Rodeo
Get started

Broaden

Junior Cyber Security Engineer

London
Posted about 23 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Cyber Security Engineer | Zero Trust Platform & Identity Controls | Scale-Up Global Insurance Group | London (Hybrid) | Permanent

About the Company

Our client is a fast-scaling, PE-backed specialist insurance group operating across the UK, Ireland, Europe, Singapore, and Australia. Having acquired over fifty separate businesses spanning specialist lines—including professional indemnity, financial lines, and commercial insurance—they are executing a group-wide IT transformation programme to rebuild a fragmented legacy footprint into a unified, highly secure, and automated platform.

Operating with a Microsoft-first technology strategy, the organization runs a lean in-house technology team that leverages world-class external partners to achieve massive operational leverage. They champion absolute ownership, engineering discipline, and radical simplicity—moving dynamically without layers of bureaucracy or corporate hand-holding. They are anti-bureaucracy but pro-governance, delivering regulatory compliance and security controls (ISO 27001 / NIST CSF) directly through platform automation rather than paperwork and committees. If you are an exceptionally bright, technically curious engineer who would rather design a smart automated fix for a recurring problem than quietly work around it, you will find a massive opportunity here.

About the Role

Reporting directly to the Lead Infrastructure Security Engineer within the Security & Devices team, this is a hands-on, keyboard-level security engineering role designed to build, automate, and maintain the technical security controls protecting the group.

This is not a passive policy oversight or ticket-monitoring position. While you will provide second-line security operations cover for alerts escalated by the group's outsourced MDR/XDR provider, your primary mission is proactive security engineering. You will own the Zero Trust security programme covering Entra ID identity controls, Microsoft Defender XDR policy tuning, Purview data protection, and endpoint hardening standards implemented by the infrastructure team. Additionally, you will play a central role in the M&A security playbook—standardizing and automating the security posture of newly acquired entities through a structured "Contain, Encapsulate, Absorb" methodology.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Key Responsibilities

  • Identity & Access Management: Design, implement, and maintain identity and access controls across the group’s Entra ID estate, including Conditional Access policies, Privileged Identity Management (PIM), break-glass provisions, and authentication methods.
  • Automation & Engineering: Treat security as an engineering discipline—automating recurring security tasks, evidence gathering, and access hygiene using PowerShell, Microsoft Graph, and Logic Apps in preference to manual workarounds.
  • XDR & Threat Detection: Configure and tune protection, detection, and response policies across Microsoft Defender XDR and Defender for Cloud, partnering with the MDR provider to eliminate false positives and close coverage gaps.
  • Endpoint & Data Protection: Define endpoint hardening baselines for Windows and macOS (verified against deployed infrastructure) and enforce Microsoft Purview DLP and sensitivity labeling policies across the estate.
  • Incidents & Threat Hunting: Perform second-line investigations of alerts escalated by the MDR provider across Defender XDR and Sentinel, conducting proactive threat hunting via KQL queries and Sentinel workbooks.
  • Vulnerability & MSSP Oversight: Oversee the outsourced vulnerability scanning service, driving findings through to remediation within SLA limits while quality-checking triage decisions and provider KPI performance.
  • M&A Security Onboarding: Act as the technical security point of contact for newly acquired entities, executing the security onboarding playbook to remediate configuration gaps during integration.
  • Automated Governance & Audit: Build and maintain technical evidence pipelines supporting ISO 27001 and NIST CSF frameworks, generating compliance documentation directly from tooling rather than assembling it by hand.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Skills & Competencies

  • Deep Microsoft Security Command: Hands-on experience configuring, tuning, and investigating alerts across Microsoft Defender XDR, Microsoft Sentinel, and Microsoft Defender for Cloud.
  • Entra ID & Identity Architecture: Strong technical grasp of Entra ID governance, including Conditional Access, PIM, and managing workload identity risks (service principals, app registrations, consent grants).
  • Practical Automation Mindset: Proven ability to automate security operations using PowerShell and Microsoft Graph as a minimum, with ideal exposure to Logic Apps or Azure Functions.
  • KQL & Threat Investigation: Proficiency in writing KQL queries and leveraging Sentinel workbooks to establish incident scope, impact, and root cause.
  • Communication & Collaboration: Clear written and verbal communication, with the ability to translate technical security risks into clear remediation steps for non-technical stakeholders and infrastructure peers.

Qualifications & Experience

  • Proven Engineering Background: Demonstrable hands-on experience in a security engineering, infrastructure security, or cloud security role.
  • M&A or Multi-Tenant Exposure: Experience working within multi-tenant, multi-entity, or acquisition-led environments.
  • Partner & MSSP Oversight: Track record of working alongside or managing external security partners (MDR/XDR, vulnerability scanning), enforcing SLAs and escalation pathways.
  • Certifications (Desirable): Active SC-200, SC-300, or AZ-500 certifications are treated as evidence of technical depth and curiosity, never as a strict barrier to apply.
  • Desirable: Exposure to Infrastructure-as-Code approaches (Bicep, Terraform) or Microsoft Defender for Cloud (CSPM/CWPP).

Role Details

  • Employment Type: Permanent
  • Location: London (Hybrid – 2 to 3 days per week on-site)
  • Reporting Line: Lead Infrastructure Security Engineer
  • Team: Security & Devices
  • Start Date: As soon as possible
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Microsoft Defender XDR
Microsoft Sentinel
Entra ID
KQL
PowerShell
Microsoft Graph
Identity & Access Management
Zero Trust
Microsoft Purview
Vulnerability Management
Incident Response
Logic Apps
Azure Functions
ISO 27001
NIST CSF
M&A Security Integration

Location

London, England, United Kingdom

Sign up to applySee more jobs like this