Rodeo
Get started

E-Solutions

Cyber Security Engineer

United Kingdom
Posted about 14 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

UK CITIZENS” CV only

Role Purpose

The Cyber Security Engineer will play a key delivery role in establishing, operating, and continually improving the cyber security posture of a greenfield Microsoft tenant supporting National Grid Strategic Infrastructure (SI). The role is responsible for implementing and maintaining security controls in line with National Grid IT Security standards, working closely with Security Architecture and the NG Cyber Security Incident Response Team (CSIRT). This includes hands-on configuration, remediation activities, direct support of penetration testing / security assessment activities, and security improvements across Microsoft Intune, Entra ID, M365, Azure, and Microsoft Purview.

This is a practitioner role, suited to someone comfortable working in an emerging environment where controls, operating models, and assurance processes are being actively matured.

Key Responsibilities

Security Controls Implementation & Operations

  • Configure, maintain, and operate security controls in line with National Grid IT Security policies, standards, and architectural guidance.
  • Implement and remediate device, identity, access, resource, and data protection controls across Microsoft Intune, Entra ID, M365, Azure, and Microsoft Purview.
  • Support day-to-day security configuration tasks including Conditional Access, RBAC, privileged access, data protection, compliance controls, and Secure Score improvements.
  • Identify control gaps and work with Security Architecture to design, implement, and validate suitable remediation actions.

Penetration Testing & Security Assessments

  • Support end-to-end penetration testing activities, including:
    • Contributing to the creation of Statements of Work (SoW) scopes for third-party penetration testers
    • Coordinating technical input, access provisioning, and scoping support
    • Reviewing findings and translating them into actionable remediation plans
  • Own or support remediation activity for low-to-medium severity findings, escalating higher-risk items appropriately
  • Work with internal and external partners to support ongoing security assurance, risk assessments, and controls validation

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Collaboration with Security Architecture & CSIRT

  • Work in close alignment with Security Architects to ensure implemented controls meet approved designs and NG security patterns
  • Engage with the National Grid CSIRT team to:
    • Support incident response activities where required
    • Ensure alerting, logging, and escalation routes are aligned with NG processes
  • Support audit, assurance, and control evidence activities as required

Identity, Access & Data Protection (Hands-On)

  • Perform lower-level configuration and operational tasks across:
    • Microsoft Entra ID (identity lifecycle, RBAC, Conditional Access, Privileged Identity Management)
    • Azure security controls and access governance
    • Microsoft Purview (data classification, information protection, sensitivity labels, DLP, eDiscovery, and compliance features)
  • Support and optimize Joiner/Mover/Leaver processes from a controls and access perspective
  • Assist in validating secure access patterns for internal users, partners, and external collaborators

Essential Skills & Experience

Technical & Security Experience

  • Hands-on experience working with Microsoft cloud security capabilities, ideally in a greenfield or early-stage tenant.
  • Practical experience with:
    • Microsoft Intune device and policy hardening
    • Microsoft Entra ID (formerly Azure AD)
    • Microsoft 365 security and access controls
    • Azure security and access controls
    • Microsoft Purview compliance and data protection capabilities
  • Experience with assessing and implementing CIS (Center for Internet Security) controls
  • Experience supporting and remediating findings from penetration testing or security assessments.
  • Strong understanding of Identity and Access Management, least privilege, and role-based access control.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Ways of Working

  • Comfortable working in evolving environments where controls, processes, and tooling are being established
  • Able to translate security findings into clear, prioritized remediation actions
  • Experience working collaboratively across architecture, engineering, business, and security teams to improve security posture
  • Strong attention to detail and an evidence-based approach to security and assurance
  • Experience within a SAFE Agile delivery methodology, capable of owning, managing, refining, and prioritizing the backlog relative to their skillset with the delivery team.
  • Experience in SAFE planning approaches, where work is planned in 12-week incremental periods within a controlled and focused method

Desirable (but not essential)

  • Experience working within regulated or critical national infrastructure (CNI) environments
  • Familiarity with National Grid IT, security standards, or enterprise control frameworks
  • Exposure to security incident management or coordination with CSIRT functions
  • Relevant security or Microsoft certifications (e.g., CCSP, SC-200, SC-300, SC-400, AZ-500)
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Microsoft Intune
Microsoft Entra ID
Microsoft 365
Azure Security
Microsoft Purview
Identity and Access Management
Penetration Testing Remediation
CIS Controls
RBAC
Conditional Access
Data Protection
SAFE Agile
Security Assurance
Privileged Identity Management
DLP
Security Configuration

Location

United Kingdom

Sign up to applySee more jobs like this