-
Google
View all jobs
Incident Response Engineer, UK Security Operations
United Kingdom
· Full-time
·
Not Applicable
Minimum qualifications:
Security Operations plays a critical role in safeguarding Google's public sector customers by proactively monitoring, detecting, and investigating security incidents around the clock. Operating 24/7, the team ensures comprehensive coverage of environments and swiftly responds to suspicious activity. In this role, you will respond to escalated security incidents and proactively enhance the Security Operations Center (SOC) by building platform efficiencies, conducting threat hunting, and participating in purple team events. You will participate in a rotating on-call schedule outside of core business hours and over the weekend to ensure security incidents can be swiftly resolved.
Google Public Sector brings the magic of Google to the mission of government and education with solutions purpose-built for enterprises. We focus on helping United States public sector institutions accelerate their digital transformations, and we continue to make significant investments and grow our team to meet the complex needs of local, state and federal government and educational institutions.
Responsibilities
- Bachelor's degree or equivalent practical experience.
- 2 years of experience in similar SOC related roles, explicitly in responding to and actioning on security incidents.
- Certification in Certified Ethical Hacker (CEH), Global Information Assurance Certification (GIAC) or Computing Technology Industry Association Security (CompTIA Sec+).
- Experience in technical troubleshooting and writing code in one or more programming languages.
- United Kingdom Security Vetting Developed Vetting (DV) clearance.
- Certifications in Security+ or similar Cyber Security/Incident Response.
- Experience responding to security incidents on Kubernetes.
- Experience analyzing, triaging, and remediating common information security incidents.
- Understanding of common attacker tactics, tools, and techniques.
- Excellent problem-solving and investigative skills.
- Current and active UK Developed Vetting (DV) Security Clearance.
Security Operations plays a critical role in safeguarding Google's public sector customers by proactively monitoring, detecting, and investigating security incidents around the clock. Operating 24/7, the team ensures comprehensive coverage of environments and swiftly responds to suspicious activity. In this role, you will respond to escalated security incidents and proactively enhance the Security Operations Center (SOC) by building platform efficiencies, conducting threat hunting, and participating in purple team events. You will participate in a rotating on-call schedule outside of core business hours and over the weekend to ensure security incidents can be swiftly resolved.
Google Public Sector brings the magic of Google to the mission of government and education with solutions purpose-built for enterprises. We focus on helping United States public sector institutions accelerate their digital transformations, and we continue to make significant investments and grow our team to meet the complex needs of local, state and federal government and educational institutions.
Responsibilities
- Respond to security incidents escalated from the front line 24/7 team.
- Build and develop security efficiencies on the platform to improve the overall security operations center (SOC).
- Conduct threat hunting activities on the platform and participate in purple team events.
- Review and develop security operations center dashboards for anomalous activity.
- Be a subject matter expert (SME) across typical security disciplines, vulnerability, Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM) etc.
Key Skills
Ranked by relevance
cloud
siem
ceh
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Security Engineer, Enterprise Security AI
2026-05-26
Full-time
Not Applicable
Singapore
Information Services
Information Technology
View Job Details
Related
Information Security Engineer, Product Security Engineering, Cloud CISO
2026-05-26
Full-time
Not Applicable
Switzerland
Information Services
Information Technology
View Job Details
Related
Software Engineering, Android Embedded Software
2026-05-27
Full-time
Not Applicable
India
Information Services
Information Technology
Login to Apply
- Posted
- Jul 24, 2025
- Type
- Full-time
- Level
- Not Applicable
- Location
- London
- Company
Industries
Information Services
Technology
Information
Internet
Categories
Information Technology
Engineering
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Security Engineer, Enterprise Security AI
2026-05-26
Full-time
Not Applicable
Singapore
Information Services
Information Technology
View Job Details
Related
Information Security Engineer, Product Security Engineering, Cloud CISO
2026-05-26
Full-time
Not Applicable
Switzerland
Information Services
Information Technology
View Job Details
Related
Software Engineering, Android Embedded Software
2026-05-27
Full-time
Not Applicable
India
Information Services
Information Technology