Senior Cloud Security Engineer (Secops)

Beyond

Plymouth

Hybrid

GBP 90,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Pension scheme
Discretionary bonus
Death in service 4x
Private medical insurance
Dental & optical cashback
Cycle to work
Learning days
Work from anywhere (up to 3 weeks)

Job summary

Beyond is seeking a Senior Security Engineer to lead hands-on SecOps on Google Cloud. You will guide deployments, develop parsers and detections, and integrate security across multiple cloud environments for regulated workloads.

You’ll influence playbooks, training, and security posture while working with client teams in a hybrid model. Strong experience with Google SecOps, YARA-L, parsers and data ingestion is essential.

Qualifications

  • Hands-on with Google SecOps including UDM, YARA-L, parsers and SOAR playbooks.
  • Experience delivering SIEM/SOC on major platforms and cloud environments.
  • Strong knowledge of Google Cloud security primitives (IAM, VPC, Cloud Logging).
  • Scripting/automation skills (Python or Go) for parser and integration work.

Responsibilities

  • Lead end-to-end SecOps deployments, including data ingestion, retention design and RBAC.
  • Build and maintain parsers, UDM mappings and data models for cloud sources.
  • Write and tune detection rules, and design SOAR playbooks with python integrations.
  • Develop custom agents for deployment in customer environments using GCP.
  • Configure CI/CD pipelines and secure cloud foundation blueprints for clients.
  • Operationalise threat intelligence and run threat-hunting campaigns.

Skills

SIEM/SOC delivery
Google SecOps
YARA-L
Parsers
SOAR playbooks
Data ingestion
Python/Go
Terraform

Tools

Wiz
CrowdStrike
Splunk
Sentinel
Snyk

Job description

We are a global technology group, headquartered in London.
We deploy experts and frontier technology, like AI, to help organisations thrive through change.

We have over 600 professionals (>75% hands-on technical talent) spread across Europe, North America and Asia, and are backed by Marlin Equity Partners.

We help customers to:

Work smarter – Building modern, scalable infrastructure, apps and workflows that actually improve your bottom line.

Engage personally – Creating digital experiences that capture attention, convert sales, and keep customers coming back.

Stay secure – Establishing the security, governance and compliance systems that protect you from threats, fines, and downtime.

We work with some of the world's biggest brands to solve their biggest problems. From highly regulated financial institutions to fast-moving tech unicorns and global retailers.
Different worlds, same standard: we ship tangible outcomes into production, fast.
Then we work alongside customers to maintain and optimise them long term, upskilling their teams along the way.

About the role

We help regulated and enterprise customers protect their Google Cloud Estates. As a Premier Google Cloud Partner, we deliver

  • Google Unified Security (GUS) engagements across the full stack — from greenfield SIEM/SOAR deployments and SOC modernisation programmes to detection engineering, posture management, threat hunting, and incident response uplift.
  • Secure GCP estates with the adoption of CI/CD pipelines, secure landing zones and cloud posture reviews.
  • Expertise when integrating third party tools such as Wiz.

We're looking for a Senior Security Engineer with deep, hands‑on experience across the GCP and Google Security portfolio. You'll lead the technical work on customer engagements, build reusable content for the practice, and help customers deliver security solutions at scale.

This is a hands‑on senior role. Most of your week is client delivery. The rest goes into our practice — accelerators, parsers, rule packs, playbooks, and points of view that make the next engagement faster than the last.

What you'll do

Google SecOps (SIEM / SOAR)

  • Lead end‑to‑end SecOps deployments — tenant setup, multi‑tenant architecture, data ingestion, retention design, RBAC, and feed onboarding.
  • Build and maintain parsers, UDM mappings, and data models for Google Cloud, AWS, Azure, endpoint, identity, and network sources
  • Write, test, and tune YARA‑L detection rules, including single‑event, multi‑event, and composite detections
  • Design SOAR playbooks and python integrations
  • Develop custom agents that can be deployed in customer environments using GCP infrastructure.

GCP

  • Configure CI/CD pipelines with integrated security tools
  • Configure GCP security solutions including, Security Command Centre Enterprise, IAP, VPC Service controls and Model Armor.
  • Work with platform teams to support the deployment of secure cloud foundation blueprints.
  • Support clients with secure AI workload including the use of model armor and agent identities.
  • Operationalise Google Threat Intelligence inside SecOps — IoC matching, Applied Threat Intelligence, and curated detections
  • Build threat‑informed defence programmes tied to customer‑specific threat profiles (sector, geography, adversary groups)
  • Run threat‑hunting campaigns using GTI, Mandiant frontline intelligence, and UDM search
  • Validate detection coverage against MITRE ATT&CK using Mandiant Security Validation where in scope


