About this role
Salary: £40,000 - 45,000 per year
Requirements: Practical experience in a cyber security, infrastructure, or senior IT support role, with responsibility for improving organisational security.Knowledge of Cyber Essentials, NIST security guidance, and ISO/IEC 27001 principles.Experience with vulnerability scanning and remediation using tools such as Nessus, OpenVAS, or equivalent.Experience configuring enterprise firewalls, including secure access and NAT rules.Strong working knowledge of Active Directory-based networks and devices, including hardening and Group Policy deployment.Good understanding of Microsoft 365, Azure, Microsoft Entra ID, identity security, and tenant hardening.Strong problem-solving, communication, prioritisation, and organisational skills.Relevant professional certifications or equivalent practical experience are welcomed.Implementing zero-trust and least-privilege principles is desirable.Writing organisational security policies and contributing to an ISMS is desirable.Using Wazuh or other SIEM platforms, EDR tools, and MITRE ATT&CK for threat modelling or detection improvement is desirable.Implementing application control or allow-listing using AppLocker or similar technologies is desirable.Automating repeatable tasks using PowerShell, Python, or comparable scripting tools is desirable.Working within engineering, manufacturing, aerospace, defence, or another regulated environment is desirable. Responsibilities: We serve as CMTGs trusted subject matter expert for cyber security, providing clear, practical advice across the Group.We evaluate IT systems, infrastructure, software, and working practices to identify security risks, prioritise remediation, and drive continuous improvement.We turn security priorities into clear policies, practical standards, meaningful risk registers, and evidence that supports confident decision-making.We support the business in working towards and maintaining appropriate alignment with Cyber Essentials, NIST SP 800-171, and ISO/IEC 27001.We coordinate cyber security audits, assessments, and customer assurance activities, ensuring actions are tracked through to completion.We bring security risks, incidents, vulnerabilities, and improvement priorities to life through clear, useful reporting for stakeholders.We work with the Group IT Manager to manage and improve security controls including endpoint detection and response, SIEM, firewalls, VPNs, network segmentation, Active Directory, Microsoft Entra ID, and least-privilege access.We lead and improve vulnerability management activities, including discovery, assessment, prioritisation, mitigation, remediation, and verification.We monitor and respond to security alerts and incidents, coordinating investigation, containment, recovery, lessons learned, and appropriate escalation.We maintain and test cyber incident response and business continuity/disaster recovery arrangements for major security events.We use threat intelligence and frameworks such as MITRE ATT&CK to understand emerging threats, assess exposure, and strengthen defensive controls.We build a positive security culture through engaging awareness training and proportionate phishing and vishing simulation programmes.We act as a trusted point of escalation for colleagues, resolving complex incidents and helping people use technology confidently, effectively, and securely.We support the maintenance, hardening, enhancement, and upgrade of Group IT infrastructure, cloud services, networks, devices, and management tools.We administer and improve Microsoft 365, Azure, Microsoft Entra ID, and on-premises Active Directory environments.We configure and maintain secure network and firewall controls, including access and NAT rules.We record, prioritise, and manage incidents, problems, service requests, and system enhancement requests through to resolution.We create and maintain accurate technical documentation, operating procedures, security records, and user guidance.We partner with engineering teams as an internal cyber security consultant, influencing secure thinking throughout the product and software lifecycle.We build effective relationships with colleagues, customers, suppliers, and external assessors, translating complex security issues into clear business actions.We support occasional travel to other CMTG sites where required. Technologies: Active DirectoryAzureCloudFirewallSupportMicrosoft 365NATNetworkPowerShellPythonSecurityOffice 365ARM More:
CMTG is a global leader in condition monitoring solutions, specialising in rotor track and balance for helicopters, condition monitoring for critical rotating industrial machinery, and noise vibration analysis. We design and manufacture precision accelerometers and support customers across aviation, power generation, automotive, defence, manufacturing, and the global energy sector. Our team of 130 experts works across our sites in the UK, USA, France, and Germany, giving us a collaborative international perspective and local support backed by world-class innovation. This role offers a varied mix of cyber security leadership and hands-on IT delivery, with a salary of £40,000.00-£45,000.00 per year and a focus on helping us build a safer, more secure, and resilient organisation.
last updated 38 week of 2026