Foresters Financial logo
Security

Cyber Security Engineer

Job Details

Work Mode

On-site

Experience

Mid

Employment

Full-time

Salary

£60,000 - £60,000 p/y

Posted Today

Tech Stack

Required technologies & tools

Wireshark Nmap Intune Sophos Antivirus Windows Microsoft O365 Defender Rapid7 Siem Entra Id Metasploit Nexpose Nessus John The Ripper Ids/Ips Microsoft Defender L0Phtcrack

Sign in to see how your skills match.

Perks & Benefits

Life assurance
Discretionary annual bonus
Employee assistance programme
25 days holiday plus bank holidays
Flexible start times
Generous contributory pension scheme
1 days paid charitable workday
Work from home 1 day a week

About the Role

Cyber Security Engineer

up to £60,000

Bromley, Kent

Full-Time

Permanent


We are looking for Two Cyber Security Engineers to play a key, hands-on role in protecting our organisation from cyber threats.

This is an operational security role, ideal for someone who enjoys investigating incidents, working across multiple security platforms, and making a tangible impact on an organisation’s cyber resilience.

You will sit at the heart of our cyber defence operations, working daily with technologies including Microsoft O365 Defender, Entra ID, Intune, Rapid7 SIEM, and Sophos Antivirus. You’ll be responsible for monitoring security events, investigating suspicious activity, responding to incidents, and continuously improving our security posture.

This is a genuinely hands-on cyber security role with real responsibility and impact; you will have exposure to a broad security tooling landscape and real-world incidents. At Foresters we are a supportive, collaborative working environment and you will have on-going opportunities to develop your technical skills and grow within cyber security


What you will do:

Security Monitoring & Incident Response

  • Actively monitor alerts and telemetry across endpoints, identities, email, and cloud services using Rapid7 SIEM, Microsoft Defender, and Sophos AV.
  • Investigate suspected cyber attacks including malware infections, phishing campaigns, identity compromise, and unauthorised access attempts.
  • Perform triage, root cause analysis, containment, and remediation of security incidents.
  • Lead or support incident response activities in line with internal policies and procedures.
  • Escalate significant incidents appropriately and provide clear, timely updates to stakeholders.

Threat Detection & Prevention

  • Proactively identify emerging threats, vulnerabilities, and attack patterns affecting the organisation.
  • Tune and optimise security tools to reduce false positives and improve detection accuracy.
  • Implement, manage, and maintain endpoint protection and security policies.
  • Support vulnerability management activities, including remediation planning and risk tracking.

Security Operations & Continuous Improvement

  • Maintain and enhance security monitoring rules, alerts, and dashboards.
  • Contribute to the development and maintenance of security runbooks and incident response playbooks.
  • Support security audits, compliance activities, and risk assessments.
  • Actively contribute to improving the organisation’s overall cyber security maturity.

Collaboration & Communication

  • Work closely with IT, infrastructure, and service desk teams to resolve security-related issues.
  • Produce clear, structured technical and non-technical incident reports.
  • Identify trends in phishing or risky user behaviour and support security awareness initiatives.
  • Assist with security-related projects and new technology deployments.

Working hours are 40 hours a week Monday to Friday. Start times are flexible from 7.30am to 9.30am. After a successful training period there is flexibility to work from home for 1 day a week.


What we require:

  • Experience in a Cyber Security Engineer, SOC Analyst, or similar security-focused role.
  • Hands-on experience with Microsoft Defender (Endpoint and/or O365 security).
  • Experience using Rapid7 SIEM or a comparable SIEM platform for alerting and investigations.
  • Experience managing or supporting Sophos Antivirus or other endpoint protection solutions.
  • Strong understanding of common cyber threats, attack vectors, and incident response processes.
  • Ability to analyse logs, alerts, and endpoint activity to determine scope, impact, and root cause.
  • Good working knowledge of Windows environments and basic networking concepts.
  • Strong documentation, reporting, and communication skills.
  • Practical experience with security tools such as IDS/IPS, Metasploit, Nexpose, Nmap, Nessus, Wireshark, L0phtCrack, John the Ripper, or similar.
  • Familiarity with recognised information security frameworks such as ISO 27001 and the NIST Cybersecurity Framework.


What we offer you:

  • Basic salary up to £60000 per annum
  • Discretionary annual bonus dependent on your performance and company performance provided you are employed on bonus payment date.
  • Annual holiday allowance of 25 days holiday plus bank holidays
  • Life Assurance (based on pensionable earnings)
  • Generous contributory Pension scheme
  • 1 days paid charitable workday
  • Employee Assistance Programme


About us

Foresters Financial is not your typical financial services provider. Those who join our purpose-driven organisation enjoy a culture of collaboration, creativity, and mutual respect and are challenged to do their best to make a difference every day. We help everyday families achieve their financial goals and make a lasting difference in their lives and communities.

What we do

We help everyday families achieve their financial goals and make a lasting difference in their lives and communities. We will continue to do this by employing enthusiastic and talented Financial Advisers working across the country and equally talented people to be based at our Head Office in Bromley.

Similar jobs

Prime Personnel logo
Senior IT Security Engineer
Prime Personnel
London
£85,000 - £95,000 p/y
Mimecast Mail Security Gateway
Duo
Rapid7 Ivm
Tenable Io
F5 logo
Penetration Tester - CHECK Team Member
F5
London
£65,000 - £80,000 p/y
Wireless Technologies
Ids
Burp Suite
Nmap
Nigel Frank International logo
Infrastructure Operations Engineer - London (Remote) - c£54,000
Nigel Frank International
London
£50,000 - £54,000 p/y
Azure
Active Directory
Azure Cloud Shell
Cmdb
Oscar Technology logo
Penetration Tester
Oscar Technology
Bristol
£40,000 - £45,000 p/y
Burp Suite
Nmap
Metasploit
Oscar Technology logo
Graduate Security Consultant
Oscar Technology
Bristol
£28,000 - £34,000 p/y
Burp Suite
Nmap
Metasploit