SIEM Engineer
iomart
SIEM Engineer
As a SIEM Engineer at Atech, you will play a key role in designing, implementing, and optimising security monitoring solutions across a diverse range of customer environments. Working primarily with Microsoft Sentinel, Microsoft Defender, and the wider Microsoft Security ecosystem, you will help onboard customers into our Managed SOC service while supporting them in strengthening and maturing their overall security posture.
This role combines technical engineering, detection development, automation, and customer engagement. You will be responsible for building and maintaining high-quality detections, configuring data integrations, tuning alerting, and developing automations that improve both the effectiveness and efficiency of our Security Operations Centre (SOC). You will work closely with SOC Analysts, Security Consultants, Engineers, and customers to deliver innovative security solutions that help organisations identify, investigate, and respond to threats more effectively.
As part of a growing security practice, you will have the opportunity to shape the future of Atech's security services by contributing to detection engineering, automation initiatives, internal tooling, and service improvements. This is an excellent opportunity for someone who is passionate about cyber security, enjoys solving complex technical challenges, and wants to work with cutting-edge Microsoft security technologies.
Key Responsibilities
- Design, implement, and maintain detections, analytics rules, workbooks, watchlists, and automations within Microsoft Sentinel.
- Onboard new customers into Atech's Managed SOC service, including configuring integrations, data connectors, and monitoring capabilities.
- Optimise and tune alerts to improve detection quality, reduce false positives, and enhance analyst efficiency.
- Develop and maintain security monitoring content aligned to customer requirements and emerging threats.
- Design and implement automation solutions using Microsoft Sentinel, Logic Apps, PowerShell, Python, and other supporting technologies.
- Identify opportunities to improve and streamline security operations through automation and process improvement.
- Support incident detection and response activities through the development of tooling, workflows, and detection capabilities.
- Develop and maintain internal security tooling, scripts, and deployment pipelines.
- Work collaboratively with SOC Analysts and Engineers to continuously improve security monitoring and operational effectiveness.
- Contribute to technical designs, peer reviews, and security-focused projects across the wider business.
- Create and maintain clear technical documentation, standards, processes, and procedures.
- Produce technical reports, dashboards, and service summaries for customers and internal stakeholders.
- Assist customers and colleagues in understanding and adopting Microsoft security technologies and best practices.
- Stay current with emerging cyber threats, attack techniques, and advancements within the Microsoft Security ecosystem.
- Participate in training, certifications, and continuous professional development to support your career growth and ensure Atech remains at the forefront of security detection and response.
We Want To Hear From You If You:
- Are UK-based with full right to work in the UK.
- Have hands-on experience with Microsoft Sentinel, Microsoft Defender, or similar SIEM/SOC technologies.
- Are passionate about cyber security and keeping up with emerging threats and attack techniques.
- Have experience with KQL, PowerShell, Python, or other scripting and automation tools.
- Enjoy solving complex technical challenges and improving processes through automation.
- Can communicate confidently with both technical and non-technical audiences.
- Thrive in collaborative environments and enjoy working with customers and colleagues.
- Have an interest in detection engineering, threat hunting, security monitoring, and incident response.
- Take ownership of your work, manage priorities effectively, and adapt in a fast-paced environment.
- Are committed to continuous learning, professional development, and knowledge sharing.
- Have experience using AI tools such as Microsoft Copilot to enhance productivity and streamline workflows.
- Hold Microsoft security certifications such as SC-200, AZ-500, or SC-300.
Bonus Points If You:
- Have experience with Azure Logic Apps, Azure Functions, Terraform, Bicep, or Infrastructure as Code (IaC).
- Have worked within a SOC, MSSP, or Managed Security Services environment.
- Have experience with Detection-as-Code or Content-as-Code practices.
- Have exposure to threat intelligence, threat hunting, malware analysis, or purple team activities.
- Have integrated third-party security products and data sources into Microsoft Sentinel.
- Have implemented AI capabilities, such as Copilot, within automations, workflows, or internal tooling.
- Contribute to security tooling, open-source projects, technical content, or security research.
What's In It For Me?
- Competitive salary and benefits package.
- Flexible hybrid or remote working model
- Exposure to a broad range of cyber security technologies and customer environments.
- Opportunity to work on complex and high-impact security incidents.
- Ongoing learning, certification and professional development support.
- Clear career progression within a growing cyber security practice.
- A collaborative and supportive team environment where knowledge sharing is encouraged.
- The opportunity to influence SOC maturity, service innovation and security outcomes for our customers.
