Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SIEM Engineer

iomart

SIEM Engineer

As a SIEM Engineer at Atech, you will play a key role in designing, implementing, and optimising security monitoring solutions across a diverse range of customer environments. Working primarily with Microsoft Sentinel, Microsoft Defender, and the wider Microsoft Security ecosystem, you will help onboard customers into our Managed SOC service while supporting them in strengthening and maturing their overall security posture.

This role combines technical engineering, detection development, automation, and customer engagement. You will be responsible for building and maintaining high-quality detections, configuring data integrations, tuning alerting, and developing automations that improve both the effectiveness and efficiency of our Security Operations Centre (SOC). You will work closely with SOC Analysts, Security Consultants, Engineers, and customers to deliver innovative security solutions that help organisations identify, investigate, and respond to threats more effectively.

As part of a growing security practice, you will have the opportunity to shape the future of Atech's security services by contributing to detection engineering, automation initiatives, internal tooling, and service improvements. This is an excellent opportunity for someone who is passionate about cyber security, enjoys solving complex technical challenges, and wants to work with cutting-edge Microsoft security technologies.

Key Responsibilities

  • Design, implement, and maintain detections, analytics rules, workbooks, watchlists, and automations within Microsoft Sentinel.
  • Onboard new customers into Atech's Managed SOC service, including configuring integrations, data connectors, and monitoring capabilities.
  • Optimise and tune alerts to improve detection quality, reduce false positives, and enhance analyst efficiency.
  • Develop and maintain security monitoring content aligned to customer requirements and emerging threats.
  • Design and implement automation solutions using Microsoft Sentinel, Logic Apps, PowerShell, Python, and other supporting technologies.
  • Identify opportunities to improve and streamline security operations through automation and process improvement.
  • Support incident detection and response activities through the development of tooling, workflows, and detection capabilities.
  • Develop and maintain internal security tooling, scripts, and deployment pipelines.
  • Work collaboratively with SOC Analysts and Engineers to continuously improve security monitoring and operational effectiveness.
  • Contribute to technical designs, peer reviews, and security-focused projects across the wider business.
  • Create and maintain clear technical documentation, standards, processes, and procedures.
  • Produce technical reports, dashboards, and service summaries for customers and internal stakeholders.
  • Assist customers and colleagues in understanding and adopting Microsoft security technologies and best practices.
  • Stay current with emerging cyber threats, attack techniques, and advancements within the Microsoft Security ecosystem.
  • Participate in training, certifications, and continuous professional development to support your career growth and ensure Atech remains at the forefront of security detection and response.
We Want To Hear From You If You:
  • Are UK-based with full right to work in the UK.
  • Have hands-on experience with Microsoft Sentinel, Microsoft Defender, or similar SIEM/SOC technologies.
  • Are passionate about cyber security and keeping up with emerging threats and attack techniques.
  • Have experience with KQL, PowerShell, Python, or other scripting and automation tools.
  • Enjoy solving complex technical challenges and improving processes through automation.
  • Can communicate confidently with both technical and non-technical audiences.
  • Thrive in collaborative environments and enjoy working with customers and colleagues.
  • Have an interest in detection engineering, threat hunting, security monitoring, and incident response.
  • Take ownership of your work, manage priorities effectively, and adapt in a fast-paced environment.
  • Are committed to continuous learning, professional development, and knowledge sharing.
  • Have experience using AI tools such as Microsoft Copilot to enhance productivity and streamline workflows.
  • Hold Microsoft security certifications such as SC-200, AZ-500, or SC-300.

