Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

CSIRT Engineer (Cyber Security Incident Response Team)

OVO Energy
CompanyOVO Energy
CategoryEngineering
LocationAny of our offices
RemoteOn-site (inferred)
EmploymentNot stated
LevelNot stated
SalaryNot stated by the employer
Posted23 Apr 2026
Last verified10 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Role OVO-View Team: Cyber Defence Operations Location: Hub Based - Hybrid for all Salary banding: £56,000 and £75,000 Experience: Mid-level Working pattern: Full-Time Reporting to: Delivery & Growth Lead Sponsorship: Unfortunately we are unable to offer sponsorship for this role. Top 3 qualities for this role: Adaptability, Passionate, Integrity   Where you’ll work: Depending on the needs of your business area, we expect hub based people to be in the office at least once a week, and to go to OVO Connection events in-person.  You’ll be assigned to the closest one of our three hub offices, Bristol, Glasgow, or London; unless your role requires field-based work. Each hub has accessible spaces to park your laptop, is designed to inspire people, help them connect and bring big ideas to life.   Everyone belongs at OVO: At OVO, we are on a mission to solve one of humanity's biggest challenges, the climate crisis. And we know it takes all of us to change the world. That's why we need diverse people from all abilities, gender identities, ethnicities, ages, sexual orientations, life experiences and backgrounds to join us.   Teamworking for the planet: Everything we do here spins around Plan Zero. So, naturally, the team you’ll be joining plays a gigantic role in making that happen. Here’s how: The Cyber Defence Operations team is responsible for ensuring the resilience and security of all OVO systems, data, and critical infrastructure. Our vision is to maintain a continuously hardened and observable digital estate, allowing OVO to innovate quickly and securely. Our impact directly supports Plan Zero by protecting the technology that underpins all climate-crisis-solving initiatives, guaranteeing that our mission to drive a clean energy transition is never disrupted.   This role in a nutshell: The purpose of this role is to act as a hands-on cybersecurity specialist within the Cyber Defence Operations team, expertly managing the full lifecycle of security threats, from proactive defence hardening and detection engineering to rapid incident response. This position directly relates to Plan Zero by ensuring the stability and trustworthiness of the technology platform that enables millions of customers to transition to net-zero carbon living.   Your key outcomes will be: Front-line of the Security Operations Centre at OVO, handling day-to-day incidents, with a view of leading several junior analysts in the upcoming months Execute the incident response process for critical security alerts, ensuring swift containment, eradication, and post-incident analysis Develop and implement security monitoring and detection logic (e.g., SIEM rules) to reduce the time from compromise to detection (MTTD) Conduct and support proactive security exercises, including penetration tests and red teaming activities, to continuously assess and harden OVO’s environment Systems : Google Chronicle, Crowdstrike, Jira, Sublime, Tines   You’ll be a successful CSIRT Engineer at OVO if you… Possess deep SOC expertise You have a proven track record of navigating high-pressure environments and managing the full lifecycle of security alerts Are an Incident Response specialist You effectively lead the transition from detection to containment and recovery with speed and technical precision Apply an offensive mindset You leverage your experience in Penetration Testing or Red Teaming to anticipate adversary tactics and proactively harden defences Invest in technical leadership You scale your impact by mentoring junior and senior analysts, directly contributing to the team’s collective growth Drive operational efficiency You collaborate across the team to refine detection logic, automate workflows, and optimise ticket response to maintain a lean, effective operation   Let’s talk about what’s