Senior Security Operations Engineer New London

Senior Security Operations Engineer New London

London Full-Time 72000 - 88000 £ / year (est.) Home office (partial)
Risk Ledger

At a Glance

  • Tasks: Join us to enhance security operations and protect our customers from cyber threats.
  • Company: Risk Ledger, a trusted partner for major organisations like ASOS and the NHS.
  • Benefits: Generous equity package, 28 days leave, private healthcare, and hybrid working.
  • Other info: Dynamic scale-up environment with opportunities for personal and professional growth.
  • Why this job: Make a real impact in cybersecurity while collaborating with a talented team.
  • Qualifications: 5+ years in Security Operations or Engineering, with cloud security expertise.

The predicted salary is between 72000 - 88000 £ per year.

Risk Ledger is developing a network of connected organisations, all working together to defend against cybersecurity attacks in the supply chain.

Organisations rely on us to establish trust, through sharing their security maturity and visualising the risks posed by their supply chain ecosystem.

And we’re already trusted by customers like ASOS, British Airways, BAE Systems and the NHS.

We are putting together an amazing and talented team from a diverse set of backgrounds and skillsets to drive us towards our vision.

Risk Ledger is built on the respect we have for one another and our users, united by our shared values and mission.

Every one of us is still learning: it’s how we grow as individuals.

We’re curious.

We’re ambitious.

And we’re humble and honest.

At Risk Ledger, we aim high to find the best solutions we can and always put our users first.

The team

You’ll join the Director of Information Security supporting and collaborating with all parts of the business to deliver a secure environment enabling impactful outcomes for Risk Ledger and our customers.

This role

As our Senior Sec Ops Engineer you’ll be playing a critical part in maintaining and evolving the security of our product, business tools, people, and organisation.

This is an opportunity to have a huge long-standing impact through improving our technical security strategy, which will lead to even greater success for our business and our customers.

In the short to medium term, your focus will be on improving operational security capability - enhancing detection and response, incident management, vulnerability management and cloud security operations.

As these capabilities mature, you’ll increasingly focus on security engineering and architecture; designing scalable security services, improving our security platform and embedding secure-by-design principles across the organisation.

From day one, you'll shape opportunities to empower our team by maintaining and improving the security of our tools and working practices for peak performance, all while safeguarding the confidentiality of our customers' data.

Success hinges on collaboration, as you forge strong, trusted relationships across teams.

In this role you will

  • Manage, build and mature our Security Operations capability (short to medium term)
  • Own and continuously improve security monitoring, detection and incident response capabilities across our cloud, endpoint and Saa S environment.
  • Build, tune, and maintain high-quality detections, reducing alert fatigue while increasing confidence that meaningful threats are identified quickly.
  • Continuously improve vulnerability management through effective scanning, risk-based prioritisation, remediation and tracking.
  • Improve our cloud security posture across AWS and GCP through strong identity management, telemetry, network security, encryption and continuous posture assessment.
  • Develop and automate operational processes, playbooks and workflows that improve consistency and allow the team to scale efficiently.
  • Support audit and compliance activities by ensuring operational controls are implemented, measurable and operating effectively.
  • Evolve our Security Engineering capability (medium to long term)
  • Design and engineer scalable security capabilities that improve visibility, detection, resilience and operational efficiency across the organisation.
  • Architect and evolve our security telemetry and detection platform, transforming raw data into actionable security intelligence.
  • Design security services, standards and reusable capabilities that can be adopted consistently across engineering teams.
  • Lead technical security initiatives that improve the maturity of our security architecture and reduce long-term organisational risk.
  • Partner closely with engineering teams to embed secure-by-design principles into systems and platforms.
  • Evaluate emerging security technologies and identify opportunities to improve our overall security architecture through thoughtful adoption and automation.
  • Help shape the long-term technical security roadmap alongside Engineering and Technology leadership.
  • Across both areas
  • Help secure and govern the organisation's use of AI technologies, reviewing new tooling, assessing risk and contributing to practical security guardrails.
  • Mentor colleagues, provide technical leadership and act as a trusted escalation point during security incidents.
  • Manage a varied portfolio of operational work, strategic improvements and technical projects, balancing immediate priorities with long-term objectives.
  • Contribute wherever needed in a growing scale-up environment, helping improve the resilience and security of our products and services.

