A leading technology provider is seeking a DV-cleared SOC Engineer to enhance its Security Operations Centre. This role focuses on detection engineering, SIEM optimisation, and automation, and requires strong skills in developing detection rules and supporting incident response in complex environments. The position offers a hybrid work model, requiring 3 days in Bristol. Candidates should have experience in SOC engineering and a good understanding of threat detection frameworks. Certifications such as CISSP or CISM are advantageous.
Qualifications
Experience in SOC Engineering or advanced SOC Analyst roles.
Strong hands-on experience with SIEM platforms and detection tuning.
Scripting/automation skills (Python, PowerShell or similar).
Responsibilities
Develop and tune SIEM detection rules and use cases.
Automate SOC workflows and incident response processes.
Support and lead incident investigations and escalations.
Skills
SOC Engineering experience
SIEM platforms expertise
Scripting skills (Python, PowerShell)
Threat detection frameworks understanding
Job description
A leading technology provider is seeking a DV-cleared SOC Engineer to enhance its Security Operations Centre. This role focuses on detection engineering, SIEM optimisation, and automation, and requires strong skills in developing detection rules and supporting incident response in complex environments. The position offers a hybrid work model, requiring 3 days in Bristol. Candidates should have experience in SOC engineering and a good understanding of threat detection frameworks. Certifications such as CISSP or CISM are advantageous.