At a Glance
- Tasks: Lead the design and implementation of enterprise security monitoring platforms using Splunk.
- Company: Join Sopra Steria, a leader in digital solutions for National Security.
- Benefits: Enjoy a competitive salary, car allowance, private healthcare, and generous leave options.
- Other info: Work in a supportive environment with opportunities for professional development.
- Why this job: Make a real impact on security while developing your cybersecurity expertise.
- Qualifications: Experience with Splunk and SIEM engineering is essential; training in Elastic Security provided.
The predicted salary is between 60000 - 75000 € per year.
We are looking for a Managing Security Engineer to lead the design, implementation and documentation of enterprise security monitoring platforms. This is a key technical leadership role, responsible for ensuring the right tooling, controls and processes are in place to help protect and monitor our clients' environments. This opportunity is ideally suited to someone with strong hands-on experience deploying and managing Splunk at enterprise scale. In return, the role offers the chance to broaden your capability and gain deeper experience in Elastic Security, with support to build your expertise further.
You will work closely with cross-functional teams to assess risk, design effective security controls and define testing requirements. You will champion security by design, promote engineering excellence and act as a trusted advisor to clients, helping them understand their security challenges and implement practical, effective solutions to strengthen their security posture. This is an excellent opportunity to deepen your hands-on cybersecurity expertise while making a meaningful impact across both client and organisational security. This role is permanent and requires full-time, on-site working in Hemel Hempstead. The successful candidate may also participate in an out-of-hours call-out rota.
What you will be doing:
- Lead the deployment, management and optimisation of Splunk Enterprise and Splunk ES platforms in large, complex environments.
- Support and develop capability in Elastic Stack / Elastic Security, with training and upskilling provided as needed.
- Design, implement and maintain data pipelines, including log ingestion, enrichment and schema standardisation.
- Develop and tune security detection content, translating threat intelligence and TTPs aligned to MITRE ATT&CK into actionable, high-value alerts.
- Manage the full detection content lifecycle: design, test, deploy, monitor, tune and retire, using version control and rollback processes.
- Automate workflows and platform configurations using CI/CD, SOAR, scripting and Infrastructure as Code tools such as Terraform and Ansible.
- Ensure platform performance, stability and resilience through capacity planning, high availability, disaster recovery and proactive monitoring.
- Provide technical leadership and guidance to internal teams and clients on security monitoring strategy and best practice.
What you will bring:
- Proven experience deploying and managing Splunk at enterprise scale.
- Strong hands-on knowledge of SIEM engineering, including indexing, parsing, onboarding and performance tuning.
- Experience designing and optimising detection content, including MITRE ATT&CK-aligned use cases and alert tuning to reduce noise.
- Good understanding of data pipeline engineering, log enrichment, data quality and large-scale ingestion architectures.
- Strong knowledge of SPL; experience with KQL and EQL would be beneficial, but is not essential.
- Experience with automation and Infrastructure-as-Code within security monitoring or SIEM environments.
- Solid understanding of SIEM platform operations, including clustering, scaling, high availability, disaster recovery and performance optimisation.
- Strong problem-solving skills and a proactive approach to improving security operations.
- An interest in developing expertise in Elastic Security, with support and training available as part of the role.
If you are interested in this role but not sure if your skills and experience are exactly what we are looking for, please do apply, we'd love to hear from you!
Employment Type: Full Time, Permanent
Location: Hemel Hempstead
Security Clearance Level: DV Cleared
Salary: from £DOE
Benefits: £5400 Car Allowance, 25 days annual leave with the option to buy additional days, private health care, life assurance, pension, and generous flexible benefits fund.
Server Engineer (Windows/Linux) in Hemel Hempstead employer: Sopra Steria
Sopra Steria is an exceptional employer, offering a dynamic work environment in Hemel Hempstead where employees are empowered to lead and innovate in the field of cybersecurity. With a strong focus on professional development, generous benefits including a £5400 car allowance, private healthcare, and a supportive culture that values collaboration and knowledge sharing, we ensure our team members thrive while making a meaningful impact on national security. Join us to enhance your skills in a role that champions engineering excellence and provides opportunities for growth in cutting-edge technologies like Elastic Security.
StudySmarter Expert Advice🤫
We think this is how you could land Server Engineer (Windows/Linux) in Hemel Hempstead
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to Splunk or security monitoring. This gives potential employers a taste of what you can do beyond your CV.
✨Tip Number 3
Prepare for interviews by practising common technical questions and scenarios related to SIEM and security engineering. Mock interviews with friends or mentors can help you feel more confident and ready to impress.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Sopra Steria.
We think you need these skills to ace Server Engineer (Windows/Linux) in Hemel Hempstead
Some tips for your application 🫡
Tailor Your CV:Make sure your CV highlights your experience with Splunk and SIEM engineering. We want to see how your skills align with the role, so don’t be shy about showcasing your hands-on experience and any relevant projects you've worked on.
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to our team. We love seeing candidates who are genuinely excited about the role and our mission.
Showcase Your Problem-Solving Skills:In your application, highlight specific examples where you've tackled complex security challenges. We’re looking for proactive thinkers who can improve security operations, so share those success stories!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at Sopra Steria
✨Know Your Splunk Inside Out
Make sure you brush up on your Splunk knowledge before the interview. Be ready to discuss your hands-on experience deploying and managing Splunk at enterprise scale, as this is a key requirement for the role. Prepare examples of how you've optimised performance and tuned detection content.
✨Understand Security Monitoring Strategies
Familiarise yourself with security monitoring best practices and be prepared to share your insights. Think about how you would approach designing effective security controls and how you can champion security by design in your previous roles. This will show that you’re not just technically skilled but also a strategic thinker.
✨Demonstrate Problem-Solving Skills
Be ready to discuss specific challenges you've faced in security operations and how you overcame them. Highlight your proactive approach to improving security processes and any innovative solutions you've implemented. This will showcase your ability to think critically and adapt in complex environments.
✨Show Enthusiasm for Continuous Learning
Express your interest in developing expertise in Elastic Security and any other relevant technologies. Mention any training or upskilling you've pursued recently, as this demonstrates your commitment to professional growth and staying current in the field. Companies love candidates who are eager to learn and grow!