Incident Response Engineer, UK Security Operations, Hampshire

Google

Greater London

On-site

GBP 90,000 - 120,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Google Public Sector's UK Security Operations (SecOps) team seeks a seasoned SOC professional to monitor, respond to, and secure private cloud deployments. You will operate 24/7/365, escalating incidents and driving platform efficiencies across EDR/SIEM ecosystems.

The role covers threat hunting, on-call rotations outside core hours and occasional travel to London, supporting high-security private cloud services for critical customers.

Qualifications

  • Bachelor's degree or equivalent practical experience.
  • CEH/GIAC/CompTIA Sec+ certifications.
  • 5+ years in SOC roles addressing security incidents.
  • Experience troubleshooting and coding in one or more languages.
  • Eligibility for Developed Vetting (DV) UK security clearance.

Responsibilities

  • Respond to security incidents escalated from the front line 24x7x365 team.
  • Build and develop security efficiencies on the platform to improve the SOC.
  • Conduct threat hunting activities and participate in purple team events.
  • Review and develop SOC dashboards for anomalous activity.
  • Demonstrate SME across security disciplines, EDR, SIEM, and related tools.

Skills

Programming
Troubleshooting
Threat hunting
Incident response
Problem solving
Kubernetes incident response
EDR/SIEM familiarity
Security incident analysis

Education

Bachelor's degree or equivalent practical experience
CEH/GIAC/CompTIA Sec+ certification
DV UK security clearance eligibility
5 years SOC incident response experience

Tools

Kubernetes

Job description

Must be a British citizen to meet compliance and security clearance requirements. Office location will be a satellite site in Hampshire, with occasional travel to London.

Minimum qualifications:
  • Bachelor's degree or equivalent practical experience.
  • Completed relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.
  • 5 years of experience in SOC-related roles, responding to and addressing security incidents.
  • Experience in technical troubleshooting and writing code in one or more programming languages.
  • Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance.
Preferred qualifications:
  • Security+ or similar Cyber Security/Incident Response related certifications.
  • Experience responding to security incidents on Kubernetes.
  • Experience analyzing, triaging, and remediating common information security incidents.
  • Understanding of common attacker tactics, tools, and techniques.
  • Excellent problem-solving and investigative skills.
  • Active UK Developed Vetting (DV) Security Clearance.
About the job

As a part of the UK Security Operations (SecOps) team in Google Public Sector, you will deliver, operate and secure private cloud services. You will aim to provide the flexibility, reliability, and scalability of public cloud for customers with exceptionally high security requirements that can only be met in a private cloud environment. You will deliver and operate these private cloud deployments for the most critical customers, helping scale, secure and maintain the deployment whilst working closely with Google product teams to continually improve our technology.

As a part of the SecOps, you will play a critical role in safeguarding Google's public sector customers by proactively monitoring, detecting, and investigating security incidents around the clock. You will operate 24/7/365, the team ensures comprehensive coverage of environments and swiftly responds to suspicious activity. Your role involves responding to escalated security incidents and proactively enhancing the Security Operations Center (SOC) by building platform efficiencies, conducting threat hunting, and participating in purple team events. Your role will require participation in a rotating on-call schedule outside of core business hours and over the weekend to ensure security incidents can be swiftly resolved.

Responsibilities
  • Respond to security incidents escalated from the front line 24x7x365 team.
  • Build and develop security efficiencies on the platform to improve the overall SOC.
  • Conduct threat hunting activities on the platform and participate in purple team events.
  • Review and develop security operations center dashboards for anomalous activity.
  • Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Management (SIEM) etc.

Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form .

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Incident Response Engineer, UK Security Operations, Hampshire
Incident Response Engineer, UK Security Operations, Hampshire

WeAreTechWomen • Greater London

On-site
GBP 70,000 - 110,000
Incident Response Engineer, UK Security Operations, Hampshire
Incident Response Engineer, UK Security Operations, Hampshire

Google Inc. • United Kingdom

Remote
GBP 65,000 - 110,000
On-Site Incident Response Engineer, UK SecOps
On-Site Incident Response Engineer, UK SecOps

Google Inc. • United Kingdom

Remote
GBP 65,000 - 110,000
Security Platform Engineer, Google Cloud Public Sector
Security Platform Engineer, Google Cloud Public Sector

Google • Greater London

On-site
GBP 90,000 - 150,000
Incident Response Engineer - 24/7 UK SecOps (Private Cloud)
Incident Response Engineer - 24/7 UK SecOps (Private Cloud)

Google • Greater London

On-site
GBP 90,000 - 120,000
On-Site Incident Response Engineer – UK SecOps (DV)
On-Site Incident Response Engineer – UK SecOps (DV)

WeAreTechWomen • Greater London

On-site
GBP 70,000 - 110,000
Incident Response Engineer, UK Security Operations, Hampshire
Incident Response Engineer, UK Security Operations, Hampshire

Software Careers • England

On-site
GBP 60,000 - 90,000
Security Platform Engineer
Security Platform Engineer

Hackajob Ltd • City of Westminster

On-site
GBP 34,000 - 46,000
Security Platform Engineer
Security Platform Engineer

Digi2Al Limited • Greater London

Hybrid
GBP 70,000 - 100,000
Salary £70k–£100k per annum
Flexible working
25 days holiday increasing to 30
+2
Network Operations Engineer, Sovereign Operations, Hampshire
Network Operations Engineer, Sovereign Operations, Hampshire

Google Inc. • United Kingdom

Remote
GBP 70,000 - 100,000