SIEM Engineer

Iomart

Leeds

Hybrid

GBP 65,000 - 90,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible hybrid or remote work
Professional development support
Collaborative team environment
Exposure to wide security technologies

Job summary

Atech, part of the Iomart Group, is seeking a SIEM Engineer to design, implement, and optimise security monitoring solutions across diverse customer environments. You will work primarily with Microsoft Sentinel and Defender, onboarding customers into our Managed SOC while maturing their security posture.

This role combines detections engineering, automation, and customer engagement, building detections, data integrations, and automation to enhance SOC effectiveness and efficiency.

Qualifications

  • Hands-on experience with Microsoft Sentinel and Defender in SIEM/SOC environments.
  • Proficient in KQL, PowerShell, Python, and automation tooling for detection engineering.
  • Experience integrating data sources and building detections and playbooks.

Responsibilities

  • Design, implement, and maintain detections, analytics rules, and automations in Microsoft Sentinel.
  • Onboard customers to Managed SOC with configurations and data connectors.
  • Tune alerts to reduce false positives and improve analyst efficiency.

Skills

Microsoft Sentinel
Microsoft Defender
KQL
PowerShell
Python
Automation

Tools

Azure Logic Apps
Terraform
Bicep

Job description

What you'll be doing:

As a SIEM Engineer at Atech, you will play a key role in designing, implementing, and optimising security monitoring solutions across a diverse range of customer environments. Working primarily with Microsoft Sentinel, Microsoft Defender, and the wider Microsoft Security ecosystem, you will help onboard customers into our Managed SOC service while supporting them in strengthening and maturing their overall security posture.

What you'll be doing:

As a SIEM Engineer at Atech, you will play a key role in designing, implementing, and optimising security monitoring solutions across a diverse range of customer environments. Working primarily with Microsoft Sentinel, Microsoft Defender, and the wider Microsoft Security ecosystem, you will help onboard customers into our Managed SOC service while supporting them in strengthening and maturing their overall security posture. This role combines technical engineering, detection development, automation, and customer engagement. You will be responsible for building and maintaining high-quality detections, configuring data integrations, tuning alerting, and developing automations that improve both the effectiveness and efficiency of our Security Operations Centre (SOC). You will work closely with SOC Analysts, Security Consultants, Engineers, and customers to deliver innovative security solutions that help organisations identify, investigate, and respond to threats more effectively. As part of a growing security practice, you will have the opportunity to shape the future of Atech's security services by contributing to detection engineering, automation initiatives, internal tooling, and service improvements. This is an excellent opportunity for someone who is passionate about cyber security, enjoys solving complex technical challenges, and wants to work with cutting‑edge Microsoft security technologies.

Key Responsibilities
  • Design, implement, and maintain detections, analytics rules, workbooks, watchlists, and automations within Microsoft Sentinel.
  • Onboard new customers into Atech's Managed SOC service, including configuring integrations, data connectors, and monitoring capabilities.
  • Optimise and tune alerts to improve detection quality, reduce false positives, and enhance analyst efficiency.
  • Develop and maintain security monitoring content aligned to customer requirements and emerging threats.
  • Design and implement automation solutions using Microsoft Sentinel, Logic Apps, PowerShell, Python, and other supporting technologies.
  • Identify opportunities to improve and streamline security operations through automation and process improvement.
  • Support incident detection and response activities through the development of tooling, workflows, and detection capabilities.
  • Develop and maintain internal security tooling, scripts, and deployment pipelines.
  • Work collaboratively with SOC Analysts and Engineers to continuously improve security monitoring and operational effectiveness.
  • Contribute to technical designs, peer reviews, and security-focused projects across the wider business.
  • Create and maintain clear technical documentation, standards, processes, and procedures.
  • Produce technical reports, dashboards, and service summaries for customers and internal stakeholders.
  • Assist customers and colleagues in understanding and adopting Microsoft security technologies and best practices.
  • Stay current with emerging cyber threats, attack techniques, and advancements within the Microsoft Security ecosystem.
  • Participate in training, certifications, and continuous professional development to support your career growth and ensure Atech remains at the forefront of security detection and response.
We want to hear from you if you:
  • Are UK-based with full right to work in the UK.
  • Have hands‑on experience with Microsoft Sentinel, Microsoft Defender, or similar SIEM/SOC technologies.
  • Are passionate about cyber security and keeping up with emerging threats and attack techniques.
  • Have experience with KQL, PowerShell, Python, or other scripting and automation tools.
  • Enjoy solving complex technical challenges and improving processes through automation.
  • Can communicate confidently with both technical and non-technical audiences.
  • Thrive in collaborative environments and enjoy working with customers and colleagues.
  • Have an interest in detection engineering, threat hunting, security monitoring, and incident response.
  • Take ownership of your work, manage priorities effectively, and adapt in a fast‑paced environment.
  • Are committed to continuous learning, professional development, and knowledge sharing.
  • Have experience using AI tools such as Microsoft Copilot to enhance productivity and streamline workflows.
  • Hold Microsoft security certifications such as SC‑200, AZ‑500, or SC‑300.
Bonus Points If You:
  • Have experience with Azure Logic Apps, Azure Functions, Terraform, Bicep, or Infrastructure as Code (IaC).
  • Have worked within a SOC, MSSP, or Managed Security Services environment.
  • Have experience with Detection‑as‑Code or Content‑as‑Code practices.
  • Have exposure to threat intelligence, threat hunting, malware analysis, or purple team activities.
  • Have integrated third‑party security products and data sources into Microsoft Sentinel.
  • Have implemented AI capabilities, such as Copilot, within automations, workflows, or internal tooling.
  • Contribute to security tooling, open‑source projects, technical content, or security research.
What's in it for me?
  • Competitive salary and benefits package.
  • Flexible hybrid or remote working model
  • Exposure to a broad range of cyber security technologies and customer environments.
  • Opportunity to work on complex and high‑impact security incidents.
  • Ongoing learning, certification and professional development support.
  • Clear career progression within a growing cyber security practice.
  • A collaborative and supportive team environment where knowledge sharing is encouraged.
  • The opportunity to influence SOC maturity, service innovation and security outcomes for our customers.
Who you’ll be doing it for:

