Senior Security Engineer

Everest Group
Manchester
5 days ago
Create job alert

Job Overview

We are seeking a dynamic and experienced Senior Security Engineer to join our team in the UK. In this pivotal role, you will be responsible for leading the development and implementation of robust security systems to protect our organization's data and network infrastructure. You will work closely with cross-functional teams to identify vulnerabilities, develop mitigation strategies, and ensure compliance with the latest security standards and regulations.


As a Senior Security Engineer, your primary responsibilities will include conducting sophisticated security assessments, overseeing the deployment of security solutions, and responding effectively to any security incidents. You will also play a key role in shaping our security policies and procedures, providing expert guidance to both technical and non-technical stakeholders, and staying abreast of emerging security threats and technologies.



Key Responsibilities


  • Design and implement security architectures and strategies within the Azure cloud environment, ensuring secure and efficient cloud operations
  • Conduct security assessments and penetration testing using Burpsuite and Nessus to identify vulnerabilities and implement effective remediation strategies
  • Manage and fine-tune ZScaler configurations and policies for robust network and data security
  • Utilize Sophos XDR for advanced threat detection, investigation, and response, ensuring comprehensive monitoring and protection against complex cyber threats
  • Lead efforts to achieve and maintain SOC2 compliance, developing and enforcing policies and procedures in line with SOC2 standards
  • Monitor network traffic and analyze protocols using tools like Wireshark to identify and mitigate security threats in TCP/IP networks
  • Respond promptly and effectively to security incidents and ensure resolution with minimal impact
  • Collaborate with various teams to integrate security best practices into development and operational processes
  • Stay informed about emerging security trends, threats, and mitigation techniques, and educate others on cybersecurity best practices
  • Develop and maintain detailed documentation of security configurations, policies, and procedures
  • Evaluate and implement new security technologies and solutions as needed
  • Provide expert guidance and leadership for security-related decision-making and project planning



Required Skills / Aptitude


  • Advanced knowledge of cybersecurity principles, practices, and risk management
  • Strong proficiency in cloud security, particularly in Azure environments
  • Expertise in network security, including protocol analysis and intrusion detection
  • Familiarity with security tools such as Burpsuite, Nessus, ZScaler, Sophos XDR, and Wireshark
  • Deep understanding of SOC2 compliance frameworks and requirements
  • Excellent analytical and problem-solving skills, with a strong attention to detail
  • Proven ability to identify, assess, and mitigate security vulnerabilities and threats
  • Effective communication skills, capable of explaining complex security concepts to diverse audiences
  • Strong documentation and reporting skills, with an emphasis on clarity and accuracy
  • A proactive mindset towards staying abreast of the latest cybersecurity trends and technologies
  • Ability to work collaboratively in a team environment and lead security initiatives
  • Leadership qualities, including the ability to mentor junior staff and influence decision-making
  • Capacity for critical thinking and making well-informed decisions under pressure




Education and Experience


  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. A Master’s degree is preferred
  • Prior experience in a professional services B2B firm, understanding the specific security needs and challenges in such settings
  • Relevant cybersecurity certifications (e.g., CEH, OSCP, CISSP, CISM etc.) are highly desirable



About Everest Group

Everest Group is a leading research firm helping business leaders make confident decisions. We guide clients through today’s market challenges and strengthen their strategies by applying contextualized problem-solving to their unique situations. This drives maximized operational and financial performance and transformative experiences. Our deep expertise and tenacious research focused on technology, business processes, and engineering through the lenses of talent, sustainability, and sourcing delivers precise and action-oriented guidance. Find further details and in-depth content atwww.everestgrp.com.


Everest Group is with you on the journey. We are committed to empowering team members to develop their potential, share their authentic selves, and inclusively engage. This means we continually celebrate the diverse journeys different individuals cultivate. We hire great people from a wide variety of backgrounds, not just because it’s the right thing to do, but because it makes our company stronger. If you share our values and enthusiasm for solving challenges, you will find a home at Everest Group.


Remote Work and Travel (Including International):The candidate must be comfortable with a combination of remote work and travel, with the flexibility to work from home when not traveling and travel as needed to client sites, conferences, training sessions or company events, both domestically and internationally. The ability to maintain productivity and communication while on the road, including during international trips, is essential.

Everest Group complies with the GDPR, CCPA/CPRA and other data protection regulations.


