Role SummaryThe Cyber Security Engineer isresponsible for supporting NIST CSF / NIST 800 assessments, triagingpenetration test findings, and driving remediation activities acrossapplication, infrastructure, network security, and monitoring platforms.The role is hands -on and deliveryfocused, working closely with architects, platform owners, SOC, andinfrastructure/application teams to translate security findings into actionablefixes, validate control effectiveness, and support audit‐ready evidence forregulated/government environments.Key ResponsibilitiesNIST Assessment Support (CSF / NIST 800Series)Support NIST CSF / NIST ************************ assessments through: Control evidence collectionGap analysis supportMapping tooling controls to NIST requirementsAssist architects and governance teams in preparing: Control implementation summariesTool capability mappingEvidence packs for audits and client reviewsTrack and manage security gaps, risks, and remediation actions in line with agreed timelinesSupport continuous improvement initiatives driven by assessment outcomesPenetration Test Findings &RemediationTriage; and analyse application, infrastructure, and network penetration test findingsWork with platform and application teams to: Validate findings (true positive vs false positive)Prioritise remediation based on risk and exploitabilityExecute or support remediation actions such as: Configuration hardeningPolicy tuningControl enablement or enhancementTrack remediation status and provide transparent closure evidence for governance and audit forumsHands‐on engineering support across:Endpoint & Infrastructure Security Vulnerability & Exposure Management Activities include:
Policy tuning and baseline hardeningCoverage and health checksSupporting remediation of vulnerabilities and misconfigurationsValidating fixes post‐remediationSupport security controls across:Cisco security platformsImpervaMicrosoft GSA / related network security controlsResponsibilities include:Supporting firewall / network security rule reviews and clean‐upsAssisting with remediation of network‐related pen test findingsSupporting change validation and post‐implementation checksWorking with network teams to ensure security controls align with NIST and secure‐by‐design principlesSupport SIEM and monitoring platforms: SplunkMicrosoft SentinelAssist with: Log source onboarding validationDetection coverage checks related to NIST and pen test scenariosValidation that remediated controls generate expected telemetrySupport SOC teams with investigation data where requiredMaintain accurate documentation for: Remediation actionsControl changesEvidence required for audits and MSSR / governance reviewsParticipate in: Incident and problem reviews (P1 / P2 support)Root cause analysis where control gaps are identifiedFollow structured change and release processes (CAB, validation, rollback awareness) Skills &Experience5; years experience in security engineering / SecOps / blue team rolesExposure to NIST CSF or NIST 800 frameworksHands‐on experience supporting remediation across: Endpoint / infrastructure security toolsVulnerability management platformsNetwork security controlsExperience working with penetration test reports and remediation trackingFamiliarity with SIEM platforms (Splunk and/or Sentinel)Strong documentation and evidence‐driven mindset (audit readiness)