{"id":1891684,"url":"https://alion.io/job/giacom-security-operations-engineer","title":"Security Operations Engineer","company":{"id":2324737,"name":"Giacom","domain":"giacom.com","url":"https://alion.io/company/giacom","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Teamtailor","truth_index":{"grade":"B","score":75,"open_postings":3,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-10-07T05:47:15Z"}},"role":"Security","role_family":"Security","seniority":null,"employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":[],"countries":[],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":null,"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Crowdstrike","optional":false},{"name":"IBM QRadar","optional":false},{"name":"Incident Management","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"SentinelOne","optional":false},{"name":"Service Desk","optional":false},{"name":"SIEM","optional":false},{"name":"Splunk","optional":false}],"status":"live","first_seen_at":"2026-07-15T15:51:00Z","employer_posted_date":"2026-07-15","last_verified_at":"2026-10-08T00:24:59Z","board_verified":true,"closed_at":null,"days_open":84,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":84},"description":"Giacom are the only provider of Comms, Cloud, Hardware and Billing all through one platform.\nOur platform connects technology resellers and service providers to the best IT, Comms and Cloud products and services so they can create brilliant technology solutions for UK businesses.\nThe Security Operations (SecOps) Engineer will play a key role in maintaining and improving the organisation's overall security posture and operational security capability, acting as the bridge between internal stakeholders, technology teams and outsourced security service providers.\nThis role is primarily a Security Operations and Engineering position, with responsibility for coordinating outsourced SOC services and driving security posture improvement.\nWhat you'll be doing\nAct as the primary technical conduit and liaison between the organisation and our outsourced third-party SOC vendor.\n\nTriage, analyse and prioritise alerts, incidents, escalations, and investigations - validating severity, business impact, and regulatory implications of incidents\n\nCo-ordinate incident management and response activities aligned with defined policies, standards, and framework requirements by being the internal response facilitator and co-ordinator for containment, eradication, and recovery actions for security incidents escalated by the SOC\n\nActively assist and work closely with the outsourced SOC provider to:\nInvestigate root causes of security issues and design effective remediation solutions\n\nMonitor and configure security tools - global EDR/XDR policies, blocklists, and automated containment rules including SIEM, EDR and respond to threat detection alerts.\n\nMaintain and enhance security monitoring capabilities through effective integrations and optimisation of security tooling, ensure effective data collection and eliminate visibility blind spots.\n\nWork closely with outsourced SOC vendor and internal engineering teams to implement automation workflows for routine SOC tasks such as alert enrichments, notifications, and data gathering, providing technical support and testing.\n\nDesign, configure, and implement security improvement initiatives and projects to enhance the organisation’s overall security posture.\n\nCollaborate with Corporate IT Service Desk to maintain governance over IT operations, ensuring technical controls across endpoints, enterprise solutions, and identity services are hardened, continuously monitored, and managed in accordance with Secure by Default principles to enable resilient and secure day-to-day operations.\n\nSkills, Qualifications, and Experience\nPrevious hands-on experience in cybersecurity operations or security engineering roles.\n\nExperience of security monitoring, threat detection, incident response, and threat hunting methodologies.\n\nStrong working knowledge of endpoint security, identity and access management, authentication controls, privileged access management, and security hardening standards incl. Privileged Access Management (PAM/PIM) principles and enterprise Endpoint Detection & Response (EDR/XDR) tooling.\n\nExperience managing security tooling such as Microsoft Defender XDR, Sentinel, CrowdStrike, Splunk, QRadar, SentinelOne or similar enterprise-grade SIEM/XDR platforms.\n\nDirect experience securing Microsoft 365 tenants and standard corporate SaaS environments.\n\nProven experience interfacing with, tuning, or triaging escalations from a third-party managed SOC or SIEM platform would also be desirable.\n\nWhat's in it for you?\nHybrid working (3 days per week in our Hessle or Prudhoe office, 2 remote)\n\nInvestment in your future career with a variety of learning and development opportunities.\n\nNo dress code - embrace the freedom to bring your whole self to work.\n\n25 days annual leave, plus bank holidays. You'll even get your birthday off, too!\n\nA pension plan for your future.\n\nComplimentary refreshments in all our offices.\n\nFor a comprehensive list of all our benefits, clickhere.\nDiversity and equality lie at the heart of our values. As an equal opportunities and disability-confident employer, we encourage applications from all eligible candidates, regardless of their backgrounds. We firmly believe that diversity enriches and strengthens our team with a variety of perspectives that drives innovation.","description_format":"text","description_chars":4275,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Annual leave","Hybrid work"],"hiring_locations":[{"name":"United Kingdom","iso":"GB","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Information Technology","Managed IT Services (MSP)","IT Resellers & VARs"],"lifecycle":[{"event":"open","at":"2026-10-05T05:25:48Z"}],"visa":[],"liveness":{"score":9,"band":"cold","label":"Long shot","p_open":1,"p_active":0.324,"p_room":0.28,"age_days":83,"expected_fill_days":21,"reasons":["conf:2","win:tail","crowd:"],"computed_at":"2026-10-07T05:47:15Z"},"pay":null,"html_url":"https://alion.io/job/giacom-security-operations-engineer","json_url":"https://alion.io/job/giacom-security-operations-engineer.json","meta":{"generated_at":"2026-10-08T01:06:57Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1934,"day_limit":5000,"remaining_today":3066,"minute_limit":60,"resets_at":"2026-10-09T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":2324737},"rest":"https://alion.io/mcp/rest/get_company?id=2324737"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fgiacom-security-operations-engineer"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fgiacom-security-operations-engineer"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fgiacom-security-operations-engineer"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/giacom-security-operations-engineer\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fgiacom-security-operations-engineer"}]}