Security Operations Engineer (SOC Engineer L2)

Tata Consultancy Services

Royal Leamington Spa

Hybrid

GBP 65,000 - 90,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Pension
Health care
Life assurance
Laptop
Phone
Training resources
Discounts within Tata network
Health & wellness initiatives
London Marathon sponsorship

Job summary

Tata Consultancy Services invites applications for the Security Operations Engineer (SOC Engineer L2) role based in Warrington or Leamington Spa. This permanent, hybrid position focuses on designing, implementing, and improving security monitoring, detection, and automation across enterprise environments.

You will work with SOC, infrastructure, cloud, and application teams to enhance visibility, improve detections, and automate security operations using modern technologies.

Qualifications

  • Bachelor’s degree in cyber security, Computer Science, Information Technology, or related field.
  • 5+ years of Detection Engineering or Security Engineering experience.
  • Experience designing and implementing enterprise-scale SIEM and EDR solutions.
  • Strong knowledge of security monitoring, detections, and automation.

Responsibilities

  • Evaluate and onboard security log sources from cloud, infrastructure, applications, and security tools.
  • Configure and maintain log collection, parsing, normalization, enrichment, and data quality processes within SIEM platforms.
  • Develop and maintain detection rules, correlation searches, alerts, and security monitoring use cases.
  • Support tuning and optimization of detections to improve alert quality and reduce false positives.
  • Assist with SOAR playbooks, workflows, and security automation initiatives.
  • Implement integrations between SIEM, SOAR, EDR/XDR, IAM, vulnerability management, ticketing systems, and other security platforms.
  • Monitor and troubleshoot log ingestion pipelines, integrations, and security platform issues.
  • Produce operational reports, dashboards, and metrics to support security monitoring and SOC performance measurement.
  • Support incident response activities, investigations, threat hunting, and continuous improvement initiatives.
  • Contribute to AI-driven security initiatives that enhance alert triage, investigation efficiency, threat detection, and response processes.
  • Identify opportunities to automate repetitive security tasks and reduce manual effort within the SOC.

Skills

SIEM Administration
Detection Engineering
SOAR and Security Automation
API Integrations
Python scripting
Log parsing & normalization
Threat monitoring
Incident response

Education

Bachelor’s degree in cyber security, Computer Science, Information Technology, or related field

Tools

EDR/XDR
SIEM platforms
SOAR

Job description

If you need support in completing the application or if you require a different format of this document, please get in touch with at UKI.recruitment@tcs.com or call TCS London Office number 02031552100 / +44 204 520 2575 with the subject line: “Application Support Request”.

Role: Security Operations Engineer (SOC Engineer L2)

Work Location: Warrington or Leamington Spa

Role Type: Permanent

Mode of Working: Hybrid

Are You Ready to Utilise Your Experience in Cyber Security?

We have an exciting role for you — Security Operations Engineer (SOC Engineer L2)

Careers at TCS: It means more

TCS is a purpose-led transformation company, built on belief. We do not just help businesses to transform through technology. We support them in making a meaningful difference to the people and communities they serve - our clients include some of the biggest brands in the UK and worldwide. For you, it means more to make an impact that matters, through challenging projects which demand ambitious innovation and thought leadership.

The Role

As an experienced Security Engineer, you will be responsible for supporting the design, implementation, and continuous improvement of security monitoring, detection, response, and automation capabilities across enterprise environments. You will work closely with SOC, infrastructure, cloud, and application teams to enhance visibility, improve detection coverage, and streamline security operations through automation and modern security technologies.

