
Lead Security Operations Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United Kingdom, +6 more states.
• Develop and implement the SecOps strategy utilizing frameworks such as MITRE ATT&CK, NIST, and CIS benchmarks.
• Oversee security investigations and digital forensics throughout the entire incident response process.
• Design, optimize, and expand SIEM and logging pipelines with standardized log ingestion methods.
• Enhance perimeter and authentication security through WAF configurations, authorization adjustments, and monitoring of suspicious traffic.
• Establish DLP controls to safeguard sensitive information.
• Enhance the on-call rotation, alerting mechanisms, escalation procedures, and response SLAs.
• Automate detection and response processes using coding and artificial intelligence.
• Mitigate SecOps-related risks stemming from compliance deficiencies and gather supporting documentation.
• Create dashboards and reports for monitoring response times, coverage, and risk mitigation.
• Collaborate across departments to translate threat models into actionable engineering modifications.
• Report directly to the VP of Fraud & Security and collaborate with teams in Fraud, DevSecOps, Engineering, and Risk & Compliance.
• Mentor junior security engineers as the function evolves.
• Over 10 years of experience in security operations, incident response, or a related field.
• Demonstrated success in reducing material risk through financial impact, containment of incidents, or transformative forensics.
• Strong background in development and engineering, including automation scripting.
• Practical experience in managing SOC and SIEM systems.
• Proficiency in detection engineering and log pipeline architecture.
• Experience in scaling security capabilities in growth-oriented environments.
• In-depth knowledge of cloud architectures, particularly AWS, with familiarity in GCP infrastructure.
• Proven experience in utilizing AI and/or coding automation to establish, implement, and manage security controls.
• Experience in fintech, payments, fraud, trust and safety, or highly regulated environments is a plus.
• Background in incident response, IR management, SOC engineering, security engineering, DevSecOps, red team, or blue team roles.
• Willingness to engage in an on-call rotation.
• Must be physically located in the specified country with a valid right to work.
• Visa sponsorship is not available for the locations listed.
• Application must be submitted in English.
• Your own Pleo card (no more out-of-pocket expenses!)
• Lunch is provided on workdays - enjoy catered meals or receive a lunch allowance based on your local office.
• Comprehensive private healthcare - depending on your location, coverage options include Vitality, Alan, or Médis.
• 25-28 days of vacation (varies by location) plus public holidays.
• Options for hybrid and fully remote work arrangements.
• Ability to purchase 5 additional vacation days through a salary sacrifice scheme.
• Access to free mental health and well-being support via MyndUp.
• Paid parental leave.
• Opportunities for career development, including larger projects, leadership roles, and skill acquisition.
SafelyYou
SafelyYou
Arctiq
Get handpicked remote jobs straight to your inbox weekly.