Incident Response Engineer, UK Security Operations, Hampshire

Google Inc.

United Kingdom

Remote

GBP 65,000 - 110,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Google Public Sector’s UK Security Operations team is seeking an Incident Response Engineer for on-site work in Hampshire, with occasional travel to London. You will join a 24/7/365 defensive operation, monitoring and responding to security incidents to protect private cloud deployments for high-security customers.

The role requires a mid-level professional with at least five years in SOC, a Bachelor's degree, and certifications such as CEH, GIAC, or CompTIA Sec+.

Qualifications

  • Bachelor's degree or equivalent practical experience.
  • Completed relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.
  • 5 years of experience in SOC-related roles, responding to and addressing security incidents.
  • Experience in technical troubleshooting and writing code in one or more programming languages.
  • Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance.

Responsibilities

  • Respond to security incidents escalated from the front line 24x7x365 team.
  • Build and develop security efficiencies on the platform to improve the overall SOC.
  • Conduct threat hunting activities on the platform and participate in purple team events.
  • Review and develop security operations center dashboards for anomalous activity.
  • Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Management (SIEM) etc.

Skills

SOC incident response
Threat hunting
EDR SIEM
Mentoring
Communication

Education

Bachelor's degree

Tools

SIEM
EDR
Kubernetes

Job description

Incident Response Engineer, UK Security Operations, Hampshire

Google London, UK

Mid

Experience driving progress, solving problems, and mentoring more junior team members; deeper expertise and applied knowledge within relevant area.

X Must be a British citizen to meet compliance and security clearance requirements. Office location will be a satellite site in Hampshire, with occasional travel to London.

This is an on-site position, requiring a standard five day per week schedule in the office.

  • Bachelor's degree or equivalent practical experience.
  • Completed relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.
  • 5 years of experience in SOC-related roles, responding to and addressing security incidents.
  • Experience in technical troubleshooting and writing code in one or more programming languages.
  • Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance.
Preferred qualifications:
  • Security+ or similar Cyber Security/Incident Response related certifications.
  • Experience responding to security incidents on Kubernetes.
  • Experience analyzing, triaging, and remediating common information security incidents.
  • Understanding of common attacker tactics, tools, and techniques.
  • Excellent problem-solving and investigative skills.
  • Active UK Developed Vetting (DV) Security Clearance.
About the job

As a part of the UK Security Operations (SecOps) team in Google Public Sector, you will deliver, operate and secure private cloud services. You will aim to provide the flexibility, reliability, and scalability of public cloud for customers with exceptionally high security requirements that can only be met in a private cloud environment. You will deliver and operate these private cloud deployments for the most critical customers, helping scale, secure and maintain the deployment whilst working closely with Google product teams to continually improve our technology.

As a part of the SecOps, you will play a critical role in safeguarding Google's public sector customers by proactively monitoring, detecting, and investigating security incidents around the clock. You will operate 24/7/365, the team ensures comprehensive coverage of environments and swiftly responds to suspicious activity. Your role involves responding to escalated security incidents and proactively enhancing the Security Operations Center (SOC) by building platform efficiencies, conducting threat hunting, and participating in purple team events. Your role will require participation in a rotating on-call schedule outside of core business hours and over the weekend to ensure security incidents can be swiftly resolved.

Responsibilities
  • Respond to security incidents escalated from the front line 24x7x365 team.
  • Build and develop security efficiencies on the platform to improve the overall SOC.
  • Conduct threat hunting activities on the platform and participate in purple team events.
  • Review and develop security operations center dashboards for anomalous activity.
  • Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Managemen (SIEM) etc.

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy , Know your rights: workplace discrimination is illegal , Belonging at Google , and How we hire .

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.

Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, are subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Platform Engineer, Google Cloud Public Sector
Security Platform Engineer, Google Cloud Public Sector

Google Inc. • Greater London

Hybrid
GBP 90,000 - 140,000
Security Platform Engineer, Google Cloud Public Sector
Security Platform Engineer, Google Cloud Public Sector

Google • Greater London

On-site
GBP 90,000 - 150,000
Technical Operations Manager, Sovereign Operations
Technical Operations Manager, Sovereign Operations

Google Inc. • City of Westminster

On-site
GBP 90,000 - 130,000
Technical Operations Manager, Sovereign Operations
Technical Operations Manager, Sovereign Operations

Google Inc. • Greater London

Hybrid
GBP 140,000 - 190,000
Security Platform Engineer, Google Cloud Public Sector
Security Platform Engineer, Google Cloud Public Sector

WeAreTechWomen • Greater London

On-site
GBP 90,000 - 150,000
Global Threat Analyst, Protective Intelligence, GSRS, EMEA
Global Threat Analyst, Protective Intelligence, GSRS, EMEA

Google Inc. • Greater London

On-site
GBP 70,000 - 110,000
Global Threat Analyst, Protective Intelligence, GSRS, EMEA
Global Threat Analyst, Protective Intelligence, GSRS, EMEA

Google Inc. • City of Westminster

On-site
GBP 65,000 - 90,000
Senior Incident Response Security Consultant, Mandiant, Google Cloud
Senior Incident Response Security Consultant, Mandiant, Google Cloud

GOOGLE • United Kingdom

On-site
GBP 90,000 - 130,000
Incident Response Engineer, UK Security Operations, Hampshire
Incident Response Engineer, UK Security Operations, Hampshire

Software Careers • England

On-site
GBP 60,000 - 90,000
Senior Incident Response Consultant, Mandiant (Weekend team)
Senior Incident Response Consultant, Mandiant (Weekend team)

Google Inc. • United Kingdom

Remote
GBP 70,000 - 100,000