SOC Engineer

Proactive Appointments Ltd — United Kingdom · Posted ~2 days ago

Mid Hybrid Visa Sponsored £50000-£55000 + bonus

Skills

Microsoft Sentinel SIEM SOAR Azure Logic Apps Python PowerShell Bash KQL Security telemetry management Detection engineering Threat hunting EDR

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A hands-on SOC engineering opportunity within a growing security operations environment. You will build and optimise SIEM and SOAR capabilities, manage security telemetry, develop and tune detection rules, automate response workflows, and perform proactive threat hunting. Strong experience with cloud security tooling, scripting, query languages, and endpoint security technologies is expected. The role offers hybrid working, competitive compensation, bonus potential, and sponsorship support.

Highlights

Hands-on SOC engineering role with a strong focus on security automation, detection engineering, telemetry optimisation, and proactive threat hunting. Offers hybrid working, competitive compensation, a bonus, and sponsorship support.

Description

SOC Engineer Milton Keynes - Hybrid working SC Clearance Sponsorship Available £50,000 - £55,000 + Bonus We're seeking a hands-on SOC Engineer to join a growing Cyber Security Operations Centre supporting a diverse portfolio of customers across multiple sectors This is a specialist SOC Engineering position focused on building, maintaining, and optimising the tools, telemetry, detections, and automation that enable SOC Analysts to identify and respond to threats effectively. This is not a generalist cyber security role. Key Responsibilities Administer and optimise Microsoft Sentinel (or equivalent SIEM), including log ingestion, parsing, normalisation, and retention.Develop and maintain SOAR workflows and automation using Azure Logic Apps, Python, PowerShell, Bash, and KQL.Onboard and manage security telemetry from a range of data sources.Design, implement, and tune detection rules to improve alert quality and reduce false positives.Conduct proactive threat hunting using SIEM, EDR, and threat intelligence sources.Support incident investigations, containment, and response activities.Monitor and maintain the health of SOC tooling, sensors, agents, and log pipelines.Produce documentation, runbooks, and operational procedures. Skills & Experience Experience engineering and supporting SIEM platforms, ideally Microsoft Sentinel.Strong scripting and automation skills (Python, PowerShell, Bash, KQL).Experience with SOAR technologies and security automation.Knowledge of detection engineering and threat hunting.Strong understanding of Windows and Linux logging.Good networking knowledge including TCP/IP, DNS, firewalls, and proxies.Experience within a SOC, NOC, or 24/7 operational environment.Familiarity with MITRE ATT&CK, CVEs, and vulnerability management.Exposure to cloud security monitoring across Azure, AWS, or Microsoft 365. Desirable Certifications Microsoft SC-200CompTIA Security+ / CySA+ISC2 CC or CISSPGIAC GCIACEHCisco CyberOps or Fortinet certifications What's on Offer? Opportunity to work within a mature and growing SOC environment. Exposure to a wide range of customer environments and technologies. Security Clearance sponsorship available for eligible candidates. Clear opportunities to contribute to automation, detection engineering, and SOC improvement initiatives. Location: Milton Keynes (Hybrid) Working Pattern: Shift rota including evenings, weekends, bank holidays on-call support.