Cyber Security Engineer / SOC Analyst

Advantage Resourcing UK Ltd

Stevenage

On-site

GBP 170,000 - 184,000

Full time

29 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

World Class Defence Organisation is seeking a Cyber Security Engineer on an initial 24‑month contract in Stevenage. The role is onsite five days a week with a 37-hour week and an hourly rate of £92.11.

You will lead on SOC tool optimization, playbook scripting, and integration across multiple security platforms to ensure threat detection and resilience. The candidate will work within the Cyber Security Operations Centre, reporting to the Cyber Security Capability Manager, and contribute to tool

Qualifications

  • Strong scripting and coding background with PowerShell and Python.
  • Experience with APIs, HTTP/S, JSON objects and data parsing.
  • Experience with proxies administration and changes.
  • Windows (SMB) and Unix/Linux storage concepts.
  • Experience configuring IIS and LDAP authentication.
  • Experience applying certificates and software updates, EOL refresh.
  • VMware/Hyper-V virtualization and virtual networking.
  • Experience implementing and maintaining cybersecurity tooling.
  • Experience creating/testing automation playbooks and incident response scripts.
  • Familiarity with SIEM technologies and alert tuning.

Responsibilities

  • Map SOC tool topology, integrations, and data feeds.
  • Tune and optimise SOC tooling for better visibility.
  • Maintain availability and performance of security toolsets.
  • Coordinate SOC appliance upgrades and lifecycle planning.
  • Implement changes and configurations; report to CAB and control boards.
  • Lead playbooks scripting; document and test procedures.
  • Serve as SME for SOC connectivity across in-scope networks.
  • Drive back-end refresh, patching, and certificate updates.
  • Support incident response and root-cause analysis activities.
  • Collaborate with back office to ensure tool availability and recoveries.

Skills

PowerShell
Python
Regex
APIs/JSON
Proxies
Windows & LDAP
Certificates & Updates
VMware/Hyper-V
SIEM
Cybersecurity tooling
Playbooks automation
Machine learning tooling

Tools

SIEM platforms

Job description

World Class Defence Organisation is currently looking to recruit a Cyber Security Engineer subcontractor on an initial 24 month contract.

People from a background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position.

Rate:£92.11 per hour

Location: Stevenage

Hybrid / Remote working:Onsite 5 days per week

Contract:37 Hours per week

Overtime:Hours worked over 37 hours per week will be calculated at ‘time and a quarter’

Duration:24 Months (initially and then ongoing and long-term thereafter)

IR35 status:Inside IR35 (Umbrella)

Cyber Security Engineer Job Description:

An opportunity has arisen in the Cyber Security Operations Centre (SOC) within Digital Excellence (DEX) UK for a Cyber Security Engineer.

The successful applicant will lead on the technical aspects of ensuring cyber security appliance efficiency of tasks to support alert tuning, network visibility and log ingesting to relevant toolsets. They will advise on implementation of new tools and lead the updating and expansion of existing capabilities. Reporting to the Cyber Security Capability Manager, the Cyber Security Engineer will provide support by ensuring availability, readiness and resilience of cyber security tool sets within in scope environments.

Responsibilities:

We are looking for a Cyber Security Engineer to support the Cyber Security Capability Manager in ensuring Digital Excellence UK meets the challenges and demands of countering the Cyber Threat. To work with other UK Cyber Security members, the role will cover back-end refresh, playbook scripting and fault finding, Cyber Security tool upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks.

  • Accountable for the effective mapping and topology of SOC toolsets including integrations and feeds between solutions
  • Enriching the visibility and optimisation of SOC tools through data modelling and tuning
  • Maintain the primary SOC toolsets, ensuring their availability, functionality and optimisation
  • Responsible for the daily muster and availability of all cyber security technologies within in-scope environments
  • Responsible for the accurate tracking of product lifecycle and advising management of EOL/EOS roadmaps
  • Support the Cyber Security Capability Manager in the coordination, planning and execution of SOC appliance upgrades
  • To support all cyber security pillars with new capability implementation and integration to existing solutions
  • Implement cyber security tool changes and configuration ensuring efficient reporting into CAB and control boards
  • To lead on playbook scripting activities ensuring they are well documented and tested. This includes fault finding and review of false positives
  • To be the Subject Matter Expert (SME) on SOC connectivity and visibility across all in scope networks and infrastructure, ensuring connections and integrations are understood and documented with the Cyber Security Capability Manager
  • To lead all activity of back-end refresh on cyber security appliances – including certificate updates, patch releases and software updates
  • Responsible for attending DEX CAB and collating all impacting activities on cyber security alerting
  • Responsible for attending DEX Incident and Issue red teams in support of root cause analysis – advising on cyber security changes which may impact other services
  • Collaborate closely with DEX back office to maintain availability and efficiency of cyber security tools and recover any service outages or disruption
  • Support the SOC in investigation activity utilising a wide variety of security platforms, creating custom searches, advanced queries or scripts in order to find the root cause or IOC of an alert
Skillset/experience required:
  • Strong coding and scripting background – PowerShell, Python & Regex
  • Proven ability to work with APIs, including HTTP/S headers and responses, JSON Objects.
  • Proven experience with Proxies administration and changes.
  • Windows (SMB) and *Nix (NFS) remote storage.
  • IIS (Windows Web Server) Configuration, Active Directory/ LDAP (authentication).
  • Experience with applying certificates, software updates and the steps involved for end-of-life refresh activity.
  • Experience with VMware/ Hyper-V Virtual machines and virtual switches.
  • Experience in setting up, implementing and maintenance of cyber security tooling.
  • Experience with the creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books.
  • Experience with SIEM (Security Information Event Management) technologies
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 174,000 - 180,000
Cyber Security Engineer
Cyber Security Engineer

Advanced Resource Managers Ltd • Stevenage

On-site
GBP 107,000 - 146,000
Cyber Security Engineer
Cyber Security Engineer

Carbon 60 • Stevenage

On-site
GBP 109,000 - 142,000
Cyber Security Engineer
Cyber Security Engineer

Guidant Global • Stevenage

On-site
GBP 109,000 - 142,000
Cyber Security SOC Analyst – 11626CA2
Cyber Security SOC Analyst – 11626CA2

Proactive.IT Appointments Limited • Bristol

On-site
GBP 40,000 - 45,000
Cyber Security Engineer — SOC Tools & Threat Detection
Cyber Security Engineer — SOC Tools & Threat Detection

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 174,000 - 180,000
Cyber Security Analyst
Cyber Security Analyst

Synapri • Greater London

Hybrid
GBP 50,000 - 70,000
Cyber Security Analyst vacancy in Hybrid (Remote 40%/London 60%) (250lw)
Cyber Security Analyst vacancy in Hybrid (Remote 40%/London 60%) (250lw)

Ex-Mill Recruitment Ltd • Greater London

Remote
GBP 83,000 - 120,000
Cyber Security SOC Analyst
Cyber Security SOC Analyst

Gold Group • City Of London

On-site
GBP 30,000 - 36,000
Gym membership
Vitality at Work
Cycle to Work
+3
SOC Analyst - SC Cleared
SOC Analyst - SC Cleared

Sanderson Government & Defence • Greater London

Hybrid
GBP 146,000 - 151,000