SOC Operations Engineer - EDR & NDR Platforms in Devon, Plymouth

SOC Operations Engineer - EDR & NDR Platforms in Devon, Plymouth

Devon +1 Full-Time 60000 - 80000 £ / year (est.) No working from home possible
Beazley Security

At a Glance

  • Tasks: Manage and optimise cutting-edge EDR and NDR platforms for top-tier cybersecurity.
  • Company: Join Beazley Security, a global leader in cybersecurity solutions.
  • Benefits: Enjoy remote work, competitive salary, flexible hours, and generous parental leave.
  • Other info: Collaborative culture focused on innovation and continuous improvement.
  • Why this job: Make a real impact in cybersecurity while growing your skills in a dynamic environment.
  • Qualifications: 3+ years in security operations with hands-on experience in EDR/NDR platforms.

The predicted salary is between 60000 - 80000 £ per year.

Beazley Security is a global cybersecurity firm committed to helping clients enable advanced cyber defenses that reduce risk with quantifiable results. We are comprised of top talent from private industry, government, intelligence, and law enforcement who are specialists in threat detection, incident response, digital forensics, offensive security, risk management, and cyber resilience. As a subsidiary of specialty insurance giant, Beazley, we have been at the forefront of cyber insurance management and breach response activities for business clients in the US, UK, and Europe since 2017.

As Beazley Security, the company will have an expanded scope, leveraging nearly two decades of cyber incident experience, a strong services division, and a business strategy focused on growth, to realise our goals and deliver benefits to clients. We are committed to upholding our core values of Belonging, Integrity, Service, Accountability, and Curiosity, which are essential to creating a strong and inclusive workplace culture, as well as delivering world-class cybersecurity solutions to our clients worldwide.

The SOC Operations Engineer is responsible for the operational management, optimisation, and lifecycle maintenance of Beazley Group's core Endpoint Detection and Response (EDR) and Network Detection and Response (NDR) platforms. Working within the IT Security function and in close collaboration with the Beazley Security MDR SOC, this role ensures these detection technologies remain effective, resilient, and optimally tuned to support rapid threat detection and response. The position bridges engineering with supporting day-to-day SOC operations.

The individual in this role will be responsible for owning the platforms, coordinating upgrades and enhancements, improving alert fidelity, and assisting the SOC teams with advanced investigations, containment support, and continuous improvement.

Responsibilities:

  • Platform Ownership & Maintenance: Act as the technical owner for SOC systems and operations, ensuring full operational coverage and integration across the enterprise estate. Maintain the physical and virtual infrastructure (appliances, sensors, collectors), planning upgrades, hardware refreshes, and configuration changes as required. Oversee policy, sensor deployment, and version control across all EDR/NDR agents and connectors. Validate data flow and health between endpoints, appliances, and the central XDR platform leveraged by the SOC. Coordinate with the SOC, vendors, and IT infrastructure teams to schedule upgrades, patching, and feature enablement.
  • Detection Engineering & Optimisation: Tune detection logic, behavioural models, and response policies to reduce false positives and improve threat visibility. Implement target NDR model optimisation, device tagging, and subnet labelling enhancements to support faster investigations. Maintain EDR platform configuration baselines and analytics dashboards. Support integration and data quality within the Beazley Security XDR platform to ensure reliable event correlation. Document all configuration changes, tuning decisions, and engineering work in line with IT Security change management processes.
  • SOC & Incident Support: Collaborate closely with the Beazley Security SOC, ensuring they have the right visibility, alert quality, and context to perform effective first-line detection and triage. Serve as part of the escalation group for security cases from the centralized SOC, assisting with containment and isolation activities during incidents where necessary. Provide subject-matter expertise on EDR and NDR telemetry sources during investigations and post-incident reviews. Contribute to root-cause analysis and recommend platform-level improvements following any potential incidents.
  • Proactive Threat Hunting & Intelligence Alignment: Partner with the Threat Intelligence team and MDR organisation to proactively hunt for malicious activity and validate emerging TTPs within Beazley's environment. Feed newly identified patterns back into SOC detection content and threat models.
  • Governance, Reporting & Continuous Improvement: Produce operational and executive reporting across all managed detection platforms. Participate in recurring technical optimisation sessions and quarterly business reviews with vendors. Track detection efficacy, platform uptime, and configuration drift metrics as part of the IT Security KPI set. Continuously assess opportunities for automation, enrichment, and process improvement.

Key Interfaces:

  • Internal: Head of IT Security, SOC Manager, Incident Response, Infrastructure, Cloud, and Networking teams.
  • External: Beazley Security MDR SOC.

Qualifications:

  • Minimum 3 years' experience in security operations, cyber engineering, or platform management.
  • Hands-on experience administering and optimising leading NDR and EDR platforms.
  • Strong understanding of endpoint telemetry, network analytics, and SOC workflows.
  • Experience planning and performing platform upgrades, integrations, and lifecycle management.
  • Familiarity with MITRE ATT&CK and threat-hunting principles.
  • Ability to collaborate effectively with SOC analysts, infrastructure teams, and vendors.
  • Excellent documentation, analytical, and communication skills.

Desirable Skills:

  • Experience working within hybrid SOC models (internal + managed service).
  • Exposure to Identity Threat Detection & Response (ITDR) solutions.
  • Certifications such as CySA+, GCIA, or equivalent.
  • Scripting or query language capability (SQL, PowerShell, Python).

Personal Attributes:

  • Highly organised and proactive, with strong ownership of assigned technologies.
  • Analytical thinker who thrives on improving systems and processes.
  • Collaborative and approachable, able to bridge operations, engineering, and intelligence teams.
  • Calm under pressure, with a methodical and disciplined approach to incident support.

Beazley Security offers:

  • Remote work opportunity.
  • Competitive salary with a bonus structure.
  • Flexible working arrangements to support balance.
  • Generous parental leave to support your family.
  • Private healthcare for peace of mind.
  • A strong pension scheme to help secure your future.
  • A lifestyle allowance to enhance your well-being.
  • Life insurance and long-term disability coverage for added security.
  • Opportunities to grow through career advancement and ongoing training.
  • Access to industry conferences and events for professional development.

Beazley Security is an equal opportunity employer. We embrace diversity and are committed to creating an inclusive environment for all employees.

Locations

DevonPlymouth

SOC Operations Engineer - EDR & NDR Platforms in Devon, Plymouth employer: Beazley Security

Beazley Security is an exceptional employer that fosters a collaborative and innovative work culture, where your expertise in security operations will be valued and developed. With a strong focus on employee growth, we offer continuous learning opportunities and the chance to work with cutting-edge technologies in a dynamic hybrid SOC environment. Located in a vibrant area, our team enjoys a supportive atmosphere that encourages creativity and teamwork, making it a rewarding place to advance your career.

Beazley Security

Contact Details:

Beazley Security Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land SOC Operations Engineer - EDR & NDR Platforms in Devon, Plymouth

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Beazley Security, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Beazley Security

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Beazley Security. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace SOC Operations Engineer - EDR & NDR Platforms in Devon, Plymouth

Endpoint Detection and Response (EDR)
Network Detection and Response (NDR)
Threat Detection
Incident Response
Digital Forensics
Risk Management
Cyber Resilience

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Beazley Security insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Beazley Security that you’re committed to staying ahead in the game.

How to prepare for a job interview at Beazley Security

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Beazley Security to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Beazley Security.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.