×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Engineering Consultant

Remote / Online - Candidates ideally in
Basingstoke, Hampshire County, RG21, England, UK
Listing for: Nomios Netherlands
Remote/Work from Home position
Listed on 2026-01-29
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Security Manager, IT Support
Job Description & How to Apply Below

Overview

Nomios’ mission is to build a secure and connected future. Organisations across the globe depend on us to help secure and connect their digital infrastructures.

As part of our continued UK growth, we are expanding our Professional Services capability and seeking a Security Engineering Consultant to deliver specialist security engineering and operations consultancy across our customer base. This is a hands-on technical role within the Security Operations domain, focused on helping customers improve and automate their SOC functions, tooling, and detection capabilities. You will work across a range of technologies and engagements, from SOAR and SIEM implementation through to vulnerability management, exposure management, and process automation.

Responsibilities
  • Deliver – Deliver Professional Services engagements across SOAR, SIEM, XDR, vulnerability and exposure management platforms
  • Conduct Azure and cloud environment security health checks and configuration reviews
  • Design and build SOAR playbooks, integrations, and automation frameworks
  • Develop and maintain custom log source parsers, normalisation, and correlation logic
  • Deploy, configure, and optimise SIEM and XDR solutions for customer environments
  • Build and tune vulnerability management workflows and dashboards using common tools such as Rapid7, Tenable, and Qualys
  • Perform CTEM-related assessments using tools such as Cymulate or XM Cyber
  • Produce clear technical documentation and customer deliverables following each engagement
  • Collaborate – Work closely with the internal SOC Engineering team to align practices and share technical improvements
  • Support engineering escalations and onboarding for customer environments
  • Contribute to engineering design sessions, roadmap planning, and internal innovation projects
  • Mentor and share knowledge with internal engineers and analysts
  • Improve – Identify and implement automation and efficiency improvements across customer and internal toolsets
  • Contribute to the development of reusable playbooks, connectors, and integration frameworks
  • Support the continual enhancement of Nomios’ Professional Services delivery templates, labs, and testing environments
Job requirements

We hire result-orientated, smart, and high-energy individuals who bring a can-do attitude and a willingness to go the extra mile and deliver exceptional outcomes. You should be organised and rigorous, with excellent analytical skills. Good communication with internal stakeholders is vital, as is the ability to work as part of a dynamic team.

  • Minimum 1 year in a Security Operations Centre (SOC), or
  • Minimum 3 years in infrastructure or networking roles with demonstrable security exposure.
  • Experience triaging and investigating security alerts.
  • Understanding of attacker behaviours, TTPs, and common malware execution chains (e.g., phishing leading to script or binary execution).
  • Ability to recognise indicators of compromise such as unusual processes, network connections, irregular logon activity or file changes.
  • Hands-on experience with at least one major security platform (SIEM, EDR or XDR).
  • Familiarity with ticketing tools such as Service Now, Salesforce, or JIRA.
  • Familiarity with Windows event logs, authentication logs, basic process trees, and command-line tools (Windows & Unix-like systems).
  • Understanding of core network protocols: DNS, HTTP, SMB, LDAP.
  • Operational knowledge of Windows, macOS and Linux.
  • Ability to read and interpret logs from multiple sources.
  • Awareness of MITRE ATT&CK and differentiating legitimate admin activity vs suspicious behaviour.
  • Desirable skills – Experience with Microsoft Sentinel, Google Sec Ops or other SIEM platforms.
  • Experience with Defender, Crowd Strike, Sentinel One or other XDR solutions.
  • Ability to query in KQL, CQL, S1QL, XQL or similar languages.
  • Awareness of threat intelligence concepts and application to investigations.
  • Awareness of coding or scripting, with proficiency in at least one language preferred (but not required).
  • Job Specifics

    Location:

    This role is home-based with occasional visits to the office in Basingstoke
  • Hours:

    12-hour shifts: 2 days, 2 nights; 4 days/nights off. Flexibility with hours will be required in the event…
Position Requirements
10+ Years work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary