Security Operations Engineer

Ellison Institute of Technology Oxford

Oxford

On-site

GBP 60,000 - 90,000

Full time

12 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Enhanced holiday
Pension
Life Assurance
Income Protection
Private Medical Insurance
Hospital Cash Plan
Therapy Services
Perk Box
Electric Car Scheme
Childcare benefit

Job summary

The Ellison Institute of Technology Oxford invites a proactive Security Operations Engineer to join our cyber-security team. This hands-on role protects researchers, staff, and critical infrastructure across endpoints, servers, cloud platforms, and networks; you will monitor, detect, and respond to incidents while improving our security posture.

Collaborating with IT, governance, and legal teams, you will develop detection rules, support vulnerability management, and contribute to runbooks and

Qualifications

  • Experience in Security Operations, a SOC, or Incident Response.
  • Hands-on experience with SIEM platforms such as Azure Sentinel, Splunk, or Sophos Taegis.
  • Familiarity with EDR tools including SentinelOne or CrowdStrike.
  • Strong understanding of MITRE ATT&CK techniques.
  • Working knowledge of Windows, Linux, identity systems, and networking.
  • Cloud security experience (OCI preferred).

Responsibilities

  • Operate and continuously enhance security monitoring across endpoints, servers, cloud platforms, and networks.
  • T tune and maintain SIEM tools (including Sophos Taegis, SentinelOne EDR, and OCI security tooling) to improve detection accuracy.
  • Investigate and triage security alerts, escalating and responding appropriately.
  • Act as a responder for security incidents, supporting containment, eradication, and recovery.
  • Produce clear incident documentation, including reports and root-cause analysis.
  • Develop and refine detection rules, automation workflows, and threat-based use cases.
  • Apply threat intelligence to improve detection coverage in complex research environments.
  • Support vulnerability scanning, prioritisation, and remediation tracking.
  • Collaborate closely with stakeholders to embed secure practices into day-to-day operations.
  • Contribute to runbooks, documentation, audits, compliance activities, and risk assessments.

Skills

Security Operations
Incident Response
MITRE ATT&CK
Cloud security
Windows & Linux

Tools

Azure Sentinel
Splunk
Sophos Taegis
SentinelOne
CrowdStrike

Job description

Join us at EIT: At the Ellison Institute of Technology (EIT), we're on a mission to translate scientific discovery into real world impact. We bring together visionary scientists, technologists, engineers, researchers, educators and innovators to tackle humanity's greatest challenges in four transformative areas:

  • Health, Medical Science & Generative Biology
  • Food Security & Sustainable Agriculture
  • Artificial Intelligence & Robotics

Join us at EIT: At the Ellison Institute of Technology (EIT), we're on a mission to translate scientific discovery into real world impact. We bring together visionary scientists, technologists, engineers, researchers, educators and innovators to tackle humanity's greatest challenges in four transformative areas:

  • Health, Medical Science & Generative Biology
  • Food Security & Sustainable Agriculture
  • Climate Change & Managing CO₂
  • Artificial Intelligence & Robotics

This is ambitious work - work that demands curiosity, courage, and a relentless drive to make a difference. At EIT, you'll join a community built on excellence, innovation, tenacity, trust, and collaboration, where bold ideas become real-world breakthroughs. Together, we push boundaries, embrace complexity, and create solutions to scale ideas from lab to society.

Explore more at www.eit.org.

Your Role:

At EIT we are seeking a proactive Security Operations Engineer with demonstrable experience to help protect our people, platforms, and world‑class research. This is a hands‑on, impactful role at the centre of our cyber‑security function, combining monitoring, incident response, detection engineering, and continuous improvement of our security posture.

You will work closely with IT, research computing, governance, and legal teams to ensure that security enables, not hinders scientific innovation. If you want to be part of a mission‑driven environment and play a critical role in safeguarding breakthrough research, we'd love to hear from you.

