- Company Name
- Intellect Group
- Job Title
- IT Security Engineer – Managed Service Provider
- Job Description
-
**Job title:** IT Security Engineer – Managed Service Provider
**Role Summary:**
Lead security delivery for a portfolio of client environments, ensuring robust network, endpoint, and cloud defenses. Own, assess, and enhance security posture; act as senior technical authority for incidents, risk remediation, and compliance initiatives, while collaborating closely with clients and internal teams.
**Expactations:**
- Maintain effective security controls in client environments.
- Design, implement, and manage solutions across network, endpoint, and cloud platforms.
- Lead incident response, including investigation, containment, remediation, and post‑incident analysis.
- Proactively identify and remediate security risks through vulnerability assessments and threat analysis.
- Optimize Azure and AWS configurations, identity, and monitoring.
- Deploy and tune endpoint protection and EDR platforms.
- Manage security monitoring, alerting, and reporting.
- Deliver Cyber Essentials and Cyber Essentials Plus projects, including gap analysis and audit preparation.
- Serve as trusted technical advisor, communicating risks and recommendations to stakeholders.
- Define, maintain, and improve security standards, documentation, and processes.
- Mentor junior engineers and provide technical guidance.
**Key Responsibilities:**
- Own day‑to‑day security posture of assigned client ecosystems.
- Design and configure firewalls, VPNs, VLANs, DNS, and segmentation.
- Secure Azure and AWS environments with RBAC, conditional access, and threat protection.
- Lead incident response lifecycle and conduct post‑incident reviews.
- Perform vulnerability management, penetration test reviews, and risk prioritization.
- Implement SIEM, logging, and monitoring solutions.
- Oversee endpoint protection (Microsoft Defender, Sophos, Bitdefender) and EDR deployments.
- Conduct Cyber Essentials gaps, remediate, and prepare for audits.
- Communicate findings and recommendations to technical and non‑technical stakeholders.
- Document and update security standards, procedures, and best practices.
**Required Skills:**
- Security engineering with hands‑on experience in firewalls (Fortinet, Palo Alto, WatchGuard).
- Proficiency with endpoint security and EDR solutions (Microsoft Defender for Endpoint, Sophos, Bitdefender).
- SIEM and security monitoring expertise.
- Strong understanding of secure network design (VLANs, VPNs, DNS) and access control.
- Proven experience securing Microsoft Azure and AWS (identity management, RBAC, conditional access).
- Leadership in incident response, vulnerability management, and risk assessment.
- Knowledge of Cyber Essentials, GDPR, ISO 27001, and NIST frameworks.
- Client‑facing communication skills; ability to influence and advise stakeholders.
- Methodical problem‑solving and proactive ownership mindset.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Relevant certifications preferred: Microsoft Certified: Azure Security Engineer, CompTIA Security+, EC-Council CEH, or Certified Information Systems Security Professional (CISSP).
- Demonstrated completion of Cyber Essentials and Cyber Essentials Plus remediation.