Senior SOC Analyst: Detection Engineer & Automation Lead

Franklin Fitch

Basingstoke

On-site

GBP 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Franklin Fitch is seeking a senior, hands-on cybersecurity consultant to help customers enhance and automate their SOC capabilities. You will design, build, and optimise detections across SIEM, XDR, and SOAR with a focus on detection engineering and automation.

Key responsibilities include developing detection rules for SIEMs (especially Microsoft Sentinel), building SOAR automations, and creating MITRE ATT&CK-aligned use cases.

Qualifications

  • Experience designing and engineering SIEM solutions, preferably Microsoft Sentinel.
  • Strong hands-on skills in KQL and detection rule development.
  • Experience building automations in SOAR platforms.
  • Proficiency in Python and PowerShell for API integrations and automation.
  • Knowledge of MITRE ATT&CK framework for threat modeling.
  • Experience with leading XDR/EDR platforms such as Defender XDR, CrowdStrike, Cortex XDR, or SentinelOne.
  • Solid understanding of Azure security services and telemetry collection.
  • Customer-facing consulting with excellent communication and stakeholder management skills.
  • Ability to translate business requirements into effective security monitoring and detection strategies.

Responsibilities

  • Design, develop, and optimise detection rules for SIEM and XDR platforms, focusing on Microsoft Sentinel.
  • Build and maintain SOAR automations, incident response playbooks, and workflow integrations.
  • Develop high-quality detections using KQL, Python, and PowerShell.
  • Create detection use cases aligned with MITRE ATT&CK framework.
  • Assess customer telemetry to identify visibility gaps and improve coverage.
  • Lead Detection as Code pipelines with version-controlled content.
  • Lead customer workshops and provide strategic SOC maturity advice.
  • Collaborate with engineering, onboarding, and delivery teams to integrate detections and responses.
  • Continuously refine detection content and automation standards for SOC effectiveness.

Skills

SIEM design
KQL
SOAR automation
Python
PowerShell
MITRE ATT&CK
XDR platforms
Azure security
Communication
Detection engineering

Tools

Microsoft Sentinel
Logic Apps
Cortex XSOAR
SentinelOne
CrowdStrike Falcon
Palo Alto Cortex XDR

Job description

Franklin Fitch is seeking a senior, hands-on cybersecurity consultant to help customers enhance and automate their SOC capabilities. You will design, build, and optimise detections across SIEM, XDR, and SOAR with a focus on detection engineering and automation.

Key responsibilities include developing detection rules for SIEMs (especially Microsoft Sentinel), building SOAR automations, and creating MITRE ATT&CK-aligned use cases.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection Engineering Consultant - SIEM/XDR Specialist
Detection Engineering Consultant - SIEM/XDR Specialist

Franklin Fitch • Greater London

Hybrid
GBP 55,000 - 65,000
Bonus
Senior SOC Analyst
Senior SOC Analyst

Franklin Fitch • Basingstoke

On-site
GBP 90,000 - 120,000
SOC Engineer: Detection Engineering & Automation
SOC Engineer: Detection Engineering & Automation

Proactive.IT Appointments Ltd. • Milton Keynes

On-site
GBP 55,000 - 85,000
Security clearance sponsorship
Exposure to diverse customer envs
Senior SOC Incident Lead & Detection Engineer
Senior SOC Incident Lead & Detection Engineer

Xact Placements Limited • Reading

Hybrid
GBP 50,000 - 60,000
Hybrid work arrangement
Competitive salary
Senior Security Engineer: Detection & Automation Consultant
Senior Security Engineer: Detection & Automation Consultant

InfoSec People Ltd • Basingstoke

Hybrid
GBP 70,000 - 100,000
Hybrid working model
Comprehensive employee benefits
Senior SOC Engineer: SIEM, SOAR & XDR Automation
Senior SOC Engineer: SIEM, SOAR & XDR Automation

InfoSec People Ltd • Basingstoke

On-site
GBP 65,000 - 85,000
Senior Security Engineer
Senior Security Engineer

InfoSec People Ltd • Basingstoke

On-site
GBP 65,000 - 85,000
Senior SOC Engineer — Automation & Detection Lead
Senior SOC Engineer — Automation & Detection Lead

Nomios UK&I • Basingstoke

Hybrid
GBP 65,000 - 90,000
Office in Basingstoke
Hybrid work model
Competitive salary
Senior SecOps Architect: Detection, IR & Automation
Senior SecOps Architect: Detection, IR & Automation

Jobtailor • Greater London

On-site
GBP 120,000 - 170,000
Senior Detection Engineer: Threat-Led, Cloud & SIEM
Senior Detection Engineer: Threat-Led, Cloud & SIEM

Our Future Health UK • Greater London

Hybrid
GBP 65,000
Generous Pension Scheme
30 Days Holiday + Bank Holidays
Enhanced Parental Leave
+4