SOC Engineer

Acumen Cyber

Glasgow

On-site

GBP 45,000 - 70,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Paid training budget
Certification support
Competitive package
People-first culture

Job summary

A cybersecurity firm in Glasgow is seeking a SOC Engineer responsible for threat detection and response. The ideal candidate will have hands-on experience with SIEM and EDR platforms, a strong grasp of security protocols, and effective communication skills. This role offers a competitive package and opportunities for continuous growth and development within a dynamic environment.

Qualifications

  • Hands-on skill with a SIEM, preferably Elastic.
  • Experience with EDR platforms.
  • Right to work in the UK and ability to pass BPSS or SC vetting.

Responsibilities

  • Monitor SIEM to identify suspicious activities.
  • Lead end-to-end incident response.
  • Proactively hunt for threats using log data.
  • Develop and tune detection rules, playbooks and automation scripts.
  • Collaborate with customers and internal teams to improve security posture.

Skills

SIEM monitoring
EDR platform exposure
TCP/IP understanding
Incident investigation
Analytical mindset
Communication skills
Scripting knowledge
MITRE ATT&CK mapping
MITRE ATT&CK
Clear communication

Education

Certifications such as GCIH, GCIA, GCFA or OSCP

Tools

Elastic
SentinelOne
CrowdStrike
Kibana
SOAR platforms

Job description

Acumen Cyber is a 24/7 Security Operations Centre (SOC) that keeps modern businesses safe from ever-evolving cyber threats. Working shoulder-to-shoulder with world-class technology partners - including Elastic, Recorded Future, SentinelOne and CrowdStrike - we design, build and run security programmes that let our clients focus on what matters most: growing their business with confidence.

What you’ll do

As a SOC Engineer you’ll be on the front line of threat detection and response. Your day-to-day will include:

  • Continuously monitoring SIEM and other security tooling to identify suspicious activity in real time.
  • Triaging, analysing and responding to alerts from multiple sources (e.g. SentinelOne EDR, CrowdStrike Falcon, network IDS/IPS).
  • Leveraging threat-intel feeds (Recorded Future, public CERT advisories, dark-web monitoring) to enrich investigations and improve detection logic.
  • Leading end-to-end incident response: containment, eradication, root-cause analysis, lessons learned and reporting.
  • Developing and fine-tuning detection rules, playbooks and automation scripts in Elastic, SOAR and EDR platforms.
  • Collaborating closely with customers, partners and internal engineering teams to harden environments, close control gaps and share best practices.
  • Proactively hunt for threats using log data, endpoint telemetry and threat-intelligence.
  • Staying ahead of the curve - researching new tactics, techniques and procedures (TTPs) and feeding them back into our SOC strategy.

What you'll bring

  • Hands-on skill with at least one SIEM (Elastic preferred; Splunk, Sentinel etc. are also welcome).
  • Practical exposure to EDR platforms - ideally SentinelOne, CrowdStrike, or Defender for Endpoint.
  • Solid grasp of TCP/IP, common protocols and core security controls (firewalls, IDS/IPS, NAC, VPN).
  • Incident investigation know-how: containment, eradication, root-cause analysis and reporting.
  • Sharp analytical mindset and clear communication - able to brief both technical and non-technical audiences.
  • Right to work in the UK and ability to pass BPSS / SC vetting.
  • Certifications such as GCIH, GCIA, GCFA, OSCP or Elastic Certified Analyst.
  • Experience crafting Kibana visualisations and tuning Elastic detection rules.
  • Familiarity with SOAR platforms plus scripting (Python, PowerShell) for automation.
  • Knowledge of cloud-native security controls (AWS Security Hub, Azure Sentinel, Google Chronicle).
  • MITRE ATT&CK mapping, purple-team or threat-hunting exercises.
  • Prior work in a 24 × 7 SOC with formal shift hand-offs.
  • Impact from day one – You’ll help shape the detection & response capabilities that protect hundreds of thousands of endpoints and critical workloads.
  • Cutting-edge tech stack – Direct access to Elastic, Recorded Future, SentinelOne, CrowdStrike and other market-leading tools.
  • Continuous growth – Paid training budget, certification support and dedicated research time so you can stay one step ahead of attackers.
  • People-first culture – Small, highly skilled teams, zero red-tape and leadership that actually listens.
  • Competitive package – Salary dependent on experience, on-call allowance, generous holiday and other benefits.

