At a Glance
- Tasks: Lead complex incident investigations and develop new detection rules in a dynamic SecOps environment.
- Company: Join a cutting-edge UK Fintech firm focused on building robust Cyber Defence capabilities.
- Benefits: Enjoy a fully remote role with a competitive salary, bonuses, and great benefits.
- Why this job: Shape the future of cyber security in a greenfield SOC while working with industry experts.
- Qualifications: 4+ years in a SOC, experience with DAC/IAC, and knowledge of Microsoft Security tools required.
- Other info: Opportunity to mentor junior team members and make a significant impact in a growing firm.
The predicted salary is between 75000 - 85000 Β£ per year.
Location β Fully Remote
Salary - Β£75-85k + Bonus + Benefits
Currently working with a UK Fintech firm who are in the process of building out their Cyber Defence capability and looking to bring in a Senior SecOps Engineer with experience working in cloud-native environment and automation-first mindset. This is a wide ranging role where youβll be responsible for both Engineering and Analysis; monitoring and responding to incidents whilst also developing new detection rules and enhancing their monitoring infrastructure and tooling. This is a relatively greenfield SecOps environment where security and detections have been built in from inception at the development stage β that mindset and experience implementing and deploying Detection-as-Code (DAC) and Infrastructure-as-Code (IAC) will be essential. This is an incredible opportunity for an experienced SecOps specialist with experience of both SecOps Analysis and Engineering to join a growing yet established firm at a crucial point as they completely build out their Information and Cyber Security capability. Whilst they have the fundamentals in place, this is a relatively greenfield SOC buildout, where you will work alongside the SOC Manager to shape their SOC monitoring, detection and response function.
Key Responsibilities:
- Act as a lead and technical escalation point on the most complex incidents and investigations.
- Develop and engineer new detection rules, automating monotonous tasks where possible and looking for opportunities to implement and deploy Detection-as-Code (DAC) and Infrastructure-as-Code (IAC) wherever possible.
- Proactively research emerging and potential threat actors as a way of developing rules to safeguard against potential future threats.
- Mentor and train junior team members through complex incident response investigations.
Key Requirements:
- Significant experience working in a SOC environment (4 years minimum), dealing with and responding to escalated and most high profile incidents.
- Experience working in hybrid-cloud SOC environments β Azure/AWS preferably.
- Practical experience both implementing and deploying DAC and IAC.
- Comprehensive knowledge and experience utilising/fine-tuning the Microsoft Security stack β Defender, Sentinel, KQL, etc.
- Ability to articulate specific projects that you have built, developed or led on, specific to SecOps Engineering and Automation.
If youβre an experienced SecOps Engineer, looking to shape how one of the most innovative Mobile Payments FinTech firms build out their cyber defence capability and leave a lasting impact on one of the most reputable organisations whilst working alongside a team of genuine Cyber Security SMEs, click the to apply or get in touch directly.
Senior SecOps Engineer employer: Lawrence Harvey
Contact Detail:
Lawrence Harvey Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Senior SecOps Engineer
β¨Tip Number 1
Familiarise yourself with the specific tools and technologies mentioned in the job description, such as Microsoft Security stack, Azure, and AWS. Being able to discuss your hands-on experience with these platforms during an interview will demonstrate your suitability for the role.
β¨Tip Number 2
Prepare to showcase your experience with Detection-as-Code (DAC) and Infrastructure-as-Code (IAC). Think of specific examples where you've implemented these practices, as this will be crucial in proving your capability to contribute to their greenfield SOC buildout.
β¨Tip Number 3
Research the latest trends and emerging threats in cybersecurity, particularly those relevant to FinTech. Being able to discuss current threat actors and how they might impact the company will show your proactive approach and understanding of the industry.
β¨Tip Number 4
Think about how you can demonstrate your mentoring skills. Since the role involves training junior team members, prepare examples of how you've successfully guided others in past roles, which will highlight your leadership potential.
We think you need these skills to ace Senior SecOps Engineer
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights your experience in SecOps, particularly in cloud-native environments and automation. Include specific projects where you've implemented Detection-as-Code (DAC) and Infrastructure-as-Code (IAC).
Craft a Compelling Cover Letter: In your cover letter, express your passion for cybersecurity and detail how your background aligns with the role's responsibilities. Mention your experience in mentoring junior team members and your proactive approach to threat research.
Showcase Relevant Skills: Clearly outline your skills related to the Microsoft Security stack, including Defender, Sentinel, and KQL. Provide examples of how you've fine-tuned these tools in previous roles to enhance security measures.
Prepare for Technical Questions: Anticipate technical questions related to incident response and SOC operations. Be ready to discuss complex incidents you've handled and the methodologies you used to resolve them, as this will demonstrate your expertise.
How to prepare for a job interview at Lawrence Harvey
β¨Showcase Your Experience
Be prepared to discuss your previous roles in detail, especially your experience in SOC environments. Highlight specific incidents you've managed and the impact of your actions, particularly in hybrid-cloud settings like Azure or AWS.
β¨Demonstrate Your Technical Skills
Familiarise yourself with the Microsoft Security stack, including Defender and Sentinel. Be ready to explain how you've utilised these tools in past projects, and consider bringing examples of detection rules or automation tasks you've developed.
β¨Emphasise Your Automation Mindset
Since this role requires an automation-first approach, discuss your experience with Detection-as-Code (DAC) and Infrastructure-as-Code (IAC). Share specific examples of how you've automated processes to improve efficiency and security.
β¨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think about complex incidents you've handled and be ready to walk through your thought process, decisions made, and outcomes achieved.