Skip to Main Content
Location icon
36 Golden Square London

Cyber Security Engineer

M+C Saatchi Group
Office & Professional
Office & Professional
Negotiable
Company logo image
Description

Location
36 Golden Square, London

Hours
Full Time - standard working hours

Salary
Negotiable

About the Role
We are seeking a proactive and technically capable Cyber Security Specialist to support the protection of the organisation's information assets, systems, and services. This role covers security operations, governance, risk management, compliance, incident response, and security awareness to maintain a robust and resilient security posture. You will collaborate with IT, business stakeholders, third-party suppliers, and senior management to identify and mitigate cyber risks while ensuring compliance with relevant standards and regulatory requirements.

Key Responsibilities:
Security Operations
Monitor security alerts and events from security monitoring platforms and managed SOC providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities including remediation tracking and reporting. Assist with threat intelligence gathering and analysis.

Governance, Risk & Compliance
Support maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security risk assessments and maintain risk registers. Assist with internal and external audits including ISO 27001, Cyber Essentials, and client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated.

AI Security & Governance
Support secure adoption and use of Artificial Intelligence (AI) technologies. Conduct security and privacy risk assessments for AI platforms, tools, and third-party AI service providers. Evaluate AI solutions against organisational security, privacy, regulatory, and ethical requirements. Assist in developing and maintaining AI governance policies, standards, and acceptable use requirements. Monitor emerging AI-related threats, vulnerabilities, and regulatory developments. Support controls to prevent unauthorised use of AI tools and exposure of confidential information. Provide guidance on secure and responsible use of Generative AI technologies including Microsoft Co-pilot and other approved AI solutions.

Third-Party Security
Perform security reviews and due diligence assessments of suppliers and service providers. Review security questionnaires and assess supplier risks. Monitor ongoing third-party security compliance.

Security Awareness
Assist with delivery of security awareness programmes and phishing simulations. Develop guidance and educational materials for employees. Promote a positive security culture throughout the organisation.

Incident Response & Business Resilience
Support cyber incident investigations and post-incident reviews. Maintain incident response documentation and playbooks. Participate in incident response exercises and tabletop testing. Assist with business continuity and disaster recovery planning activities.

Security Engineering & Technology
Support deployment and management of security tools including Microsoft Purview, Microsoft Defender, Microsoft Sentinel, Microsoft Entra ID, Email Security Solutions, Endpoint Protection Technologies, and Vulnerability Management Platforms. Assist with security configuration reviews and hardening activities.

Reporting & Stakeholder Engagement
Produce security metrics, dashboards, and management reports. Communicate technical security issues to both technical and non-technical audiences. Provide recommendations for improving security controls and reducing risk.

Requirements

Experience
- Strong experience in cyber security, information security, or security operations roles.
- Good understanding of ISO 27001, NIST Cyber Security Framework, Cyber Essentials Plus, and Risk Management Methodologies.
- Experience investigating security incidents.
- Knowledge of Microsoft 365 security technologies.
- Understanding of networking, operating systems, cloud technologies, and identity management.
- Experience with Microsoft Sentinel and Defender XDR (desirable).
- Experience with third-party risk management (desirable).
- Knowledge of GDPR and data protection requirements (desirable).
- Experience working with managed SOC providers (desirable).
- Exposure to security awareness and phishing simulation programmes (desirable).

About you
- Self-motivated and proactive.
- Strong attention to detail.
- Able to prioritise and manage multiple activities simultaneously.
- Collaborative team player with a customer-focused approach.
- Strong commercial awareness and ability to balance security with business objectives.
- Passionate about staying current with emerging threats and technologies.
- Excellent written and verbal communication skills.
- Strong analytical and problem-solving skills.

Qualifications
Essential:
- Degree in Cyber Security, Information Technology, Computer Science, or equivalent experience.

Desirable:
- CISSP
- SSCP
- CompTIA Security+
- Microsoft Security Certifications (SC-200, SC-300, SC-100)

Expiry date: 28/09/2026
Cyber Security Engineer
Company:
M+C Saatchi Group
Job Type:
Full-time
Location:
36 Golden Square London