SOC Engineer
Job description
SOC Engineer at Bamboohr.
About the role
Bamboohr is seeking a dedicated and skilled SOC Engineer to join our dynamic team. This position is in ensuring the security and integrity of our systems and data. As a SOC Engineer, you will be responsible for monitoring, detecting, and responding to security incidents, while also contributing to the continuous improvement of our security posture. This role offers an to work in a fast-paced environment, collaborating with various teams to enhance our security operations.
Key facts
What you'll do
- Monitor security alerts and incidents using advanced security information and event management (SIEM) tools to identify potential threats and vulnerabilities.
- Conduct thorough investigations of security incidents to determine their scope, impact, and root cause, ensuring timely and effective response actions.
- Collaborate with IT and development teams to implement security best practices and ensure compliance with industry standards and regulations.
- Develop and maintain incident response plans, playbooks, and documentation to streamline processes and improve response times.
- Perform regular security assessments and vulnerability scans to identify weaknesses in the infrastructure and recommend remediation strategies.
- Participate in threat hunting activities to proactively identify and mitigate potential security risks before they can be exploited.
- Provide training and support to other team members and stakeholders on security awareness and incident response procedures.
- Stay up-to-date with the latest cybersecurity trends, threats, and technologies to continuously enhance the SOC's capabilities.
- Assist in the evaluation and implementation of new security tools and technologies to improve the overall security landscape.
- Generate detailed reports and metrics on security incidents, trends, and the effectiveness of security measures for management review.
- Engage in post-incident reviews to analyze response efforts and identify areas for improvement.
- Foster a culture of security awareness throughout the organization by promoting best practices and encouraging proactive security measures.
Requirements
- A minimum of 3 years of experience in a security operations center (SOC) or similar cybersecurity role.
- Strong understanding of security principles, practices, and technologies, including firewalls, intrusion detection systems, and endpoint protection.
- Proficiency in using SIEM tools and other security monitoring solutions to analyze security events and incidents.
- Experience with incident response methodologies and frameworks, including the ability to develop and execute incident response plans.
- Familiarity with regulatory requirements and standards such as GDPR, ISO 27001, and NIST.
- Excellent analytical and problem-solving skills, with the ability to think critically and act decisively in high-pressure situations.
- Strong communication skills, both written and verbal, to effectively convey technical information to non-technical stakeholders.
Nice to have
- Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or CompTIA Security+.
- Experience with cloud security and securing cloud-based applications and services.
- Knowledge of scripting languages (e.g., Python, PowerShell) for automation of security tasks and processes.
- Familiarity with threat intelligence platforms and frameworks such as MITRE ATT&CK.
- Previous experience in a managed security service provider (MSSP) environment.
Skills & tools
- Security Information and Event Management (SIEM) tools
- Intrusion Detection and Prevention Systems (IDPS)
- Vulnerability assessment and management tools
- Incident response and forensics tools
- Networking protocols and security technologies
- Cloud security solutions
Practical notes
- This position is based in either Glasgow or Reading, Berkshire, and may require occasional travel between locations.
- The SOC operates on a shift basis, and candidates should be prepared to work outside of standard business hours as needed.
- Bamboohr is committed to fostering a diverse and inclusive workplace, and we encourage applications from individuals of all backgrounds and experiences.
- Interested candidates can apply through our website at [Bamboohr Careers](https://fsp.bamboohr.com/careers/306).
Join Bamboohr as a SOC Engineer and play a crucial role in safeguarding our organization against evolving cyber threats. Your expertise will contribute to a secure environment for our clients and stakeholders, making a real impact in the cybersecurity landscape.