Information Security Engineer
Information Security Engineer Birmingham Our client are a leading provider of care, education, and therapeutic services for vulnerable children and young people across the UK. They are passionate about creating safe, nurturing environments that transform lives. As part of their digital evolution, they are seeking a skilled Information Security Engineer / Analyst to help strengthen their cyber security posture and safeguard our systems and data. Reporting directly to the Head of IT this is a hands-on technical role focused on securing enterprise applications, infrastructure, and sensitive data. You'll be instrumental in implementing and maintaining robust security measures, conducting assessments, and responding to incidents. Collaboration across departments will be key to embedding security best practices throughout the organisation. Key Duties & Responsibilities Evaluate application architecture, source code, and third-party integrations for security risksSupport secure software development lifecycle (SDLC) processes and promote secure coding standardsIdentify and remediate vulnerabilities using industry-standard toolsAdminister and configure security technologies (e.g., firewalls, SIEM, IDS/IPS, endpoint protection)Oversee access controls and identity management systemsConduct penetration testing and routine vulnerability scansMonitor networks and systems for threats; lead incident response effortsPerform root cause analysis and maintain incident response protocolsRecommend enhancements to improve overall security postureDeliver security awareness training and ensure compliance with policiesProduce monthly security reports and maintain documentation Required Skills & Experience 3-5+ years of experience in cybersecurity or information security rolesDegree in Computer Science, Information Security, or equivalent practical experienceFamiliarity with frameworks such as MITRE ATT&CK, NIST, ISO 27001, Cyber Essentials+Hands-on experience with tools like Nessus, Qualys, SIEM, EDR, DLP, VPNs, and firewallsStrong understanding of network protocols (TCP/IP, DNS, HTTP, SSH) and segmentationKnowledge of Zero Trust architecture and cloud-native security practicesProficiency in identity and access management (Azure AD, MFA, SSO, RBAC)Skilled in log analysis, threat detection, and incident handlingExcellent communication and stakeholder engagement abilitiesCertifications such as CEH, OSCP, CISSP, Security+, or GSEC are advantageous Salary/Package Basic salary of between £50k-£55k4% PensionLife Insurance 3 x salary25 days annual leave plus stautory - 1 x extra day every year for the first 3 yearsBlue Light CardMedicash - includes discounted gym memberships etc. Click apply now or speak with Chris Holliday for further information.
read more