# Security Operations, Engineer

**Company**: Brainlabs
**Location**: United Kingdom
**Work arrangement**: hybrid
**Experience**: senior
**Job type**: full-time
**Category**: IT
**Industry**: Technology

**Apply**: https://job-boards.greenhouse.io/brainlabs/jobs/4965817101?utm_source=yubhub.co&utm_medium=jobs_feed&utm_campaign=apply
**Canonical**: https://yubhub.co/jobs/job_a9ec0da1-b0e

## Description

Brainlabs is the independent, founder-led agency building the future of media. We have over 1000 Brainlabbers based across the globe, all united through the 12 principles laid out in our Culture Code. We're full-service, with people and AI agents working side by side, all aligned to one thing: maximizing our clients' revenue through a genuinely scientific approach to media.

**Job Summary** As a Security Operations Engineer, you will own day-to-day security operations, including vulnerability management, connector and MCP approvals, threat model reviews, and incident support. You will also run and extend our SecOps AI agents, make security decisions, drive vulnerability remediation, and keep security posture visible across GCP projects, AWS, and Azure.

**Responsibilities**

- Own day-to-day security operations: vulnerability management, connector and MCP approvals, threat model reviews, and incident support

- Run and extend our SecOps AI agents, which handle Mend triage, MCP assessment, documentation review, and incident scribing

- Make security decisions the agents escalate, setting clear conditions rather than blanket blocks

- Drive vulnerability remediation with our dev and platform teams, escalating when fixes stall

- Keep security posture visible across GCP projects, AWS, and Azure, and partner with SEP2, our external MDR provider

**Requirements**

- Solid security operations experience, whether from security engineering, appsec, or platform security

- Knowledge of GCP: IAM, service accounts, logging, and org policy. AWS and Azure familiarity helps

- Ability to read code well enough to judge whether a SAST finding is real

- Fluency with AI tooling and ability to build with it rather than around it

- Clear writing skills, as most of what you produce is a decision someone else has to act on

- Comfortable saying no with a reason and yes with conditions, and happy owning a function rather than working a queue

## Skills

### Required
- GCP
- IAM
- service accounts
- logging
- org policy
- AI tooling
- security operations
- vulnerability management

### Nice to have
- AWS
- Azure

---

Source: [Apply at job-boards.greenhouse.io](https://job-boards.greenhouse.io/brainlabs/jobs/4965817101?utm_source=yubhub.co&utm_medium=jobs_feed&utm_campaign=apply)
