Overview
In this role you will respond to escalated security incidents around the clock and strengthen SOC capabilities. You will operate private cloud deployments for critical public sector customers and collaborate with product teams to improve security tooling. You will conduct threat hunting, participate in purple team events, and maintain dashboards to detect anomalous activity. This position combines hands-on incident response with proactive platform optimization to protect high-security environments.
Responsibilities
- Respond to escalated security incidents 24x7x365 and coordinate swift resolutions
- Build and improve security platform efficiencies to enhance SOC effectiveness
- Conduct threat hunting activities on the platform
- Participate in purple team events to validate detections and response
- Review and develop SOC dashboards for anomalous activity
- Operate and secure private cloud deployments for government customers
- Collaborate with Google product teams to improve security technology
Key requirements
- Bachelor’s degree or equivalent practical experience
- Completed industry certifications such as CEH, GIAC or CompTIA Sec+
- 5 years of experience in SOC-related roles with incident response
- Experience in troubleshooting and programming with one or more languages
- Active or ability to obtain DV UK security clearance
- British citizen
- excellent problem-solving
- investigative skills
- SOC operations and incident response
- Threat hunting
- EDR and SIEM
- Kubernetes incident response
…
