SOC Engineer

SOC Engineer

Glasgow Full-Time 28800 - 42000 Β£ / year (est.) No home office possible
Go Premium
A

At a Glance

  • Tasks: Join us as a SOC Engineer, monitoring and responding to cyber threats daily.
  • Company: Acumen Cyber is a leading 24/7 Security Operations Centre protecting businesses from cyber threats.
  • Benefits: Enjoy a competitive salary, paid training, and a people-first culture with flexible work options.
  • Why this job: Make an impact from day one while working with cutting-edge technology in a supportive team.
  • Qualifications: Hands-on experience with SIEM and EDR platforms, plus strong analytical skills are essential.
  • Other info: Location: Glasgow; full-time role with shift rotation and on-call premiums.

The predicted salary is between 28800 - 42000 Β£ per year.

Acumen Cyber is a 24/7 Security Operations Centre (SOC) that keeps modern businesses safe from ever-evolving cyber threats. Working shoulder-to-shoulder with world-class technology partners – including Elastic, Recorded Future, SentinelOne and CrowdStrike – we design, build and run security programmes that let our clients focus on what matters most: growing their business with confidence.

What you’ll do

As a SOC Engineer you’ll be on the front line of threat detection and response. Your day-to-day will include:

  • Continuously monitoring SIEM and other security tooling to identify suspicious activity in real time.
  • Triaging, analysing and responding to alerts from multiple sources (e.g. SentinelOne EDR, CrowdStrike Falcon, network IDS/IPS).
  • Leveraging threat-intel feeds (Recorded Future, public CERT advisories, dark-web monitoring) to enrich investigations and improve detection logic.
  • Leading end-to-end incident response: containment, eradication, root-cause analysis, lessons learned and reporting.
  • Developing and fine-tuning detection rules, playbooks and automation scripts in Elastic, SOAR and EDR platforms.
  • Collaborating closely with customers, partners and internal engineering teams to harden environments, close control gaps and share best practices.
  • Proactively hunt for threats using log data, endpoint telemetry and threat-intelligence.
  • Staying ahead of the curve – researching new tactics, techniques and procedures (TTPs) and feeding them back into our SOC strategy.

What you\’ll bring

  • Hands-on skill with at least one SIEM (Elastic preferred; Splunk, Sentinel etc. are also welcome).
  • Practical exposure to EDR platforms – ideally SentinelOne, CrowdStrike, or Defender for Endpoint.
  • Solid grasp of TCP/IP, common protocols and core security controls (firewalls, IDS/IPS, NAC, VPN).
  • Incident investigation know-how: containment, eradication, root-cause analysis and reporting.
  • Sharp analytical mindset and clear communication – able to brief both technical and non-technical audiences.
  • Right to work in the UK and ability to pass BPSS / SC vetting.
  • Certifications such as GCIH, GCIA, GCFA, OSCP or Elastic Certified Analyst.
  • Experience crafting Kibana visualisations and tuning Elastic detection rules.
  • Familiarity with SOAR platforms plus scripting (Python, PowerShell) for automation.
  • Knowledge of cloud-native security controls (AWS Security Hub, Azure Sentinel, Google Chronicle).
  • MITRE ATT&CK mapping, purple-team or threat-hunting exercises.
  • Prior work in a 24 Γ— 7 SOC with formal shift hand-offs.
  • Impact from day one – You’ll help shape the detection & response capabilities that protect hundreds of thousands of endpoints and critical workloads.
  • Cutting-edge tech stack – Direct access to Elastic, Recorded Future, SentinelOne, CrowdStrike and other market-leading tools.
  • Continuous growth – Paid training budget, certification support and dedicated research time so you can stay one step ahead of attackers.
  • People-first culture – Small, highly skilled teams, zero red-tape and leadership that actually listens.
  • Competitive package – Salary dependent on experience, on-call allowance, generous holiday and other benefits.

Logistics

  • Location: Glasgow HQ.
  • Hours: Full-time, 37.5 hrs / week. SOC operates 24 Γ— 7; shift rotation and on-call premiums apply.
  • Eligibility: You must have the right to work in the UK and be able to pass BPSS and/or SC vetting.

Ready to defend the future?

Click β€œApply” on our LinkedIn job listing, attach your CV, and include a brief note about your proudest incident-response win. We review applications on a rolling basis and aim to get back to every candidate within five business days.

Seniority level

  • Seniority level

    Entry level

Employment type

  • Employment type

    Full-time

Job function

  • Job function

    Engineering and Information Technology

  • Industries

    Computer and Network Security

Referrals increase your chances of interviewing at Acumen Cyber by 2x

Get notified about new Engineer jobs in Glasgow, Scotland, United Kingdom.

