Menu
Warning This job advert has expired and applications have closed.

Senior Security Engineer

Job details
Posting date: 21 February 2025
Salary: £50,000 to £70,000 per year
Additional salary information: Up to £70,000 + benefits
Hours: Full time
Closing date: 21 March 2025
Location: England, Hybrid
Company: BCA Group
Job type: Permanent
Job reference: ORG3669-IT829 VS

Summary

Senior Security Engineer

Hybrid - working from home with occasional office visits

Up to £70,000 per annum depending on experience + car allowance + bonus + benefits

40 hours per week Monday – Friday

BCA are the biggest name in Europe’s vehicle remarketing industry, backed by the Constellation Automotive Group, we’re part of a family including cinch and WeBuyAnyCar.com. We’re growing rapidly and are on a key digital transformation journey.

Constellation Automotive Group is the largest vertically integrated digital used car marketplace in Europe, combining the leading digital brands across the segments of consumer to business, business to business and business to consumer. We offer competitive salaries plus attractive benefits, unrivalled support to progress and flexible remote working.

As the Security Engineer specializing in Azure and Microsoft 365, you will be the go-to expert for Microsoft security and compliance tooling, overseeing the architecture and implementation of security solutions. You will be responsible for configuring, optimizing, and driving adoption of key security technologies, working across teams to identify and solve security challenges in our Microsoft ecosystem.

Key Responsibilities


Lead Microsoft Security & Compliance: Be the authority on Microsoft Defender for Cloud, Microsoft 365 Defender, Azure AD (Entra ID), Azure Policy, and Microsoft Purview.
Architect and Configure Security Solutions: Design secure, scalable architectures aligned with Zero Trust principles and best practices.
Rollout and Adoption: Plan and execute comprehensive rollouts of security tools across the organization, ensuring full integration and adoption.
Train and Empower Teams: Deliver training, workshops, and documentation to ensure teams are equipped with the knowledge to use security tools effectively.
Collaborate on Vulnerabilities: Support the Threat & Vulnerability Management (TVM) team to address vulnerabilities, providing architectural guidance to mitigate risks.
Drive Governance & Compliance: Enforce governance frameworks, work with stakeholders on risk assessments, and ensure compliance with regulatory standards such as GDPR, ISO 27001, and NIST.
Optimize Performance & Cost: Balance robust security with performance and cost-effectiveness, using tools like Azure Monitor and Cost Management to optimize resources.



Key Skills


Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent work experience).
Hands-on experience in cloud security with proven expertise in Microsoft security and compliance tools (Azure, M365, Microsoft Defender, Microsoft Purview).
In-depth knowledge of identity and access management using Azure AD (Entra ID), Conditional Access, and advanced security features (e.g., Just-in-Time, Privileged Identity Management).
Familiarity with cloud security frameworks (CIS Azure Foundations, NIST) and relevant compliance standards (GDPR, ISO 27001, PCI-DSS).
Automation and scripting proficiency (PowerShell, Azure CLI, Terraform, Bicep) to deliver repeatable, consistent security solutions.
Excellent communication and presentation skills with the ability to train and influence diverse audiences.
Team player with strong collaboration skills, capable of driving cross-team security initiatives.
Preferred Certifications: Microsoft Certified: Azure Security Engineer Associate, Microsoft 365 Certified: Security Administrator Associate, CISSP, or similar.


We are proud to be Level 1 Disability Confident and committed to ensuring our recruitment process is inclusive and accessible.

Our policy is to employ the best qualified people and provide equal opportunity for the advancement of employees including promotion and training and not to discriminate against any person because of gender, race, ethnicity, age, sexual orientation, religion, belief, or disability.

INDHP