Logistics

  • Location: Glasgow HQ.
  • Hours: Full-time, 37.5 hrs / week. SOC operates 24 × 7; shift rotation and on-call premiums apply.
  • Eligibility: You must have the right to work in the UK and be able to pass BPSS and/or SC vetting.

Ready to defend the future?

Click “Apply” on our LinkedIn job listing, attach your CV, and include a brief note about your proudest incident-response win. We review applications on a rolling basis and aim to get back to every candidate within five business days.

Seniority level
  • Seniority level
    Entry level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Engineering and Information Technology
  • Industries
    Computer and Network Security

Referrals increase your chances of interviewing at Acumen Cyber by 2x

Get notified about new Engineer jobs in Glasgow, Scotland, United Kingdom.

Airdrie, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 5 days ago

Clinical Engineer - Associate Practitioner Clinical Technologist

Glasgow, Scotland, United Kingdom 5 days ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 7 months ago

Glasgow, Scotland, United Kingdom 1 week ago

Clinical Engineer – Practitioner Clinical Technologist – Renal Dialysis

Glasgow, Scotland, United Kingdom 5 days ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 1 week ago

Greenock, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 1 week ago

Clinical Engineer – Practitioner Clinical Technologist – Renal Dialysis

Glasgow, Scotland, United Kingdom 6 days ago

Glasgow, Scotland, United Kingdom 6 days ago

Glasgow, Scotland, United Kingdom 6 days ago

Renfrew, Scotland, United Kingdom 1 week ago

Renfrew, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Bellshill, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 1 month ago

Stirling, Scotland, United Kingdom 3 weeks ago

Irvine, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Industrial Process Engineer - New Product Introduction

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 1 week ago

Glasgow, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 1 day ago

Glasgow, Scotland, United Kingdom 2 days ago

Glasgow, Scotland, United Kingdom 5 hours ago

Glasgow, Scotland, United Kingdom 1 week ago

Irvine, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Incident Response Lead
Cyber Security Incident Response Lead

Head Resourcing • Glasgow

Hybrid
GBP 60,000 - 80,000
Competitive salary
Discretionary bonus
Strong pension scheme (minimum 10%)
+2
Software Engineer
Software Engineer

Randstad Digital • Glasgow

Hybrid
Commercial Gas Service Engineer
Commercial Gas Service Engineer

Richard Irvin FM Limited • Glasgow

On-site
GBP 30,000 - 40,000
Company Pension
Company van (available for personal use)
Client Solutions Specialist - Complex
Client Solutions Specialist - Complex

Greenbean • Glasgow

Hybrid
GBP 28,000 - 30,000
Non-contributory pension scheme
Annual bonus up to 10%
Enhanced parental leave
+1
Civils Operative
Civils Operative

TieTalent • Glasgow

On-site
GBP 25,000 - 30,000
28 days annual leave + option to buy more
Group Personal Pension Plan
Career development & progression
+5
Data Engineer
Data Engineer

Accessplc • Glasgow

Hybrid
GBP 55,000 - 75,000
Lead Data Engineer
Lead Data Engineer

UK Home Office • Glasgow

Hybrid
GBP 60,000 - 81,000
Civil Service pension with employer contribution rates of 28.97%
Cycle to work and payroll giving options
Employee discounts via Edenred platform
+3
Implementation Consultant
Implementation Consultant

Okta Resourcing • Glasgow

On-site
GBP 40,000 - 55,000
Cloud Engineer
Cloud Engineer

Be-IT • Dundee

On-site
GBP 40,000 - 60,000
Flexible working
Work-life balance
Opportunities for training and certification
+1
Graduate Programme Lead
Graduate Programme Lead

WGM Engineering Ltd • Glasgow

On-site
GBP 35,000 - 50,000
32 days holiday, increasing to 36 based on length of service.
Enhanced pension scheme.
Life assurance scheme.
+3