Point your AI agent at freehire and let it find you a job.

Get the CLI →

IT Naturally

NewBe an early applicant

Cyber Security Engineer

Discussion

Salary: £40,000 - 50,000 per year

Requirements:
  • We require 3 years of experience as a Cyber Security Engineer.
  • We need hands-on experience with security monitoring, incident investigation and vulnerability management.
  • We need practical knowledge of Microsoft security technologies, including Microsoft Defender XDR, Microsoft 365 security controls, Microsoft Intune and Endpoint Security.
  • We need experience administering endpoint detection and response platforms; CrowdStrike Falcon experience is advantageous.
  • We need a good understanding of identity and access management, MFA, data loss prevention, encryption and advanced threat protection.
  • We need strong knowledge of cyber security principles and technologies, including Secure Email Gateways, DNS filtering, Secure Web Gateways, CASB, endpoint protection, anti-virus and related security controls.
  • We need knowledge of secure design principles and the ability to assess technical solutions, configurations and changes.
  • We need working knowledge of security frameworks and assurance activities, including ISO 27001, Cyber Essentials, CIS Controls and the NIST Cybersecurity Framework.
  • We need awareness of data protection, AI governance and the security risks associated with emerging technologies.
  • We need the ability to analyse complex security issues, evaluate urgency and business impact, and make clear, timely decisions.
  • We need the ability to communicate technical risks and recommendations clearly to customers, colleagues and technical and non-technical stakeholders.
  • We need strong written skills, with experience producing concise policies, standards, procedures, reports and governance documentation.
  • We need a collaborative, customer-focused approach and the confidence to provide trusted security advice.
  • We need a proactive, self-driven approach and the ability to respond dynamically and at pace to emerging threats, risks and priorities.
  • We need a continuous improvement mindset, including the ability to identify opportunities to use automation to increase efficiency, consistency and service quality.
  • We need a commitment to continual learning and knowledge sharing.
  • We need excellent written and spoken English; German language capability is desirable.
  • We need a relevant Microsoft security certification, such as Security Operations Analyst or Identity and Access Administrator, or an equivalent current certification.
  • We need CompTIA CySA+, CISSP or another recognised cyber security qualification, or a demonstrable commitment to achieving one.
  • We need capability aligned to SFIA responsibility level 4, working with autonomy, influence and appropriate complexity.
  • We need United Kingdom work authorisation.
Responsibilities:
  • We investigate, contain and resolve cyber security events and incidents, escalating where appropriate and completing root cause analysis for significant or recurring issues.
  • We design, implement and maintain proportionate security controls across Microsoft 365, Azure, endpoint, network and cloud environments.
  • We assess security risks arising from new services, projects and changes, and provide clear remediation advice through change and CAB processes.
  • We manage vulnerability activities, including assessment, prioritisation, reporting, remediation tracking and validation.
  • We ensure the maintenance of security configurations, appliances and platforms through appropriate patching, upgrades and lifecycle management.
  • We create and maintain cyber security-related operating procedures, security baselines, technical standards, architecture records and customer-facing documentation.
  • We support security governance and compliance activities, including risk assessments, policy development, control implementation, evidence gathering and audits for frameworks such as ISO 27001 and Cyber Essentials.
  • We monitor relevant threats and emerging technologies, assess their impact on our business and customers, and coordinate appropriate action.
  • We provide trusted technical security consultancy to customers and internal teams, translating technical risks into clear, business-focused recommendations.
  • We produce accurate security reports, service metrics and compliance information for internal and customer stakeholders.
  • We improve repeatable security operations through automation, knowledge transfer and guidance for first- and second-line support teams.
  • We contribute to the 24x7 on-call rota and respond to priority security incidents in line with agreed processes.
Technologies:
  • AI
  • Azure
  • Cloud
  • Support
  • Microsoft 365
  • Microsoft Intune
  • Network
  • Security
  • Web
  • Office 365

More:

We are IT Naturally, an award-winning, B Corp-certified MSP that puts people and the planet first. We support 250+ seat businesses with 24/7 IT services, helping keep them secure, efficient and cost-effective. We are proud to be named Employer of the Year two years running and offer an unlimited training budget, private healthcare from day one, a company performance-related bonus and a range of other benefits including pension, cycle to work, free parking, wellbeing support, life insurance and private medical insurance. We value diversity, equality and inclusion, and we encourage applicants from all backgrounds to apply. This is a hybrid role based in Peterborough.

last updated 36 week of 2026

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available