Cyber Security Engineer
We are seeking a proactive and technically capable Cyber Security Specialist to support the protection of the organisation's information assets, systems, and services. The role will work across security operations, governance, risk management, compliance, incident response, and security awareness to help maintain a robust and resilient security posture.
The successful candidate will collaborate with IT, business stakeholders, third-party suppliers, and senior management to identify and mitigate cyber risks while ensuring compliance with relevant standards and regulatory requirements.
What you'll do:
Security Operations
Monitor security alerts and events from security monitoring platforms and managed SOC providers.
Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities.
Support vulnerability management activities, including remediation tracking and reporting.
Assist with threat intelligence gathering and analysis.
Governance, Risk & Compliance
Support the maintenance and continual improvement of the Information Security Management System (ISMS).
Conduct security risk assessments and maintain risk registers.
Assist with internal and external audits, including ISO 27001, Cyber Essentials, and client assurance reviews.
Ensure security policies, standards, and procedures are reviewed and updated.
AI Security & Governance
Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation.
Conduct security and privacy risk assessments for AI platforms, tools, and third-party AI service providers.
Evaluate AI solutions against organisational security, privacy, regulatory, and ethical requirements.
Assist in developing and maintaining AI governance policies, standards, and acceptable use requirements.
Monitor emerging AI-related threats, vulnerabilities, and regulatory developments.
·Support controls designed to prevent unauthorised use of AI tools and the exposure of confidential information through AI platforms.
Provide guidance to business users on the secure and responsible use of Generative AI technologies, including Microsoft Co-pilot and other approved AI solutions.
Third-Party Security
Perform security reviews and due diligence assessments of suppliers and service providers.
Review security questionnaires and assess supplier risks.
Monitor ongoing third-party security compliance.
Security Awareness
Assist with the delivery of security awareness programmes and phishing simulations.
Develop guidance and educational materials for employees.
Promote a positive security culture throughout the organisation.
Incident Response & Business Resilience
Support cyber incident investigations and post-incident reviews.
Maintain incident response documentation and playbooks.
Participate in incident response exercises and tabletop testing.
Assist with business continuity and disaster recovery planning activities.
Security Engineering & Technology
·Support the deployment and management of security tools including:
Microsoft Purview
Microsoft Defender
Microsoft Sentinel
Microsoft Entra ID
Email Security Solutions
Endpoint Protection Technologies
Vulnerability Management Platforms
Assist with security configuration reviews and hardening activities.
Reporting & Stakeholder Engagement
Produce security metrics, dashboards, and management reports.
Communicate technical security issues to both technical and non-technical audiences.
Provide recommendations for improving security controls and reducing risk.
WHAT YOU'LL BRING:
Strong experience in a cyber security, information security, or security operations role.
Good understanding of:
ISO 27001
NIST Cyber Security Framework
Cyber Essentials Plus
Risk Management Methodologies
Experience investigating security incidents.
Knowledge of Microsoft 365 security technologies.
Understanding of networking, operating systems, cloud technologies, and identity management.
Strong analytical and problem-solving skills.
Excellent written and verbal communication skills.
Desirable
Experience with Microsoft Sentinel and Defender XDR.
Experience with third-party risk management.
Knowledge of GDPR and data protection requirements.
Experience working with managed SOC providers.
Exposure to security awareness and phishing simulation programmes.
Qualifications
Essential
Degree in Cyber Security, Information Technology, Computer Science, or equivalent experience.
Desirable
One or more of the following:
CISSP
SSCP
CompTIA Security+
Microsoft Security Certifications (SC-200, SC-300, SC-100)
WHAT YOU'RE GOOD AT:
Self-motivated and proactive.
Strong attention to detail.
Able to prioritise and manage multiple activities simultaneously.
Collaborative team player with a customer-focused approach.
Strong commercial awareness and ability to balance security with business objectives.
Passionate about staying current with emerging threats and technologies.
WHAT YOU'LL GET:
For the right candidate, we will offer a competitive salary and benefits package which includes 27 days annual holiday, private healthcare, employer contributory pension, life assurance and income protection. We also offer a host of benefits that support wellbeing including subsidised gym membership, whilst our commitment to Diversity and Inclusion sees us offer learning opportunities around D&I, mentoring programmes and the opportunity for all to participate in a number of active Employee Led Networks and associated events. Finally, this role will be supported with all the necessary personal development required to set someone up for success.
APPLICATIONS CLOSE: Monday, 28th September 2026.
We will review candidates on a rolling-basis and reserve the right to close the job early should we receive a high volume of applications - early application is therefore encouraged.
M+C Saatchi Group is a creative solutions company that connects specialist expertise, fuelled by data, technology, and culture, to help clients navigate, create, and lead meaningful change. The Group operates across five core divisions: Connected Creativity; Passion Marketing; Global & Social Issues; Brand, Experience & Innovation; and Performance Media. Headquartered in London, operations span 23 countries with major hubs in the UK, Europe, US, Middle East & Africa, Asia and Australia. M+C Saatchi Group’s two principles, Diversity of Thought and Brutal Simplicity of Thought, guide how they build teams and solve problems.
M+C Saatchi Group is an Equal Opportunity Employer which does not discriminate, celebrates diversity and bases all hiring and promotion decisions solely on talent and capability, without regard for any personal characteristics.
All employee information is kept confidential according to General Data Protection Regulation (GDPR).
#LI-BM1
- Group company
- M+C Saatchi Group
- Locations
- London
- Remote status
- Hybrid
- Employment type
- Full-time
London
About M+C Saatchi Group
M+C Saatchi Group was founded in 1995 and is now the biggest Independent creative agency group in the World. Founded on one core principle, Brutal Simplicity.