We are Kocho
Kocho recognise that technology on its own does not deliver change and offers technology adoption services alongside excellent technical consulting to enable our clients to achieve their business goals on their journey to Become Greater.
Our head office is in the heart of London’s West End and provides a comfortable working environment with flexible collaboration spaces that encourage our people to Become Greater with the aim to Do What’s Right.
Kocho is an equal opportunities employer. We make recruitment decisions based on qualifications, skill set and experiences. We consider all suitable candidates regardless of their age, sex, gender reassignment, race, religious beliefs, or lack thereof, marital status, disability or sexual orientation or any other protected characteristic. This is mindset aligns with our company values as we understand that we are Better Together.
Here is the role:
As a Security Engineer, you will play a critical role in safeguarding our organization, our clients and our Partners, from cyber threats. You will be responsible for implementing and maintaining security measures to protect our systems, networks, and data from unauthorised access, attacks, and breaches. You will work closely with other members of the Security Operations team and directly with clients to ensure that our security systems are up to date and effective. The Security Engineer provides a critical Tier 2 Incident Response/Escalation Service in addition to the above, though this is not their primary focus it is expected and Incident Response forms a portion of this role.
As a Security Engineer, your duties will include managing and executing phishing campaigns using our tooling, leading vulnerability scans, and providing valuable feedback with accurately tuned reports, in some instances you will be expected to deliver technical recommendations on regular Client cadences, with support from a Cyber Security Project Manager. You will spend the majority of your time working with the Microsoft Security Stack and Microsoft Sentinel, deploying and updating KQL analytical rules or Content Hub solutions to improve our detection and response capabilities. You will be responsible for responding to quarantined emails, ensuring that Defender threat policies are effective, and creating Playbooks (Azure Logic Apps) to automate workflows and improve efficiency. You will also be responsible for responding to escalated incidents from Tier 1 triage and covering incident response in your down time.
In addition to the above, you will regularly be expected to audit and improve Client security environments, largely based around the Microsoft 365 Security Suite, including items such as improving Secure Score, Device Tagging, Defender Policy Management, Exchange Management and all such tasks related to the general Security lifecycle.
This is what we need from you:
Would be great if you have:
And this is what we offer in return:
Copyright © 2025