Key responsibilities
  • Evaluate and onboard security log sources from cloud, infrastructure, applications, and security tools.
  • Configure and maintain log collection, parsing, normalization, enrichment, and data quality processes within SIEM platforms.
  • Develop and maintain detection rules, correlation searches, alerts, and security monitoring use cases.
  • Support tuning and optimization of detections to improve alert quality and reduce false positives.
  • Assist with the development and maintenance of SOAR playbooks, workflows, and security automation initiatives.
  • Implement integrations between SIEM, SOAR, EDR/XDR, IAM, vulnerability management, ticketing systems, and other security platforms.
  • Manage and maintain security tooling infrastructure, ensuring reliable operation and performance.
  • Monitor and troubleshoot log ingestion pipelines, integrations, and security platform issues.
  • Produce operational reports, dashboards, and metrics to support security monitoring and SOC performance measurement.
  • Support incident response activities, investigations, threat hunting, and continuous improvement initiatives.
  • Contribute to AI-driven security initiatives that enhance alert triage, investigation efficiency, threat detection, and response processes.
  • Identify opportunities to automate repetitive security tasks and reduce manual effort within the SOC.
Your Profile
Essential skills/knowledge/experience
  • Critical thinking skills and problem solving
  • Communication skills (able to convey complex ideas in simple terms to both non-native English speaker and management)
  • Experienced with AI agents (both personal use and implementation of agentic workflows in security tools
  • SIEM Administration
  • Parsing & Normalization of log and data sources
  • Detection Engineering
  • Rule Development & Tuning
  • SOAR and Security Automation
  • API Integrations and logic app development
  • Security Tool Administration
  • Understanding of metrics reporting and method of creating automated reports
  • Bachelor’s degree in cyber security, Computer Science, Information Technology, or related field.
  • 5+ years of Detection Engineering, or Security Engineering experience.
  • Experience designing and implementing enterprise-scale SIEM and EDR solutions.
  • Microsoft SC-200
  • Microsoft SC-100
  • AZ-500
  • CEH
  • Python scripting

TCS is consistently voted a Top Employer in the UK and globally. Our competitive salary packages feature pension, health care, life assurance, laptop, phone, access to extensive training resources and discounts within the larger Tata network.

We offer health & wellness initiatives and sports events; we are the proud sponsor of the London Marathon.

Diversity, Inclusion and Wellbeing

Tata Consultancy Services UK&I is committed to meeting the accessibility needs of all individuals in accordance with the UK Equality Act 2010 and the UK Human Rights Act 1998.

We welcome and embrace diversity in race, nationality, ethnicity, disability, neurodiversity, gender identity, age, physical ability, gender reassignment, sexual orientation. We are a disability inclusive employer and encourage disabled people to apply for this role.

As a Disability Confident Employer, we offer an interview to applicants with disabilities or long-term conditions who meet the minimum criteria for the role. Please email us at UKI.recruitment@tcs.com if you would like to opt in.

If you are an applicant who needs any adjustments to the application process or interview, please contact us at UKI.recruitment@tcs.com with the subject line: “Adjustment Request” or call TCS London Office 02031552100 / +44 204 520 2575 to request an adjustment. We welcome requests prior to you completing the application and at any stage of the recruitment process.

Due to the high volume of applications, we will be unable to contact each applicant individually on the status of their application. If you have not received a direct response within 30 days, then it should be deemed unsuccessful on this occasion.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations Engineer ( SOC Engineer L3)
Senior Security Operations Engineer ( SOC Engineer L3)

Tata Consultancy Services • Warrington, Royal Leamington Spa

Hybrid
GBP 75,000 - 110,000
Pension
Health care
Life assurance
+4
Microsoft purview and Entra ID SME
Microsoft purview and Entra ID SME

Tata Consultancy Services • Greater London

On-site
GBP 50,000 - 80,000
Health care
Life assurance
Pension
+2
Desktop Support Specialist
Desktop Support Specialist

Tata Consultancy Services • Bridgwater

On-site
GBP 30,000 - 40,000
Competitive salary
Health care
Access to extensive training resources
+1
Senior Java Software Engineer
Senior Java Software Engineer

Tata Consultancy Services • Burgess Hill

Hybrid
GBP 65,000 - 95,000
Pension
Health care
Life assurance
+3
Cyber Detection and Response AI Implementation & Validation Specialist
Cyber Detection and Response AI Implementation & Validation Specialist

Tata Consultancy Services • Brighton

Hybrid
GBP 70,000 - 100,000
Pension
Health care
Life assurance
+4
Infrastructure Engineer
Infrastructure Engineer

Tata Consultancy Services • Burgess Hill

On-site
GBP 40,000 - 60,000
Pension
Health care
Access to training resources
+1
Security Managed Services Senior Analyst
Security Managed Services Senior Analyst

Accenture UK • Greater London

On-site
GBP 55,000 - 75,000
Lead Software Engineer
Lead Software Engineer

Tata Consultancy Services • Greater London

Hybrid
GBP 60,000 - 90,000
Competitive salary packages
Pension
Health care
+3
Full Stack Engineer
Full Stack Engineer

Tata Consultancy Services • Greater London

Hybrid
GBP 60,000 - 80,000
Healthcare benefits
Pension plan
Access to training resources
SOC Analyst - SC Cleared
SOC Analyst - SC Cleared

Sanderson Government & Defence • Greater London

Hybrid
GBP 146,000 - 151,000