SecOps Engineer
Job Description
SecOps Engineer - Central London (hybrid working)
\nUp to £75,000 PA
\n\nWell-established and highly profitable construction engineering business is seeking an experienced SecOps Engineer to join them on a permanent basis. This is a critical leadership role within an organisation undergoing significant digital transformation, with ambitious growth and acquisition plans driving demand for scalable, standardised and efficient business applications.
\nThis role is ideal for a proactive security professional with strong technical expertise across application, network and infrastructure security. You will play a key part in implementing security controls, mitigating risk and contributing to the continuous improvement of the company's overall security posture.
\n\nResponsibilities:
\n- \n
- Monitor security tools including SIEM (QRadar) and respond to threat detection alerts \n
- Triage, analyse and prioritise security (via ServiceNow) \n
- Investigate root causes of security issues and design effective remediation solutions \n
- Oversee Patch Management \n
- Conduct vulnerability scans with Qualys, analyse results and prioritise remediation \n
- Document SecOps processes and create knowledge base articles in line with best practices \n
- Automate security tasks and toolchains using scripting (PowerShell, Batch, etc.) \n
- Collaborate with external SOC teams \n
- Prepare post-incident reports and root cause analyses \n
- Manage end-user device (EUD) security via MS Intune, Sophos and NinjaOne \n
- Schedule and assess vulnerability scans on critical infrastructure \n
- Maintain patching compliance for OS, Microsoft Office and third-party applications \n
- Support infrastructure teams to deploy systems, enhance security policies and manage security-driven changes \n
- Produce weekly security operations reports \n
- Manage Cisco Umbrella web filtering and SSL inspection policies \n
Requirements:
\n- \n
- Previous hands-on experience in SecOps or Incident Response \n
- Recognised Security certifications such as Security+, CEH, or Microsoft security certifications \n
- Strong knowledge of Microsoft Windows OS security and hardening \n
- Working PowerShell scripting ability for automation tasks \n
- Solid understanding of cloud-native security across M365, Azure and AWS \n
- Experience with enterprise IT infrastructure \n
Any experience with the following will be highly favoured:
\n- \n
- Strong experience with Qualys \n
- Exposure to Varonis \n
- Network security knowledge or relevant certifications (TCP/IP, VPNs, routing, segmentation) \n
- Experience working with ServiceNow \n
Initially 4 days per week onsite, dropping to 3 once passed probation.
\n\n\n