Senior SOC Engineer

Sopra Steria Ltd

Farnborough

Hybrid

GBP 68,000 - 92,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

25 days annual leave
Life Insurance
Pension
Car allowance
Private medical cover
Flex benefit

Job summary

Sopra Steria Ltd is seeking a Senior SOC Engineer (Detection) to design and deliver high‑quality detections across Microsoft Sentinel and Splunk for real‑time protection of critical systems and clients.

The role is hybrid, with 2 days in the Farnborough office and 3 days from home. You must be eligible for SC Clearance and be adept at turning threat intelligence into actionable detection logic.

Qualifications

  • Experience in SOC engineering or SIEM engineering.
  • Hands-on experience with Microsoft Sentinel and Splunk.
  • Solid knowledge of KQL and SPL.
  • Experience building, testing and maintaining detection rules.
  • Good understanding of SIEM lifecycle management and security telemetry.
  • Knowledge of cloud environments and IT infrastructure.
  • Familiar with MITRE ATT&CK framework.
  • Ability to analyse threats and translate to detections.

Responsibilities

  • Develop, test and deploy detection content across Microsoft Sentinel and Splunk SIEM.
  • Write and optimise detection logic using KQL and SPL.
  • Turn monitoring requirements and use cases into effective, actionable detections.
  • Tune alerts to reduce false positives and improve SOC efficiency.
  • Validate detections against telemetry and ensure accuracy.
  • Support onboarding of log sources across cloud, infrastructure, identity and network.
  • Collaborate with SOC, Threat Intelligence and Security Architecture teams.
  • Investigate detection issues and improve performance and reliability.
  • Drive continuous improvement using automation, scripting and best practice.
  • Ensure detections are clearly documented and operationally usable.

Skills

SOC engineering
detection engineering
SIEM engineering
Microsoft Sentinel
Splunk
KQL
SPL
Detection rules
Threat intelligence

Tools

Microsoft Sentinel
Splunk

Job description

Build the detections that stop threats in their tracks.


We’re looking for a Senior SOC Engineer (Detection) to join our growing Cyber Security team. This is a hands‑on engineering role where you’ll design and deliver high-quality detections across Microsoft Sentinel and Splunk, helping protect critical systems and clients in real time.


If you thrive on turning threat intelligence into actionable detection logic—and enjoy working at the heart of a live SOC—this is your opportunity to make a real impact.


This role is Hybrid: 2 days in the Farnborough office, 3 days from home.


You do need to be eligible for SC Clearance.


What you’ll be doing:


  • Develop, test and deploy detection content across Microsoft Sentinel and Splunk SIEM.

  • Write and optimise detection logic using KQL and SPL.

  • Turn monitoring requirements and use cases into effective, actionable detections.

  • Tune alerts to reduce false positives and improve SOC efficiency.

  • Validate detections against telemetry and ensure accuracy.

  • Support onboarding of log sources across cloud, infrastructure, identity and network.

  • Collaborate with SOC, Threat Intelligence and Security Architecture teams.

  • Investigate detection issues and improve performance and reliability.

  • Drive continuous improvement using automation, scripting and best practice.

  • Ensure detections are clearly documented and operationally usable.


What you’ll bring:


  • Experience in SOC engineering, detection engineering or SIEM engineering.

  • Strong hands‑on experience with Microsoft Sentinel and Splunk.

  • Solid knowledge of KQL and SPL.

  • Experience building, testing and maintaining detection rules.

  • Good understanding of SIEM lifecycle management and security telemetry.

  • Knowledge of cloud environments and IT infrastructure.

  • Familiarity with frameworks such as MITRE ATT&CK.

  • Ability to analyse threats and translate them into detection capability.


Nice to have:


  • Experience with SOAR (Logic Apps / Splunk SOAR).

  • Detection-as-code or CI/CD pipeline experience.

  • Scripting in PowerShell, Python or similar.

  • Experience with Git-based workflows.

  • Relevant certifications (Microsoft, Splunk, Cyber Security).


Employment Type: Permanent
Location: Hybrid: 2 days Farnborough Office. 3 days home.
Security Clearance Level: Eligible for SC Clearance.
Salary: To £80K
Benefits: 25 days annual leave with the choice to buy additional days,4 x life Insurance, matched contributory pension to 6%, 3% flex benefit, single private medical cover, £5400.00 car allowance.


Sopra Steria’s Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client’s goal of National Security, and we operate in a unique and privileged environment.
We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK’s most complex safety- and security‑critical markets.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Engineer Detection
SOC Engineer Detection

Sopra Steria Ltd • Farnborough

Hybrid
GBP 55,000 - 60,000
Health Shields
Life assurance
Pension
+2
Senior Security Operational Centre Engineer
Senior Security Operational Centre Engineer

Sopra Steria • Farnborough

Hybrid
GBP 50,000 - 60,000
25 days annual leave
Health Shields
Life assurance
+1
SOC Engineer Automation
SOC Engineer Automation

Sopra Steria • Farnborough

Hybrid
GBP 59,000 - 72,000
25 days annual leave with the option 0
Health Shields
life assurance
+1
SOC Shift Lead
SOC Shift Lead

Sopra Steria Ltd • Hemel Hempstead

On-site
GBP 59,000 - 72,000
25 days annual leave
Health cash plan
Life assurance
+1
SOC Architect
SOC Architect

Sopra Steria • Farnborough

Hybrid
GBP 81,000 - 99,000
Car allowance
25 days annual leave
Private medical
+2
SOC Architect
SOC Architect

STERIA UK LIMITED • Farnborough

Hybrid
GBP 60,000 - 90,000
Car allowance
Private medical
Life assurance
+2
Senior SOC Detection Engineer - Hybrid, SC Clearance
Senior SOC Detection Engineer - Hybrid, SC Clearance

Sopra Steria Ltd • Farnborough

Hybrid
GBP 68,000 - 92,000
25 days annual leave
Life Insurance
Pension
+3
Senior Security Engineer - Monitoring & Detection
Senior Security Engineer - Monitoring & Detection

Made Tech Limited • West of England

On-site
GBP 55,000 - 85,000
30 days Holiday
Flexible Working Hours
Remote Working (part-time)
+1
Senior Security Engineering Consultant
Senior Security Engineering Consultant

Infosec • Basingstoke

Hybrid
GBP 56,000 - 80,000
Salary up to £80,000
Bonuses
Hybrid work
Senior Microsoft Sentinel Detection Engineer
Senior Microsoft Sentinel Detection Engineer

Sopra Steria • Farnborough

Hybrid
GBP 50,000 - 60,000
25 days annual leave
Health Shields
Life assurance
+1