Job Description
NextEnergy Group is a global renewable energy company focused on developing, investing in, and managing clean energy infrastructure, primarily in the solar sector. Through its various business units, it builds and operates renewable projects (such as solar, wind, and batteries), manages investment funds, and provides asset management services across the energy lifecycle. Overall, its mission is to accelerate the transition to sustainable energy while delivering strong financial returns for investors and clients. About the role: Working within our Technology & Digital Services (TDS) team, you'll gain hands-on experience across cyber security operations, risk management, governance, and security assurance while helping to protect critical systems and data. You'll work alongside experienced technology professionals and external partners, supporting real-world security initiatives, tackling emerging threats, and developing valuable technical and professional skills in a dynamic and innovative environment. Responsibilities: Monitor and triage cyber security alerts, incidents, investigations, and vulnerability management activities. Support identity and access management processes, including user access reviews and security controls. Maintain cyber security documentation, asset inventories, policies, standards, and audit evidence. Assist with risk management, supplier security assurance, compliance activities, and due diligence reviews. Support the review of security requirements, technical designs, and configurations across cloud and endpoint environments. Contribute to cyber security awareness initiatives, continuous improvement activities, and remediation programmes. Required skills: Strong interest in cyber security and technology, with a passion for learning Basic understanding of IT fundamentals, including networking, Windows, cloud services, and identity/access management Strong communication, teamwork, and interpersonal skills Excellent organisational, problem-solving, and attention-to-detail skills Ability to handle sensitive information with professionalism and integrity Proactive, accountable, and committed to continuous improvement Demonstrated interest in cyber security through study, certifications, or personal projects The following experience would be beneficial: Awareness of cybersecurity concepts such as phishing, malware, MFA, or vulnerability management Familiarity with Microsoft 365 or Azure environments Understanding of cybersecurity frameworks (e.g. NIST, ISO 27001) Entry-level certifications such as CompTIA ITF+, CompTIA Security+, or Microsoft Fundamentals Qualification requirements An A-Level in ICT OR an International Baccalaureate at Level 3 in ICT OR a Level 3 apprenticeship in a similar subject OR a BTEC Extended Diploma in IT (180 credits) You may also have a combination of qualifications and experience which demonstrate the minimum foundation needed for the programme. In this instance you could still be considered for th
Helpful guides: Getting Into IT and Technology: An Entry-Level Guide · 5 Things Tech Employers Actually Care About at Entry Level