Your Responsibilities:

In this role, you will:

  • Operate and continuously enhance security monitoring across endpoints, servers, cloud platforms, and networks
  • Tune and maintain SIEM tools (including Sophos Taegis, SentinelOne EDR, and OCI security tooling) to improve detection accuracy
  • Investigate and triage security alerts, escalating and responding appropriately
  • Act as a responder for security incidents, supporting containment, eradication, and recovery
  • Produce clear incident documentation, including reports and root‑cause analysis
  • Develop and refine detection rules, automation workflows, and threat‑based use cases
  • Apply threat intelligence to improve detection coverage in complex research environments
  • Support vulnerability scanning, prioritisation, and remediation tracking
  • Collaborate closely with stakeholders to embed secure practices into day‑to‑day operations
  • Contribute to runbooks, documentation, audits, compliance activities, and risk assessments
Requirements
Essential Skills, Qualifications & Experience:
  • Experience working in Security Operations, a SOC, or in Incident Response
  • Hands‑on experience with SIEM platforms such as Azure Sentinel, Splunk, or Sophos Taegis
  • Familiarity with EDR tools including SentinelOne or CrowdStrike
  • A strong understanding of common attack techniques (MITRE ATT&CK)
  • Working knowledge of Windows, Linux, identity systems, and networking
  • Experience working with cloud platforms (OCI preferred) in a security context
Desirable Skills, Qualifications & Experience:
  • Scripting or automation skills (Python, PowerShell, Bash)
  • Experience in research, higher education, healthcare, or similarly open computing environments
  • Familiarity with SOAR tooling or automation platforms
  • Experience with ISO27001:2022 or similar standards
  • Relevant certifications (e.g., ISC2 CC, CompTIA Security+)
Benefits
Our Benefits:
  • Salary: Competitive salary (dependent on experience) + travel allowance + bonus
  • Enhanced holiday + options to buy additional days
  • Pension
  • Life Assurance
  • Income Protection
  • Private Medical Insurance
  • Hospital Cash Plan
  • Therapy Services
  • Perk Box
  • Electric Car Scheme
  • Childcare benefit
Working Together - What It Involves:
  • You must have the right to work permanently in the UK with a willingness to travel as necessary. In certain cases, we can consider sponsorship, and this will be assessed on a case‑by‑case basis
  • You will live in, or within easy commuting distance of, Oxford (or be willing to relocate)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Engineer Central Business Operations & Other Oxford, England, United Kingdom
Security Operations Engineer Central Business Operations & Other Oxford, England, United Kingdom

Ellison Institute, LLC • Oxford

Hybrid
GBP 65,000 - 90,000
Pension
Private Medical Insurance
Life Assurance
+6
Senior DevSecOps Engineer - Pathogen
Senior DevSecOps Engineer - Pathogen

Ellison Institute of Technology Oxford • Oxford

On-site
GBP 90,000 - 120,000
Enhanced holiday pay
Pension
Life Assurance
+7
Security Operations Specialist
Security Operations Specialist

gresearch • Greater London

On-site
GBP 70,000 - 100,000
Competitive pay
Lunch provided via Just Eat for Biz
30 days leave
+2
Security Engineer
Security Engineer

Intigriti • Greater London

Hybrid
GBP 70,000 - 110,000
Hybrid working
Private healthcare
Learning budget
+5
Security Operations Specialist
Security Operations Specialist

Cyber UK • Southampton

Hybrid
GBP 55,000 - 75,000
Hybrid working model
Competitive salary
Private medical insurance
+3
Security Data and Platform Engineer
Security Data and Platform Engineer

Barlowe LLP • Greater London

On-site
GBP 120,000 - 180,000
Discretionary bonus
Lunch via Just Eat for Business
35 days leave
+5
Security Operations Specialist
Security Operations Specialist

Cyber UK • Glasgow

Hybrid
GBP 45,000 - 65,000
Competitive salary
Private medical insurance
Life assurance
+5
Security Operations Specialist
Security Operations Specialist

Cyber UK • Greater London

Hybrid
GBP 60,000 - 90,000
Hybrid working model
Competitive salary
Private medical insurance
+3
Senior Platform Engineer
Senior Platform Engineer

Ellison Institute of Technology Oxford • Oxford

On-site
GBP 85,000 - 110,000
Enhanced holiday pay
Pension
Life Assurance
+6
SecOps Engineer
SecOps Engineer

OCS • Greater London

On-site
GBP 60,000 - 90,000
Award-Winning Employer
Digital Learning
Retail Perks
+2