SIEM Detection Engineer - SC Cleared
Our Blue Chip Utlities Client is looking for a number of SIEM Engineers who hold SC Clearance. It will be based between Reading or Havant and will require Active SC clearance. SIEM Engineer (SC Active)Rate; Flexible (inside IR35/via umbrella)Location; Remote, Ad-hoc ReadingDuration; 6 month initialClearance; Must hold active SC clearanceBackground . Lead integration of log sources into Microsoft Sentinel to ensure complete and reliable security telemetry.. Design and optimise KQL queries to support effective threat detection and investigation.. Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases.. Develop Logic Apps and SOAR workflows to automate response and reduce manual effort. Key Skills . Active SC Clearance (Essential).. Strong experience with Microsoft Sentinel engineering, administration and optimisation.. Proven experience onboarding and integrating complex log sources into SIEM platforms.. Experience developing custom parsers, transformations and data normalisation logic.. Strong knowledge of KQL (Kusto Query Language), advanced query development and optimisation.. Experience designing, building and tuning analytic rules, detection logic and threat use cases.. Experience developing Logic Apps, Playbooks and SOAR automation workflows.. Experience implementing CI/CD pipelines using Azure DevOps and Git.. Strong understanding of security monitoring, threat detection, incident response and threat hunting ..... full job details .....
Other jobs of interest...
Perform a fresh search...
-
Create your ideal job search criteria by
completing our quick and simple form and
receive daily job alerts tailored to you!