×
Register Here to Apply for Jobs or Post Jobs. X

Information Security Engineer

Job in Glasgow, Glasgow City Area, G1, Scotland, UK
Listing for: Clyde & Co
Full Time position
Listed on 2026-07-14
Job specializations:
  • IT/Tech
    Cybersecurity, IT Consultant, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 70000 - 90000 GBP Yearly GBP 70000.00 90000.00 YEAR
Job Description & How to Apply Below

Type: Full Time
Duration: Permanent
Location: Glasgow
Working Pattern: +2 days working from the office, 3 days remote
Department: Information Security

The Role

This role acts as a trusted Information Security advisor, providing consultancy and hands‑on support across project‑based initiatives and internal change. You will work closely with IT, Architecture, and Cyber teams to ensure secure design, implementation, and continuous assurance of technologies across the firm, with a strong focus on cloud environments (Azure / M365).

Key Responsibilities
  • As a trusted Info Sec advisor provide internal consultancy and support to your peers and the wider team working on project‑based initiatives and internal changes.
  • Attend and participate in the Technical Design Authority to provide expert security review and ensure assurance of new designs and initiatives.
  • Work closely with all IT teams (Cloud, Network, Infrastructure, Data etc.) to ensure continuous risk assessment is undertaken for changes and ensure additions to the environment are assessed against industry best practice.
  • Work closely with Solution Architects to ensure high and low‑level designs consider security control requirements against industry standards. Where required audit final implementations against the approved designs.
  • Lead the security assurance capability for the cloud services in use at the firm with a focus on Azure / MS 365 initially. Advise on the continuous health of the environments and propose security control improvements as required.
  • Ensure all designs and platform configurations are in compliance with Cyber Essentials Plus, CIS standards and technical requirements agreed with clients.
  • Work with the teams to update or create hardening standards for existing or new technologies as they are onboarded.
  • This role requires an element of hands‑on approach for evaluation, design and risk assessment to ensure security outcomes can be fully defined and progressed effectivity.
  • As external security testing is required (PEN / Web App testing etc) liaise with testing providers and project teams to ensure the scope is well defined and testing is successfully completed. Work with the project teams to ensure remediation actions are completed and retesting takes place.
  • Support the Cyber Defence team with ensuing all new technologies are onboarded successfully by identifying the correct data sources, event type and alerts to be captured. Work with the Cyber Defence team and the managed security service provider to build suitable use cases.
  • Stay current and up to date on new emerging technologies and associated vulnerabilities and risk.
  • Assist the Cyber Solutions Lead with developing the Cyber Solution Strategy for the firm. Ensure the firm continues to have robust and effective security controls in place whilst maximising utilisation of existing technologies and synergies.
  • Work with the Enterprise Architect team to ensure Security Architecture considerations are embedded into existing design and assurance processes.
  • Work with the Cyber Solutions Lead to mature existing Security Architecture Polices and Standards documentation and ensure alignment to current best practices.
Essential Skills & Experience
  • Proven experience of working in an Information Security / Cyber Security role with a technical focus. Experience with in the legal or professional services industry is ideal, but not essential.
  • Proven experience of undertaking risk assessments and technical design reviews with the ability to absorb information quickly across a broad and diverse environment whilst identifying key areas for further scrutiny.
  • Working knowledge of SIEM (Crowd Strike / MS Sentinel), Endpoint Detection & Response (Crowd Strike / MS Defender), Vulnerability Management (Rapid7), Firewalls, and industry standard security tools.
  • Proven experience working with the Azure / MS365 E5 security suite (Defender, Conditional Access Policies, CASB etc.). Demonstrable knowledge of the security controls available and how to pragmatically implement them to maximize the firm’s security posture.
  • Experience working with AI technologies, implementing or risk assessing agentic AI agents and MCP Server /…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary