SC-Cleared SIEM Engineer: Sentinel & SOAR Automation

Harvey Nash

Reading

On-site

GBP 65,000 - 90,000

Full time

47 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Harvey Nash in the United Kingdom seeks an experienced SEIM Engineer with Active SC clearance to onboard and integrate security log sources into Microsoft Sentinel, delivering reliable telemetry and comprehensive threat visibility.

You will develop custom parsers, transformations and KQL queries, and design SIEM detections aligned to evolving threats. CI/CD pipelines with Azure DevOps/Git enable controlled deployments.

Qualifications

  • Active SC Clearance used in last 12 months.
  • 6 months experience onboarding security logs.

Responsibilities

  • Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security telemetry.
  • Develop custom parsers, data transformations and KQL queries for threat detection and investigation.
  • Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements.
  • Develop Logic Apps and SOAR workflows to automate security response.
  • Implement CI/CD pipelines using Azure DevOps/Git for controlled SIEM content deployment.
  • Automate SIEM configuration and deployments across environments.
  • Continuously tune and optimise detections to improve accuracy and reduce false positives.
  • Experience with LogRhythm, Check Point firewalls and SIEM logging platforms.
  • SEC503 / SANS certification or training would be highly desirable.

Skills

Microsoft Sentinel integration
KQL queries
Logic Apps / SOAR
CI/CD pipelines
Azure DevOps
Git
SIEM tuning
Threat detection
LogRhythm
Check Point firewalls

Tools

Azure DevOps
Git
Logic Apps
Microsoft Sentinel
LogRhythm
Check Point

Job description

Harvey Nash in the United Kingdom seeks an experienced SEIM Engineer with Active SC clearance to onboard and integrate security log sources into Microsoft Sentinel, delivering reliable telemetry and comprehensive threat visibility.

You will develop custom parsers, transformations and KQL queries, and design SIEM detections aligned to evolving threats. CI/CD pipelines with Azure DevOps/Git enable controlled deployments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SC-Cleared SIEM Engineer — Microsoft Sentinel Expert
SC-Cleared SIEM Engineer — Microsoft Sentinel Expert

Trust In SODA • Reading

Hybrid
GBP 150,000 - 170,000
Hybrid work arrangement
SC Cleared SIEM Engineer: Azure Sentinel & SOAR Expert
SC Cleared SIEM Engineer: Azure Sentinel & SOAR Expert

Lorien • Reading, Havant

On-site
GBP 111,000 - 166,000
SIEM Engineer
SIEM Engineer

Harvey Nash • Reading

On-site
GBP 65,000 - 90,000
SIEM Engineer (SC Cleared)
SIEM Engineer (SC Cleared)

Lorien • Reading, Havant

On-site
GBP 111,000 - 166,000
SIEM Engineer
SIEM Engineer

Trust In SODA • Reading

Hybrid
GBP 150,000 - 170,000
Hybrid work arrangement
SIEM Detection Engineer
SIEM Detection Engineer

Harvey Nash Plc • Reading

Hybrid
GBP 112,000 - 147,000
SIEM Detection Engineer for SCADA/OT Monitoring
SIEM Detection Engineer for SCADA/OT Monitoring

Harvey Nash Group • England

On-site
GBP 115,000 - 161,000
Senior SIEM & Detection Engineer (Sentinel/Splunk)
Senior SIEM & Detection Engineer (Sentinel/Splunk)

Sopra Steria Limited • Farnborough

On-site
GBP 65,000 - 90,000
Professional development
Mentoring and knowledge sharing
Sentinel Architect (Contract) — SIEM & SOAR Lead
Sentinel Architect (Contract) — SIEM & SOAR Lead

Insight Investment • Manchester

On-site
GBP 60,000 - 80,000
Senior SOC Detection Engineer - Hybrid, SC Clearance
Senior SOC Detection Engineer - Hybrid, SC Clearance

Sopra Steria Ltd • Farnborough

Hybrid
GBP 68,000 - 92,000
25 days annual leave
Life Insurance
Pension
+3