Job Description
Whitebridge is looking for a SIEM Engineer specialising in MS Sentinel, who has current SC Clearance to join our utilities client.
\nRole Overview:
\n- \n
- Lead onboarding and integration of log sources into Microsoft Sentinel to ensure complete and reliable security telemetry \n
- Develop custom parsers and data transformations to normalise and enrich ingested data \n
- Design and optimise KQL queries to support effective threat detection and investigation \n
- Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases \n
- Develop Logic Apps and SOAR workflows to automate response and reduce manual effort \n
- Implement CI/CD pipelines (Azure DevOps/Git) to support controlled deployment of SIEM content (rules, parsers, playbooks) \n
- Automate deployment and configuration across environments to improve consistency and speed of delivery \n
- Perform ongoing tuning and optimisation of detections to improve fidelity and reduce false positives \n
The successful applicant should be able to commit to starting ASAP. The role will be hybrid between home and office visits and will be umbrella based working. Direct applicants only please.
SIEM Engineer (MS Sentinel) in Reading employer: Whitebridge Group
Whitebridge is an exceptional employer that prioritises employee growth and development, particularly in the dynamic field of IT transformation. With a strong emphasis on collaboration and innovation, our hybrid work culture allows for flexibility while fostering meaningful connections with colleagues and stakeholders. We offer comprehensive learning opportunities and a supportive environment that empowers you to shape the future of our organisation and advance your career.