Cyber Security Engineer
Salary: £60,000 - 60,000 per year
Requirements:- Experience in a Cyber Security Engineer, SOC Analyst, or similar security-focused role.
- Hands-on experience with Microsoft Defender (Endpoint and/or O365 security).
- Experience using Rapid7 SIEM or a comparable SIEM platform for alerting and investigations.
- Experience managing or supporting Sophos Antivirus or other endpoint protection solutions.
- Strong understanding of common cyber threats, attack vectors, and incident response processes.
- Ability to analyse logs, alerts, and endpoint activity to determine scope, impact, and root cause.
- Good working knowledge of Windows environments and basic networking concepts.
- Strong documentation, reporting, and communication skills.
- Practical experience with security tools such as IDS/IPS, Metasploit, Nexpose, Nmap, Nessus, Wireshark, L0phtCrack, John the Ripper, or similar.
- Familiarity with recognised information security frameworks such as ISO 27001 and the NIST Cybersecurity Framework.
- Actively monitor alerts and telemetry across endpoints, identities, email, and cloud services using Rapid7 SIEM, Microsoft Defender, and Sophos AV.
- Investigate suspected cyber attacks including malware infections, phishing campaigns, identity compromise, and unauthorised access attempts.
- Perform triage, root cause analysis, containment, and remediation of security incidents.
- Lead or support incident response activities in line with internal policies and procedures.
- Escalate significant incidents appropriately and provide clear, timely updates to stakeholders.
- Proactively identify emerging threats, vulnerabilities, and attack patterns affecting the organisation.
- Tune and optimise security tools to reduce false positives and improve detection accuracy.
- Implement, manage, and maintain endpoint protection and security policies.
- Support vulnerability management activities, including remediation planning and risk tracking.
- Maintain and enhance security monitoring rules, alerts, and dashboards.
- Contribute to the development and maintenance of security runbooks and incident response playbooks.
- Support security audits, compliance activities, and risk assessments.
- Actively contribute to improving the organisations overall cyber security maturity.
- Work closely with IT, infrastructure, and service desk teams to resolve security-related issues.
- Produce clear, structured technical and non-technical incident reports.
- Identify trends in phishing or risky user behaviour and support security awareness initiatives.
- Assist with security-related projects and new technology deployments.
- Cloud
- Support
- Security
- Windows
- Office 365
More:
Foresters Financial is a purpose-driven financial services organisation based in Bromley, Kent. We offer a supportive, collaborative working environment where you can make a tangible impact on our cyber resilience, develop your technical skills, and grow within cyber security. This is a full-time, permanent role working 40 hours per week Monday to Friday, with flexible start times between 7.30am and 9.30am and, after a successful training period, flexibility to work from home one day a week. We offer a basic salary of up to £60,000 per annum, a discretionary annual bonus, 25 days holiday plus bank holidays, life assurance, a generous contributory pension scheme, one paid charitable workday, and an Employee Assistance Programme.
last updated 34 week of 2026