Security Engineer III - Security Operations

Primer.io - United Kingdom - Global - Construction & Infrastructure

An Introduction to Primer

Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.

Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, we're building the payments layer the world's best companies rely on.

Watch our showcase >

Read up on our $100m Series C

Learn more about our culture >

Primer is looking for a Security Engineer to help us detect, investigate, and respond to threats across our cloud infrastructure. You'll take ownership of a meaningful slice of our detection and response capability — tuning what our SIEM catches, building the automation that speeds up how we react, and being a first responder when something looks wrong.


What you'll be doing

  • Plan and deliver detection and response work end-to-end — from a new detection rule to a fully automated response — within your area of ownership.

  • Build, tune and maintain detections across our SIEM (Elastic) and AWS environment, closing gaps that existing coverage misses.

  • Own an investigation queue: triage, investigate, escalate and resolve security incidents, and write up findings clearly enough to stand on their own.

  • Build runbooks and automations (Python, and no-code tools like Zapier or Tines) to cut manual work out of triage and response.

  • Make and document risk decisions in your area, and know when to pull in others.

  • Support our compliance programme by keeping the controls you own audit-ready and contributing evidence for audits (e.g. SOC 2, PCI DSS).

  • Use Terraform and Python to build and maintain the infrastructure behind your detections and tooling.

  • Join our on-call rotation for incident response and monitoring.

What we're looking for

  • Hands-on experience building and tuning detections in a SIEM (Elastic preferred; Splunk, Sentinel or similar also welcome)

Browse more GCC jobs on EzWorkers