Enable job alerts via email!

Lead SIEM Engineer

Fynity

Hemel Hempstead

Hybrid

GBP 60,000 - 80,000

Full time

6 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading cybersecurity firm is seeking a 'Lead SOC SIEM Engineer' to build and manage SIEM content. This hybrid role requires strong technical skills, solid experience with SIEM tools like Splunk or QRadar, and knowledge of security best practices. Joining an expanding team, you'll have a direct impact on security measures while collaborating closely with multifaceted teams. Apply ASAP for this dynamic opportunity.

Qualifications

  • Solid hands-on experience with SIEM tools like Splunk, Sentinel or QRadar.
  • Good grip on security best practices and standards (ISO 27001/27002, PCI DSS).
  • Familiarity with frameworks such as NIST, ISO and CIS.
  • Comfortable scripting in Python, PowerShell and regex.

Responsibilities

  • Building, tuning and managing SIEM content such as rules, dashboards, and reports.
  • Spotting and addressing issues in data early.
  • Collaborating with Analysts, Architects, PMs, and Engineers.
  • Incorporating the latest threat intel and vulnerabilities.
  • Shaping and maintaining security standards and procedures.

Skills

Hands-on experience with SIEM tools
Security best practices knowledge
Scripting in Python
Scripting in PowerShell
Knowledge of regex

Tools

Splunk
Sentinel
QRadar
Job description
Lead SOC SIEM Engineer

Hybrid: Hemel Hempstead (1-2 days a week on site)

Clearance: Willing and able to get DV clearance

Senior SOC SIEM Content Engineer to join a large expanding SOC team supporting some of the most high‑profile defence clients out there. The Senior SIEM Engineer will play a key role in the business building and tuning SIEM content, covering rules, dashboards and reports. If you're strong technically, know your way around SIEMs and want to use your skills to the full across multiple customers and projects, this SIEM Engineer role could be the move you've been looking for.

What you'll be doing
  • Building, tuning and looking after SIEM content such as rules, dashboards, and reports, making sure threats don't get missed.
  • Keeping an eye on the data, spotting issues early and helping us respond quickly.
  • Working side by side with Analysts, Architects, PMs and Engineers to make sure the SIEM content hits the mark.
  • Bringing the latest threat intel, vulnerabilities and attack methods into our set‑up.
  • Helping to shape and maintain security standards and procedures.
What you'll bring
  • Solid hands‑on experience with SIEM tools like Splunk, Sentinel or QRadar.
  • A good grip on security best practices and standards (ISO 27001/27002, PCI DSS).
  • Familiarity with frameworks such as NIST, ISO and CIS.
  • Comfortable scripting in Python, PowerShell and regex.
  • The ability to work across multiple projects and still keep the detail sharp.

This is a SIEM Content Engineer role where you'll actually see the difference your work makes. A hybrid set‑up gives you a mix of home and on‑site time, and you'll be part of a team that's genuinely expanding, not replacing.

If you are interested please apply ASAP. The People Network is an employment agency and will respond to all applicants within three‑five working days. If you do not hear within these timescales please feel free to get in touch.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.