Senior Cyber Security Engineer
Start Date: TBC
£600 per day
Location: TBC | Hybrid Arrangement
We’re partnering with a growing technology organisation to appoint an experienced Senior Cyber Security Engineer specialising in CyberArk and privileged access management.
This is a senior technical role with responsibility for the design, deployment and ongoing health of security tooling across multiple managed client environments. CyberArk will be your deepest area of expertise, complemented by hands-on experience across the wider modern security stack, including Zscaler, EDR, SIEM and vulnerability management.
The Opportunity
As Senior Cyber Security Engineer, you’ll take ownership of CyberArk and privileged access management solutions throughout their lifecycle—from initial discovery and architecture through to deployment, integration and ongoing optimisation.
You’ll act as the senior escalation point for identity and security-tooling incidents while helping ensure that privileged accounts are properly vaulted, rotated, monitored and protected.
Working closely with cyber operations, SOC, infrastructure and security consulting teams, you’ll also help develop security standards, improve tooling performance and contribute to the continued growth of the organisation’s PAM capability.
Key Responsibilities
You’ll play a central role in strengthening clients’ security environments by:
- Owning the design, deployment and operation of CyberArk solutions across managed client environments.
- Managing vaulting, session management, secrets management and privileged threat analytics.
- Designing PAM onboarding programmes covering discovery, scoping, policy design and rollout.
- Integrating PAM with Entra ID, conditional access, multifactor authentication and just-in-time access models.
- Establishing privileged-access standards and providing evidence for client audits, including ISO 27001 and Cyber Essentials Plus.
- Deploying, configuring and maintaining EDR, SIEM integrations, vulnerability-scanning and email-security solutions.
- Supporting Zscaler ZIA and ZPA deployments, configuration and policy development.
- Monitoring the health of the security-tooling estate, including product versions, coverage gaps, tuning quality and integration reliability.
- Automating deployments and operational processes using PowerShell or Python, APIs and shared automation libraries.
- Acting as a senior escalation point for identity and security-tooling incidents.
- Supporting major incident response activities when required.
- Producing clear technical designs, standards and operational runbooks.
- Contributing PAM and security-tooling expertise to service reviews and solution-scoping activities.
- Using AI-assisted workflows to support diagnostics, configuration reviews and technical documentation.
About You
You’ll be an experienced security engineer with deep CyberArk and privileged access management expertise. You’ll be confident owning complex technical solutions and communicating effectively with both technical teams and client stakeholders.
You will also have:
- At least five years’ experience within security engineering.
- A minimum of two years’ hands-on experience designing and administering CyberArk PAM Self-Hosted or Privilege Cloud.
- Expert knowledge of privileged access management and identity and access management.
- Strong experience with security tooling and EDR platforms.
- Experience deploying or operating Zscaler ZIA and ZPA.
- Hands-on experience with at least two of the following: EDR, SIEM, vulnerability management or email security.
- Advanced knowledge of network security, including firewalls, VPNs and VLANs.
- Strong vulnerability-management, monitoring and observability experience.
- Strong PowerShell or Python scripting skills, applied to security-tooling automation and integration.
- Working knowledge of cloud platforms such as Azure, AWS or GCP.
- Experience supporting security operations, incident management and SOC environments.
- Strong documentation, reporting and stakeholder-communication skills.
- The ability to work across multiple client environments and manage competing technical priorities.
- MSP, MSSP or other multi-client environment experience, although this is not essential.
- Previous exposure to client security audits, which would be advantageous.
Certifications:
You’ll ideally hold:
- CyberArk Defender certification or equivalent demonstrable hands-on experience.
The following certifications would also be advantageous:
- CyberArk Sentry.
- CyberArk Guardian.
- Zscaler professional-level certification covering ZIA or ZPA.
- Microsoft SC-300, SC-200 or AZ-500.
- Relevant EDR vendor certifications.
Why Apply?
This is an excellent opportunity to establish yourself as a recognised specialist within a growing privileged access management practice.
In return, you’ll benefit from:
- A rate of £600 per day.
- A senior technical role with ownership of complex CyberArk and PAM solutions.
- Exposure to varied security environments across multiple clients.
- A funded professional-certification pathway, including CyberArk and Zscaler development.
- The opportunity to influence security standards, automation and technical best practices.
- A potential progression route into cyber operations leadership or solution architecture.
- The chance to work with a broad modern security stack in a collaborative technical environment.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
By applying you are confirming you are happy to be added to the Addition Solutions mailing list regarding future suitable positions. You can opt out of this at any time simply by contacting one of our consultants.






