SonicJobs Logo
Login
Left arrow iconBack to search

SIEM Automation Engineer

Context Recruitment
Posted 11 hours ago, valid for 12 days
Location

Leeds, West Yorkshire LS13DA, England

Salary

£60,000 per annum

Contract type

Full Time

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.

Sonic Summary

info
  • The SIEM Automation Engineer position is with a leading Microsoft MSSP, offering an opportunity to work in a top-tier security operations center (SOC) team of 16 professionals.
  • This role focuses on automating and optimizing security operations using Microsoft Sentinel, Defender for Endpoint, and KQL to enhance threat detection and response.
  • Key responsibilities include designing automation workflows, monitoring security incidents, conducting threat hunting, and collaborating with SOC teams on cyber threat responses.
  • Candidates should have proven experience with Microsoft Sentinel and Defender for Endpoint, strong KQL proficiency, and a background in cybersecurity operations and incident response.
  • The position offers a salary of up to £60,000, with a total package of £65,000 including on-call pay, and requires eligibility for SC clearance.

SIEM Automation Engineer - Leading Microsoft MSSP

An opportunity to work with one of the top 1% Microsoft MSSPs globally, where cutting-edge security solutions meet expert cyber defense. With a 16-person SOC team, this role offers the chance to automate, optimize, and strengthen security operations at scale.

A key position within a world-class MSSP, leveraging Microsoft Sentinel, Defender for Endpoint, and KQL to enhance threat detection, response, and security automation. Responsibilities include developing automated security workflows, streamlining investigations, and advancing proactive defense strategies.

Key Responsibilities:

  • Design and implement automation workflows within Microsoft Sentinel for enhanced security operations.
  • Monitor and respond to security incidents and alerts, ensuring the protection of our clients' data and infrastructure.
  • Conduct in-depth threat hunting and forensic investigations using KQL.
  • Optimize security processes with Defender for Endpoint to detect, contain, and remediate threats.
  • Collaborate with security analysts, engineers, and SOC teams to develop automated responses to cyber threats.
  • Continuously improve security monitoring strategies and contribute to the overall SIEM architecture.

Experience required:

  • Proven experience working with Microsoft Sentinel and Defender for Endpoint.
  • Strong proficiency in KQL for deep threat hunting and security analytics.
  • Knowledge of SIEM automation, playbooks, and integrations.
  • Experience in cybersecurity operations, threat detection, and incident response.
  • Passion for security automation and proactive cyber defense strategies.

Paying up to 60k + on-call (65k total package)

Remote based.

Must be eligible for SC

Apply now in a few quick clicks

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.