Lead Security Operations Engineer
PleoRemotely
automationawsgcpsiemdlpmitre att&cknistcis
Job Description
📋 Description
- Build and own a structured SecOps roadmap grounded in MITRE ATT&CK, NIST, and CIS benchmarks.
- Lead security investigations and digital forensics from suspicious traffic to incident response.
- Design, tune, and scale SIEM and logging pipelines with standardized log ingestion.
- Strengthen perimeter and authentication posture, including WAF configuration and monitoring.
- Protect sensitive data via DLP controls and ensure coverage where data resides.
- Improve on-call rotation, alerting, escalation paths, and response SLAs.
🎯 Requirements
- 10+ years in security operations, incident response, or related field with proven risk reduction.
- Strong development/engineering background; comfortable writing automation.
- Hands-on SOC and SIEM management, including detection engineering and log pipelines.
- Experience in scale-up environments; built capability rather than inherited it.
- Strong understanding of AWS; some GCP experience; informed about infrastructure decisions for
- Experience using AI or coding automation to implement security controls.
🎁 Benefits
- Your own Pleo card; catered meals or lunch allowance.
- Comprehensive private healthcare options depending on location.
- 25-28 days holiday plus public holidays.
- Hybrid and remote working options; option to purchase extra holiday days.
- Mental health and well-being support through MyndUp; paid parental leave.