Who You'll Be Doing It For:
Atech part of the Iomart Group is a highly accredited Microsoft Partner who delivers transformed technology with managed services. Our team of certified Microsoft experts align with your team to deliver an excellent service tailored to your individual needs, 24/7/365.
Our services support 25,000 users globally and proactively monitor 45,000+ devices in key areas:
- Azure infrastructure managed service
- Modern Workplace: Office 365, Microsoft 365, and Azure Virtual Desktop
- Managed Security and SOC with Microsoft Defender, Sentinel
What To Do Next:
Please click apply if you like the sound of this role. If you do not have an up to date CV or want to have a chat about the role first, please contact us on View email address on click.appcast.io.
We're an equal opportunities employer and want our vacancies to be available to all, so if you need us to make any reasonable adjustments during the process then just let us know.
$168k - $195k
...aligned with enterprise architecture standards and principles. About The RoleWe are seeking a highly skilledSenior Cyber Security Engineer - SIEM and Automation to lead and enhance our detection engineering capabilities. This role is responsible for developing high-...SuggestedFull timeWork at officeLocal areaImmediate startRemote workRelocation- Charles Schwab Corporation is seeking a Security Software Development Engineer (SIEM/SOAR) to design, build, and operate scalable security automation and detection capabilities. You will work with SOC analysts to refine detection logic and implement orchestration playbooks...Suggested
- ...Nevada Corporation is looking for a Principal Systems Security Engineer in Lone Tree, CO. This role involves overseeing the cybersecurity... ...vulnerability management, NIST standards, and hands-on experience with SIEM tools. A current Top Secret U.S. Security Clearance is mandatory...Suggested
- ...SUMMARY Serve as a senior member of the Cybersecurity Engineering team responsible for designing, implementing, and optimizing enterprise... ...architecture and operational maturity of the organization's SIEM platform with a focus on Elasticsearch and security automation...SuggestedFull timeWork at office
- ...Two Interactive Software, Inc. is seeking a Threat Intelligence Engineer to be on the front lines of defense, operationalizing intelligence... ...of Threat Intelligence and involves hands-on work across SIEM, EDR, TIPs, and firewalls, with opportunities to #J-18808-Ljbffr...Suggested
- ...Two Interactive Software, Inc. is seeking a Threat Intelligence Engineer to join our security teams in Austin. You will help operationalize... ...will work with security teams to ingest threat data into our SIEM, EDR, and firewalls, and you will develop automation to streamline...
- Dentons US LLP is recruiting a Threat Analyst to proactively hunt for threats in client environments and tune SIEM use cases while developing automation and SOAR playbooks. The analyst will investigate events, monitor threat intelligence, and collaborate with internal...
- Abra Professional Services in Israel is seeking a Splunk Developer to join a SIEM team within a leading financial organization. You will develop and maintain Splunk-based security solutions, integrate log sources, and build dashboards and detection content. The role requires...Full time
- ...awards.Salary Range$99,100.00 - $163,400.00Target Openings1What Is the Opportunity?As a Cybersecurity Ops Technologist I - Splunk SIEM Engineer, You will continuously manage and monitor SIEM platform health, data ingestion pipelines, and detection coverage gaps, applying...Full timeWork experience placementLocal area
$155k - $175k
...where you and your unique viewpoint matter. Learn about the Danaher Business System which makes everything possible. The Senior SIEM Engineer will be responsible for engineering, sustaining, and continuously improving Danaher's cybersecurity monitoring platforms that enable...Full timeRemote workWork from homeFlexible hours$150k - $160k
...cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent... ...benefits and opportunities we offer. Cybersecurity Engineer – SIEM / Splunk Position Summary Electrosoft is seeking a...Full timeFor contractors- GTSC seeks Cybersecurity Engineer – Zero Trust / RMF / SIEM \\\ for mid -August 2026 start. Commitment to start must be by 30 June in order to complete background checks required for this position. \ \\ \ Location \ : This is a local remote position in the metropolitan...Full timeTemporary workLocal areaRemote workFlexible hours
$140k - $160k
SIEM Engineer - Job DescriptionRole OverviewThe SIEM Engineer is responsible for designing, implementing, maintaining, and optimizing the organization's Security Information and Event Management (SIEM) platform. This role supports Security Operations by developing detection...Local area- The Information Security Office at University of California, Berkeley is seeking an IT Security Analyst to join our Security Engineering team. You will focus on systems administration, install, configure and patch security systems, and implement controls to prevent intrusions...Full timeWork at office
