At a Glance
- Tasks: Join us as a SOC Engineer, monitoring and responding to cyber threats daily.
- Company: Acumen Cyber is a leading 24/7 Security Operations Centre protecting businesses from cyber threats.
- Benefits: Enjoy a competitive salary, paid training, and a people-first culture with flexible work options.
- Why this job: Make an impact from day one while working with cutting-edge technology in a supportive team.
- Qualifications: Hands-on experience with SIEM and EDR platforms, plus strong analytical skills are essential.
- Other info: Location: Glasgow; full-time role with shift rotation and on-call premiums.
The predicted salary is between 28800 - 42000 Β£ per year.
Acumen Cyber is a 24/7 Security Operations Centre (SOC) that keeps modern businesses safe from ever-evolving cyber threats. Working shoulder-to-shoulder with world-class technology partners β including Elastic, Recorded Future, SentinelOne and CrowdStrike β we design, build and run security programmes that let our clients focus on what matters most: growing their business with confidence.
What youβll do
As a SOC Engineer youβll be on the front line of threat detection and response. Your day-to-day will include:
- Continuously monitoring SIEM and other security tooling to identify suspicious activity in real time.
- Triaging, analysing and responding to alerts from multiple sources (e.g. SentinelOne EDR, CrowdStrike Falcon, network IDS/IPS).
- Leveraging threat-intel feeds (Recorded Future, public CERT advisories, dark-web monitoring) to enrich investigations and improve detection logic.
- Leading end-to-end incident response: containment, eradication, root-cause analysis, lessons learned and reporting.
- Developing and fine-tuning detection rules, playbooks and automation scripts in Elastic, SOAR and EDR platforms.
- Collaborating closely with customers, partners and internal engineering teams to harden environments, close control gaps and share best practices.
- Proactively hunt for threats using log data, endpoint telemetry and threat-intelligence.
- Staying ahead of the curve β researching new tactics, techniques and procedures (TTPs) and feeding them back into our SOC strategy.
What you\βll bring
- Hands-on skill with at least one SIEM (Elastic preferred; Splunk, Sentinel etc. are also welcome).
- Practical exposure to EDR platforms β ideally SentinelOne, CrowdStrike, or Defender for Endpoint.
- Solid grasp of TCP/IP, common protocols and core security controls (firewalls, IDS/IPS, NAC, VPN).
- Incident investigation know-how: containment, eradication, root-cause analysis and reporting.
- Sharp analytical mindset and clear communication β able to brief both technical and non-technical audiences.
- Right to work in the UK and ability to pass BPSS / SC vetting.
- Certifications such as GCIH, GCIA, GCFA, OSCP or Elastic Certified Analyst.
- Experience crafting Kibana visualisations and tuning Elastic detection rules.
- Familiarity with SOAR platforms plus scripting (Python, PowerShell) for automation.
- Knowledge of cloud-native security controls (AWS Security Hub, Azure Sentinel, Google Chronicle).
- MITRE ATT&CK mapping, purple-team or threat-hunting exercises.
- Prior work in a 24 Γ 7 SOC with formal shift hand-offs.
- Impact from day one β Youβll help shape the detection & response capabilities that protect hundreds of thousands of endpoints and critical workloads.
- Cutting-edge tech stack β Direct access to Elastic, Recorded Future, SentinelOne, CrowdStrike and other market-leading tools.
- Continuous growth β Paid training budget, certification support and dedicated research time so you can stay one step ahead of attackers.
- People-first culture β Small, highly skilled teams, zero red-tape and leadership that actually listens.
- Competitive package β Salary dependent on experience, on-call allowance, generous holiday and other benefits.
Logistics
- Location: Glasgow HQ.
- Hours: Full-time, 37.5 hrs / week. SOC operates 24 Γ 7; shift rotation and on-call premiums apply.
- Eligibility: You must have the right to work in the UK and be able to pass BPSS and/or SC vetting.
Ready to defend the future?
Click βApplyβ on our LinkedIn job listing, attach your CV, and include a brief note about your proudest incident-response win. We review applications on a rolling basis and aim to get back to every candidate within five business days.
Seniority level
-
Seniority level
Entry level
Employment type
-
Employment type
Full-time
Job function
-
Job function
Engineering and Information Technology
-
Industries
Computer and Network Security
Referrals increase your chances of interviewing at Acumen Cyber by 2x
Get notified about new Engineer jobs in Glasgow, Scotland, United Kingdom.
