SOC Solution Engineer

Anson McCade
Birmingham, UK
26 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
£70,000.0 - £85,000.0
Working hours
Regular working hours

Tech stack

CompTIA Security+ Cyber Security Computer Networks Query Languages DevOps Intrusion Detection and Prevention Python (Programming Language) Windows PowerShell Kusto Query Language Security Information and Event Management Software Vulnerability Management Scripting
+4 more
Mitre Att&ck QRadar SC Clearance Splunk

Job description

Overview

SOC Solutions Engineer Level: Experienced / Senior - £70,000 - £85,000

Location: UK-wide Hybrid (London or Birmingham) SOC based in Birmingham
Function: Security Operations SIEM Engineering Threat Detection & Response
Industry: Cyber Security Managed Services Public & Private Sector

Join a leading global security services provider that combines advanced threat intelligence, SIEM expertise, and automation to protect clients at scale. Our client delivers cutting-edge security solutions across sectors and is now seeking an experienced SOC Solutions Engineer to strengthen their SOC capabilities and shape detection and response strategies.

About the Role

As a SOC Solutions Engineer, you’ll enhance and optimise security operations across IBM QRadar platforms. You will deploy and manage SIEM environments, develop analytical rules, design automated incident response playbooks, and translate threat intelligence into actionable detection use cases. Collaboration is key - you’ll work closely with threat intelligence, IT, DevOps, and compliance teams, while mentoring junior analysts and contributing to continuous improvement initiatives.

What You’ll Be Doing

  • Deploying, configuring, and maintaining IBM QRadar across cloud and on-prem environments
  • Onboarding and normalising log sources from diverse systems
  • Developing and optimising analytical rules for threat detection, anomaly detection, and behavioural analysis
  • Designing and implementing incident response playbooks integrated with SOAR platforms
  • Conducting threat modelling using MITRE ATT&CK, STRIDE, or Kill Chain frameworks
  • Performing investigations, coordinating incident response, and collaborating with threat intelligence teams
  • Generating reports and dashboards to communicate security posture and incident trends
  • Mentoring junior analysts and contributing to service improvement initiatives

Ideal Background

  • 3-5 years of SOC or IT security experience, preferably in SOC/NOC environments
  • Deep expertise in IBM QRadar and SIEM query languages (KQL, SPL, AQL)
  • Experience scripting for automation and enrichment (Python, PowerShell)
  • Strong understanding of threat detection, incident response, network traffic, vulnerability management, and ethical hacking
  • Knowledge of MITRE ATT&CK, NIST, CIS frameworks, and ITIL disciplines
  • SC clearance required or ability to obtain
  • Cybersecurity certifications desirable (CISSP, GIAC, SC-200, IBM QRadar Specialist, Splunk Admin/Power User, Google Chronicle Security Engineer)
  • Excellent communication, analytical, and interpersonal skills

What You’ll Receive

  • Salary: Up to £85,000
  • 25 days annual leave + UK public holidays
  • Contributory pension scheme
  • Private healthcare, dental, and wellbeing support options
  • Critical illness and life assurance cover
  • Flexible benefits including hybrid working and SOC-based projects
  • Opportunity to work on national and international client engagements
  • Career growth and professional development in a high-performance security practice

Who Should Apply

This is a role for experienced SOC professionals who want to lead, mentor, and innovate within security operations. If you are passionate about SIEM, threat detection, and automation, and thrive in a hybrid, fast-paced environment - we want to hear from you.

Requirements

  • 3-5 years of SOC or IT security experience, preferably in SOC/NOC environments
  • Deep expertise in IBM QRadar and SIEM query languages (KQL, SPL, AQL)
  • Experience scripting for automation and enrichment (Python, PowerShell)
  • Strong understanding of threat detection, incident response, network traffic, vulnerability management, and ethical hacking
  • Knowledge of MITRE ATT&CK, NIST, CIS frameworks, and ITIL disciplines
  • SC clearance required or ability to obtain
  • Cybersecurity certifications desirable (CISSP, GIAC, SC-200, IBM QRadar Specialist, Splunk Admin/Power User, Google Chronicle Security Engineer)
  • Excellent communication, analytical, and interpersonal skills, This is a role for experienced SOC professionals who want to lead, mentor, and innovate within security operations. If you are passionate about SIEM, threat detection, and automation, and thrive in a hybrid, fast-paced environment - we want to hear from you.

Benefits & conditions

  • Salary: Up to £85,000
  • 25 days annual leave + UK public holidays
  • Contributory pension scheme
  • Private healthcare, dental, and wellbeing support options
  • Critical illness and life assurance cover
  • Flexible benefits including hybrid working and SOC-based projects
  • Opportunity to work on national and international client engagements
  • Career growth and professional development in a high-performance security practice

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all