Information Security Engineer (Endpoint Protection)

New Yesterday

ABOUT THE ROLEJoin the Information Security Engineering team at John Lewis Partnership to help build a secure future for an iconic brand. We work to protect our customers, Partners, and business against an ever‑evolving cyber threat landscape.The John Lewis Partnership's Information Security strategy is bold and ambitious. We provide a collection of security services, delivered via people, processes and technology. Working collaboratively, these services ensure that customers can shop with us efficiently, safely and securely, every single day.Our Threat Defence team is at the forefront of our cyber resilience, proactively monitoring threats, identifying vulnerabilities, and engineering robust security defences. Working in the Endpoint Protection pod, alongside the SIEM and Network pods, you'll be instrumental in developing cutting‑edge capabilities and empowering our Security Operations Centre to stay ahead of the latest threats.This is a great opportunity to directly shape our security posture, getting hands‑on with next‑generation cyber security tools. You'll thrive in an agile, supportive, and highly collaborative team where innovation isn't just encouraged, it's expected.In addition to your contractual pay, any time worked between 22:00 - 06:00 will attract Night Premium at a rate of £5.25 per hour. This will also apply to existing Partners who have enrolled onto Enhanced Hours Premium arrangements.Salary: £55,000 - £72,000 depending on experienceContract type: PermanentWorking pattern/flexible working: Based at our Bracknell Head Office with a flexible hybrid model (typically 1 day per week in the office, primarily Tuesdays, with ad‑hoc visits as required by business needs), we support a healthy work‑life balanceOn‑Call: Participate in a supportive on‑call rota (approx. 1 week in 6), with flexibility for leave and personal commitmentsKey ResponsibilitiesOwn the Endpoint Protection Ecosystem: Act as the senior engineer for our Endpoint Detection and Response (EDR) and Vulnerability Management platforms, ensuring 100% agent coverage and maximum efficacy across various operating systems.Optimise SentinelOne: Lead the configuration, policy tuning, and architectural evolution of SentinelOne EDR to proactively block sophisticated threats and ransomware.Engineering for Defence: Develop and deploy automated workflows for endpoint isolation, threat remediation, and health checks to ensure our critical security tooling remains resilient.Strategic Delivery: Drive the roadmap for security tool deployments, prioritising Endpoint Security while supporting integrated protections across Cloud and SaaS environments.Vulnerability & Hygiene: Leverage tools like Rapid7 and Google SecOps (Chronicle) to identify endpoint weaknesses and correlate telemetry for a unified view of our security posture.Collaborative Security: Partner with Infrastructure and DevOps teams to bake endpoint protection into the hardware lifecycle and standard builds.Essential skills/experience you’ll needExtensive proven Security Engineering expertise in at least one of these core areas:Endpoint Security: Endpoint Detection and Response, management of platform rules, supporting agents, and service improvementsVulnerability Scanning: Configuration and management of Endpoint, Network, and Web App scanning. Maintaining scanning infrastructureProven track record of successful agile delivery (Scrum or Kanban)Strong collaboration skills working with development, operations, and infrastructure teams within a security contextIn‑depth working knowledge of security best practices and frameworks (e.g. Mitre ATT&CK, NIST)Desirable skills/experience you may haveExperience with SIEM tooling and detection development (Google SecOps/Chronicle proficiency is of specific benefit)Experience securing Google Cloud environments, utilising tools such as Google Security Command Center or AWS Security HubRelevant Information Security certifications (e.g. CISSP) or a related degreeEmail Security: e.g. Secure Email Gateways, Phishing ProtectionJob DetailsClosing Date: April 25, 2026Pay: £52,000.00 - £77,000.00 AnnualContract Type: PermanentHours of Work: N/AJob Level: Partnership Level 7Where You’ll Be Working: Bracknell Campus, Doncastle Road, Bracknell, Berkshire, RG12 8YAImportant points to noteIt’s important to note that some of our roles are subject to pre‑employment vetting (which may include DBS checks for successful candidates). If required, you’ll be informed and provided with information about vetting during the recruitment process and we encourage you to complete any vetting documents quickly to avoid delays. Any DBS checks required will be carried out by a third‑party registered body and financial probity checks may also be required for some of our roles. #J-18808-Ljbffr
Location:
Bracknell
Job Type:
FullTime

We found some similar jobs based on your search