with a strong focus on technology, operational resilience and customer service. We are growing our IT function and are looking for an experienced Cyber Security & Infrastructure Engineer to join our team. This is a hands-on, permanent, on-site role in North East England, offering competitive salary and benefits, professional development and ongoing learning opportunities, and the chance to work across cyber security, infrastructure, cloud, threat detection and incident response within a small, technically capable IT team. We offer exposure to Azure, Microsoft 365, cloud security and hybrid infrastructure, a collaborative and supportive IT team, and the opportunity to influence and improve our cyber security posture.
last updated 36 week of 2026