Bonus Points If You:

  • Have experience with Azure Logic Apps, Azure Functions, Terraform, Bicep, or Infrastructure as Code (IaC).
  • Have worked within a SOC, MSSP, or Managed Security Services environment.
  • Have experience with Detection-as-Code or Content-as-Code practices.
  • Have exposure to threat intelligence, threat hunting, malware analysis, or purple team activities.
  • Have integrated third-party security products and data sources into Microsoft Sentinel.
  • Have implemented AI capabilities, such as Copilot, within automations, workflows, or internal tooling.
  • Contribute to security tooling, open-source projects, technical content, or security research.
What's In It For Me?
  • Competitive salary and benefits package.
  • Flexible hybrid or remote working model
  • Exposure to a broad range of cyber security technologies and customer environments.
  • Opportunity to work on complex and high-impact security incidents.
  • Ongoing learning, certification and professional development support.
  • Clear career progression within a growing cyber security practice.
  • A collaborative and supportive team environment where knowledge sharing is encouraged.
  • The opportunity to influence SOC maturity, service innovation and security outcomes for our customers.
Who You'll Be Doing It For:

Atech part of the Iomart Group is a highly accredited Microsoft Partner who delivers transformed technology with managed services. Our team of certified Microsoft experts align with your team to deliver an excellent service tailored to your individual needs, 24/7/365.

Our services support 25,000 users globally and proactively monitor 45,000+ devices in key areas:

  • Azure infrastructure managed service
  • Modern Workplace: Office 365, Microsoft 365, and Azure Virtual Desktop
  • Managed Security and SOC with Microsoft Defender, Sentinel
What To Do Next:

Please click apply if you like the sound of this role. If you do not have an up to date CV or want to have a chat about the role first, please contact us on View email address on click.appcast.io.

We're an equal opportunities employer and want our vacancies to be available to all, so if you need us to make any reasonable adjustments during the process then just let us know.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the SIEM Engineer in United States vacancy
  • $168k - $195k

     ...aligned with enterprise architecture standards and principles. About The RoleWe are seeking a highly skilledSenior Cyber Security Engineer - SIEM and Automation to lead and enhance our detection engineering capabilities. This role is responsible for developing high-... 
    Suggested
    Full time
    Work at office
    Local area
    Immediate start
    Remote work
    Relocation

    Corebridge Financial

    Houston, TX
    2 days ago
  • Charles Schwab Corporation is seeking a Security Software Development Engineer (SIEM/SOAR) to design, build, and operate scalable security automation and detection capabilities. You will work with SOC analysts to refine detection logic and implement orchestration playbooks... 
    Suggested

    Charles Schwab Corporation

    Southlake, TX
    14 hours ago
  •  ...Nevada Corporation is looking for a Principal Systems Security Engineer in Lone Tree, CO. This role involves overseeing the cybersecurity...  ...vulnerability management, NIST standards, and hands-on experience with SIEM tools. A current Top Secret U.S. Security Clearance is mandatory... 
    Suggested

    Sierra Nevada Corporation

    Littleton, CO
    3 days ago
  •  ...SUMMARY Serve as a senior member of the Cybersecurity Engineering team responsible for designing, implementing, and optimizing enterprise...  ...architecture and operational maturity of the organization's SIEM platform with a focus on Elasticsearch and security automation... 
    Suggested
    Full time
    Work at office

    Red Lobster

    Orlando, FL
    more than 2 months ago
  •  ...Two Interactive Software, Inc. is seeking a Threat Intelligence Engineer to be on the front lines of defense, operationalizing intelligence...  ...of Threat Intelligence and involves hands-on work across SIEM, EDR, TIPs, and firewalls, with opportunities to #J-18808-Ljbffr... 
    Suggested

    Taketwo

    Austin, TX
    3 days ago
  •  ...Two Interactive Software, Inc. is seeking a Threat Intelligence Engineer to join our security teams in Austin. You will help operationalize...  ...will work with security teams to ingest threat data into our SIEM, EDR, and firewalls, and you will develop automation to streamline... 

    Take-Two

    Austin, TX
    3 days ago
  • Dentons US LLP is recruiting a Threat Analyst to proactively hunt for threats in client environments and tune SIEM use cases while developing automation and SOAR playbooks. The analyst will investigate events, monitor threat intelligence, and collaborate with internal... 