Atech part of the Iomart Group is a highly accredited Microsoft Partner who delivers transformed technology with managed services. Our team of certified Microsoft experts align with your team to deliver an excellent service tailored to your individual needs, 24/7/365.

Our services support 25,000 users globally and proactively monitor 45,000+ devices in key areas:

  • Azure infrastructure managed service
  • Modern Workplace: Office 365, Microsoft 365, and Azure Virtual Desktop
  • Managed Security and SOC with Microsoft Defender, Sentinel

We’re an equal opportunities employer and want our vacancies to be available to all, so if you need us to make any reasonable adjustments during the process then just let us know.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM Engineer — Microsoft Sentinel & SOC Automation (Remote)
SIEM Engineer — Microsoft Sentinel & SOC Automation (Remote)

Iomart • Leeds

Hybrid
GBP 65,000 - 90,000
Flexible hybrid or remote work
Professional development support
Collaborative team environment
+1
Security Engineer
Security Engineer

IntaPeople: STEM Recruitment • Cardiff

Hybrid
GBP 55,000 - 85,000
Hybrid working
Training & certifications
Exposure to client environments
+2
Senior Security Consultant
Senior Security Consultant

ITC Secure • Greater London

Hybrid
GBP 70,000 - 90,000
25 days annual leave
Private health insurance
Enhanced maternity and paternity leave
+2
Junior Security Engineer
Junior Security Engineer

Cybanetix • Greater London

On-site
GBP 50,000 - 70,000
Hands-on experience with modern SIEM, EDR, and Azure security tooling
Structured progression into security engineering
Mentorship from senior engineers and architects
Senior Security Engineer Consultant
Senior Security Engineer Consultant

InfoSec People Ltd • Basingstoke

Hybrid
GBP 70,000 - 100,000
Hybrid working model
Comprehensive employee benefits
Cyber Security Consultant
Cyber Security Consultant

Franklin Fitch • Greater London

Hybrid
GBP 55,000 - 65,000
Bonus
Security Engineer - Microsoft, SIEM, Sentinel, AlienVault
Security Engineer - Microsoft, SIEM, Sentinel, AlienVault

InfraView Ltd • Manchester

Hybrid
GBP 55,000 - 60,000
Engineering Technical Lead
Engineering Technical Lead

ANS Group • Manchester

Hybrid
GBP 65,000 - 85,000
25 days’ holiday plus additional days
Private health insurance
Pension contribution match
+3
Level 1 SOC Analyst - MSP
Level 1 SOC Analyst - MSP

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,250 - 35,750
Career progression pathways
Hands-on experience with industry-leading security tools
Mentorship from experienced analysts
+2
Senior Security Analyst
Senior Security Analyst

Xact Placements Limited • Reading

Hybrid
GBP 50,000 - 60,000