FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Engineer
First Intuition. Operate and continuously improve the end-to-end vulnerability management lifecycle across endpoints, servers, networks, cloud services and applications .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in vulnerability management, including assessment, prioritization, and remediation across various platforms. Proficient in security automation using Python, with a strong understanding of Zero Trust principles and security operations.
Highest-signal resume keywords
Vulnerability ManagementQualys Vulnerability ScanningSecurity Automation Using PythonZero Trust Security PrinciplesSecurity Operations
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Vulnerability AssessmentRemediation PlanningThreat Intelligence AnalysisSecurity HardeningScripting in PythonWindows and Linux SecurityConfiguration ManagementIncident ResponseSecurity Metrics ProductionCVE and CVSS Understanding
Soft Skills
Strong Communication SkillsAnalytical SkillsCollaborationProblem-SolvingStakeholder Engagement
Tools & Technologies
QualysMicrosoft 365 E5/A5Defender for Endpoint Plan 2Defender for Office 365 Plan 2Microsoft IntuneEntra IDAzureAWS SecurityNipper StudioSecurity Automation Tools
Certifications & Qualifications
Microsoft SC-900CompTIA Security+
Industry Keywords
Cyber SecuritySecurity EngineeringInfrastructure EngineeringIT OperationsSecurity MonitoringIncident Response ProcessesKCSIE GuidelinesEnhanced DBSTechnical DocumentationRemediation Playbooks
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityLinuxPython
About the role
Key responsibilities & impact- Operate and continuously improve the end-to-end vulnerability management lifecycle across endpoints, servers, networks, cloud services and applications
- Run and review authenticated vulnerability assessments using Qualys, validate findings and reduce false positives
- Prioritise vulnerabilities using exploitability, threat intelligence, internet exposure, asset criticality, business impact and technical severity
- Translate findings into remediation plans with owners, target dates and verification criteria
- Work with system and application owners on patching, configuration changes, hardening, upgrades and compensating controls
- Develop security automation, preferably using Python, for vulnerability triage, remediation workflows, data enrichment and fix validation
- Test, coordinate and validate security patches and configuration changes
- Improve SOC security tooling, integrations, alert enrichment and automated response processes
- Assist with security investigations involving vulnerabilities, insecure configurations or missing patches
- Use threat intelligence to contextualise vulnerability prioritisation, security alerts and emerging threats
- Apply Zero Trust principles to endpoint, identity, network and cloud security controls
- Review network-device configurations and firewall rule sets using Nipper Studio or comparable tools
- Track vulnerabilities, exceptions and remediation through verified closure
- Produce security metrics and dashboards covering exposure, vulnerability ageing, remediation performance and residual risk
- Maintain technical documentation, remediation playbooks and security automation code
- Carry out tasks delegated by the Information Systems Security Manager
- Work with Security, Infrastructure, IT Operations and application teams to reduce organisational cyber risk
Requirements
What you’ll need- Two to three years’ experience in cyber security, security engineering, infrastructure engineering, IT operations or a related technical role
- Hands-on experience with vulnerability scanning, assessment and remediation using Qualys or a comparable enterprise platform
- Demonstrable ability to analyse, validate and prioritise vulnerabilities using technical and business risk factors
- Practical experience driving remediation across Windows, Linux, endpoints, networks, cloud services or applications
- Scripting capability for security automation; Python or PowerShell strongly preferred
- Understanding of CVEs, CVSS, known exploited vulnerabilities, threat intelligence, attack paths, security hardening and compensating controls
- Understanding of security operations, including security monitoring, alert investigation and incident response processes
- Practical understanding of Zero Trust security principles
- Ability to manage multiple remediation activities through to verified closure
- Strong written and verbal communication skills, with ability to explain technical risks and remediation requirements to technical and non-technical stakeholders
- Right to live and work in the UK and ability to travel to centres when required
- Relevant certifications such as Microsoft SC-900 or CompTIA Security+ are desirable
- Experience with Microsoft 365 E5/A5 security technologies, Defender for Endpoint Plan 2 and Defender for Office 365 Plan 2 is desirable
- Experience with Microsoft Intune, Entra ID, Azure or AWS security is desirable
- All roles require reference checks, an enhanced DBS, and online searches in line with KCSIE guidelines
Benefits
Comp & perks- 25 days annual leave (based on full-time hours) PLUS bank holidays
- 3 FI Days per year
- Hybrid working available, equipment provided for homeworking
- Flexible-working positive employer with a range of family-friendly policies
- Employee Assistance Programme: 24-hour confidential access to counselling and support services
- Competitive Pension
- Private Medical Insurance
- Training and development opportunities
- Long term career prospects in a growing company
- Employee perks including a range of discounts to suit your lifestyle
- Equipment provided for homeworking