Incident Response Engineer, UK Security Operations, Hampshire

Soc conduct
London, UK
8 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Shift work

Tech stack

Cyber Security Security Information and Event Management Private Cloud Environment SC Clearance Purple Team (Cyber Security) Software Coding

Requirements

Respond to security incidents escalated from the front line 24x7x365 team.Build and develop security efficiencies on the platform to improve the overall SOC.Conduct threat hunting activities on the platform and participate in purple team events.Review and develop security operations center dashboards for anomalous activity.Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Managemen (SIEM) etc.Minimum qualifications:Bachelor’s degree or equivalent practical experience.Completed relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.5 years of experience in SOC-related roles, responding to and addressing security incidents.Experience in technical troubleshooting and writing code in one or more programming languages.Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance.Preferred qualifications:Security+ or similar Cyber Security/Incident Response related certifications.Experience responding to security incidents on Kubernetes.Experience analyzing, triaging, and remediating common information security incidents.Understanding of common attacker tactics, tools, and techniques.Excellent problem-solving and investigative skills.Active UK Developed Vetting (DV) Security Clearance.As a part of the UK Security Operations (SecOps) team in Google Public Sector, you will deliver, operate and secure private cloud services. You will aim to provide the flexibility, reliability, and scalability of public cloud for customers with exceptionally high security requirements that can only be met in a private cloud environment. You will deliver and operate these private cloud deployments for the most critical customers, helping scale, secure and maintain the deployment whilst working closely with Google product teams to continually improve our technology.As a part of the SecOps, you will play a critical role in safeguarding Google’s public sector customers by proactively monitoring, detecting, and investigating security incidents around the clock. You will operate 24/7/365, the team ensures comprehensive coverage of environments and swiftly responds to suspicious activity. Your role involves responding to escalated security incidents and proactively enhancing the Security Operations Center (SOC) by building platform efficiencies, conducting threat hunting, and participating in purple team events. Your role will require participation in a rotating on-call schedule outside of core business hours and over the weekend to ensure security incidents can be swiftly resolved.Must be a British citizen to meet compliance and security clearance requirements. Office location will be a satellite site in Hampshire, with occasional travel to London. This is an on-site position, requiring a standard five day per week schedule in the office.Bachelor’s degree or equivalent practical experience.Completed relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.5 years of experience in SOC-related roles, responding to and addressing security incidents.Experience in technical troubleshooting and writing code in one or more programming languages.Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:33 min

Defining hybrid development and no-code software paradigms

Mark Piller · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

1:48 min

Overconfidence and poor secret management in software

Tino Sokic · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all