Practice growth

  • Mentor engineers and consultants; lead internal SecOps and GUS enablement
  • Represent the practice in pre‑sales, customer workshops, and Google partner forums
What we're looking for
  • Strong SIEM/SOC delivery experience (any major platform; Google SecOps / Chronicle preferred)
  • Hands‑on with Google SecOps: UDM, YARA‑L, parsers, SOAR playbooks, data ingestion patterns
  • Solid grounding in Google Cloud security primitives: IAM, Organization Policies, VPC Service Controls, Cloud Logging, Cloud KMS
  • Comfortable with Terraform, CI/CD pipelines and at least one scripting language (Python, Go) for automation, parser development, and integration work
  • Experience supporting regulated workloads (financial services, public sector, healthcare) and translating compliance requirements into operational controls
  • Able to explain risk, trade‑offs, and findings to both SOC analysts and executive stakeholders

Nice to have

  • Google Professional Cloud Security Engineer or Google SecOps certification
  • Experience with adjacent tooling: Wiz, CrowdStrike, Splunk, Sentinel, Snyk
  • Consulting or systems‑integrator background
  • Contributions to open detection content (Sigma, MITRE, public rule repos)

We believe in supporting our team members both professionally and personally. Here's how we invest in you:

Compensation and Financial Wellbeing

  • Matching pension scheme (up to 5%) from day one
  • Discretionary company bonus scheme
  • 4 x annual salary Death in Service coverage from day one

Health and Wellness

  • Private medical Insurance from day one
  • Optical and Dental cashback scheme
  • Help@Hand app: access to remote GP's, second opinions, mental health support, and physiotherapy
  • EAP service
  • Cycle to work scheme

Work Life balance and Growth

  • 28 days annual leave (plus bank holidays)
  • An extra paid day off for your birthday
  • Ten paid learning days per year
  • Work from anywhere (up to 3 weeks per year)
  • Industry‑recognised training and certifications
  • Bonusly employee recognition and reward platform
  • Clear opportunities for career progression
  • Length of service awards
  • Regular company events

Diversity and Inclusion

At Beyond we champion diversity and inclusion. We believe that a career in IT should be open to everyone, regardless of race, ethnicity, gender, age, sexual orientation, disability or neurotype. We value the unique talents and perspectives that each individual brings to our team, and we strive to create a fair and accessible hiring process for all.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cloud Security Engineer (SecOps)
Senior Cloud Security Engineer (SecOps)

Beyond • Greater London

On-site
GBP 110,000 - 150,000
Competitive base salary
Pension scheme 5%
Discretionary bonus
+9
Senior Cloud Security Engineer (SecOps)
Senior Cloud Security Engineer (SecOps)

bynd • Manchester

On-site
GBP 90,000 - 120,000
Competitive base salary
Pension scheme
Discretionary bonus
+1
Senior Cloud Security Engineer (SecOps)
Senior Cloud Security Engineer (SecOps)

Beyond • Portsmouth

On-site
GBP 70,000 - 120,000
Private medical insurance
Discretionary bonus
Flexible working hours
+1
Google Security Specialist
Google Security Specialist

PA Consulting • West of England

On-site
GBP 70,000 - 90,000
Private healthcare coverage
25 days annual leave
Generous company pension scheme
+2
Security Platform Engineer, Google Cloud Public Sector
Security Platform Engineer, Google Cloud Public Sector

Google • Greater London

On-site
GBP 90,000 - 150,000
Security Platform Engineer
Security Platform Engineer

Digi2Al Limited • Greater London

Hybrid
GBP 70,000 - 100,000
Salary £70k–£100k per annum
Flexible working
25 days holiday increasing to 30
+2
Principal Cloud Security Engineer
Principal Cloud Security Engineer

G3 • Greater London

Hybrid
GBP 100,000 - 150,000
Private medical insurance
Life insurance
25 days holiday per year
+2
Managing Consultant - C&M - Google Cloud (Technical Lead)
Managing Consultant - C&M - Google Cloud (Technical Lead)

PA Consulting • City of Westminster

Hybrid
GBP 70,000 - 90,000
Health and lifestyle perks
25 days annual leave with options to buy more
Generous company pension scheme
+4
Senior Cloud Platform Engineer
Senior Cloud Platform Engineer

Zaizi Ltd • Greater London

Hybrid
GBP 120,000 - 180,000
Competitive pay
Pension with incremental employer rate
Life Assurance
+3
Head of Cloud Security / Senior Cloud Security Architect
Head of Cloud Security / Senior Cloud Security Architect

G3 Good Governance Group Ltd • Greater London

Hybrid
GBP 120,000 - 180,000
Private medical insurance
Life insurance - 4x annual salary
Cycle to Work Scheme
+3