Cyber Security Engineer

Meritus

MERITUS are recruiting for a Cyber Security Engineer to join our client on an initial 24 month contract to support defence programmes as they hit their critical stages.

CYBER SECURITY ENGINEER - INSIDE IR35 - Up to £92.11 per hour - STEVENAGE (FULL TIME ONSITE) - 24 MONTHS - UNDERGO DV / MUST HAVE ACTIVE SC - STRONG CODING/SCRIPTING BACKGROUND NEEDED - SINGLE STAGE INTERVIEW PROCESS - SECTOR: Defence

The successful candidate will lead on the technical aspects of maintaining and improving cyber security appliance efficiency, supporting activities such as alert tuning, network visibility and log ingestion into relevant security toolsets. They will provide technical advice on the implementation of new tools and lead the enhancement and expansion of existing capabilities.



Key Responsibilities

The role will involve technical activity across a range of security platforms and technologies, including but not limited to:

  • SIEM (Security Information and Event Management)
  • Network Packet Capture platforms
  • Anti-malware and malicious-code protection
  • Threat detection technologies
  • Security monitoring and analysis platforms


Core responsibilities include:

  • Maintain accurate mapping and topology of SOC toolsets, including integrations, connections and data feeds between solutions.
  • Improve the visibility and optimisation of SOC tools through data modelling, configuration and tuning.
  • Maintain core SOC toolsets, ensuring their availability, functionality and optimisation.
  • Monitor the availability and operational readiness of cyber security technologies across in-scope environments.
  • Track product lifecycles and advise management on End-of-Life (EOL) and End-of-Support (EOS) roadmaps.
  • Support the planning, coordination and execution of SOC appliance upgrades.
  • Support the implementation of new cyber security capabilities and their integration with existing solutions.
  • Implement security-tool configuration changes and ensure appropriate reporting through Change Advisory Boards (CABs) and control boards.
  • Lead playbook scripting activities, ensuring scripts are appropriately documented and tested.
  • Investigate and troubleshoot false positives and other technical issues affecting security detection.
  • Act as a technical subject matter expert for SOC connectivity and network visibility, ensuring integrations and connections are understood and documented.


Required Skills & Experience

The successful candidate should have experience across a broad range of cyber security engineering and infrastructure technologies, including:

  • Strong coding and scripting skills, particularly PowerShell, Python and Regex.
  • Experience working with APIs, including HTTP/S headers and responses and JSON objects.
  • Experience with proxy administration and configuration changes.
  • Knowledge of Windows (SMB) and Unix/Linux (*Nix) remote storage, including NFS.
  • Experience configuring IIS (Windows Web Server).
  • Knowledge of Active Directory and LDAP authentication.
  • Experience applying certificates, software updates and patches, including activities associated with technology refresh and end-of-life replacement.
  • Experience with VMware and/or Hyper-V virtual machines and virtual switches.
  • Experience implementing, configuring and maintaining cyber security tooling.
  • Experience creating, testing and maintaining AI or machine-learning technologies to optimise workflows or security playbooks.
  • Experience with SIEM technologies and security monitoring platforms.
Apply Now →

Application opens at the source listing. Free for jobseekers.