Job Description
Role Summary
n
n
The Cyber Security Engineer is
n responsible for supporting NIST CSF / NIST 800 assessments, triaging
n penetration test findings, and driving remediation activities across
n application, infrastructure, network security, and monitoring platforms.
n
n
The role is hands -on and delivery
n focused, working closely with architects, platform owners, SOC, and
n
infrastructure/application
teams to translate security findings into actionable
n fixes, validate control effectiveness, and support audit‐ready evidence for
n
regulated/government
environments.
n
n
Key Responsibilities
n
n
NIST Assessment Support (CSF / NIST 800
n Series)
n
n
n
Support
n NIST CSF / NIST ************************ assessments through:
n n
n
n
Control
n evidence collection
n
n
Gap
n analysis support
n
n
Mapping
n tooling controls to NIST requirements
n n
n
Assist
n architects and governance teams in preparing:
n n
n
n
Control
n implementation summaries
n
n
Tool
n capability mapping
n
n
Evidence
n packs for audits and client reviews
n n
n
Track
n and manage security gaps, risks, and remediation actions in line with
n agreed timelines
n
n
Support
n continuous improvement initiatives driven by assessment outcomes
n n
Penetration Test Findings &
n Remediation
n
n
n
Triage
n and analyse application, infrastructure, and network penetration test
n findings
n
n
Work
n with platform and application teams to:
n n
n
n
Validate
n findings (true positive vs false positive)
n
n
Prioritise
n remediation based on risk and exploitability
n n
n
Execute
n or support remediation actions such as:
n n
n
n
Configuration
n hardening
n
n
Policy
n tuning
n
n
Control
n enablement or enhancement
n n
n
Track
n remediation status and provide transparent closure evidence for governance and
n audit forums
n n
Hands‐on engineering support across:
n
n
n
Endpoint
n & Infrastructure Security
n
n
Vulnerability
n & Exposure Management
n
n
Activities
n include:
n n
n
n
Policy
n tuning and baseline hardening
n
n
Coverage
n and health checks
n
n
Supporting
n remediation of vulnerabilities and misconfigurations
n
n
Validating
n fixes post‐remediation
n n
Support security controls across:
n
n
n
Cisco
n security platforms
n
n
Imperva
n
n
Microsoft
n GSA / related network security controls
n n
Responsibilities include:
n
n
n
Supporting
n firewall / network security rule reviews and clean‐ups
n
n
Assisting
n with remediation of network‐related pen test findings
n
n
Supporting
n change validation and post‐implementation checks
n
n
Working
n with network teams to ensure security controls align with NIST and secure‐by‐design
n principles
n n
n
Support
n SIEM and monitoring platforms:
n n
n
n
Splunk
n
n
Microsoft
n Sentinel
n n
n
Assist
n with:
n n
n
n
Log source onboarding validation
n
n
Detection coverage checks related to NIST and
n pen test scenarios
n
n
Validation that remediated controls generate
n expected telemetry
n n
n
Support
n SOC teams with investigation data where required
n n
n
Maintain
n accurate documentation for:
n n
n
n
Remediation
n actions
n
n
Control
n changes
n
n
Evidence
n required for audits and MSSR / governance reviews
n n
n
Participate
n in:
n n
n
n
Incident and problem reviews (P1 / P2 support)
n
n
Root cause analysis where control gaps are
n identified
n n
n
Follow
n structured change and release processes (CAB, validation, rollback awareness)
n n
n
n
Skills &
n Experience
n
n
n
5 years experience in security engineering / SecOps / blue team
n roles
n
n
Exposure to NIST CSF or NIST 800 frameworks
n
n
Hands‐on experience supporting remediation across:
n n
n
n
Endpoint / infrastructure
n security tools
n
n
Vulnerability management
n platforms
n
n
Network security controls
n n
n
Experience working with penetration test reports and remediation
n tracking
n
n
Familiarity with SIEM platforms (Splunk and/or Sentinel)
n
n
Strong documentation and evidence‐driven mindset (audit readiness)
n n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n
n