At a Glance
- Tasks: Enhance SIEM platforms, onboard log sources, and develop detection use cases.
- Company: Join a leading global law firm with a modern, hybrid work culture.
- Benefits: Enjoy autonomy, technical exposure, and a flexible working environment.
- Other info: Great career growth opportunities in a dynamic and supportive team.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: 3+ years in a similar role and relevant security certifications.
The predicted salary is between 50000 - 60000 £ per year.
Our leading global law firm client are currently looking to take on a new SOC Engineer to join their team on a contractual basis. The firm are an extremely modern law firm which offer a healthy hybrid working solution 2-3 days per week in London and offer a great deal of autonomy and technical exposure.
This SOC Engineer role will be responsible for the enhancement of existing SIEM platform and improve performance, coverage and fidelity by conducting regular assessments of the SIEM architecture.
To be considered for this role, it's ideal you have:
- 3+ years within a similar role
- Ideal but not required law firm experience
- Security qualifications such as CISSP, CISM, CEH, CompTIA Sec+ or others
Key Responsibilities:
- SIEM Engineering & Maturity: Enhance and optimise the existing SIEM platform to improve performance, coverage, and fidelity. Conduct regular assessments of SIEM architecture and propose improvements to ingestion pipelines, parsing rules, correlation logic, and storage management. Implement automation and orchestration components (SOAR) to streamline incident response activities.
- Log Source Onboarding & Integration: Identify, prioritise, and onboard new log sources from cloud, on-prem, network, endpoint, identity, and application platforms. Develop and maintain custom parsers, connectors, and ingestion playbooks. Work with internal teams and vendors to ensure high-quality, reliable telemetry and error-free ingestion.
- Use Case & Detection Content Development: Design, implement, test, and tune detection use cases based on attacker techniques (MITRE ATT&CK), threat intelligence, and risk appetite. Build correlation rules, anomaly-based detections, dashboards, and alerting workflows. Regularly review detection efficacy and reduce false positives through tuning and logic refinement.
- SOC Support & Incident Response: Work closely with SOC analysts to validate and refine detection logic. Support incident investigations through SIEM searches, enrichment, and data modelling. Provide technical SME support for complex incidents that require deep SIEM or log knowledge.
- Documentation & Governance: Maintain high-quality documentation covering data models, feed onboarding, use cases, correlation logic, and architecture. Ensure alignment with internal controls, compliance requirements, and industry standards.
Education, Skills & Experience:
- Technical Expertise: Hands-on experience with leading SIEM platforms (e.g., Exabeam, LogRhythm, ArcSight, Microsoft Sentinel, Splunk, QRadar, Elastic). Strong understanding of log formats (JSON, syslog, XML, CEF, etc.) and ingestion technologies (Syslog, API, Event Hubs, Kafka, Agents). Practical knowledge of detection engineering, threat modelling, and attacker behaviour analysis. Experience building and tuning correlation rules, searches, and dashboards. Familiarity with SOAR platforms and automation workflows.
- Security Knowledge: Strong understanding of networking, Windows/Linux systems, Cloud platforms (Azure/AWS/GCP), identity systems, and endpoint protection technologies (e.g. SentinelOne and Microsoft Defender). Knowledge of MITRE ATT&CK, cyber kill chain, and threat hunting methodologies.
- Must Have: Level 4 or higher qualification in a computing subject, or equivalent experience. IT experience including both IT Infrastructure and Information Security roles. Relevant professional certifications that validate the fundamental skills required to perform the role, e.g. GIAC (GCIA, GCDA, GMON) Microsoft SC-200/SC-100, CompTIA Secure Infrastructure Specialist (CSIS), SSCP/CISSP etc. Strong skill level in scripting technologies, including Python, MS PowerShell and PowerApps. Ability to conduct research into Infrastructure issues and products as required. Self-starting with strong interpersonal, written, and oral communication skills. Ability to engage colleagues at all levels and project a solid, professional attitude consistently.
- Nice to have: Data Loss Prevention, Secure Remote Access solutions, Network Security solutions, Open Source and Cyber Threat Intelligence, Suitable experience working with the market leading technology vendor product suites, Experience in software-defined and cloud services such as SaaS, IaaS, PaaS and DaaS, Experience in Disaster Recovery Management and Business Continuity, Knowledge of applicable data privacy practices and laws.
SOC Engineer - 6 Month FTC in London employer: Precise Placements
Contact Detail:
Precise Placements Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land SOC Engineer - 6 Month FTC in London
✨Tip Number 1
Network, network, network! Get out there and connect with people in the industry. Attend meetups, webinars, or even just chat with folks on LinkedIn. You never know who might have a lead on that perfect SOC Engineer role.
✨Tip Number 2
Show off your skills! If you’ve got experience with SIEM platforms like Exabeam or Microsoft Sentinel, make sure to highlight that in conversations. Bring examples of how you've enhanced SIEM performance or developed detection use cases to the table.
✨Tip Number 3
Don’t be shy about reaching out directly to hiring managers or recruiters. A quick message expressing your interest can go a long way. Plus, it shows initiative, which is always a plus in tech roles!
✨Tip Number 4
Apply through our website! We’ve got loads of resources to help you land that SOC Engineer gig. Plus, applying directly can sometimes give you an edge over other candidates. Let’s get you that job!
We think you need these skills to ace SOC Engineer - 6 Month FTC in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the SOC Engineer role. Highlight your experience with SIEM platforms, automation, and any relevant security qualifications. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you a great fit. Don't forget to mention any law firm experience if you have it!
Show Off Your Technical Skills: In your application, be sure to showcase your hands-on experience with tools like Exabeam, Azure, and your scripting skills. We love seeing candidates who can demonstrate their technical expertise clearly.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you're serious about joining our team!
How to prepare for a job interview at Precise Placements
✨Know Your SIEM Inside Out
Make sure you’re well-versed in the specific SIEM platforms mentioned in the job description, like Exabeam. Brush up on your knowledge of ingestion pipelines, parsing rules, and correlation logic, as these will likely come up during the interview.
✨Showcase Your Automation Skills
Be prepared to discuss how you've implemented automation and orchestration components in past roles. Highlight any experience with SOAR platforms and how you've streamlined incident response activities to demonstrate your technical prowess.
✨Familiarise Yourself with MITRE ATT&CK
Since the role involves designing detection use cases based on attacker techniques, it’s crucial to understand the MITRE ATT&CK framework. Be ready to talk about how you’ve used it in previous positions to enhance security measures.
✨Prepare for Technical Questions
Expect to face technical questions that assess your understanding of networking, cloud platforms, and endpoint protection technologies. Practise articulating your thought process clearly, as communication skills are key in this role.