UK remote
Senior Security Operations Engineer
About this role
How You’ll Support Our Mission ESO’s teams are growing, and our software is in demand globally by firefighters, paramedics, hospitals and governments. To meet this demand, we are building an industry-leading cyber security team in Belfast to protect our customers and data from a variety of fast moving and constantly evolving threats. We are looking for a Senior Security Ops Engineer to join our Belfast team. This role will w ork alongside our wider S ecurity, IT, d evelopment, platform and business teams across the world .
You will be helping to review and respond to incidents and alerts, assisting users in how to operate securely and ensuring that our controls cover the entire technology estate. We want our colleagues throughout ESO to operate securely, but with a high degree of autonomy and minimal security constraints , so we will be implementing automated controls, approvals and governance to enable thi s . You will be part of a high functioning, motivated and forward-thinking team .
Y ou have the chance to join a growing and passionate team, working on critical products, whilst being supported with training opportunities and mentoring. Joining our team will be an amazing and truly rewarding experience. What You’ll Be Doing – the day to day Monitor, review, and respond to security alerts and events using our core security tools Help ensure security controls are deployed and operating effectively across our technology environment Support incident response activities by following and improving security processes and procedures Monitor systems for security and compliance issues and help drive remediation Maintain and support Identity and Access Management (IAM) security practices Partner closely with technology teams, working hands-on to strengthen security outcomes Provide guidance and support to colleagues on security-related questions Be an active member of a collaborative cyber security team, with clear and meaningful impact Who You Are – some of the essential things required to be successful in the role 4+ years’ experience in a security or technical operations role Hands-on experience working with SIEM and EDR tools (essential) Experience investigating and responding to security alerts or incidents Familiarity with securing systems through patching, endpoint protection, or similar controls Working knowledge of IAM best practices, including MFA, conditional access, and role-based access control Experience working with Microsoft technologies and environments Comfortable working closely with engineering and technology teams Curious, proactive, and motivated to understand root causes and improve security Who You Are – it’s desirable if you have any of the following Experience with additional security tools such as vulnerability management, PAM, IDS/IPS, or DLP Networking fundamentals (firewalls, switches, wireless access points) Experience with Microsoft Defender, Microsoft Sentinel, or Azure security tooling Experience working in a cloud or SaaS environment Relevant certifications (e.g.