- Company Name
- Harvey Nash
- Job Title
- Cyber Security Specialist
- Job Description
-
Job Title: Cyber Security Specialist
Role Summary
Cyber Security Specialist leading the design, deployment, and management of Microsoft Security solutions (Defender for Cloud, Defender for Identity, Defender for Office 365) and related XDR, endpoint, cloud, identity, and network security controls. Acts as subject‑matter expert, ensures industry‑best‑practice alignment, mentors teams, coordinates incident response, and advises on security‑review during project design.
Expectations
• Deep expertise in Microsoft Defender suite and XDR stack.
• Experience with vulnerability management, SIEM, EDR, and PowerShell automation.
• Proficiency in industry frameworks (Cyber Essentials, NIST CSF) and security assessment methodologies.
• Strong incident‑response and remediation oversight.
• Ability to collaborate with cross‑functional teams and deputise for the Senior IT Security Manager.
Key Responsibilities
- Serve as SME for Microsoft Security suite, maintaining up‑to‑date knowledge of features and best practices.
- Develop and manage security blueprints covering Endpoint, Cloud, Office, Identity, XDR, and network security solutions.
- Ensure security controls align with industry standards and integrate seamlessly with Windows and business applications.
- Mentor operational teams on security practices and tooling.
- Provide security reviews and advice on new business proposals, infrastructure, data, and application designs.
- Coordinate major security incidents, ensuring timely resolution and comprehensive incident management.
- Support architectural security principles to reduce organisational risk.
- Deputise for the Senior IT Security Manager when required.
Required Skills
- Microsoft Defender for Cloud, Defender for Identity, Defender for Office 365, Microsoft XDR stack.
- Vulnerability management tools (Nessus, Rapid7); EDR platforms; SIEM tools (Splunk, Azure Sentinel).
- PowerShell automation and scripting.
- Enterprise networking, firewall, and infrastructure technologies.
- Security assessment design, control maturity evaluation, and remediation leadership.
- Incident response, monitoring, alerting, and reporting.
- Knowledge of Cyber Essentials, Cyber Essentials Plus, and NIST CSF frameworks.
Required Education & Certifications
- CISSP, CISA, CISM, SC‑200, AZ‑500, or equivalent professional security certifications.
Birmingham, United kingdom
Hybrid
09-03-2026