CareerPlanSign in

Cyber Threat Engineer

UK London💼 Full-time🗓 2026-09-21 → 2026-09-25

Core

Bridge security engineering and incident response operations to safeguard payments infrastructure.

Role type

Cyber Threat Engineer (Incident Response & Security Operations)

Builds

Security tooling, detection rules, SOAR playbooks, and incident response capabilities.

Domain

Cybersecurity / Payments Infrastructure

Deliverable

production ML models | product features | dashboards & analysis | client delivery | infrastructure

Required skills

Security Engineering, Incident Response, Threat Hunting, SIEM, SOAR, Python, Go, Infrastructure as Code (IaC), Cloud Security (GCP, AWS), Root Cause Analysis, Automation

Preferred skills

Google SecOps experience

Technologies

SIEM, SOAR, Python, Go, GCP, AWS

Responsibilities

Triage alerts and coordinate end-to-end security incident management; Conduct proactive threat hunting across network, endpoint, and cloud environments; Maintain and optimize critical security tooling (SIEM, EDR, SOAR); Maintain and update Infrastructure as Code (IaC) pipelines; Build high-fidelity detection rules and design SOAR playbooks; Identify visibility gaps and engineer solutions to advance security operations; Mentor team members in automation practices and produce metrics and reporting dashboards.

Seniority

Mid-Senior, hands-on IC

Sourced via greenhouse · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.