Splunk Engineer (Permanent) in Hemel Hempstead

Splunk Engineer (Permanent) in Hemel Hempstead

Hemel Hempstead Full-Time 60000 - 75000 £ / year (est.) No working from home possible
Sopra Steria

At a Glance

  • Tasks: Lead the design and optimisation of enterprise-scale security monitoring platforms using Splunk.
  • Company: Join a leading tech firm focused on national security and innovative digital solutions.
  • Benefits: Enjoy a competitive salary, car allowance, private healthcare, and generous leave options.
  • Other info: Opportunity for professional development and mentoring in a dynamic team.
  • Why this job: Make a real impact in cybersecurity while developing your skills in a supportive environment.
  • Qualifications: Strong experience with Splunk and SIEM engineering, plus a passion for security.

The predicted salary is between 60000 - 75000 £ per year.

We are looking for an experienced Splunk Engineer to lead the design, deployment and optimisation of enterprise-scale security monitoring platforms. This is a hands-on technical role, suited to someone with strong Splunk Enterprise and Splunk Enterprise Security experience, who can take ownership of platform engineering, data ingestion, detection content and performance tuning across complex client environments.

This is a key technical leadership role, responsible for ensuring the right tooling, controls and processes are in place to help protect and monitor our clients’ environments. In return, the role offers the chance to broaden your capability and gain deeper experience in Elastic Security, with support and training available to help build your expertise further.

You will work closely with cross-functional teams to assess risk, design effective security controls and define testing requirements. You will champion security by design, promote engineering excellence and act as a trusted advisor to clients, helping them understand their security challenges and implement practical, effective solutions to strengthen their security posture. This is an excellent opportunity to deepen your hands-on cybersecurity expertise while making a meaningful impact across both client and organisational security.

Office based in Hemel Hempstead.

  • Lead the deployment, management and optimisation of Splunk Enterprise and Splunk ES platforms in large, complex environments.
  • Design, implement and maintain data pipelines, including log ingestion, enrichment and schema standardisation.
  • Develop and tune security detection content, translating threat intelligence and TTPs aligned to MITRE ATT&CK into actionable, high-value alerts.
  • Manage the full detection content lifecycle: design, test, deploy, monitor, tune and retire, using version control and rollback processes.
  • Automate workflows and platform configurations using CI/CD, SOAR, scripting and Infrastructure as Code tools such as Terraform and Ansible.
  • Ensure platform performance, stability and resilience through capacity planning, high availability, disaster recovery and proactive monitoring.
  • Provide technical leadership and guidance to internal teams and clients on security monitoring strategy and best practice.
  • Strong hands-on knowledge of SIEM engineering, including indexing, parsing, onboarding and performance tuning.
  • Experience designing and optimising detection content, including MITRE ATT&CK-aligned use cases and alert tuning to reduce noise.
  • Good understanding of data pipeline engineering, log enrichment, data quality and large-scale ingestion architectures.
  • Experience with automation and Infrastructure-as-Code within security monitoring or SIEM environments.
  • Solid understanding of SIEM platform operations, including clustering, scaling, high availability, disaster recovery and performance optimisation.
  • An interest in developing expertise in Elastic Security, with support and training available as part of the role.

Employment Type: Full Time, Permanent

Security Clearance Level: DV Cleared

Salary: Competitive, depending on experience

Benefits: £5400 Car Allowance, 25 days annual leave with the option to buy additional days, private health care, life assurance, pension, and generous flexible benefits fund.

Sopra Steria’s Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client’s goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK’s most complex safety- and security-critical markets.

Splunk Engineer (Permanent) in Hemel Hempstead employer: Sopra Steria

Sopra Steria is an exceptional employer, offering a dynamic work environment in Hemel Hempstead where you can lead the design and optimisation of cutting-edge security monitoring platforms. With a strong emphasis on professional development, mentorship, and a culture that values employee contributions, you will have the opportunity to deepen your cybersecurity expertise while making a significant impact on national security. The competitive benefits package, including a generous car allowance and flexible leave options, further enhances the rewarding experience of working with us.

Sopra Steria

Contact Details:

Sopra Steria Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Splunk Engineer (Permanent) in Hemel Hempstead

Tip Number 1

Network like a pro! Reach out to your connections in the cybersecurity field, especially those who work with Splunk. A friendly chat can lead to insider info about job openings or even a referral.

Tip Number 2

Show off your skills! Create a portfolio or a GitHub repository showcasing your projects related to Splunk and security monitoring. This gives potential employers a taste of what you can do beyond your CV.

Tip Number 3

Prepare for interviews by brushing up on common Splunk scenarios and challenges. Practise explaining your thought process when tackling complex problems, as this will demonstrate your hands-on experience and technical leadership.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about their job search.

We think you need these skills to ace Splunk Engineer (Permanent) in Hemel Hempstead

Splunk Enterprise
Splunk Enterprise Security
Data Ingestion
Detection Content Development
Performance Tuning
Security Monitoring
MITRE ATT&CK

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Splunk Engineer role. Highlight your experience with Splunk Enterprise and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!

Showcase Your Technical Skills:In your application, don't hold back on showcasing your technical skills. Mention your hands-on experience with SIEM engineering, data pipelines, and automation tools like Terraform and Ansible. This is your chance to shine!

Craft a Compelling Cover Letter:Your cover letter should tell us why you're the perfect fit for this role. Share your passion for cybersecurity and how you can contribute to our mission of enhancing security for our clients. Make it personal and engaging!

Apply Through Our Website:We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, we love seeing applications come directly from our site!

How to prepare for a job interview at Sopra Steria

Know Your Splunk Inside Out

Make sure you brush up on your Splunk Enterprise and Splunk Enterprise Security knowledge. Be ready to discuss your hands-on experience with platform engineering, data ingestion, and detection content. Prepare specific examples of how you've optimised performance in complex environments.

Showcase Your Technical Leadership

This role requires strong technical leadership, so be prepared to share instances where you've guided teams or clients through security challenges. Highlight your ability to champion security by design and promote engineering excellence, as this will resonate well with the interviewers.

Demonstrate Your Automation Skills

Familiarise yourself with CI/CD, SOAR, and Infrastructure as Code tools like Terraform and Ansible. Be ready to discuss how you've automated workflows and platform configurations in previous roles, as this is a key aspect of the job.

Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would approach designing effective security controls or managing the full detection content lifecycle. Practising these scenarios can help you articulate your thought process clearly during the interview.