- Company Name
- UniHomes
- Job Title
- Cyber Security Operations Engineer
- Job Description
-
**Job Title:** Cyber Security Operations Engineer
**Role Summary:**
Design, implement, automate, and maintain identity, access, and endpoint security controls across cloud, SaaS, and device estates. Strengthen threat detection, incident response, and governance to reduce risk and support secure platform operations.
**Expectations:**
Deliver secure configurations for AWS services, enforce least‑privilege IAM policies, and ensure comprehensive logging and monitoring. Automate security processes in PowerShell or Python, and proactively integrate threat intelligence into detection pipelines. Collaborate cross‑functionally with platform, engineering, and SOC teams to uphold security standards and audit readiness.
**Key Responsibilities:**
- Own identity security for Entra ID and SaaS platforms.
- Implement, review, and automate access policies; conduct monthly access reviews.
- Manage endpoint security tools (AV/EDR) and maintain device coverage compliance.
- Enhance logging, alerting, and detection pipelines across cloud and SaaS systems.
- Work with SOC partner on investigations, tuning, and alert health.
- Perform vulnerability and threat hunting activities using CTI insights and IOC hunting.
- Contribute to incident response planning, post‑incident reviews, and PEN testing reporting.
- Produce audit evidence, maintain documentation, and improve playbooks and automation.
- Guide platform engineers on secure configuration, IAM, network access, logging, and hardening for AWS workloads.
**Required Skills:**
- SC‑900 Compliance & Identity Fundamentals.
- Microsoft Certified Associate (SC‑300, 200, 400, or 500).
- Strong identity security experience (Entra ID/Azure AD).
- IAM principles: RBAC, least privilege, Conditional Access, MFA.
- Security operations, logging, incident handling.
- DLP or data governance tools.
- Understanding of Cyber Essentials, ISO 27001, PCI DSS, or equivalents.
- SIEM/SOC tools and detection tuning.
- EDR/AV platforms and device security.
- Automation via PowerShell, Python, or similar.
- SaaS application access management and configuration drift mitigation.
- Cloud security fundamentals (AWS or Azure).
- Analytical, problem‑solving, and cross‑functional communication skills.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
- SC‑900 Compliance & Identity Fundamentals certification.
- Microsoft Certified Associate – SC‑300/200/400/500.
South yorkshire, United kingdom
On site
10-12-2025