
IT Security Engineer
- Coedkernew, Newport
- £37,000-41,000 per year
- Permanent
- Full-time
- Lead deployment, configuration, and lifecycle management of Tenable Nessus and Tenable.SC across varied environments.
- Design and execute vulnerability scanning strategies aligned with business priorities and risk appetite.
- Validate results, investigate anomalies, and coordinate remediation with infra, network, hosting, and app teams.
- Maintain gold-standard documentation (guides, SOPs, user manuals).
- Build tailored dashboards and reports to drive visibility and informed decision-making.
- Embed vulnerability management into IT, security, and compliance workflows and planning.
- Provide training and mentorship to foster security awareness and technical excellence.
- Ensure practices meet Cyber Essentials Plus and ISO 27001 requirements, supporting audits and certification.
- Identify gaps, implement enhancements, and drive automation for continuous improvement.
- Integrate Tenable tools with SIEM, CMDB, and ticketing systems to streamline workflows.
- Serve as SME in vulnerability management for incident response, risk assessments, and architecture reviews.
- Represent the function in cross-functional forums, steering committees, and client engagements.
- Oversee patching strategies to achieve high compliance with infra and application teams.
- Knowledge of leading the deployment, configuration, and lifecycle management of Tenable Nessus and Tenable.SC across diverse infrastructure environments.
- Designing and execution of comprehensive vulnerability scanning strategies that align with the client business priorities and risk appetite.
- Making security recommendations based on market intelligence and new security threats.
- Validating scan results, investigating anomalies, and coordinating remediation efforts with infrastructure, hosting, networks and application teams.
- Working knowledge of developing and overseeing patching strategies, working with infrastructure and application teams to achieve high levels of compliance each month.
- Familiarity and understanding of ISO27001, GDPR and NIST
- Certification such as CISSP, CISM, CEH, or SC-200, AZ-500
Location: Newport, Hybrid
Security Clearance Level: holding SC clearance or eligible for SC clearance
Internal Recruiter: Lee
Salary: £37k-£41k dependent on experience
Benefits: 25 days annual leave with the option to buy additional days, health cash plan, life assurance, pension, and generous flexible benefits fund (3% of base salary).Although this role is advertised as full-time, we believe that flexibility at work can promote work/life balance, increase your motivation, reduce stress and improves performance and productivity. We support different ways of working and can offer a range of flexible working arrangements. So, if you're interested and need to work flexibly, we encourage you to apply and talk to us about what might be possible.Loved reading about this job and want to know more about us?
Sopra Steria's Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client's goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK's most complex safety- and security-critical markets.