CrawlJobs Logo

SOC Solutions Engineer - QRadar and Splunk

nttdata.com Logo

NTT DATA

Location Icon

Location:
United Kingdom , Birmingham

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Join a leading Managed Service Provider as a SOC Solutions Engineer specializing in QRadar and Splunk. Enhance security operations, develop incident response playbooks, and collaborate with teams to optimize threat detection strategies. Bring your expertise in SIEM platforms and a strong understanding of cybersecurity frameworks to make a significant impact.

Job Responsibility:

  • Deploy, configure, and maintain SIEM platforms (Splunk, QRadar, Sentinel, Defender, Chronicle)
  • Onboard and normalize log sources across cloud and on-prem environments
  • Develop and optimize analytical rules for threat detection, anomaly detection, and behavioural analysis
  • Design and implement incident response playbooks for various threat scenarios (e.g., phishing, lateral movement, data exfiltration)
  • Integrate playbooks with SOAR platforms (e.g., Microsoft Logic Apps, XSOAR) to automate triage and response
  • Continuously refine playbooks based on threat intelligence and incident feedback
  • Monitor and analyse security alerts and events to identify potential threats
  • Perform in-depth investigations and coordinate incident response activities
  • Collaborate with threat intelligence teams to enrich detection logic
  • Conduct threat modelling exercises using frameworks like MITRE ATT&CK, STRIDE, or Kill Chain
  • Translate threat models into actionable detection use cases and SIEM rules
  • Prioritize detection engineering efforts based on risk and business impact
  • Generate reports and dashboards for stakeholders on security posture and incident trends
  • Work closely with IT, DevOps, and compliance teams to ensure secure system configurations
  • Provide mentorship and guidance to junior analysts and engineers
  • Maintain accurate and up-to-date documentation of security procedures, incident response plans, and analysis reports
  • Support the creation of monthly reporting packs as per contractual requirements
  • Create and document robust event and incident management processes, Runbooks & Playbooks
  • Involvement in scoping and standing up new solutions for new opportunities
  • Assisting Pre-Sales team with requirements on new opportunities
  • Demonstrations of SOC tools to clients
  • Continual Service Improvement - Recommendations for change to address incidents or persistent events

Requirements:

  • Must be able to obtain SC Clearance or already hold SC clearance
  • Hands-on experience of IBM QRadar
  • Strong knowledge of log formats, parsing, and normalization
  • Experience with KQL, SPL, AQL, or other SIEM query languages
  • Familiarity with scripting (Python, PowerShell) for automation and enrichment
  • Deep understanding of threat detection, incident response, and cyber kill chain
  • Familiarity with MITRE ATT&CK, NIST, and CIS frameworks
  • Strong verbal and written English communication
  • Strong interpersonal and presentation skills
  • Strong analytical skills
  • Good understanding on network traffic flows and able to understand normal and suspicious activities
  • Good understanding of Vulnerability Scanning and management as well as Ethical Hacking (Penetration Testing)
  • Knowledge of ITIL disciplines such as Incident, Problem and Change Management
  • Ability to work with minimal levels of supervision
  • Willingness to work in a job that involves 24/7 on call
  • Minimum of 3 to 5 years of experience in the IT security industry, preferably working in a SOC/NOC environment
  • Preferably holds Cyber Security Certification e.g. ISC2 CISSP, GIAC, SC-200, Splunk Certified Admin/Power User, IBM QRadar Certified Specialist, Google Chronicle Security Engineer etc
  • Experience with Service Now Security suite
  • Experience with Cloud platforms (AWS and/or Microsoft Azure)
  • Excellent knowledge of Microsoft Office products, especially Excel and Word
What we offer:
  • Range of tailored benefits that support your physical, emotional, and financial wellbeing
  • Continuous growth and development opportunities
  • Flexible work options
  • Inclusive work environment
  • Range of Inclusion Networks such as: the Women’s Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network

Additional Information:

Job Posted:
January 26, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for SOC Solutions Engineer - QRadar and Splunk