For more information on how Everest Group processes your personal information, please read ourPrivacy Notice(www.everestgrp.com/privacy-notice-for-applicants-employees-and-contractors/). By submitting this application, you indicate that you have read and understand our privacy terms and consent to the processing of your personal information by us. To exercise your data subject rights under GDPR, CCPA/CPRA you can fill in our form available atData Rights – Everest Group (everestgrp.com). You can email your data protection request to .


Everest Group is an equal opportunity employer. We have a culture of inclusion, and we provide equal opportunities for all applicants and employees, including those with disabilities. We are committed to providing an environment that is free of all discrimination and harassment and to treating all individuals with respect.

Related Jobs

View all jobs

Senior Security Engineer

Senior Security Engineer – Identity/Authentication – Financial Markets

Senior Security Engineer

Senior Security Engineer

Senior Security Engineer

Senior Security Engineer

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Negotiating Your Cybersecurity Job Offer: Equity, Bonuses & Perks Explained

How to Secure Compensation That Reflects Your Value in the UK’s High-Stakes Cybersecurity Sector Introduction As cyber threats grow more sophisticated and frequent, cybersecurity professionals have never been more in demand. From thwarting ransomware attacks to architecting secure cloud infrastructures, mid‑senior cybersecurity experts play a critical role in safeguarding a company’s data and reputation. Thanks to this growing reliance on cybersecurity, employers in the UK are going above and beyond simple salary offers to attract the top echelon of talent. Although base salary remains a key component of any job offer, the broader package—encompassing equity, bonuses, and perks—can often surpass what you’d gain from a small bump in monthly pay. For cybersecurity specialists working in areas such as threat intelligence, incident response, penetration testing, or compliance, the complexity and risk mitigation you bring to the table is massive. Knowing how to negotiate the entire package ensures you are duly rewarded for keeping an organisation’s data, assets, and operations safe. In this guide, we’ll delve into every aspect of negotiating a cybersecurity job offer. Whether you’re pivoting to a mid‑senior role or cementing your expertise at an established security consultancy, understanding the full range of compensation elements will help you secure an offer that acknowledges the criticality of what you do. Let’s explore equity options, performance bonuses, and the perks that matter most, so you can come out of your next job negotiation confident that you’re getting more than just a salary.

Cyber Security Jobs in the Public Sector: Protecting the UK’s Digital Future

Cyber threats have grown exponentially in recent years, targeting both private businesses and government institutions. As technology becomes ever more embedded in daily life—managing everything from national security to healthcare records—the risk of cyber attacks also increases. In the UK public sector, where vital services and sensitive citizen data are at stake, cyber security has become a top priority. For professionals looking for a meaningful career at the intersection of technology, national security, and public service, cyber security jobs in the UK public sector present an exciting and fulfilling path. In this blog post, we’ll delve into why cyber security is so critical to government agencies, the most in-demand roles, the skills and qualifications required, and how to navigate the application process. By the end, you’ll have a clearer sense of how you can leverage your technical expertise to protect the nation’s digital infrastructure.

Contract vs Permanent Cybersecurity Jobs: Which Pays Better in 2025?

Cybersecurity has become one of the fastest-growing and most crucial fields in modern business. With high-profile breaches dominating headlines and the ongoing digital transformation exposing organisations to new threats, companies across the UK are competing to attract skilled cybersecurity professionals. Roles range from penetration testers (pen testers) and SOC (Security Operations Centre) analysts to compliance officers, cloud security architects, threat intelligence analysts, and CISOs (Chief Information Security Officers). As demand continues to surge, cybersecurity salaries have climbed accordingly, and businesses have turned to more flexible hiring practices. Alongside permanent employment, many professionals explore short-term day‑rate contracting or fixed-term contracts (FTCs), searching for the ideal balance of pay, job security, and growth opportunities. Which arrangement truly pays better in 2025—and which best aligns with your ambitions? In this article, we dive into the contract vs. permanent debate with a focus on cybersecurity roles. We will examine the current market, the structure of day‑rate vs. FTC vs. permanent positions, the pros and cons of each, and some hypothetical pay comparisons. By the end, you should have a clearer sense of which career path might suit your situation and goals—whether you are a seasoned specialist aiming for top rates, or an up-and-coming analyst seeking a stable environment to develop in.