Cyber Security Engineer
SaaS Business | Central London HQ (Hybrid - 2 days per week in office)
Must be eligible to work in the UK
Benefits
15% company bonus
Hybrid working (2 days/week in London HQ) + access to global coworking spaces
Pension: company contributes 6% (with 3% employee contribution)
25 days annual leave + birthday off (option to buy up to 5 more days)
Private healthcare, wellbeing days, EAP, Calm app & gym discounts
Overview
We are a growing SaaS business seeking a hands-on Cyber Security Engineer to join our Security Operations team.
This is a technical, operational role focused on protecting cloud infrastructure and endpoints. You will work daily in core security platforms, triaging alerts, investigating threats, and partnering with engineering teams to remediate issues and improve overall security posture.
Required Experience:
- Hands-on experience in Security Operations, incident response, or vulnerability management
- Practical experience with Wiz, CrowdStrike, and Zscaler
- Strong understanding of Azure and cloud security fundamentals (including Entra ID and Conditional Access)
- Experience analysing security alerts and following structured response processes
- Familiarity with CI/CD pipelines and DevOps environments
- Strong attention to detail with clear written and verbal communication
Core Technology Stack
Wiz, CrowdStrike, Zscaler, SIEM platforms, Azure (including Entra ID & Conditional Access), CI/CD and DevOps tooling, cloud-native security services, and secret detection / insider risk tools (e.g. GitGuardian-style platforms).
Key Responsibilities
- Triage and investigate alerts across cloud, endpoint, SIEM, and secure access platforms
- Identify cloud misconfigurations, exposed assets, and permission issues
- Respond to endpoint detections and support containment activities
- Investigate suspicious traffic and access attempts
- Support tuning of security policies and detection rules
- Validate vulnerabilities and configuration weaknesses
- Partner with DevOps, IT, and Engineering to drive remediation
- Support incident investigations and improve operational playbooks
- Contribute to continuous improvement of security operations