Security Engineer II
Overview
The purpose of the Network Security Engineer II is to deliver and optimise cyber security engineering capabilities across platforms by implementing controls, strengthening system resilience, and managing security risks.
Requirements
- A qualification in computer science, cybersecurity, or any related field (advantageous)
- Recognised industry certification in cybersecurity, such as CISSP (essential)
- +4 years of experience in cybersecurity, with solid experience across a variety of security products including firewalls, EDR, SIEM, WAF, IAM, PAM, DLP and encryption solutions or similar (essential)
- Knowledge of services related to cloud compute, network, storage, content delivery, administration and security (essential)
- Good understanding and exposure to Information Security standards, architecture and models (essential)
- Hands-on knowledge of automation and DevSecOps skills (essential)
- Good understanding of software development principles, including design patterns, code structure, programming languages, continuous integration, continuous deployment and deployment orchestration (preferred)
- Experience in creating new ways to solve existing production security issues and recommending security enhancements (desired)
- Experience in Incident Response, including the ability to document security threats, resolve technical faults and allocate resources to deliver real solutions in a cost-effective way (desired)
Responsibilities
- Implement and maintain security controls across systems, networks, and platforms
- Deploy and optimise security technologies, for example SIEM, EDR, IAM, WAF, DLP and encryption
- Support the installation, configuration, and improvement of security tools and processes
- Ensure platforms comply with defined security standards and requirements
- Monitor systems and networks for security incidents and vulnerabilities
- Investigate, analyse, and respond to security events in collaboration with relevant teams
- Conduct vulnerability assessments, log analysis, and continuous monitoring
- Support incident response processes and contribute to remediation actions
- Identify security gaps and recommend enhancements to reduce risk exposure
- Evaluate and implement new security technologies and best practices
- Conduct research on emerging threats, vulnerabilities, and control strategies
- Develop and maintain security standards, policies, and procedures
- Translate technical security requirements into business-aligned recommendations
- Provide guidance to stakeholders on security risks and control effectiveness
- Support alignment to information security frameworks and best practices
- Automate security processes, controls, and reporting for operational efficiency
- Support DevSecOps practices by integrating security into development pipelines
- Enable improved visibility through metrics, reporting, and threat intelligence feeds
- Work closely with engineering teams to embed security into system design
How to apply
Verify before you apply
SpanSam summarises opportunities for easier discovery. Always confirm the closing date, eligibility requirements and submission instructions on the original source before sending personal information or documents.
About this listing: SpanSam is an opportunity discovery service and is not the hiring employer unless explicitly stated. Application decisions and source-listing changes are controlled by the employer or institution.