Senior Security Engineering Consultant in London

Senior Security Engineering Consultant in London

London Full-Time 72000 - 88000 £ / year (est.) Home office (partial)
I

At a Glance

  • Tasks: Design and deliver detection rulesets, automate SOC functions, and improve customer security capabilities.
  • Company: Leading cyber security firm with a focus on innovation and collaboration.
  • Benefits: Competitive salary up to £80,000, performance bonuses, and industry-leading benefits.
  • Other info: Hybrid role with remote work and opportunities for professional growth.
  • Why this job: Join a dynamic team tackling real-world threats and shaping the future of security operations.
  • Qualifications: Experience in SIEM engineering, detection logic, and SOAR automation required.

The predicted salary is between 72000 - 88000 £ per year.

Our client, a leader in the cyber security sector, is currently seeking a Senior Security Engineering Consultant to join their team. This permanent role is a hands-on technical position within the Security Operations domain, focused on helping customers improve and automate their SOC functions, tooling, and detection capabilities.

Key Responsibilities:

  • Design and deliver detection rulesets across SIEM and XDR platforms
  • Develop and tune detection logic using KQL or equivalent query languages
  • Design detection use cases aligned to MITRE ATT&CK and real-world attack techniques
  • Map customer log sources to detection use cases to assess coverage and identify gaps
  • Design and implement SOAR automations, integrations and response workflows
  • Develop and document customer incident response playbooks aligned to detection outputs
  • Translate threat intelligence and operational learnings into improved detections and automations
  • Deliver detection as code pipelines, including structured use case development and versioning approaches
  • Produce clear technical and customer-facing deliverables, including detection strategies, use case catalogues and coverage assessments
  • Work directly with customers as a trusted technical consultant
  • Lead workshops covering detection engineering, use case design and SOC maturity
  • Guide customers on improving detection coverage and aligning to MITRE ATT&CK
  • Clearly explain detection strategies, gaps and recommendations to both technical and non-technical stakeholders
  • Work closely with platform onboarding and engineering teams to ensure smooth integration of delivered detections and automations
  • Support SOC teams by ensuring delivered outputs are practical, usable and aligned to operational workflows
  • Contribute to the continuous evolution of detection use cases, playbooks and automation patterns
  • Support development of reusable detection content and delivery standards
  • Contribute to lab work, testing and validation of detection approaches
  • Identify gaps in telemetry, logging and enrichment, and provide recommendations to strengthen detection outcomes

Job Requirements:

  • Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred
  • Experience writing detection logic using KQL or similar query languages
  • Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps, Cortex XSOAR or similar
  • Scripting and automation capability using Python, PowerShell or similar, including working with APIs
  • Experience designing detection use cases aligned to MITRE ATT&CK
  • Strong understanding of detection coverage and how log sources map to the attack lifecycle
  • Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex
  • Understanding of cloud environments, particularly Azure, and associated security telemetry
  • Experience working in customer-facing or consultancy roles
  • Strong communication skills, with the ability to explain technical concepts clearly

Technical Competencies:

  • SIEM and XDR platforms, including Microsoft Sentinel, Microsoft Defender, Palo Alto XSIAM or XDR, CrowdStrike and SentinelOne
  • SOAR development, including automation and playbook design using platforms such as Palo Alto XSOAR or similar
  • Scripting and integration using Python, PowerShell or similar, including API-driven automation
  • Detection engineering aligned to MITRE ATT&CK, including use case design, ruleset development and coverage assessment
  • Log source mapping and normalisation to support detection use cases
  • Network Detection and Response technologies such as Vectra AI, Corelight or similar
  • Cloud security and telemetry, particularly within Azure environments
  • Threat intelligence integration and enrichment to support detection and response
  • Development of customer playbooks and response workflows aligned to SOC operations
  • General awareness of emerging technologies, including AI-driven security tooling and their application within detection and response

Job Specifics:

  • Location: This is a hybrid role, primarily remote but with a requirement of ad-hoc travel to customer sites and attend the Basingstoke office as required to support delivery, workshops and engagements.
  • Hours: Full-time, Monday - Friday, 9:00am - 5:30pm. There is no on-call requirement for this position.
  • Benefits: Salary up to £80,000, performance-based bonuses, industry-leading benefits, a collaborative engineering environment, exposure to real-world threats and modern detection approaches, opportunity to shape Security Operations capabilities.

If you are a skilled Security Engineering Consultant looking to join a dynamic and impactful team, we encourage you to apply now and be a part of building a secure and connected future with our client.

Senior Security Engineering Consultant in London employer: Infosec

Join a leading organisation in the Defence sector as a Cyber Security Engineer in Stevenage, where you will be part of a mature Cyber Security Operations function. The company fosters a collaborative work culture that prioritises employee growth through hands-on experience with cutting-edge security technologies and offers competitive pay alongside a supportive environment for professional development. With a focus on innovation and excellence, this role provides a unique opportunity to contribute to critical security initiatives while enjoying the benefits of working onsite in a dynamic team.

I

Contact Details:

Infosec Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Engineering Consultant in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Infosec, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Infosec

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Infosec. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Senior Security Engineering Consultant in London

SIEM Engineering
Detection Rules Development
KQL or Equivalent Query Languages
SOAR Automation and Playbook Design
Scripting with Python or PowerShell
Detection Use Case Design
MITRE ATT&CK Framework

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Infosec insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Infosec that you’re committed to staying ahead in the game.

How to prepare for a job interview at Infosec

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Infosec to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Infosec.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.