Requirements
Candidates should have several years of hands-on experience in SOC, CSIRT, or incident response roles within complex hybrid environments. Proficiency in security tools like SIEM, EDR, and vulnerability management, along with scripting skills and relevant cybersecurity certifications, is highly preferred.
Job Description
Oxford Nanopore Technologies (ONT) has developed a new generation of nanopore-based sensing technology for faster, information-rich, accessible and affordable molecular analysis. The technology is used to understand and characterise the biology of humans, animals, plants, bacteria, viruses and diseases such as cancer. By enabling biological insights, we strive to improve life on Earth and beyond.
We are looking for an experienced individual to join our Information Security team as a Senior InfoSec Engineer.
The Details...
The Senior InfoSec Engineer in responsible for enhancing the cybersecurity defences of ONT’s information systems.
You will investigate suspicious activity across the organisation's security telemetry, contain incidents and develop new procedures. You will also improve our internal SOC processes by developing detections, automating repeatable tasks, testing monitoring coverage, and sharing practical knowledge with the wider team.
You will lead the design, testing, identification and communication of security weaknesses to stakeholders across ONT and improve security controls and practices.
You will fully exploit the security tools available and enhance ONT’s technical assurance activities, working alongside Global IT teams to implement proactive security configurations including Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), User Entity and behaviour Analytics (UEBA), Secure Web Gateway (SWG), Data Loss Prevention (DLP), email filtering, and vulnerability scanning tools and have the opportunity to uncover security flaws and control weaknesses across Oxford Nanopore's IT and application estate, while performing security operations functions to bolster the Managed Security Operations Centre (MSOC) in order to protect Oxford Nanopore and its information, and respond in a timely manner to cyber threats.
Key Responsibilities:
Develop the blue team and threat hunting capability to harden and enhance the technological controls on Oxford Nanopore's IT estate.
Design, deploy and harden system configuration across enterprise IT devices.
Perform day-to-day BAU security operation activities including triaging and prioritising alerts from SIEM, EDR, identity, cloud, and other monitoring sources, separating genuine threats from benign activity.
Lead or contribute to incident investigations from initial validation through scoping, containment, eradication, recovery, and post-incident review.
Develop, tune, and validate detection logic, queries, rules, and dashboards so that monitoring is useful, explainable, and aligned to realistic risks.
Work with the MSOC and as part of the Incident Response Team.
Work with third parties to securely configure the platforms contributing to Oxford Nanopore’s security stack: EDR, SIEM/SOAR, SWG, DLP and vulnerability management.
Advise on security architecture improvements: changing vendors, enhancing services and identifying solutions
Produce high-quality technical documentation.
Turn recurring findings into measurable improvements to playbooks, detections, telemetry, response processes, and service reporting.
You might be a good fit if you have:
An interest in uncovering security flaws.
Experience working within a complex hybrid environment.
Previous experience with incident response and can bring suggestions on good practices that suit Oxford Nanopore.
An enthusiasm for self-learning and continually expanding one’s knowledge and skills.
The ability to work as part of a wider team, and be confident in making decisions.
High attention to detail with excellent organisational and planning skills.
Experience of security incident management.
Several years of hands-on experience in a SOC, CSIRT, detection engineering, incident response, or equivalent blue-team role.
Experience with SIEM, SOAR, DLP, vulnerability management, and threat intelligence.
Preferred Skills and Experience:
An undergraduate degree in a relevant subject or relevant experience.
Previous experience in a similar role such as engineer, analyst, or specialist.
Working knowledge of common attack techniques, the MITRE ATT&CK framework, incident handling, evidence preservation, and risk-based escalation.
Cybersecurity certification such as OSCP, OSDA, CRTO, GPEN, CDSA, or similar.
Experience with vulnerability scanning tools like InsightVM or Nexpose.
Scripting or automation experience in Python, PowerShell, Bash, or a comparable language, including use of APIs or repeatable response steps.
Experience with TI (Threat Intelligence) tools.
Experience working within an ISO 27001 compliant environment.
Familiarity with software engineering or application security.
Personal Qualities and Additional Skills
- Calm and methodical during incidents, with the confidence to act and the judgement to escalate uncertainty.
- Curious about how systems and attackers behave, and willing to test assumptions against evidence.
- Clear and respectful in written and verbal communication, including when explaining risk to non-specialists.
- A dependable team mate who shares knowledge, accepts review, and takes ownership of improvements beyond the immediate ticket.
Please note that no terminology in this advert is intended to discriminate on the grounds of a person's gender, marital status, race, religion, colour, age, disability or sexual orientation. Every candidate will be assessed only in accordance with their merits, qualifications and abilities to perform the duties of the job.
#LI-JR1
#LI-hybrid
Oxford Nanopore Technologies: Our goal is to bring the widest benefits to society through enabling the analysis of anything, by anyone, anywhere. The company has developed a new generation of nanopore-based sensing technology for faster, information rich, accessible and affordable molecular analysis. The first application is DNA/RNA sequencing, and the technology is in development for the analysis of other types of molecules including proteins. The technology is used to understand and characterise the biology of humans and diseases such as cancer, plants, animals, bacteria, viruses, and whole environments. With a thriving culture of ambition and strong innovation goals, Oxford Nanopore is a UK headquartered company with global operations and customers in more than 125 countries.