Cyber Security Engineer
M+C Saatchi Group London, England, United Kingdom
Advertising Services · 1,001-5,000 employees
About the role
The role involves monitoring security operations, managing incident responses, and conducting risk assessments to maintain a robust security posture. Additionally, the engineer will support AI governance, perform third-party security reviews, and promote security awareness across the organization.
What they look for
Requirements
Candidates must have strong experience in cyber security or security operations and a solid understanding of frameworks like ISO 27001 and NIST. A degree in Cyber Security, IT, or Computer Science is required, along with excellent analytical and communication skills.
Benefits
Full description
We are seeking a proactive and technically capable Cyber Security Specialist to support the protection of the organisation's information assets, systems, and services. The role will work across security operations, governance, risk management, compliance, incident response, and security awareness to help maintain a robust and resilient security posture.
The successful candidate will collaborate with IT, business stakeholders, third-party suppliers, and senior management to identify and mitigate cyber risks while ensuring compliance with relevant standards and regulatory requirements.
What you'll do:
Security Operations
- Monitor security alerts and events from security monitoring platforms and managed SOC providers.
- Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities.
- Support vulnerability management activities, including remediation tracking and reporting.
- Assist with threat intelligence gathering and analysis.
Governance, Risk & Compliance
- Support the maintenance and continual improvement of the Information Security Management System (ISMS).
- Conduct security risk assessments and maintain risk registers.
- Assist with internal and external audits, including ISO 27001, Cyber Essentials, and client assurance reviews.
- Ensure security policies, standards, and procedures are reviewed and updated.
AI Security & Governance
- Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation.
- Conduct security and privacy risk assessments for AI platforms, tools, and third-party AI service providers.
- Evaluate AI solutions against organisational security, privacy, regulatory, and ethical requirements.
- Assist in developing and maintaining AI governance policies, standards, and acceptable use requirements.
- Monitor emerging AI-related threats, vulnerabilities, and regulatory developments.
- ·Support controls designed to prevent unauthorised use of AI tools and the exposure of confidential information through AI platforms.
- Provide guidance to business users on the secure and responsible use of Generative AI technologies, including Microsoft Co-pilot and other approved AI solutions.
Third-Party Security
- Perform security reviews and due diligence assessments of suppliers and service providers.
- Review security questionnaires and assess supplier risks.
- Monitor ongoing third-party security compliance.
Security Awareness
- Assist with the delivery of security awareness programmes and phishing simulations.
- Develop guidance and educational materials for employees.
- Promote a positive security culture throughout the organisation.
Incident Response & Business Resilience
- Support cyber incident investigations and post-incident reviews.
- Maintain incident response documentation and playbooks.
- Participate in incident response exercises and tabletop testing.
- Assist with business continuity and disaster recovery planning activities.
Security Engineering & Technology
- ·Support the deployment and management of security tools including:
- Microsoft Purview
- Microsoft Defender
- Microsoft Sentinel
- Microsoft Entra ID
- Email Security Solutions
- Endpoint Protection Technologies
- Vulnerability Management Platforms
- Assist with security configuration reviews and hardening activities.
Reporting & Stakeholder Engagement
- Produce security metrics, dashboards, and management reports.
- Communicate technical security issues to both technical and non-technical audiences.
- Provide recommendations for improving security controls and reducing risk.
WHAT YOU'LL BRING:
- Strong experience in a cyber security, information security, or security operations role.
- Good understanding of:
- ISO 27001
- NIST Cyber Security Framework
- Cyber Essentials Plus
- Risk Management Methodologies
- Experience investigating security incidents.
- Knowledge of Microsoft 365 security technologies.
- Understanding of networking, operating systems, cloud technologies, and identity management.
- Strong analytical and problem-solving skills.
- Excellent written and verbal communication skills.
Desirable
- Experience with Microsoft Sentinel and Defender XDR.
- Experience with third-party risk management.
- Knowledge of GDPR and data protection requirements.
- Experience working with managed SOC providers.
- Exposure to security awareness and phishing simulation programmes.
Qualifications
Essential
- Degree in Cyber Security, Information Technology, Computer Science, or equivalent experience.
Desirable
- One or more of the following:
- CISSP
- SSCP
- CompTIA Security+
- Microsoft Security Certifications (SC-200, SC-300, SC-100)
WHAT YOU'RE GOOD AT:
- Self-motivated and proactive.
- Strong attention to detail.
- Able to prioritise and manage multiple activities simultaneously.
- Collaborative team player with a customer-focused approach.
- Strong commercial awareness and ability to balance security with business objectives.
- Passionate about staying current with emerging threats and technologies.
WHAT YOU'LL GET:
For the right candidate, we will offer a competitive salary and benefits package which includes 27 days annual holiday, private healthcare, employer contributory pension, life assurance and income protection. We also offer a host of benefits that support wellbeing including subsidised gym membership, whilst our commitment to Diversity and Inclusion sees us offer learning opportunities around D&I, mentoring programmes and the opportunity for all to participate in a number of active Employee Led Networks and associated events. Finally, this role will be supported with all the necessary personal development required to set someone up for success.
APPLICATIONS CLOSE: Monday, 28th September 2026.
We will review candidates on a rolling-basis and reserve the right to close the job early should we receive a high volume of applications - early application is therefore encouraged.
ABOUT M+C SAATCHI GROUP
M+C Saatchi Group is a creative solutions company that connects specialist expertise, fuelled by data, technology, and culture, to help clients navigate, create, and lead meaningful change. The Group operates across five core divisions: Connected Creativity; Passion Marketing; Global & Social Issues; Brand, Experience & Innovation; and Performance Media. Headquartered in London, operations span 23 countries with major hubs in the UK, Europe, US, Middle East & Africa, Asia and Australia. M+C Saatchi Group’s two principles, Diversity of Thought and Brutal Simplicity of Thought, guide how they build teams and solve problems.
M+C Saatchi Group is an Equal Opportunity Employer which does not discriminate, celebrates diversity and bases all hiring and promotion decisions solely on talent and capability, without regard for any personal characteristics.
All employee information is kept confidential according to General Data Protection Regulation (GDPR).
#LI-BM1
Similar roles
-
Security Engineer (French Speaker) | BPCE-SI
Natixis in Portugal Portugal
-
OPERATIONAL SECURITY ENGINEER – NETWORK FILTERING
BE Bucharest, Romania
-
Cybersecurity Operations Engineer - Singpass
Assurity Trusted Solutions Singapore, Singapore
-
Lead Cybersecurity Analyst
TerraPay Bengaluru, Karnataka, India
-
Senior Cloud Security Engineer | Remote
Tasq Staffing Solutions, Inc. Philippines
-
Cybersecurity Senior Full-Stack Engineer (100 % remote) (m/f/d)
EWOR GmbH Karlsruhe, Baden-Württemberg, Germany