SC Cleared Cyber Security Engineer

Lorien

Stevenage

On-site

GBP 180,000 - 210,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Lorien in the United Kingdom is seeking a SC Cleared SOC Threat Detection Analyst to support the Cyber Security Capability Manager. The role is onsite in Stevenage on a 12-month contract (Inside IR35) with a rate of £92.00 per hour, covering back-end refresh, scripting playbooks, and tool upgrades across UK networks.

You will maintain SOC toolsets, coordinate upgrades, and act as SME for SOC connectivity. Live SC clearance is required and additional DV clearance will be arranged.

Qualifications

  • Proven experience as a SOC Engineer
  • Live SC Clearance
  • Strong coding and Scripting background - PowerShell, Python & Regex
  • Proven ability to work with APIs, including HTTP/S headers and responses, JSON Objects.
  • Proven experience with Proxies administration and changes.
  • Windows SMB and Unix NFS remote storage.
  • IIS Configuration, Active Directory/LDAP.
  • Experience with applying certificates, software updates and end-of-life refresh activity.
  • Experience with VMware/Hyper-V Virtual machines and virtual Switches.
  • Experience in setting up, implementing and maintenance of cyber security tooling.
  • Experience with AI or machine learning for workflow or playbook optimization.
  • Experience with SIEM technologies

Responsibilities

  • Lead SOC toolset mapping and topology integrations
  • Enrich visibility through data modelling and tuning
  • Maintain primary SOC toolsets and ensure availability
  • Manage daily muster and availability of cyber security technologies
  • Track product life cycle and advise on EOL/EOS roadmaps
  • Coordinate SOC appliance upgrades with Cyber Security Capability Manager
  • Support new capability implementation and integration
  • Implement tool changes and report into CAB and control boards
  • Lead playbook scripting, documentation, and testing
  • SME for SOC connectivity across in-scope networks
  • Lead back-end refresh on cyber security appliances, including updates
  • Attend DEX CAB and incident reviews and advise on changes
  • Collaborate with DEX Back Office for tool availability and incidents
  • Support investigation activities with security platforms and IOC searches

Skills

SC Clearance
SOC Engineer
APIs
PowerShell
Python
Regex
JSON
Cyber security tooling

Tools

SIEM
VMware
Hyper-V
IIS
Active Directory
LDAP
REST APIs
JSON
Certificates

Job description

  • SC Cleared SOC Threat Detection Analyst
  • Stevenage - Onsite 5 days a week
  • 12 month contract - will be extended for a further 24 months
  • Inside of IR35
  • £92.00 per hour

We are looking for a Cyber Security Engineer to support the Cyber Security Capability Manager in ensuring Digital Excellence UK meets the challenges and demands of countering the Cyber Threat the MBDA. To work with other UK Cyber Security members, the role will cover Back End refresh, playbook Scripting and fault finding, Cyber Security tool upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks.

For this role you will need to hold live SC Clearance, the client will put you through DV Clearence!

The SOC Threat Detection Analyst key responsibilities are:
  • Accountable for the effective mapping and topology of SOC toolsets including integrations and feeds between solution
  • Enriching the visibility and optimisation of SOC tools through data modelling and tuning
  • Maintain the primary SOC toolsets, ensuring their availability, functionality and optimisation
  • Responsible for the daily muster and availability of all cyber security technologies within in-scope environments
  • Responsible for the accurate tracking of product life cycle and advising management of EOL/EOS roadmaps
  • Support the Cyber Security Capability Manager in the coordination, planning and execution of SOC appliance upgrades
  • To support all cyber security pillars with new capability implementation and integration to existing solutions
  • Implement cyber security tool changes and configuration ensuring efficient reporting into CAB and control boards
  • To lead on playbook Scripting activities ensuring they are well documented and tested. This includes fault finding and review of false positives
  • To be the Subject Matter Expert (SME) on SOC connectivity and visibility across all in scope networks and infrastructure, ensuring connections and integrations are understood and documented with the Cyber Security Capability Manager
  • To lead all activity of Back End refresh on cyber security appliances - including certificate updates, patch releases and software updates
  • Responsible for attending DEX CAB and collating all impacting activities on cyber security alerting
  • Responsible for attending DEX Incident and Issue red teams in support of root cause analysis - advising on cyber security changes which may impact other services
  • Collaborate closely with DEX Back Office to maintain availability and efficiency of cyber security tools and recover any service outages or disruption
  • Support the SOC in investigation activity utilising a wide variety of security platforms, creating custom searches, advanced queries or scripts in order to find the root cause or IOC of an alert
Skillset/experience required:
  • Proven experience as a SOC Engineer
  • Live SC Clearance
  • Strong coding and Scripting background - PowerShell, Python & Regex
  • Proven ability to work with APIs, including HTTP/S headers and responses, JSON Objects.
  • Proven experience with Proxies administration and changes.
  • Windows (SMB) and.Nix (NFS) remote storage.
  • IIS (Windows Web Server) Configuration, Active Directory/LDAP (authentication).
  • Experience with applying certificates, software updates and the steps involved for end-of-life refresh activity.
  • Experience with VMware/Hyper-V Virtual machines and virtual Switches.
  • Experience in setting up, implementing and maintenance of cyber security tooling.
  • Experience with the creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books.
  • Experience with SIEM (Security Information Event Management) technologies
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Tatton Recruitment • Stevenage

On-site
GBP 170,000 - 185,000
Cyber Security Engineer
Cyber Security Engineer

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 174,000 - 180,000
Cyber Security Engineer / SOC Analyst
Cyber Security Engineer / SOC Analyst

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 170,000 - 184,000
Cyber Security Engineer
Cyber Security Engineer

Akkodis • Stevenage

On-site
GBP 60,000 - 90,000
Cyber Security Engineer
Cyber Security Engineer

Line Up Aviation • Stevenage

On-site
GBP 107,000 - 127,000
SOC Analyst - SC Cleared
SOC Analyst - SC Cleared

Sanderson Government & Defence • Greater London

Hybrid
GBP 146,000 - 151,000
Cyber Security Engineer
Cyber Security Engineer

Advanced Resource Managers Ltd • Stevenage

On-site
GBP 107,000 - 146,000
SOC Engineer - Contract
SOC Engineer - Contract

iO Associates • Bristol

Hybrid
Senior SOC Analyst - DV Clearance
Senior SOC Analyst - DV Clearance

Xpand Group • City Of London

On-site
GBP 70,000 - 100,000
Cyber Security Engineer
Cyber Security Engineer

Meritus • Stevenage

On-site
GBP 7,577,000 - 12,690,000