You’ll have

  • 5+ years' experience in Security Operations, Security Engineering or Incident Response, ideally within a customer-focused Saa S organisation.
  • Strong hands-on experience securing cloud environments (AWS and/or GCP).
  • Deep experience with security monitoring, SIEM platforms, EDR, detection engineering, alert triage and incident response.
  • Experience building or improving operational security capabilities rather than simply operating existing tooling.
  • Experience with security tooling including SIEM, EDR, DLP, MDM and cloud security platforms.
  • Strong understanding of attacker techniques (MITRE ATT&CK) and how to translate them into effective detections.
  • Experience with vulnerability management and security telemetry.
  • Understanding of modern AI tooling, AI security risks and governance considerations.
  • Good understanding of networking, distributed systems and cloud architectures.
  • An interest in security architecture and building long-term security capabilities.

You might have

  • Experience designing security architecture for cloud-native platforms.
  • Experience building or operating detection engineering programmes.
  • Threat hunting or purple team experience.
  • Experience with CNAPP, CSPM or exposure management platforms.
  • Experience with e BPF or modern observability tooling.
  • Experience implementing security automation using SOAR or similar orchestration platforms.
  • Knowledge of policy-as-code and security governance.
  • Familiarity with supply chain security and software integrity.
  • Experience evaluating AI/LLM security, agentic systems or model governance.

You will be

  • An excellent communicator, able to produce clear incident reports, technical documentation and stakeholder updates.
  • A pragmatic problem solver who balances operational needs with long-term improvements.
  • Comfortable working through ambiguity and making sound technical decisions.
  • Curious, with a desire to continually learn and improve both operational and engineering practices.
  • Someone who enjoys building systems and capabilities that scale, rather than simply maintaining them.
  • Collaborative and approachable, working as part of a team rather than in isolation.
  • Able to balance short-term operational priorities with medium and long-term engineering and architectural outcomes.

The perks

  • Generous EMI equity package
  • 28 days annual leave + bank holidays
  • Additional 30 days of unpaid leave per year to use as you wish
  • Ad-hoc companywide time off over the festive period
  • Private healthcare with AXA Insurance - including enhanced mental wellbeing coverage
  • Hybrid working policy, typically 2-3 days in the office
  • Enhanced family (parental) leave - gender-neutral policy, 12 weeks paid leave
  • 5 days Caretaker's leave
  • Enhanced occupational sick pay
  • All the learning resources and books you want to aid in your personal development
  • Regular socials to unwind and have some fun
  • Salary range
  • #J-18808-Ljbffr

Senior Security Operations Engineer New London employer: Risk Ledger

At Risk Ledger, we pride ourselves on being an exceptional employer that fosters a collaborative and innovative work culture. Located in the vibrant UK tech scene, we offer our employees ample opportunities for professional growth, mentorship, and the chance to work on cutting-edge SaaS products that make a real impact. Join us to be part of a team that values creativity, supports your career development, and prioritises creating outstanding customer experiences.

Risk Ledger

Contact Details:

Risk Ledger Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Operations Engineer New London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Risk Ledger, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Risk Ledger

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Risk Ledger. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Senior Security Operations Engineer New London

Security Operations
Security Engineering
Incident Response
Cloud Security (AWS and GCP)
Security Monitoring
SIEM Platforms
EDR

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Risk Ledger insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Risk Ledger that you’re committed to staying ahead in the game.

How to prepare for a job interview at Risk Ledger

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Risk Ledger to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Risk Ledger.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.