$160k - $250k
...of cybersecurity starts with you.About the Role:CrowdStrike is seeking a Senior-to-Principal Software Development Engineer in Test (SDET) for our NG-SIEM Product Group. NG-SIEM is powered by one of the highest-scale event search and detection platforms anywhere in the...Full timeContract workWork experience placementWork at officeLocal areaFlexible hours$171.3k - $205.1k
...industry training and more. Join us to drive positive, lasting change that moves missions and the government forward! The SIEM engineer is responsible for monitoring and analyzing security events using the program’s Security Information and Event Management (SIEM)...Work experience placementLive inWork at officeLocal area- ...SIEM Engineer LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a skilled and proactive SIEM Engineer to join our cybersecurity team and play a critical...Temporary workFor contractorsImmediate startFlexible hours
- ...Resilience practice is building a high-growth CrowdStrike Next Gen SIEM and MDR Enablement practice, and we are seeking a proven... ...Manager / Principal Consultant, you will oversee a team of detection engineers and client delivery professionals deploying and...Temporary workRemote work
- ...Job Title: SIEM Engineer Location: Buffalo, NY (Hybrid) Job Type: Contract- W2 Only (NO C2C) Primary Responsibilities: • Assist in the implementation and configuration of the bank's SIEM platform, ensuring it meets security and compliance requirements...Contract work
- ...Cyber Security Engineer "SIEM Engineer" Role: Cyber Security Engineer "SIEM Engineer" Location: Hybrid – Irvine / Palo Alto, CA (M/W/F) Duration: 12+ months Rate: $$ W2 per hour + Benefits QUALIFICATIONS Extensive programming experience in object-...Hourly pay
- ...SIEM Engineer Apex Systems is a world class technology services business that incorporates industry insights and experience to deliver solutions that fulfill our clients’ digital visions. Position: SIEM Engineer Location: Remote Rate: Negotiable based on experience...Work experience placementRemote work
- ...Position: SIEM Engineer Location: Remote Duration: 6+ Months; Strong potential for extension into 2025 Position Description: Our client in the financial services domain is seeking a candidate to help grow and improve the Cyber Development and Testing team...Local areaRemote work
- ...Hong Kong Study Skills Research Institute is looking for a Splunk Engineer / Administrator / Developer located in Oakton, Virginia. This is... ...active TS/SCI clearance. The successful candidate will focus on SIEM operations and create executive dashboards to enhance security...
$65 - $70 per hour
Position - Security Engineer Location - Fort Worth, TX (Hybrid)Job ID - 178604 Position Overview We are seeking a Directory Services Engineer... ...control changes. Integrate data protection telemetry with SIEM/SOAR; build detections, correlation rules, and automated response...Full timeContract workWork at office$131.3k - $237.35k
SIEM EngineerLeidos has an exciting and challenging opportunity for an SIEM (Security Information and Event Management) Engineer in our Intel Sector’s Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network...Full timeImmediate startFlexible hours- ...experts. Role Overview We’re seeking a Staff Information Security Engineer to help lead and evolve our Global Information Security... ...into detections and response. Design and improve detections across SIEM, EDR, and SOAR. Automate incident triage and response workflows....Full timeWork at officeFlexible hours
$107.5k - $204.5k
...the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today’s mission and stay ahead of... ...(MFA), and Security Incident and Event Management (SIEM) and centralized auditing tools familiarity with splunk is preferredLinux...Contract workTemporary workWork experience placementWork at officeRemote workRelocation packageFlexible hours$135k - $202.6k
...Aeronautics Systems is currently seeking a Senior Principal Cyber Systems Engineer for a new and exciting effort located in Melbourne, FL.We're... ...on experience configuring Security Incident Event Monitoring (SIEM) and IDS/IPS tools such as ACAS, HBSS, and Splunk within Linux...Full timeRelocation packageShift work$125.3k - $187.9k
...pioneering spirit to our collaborative teams. As a Cyber Systems Engineer - Level 3/4 located in Dulles, VA or Gilbert, AZ, you’ll be a... ...security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc. within terrestrial systemsFor space segments, you...Full timeRemote workRelocation packageShift work$125k - $175k
...ensuring uninterrupted service delivery.Position Summary: As Security Engineer, you’ll join the Cybersecurity Operations team, where you’ll... ..., triage, and investigate alerts and logs within the Splunk SIEM and Splunk Enterprise Security (ES) platform. Assist in improving...Full timeTemporary work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SIEM Engineer. Be the first to apply!



