> Markdown version of [/jobs/ext/2258865-soc-solution-engineer](https://www.wearedevelopers.com/jobs/ext/2258865-soc-solution-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Solution Engineer - **Company:** Anson McCade - **Location:** Birmingham, UK - **Experience:** Expert - **Salary:** £70,000.0 - £85,000.0 - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Computer Networks, Query Languages, DevOps, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Kusto Query Language, Security Information and Event Management, Software Vulnerability Management, Scripting, Mitre Att&ck, QRadar, SC Clearance, Splunk - **Published:** August 26, 2026 - **Apply:** https://www.collegerecruiter.com/job/2815165096-soc-solution-engineer ## About the Role * 3-5 years of SOC or IT security experience, preferably in SOC/NOC environments * Deep expertise in IBM QRadar and SIEM query languages (KQL, SPL, AQL) * Experience scripting for automation and enrichment (Python, PowerShell) * Strong understanding of threat detection, incident response, network traffic, vulnerability management, and ethical hacking * Knowledge of MITRE ATT&CK, NIST, CIS frameworks, and ITIL disciplines * SC clearance required or ability to obtain * Cybersecurity certifications desirable (CISSP, GIAC, SC-200, IBM QRadar Specialist, Splunk Admin/Power User, Google Chronicle Security Engineer) * Excellent communication, analytical, and interpersonal skills, This is a role for experienced SOC professionals who want to lead, mentor, and innovate within security operations. If you are passionate about SIEM, threat detection, and automation, and thrive in a hybrid, fast-paced environment - we want to hear from you. ## Description Overview SOC Solutions Engineer Level: Experienced / Senior - £70,000 - £85,000 Location: UK-wide | Hybrid (London or Birmingham) | SOC based in Birmingham Function: Security Operations | SIEM Engineering | Threat Detection & Response Industry: Cyber Security | Managed Services | Public & Private Sector Join a leading global security services provider that combines advanced threat intelligence, SIEM expertise, and automation to protect clients at scale. Our client delivers cutting-edge security solutions across sectors and is now seeking an experienced SOC Solutions Engineer to strengthen their SOC capabilities and shape detection and response strategies. About the Role As a SOC Solutions Engineer, you'll enhance and optimise security operations across IBM QRadar platforms. You will deploy and manage SIEM environments, develop analytical rules, design automated incident response playbooks, and translate threat intelligence into actionable detection use cases. Collaboration is key - you'll work closely with threat intelligence, IT, DevOps, and compliance teams, while mentoring junior analysts and contributing to continuous improvement initiatives. What You'll Be Doing * Deploying, configuring, and maintaining IBM QRadar across cloud and on-prem environments * Onboarding and normalising log sources from diverse systems * Developing and optimising analytical rules for threat detection, anomaly detection, and behavioural analysis * Designing and implementing incident response playbooks integrated with SOAR platforms * Conducting threat modelling using MITRE ATT&CK, STRIDE, or Kill Chain frameworks * Performing investigations, coordinating incident response, and collaborating with threat intelligence teams * Generating reports and dashboards to communicate security posture and incident trends * Mentoring junior analysts and contributing to service improvement initiatives Ideal Background * 3-5 years of SOC or IT security experience, preferably in SOC/NOC environments * Deep expertise in IBM QRadar and SIEM query languages (KQL, SPL, AQL) * Experience scripting for automation and enrichment (Python, PowerShell) * Strong understanding of threat detection, incident response, network traffic, vulnerability management, and ethical hacking * Knowledge of MITRE ATT&CK, NIST, CIS frameworks, and ITIL disciplines * SC clearance required or ability to obtain * Cybersecurity certifications desirable (CISSP, GIAC, SC-200, IBM QRadar Specialist, Splunk Admin/Power User, Google Chronicle Security Engineer) * Excellent communication, analytical, and interpersonal skills What You'll Receive * Salary: Up to £85,000 * 25 days annual leave + UK public holidays * Contributory pension scheme * Private healthcare, dental, and wellbeing support options * Critical illness and life assurance cover * Flexible benefits including hybrid working and SOC-based projects * Opportunity to work on national and international client engagements * Career growth and professional development in a high-performance security practice Who Should Apply This is a role for experienced SOC professionals who want to lead, mentor, and innovate within security operations. If you are passionate about SIEM, threat detection, and automation, and thrive in a hybrid, fast-paced environment - we want to hear from you. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)