At a Glance
- Tasks: Configure and optimise SIEM/SOAR platforms, focusing on Splunk for security operations.
- Company: Join a leading security operations team in London with a dynamic work culture.
- Benefits: Competitive salary of £65,000 plus benefits, with opportunities for professional growth.
- Other info: Onsite role with potential for career advancement in a fast-paced environment.
- Why this job: Make a real impact in cybersecurity by automating and enhancing security operations.
- Qualifications: 3+ years in SOC/SIEM/SOAR roles with strong Splunk experience required.
The predicted salary is between 65000 - 65000 £ per year.
Location: London (Onsite – 5 days per week)
Salary: £65,000 base + package
NOTE: Candidates for this opportunity must be eligible for UK Security Clearance.
We are seeking a skilled SOC Engineer with a strong focus on SIEM and SOAR technologies to join a high-performing security operations environment. This role is centred on the configuration, optimisation, and integration of enterprise-scale security platforms, with a particular emphasis on Splunk Enterprise Security and Splunk SOAR. You will play a critical role in ensuring these platforms are stable, scalable, and effectively supporting detection engineering, automation, and incident response functions across the SOC.
Key Responsibilities
- Configure, maintain, and optimise SIEM and SOAR platforms, specifically Splunk ES and Splunk SOAR
- Design and implement integrations between SIEM/SOAR and wider security tooling (EDR, vulnerability management, IAM, etc.)
- Develop, enhance, and maintain SOAR playbooks to automate investigation and response workflows
- Support onboarding of log sources into SIEM, ensuring accurate parsing and normalisation
- Optimise search performance, data pipelines, and platform efficiency
- Troubleshoot issues across SIEM/SOAR environments (data ingestion, alerting, integrations, automation workflows)
- Collaborate with Detection Engineers to operationalise detection use cases
- Implement enrichment workflows incorporating threat intelligence, asset context, and identity data
- Support incident response through effective automation and data availability
- Maintain clear and comprehensive documentation for configurations, integrations, and playbooks
Required Skills & Experience
- Minimum 3+ years of commercial experience in SOC, SIEM, SOAR, or security engineering roles
- Strong hands-on experience with Splunk (essential)
- Solid understanding of SIEM architecture and log management principles
- Experience building integrations using APIs and scripting languages (e.g. Python, PowerShell)
- Knowledge of automation and orchestration within security operations
- Familiarity with security tooling such as EDR, IAM, and network security solutions
- Strong troubleshooting and analytical problem-solving capabilities
Desirable Qualifications
- Bachelor’s degree in Cyber Security, IT, or a related discipline (or equivalent experience)
- Splunk Enterprise Certified Admin
- Splunk SOAR Automation Developer certification
- Additional relevant vendor certifications in SIEM/SOAR or security tooling
If you are a hands-on SOC Engineer with deep Splunk expertise and a passion for building scalable, automated security operations, apply today.
SOC Engineer employer: ANSON MCCADE
Contact Detail:
ANSON MCCADE Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land SOC Engineer
✨Network Like a Pro
Get out there and connect with folks in the industry! Attend meetups, webinars, or even local tech events. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Show Off Your Skills
When you get the chance to chat with potential employers, don’t hold back! Share your hands-on experience with Splunk and any cool projects you've worked on. Let them see your passion for SOC engineering and how you can add value to their team.
✨Tailor Your Approach
Before you apply, do some homework on the company and its culture. Tailor your conversations and follow-ups to reflect what they value. This shows you’re genuinely interested and not just sending out cookie-cutter applications.
✨Apply Through Our Website
Don’t forget to check out our website for the latest job openings! Applying directly through us can give you a better shot at landing that SOC Engineer role. Plus, we love seeing familiar faces from our community!
We think you need these skills to ace SOC Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with SIEM and SOAR technologies, especially Splunk. We want to see how your skills match the job description, so don’t be shy about showcasing your relevant projects and achievements!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about SOC engineering and how your background makes you a perfect fit for our team. Keep it concise but engaging – we love a good story!
Show Off Your Technical Skills: When filling out your application, make sure to mention your hands-on experience with Splunk and any scripting languages you know. We’re looking for someone who can hit the ground running, so let us know what you bring to the table!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy – just follow the prompts and you’ll be all set!
How to prepare for a job interview at ANSON MCCADE
✨Know Your Splunk Inside Out
Make sure you brush up on your Splunk skills before the interview. Be ready to discuss your hands-on experience with Splunk ES and SOAR, including specific projects where you've configured or optimised these platforms. Highlight any challenges you faced and how you overcame them.
✨Showcase Your Integration Skills
Prepare to talk about your experience with integrating SIEM/SOAR with other security tools. Have examples ready that demonstrate your ability to design and implement these integrations, especially using APIs and scripting languages like Python or PowerShell.
✨Demonstrate Problem-Solving Prowess
Be ready to tackle some hypothetical troubleshooting scenarios during the interview. Think about common issues in SIEM/SOAR environments and how you would approach resolving them. This will show your analytical problem-solving capabilities.
✨Highlight Your Documentation Habits
Discuss the importance of maintaining clear documentation for configurations, integrations, and playbooks. Share examples of how your documentation practices have helped improve team efficiency or onboarding processes in previous roles.