Cyber Security Engineer

Company: Hamilton Barnes
Apply for the Cyber Security Engineer
Location:
Job Description:

Security Consultant/Engineer- 12 Month Contract- Inside IR35- Hybrid in Multiple UK Locations

Contract Type: Initial 12 Month Contract (Inside IR35)

Rate: £450 per day Inside IR35

Location: Hybrid 2x a week in preferred location (Bristol, Leeds, Manchester, Edinburgh)

Role Overview:

We are looking for multiple Security Engineers/Consultants to join on a 12-month hybrid contract across multiple UK locations – Bristol, Leeds, Manchester, or Edinburgh (2 days on-site). The role involves designing and delivering secure solutions aligned with industry frameworks, performing threat modelling, and collaborating with technical and business stakeholders to communicate security risks and decisions across complex enterprise environments.

Key Responsibilities:

  • Design secure solutions, documenting key security controls and adhering to security standards across networks, applications, and cloud environments
  • Perform threat modelling by deconstructing technical solutions, identifying threats and vulnerabilities using recognised methodologies such as STRIDE and MITRE ATT&CK
  • Analyse risks and benefits of design options to support safe architectural decisions, defining security testing requirements and assessing findings
  • Communicate technical security concepts clearly to both technical and non-technical audiences, providing security direction, governance, and assurance
  • Apply Agile methodologies to support engineers and deliver across multiple product initiatives simultaneously, driving engineering excellence

What You Will Ideally Bring:

  • Broad knowledge of modern enterprise technologies including cloud and AI, with exposure to contemporary architectures such as RESTful APIs and containerised microservices
  • Up-to-date knowledge of emerging threats with practical experience applying threat modelling frameworks including STRIDE and MITRE ATT&CK
  • Strong understanding of cybersecurity domains across endpoint, network, cryptography, information management, and IAM in enterprise environments
  • Awareness of industry security standards including ISO 27001, NIST, PCI DSS, COBIT, and OWASP, with experience in public and/or private cloud environments
  • Desirable: security certifications such as CISSP, CISM, CCSP, CEH, or OSCP

Posted: May 30th, 2026