SOC Engineer

Proactive.IT Appointments Ltd.

Milton Keynes

On-site

GBP 55,000 - 85,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Security clearance sponsorship
Exposure to diverse customer envs

Job summary

Proactive.IT Appointments Ltd. is seeking a hands-on SOC Engineer to join our Cyber Security Operations Centre, supporting a diverse customer base across sectors.

The role focuses on building, maintaining, and optimising tooling, telemetry, detections and automation to empower SOC Analysts in threat identification and response. Key responsibilities include deploying Microsoft Sentinel, developing SOAR workflows, onboarding telemetry, tuning detections, and proactive threat hunting.

Qualifications

  • Experience engineering and supporting SIEM platforms, ideally Microsoft Sentinel.
  • Proficient scripting in Python, PowerShell, Bash, and KQL.
  • Experience with SOAR and security automation.
  • Knowledge of detection engineering and threat hunting.
  • Strong Windows and Linux logging understanding.
  • Networking fundamentals (TCP/IP, DNS, firewalls, proxies).
  • Experience in a SOC/NOC or 24/7 environment.
  • Familiarity with MITRE ATT&CK, CVEs, and vulnerability management.
  • Exposure to cloud security monitoring (Azure/AWS/M365).

Responsibilities

  • Administer and optimise SIEM tooling and log pipelines.
  • Develop and maintain SOAR workflows and automation.
  • Onboard and manage telemetry from diverse data sources.
  • Design and tune detection rules to reduce false positives.
  • Conduct proactive threat hunting using SIEM/EDR.
  • Support incident investigations and containment activities.
  • Maintain health of SOC tooling and sensors.
  • Produce runbooks and standard operating procedures.

Skills

SIEM engineering
Automation scripting
Threat hunting
SOC operations
Networking basics
Cloud security monitoring
MITRE ATT&CK knowledge
Vulnerability management

Tools

Microsoft Sentinel
SOAR technologies

Job description

We're seeking a hands-on SOC Engineer to join a growing Cyber Security Operations Centre supporting a diverse portfolio of customers across multiple sectors

This is a specialist SOC Engineering position focused on building, maintaining, and optimising the tools, telemetry, detections, and automation that enable SOC Analysts to identify and respond to threats effectively. This is not a generalist cyber security role.

Key Responsibilities
  • Administer and optimise Microsoft Sentinel (or equivalent SIEM), including log ingestion, parsing, normalisation, and retention.
  • Develop and maintain SOAR workflows and automation using Azure Logic Apps, Python, PowerShell, Bash, and KQL.
  • Onboard and manage security telemetry from a range of data sources.
  • Design, implement, and tune detection rules to improve alert quality and reduce false positives.
  • Conduct proactive threat hunting using SIEM, EDR, and threat intelligence sources.
  • Support incident investigations, containment, and response activities.
  • Monitor and maintain the health of SOC tooling, sensors, agents, and log pipelines.
  • Produce documentation, runbooks, and operational procedures.
Skills & Experience
  • Experience engineering and supporting SIEM platforms, ideally Microsoft Sentinel.
  • Strong scripting and automation skills (Python, PowerShell, Bash, KQL).
  • Experience with SOAR technologies and security automation.
  • Knowledge of detection engineering and threat hunting.
  • Strong understanding of Windows and Linux logging.
  • Good networking knowledge including TCP/IP, DNS, firewalls, and proxies.
  • Experience within a SOC, NOC, or 24/7 operational environment.
  • Familiarity with MITRE ATT&CK, CVEs, and vulnerability management.
  • Exposure to cloud security monitoring across Azure, AWS, or Microsoft 365.
Desirable Certifications
  • Microsoft SC-200
  • CompTIA Security+ / CySA+
  • ISC2 CC or CISSP
  • GIAC GCIA
  • CEH
  • Cisco CyberOps or Fortinet certifications
What’s on Offer?

Opportunity to work within a mature and growing SOC environment.

Exposure to a wide range of customer environments and technologies.

Security Clearance sponsorship available for eligible candidates.

Clear opportunities to contribute to automation, detection engineering, and SOC improvement initiatives.

Working Pattern: Shift rota including evenings, weekends, bank holidays on-call support.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Engineer
SOC Engineer

Spectrum IT Recruitment • Milton Keynes

On-site
GBP 41,000 - 50,000
SOC Engineer
SOC Engineer

SPECTRUM IT • Milton Keynes

On-site
GBP 27,000 - 45,000
Senior SOC Engineer
Senior SOC Engineer

Reed Technology • Basingstoke

Hybrid
GBP 65,000 - 90,000
2 Days in the Office Per Month
Exposure to diverse security envs and技
Opportunity to influence SOC strategy
+2
SOC Engineer: Detection Engineering & Automation
SOC Engineer: Detection Engineering & Automation

Proactive.IT Appointments Ltd. • Milton Keynes

On-site
GBP 55,000 - 85,000
Security clearance sponsorship
Exposure to diverse customer envs
Senior SOC Analyst
Senior SOC Analyst

Franklin Fitch • Basingstoke

On-site
GBP 90,000 - 120,000
Senior Security Engineer
Senior Security Engineer

InfoSec People Ltd • Basingstoke

On-site
GBP 65,000 - 85,000
SOC Engineer
SOC Engineer

Searchability NS&D • Manchester

On-site
25 days annual leave
Health cash plan
Life assurance
+3
Lead SOC Engineer
Lead SOC Engineer

Anson McCade • Greater London

Hybrid
GBP 70,000 - 110,000
Hybrid work model
Competitive benefits package
Senior SOC Analyst
Senior SOC Analyst

Jobtailor • Manchester

On-site
GBP 50,000 - 55,000
SOC Engineer - Contract
SOC Engineer - Contract

iO Associates • Bristol

Hybrid