We are looking for a hands-on Security Engineer to strengthen our security operations and take ownership of key risks and controls. This is the first dedicated security hire in the team and will play a central role in improving monitoring, detection, data protection, and automation across the organisation. This is an internal role focused on securing our own IT systems and infrastructure.
You will combine technical security engineering with practical compliance ownership, ensuring that our ISO 27001 and UK Cyber Essentials controls are not just documented, but effective and measurable.
As our first dedicated security engineer, you will help shape how security operates day to day. The scope is broad by design, but success in this role is not about doing everything at once. It is about understanding risk, making sound technical judgments, and prioritising the work that meaningfully reduces risk for the business.
We value pragmatism over perfection. You will be expected to identify gaps, propose improvements, and execute in a structured, risk-based way, focusing on impact rather than activity.
This role is ideal for someone who enjoys building, automating, and improving systems while taking real ownership and influencing how security evolves as the company grows.