Remote Senior Security Engineer — Threat Detection & Response

Primer

United Kingdom

Remote

GBP 70,000 - 110,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Share options
25 days holiday
Co-working space access
Workations & Company Retreat
Top-tier hardware for your role
£500 home office setup
Learning budget
Private Medical Insurance

Job summary

Primer is seeking a Security Engineer to detect, investigate, and respond to threats across our cloud infrastructure. You will own a slice of detection and response, tuning what our SIEM catches and building automation to speed up responses.

You will work with Elastic SIEM and AWS, using Python and Terraform to support detection tooling and on-call incident response. Strong written communication is essential.

Qualifications

  • Hands-on experience building and tuning detections in a SIEM (Elastic preferred).
  • Experience with AWS and cloud-native detection and response.
  • Comfortable with Python for scripting and automation.
  • Experience with Terraform or other infrastructure-as-code.
  • Working knowledge of MITRE ATT&CK.
  • Real experience triaging, investigating and resolving security incidents.
  • Clear, structured written communication.

Responsibilities

  • Plan and deliver detection and response work end-to-end — from a new detection rule to a fully automated response — within your area of ownership.
  • Build, tune and maintain detections across our SIEM (Elastic) and AWS environment, closing gaps that existing coverage misses.
  • Own an investigation queue: triage, investigate, elevate and resolve security incidents, and write up findings clearly enough to stand on their own.
  • Build runbooks and automations (Python, and no-code tools like Zapier or Tines) to cut manual work out of triage and response.
  • Make and document risk decisions in your area, and know when to pull in others.
  • Support our compliance programme by keeping the controls you own audit-ready and contributing evidence for audits (e.g. SOC 2, PCI DSS).
  • Use Terraform and Python to build and maintain the infrastructure behind your detections and tooling.
  • Join our on-call rotation for incident response and monitoring.

Skills

SIEM
AWS
Python
Terraform
MITRE ATT&CK
Incident triage

Job description

Primer is seeking a Security Engineer to detect, investigate, and respond to threats across our cloud infrastructure. You will own a slice of detection and response, tuning what our SIEM catches and building automation to speed up responses.

You will work with Elastic SIEM and AWS, using Python and Terraform to support detection tooling and on-call incident response. Strong written communication is essential.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Incident Response Engineer: SIEM & SOAR Expert
Remote Incident Response Engineer: SIEM & SOAR Expert

Wey Wey Web • Greater London

On-site
GBP 90,000 - 130,000
Senior Security Engineer, Detection & Response Lead
Senior Security Engineer, Detection & Response Lead

Mixpanel • Greater London

On-site
GBP 103,000 - 140,000
Comprehensive Medical, Vision, and…
Mental Wellness Benefit
Generous Vacation Policy & Additional…
+3
Senior Threat Detection & Response Engineer
Senior Threat Detection & Response Engineer

Pirum Systems Ltd. • Greater London

Hybrid
GBP 90,000 - 150,000
Hybrid work options
Private medical insurance
Eyecare
+5
Threat Detection Engineer - Security Automation & Response
Threat Detection Engineer - Security Automation & Response

Tide • Greater London

On-site
GBP 70,000 - 110,000
Health Insurance
Life & Accident Cover
Mental Wellbeing
+5
Senior Security Engineer: Detection & Automation Consultant
Senior Security Engineer: Detection & Automation Consultant

InfoSec People Ltd • Basingstoke

Hybrid
GBP 70,000 - 100,000
Hybrid working model
Comprehensive employee benefits
Cyber Security Engineer
Cyber Security Engineer

La Fosse • Greater London

On-site
GBP 60,000 - 80,000
Threat Detection Engineer: SIEM & Automated Response
Threat Detection Engineer: SIEM & Automated Response

Careers at Tide • Greater London

Hybrid
GBP 90,000 - 130,000
Competitive pay
Annual leave
Parental leave
+12
Senior Detection and Response Engineer
Senior Detection and Response Engineer

Jobtailor • Cambridge

On-site
GBP 65,000 - 95,000
Security Engineer - Detection & Response | Leading Global Investment Group
Security Engineer - Detection & Response | Leading Global Investment Group

Techfellow Limited • Greater London

Hybrid
GBP 250,000 - 350,000
Junior AWS Security Incident Response Engineer
Junior AWS Security Incident Response Engineer

Amazon • Manchester

On-site
GBP 60,000 - 85,000