Security Engineer - Security Operations // 12 month contract
We are seeking an experienced Security Engineer to join a high-profile cyber security program focused on modernising Security Operations and leveraging AI-driven capabilities.
This is an exciting opportunity to play a key role in designing, building, and operating the security platforms that underpin a large-scale enterprise environment. You will own critical SIEM and integration capabilities, helping to improve threat detection, automation, and security operations effectiveness.
About the Role
As the Security Engineer – SIEM & Integration, you will be responsible for the security data pipeline, SIEM platform engineering, security tool integrations, and automation capabilities that support a modern SOC environment.
You will work closely with cyber security, engineering, infrastructure, cloud, and operations teams to deliver scalable and resilient security solutions.
Responsibilities
- Own and manage enterprise SIEM platforms, ensuring performance, reliability, and scalability
- Design and maintain log ingestion, onboarding, normalisation, filtering, and routing processes
- Build and support integrations between security platforms including EDR, XDR, email security, cloud security, WAF, and threat intelligence solutions
- Develop and maintain security automation and orchestration workflows
- Build and support AI-enabled security operations capabilities, including automated triage, investigation, and response processes
- Manage detection-as-code frameworks, repositories, deployment pipelines, and CI/CD processes
- Collaborate with engineering and security teams to continuously improve security monitoring and operational effectiveness
Requirements
- Strong experience with Microsoft Sentinel or other modern SIEM platforms
- Advanced KQL (Kusto Query Language) skills
- Experience with log pipeline technologies, data onboarding, and log normalisation
- Strong integration engineering experience using APIs, connectors, and event-driven architectures
- Experience with Azure services, including Event Hub
- Strong Python scripting and automation skills
- Experience with Git, CI/CD pipelines, and Infrastructure as Code
- Hands-on experience with Terraform and/or Bicep
What’s on Offer?
- Initial 12-month contract with strong extension potential
- Opportunity to work on a large-scale cyber security transformation program
- Exposure to cutting-edge SIEM, automation, and AI-driven security technologies
- Collaborative and highly skilled security team
If you’re passionate about security engineering, SIEM platforms, automation, and modern security operations, we’d love to hear from you.