Airdrie, Scotland, United Kingdom 3 weeks ago
Glasgow, Scotland, United Kingdom 5 days ago
Clinical Engineer β Associate Practitioner Clinical Technologist
Glasgow, Scotland, United Kingdom 5 days ago
Glasgow, Scotland, United Kingdom 2 weeks ago
Glasgow, Scotland, United Kingdom 3 weeks ago
Glasgow, Scotland, United Kingdom 7 months ago
Glasgow, Scotland, United Kingdom 1 week ago
Clinical Engineer β Practitioner Clinical Technologist β Renal Dialysis
Glasgow, Scotland, United Kingdom 5 days ago
Glasgow, Scotland, United Kingdom 3 weeks ago
Glasgow, Scotland, United Kingdom 1 week ago
Greenock, Scotland, United Kingdom 1 month ago
Glasgow, Scotland, United Kingdom 1 week ago
Clinical Engineer β Practitioner Clinical Technologist β Renal Dialysis
Glasgow, Scotland, United Kingdom 6 days ago
Glasgow, Scotland, United Kingdom 6 days ago
Glasgow, Scotland, United Kingdom 6 days ago
Renfrew, Scotland, United Kingdom 1 week ago
Renfrew, Scotland, United Kingdom 1 month ago
Glasgow, Scotland, United Kingdom 2 weeks ago
Bellshill, Scotland, United Kingdom 2 weeks ago
Glasgow, Scotland, United Kingdom 1 month ago
Stirling, Scotland, United Kingdom 3 weeks ago
Irvine, Scotland, United Kingdom 3 weeks ago
Glasgow, Scotland, United Kingdom 3 weeks ago
Industrial Process Engineer β New Product Introduction
Glasgow, Scotland, United Kingdom 2 weeks ago
Glasgow, Scotland, United Kingdom 1 week ago
Glasgow, Scotland, United Kingdom 1 month ago
Glasgow, Scotland, United Kingdom 1 day ago
Glasgow, Scotland, United Kingdom 2 days ago
Glasgow, Scotland, United Kingdom 5 hours ago
Glasgow, Scotland, United Kingdom 1 week ago
Irvine, Scotland, United Kingdom 2 weeks ago
Glasgow, Scotland, United Kingdom 2 weeks ago
Glasgow, Scotland, United Kingdom 2 weeks ago
Weβre unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
SOC Engineer employer: Acumen Cyber
Contact Detail:
Acumen Cyber Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land SOC Engineer
β¨Tip Number 1
Familiarise yourself with the specific SIEM tools mentioned in the job description, especially Elastic. Consider setting up a home lab to practice monitoring and responding to alerts, as hands-on experience will give you a significant edge.
β¨Tip Number 2
Stay updated on the latest cyber threats and trends by following relevant blogs, forums, and threat intelligence feeds. This knowledge will not only help you in interviews but also demonstrate your proactive approach to threat detection.
β¨Tip Number 3
Engage with the cybersecurity community through platforms like LinkedIn or local meetups. Networking can lead to valuable insights and connections that may help you get noticed by hiring managers at Acumen Cyber.
β¨Tip Number 4
Prepare to discuss your incident response experiences in detail. Think of specific examples where you successfully contained or eradicated threats, as this will showcase your practical skills and analytical mindset during the interview.
We think you need these skills to ace SOC Engineer
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the SOC Engineer role. Emphasise your hands-on experience with SIEM tools, EDR platforms, and incident response capabilities.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and detail your proudest incident-response win. This is your chance to showcase your analytical mindset and communication skills.
Highlight Relevant Certifications: List any relevant certifications such as GCIH, GCIA, or OSCP prominently in your application. These credentials can set you apart from other candidates.
Showcase Technical Skills: Be specific about your technical skills in your application. Mention your familiarity with TCP/IP, scripting languages like Python or PowerShell, and any experience with cloud-native security controls.
How to prepare for a job interview at Acumen Cyber
β¨Know Your Tools
Familiarise yourself with the specific SIEM and EDR tools mentioned in the job description, such as Elastic, SentinelOne, and CrowdStrike. Be prepared to discuss your hands-on experience with these platforms and how you've used them in past roles.
β¨Demonstrate Incident Response Skills
Be ready to share examples of your incident response experiences. Discuss the steps you took for containment, eradication, and root-cause analysis, highlighting any lessons learned that improved your future responses.
β¨Showcase Analytical Thinking
Prepare to demonstrate your analytical mindset by discussing how you approach threat detection and response. Use specific scenarios to illustrate your thought process when triaging alerts and conducting investigations.
β¨Communicate Clearly
Practice explaining complex technical concepts in simple terms. You may need to communicate with both technical and non-technical audiences, so being able to articulate your thoughts clearly will be crucial during the interview.