    Dentons

    Chicago, IL
    5 days ago
  • Abra Professional Services in Israel is seeking a Splunk Developer to join a SIEM team within a leading financial organization. You will develop and maintain Splunk-based security solutions, integrate log sources, and build dashboards and detection content. The role requires... 
    Full time

    Worky Ltd

    Wheaton, IL
    3 days ago
  •  ...awards.Salary Range$99,100.00 - $163,400.00Target Openings1What Is the Opportunity?As a Cybersecurity Ops Technologist I - Splunk SIEM Engineer, You will continuously manage and monitor SIEM platform health, data ingestion pipelines, and detection coverage gaps, applying... 
    Full time
    Work experience placement
    Local area

    The Travelers Indemnity Company

    Hartford, CT
    3 days ago
  • $155k - $175k

     ...where you and your unique viewpoint matter. Learn about the Danaher Business System which makes everything possible. The Senior SIEM Engineer will be responsible for engineering, sustaining, and continuously improving Danaher's cybersecurity monitoring platforms that enable... 
    Full time
    Remote work
    Work from home
    Flexible hours

    Danaher Corporation

    New York, NY
    3 days ago
  • $150k - $160k

     ...cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent...  ...benefits and opportunities we offer. Cybersecurity Engineer – SIEM / Splunk Position Summary Electrosoft is seeking a... 
    Full time
    For contractors

    Electrosoft, Inc.

    United States
    1 day ago
  • GTSC seeks  Cybersecurity Engineer – Zero Trust / RMF / SIEM \\\ for mid -August 2026 start. Commitment to start must be by 30 June in order to complete background checks required for this position. \ \\ \ Location \ : This is a local remote position in the metropolitan... 
    Full time
    Temporary work
    Local area
    Remote work
    Flexible hours

    Gtsc-Talent Solutions

    Washington DC
    1 day ago
  • $140k - $160k

    SIEM Engineer - Job DescriptionRole OverviewThe SIEM Engineer is responsible for designing, implementing, maintaining, and optimizing the organization's Security Information and Event Management (SIEM) platform. This role supports Security Operations by developing detection... 
    Local area

    IDB Bank

    New York, NY
    2 days ago
  • The Information Security Office at University of California, Berkeley is seeking an IT Security Analyst to join our Security Engineering team. You will focus on systems administration, install, configure and patch security systems, and implement controls to prevent intrusions... 
    Full time
    Work at office

    University of California

    Berkeley, CA
    1 day ago
  • $160k - $250k

     ...of cybersecurity starts with you.About the Role:CrowdStrike is seeking a Senior-to-Principal Software Development Engineer in Test (SDET) for our NG-SIEM Product Group. NG-SIEM is powered by one of the highest-scale event search and detection platforms anywhere in the... 
    Full time
    Contract work
    Work experience placement
    Work at office
    Local area
    Flexible hours

    CrowdStrike

    Austin, TX
    2 days ago
  • $171.3k - $205.1k

     ...industry training and more. Join us to drive positive, lasting change that moves missions and the government forward! The SIEM engineer is responsible for monitoring and analyzing security events using the program’s Security Information and Event Management (SIEM)... 
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Fort Belvoir, VA
    4 days ago
  •  ...SIEM Engineer LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a skilled and proactive SIEM Engineer to join our cybersecurity team and play a critical... 
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    Cymertek

    Chantilly, Loudoun County, VA
    5 days ago
  •  ...Resilience practice is building a high-growth CrowdStrike Next Gen SIEM and MDR Enablement practice, and we are seeking a proven...  ...Manager / Principal Consultant, you will oversee a team of detection engineers and client delivery professionals deploying and... 
    Temporary work
    Remote work
    United States
    10 days ago
  •  ...Job Title: SIEM Engineer Location: Buffalo, NY (Hybrid) Job Type: Contract- W2 Only (NO C2C) Primary Responsibilities: • Assist in the implementation and configuration of the bank's SIEM platform, ensuring it meets security and compliance requirements... 
    Contract work

