Security Engineer - SIEM/XDR - London (Hybrid)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+10 more
Job description
Security Engineer (SIEM / XDR) - Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, London (Hybrid)
This is an exceptional permanent Security Engineer (SIEM / XDR) opportunity to join a leading tech company.
The Security Engineer (SIEM / XDR) role is Hybrid, in the London office 1-2 times a month. You must be UK based and able to travel to UK sites sometimes at short notice.
As Security Engineer (SIEM / XDR), you will design, build and maintain scalable security detection and response capabilities across SIEM, XDR, cloud and endpoint platforms. The Security Engineer (SIEM / XDR) will set engineering direction, standards and quality across detection, telemetry and automation, with a strong focus on detection-as-code, telemetry optimisation and automated response workflows. The Security Engineer (SIEM / XDR) will work closely with SOC leadership and engineering teams to improve detection effectiveness, integrate new data sources, enhance logging quality, build automation and support scalable cloud security outcomes. Strong Security Engineer (SIEM / XDR), security engineering or detection engineering experience is essential.
Requirements
- Strong Security Engineer (SIEM / XDR), security engineering or detection engineering experience
- Hands-on SIEM and XDR tooling, ideally Microsoft Sentinel and Microsoft Defender for Endpoint
- Detection engineering, detection-as-code, KQL, security content and alert logic
- Security telemetry, logging pipelines, data quality and telemetry coverage improvement
- Cloud security engineering and scalable security architecture design
- Automation, SOAR, playbooks, enrichment workflows and response improvement
- Scripting/programming skills such as Python and PowerShell
- Infrastructure-as-code, CI/CD pipelines, version control and documentation standards
- API integrations, security tooling integration and onboarding new data sources
- Windows and Linux operating system knowledge
- Ability to own engineering backlog, priorities and delivery across detection and platform improvements
Desirable skills as Security Engineer (SIEM / XDR)
- InfoSec certifications
- MS certifications
- Azure certifications
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Data Engineer Salary UK
Fully Remote Software Engineer Jobs
The 12 Best Jobs for Software Engineers
Where To Find Software Engineering Jobs