Senior SIEM Engineer - Threat Detection & Automation

Anson Mccade

Glasgow

On-site

GBP 37,000 - 69,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Anson Mccade is seeking a Senior SOC Engineer to strengthen security operations in Glasgow. The role focuses on deploying and optimising the QRadar SIEM, onboarding log sources, and developing detection rules across on‑prem and cloud environments.

You will lead incident response playbooks, integrate with SOAR platforms, and collaborate with threat intelligence teams to continuously improve detection logic and security posture. On‑site with 24/7 on-call support, in Glasgow, UK.

Qualifications

  • Experience in IBM QRadar SIEM engineering.
  • Strong knowledge of log formats, parsing, and normalisation.
  • Proficiency with SIEM query languages: KQL, SPL, AQL.
  • Scripting experience with Python or PowerShell for automation.
  • Understanding of threat detection, incident response and kill chain concepts.
  • Familiarity with MITRE ATT&CK, NIST, CIS frameworks.
  • Solid communication, analytical and presentation skills.
  • Experience with ITIL processes (Incident, Problem, Change).
  • Ability to work independently and in on-call environments.
  • 3–5 years in IT security, SOC/NOC preferred.
  • Various cybersecurity certifications are advantageous.

Responsibilities

  • Deploy, configure, and maintain the QRadar SIEM platform.
  • Onboard and normalise log sources across on‑prem and cloud environments.
  • Develop and optimise analytical rules for threat and anomaly detection.
  • Design incident response playbooks for phishing, lateral movement, and exfiltration.
  • Integrate playbooks with SOAR platforms (Logic Apps, XSOAR).
  • Refine playbooks using threat intel and incident insights.
  • Monitor security alerts and conduct investigations.
  • Collaborate with threat intel teams to enhance detection logic.
  • Lead threat modelling using MITRE ATT&CK, STRIDE, Cyber Kill Chain.
  • Translate threat models into detection use cases and SIEM rules.
  • Produce reports and dashboards to communicate security posture.
  • Partner with IT, DevOps, and compliance to enforce secure configs.
  • Provide mentorship to junior staff.
  • Maintain security procedure documentation and runbooks.
  • Support pre-sales with technical requirements.

Skills

SIEM engineering
QRadar
KQL
SPL
AQL
Python
PowerShell
Threat detection
MITRE ATT&CK
Incident response

Tools

IBM QRadar
ServiceNow
XSOAR
Logic Apps
Azure
AWS
Splunk
Microsoft Office

Job description

Anson Mccade is seeking a Senior SOC Engineer to strengthen security operations in Glasgow. The role focuses on deploying and optimising the QRadar SIEM, onboarding log sources, and developing detection rules across on‑prem and cloud environments.

You will lead incident response playbooks, integrate with SOAR platforms, and collaborate with threat intelligence teams to continuously improve detection logic and security posture. On‑site with 24/7 on-call support, in Glasgow, UK.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Engineer
Senior SOC Engineer

Anson Mccade • Glasgow

On-site
GBP 37,000 - 69,000
Senior Detection Engineer for SOC Automation
Senior Detection Engineer for SOC Automation

Infosec • Basingstoke

Hybrid
GBP 56,000 - 80,000
Salary up to £80,000
Bonuses
Hybrid work
Senior SOC Lead – Threat Detection & Incident Response
Senior SOC Lead – Threat Detection & Incident Response

IBM • Hursley

Hybrid
GBP 65,000 - 90,000
Flexible working styles
Sabbatical programs
Maternity returners scheme
+2
Senior SOC Analyst | SIEM, Incident Response, SC Cleared
Senior SOC Analyst | SIEM, Incident Response, SC Cleared

LA International • West Midlands

On-site
GBP 70,000 - 100,000
Senior Cyber Security Analyst, SIEM & Incident Response
Senior Cyber Security Analyst, SIEM & Incident Response

ASHURST BUSINESS SERVICES LIMITED • Glasgow

Hybrid
GBP 70,000 - 100,000
Flexible work options
Health & wellbeing benefits
Career advancement opportunities
Senior SOC Solutions Engineer: QRadar SIEM & Threat Detection
Senior SOC Solutions Engineer: QRadar SIEM & Threat Detection

Anson McCade • England

Hybrid
GBP 70,000 - 85,000
SC Cleared SOC Analyst: QRadar & Incident Response (Remote)
SC Cleared SOC Analyst: QRadar & Incident Response (Remote)

Matchtech • Essex

Hybrid
GBP 83,000 - 111,000
Remote with ad-hoc visits
Inside IR35
Security Operations Lead: SIEM & Incident Response (Hybrid)
Security Operations Lead: SIEM & Incident Response (Hybrid)

Morson Human Resources Limited • Scotland

Hybrid
GBP 70,000 - 100,000
Senior SOC Analyst – Hybrid (Dundee) & IR Lead
Senior SOC Analyst – Hybrid (Dundee) & IR Lead

N-able • Dundee

Hybrid
GBP 70,000 - 110,000
Medical coverage
Dental coverage
Vision coverage
+5
Security Platform Engineer - SIEM & Automation
Security Platform Engineer - SIEM & Automation

Infosec • Stevenage

On-site
GBP 76,000 - 127,000