SIEM Engineer

Harvey Nash

Reading

On-site

GBP 65,000 - 90,000

Full time

47 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Harvey Nash in the United Kingdom seeks an experienced SEIM Engineer with Active SC clearance to onboard and integrate security log sources into Microsoft Sentinel, delivering reliable telemetry and comprehensive threat visibility.

You will develop custom parsers, transformations and KQL queries, and design SIEM detections aligned to evolving threats. CI/CD pipelines with Azure DevOps/Git enable controlled deployments.

Qualifications

  • Active SC Clearance used in last 12 months.
  • 6 months experience onboarding security logs.

Responsibilities

  • Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security telemetry.
  • Develop custom parsers, data transformations and KQL queries for threat detection and investigation.
  • Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements.
  • Develop Logic Apps and SOAR workflows to automate security response.
  • Implement CI/CD pipelines using Azure DevOps/Git for controlled SIEM content deployment.
  • Automate SIEM configuration and deployments across environments.
  • Continuously tune and optimise detections to improve accuracy and reduce false positives.
  • Experience with LogRhythm, Check Point firewalls and SIEM logging platforms.
  • SEC503 / SANS certification or training would be highly desirable.

Skills

Microsoft Sentinel integration
KQL queries
Logic Apps / SOAR
CI/CD pipelines
Azure DevOps
Git
SIEM tuning
Threat detection
LogRhythm
Check Point firewalls

Tools

Azure DevOps
Git
Logic Apps
Microsoft Sentinel
LogRhythm
Check Point

Job description

Active SC Clearence - must have used in the last 12 Months

6 Months

Seim Engineer to come on board to be Responsible for onboarding and integrating security log sources into Microsoft Sentinel, ensuring reliable and comprehensive security telemetry. Develop custom parsers and data transformations to normalise and enrich ingested data, and design and optimise KQL queries to support effective threat detection, monitoring and security investigations.

Key skills and responsibilities,
  • Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security telemetry.
  • Develop custom parsers, data transformations and KQL queries for threat detection and investigation.
  • Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements.
  • Develop Logic Apps and SOAR workflows to automate security response.
  • Implement CI/CD pipelines using Azure DevOps/Git for controlled SIEM content deployment.
  • Automate SIEM configuration and deployments across environments.
  • Continuously tune and optimise detections to improve accuracy and reduce false positives.
  • Experience with LogRhythm, Check Point firewalls and SIEM logging platforms.
  • SEC503 / SANS certification or training would be highly desirable.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM Engineer (SC Cleared)
SIEM Engineer (SC Cleared)

Lorien • Reading, Havant

On-site
GBP 111,000 - 166,000
SC-Cleared SIEM Engineer — Microsoft Sentinel Expert
SC-Cleared SIEM Engineer — Microsoft Sentinel Expert

Trust In SODA • Reading

Hybrid
GBP 150,000 - 170,000
Hybrid work arrangement
SIEM Engineer
SIEM Engineer

Trust In SODA • Reading

Hybrid
GBP 150,000 - 170,000
Hybrid work arrangement
SIEM Detection Engineer
SIEM Detection Engineer

Harvey Nash Plc • Reading

Hybrid
GBP 112,000 - 147,000
SC-Cleared SIEM Engineer: Sentinel & SOAR Automation
SC-Cleared SIEM Engineer: Sentinel & SOAR Automation

Harvey Nash • Reading

On-site
GBP 65,000 - 90,000
SC Cleared SIEM Engineer: Azure Sentinel & SOAR Expert
SC Cleared SIEM Engineer: Azure Sentinel & SOAR Expert

Lorien • Reading, Havant

On-site
GBP 111,000 - 166,000
Junior Security Engineer
Junior Security Engineer

Cybanetix • Greater London

On-site
GBP 50,000 - 70,000
Hands-on experience with modern SIEM, EDR, and Azure security tooling
Structured progression into security engineering
Mentorship from senior engineers and architects
SOC Engineer - Systems Integrator
SOC Engineer - Systems Integrator

Hamilton Barnes Associates Limited • Greater London

On-site
GBP 60,000 - 70,000
26 days annual leave plus 8 Bank Holid
Company Pension Scheme
Life Assurance
+3
Security Engineer - Microsoft, SIEM, Sentinel, AlienVault
Security Engineer - Microsoft, SIEM, Sentinel, AlienVault

InfraView Ltd • Manchester

Hybrid
GBP 55,000 - 60,000
Managing Security Engineer - DV cleared
Managing Security Engineer - DV cleared

CBSbutler Holdings Limited trading as CBSbutler • Hemel Hempstead

On-site
GBP 92,000 - 129,000