Skip to main content
Posted 29 July, 2026

Cyber Security Engineer

DCV Technologies Limited
Tring, ENG, GB Full Time

Job Description

Job Description: Cyber Security EngineerReports to: Infrastructure ManagerLocation: TringRole Type: Hybrid 2 3 days onsiteSalary: £65,000 per annumRole OverviewThe Cyber Security Engineer will help protect and improve security across a hybrid IT environment, spanning Microsoft Azure cloud services, on-prem VMware infrastructure, and the network estate (including Cisco Meraki). The role is hands-on and operational, partnering with IT teams to implement security controls, supportmonitoringand incident response through Sophos MDR, and improve cyber resilience by supporting Disaster Recovery (DR) testing and Business Continuity (BC) readiness.Key ResponsibilitiesCloud Security (Azure)Implement andmaintainAzure security controls across identity, networking,computeand storage.Support governance guardrails (Azure Policy), securebaselinesand logging/monitoring for cloud workloads.Contribute to security design reviews for new services and changes to ensure secure-by-default patterns.On - Prem Security (VMware )Support hardening and secure operation of VMware vSphere (vCenter/ESXi) and associated management networks.Assistwith vulnerability remediation, patchingcoordinationand secure configuration for Windows/Linux servers.Improve segmentation and admin access controls for critical systems and management planes.Network Security (Cisco Meraki)Support secure configuration of Cisco Meraki (MX/MS/MR as applicable), includingfirewallrules, segmentation (VLANs)and secure admin access.Assistwith secure remote access/VPN configurations whererequiredand ensure changes follow change control.Enable and review network security logging/alerting (e.g., syslog/SIEM integrations where applicable).Monitoring, Detection & Incident Response (Sophos MDR)Act as the internal technical point of contact for Sophos MDR and ensure smooth collaboration with MDR analysts.Maintain coverage and telemetry health (endpoints/servers) and support onboarding of new assets into MDR.Triage MDR escalations, coordinate containment/remediation with IT teams, and document outcomes and lessons learned.Maintain and improve incident runbooks and responseplaybooks;support post-incident improvements.Vulnerability & Secure ConfigurationSupport vulnerability scanning, prioritisation, remediationtrackingand verification.Help define and apply secure configuration baselines (e.g., CIS-aligned) across cloud,serversand network devices.Work with IT teams to reduce attack surface and prevent repeat security issues.Update,maintainand improve security policies,standardsand supporting procedures to reflect evolving threats, businessneedsand technology changes.Disaster Recovery (DR) & Business Continuity (BC) SupportSupport DR& BCtesting activities.Assistplanning, execution support, recoveryvalidationand evidence capture.Helpmaintainrecovery runbooks, dependency maps, and escalation/communications pathways for major incidents.Support secure backup and recovery practices (access control, separation of duties, restoration validation).Ways of WorkingCollaborate closely with internal infrastructure, business systems, service desk teams, relevant business units, and delivery partners; ensure standards and runbooks are thoroughly documented soSecurityknowledge is accessible and not confined to a single individual.Participate as part of the out-of-hours support team rota.Required Skills & ExperienceDemonstrable experience in a cyber security engineering / infrastructure security role within a hybrid environment.Hands-on knowledge of Azure security fundamentals (identity, networking, logging/monitoring, governance).Practical understanding of VMware vSphere (vCenter/ESXi) and on-prem infrastructure fundamentals.Networking security fundamentals: segmentation (VLANs),firewallpolicy management, VPN concepts, and logging/visibility.Experience supporting security monitoring and incident handling processes, working with operational IT teams.Experience supporting DR testing and recovery activities (planning support, execution support, documentation).WhatWereLooking For (Must-have)Strong technical troubleshooting and methodical approach to investigations.Ability to communicate clearly with both technical and non-technical stakeholders.Good documentation discipline (runbooks, diagrams, test evidence).Ability to prioritise and manage multiple tasks in a busy operational environment.Ownership mindsetdrives actions through to completion and follows up on remediation.Nice-to-haveExperience with Sophos Central / Sophos MDR operations (coverage management, escalation handling, policy tuning).Familiarity with Microsoft Defender suite and/or Microsoft Sentinel.Scripting/automation skills (PowerShell, KQL, Python).Knowledge of ransomware recovery patterns (immutable backups, restore validation, offline documentation).Exposure to audit/compliance requirements (ISO 27001, NIST, CIS) and evidence collection.Technical SkillsCloud: Azure security controls, Entra ID (Azure AD), Conditional Access, RBAC, Azure Policy, secure logging/monitoring.On-prem: VMware vSphere (vCenter/ESXi), Windows/Linux hardening,patchingand vulnerability remediation workflows.Networking: Cisco Meraki administration concepts (MX/MS/MR),firewallrules, VLAN segmentation, VPN, secure admin access, logging/alerting.Security Ops: Alert triage, incident response support, evidence capture, runbooks/playbooks, root cause analysis.Resilience: DR testing support, Dell RecoverPoint familiarity, recovery runbooks, RTO/RPO awareness.CertificationsCertified Cloud Security Professional (CCSP)Microsoft: AZ-500, SC-200, SC-300CompTIA: Security+,CySA+Cisco/Meraki or VMware certificationsVendor tooling certifications (Sophos/Microsoft)Soft SkillsCollaborativeand service-oriented; works effectively with Infrastructure, Network, Service Desk and Application teams.Calm under pressure during incidents and recovery tests.Strong attention to detail with a practical, risk-based mindset.Continuous improvement mentalitylearns, adapts, and raises the bar on controls and processes.Why This Role MattersThis role strengthens the organisations ability to prevent, detect and respond to cyber threats across cloud, on-prem and network environments. It also supports cyber resilience by helping ensure DR and recovery processes are tested,evidencedand continuously improved reducing downtime and business impact during outages or cyber incidents.TPBN1_UKTJ