SOC Engineer

SOC Engineer

Full-Time 36000 - 60000 £ / year (est.) Home office possible
P

At a Glance

  • Tasks: Onboard and optimise security technologies, enhance detection rules, and support SOC operations.
  • Company: Join Phoenix, a leading IT solution provider focused on innovation and collaboration.
  • Benefits: Enjoy remote work, skill development, and a supportive culture.
  • Why this job: Make a real impact in cybersecurity while growing your skills in a dynamic environment.
  • Qualifications: Experience in SOC operations, detection logic, and strong communication skills.
  • Other info: Fully remote role with quarterly office visits and excellent career growth opportunities.

The predicted salary is between 36000 - 60000 £ per year.

Overview of the role

Phoenix enables digital transformation in the workplace, empowering UK organisations to innovate and transform with cloud and hybrid infrastructures, data, AI, security, and collaboration tools. We are seeking a SOC Engineer who will play a pivotal role in onboarding, deploying, and optimising the technologies and processes that underpin our managed security services.

What will you be doing?

  • Lead customer onboarding activities, integrating new environments and configuring detection baselines, automation, playbooks.
  • Deploy, tune, and optimise detection rules and correlation logic to reduce false positives and improve alert fidelity.
  • Configure and enhance log ingestion pipelines, enrichment workflows, dashboards, and reporting to support SOC operations and customer visibility.
  • Develop, maintain, and improve customer SOPs, runbooks, and playbooks to ensure consistent and effective response processes.
  • Work closely with Detection Engineering teams to contribute new detections, refine existing analytics, and validate detection logic.
  • Support CI/CD processes for detection content, ensuring safe, controlled deployment of rules, scripts, and automation updates.
  • Assist in developing and improving SOAR playbooks, validating automated actions, and ensuring operational reliability.
  • Maintain structured repositories of detection queries, SOPs, and operational documentation to keep SOC content accurate and up to date.
  • Troubleshoot detection and workflow issues, collaborating with internal teams and customers to resolve technical challenges.
  • Partner with architects, analysts, and service managers to improve SOC onboarding processes, tooling, and detection standards.

Why you should apply?

At Phoenix, our philosophy is simple – we aim to be the UK’s leading IT solution and managed service provider and that means we recognise that it’s our people who are the heart of everything we do. We do this by providing the encouragement, support and skill development that you need to be the very best you can be at work. We are proud of our culture, so much so that we have developed our Culture Blueprint which you can read here.

Key Skills

  • Strong skills in designing, tuning, and validating detection logic (MITRE ATT&CK aligned).
  • Hands‑on experience with SIEM, XDR, SOAR, and log ingestion/detection configuration.
  • Background in SOC operations such as analysis, detection engineering, IR, or threat hunting.
  • Ability to design and validate automated workflows and SOAR playbooks.
  • Experience using CI/CD pipelines and version control (Azure DevOps, GitHub, GitLab).
  • Skilled in producing clear SOPs, runbooks, playbooks, and operational documentation.
  • Experience supporting customer onboarding and tailoring detections to specific environments.
  • Strong communication and collaboration skills across technical and non‑technical teams.
  • Proactive, accountable, and able to deliver reliable, high‑quality outcomes.

Practical stuff

  • Where is the role based? This role can be fully remote with quarterly visits to the office.
  • How many interviews? Following a screen with the Recruitment Team you can expect a two‑stage interview process.
  • What about security clearance? SC clearance is required for this role which means you will need to have lived in the UK continuously for at least 5 years and have no criminal record.
  • What are the benefits? You can read about the benefits on offer here.

Important BPSS Check

As part of our recruitment process due to the nature of the work we do, all employees are required to undertake a Baseline Personal Security Standard (BPSS) check. While some employees require further security clearance, the BPSS check is a must‑have requirement and all offers of employment are conditional pending the passing of this check.

Have you made it this far? If you’re still reading, we think there’s a strong chance you might be our kind of person. Here’s the thing, though — research suggests that 60% of women and under‑represented people might have already talked themselves out of applying. Even if you don’t check every box above, we want to encourage you to introduce yourself. We believe a diversity of perspectives and experiences makes a team stronger — and the stronger our team, the more successful we will be.

SOC Engineer employer: Phoenix Software Limited

At Phoenix, we pride ourselves on being a leading IT solution and managed service provider in the UK, where our employees are at the heart of everything we do. We foster a supportive work culture that prioritises skill development and personal growth, offering flexible remote working options with quarterly office visits to maintain team cohesion. Our commitment to diversity and inclusion ensures that every voice is valued, making it an excellent environment for those looking to make a meaningful impact in the field of cybersecurity.
P

Contact Detail:

Phoenix Software Limited Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land SOC Engineer

✨Tip Number 1

Network like a pro! Reach out to current SOC Engineers or professionals in the field on LinkedIn. Ask them about their experiences and any tips they might have for landing a role like this. You never know, they might even refer you to open positions!

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your projects related to detection logic, automation, or any relevant SOC operations. This can really set you apart from other candidates and give potential employers a taste of what you can bring to the table.

✨Tip Number 3

Prepare for those interviews! Research common SOC Engineer interview questions and practice your responses. Be ready to discuss your hands-on experience with SIEM, XDR, and SOAR, as well as how you've tackled challenges in previous roles.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Phoenix, where we value every unique perspective.

We think you need these skills to ace SOC Engineer

Detection Logic Design
Tuning Detection Rules
Validation of Detection Logic
SIEM Experience
XDR Knowledge
SOAR Configuration
Log Ingestion Configuration
SOC Operations Background
Automated Workflow Design
SOAR Playbook Development
CI/CD Pipeline Experience
Version Control (Azure DevOps, GitHub, GitLab)
SOP and Runbook Production
Customer Onboarding Support
Strong Communication Skills

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight the skills and experiences that align with the SOC Engineer role. We want to see how your background fits into our mission at Phoenix!

Show Off Your Skills: Don’t hold back on showcasing your technical skills, especially in areas like detection logic and SIEM tools. We love seeing practical examples of your work, so feel free to include relevant projects or achievements.

Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language and avoid jargon where possible. We appreciate a well-structured application that’s easy to read!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen to join our team!

How to prepare for a job interview at Phoenix Software Limited

✨Know Your Tech Inside Out

Make sure you’re well-versed in the technologies mentioned in the job description, like SIEM, XDR, and SOAR. Brush up on your knowledge of detection logic and MITRE ATT&CK framework, as these will likely come up during the interview.

✨Showcase Your Problem-Solving Skills

Be prepared to discuss specific examples where you've troubleshot detection and workflow issues. Highlight your collaboration with internal teams and how you resolved technical challenges, as this demonstrates your proactive approach.

✨Prepare for Scenario-Based Questions

Expect questions that ask how you would handle customer onboarding or tailor detections to specific environments. Think through your past experiences and be ready to explain your thought process and the outcomes.

✨Communicate Clearly and Confidently

Strong communication skills are key for this role. Practice explaining complex concepts in simple terms, as you’ll need to collaborate with both technical and non-technical teams. Confidence in your delivery can make a big difference!

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

P
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>