Senior SOC Engineer

Sopra Steria Limited

Farnborough

On-site

GBP 65,000 - 90,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Professional development
Mentoring and knowledge sharing

Job summary

Sopra Steria Limited is seeking a SOC Detection Engineer in the UK to turn threat intelligence into robust detection logic across MS Sentinel and Splunk. You will implement detection rules, optimize alerts, and collaborate with SOC, Threat Intelligence and Security Architecture teams to improve security operations.

The role involves onboarding log sources, cloud and infrastructure monitoring, and continual improvement through automation and scripting.

Qualifications

  • Experience in SOC engineering, detection engineering or SIEM engineering.
  • Strong hands-on experience with Microsoft Sentinel and Splunk.
  • Solid knowledge of KQL and SPL.
  • Experience building, testing and maintaining detection rules.
  • Good understanding of SIEM lifecycle management and security telemetry.
  • Knowledge of cloud environments and IT infrastructure.
  • Familiarity with MITRE ATT&CK.

Responsibilities

  • Develop, test and deploy detection content across Microsoft Sentinel and Splunk.
  • Write and optimise detection logic using KQL and SPL.
  • Turn monitoring requirements into effective, actionable detections.
  • Tune alerts to reduce false positives and improve SOC efficiency.
  • Validate detections against telemetry and ensure accuracy.
  • Support onboarding of log sources across cloud, infrastructure, identity and network.
  • Collaborate with SOC, Threat Intelligence and Security Architecture teams.
  • Investigate detection issues and improve performance and reliability.
  • Drive continuous improvement using automation, scripting and best practice.
  • Ensure detections are clearly documented and operationally usable.

Skills

Microsoft Sentinel
Splunk
KQL
SPL
Threat analysis
CI/CD pipelines
PowerShell
Python
Git-based workflows
SOAR

Tools

Logic Apps
Splunk SOAR
Git
PowerShell
Python

Job description

Responsibilities
  • Develop, test and deploy detection content across Microsoft Sentinel and Splunk SIEM.
  • Write and optimise detection logic using KQL and SPL.
  • Turn monitoring requirements and use cases into effective, actionable detections.
  • Tune alerts to reduce false positives and improve SOC efficiency.
  • Validate detections against telemetry and ensure accuracy.
  • Support onboarding of log sources across cloud, infrastructure, identity and network.
  • Collaborate with SOC, Threat Intelligence and Security Architecture teams.
  • Investigate detection issues and improve performance and reliability.
  • Drive continuous improvement using automation, scripting and best practice.
  • Ensure detections are clearly documented and operationally usable.
Experience
  • Experience in SOC engineering, detection engineering or SIEM engineering.
  • Strong hands-on experience with Microsoft Sentinel and Splunk.
  • Solid knowledge of KQL and SPL.
  • Experience building, testing and maintaining detection rules.
  • Good understanding of SIEM lifecycle management and security telemetry.
  • Knowledge of cloud environments and IT infrastructure.
  • Familiarity with frameworks such as MITRE ATT&CK.
  • Ability to analyse threats and translate them into detection capability.
Nice to have:
  • Experience with SOAR (Logic Apps / Splunk SOAR).
  • Detection-as-code or CI/CD pipeline experience.
  • Scripting in PowerShell, Python or similar.
  • Experience with Git-based workflows.
  • Relevant certifications (Microsoft, Splunk, Cyber Security).
Role Overview

If you thrive on turning threat intelligence into actionable detection logic-and enjoy working at the heart of a live SOC-this is your opportunity to make a real impact., Sopra Steria's Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client's goal of National Security, and we operate in a unique and privileged environment.

Benefits
  • We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK's most complex safety- and security-critical markets.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Engineer
Senior SOC Engineer

Sopra Steria Ltd • Farnborough

Hybrid
GBP 68,000 - 92,000
25 days annual leave
Life Insurance
Pension
+3
SOC Engineer Detection
SOC Engineer Detection

Sopra Steria Ltd • Farnborough

Hybrid
GBP 55,000 - 60,000
Health Shields
Life assurance
Pension
+2
Senior Security Operational Centre Engineer
Senior Security Operational Centre Engineer

Sopra Steria • Farnborough

Hybrid
GBP 50,000 - 60,000
25 days annual leave
Health Shields
Life assurance
+1
Senior SOC Analyst
Senior SOC Analyst

GCS Recruitment • Greater London

Hybrid
GBP 90,000 - 120,000
SOC Shift Lead
SOC Shift Lead

Sopra Steria Ltd • Hemel Hempstead

On-site
GBP 59,000 - 72,000
25 days annual leave
Health cash plan
Life assurance
+1
Senior SIEM & Detection Engineer (Sentinel/Splunk)
Senior SIEM & Detection Engineer (Sentinel/Splunk)

Sopra Steria Limited • Farnborough

On-site
GBP 65,000 - 90,000
Professional development
Mentoring and knowledge sharing
Senior SOC Analyst
Senior SOC Analyst

Cloud People • Greater London

On-site
GBP 60,000 - 90,000
Senior SOC Detection Engineer - Hybrid, SC Clearance
Senior SOC Detection Engineer - Hybrid, SC Clearance

Sopra Steria Ltd • Farnborough

Hybrid
GBP 68,000 - 92,000
25 days annual leave
Life Insurance
Pension
+3
Senior Security Engineering Consultant
Senior Security Engineering Consultant

Infosec • Basingstoke

Hybrid
GBP 56,000 - 80,000
Salary up to £80,000
Bonuses
Hybrid work
Senior SOC Analyst
Senior SOC Analyst

Searchability NS&D • Farnborough

On-site
GBP 42,000 - 70,000
Shift allowance included within the包
Ongoing training and professional dev
Support towards cyber security certs
+1