Rodeo
Get started

CyberOne

Senior Azure Security Engineer

City of Westminster
Posted about 14 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Senior Azure Security Engineer

Location

Hybrid; 1 day per month reporting in London office

Employment Type

Full-time

About CyberOne

CyberOne is a pure-play Microsoft security partner dedicated to helping enterprises realise the full value of the Microsoft Security portfolio—across Defender XDR, Sentinel, Entra, Purview, Intune, Copilot for Security and more. We combine deep technical expertise with outcome-driven services that accelerate secure cloud adoption, modernise threat protection and simplify compliance.

Purpose of Role

We are seeking an experienced Senior Azure Security Engineer to join the Cyber Security team. The role is responsible for designing, implementing, securing and supporting Microsoft security technologies across cloud, identity, endpoint, infrastructure and security monitoring platforms.

The engineer will work closely with Security Operations, Infrastructure, Cloud Engineering, Architecture, Identity and Application teams to strengthen security controls, improve monitoring capabilities, automate security processes and support the organisation's cyber resilience. The role combines Azure security engineering, Microsoft Sentinel, Microsoft Defender, cloud security architecture, automation and operational support across a hybrid enterprise environment.

Main Duties and Responsibilities

  • Act as a Subject Matter Expert for Microsoft Azure security, Microsoft Sentinel, Microsoft Defender XDR and associated Microsoft security technologies.
  • Design, implement and support enterprise security controls across Azure, Microsoft Entra ID and the Microsoft security ecosystem.
  • Engineer and maintain Microsoft Sentinel capabilities, including data connectors, analytics rules, KQL queries, workbooks, watchlists, automation rules and playbooks.
  • Design, implement and optimise Microsoft Defender capabilities, including Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Office 365 and Defender XDR.
  • Develop security monitoring use cases, threat detections and hunting queries aligned to business risks, threat intelligence and MITRE ATT&CK.
  • Design secure cloud and hybrid architecture patterns and provide practical technical guidance to projects and engineering teams.
  • Engineer telemetry and logging solutions using Azure Monitor, Log Analytics, Azure Monitor Agent, Data Collection Rules, custom tables and API-based integrations.
  • Design and implement security automation using Logic Apps, Azure Functions, REST APIs, PowerShell and Python.
  • Perform technical security assessments and review cloud solutions against enterprise security standards, control requirements and secure-by-design principles.
  • Implement and maintain cloud security baselines, hardening standards, policy controls and configuration-management practices.
  • Support vulnerability and configuration-risk remediation across Azure and Microsoft security platforms.
  • Support cyber incident investigations and provide security expertise during critical incidents and major technology changes.
  • Produce and maintain High-Level Designs, Low-Level Designs, engineering standards, operating procedures, support documentation and implementation records.
  • Lead platform enhancements, proof-of-concepts, migrations, upgrades, troubleshooting and service-improvement activities.
  • Build platform health monitoring, operational dashboards and KPI/KRI reporting for the Proactive Security function.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Person Specification

Essential Experience

  • Proven Azure security engineering experience within a large, complex enterprise environment.
  • Strong hands-on experience implementing and supporting Azure security services across IaaS, PaaS and hybrid environments.
  • Practical experience with Microsoft Entra ID security, including Conditional Access, Privileged Identity Management, Identity Protection and hybrid identity controls.
  • Strong experience with Microsoft Sentinel and Microsoft Defender XDR, including Endpoint, Identity, Cloud and Office 365 security capabilities.
  • Experience designing and implementing cloud security architecture, platform hardening, technical security controls and security baselines.
  • Experience onboarding and validating infrastructure, cloud, application, identity and security telemetry.
  • Experience developing KQL queries, analytics rules, workbooks, automation and threat-hunting content.
  • Experience conducting technical risk assessments, security-control validation and vulnerability-remediation support.
  • Experience with REST APIs, PowerShell, Python, automation, enterprise troubleshooting and operational support.
  • Experience working with Security Operations, Incident Response, Cloud, Infrastructure, Identity and Architecture teams.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Technical Knowledge and Skills

  • Azure security and governance: Azure Policy, Defender for Cloud, Azure Monitor, Log Analytics, Azure Arc, Key Vault, managed identities, role-based access control, landing-zone security and cloud security posture management.
  • Cloud and network security: Virtual Networks, Network Security Groups, Azure Firewall, Private Endpoints, Private Link, secure connectivity, segmentation and hybrid-cloud security patterns.
  • Identity security: Microsoft Entra ID, Conditional Access, Privileged Identity Management, Identity Protection, authentication, access control, federation and identity governance.
  • Microsoft security platform: Microsoft Sentinel, Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365 and Defender for Cloud.
  • Security monitoring: KQL, analytics rules, hunting queries, workbooks, data connectors, Data Collection Rules, watchlists, automation rules, playbooks and ingestion optimisation.
  • Automation and engineering: Logic Apps, Azure Functions, REST APIs, PowerShell, Python, Azure DevOps, Git, CI/CD and Infrastructure-as-Code concepts.
  • Secure engineering: Security architecture, technical risk assessment, platform hardening, vulnerability remediation, control validation, secure development practices and operational readiness.

Desirable Experience

  • Experience securing Azure landing zones and enterprise-scale cloud platforms.
  • Experience with Security Orchestration, Automation and Response solutions and automated control validation.
  • Experience with Privileged Access Management and Zero Trust security principles.
  • Experience supporting security platforms in a regulated financial-services environment.
  • Exposure to multi-cloud or hybrid-cloud environments, including AWS or GCP.

Qualifications

  • Degree or equivalent professional experience in Information Technology, Cyber Security, Engineering or a related discipline.
  • Microsoft AZ-500 and SC-200 certifications are strongly preferred.
  • Microsoft SC-100, SC-300 or AZ-104 certifications are desirable.
  • Additional cloud-security certifications such as CISSP, CCSP or relevant GIAC qualifications are advantageous.
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

Paddington Central, 1 Kingdom St, London W2 6BD, UK

Sign up to applySee more jobs like this