Join to apply for the Security Engineer (SOC) role at Votre Sommelier
We're looking to hire a Security Operations Engineer to enhance our security operations and ensure robust protection against sophisticated threats. This role will report into the SOC and IR Manager, and is crucial for maintaining our Security Operations as high-performing and resilient. You will be refining our SOC capabilities by monitoring network traffic, automating processes, analysing security incidents, managing security tools, and providing expertise to Security Specialists and SOC analysts. As the SOC Engineer, you will collaborate with cross-functional teams to build defences, respond to incidents, and design strategies for a robust cybersecurity posture. You will enhance SOC capabilities with cutting-edge technologies and automation tools, collaborating with industry experts in cloud security, fraud prevention, and data analytics, and experimenting with SIEM, SOAR, EDR, and cloud-native security technologies.
The Role Will Involve The Following:
* Security Engineering & Automation: Drive improvements in SOC workflows, automating enrichment processes using SOAR and automation tools, and developing playbooks for more efficient alert handling. Oversee the deployment, configuration, and tuning of SOC-related security tools to enhance detection accuracy, reduce false positives, and manage end-to-end EDR operations.
* Cloud Security Monitoring: Analyse and manage security logs through the SIEM.
* Security Monitoring & Threat Detection: Continuously monitor security alerts, events, and IoCs across all platforms. You'll build and deploy queries and scripts, and create dashboards and workflows to enhance visibility and reporting.
* Proactive Threat Hunting: Develop and implement threat hunting procedures to proactively identify potential risks and vulnerabilities before they escalate.
* Incident Response: Enhance the IRP and coordinate with the SOC team and cross-functional teams during the incident response lifecycle, focusing on containment, eradication, recovery, and post-incident analysis.
About You:
* Experience in SOC or incident response roles, with hands-on experience in threat detection and mitigation.
* Technical Skills: Strong capability in threat detection, incident response, and analysis of complex attack patterns, with a focus on the Cloud environment. Skilled in writing SIEM queries, alerts, and dashboards.
* Scripting & Automation: Knowledge of scripting languages such as Python, SQL, or Bash to automate SOC workflows.
* SOAR: Hands-on experience managing SOAR platforms such as Google Chronicle, Swimlane, Cortex XSOAR, etc.
* EDR Expertise: Hands-on experience managing EDR tools, including end-to-end operations from deployment and configuration to analysis and response.
Benefits:
* Employee discount (hello ASOS discount!)
* ASOS Develops (personal development opportunities across the business)
* Employee sample sales
* Access to a huge range of LinkedIn learning materials
* 25 days paid annual leave + an extra celebration day for a special moment
* Discretionary bonus scheme
* Private medical care scheme
* Flexible benefits allowance - which you can choose to take as extra cash, or use towards other benefits.
Want to find out how we're tech powered? Check out the ASOS Tech Podcast here. Prefer reading? Check out our ASOS Tech Blog here.
Seniority level
Mid-Senior level
Employment type
Full-time
Job function
Information Technology
Industries
Computer and Network Security
#J-18808-Ljbffr