    Syntricate Technologies

    Buffalo, NY
    3 days ago
  •  ...Cyber Security Engineer "SIEM Engineer" Role: Cyber Security Engineer "SIEM Engineer" Location: Hybrid – Irvine / Palo Alto, CA (M/W/F) Duration: 12+ months Rate: $$ W2 per hour + Benefits QUALIFICATIONS Extensive programming experience in object-... 
    Hourly pay

    Syntricate Technologies

    Irvine, CA
    5 days ago
  •  ...SIEM Engineer Apex Systems is a world class technology services business that incorporates industry insights and experience to deliver solutions that fulfill our clients’ digital visions. Position: SIEM Engineer Location: Remote Rate: Negotiable based on experience... 
    Work experience placement
    Remote work

    Software Technology Inc

    United States
    5 days ago
  •  ...Position: SIEM Engineer Location: Remote Duration: 6+ Months; Strong potential for extension into 2025 Position Description: Our client in the financial services domain is seeking a candidate to help grow and improve the Cyber Development and Testing team... 
    Local area
    Remote work

    My3Tech Inc

    United States
    4 days ago
  •  ...Hong Kong Study Skills Research Institute is looking for a Splunk Engineer / Administrator / Developer located in Oakton, Virginia. This is...  ...active TS/SCI clearance. The successful candidate will focus on SIEM operations and create executive dashboards to enhance security... 

    Hong Kong Study Skills Research Institute

    Oakton, VA
    5 days ago
  • $65 - $70 per hour

    Position - Security Engineer Location - Fort Worth, TX (Hybrid)Job ID - 178604 Position Overview We are seeking a Directory Services Engineer...  ...control changes. Integrate data protection telemetry with SIEM/SOAR; build detections, correlation rules, and automated response... 
    Full time
    Contract work
    Work at office

    Pinnacle Group

    Fort Worth, TX
    1 day ago
  • $131.3k - $237.35k

    SIEM EngineerLeidos has an exciting and challenging opportunity for an SIEM (Security Information and Event Management) Engineer in our Intel Sector’s Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network... 
    Full time
    Immediate start
    Flexible hours

    Leidos

    Annapolis Junction, MD
    3 days ago
  •  ...experts. Role Overview We’re seeking a Staff Information Security Engineer to help lead and evolve our Global Information Security...  ...into detections and response. Design and improve detections across SIEM, EDR, and SOAR. Automate incident triage and response workflows.... 
    Full time
    Work at office
    Flexible hours

    Proofpoint

    Sunnyvale, CA
    5 days ago
  • $107.5k - $204.5k

     ...the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today’s mission and stay ahead of...  ...(MFA), and Security Incident and Event Management (SIEM) and centralized auditing tools familiarity with splunk is preferredLinux... 
    Contract work
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Relocation package
    Flexible hours

    Raytheon

    Tewksbury, MA
    3 days ago
  • $135k - $202.6k

     ...Aeronautics Systems is currently seeking a Senior Principal Cyber Systems Engineer for a new and exciting effort located in Melbourne, FL.We're...  ...on experience configuring Security Incident Event Monitoring (SIEM) and IDS/IPS tools such as ACAS, HBSS, and Splunk within Linux... 
    Full time
    Relocation package
    Shift work

    Northrop Grumman

    Melbourne, FL
    5 days ago
  • $125.3k - $187.9k

     ...pioneering spirit to our collaborative teams. As a Cyber Systems Engineer - Level 3/4 located in Dulles, VA or Gilbert, AZ, you’ll be a...  ...security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc. within terrestrial systemsFor space segments, you... 
    Full time
    Remote work
    Relocation package
    Shift work

    Northrop Grumman

    Gilbert, AZ
    1 day ago
  • $125k - $175k

     ...ensuring uninterrupted service delivery.Position Summary: As Security Engineer, you’ll join the Cybersecurity Operations team, where you’ll...  ..., triage, and investigate alerts and logs within the Splunk SIEM and Splunk Enterprise Security (ES) platform. Assist in improving... 
    Full time
    Temporary work

    SAMSUNG SDS

    San Jose, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SIEM Engineer. Be the first to apply!