cover image
Starling Bank

Security Operations Engineer - Engine by Starling

Hybrid

London, United kingdom

Junior

Full Time

04-09-2025

Share this job:
Expired

Skills

Incident Response Cloud Security Monitoring

Job Specifications

At Engine by Starling, we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology.

Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and two years ago we split out as a separate business.

Starling Bank has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. This SaaS technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success.

As a company, everyone is expected to roll up their sleeves to help deliver great outcomes for our clients. We are an engineering led company and we're looking for someone who will be excited by the potential for Engine's technology to transform banking in different markets around the world.

Hybrid Working

We have a Hybrid approach to working here at Engine - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person.

About the Role

To support our growth, we are looking for talented and motivated SOC engineers to join our foundational in-house SOC team. In this pivotal role, you will be instrumental in supporting the development, implementation, and operating of our security monitoring, detection, and response capabilities, with a particular focus on our cloud environments. You'll be at the forefront of responding to incidents and alerts, and helping shape the future of our security operations capabilities.

What you'll get to do:

Security Monitoring & Alert Triage:

Monitor security alerts and events generated by various security tools
Perform triage and analysis of security incidents and anomalies, distinguishing between true positives and false positives.
Prioritise alerts based on severity, potential impact, and business criticality.

Incident Detection & Response:

Investigate security incidents thoroughly, leveraging logs from platforms, endpoints, applications, and other security tools.
Create and follow incident response playbooks and contribute to their continuous improvement.
Collaborate with Technology, Product and Engineering Teams to contain, eradicate, and recover from security incidents.
Document incident details, findings, and remediation steps accurately and comprehensively.

Additionally

Stay informed about the latest cyber threats, attack techniques, and vulnerabilities, especially those targeting cloud environments.
Participate in proactive threat hunting activities using available tools and data sources.
Contribute to the optimisation, tuning, and maintenance of SOC tools
Identify opportunities for automation to streamline security operations and enhance detection capabilities.
Maintain detailed records of security incidents, investigations, and remediation actions.

Requirements

3+ years of hands-on experience in a Security Operations Center (SOC) or similar cybersecurity role.
Demonstrable experience with cloud security monitoring and incident response.
Familiarity with various attack vectors, threat intelligence frameworks (e.g., MITRE ATT&CK).
A cyber/information security related degree and/or relevant cybersecurity qualifications would be beneficial e.g. CompTIA Security+, (ISC)2 SSCP or CySA+

Interviewing is a two way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team:

Stage 1 - 45 mins with BISO
Stage 2 - 60 min with Team Members
Stage 3 - Final with CTO

Benefits

33 days holiday (including public holidays, which you can take when it works best for you)
An extra day's holiday for your birthday
Annual leave is increased with length of service, and you can choose to buy or sell up to five extra days off
16 hours paid volunteering time a year
Salary sacrifice, company enhanced pension scheme
Life insurance at 4x your salary & group income protection
Private Medical Insurance with VitalityHealth including mental health support and cancer care. Partner benefits include discounts with Waitrose, Mr&Mrs Smith and Peloton
Generous family-friendly policies
Incentives refer a friend scheme
Perkbox membership giving access to retail discounts, a wellness platform for physical and mental health, and weekly free and boosted perks
Access to initiatives like Cycle to Work, Salary Sacrificed Gym partnerships and Electric Vehicle (EV) leasing

About Us

You may be put off applying for a role because you don't tick every box. Forget that! While we can't accommodate every flexible working request, we're

About the Company

Hello, we’re Starling. Banking was broken – so we decided to fix it. The vision? Fast technology, fair service and honest values. All at the tap of a phone, all the time. We built Britain’s first digital bank. One hard-won banking licence later, we set about giving people a new way to spend, save and manage their money (and take better care of the planet, too). We’re changing banking for good. Back then, we were obsessed with unravelling the knotty world of finance and solving people’s problems rather than selling them ... Know more