At a Glance
- Tasks: Enhance and automate SOC functions while developing detection logic and leading workshops.
- Company: Join a leading cyber security firm with a focus on innovation and collaboration.
- Benefits: Enjoy a competitive salary, performance bonuses, and flexible remote work options.
- Other info: Dynamic team environment with opportunities for professional growth and development.
- Why this job: Make a real impact in the cyber security field and shape future security operations.
- Qualifications: Experience in SIEM engineering, scripting, and cloud security is essential.
The predicted salary is between 63000 - 77000 Β£ per year.
Our client, a leader in the cyber security sector, is currently seeking a Senior Security Engineering Consultant to join their team. This permanent role is a hands-on technical position within the Security Operations domain, focused on helping customers improve and automate their SOC functions, tooling, and detection capabilities.
- Develop and tune detection logic using KQL or equivalent query languages
- Translate threat intelligence and operational learnings into improved detections and automations
- Lead workshops covering detection engineering, use case design and SOC maturity
- Work closely with platform onboarding and engineering teams to ensure smooth integration of delivered detections and automations
- Support development of reusable detection content and delivery standards
- Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred
- Experience writing detection logic using KQL or similar query languages
- Scripting and automation capability using Python, PowerShell or similar, including working with APIs
- Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex
- Understanding of cloud environments, particularly Azure, and associated security telemetry
- SIEM and XDR platforms, including Microsoft Sentinel, Microsoft Defender, Palo Alto XSIAM or XDR, CrowdStrike and SentinelOne
- Scripting and integration using Python, PowerShell or similar, including API-driven automation
- Detection engineering aligned to MITRE ATT&CK, including use case design, ruleset development and coverage assessment
- Network Detection and Response technologies such as Vectra AI, Corelight or similar
- Cloud security and telemetry, particularly within Azure environments
- Threat intelligence integration and enrichment to support detection and response
- General awareness of emerging technologies, including AI-driven security tooling and their application within detection and response
Location: This is a hybrid role, primarily remote but with a requirement of ad-hoc travel to customer sites and attend the Basingstoke office as required to support delivery, workshops and engagements.
Hours: Full-time, Monday - Friday, 9:00am - 5:30pm. Performance-based bonuses.
A collaborative engineering environment. Opportunity to shape Security Operations capabilities.
If you are a skilled Security Engineering Consultant looking to join a dynamic and impactful team, we encourage you to apply now and be a part of building a secure and connected future with our client.
Security Engineering Consultant in Basingstoke employer: Infosec
Join a leading organisation in the Defence sector as a Cyber Security Engineer in Stevenage, where you will be part of a mature Cyber Security Operations function. The company fosters a collaborative work culture that prioritises employee growth through hands-on experience with cutting-edge security technologies and offers competitive pay alongside a supportive environment for professional development. With a focus on innovation and excellence, this role provides a unique opportunity to contribute to critical security initiatives while enjoying the benefits of working onsite in a dynamic team.