Cyber Security Engineer

We are looking for someone dynamic who can quickly adapt to new challenges and f...
Location
Location
Portugal , Lisbon
Salary
Salary:
Not provided
miniclip.com Logo
Miniclip
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 1 year of experience in SOC or similar cybersecurity role with exposure to advanced threat detection and analysis
  • Background in Computer Science, Information Technology, or a related field
  • Proficiency in SIEM platforms (e.g., Sentinel, Splunk, QRadar) and writing custom correlation rules
  • Hands-on experience conducting: Technical Software Security Risk Assessments
  • Vulnerability Assessments in web and/or mobile applications, and Physical and Wireless penetration testing
  • Document and report incidents/assessments/findings
  • Understanding of cybersecurity standards and frameworks (e.g., ISO27001, NIST, NIS2, OWASP)
  • Availability for work outside of regular hours on short notice to handle emergencies
  • A social and hard-working candidate who thrives in a team environment and is passionate about their work
  • Solid understanding of cyber security best practices and frameworks
Job Responsibility
Job Responsibility
  • Incident handling: Identifying, triaging, and investigating potential security incidents
  • Systems Administration: Understanding system internals and implementing effective countermeasures and remediation strategies on different operating systems
  • Computer Forensic Analysis: Possessing a background in utilizing diverse forensic analysis tools during incident response investigations to assess the scope and depth of compromise
  • Vulnerability Assessment: Review and validate vulnerability reports collected by our systems working closely with cross-functional core/development teams to prioritize and facilitate the remediation of identified vulnerabilities in a timely manner
  • Reporting and documentation: Develop and maintain accurate records of all the incidents, vulnerability reports, assessments, remediation efforts, ensuring clear documentation of findings and resolutions
  • Awareness: Promote security awareness within the organization by conducting training sessions, sharing insights on emerging threats, and fostering a culture of security consciousness
  • Threat Hunting: Performing proactive threat hunting across the group
  • Physical Security: Availability to travel through our different studios to identify physical vulnerabilities and propose remediation measures
Read More
Arrow Right

Sr Principal Professional Services Engineer

As a Principal Consultant for SOC Transformation & XSIAM Deployment, you will be...
Location
Location
Germany , Berlin
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proven track record in modernizing Security Operations Centers (SOCs) to achieve automation, AI-driven detection, and measurable improvements in MTTD/MTTR
  • Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO
  • Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations
  • 10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments
  • 8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows
  • Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence
  • Ability to conceive, architect, and develop effective correlation and detection rules
  • Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus
  • Strong expertise in Regular Expressions (Regex)
  • Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.), is a plus
Job Responsibility
Job Responsibility
  • Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM
  • Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform
  • Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy to full operationalization
  • Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform
  • Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats
  • Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy
  • Identify opportunities to enhance analyst alert handling and response through automation
  • Transform ambiguity into structured action plans, driving accountability at every level of a customer engagement
  • Build and mentor high-performing professional services teams that blend consulting, engineering, and change management expertise
  • Partner with Product and R&D teams to incorporate field insights into roadmap priorities
Read More
Arrow Right

Senior Professional Services Consultant - Automation

As a Senior Consultant for SOC Transformation & XSIAM / XSOAR Deployment, you wi...
Location
Location
Spain , Madrid
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proven track record in modernizing and transforming Security Operations Centers (SOCs) to achieve automation, AI-driven detection, and measurable improvements in MTTD/MTTR
  • Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO
  • Experience acting as a trusted advisor to senior security leaders
  • Ability to diagnose challenges and deliver strategic recommendations
  • 10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments
  • 8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows
  • Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence
  • Ability to conceive, architect, and develop effective correlation and detection rules
  • Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus
  • Strong expertise in Regular Expressions (Regex)
Job Responsibility
Job Responsibility
  • Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM
  • Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform
  • Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy to full operationalization
  • Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform
  • Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats
  • Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy
  • Identify opportunities to enhance analyst alert handling and response through automation
  • Transform ambiguity into structured action plans, driving accountability at every level of a customer engagement
  • Build and mentor high-performing professional services teams that blend consulting, engineering, and change management expertise
  • Partner with Product and R&D teams to incorporate field insights into roadmap priorities
  • Fulltime
Read More
Arrow Right

Senior Professional Services Consultant

As a Senior Consultant for SOC Transformation & XSIAM Deployment, you will be a ...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proven track record in modernizing Security Operations Centers (SOCs) to achieve automation, AI-driven detection, and measurable improvements in MTTD/MTTR
  • Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO
  • Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations
  • 8+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments
  • 6+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows
  • Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence
  • Ability to conceive, architect, and develop effective correlation and detection rules
  • Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus
  • Strong expertise in Regular Expressions (Regex)
  • Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.), is a plus
Job Responsibility
Job Responsibility
  • Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM
  • Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform
  • Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy to full operationalization
  • Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform
  • Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats
  • Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy
  • Identify opportunities to enhance analyst alert handling and response through automation
  • Transform ambiguity into structured action plans, driving accountability at every level of a customer engagement
  • Build and mentor high-performing professional services teams that blend consulting, engineering, and change management expertise
  • Partner with Product and R&D teams to incorporate field insights into roadmap priorities
Read More
Arrow Right