Airdrie, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 5 days ago

Clinical Engineer – Associate Practitioner Clinical Technologist

Glasgow, Scotland, United Kingdom 5 days ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 7 months ago

Glasgow, Scotland, United Kingdom 1 week ago

Clinical Engineer – Practitioner Clinical Technologist – Renal Dialysis

Glasgow, Scotland, United Kingdom 5 days ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 1 week ago

Greenock, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 1 week ago

Clinical Engineer – Practitioner Clinical Technologist – Renal Dialysis

Glasgow, Scotland, United Kingdom 6 days ago

Glasgow, Scotland, United Kingdom 6 days ago

Glasgow, Scotland, United Kingdom 6 days ago

Renfrew, Scotland, United Kingdom 1 week ago

Renfrew, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Bellshill, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 1 month ago

Stirling, Scotland, United Kingdom 3 weeks ago

Irvine, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Industrial Process Engineer – New Product Introduction

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 1 week ago

Glasgow, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 1 day ago

Glasgow, Scotland, United Kingdom 2 days ago

Glasgow, Scotland, United Kingdom 5 hours ago

Glasgow, Scotland, United Kingdom 1 week ago

Irvine, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr

SOC Engineer employer: Acumen Cyber

Acumen Cyber is an exceptional employer, offering a dynamic work environment in Glasgow where SOC Engineers can thrive on the front lines of cybersecurity. With a people-first culture, competitive benefits, and continuous growth opportunities through paid training and certification support, employees are empowered to develop their skills while working with cutting-edge technology. Join a small, skilled team that values your contributions and fosters innovation without the constraints of red tape.
A

Contact Detail:

Acumen Cyber Recruiting Team

StudySmarter Expert Advice 🀫

We think this is how you could land SOC Engineer

✨Tip Number 1

Familiarise yourself with the specific SIEM tools mentioned in the job description, especially Elastic. Consider setting up a home lab to practice monitoring and responding to alerts, as hands-on experience will give you a significant edge.

✨Tip Number 2

Stay updated on the latest cyber threats and trends by following relevant blogs, forums, and threat intelligence feeds. This knowledge will not only help you in interviews but also demonstrate your proactive approach to threat detection.

✨Tip Number 3

Engage with the cybersecurity community through platforms like LinkedIn or local meetups. Networking can lead to valuable insights and connections that may help you get noticed by hiring managers at Acumen Cyber.

✨Tip Number 4

Prepare to discuss your incident response experiences in detail. Think of specific examples where you successfully contained or eradicated threats, as this will showcase your practical skills and analytical mindset during the interview.

We think you need these skills to ace SOC Engineer

Hands-on experience with SIEM tools (Elastic preferred)
Practical knowledge of EDR platforms (e.g., SentinelOne, CrowdStrike)
Strong understanding of TCP/IP and common protocols
Familiarity with core security controls (firewalls, IDS/IPS, NAC, VPN)
Incident investigation skills including containment and root-cause analysis
Analytical mindset for threat detection and response
Effective communication skills for technical and non-technical audiences
Experience with Kibana visualisations and tuning detection rules in Elastic
Knowledge of SOAR platforms and scripting (Python, PowerShell)
Understanding of cloud-native security controls (AWS Security Hub, Azure Sentinel)
Familiarity with MITRE ATT&CK framework
Experience in a 24/7 SOC environment
Certifications such as GCIH, GCIA, GCFA, OSCP or Elastic Certified Analyst

Some tips for your application 🫑

Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the SOC Engineer role. Emphasise your hands-on experience with SIEM tools, EDR platforms, and incident response capabilities.

Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and detail your proudest incident-response win. This is your chance to showcase your analytical mindset and communication skills.

Highlight Relevant Certifications: List any relevant certifications such as GCIH, GCIA, or OSCP prominently in your application. These credentials can set you apart from other candidates.

Showcase Technical Skills: Be specific about your technical skills in your application. Mention your familiarity with TCP/IP, scripting languages like Python or PowerShell, and any experience with cloud-native security controls.

How to prepare for a job interview at Acumen Cyber

✨Know Your Tools

Familiarise yourself with the specific SIEM and EDR tools mentioned in the job description, such as Elastic, SentinelOne, and CrowdStrike. Be prepared to discuss your hands-on experience with these platforms and how you've used them in past roles.

✨Demonstrate Incident Response Skills

Be ready to share examples of your incident response experiences. Discuss the steps you took for containment, eradication, and root-cause analysis, highlighting any lessons learned that improved your future responses.

✨Showcase Analytical Thinking

Prepare to demonstrate your analytical mindset by discussing how you approach threat detection and response. Use specific scenarios to illustrate your thought process when triaging alerts and conducting investigations.

✨Communicate Clearly

Practice explaining complex technical concepts in simple terms. You may need to communicate with both technical and non-technical audiences, so being able to articulate your thoughts clearly will be crucial during the interview.

SOC Engineer
Acumen Cyber
Location: Glasgow
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

A
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>