Security Engineer
Location: Oxford area
Salary: £40,000 - £45,000 - Door to door
Job Type: Full-time
Our client is a leading team of security experts, engineers and risk consultants, who work with commercial companies, high risk clients and high net-worth individuals to implement strategies that protect assets and reduce operational risks.
On behalf of our client, we are seeking a reliable and experienced Security Engineer. The ideal candidate will be responsible for protecting the organization's computer systems, networks, and data from security threats. You will focus on preventing security breaches, identifying vulnerabilities, and ensuring that systems and infrastructure are secure.
Security Engieer
Job Overview:
Risk Assessment and Vulnerability Management
- Identify Vulnerabilities: Regularly assess systems, networks, and applications for potential security weaknesses using vulnerability scanning tools.
- Conduct Risk Assessments: Evaluate security risks to determine potential impact on the organization and recommend mitigation strategies.
- Penetration Testing: Simulate cyber-attacks to identify weaknesses in the system before malicious actors exploit them.
Design and Implement Security Measures
- Develop Security Policies: Create and enforce security policies, standards, and best practices for data protection.
- Configure Firewalls and Intrusion Detection Systems (IDS): Set up, manage, and maintain firewalls, IDS/IPS (Intrusion Prevention Systems), and other security infrastructure.
- Network Security: Implement and maintain security measures like VPNs, proxies, and network segmentation to safeguard network traffic.
- Secure Applications and Systems: Work with developers to secure applications during development and ensure all patches are applied on time.
Monitor and Respond to Security Incidents
- Real-time Monitoring: Continuously monitor systems, networks, and logs for suspicious activities or breaches.
- Incident Response: Investigate and respond to security incidents, including data breaches, malware infections, or unauthorized access attempts.
- Root Cause Analysis: After an incident, perform a detailed analysis to determine the cause and implement corrective action
Security Audits and Compliance
- Audit Systems and Processes: Regularly conduct audits to ensure compliance with security policies and relevant regulations (e.g., GDPR, HIPAA, PCI-DSS).
- Regulatory Compliance: Ensure that the organization's security practices meet industry-specific security regulations and standards.
- Document Security Incidents: Maintain detailed logs and reports of all security incidents for legal and regulatory purposes.