Cyber Security Engineer

Location
Location
United States , Memphis
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3–7+ years of experience in cyber security engineering, security operations, or related IT roles
  • Strong hands-on experience with SIEM platforms (Splunk, Sentinel, QRadar, etc.)
  • Proficiency with firewalls, IDS/IPS, endpoint detection and response (EDR), and network security tools
  • Knowledge of operating systems (Windows, Linux), networking protocols, and cloud platforms (AWS, Azure, or GCP)
  • Experience with vulnerability management and threat modeling
  • Familiarity with security frameworks such as NIST CSF, CIS Controls, or ISO 27001
  • Bachelor’s degree in Cybersecurity, Computer Science, or related field (or equivalent experience)
  • Relevant certifications such as Security+, CEH, GSEC, SSCP, CCSP, Splunk, or CISSP
Job Responsibility
Job Responsibility
  • Design, deploy, and manage security tools such as SIEM, IDS/IPS, endpoint protection, firewalls, and DLP solutions
  • Monitor security alerts, investigate threats, and lead incident response activities
  • Conduct regular vulnerability scans, risk assessments, and penetration testing
  • drive remediation efforts with internal teams
  • Develop and maintain security policies, standards, and procedures
  • Implement and manage identity and access management (IAM), MFA, and privileged access controls
  • Analyze logs, network traffic, and system behaviors to identify anomalies or potential attacks
  • Support compliance initiatives (e.g., SOC 2, HIPAA, NIST, ISO 27001)
  • Collaborate with infrastructure, DevOps, and application teams to embed security best practices
  • Lead security awareness training and provide guidance to technical and non-technical staff
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • eligible to enroll in our company 401(k) plan
Read More
Arrow Right
New

Healthcare Assistant & Lead Healthcare Assistant

Are you passionate about supporting older people and making a meaningful differe...
Location
Location
Ireland , Cork
Salary
Salary:
Not provided
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in elderly care is desirable but not essential (training may be provided)
  • QQI Level 5 in Healthcare Support or equivalent is an advantage
  • A caring, patient and respectful approach to supporting older people
  • Ability to work flexible shifts including days, nights, and weekends
  • Strong commitment to resident safety, dignity and wellbeing
  • Applicants must have legal entitlement to work in Ireland
Job Responsibility
Job Responsibility
  • Deliver person-centred care to residents with dignity and respect
  • Support residents with activities of daily living where required
  • Encourage independence and social engagement
  • Maintain a clean, safe and comfortable living environment
  • Build positive relationships with residents, families, and colleagues
  • Follow all health, safety and safeguarding procedures
  • Assist with compliance processes, inspections, and quality standards
  • Lead Healthcare Assistants will also assist in guiding care teams, supporting best practice, and helping maintain high standards of care delivery
What we offer
What we offer
  • Flexible working hours to support work–life balance
  • Local employment opportunities within the Douglas, Cork area
  • Competitive rates of pay in line with experience and role
  • Supportive team environment with ongoing training and development
  • Employee wellbeing initiatives
  • Uniform provided
  • Free on-site parking
  • Meals provided while on duty
Read More
Arrow Right
New

Bakery Team Member

Join us to "Change Hospitality For Good". Here at the Cornish Bakery, we want to...
Location
Location
United Kingdom , Falmouth
Salary
Salary:
8.05 - 12.80 GBP / Hour
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Eligible to live and work in the UK
Job Responsibility
Job Responsibility
  • Make the World’s Best Coffee
  • Deliver Outstanding Customer Service
  • Prepare Award Winning Food
  • Maintain High standards within the Bakery
  • Be part of a Team who strive to Aim Higher at all times
What we offer
What we offer
  • 50% discount on food and drink
  • Pasty Perks – bespoke reward system offering discounts and savings on favourite brands
  • Financial well-being benefit through Stream – save directly from wages into a high interest savings account or access wages before pay-day
  • Employer funded health and wellbeing services with access to a 24/7 GP line, Employee Assistance Program and discounted gym memberships
  • Paid birthday day off
  • Member of the shareholder fund (service dependent)
  • Team social events with in-bakery incentives
  • Up to 28 days of holiday (including bank holidays), pro rata if necessary
Read More
Arrow Right
New

Housekeeping Assistant

In Glasgow's prestigious West End, Kelvinside Manor provides luxurious accommoda...
Location
Location
United Kingdom , Glasgow
Salary
Salary:
12.27 GBP / Hour
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience from a housekeeping or domestic cleaning role
  • Basic understanding of infection control, COSHH, and compliance standards
  • Ability to follow instructions and cleaning schedules
  • Ability to report issues
  • Ability to work well with others in a professional and courteous manner
  • Pride in your work, attention to detail, time management, and respectful communication
  • Ability to work well as part of a team or on your own
  • Demonstrating a kind and caring nature to all within the care home
  • Satisfactory references
  • Disclosure Scotland Scheme Membership (PVG)
Job Responsibility
Job Responsibility
  • Maintaining the highest levels of cleanliness in public areas and bedrooms within the home
  • Responsible for the wash, dry, iron and put away of laundry
  • Ensuring that our residents' care home facilities, public areas and rooms are maintained to the highest cleaning standards
  • Replenish and maintain supplies in both resident rooms and common areas
  • Communicate effectively with residents and colleagues to address needs and concerns
What we offer
What we offer
  • Competitive benefits
  • Overtime rates
  • Flexible working hours considered
  • Parttime
Read More
Arrow Right