Security Operations Analyst (SecOps)

Reposted 8 Days Ago
Be an Early Applicant
United Kingdom
80K-95K Annually
Mid level
Database
The Role
The Security Operations Analyst will protect the organization by monitoring security, responding to incidents, ensuring compliance, and refining security practices. Key responsibilities include threat detection, incident response, and vulnerability management.
Summary Generated by Built In
Attio is on a mission to redefine CRM for the AI era.

We’re building the first AI-native CRM — designed for the most ambitious go-to-market teams. We recently announced our $52M Series B, led by GV (Google Ventures), with support from Redpoint, Balderton, Point Nine, and 01A. Our team thrives on solving complex technical challenges, delighting our users, and setting a new standard for the industry.

About the Role

The Security Operations Analyst is a mission-critical role within the Security, Infrastructure and Performance team, directly responsible for maintaining a vigilant and robust security posture for the entire organisation. This position focuses on the real-time protection of all organisational assets, infrastructure, and data.

The role requires a deep understanding of security frameworks, network protocols and adversarial tactics, techniques, and procedures (TTPs). The Analyst is the frontline defender, dedicated to ensuring business continuity and protecting the confidentiality, integrity, and availability of all critical resources.

Core Responsibilities and Duties
  • Security Monitoring, Triage & Improvement: Rapidly detect and prioritise active threats and vulnerabilities through continuous monitoring (SIEM, EDR, Cloud), ensuring that insights from root cause analysis and proactive threat hunting are directly fed back into the engineering process and used refine detection capabilities.

  • Incident Response: Serve as the initial responder to security events. Rapidly analyse, classify, and prioritise reported or detected security incidents, determining the scope, severity, and potential impact to the platform.

  • Compliance: Enforce the compliance with internal security policies and regulatory requirements maintaining meticulous records of all detected security events, analysis findings, and incident response activities.

Competencies and Skills
  • Security Information and Event Management (SIEM) Platform Expertise:

    • Must have: Hands-on experience in the operation, administration, and ongoing maintenance of a major SIEM platform

    • Desirable: Experience with Google SecOps (formerly Chronicle), including advanced knowledge of data ingestion, rule creation, dashboard development, and optimisation for performance and cost-effectiveness. The ability to leverage the platform for proactive threat hunting and complex query construction is expected.

    • Desirable: Proficiency in Google SecOps (formerly Chronicle) SOAR (security orchestration, automation, and response) tooling. This includes developing SOAR actions and workflows to automate alert triage, immediate incident mitigation, and response procedures.

  • Security Incident Response:

    • Must have: Proven experience in the end-to-end development, documentation, and execution of comprehensive security incident response playbooks and procedures.

    • Must have: Practical experience in incident triage, containment, eradication, recovery, and post-mortem analysis for a wide range of security events (e.g., malware outbreaks, unauthorised access, data exfiltration, cloud compromises).

    • Desirable: The ability to lead and coordinate incident response efforts across cross-functional teams under pressure is crucial.

  • Security Log and Network Analysis:

    • Must have: Deep expertise in the analysis of security logs from diverse sources (e.g., operating systems, firewalls, endpoint protection, cloud environments) to identify anomalies, indicators of compromise (IOCs), and root causes of incidents.

    • Must have: Expert-level knowledge of common attack vectors, attacker methodologies (e.g., MITRE ATT&CK framework), and techniques, tactics, and procedures (TTPs) used by various threat actors.

    • Desirable: Comprehensive understanding of network protocols (e.g., TCP/IP, DNS, HTTP/S) and their associated traffic patterns to effectively detect malicious activity and understand its propagation.

  • Vulnerability Management:

    • Must have: Solid familiarity with industry-standard vulnerability scanning tools (e.g., Nessus, Qualys, Rapid7, Trivy).

    • Desirable: Experience managing a vulnerability disclosure or bug bounty program. Testing disclosed vulnerabilities and working with external security researchers.

    • Desirable: Experience in establishing, running, and managing a continuous vulnerability management lifecycle, including scanning, reporting, prioritisation, and tracking of remediation efforts in coordination with engineering and system owner teams.

What we offer
  • Competitive salary of £80,000 to £95,000

  • Equity in an early-stage tech company on an incredible trajectory

  • 25 days holiday plus local public holidays

  • Apple hardware

  • Private medical insurance through AXA

  • Pension contribution through Hargreaves Lansdown

  • Enhanced family leave

  • Team off-site in fun places! (We've been to Barcelona, Lisbon, Malta, and Split so far)

Top Skills

Edr
Google Secops (Chronicle)
Nessus
Qualys
Rapid7
SIEM
Trivy)
Vulnerability Scanning Tools (E.G.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
30 Employees
Year Founded: 2019

What We Do

Attio is the CRM of the future: data-driven, completely customizable and intuitively collaborative.

Similar Jobs

monday.com Logo monday.com

Team Lead

Productivity • Sales • Software
Hybrid
London, Greater London, England, GBR
3049 Employees

Mondelēz International Logo Mondelēz International

Senior Product Manager

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Hybrid
Birmingham, West Midlands, England, GBR
90000 Employees

Mondelēz International Logo Mondelēz International

Business Analyst

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
4 Locations
90000 Employees
3K-3K Annually

Mondelēz International Logo Mondelēz International

Affiliate Manager - Grenade

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Hybrid
Birmingham, West Midlands, England, GBR
90000 Employees

Similar Companies Hiring

Apollo.io Thumbnail
Software • Sales • Productivity • Information Technology • Enterprise Web • Database • Artificial Intelligence
US
850 Employees
Perchwell Thumbnail
Software • Real Estate • Mobile • Database • Analytics
New York City, NY
58 Employees
Jellyfish Thumbnail
Software • Productivity • Database • Cloud • Big Data • Automation • Analytics
Boston, MA
225 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account