Security Engineer III - Security Operations

Primer
United Kingdom, Hungary, Poland, South Africa, Portugal, Ireland, Romania
Workplace: RemoteFull timeFunction: CybersecuritySkills: ["Structured communication","Incident triage","Risk decision-making"]

Own end-to-end detection and response for threats across cloud infrastructure. Tune and maintain SIEM detections (Elastic) and AWS detections, triage and resolve security incidents, and turn repeatable work into runbooks and automations using Python and tools like Zapier/Tines. Use MITRE ATT&CK to guide coverage, support audit-ready controls for compliance, and collaborate via incident response on an on-call rotation.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Primer
Primer
2 days ago

Security Engineer III - Security Operations

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Own end-to-end detection and response for threats across cloud infrastructure. Tune and maintain SIEM detections (Elastic) and AWS detections, triage and resolve security incidents, and turn repeatable work into runbooks and automations using Python and tools like Zapier/Tines. Use MITRE ATT&CK to guide coverage, support audit-ready controls for compliance, and collaborate via incident response on an on-call rotation.
Location: United Kingdom, Hungary, Poland, South Africa, Portugal, Ireland, Romania
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Plan and deliver detection and response work end-to-end, from new detection rules to fully automated responses within your ownership area.
  • •Build, tune, and maintain detections across SIEM and AWS, closing gaps in existing coverage.
  • •Own an investigation queue: triage, investigate, escalate, resolve security incidents, and document findings clearly.
  • •Build runbooks and automations to reduce manual work in triage and response.
  • •Support compliance by keeping owned controls audit-ready and contributing evidence for audits (e.g., SOC 2, PCI DSS), using Terraform and Python to maintain underlying infrastructure.

Pay and Benefits

Equity and Bonus:Equity
Perks:EquityPaid LeaveLearning BudgetHealth InsuranceHome Office

Key Requirements

  • •Hands-on experience building and tuning detections in a SIEM (Elastic preferred; Splunk, Sentinel or similar also welcome).
  • •Experience with AWS and cloud-native detection and response.
  • •Comfortable using Python for scripting and automation.
  • •Experience with Terraform or other infrastructure-as-code.
  • •Working knowledge of MITRE ATT&CK and real experience triaging, investigating, and resolving security incidents.
Experience:FintechPayments
Skills:Structured communicationIncident triageRisk decision-making
Tech Stack:ElasticAWSSIEMPythonZapierTinesTerraformMITRE ATT&CKSplunkSentinel

Company Brief

Primer
Provides a unified, no-code / low-code payments infrastructure and orchestration platform that lets merchants connect, automate and optimise payment flows across processors, methods and partners to improve conversion and reduce friction.
Industry: Fintech Infrastructure
Company Size: Medium (51 to 250 employees)
Growth: Scaleup
Valuation: USD 250M to 500M
Funding: Series B
Headquarters: London, United Kingdom
Founded: 2020
WebsiteLinkedInGlassdoor