SOC Engineer (DV Cleared)
£450 - £550 per day | Outside IR35 | Hybrid (3 days in Bristol)
We are seeking a DV-cleared SOC Engineer to support and enhance a Security Operations Centre for a leading technology provider. This role focuses on detection engineering, SIEM optimisation, and automation, alongside supporting incident response across complex environments.
Key Responsibilities
- Develop and tune SIEM detection rules and use cases (eg, Splunk, QRadar)
- Automate SOC workflows and incident response processes (Python/PowerShell)
- Improve alert quality, reducing false positives and enhancing detection coverage
- Support and lead incident investigations and escalations
- Integrate threat intelligence into monitoring and detection
- Maintain SOC playbooks and support continuous improvement of tooling and processes
Skills & Experience
- Experience in SOC Engineering or advanced SOC Analyst roles
- Strong hands-on experience with SIEM platforms and detection tuning
- Scripting/automation skills (Python, PowerShell or similar)
- Understanding of threat detection and incident response frameworks (eg, MITRE ATT&CK)
Certifications (CISSP, CISM, CEH, etc.) are a plus
Requirements
- Active DV Clearance (essential)
- Hybrid: 3 days per week in Bristol