×
Register Here to Apply for Jobs or Post Jobs. X

Senior SOC Engineer

Remote / Online - Candidates ideally in
Cardiff, Cardiff City Area, CF10, Wales, UK
Listing for: Fazer Recruitment
Full Time, Remote/Work from Home position
Listed on 2026-08-30
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 70000 GBP Yearly GBP 70000.00 YEAR
Job Description & How to Apply Below

Senior SOC Engineer
- Remote

Location: Home-based - two days a month in the office (SE location) all travel paid

Salary: Up to £70,000 Type: Permanent, full time Hours: Monday to Friday, 9:00am - 5:30pm - no shifts, no on-call

This is a genuinely home-based role. Two days a month on site in Basingstoke, with travel and expenses covered in full.

The role

This is a build role, not a monitoring one.

You'll be the engineer behind the SOC - designing and running the Microsoft security platform the analysts depend on. If you've spent time in a SOC wishing you could fix the tooling rather than work around it, this is that job.

You'll join an established Security Operations team as new headcount, reporting to the Lead SOC Engineer. This is a managed security service provider, so you'll see a far wider range of customer environments and problems than any single in-house SOC would give you - and you'll lead the engineering side of onboarding new customers onto the platform.

What you'll be doing
  • Designing and maintaining the SIEM and XDR platform - data ingestion, log parsing and normalisation, retention, performance
  • Writing and tuning detections in KQL, and building automation to cut manual analyst effort
  • Scripting custom connectors and integrations across the security toolset
  • Leading the technical onboarding of new customers alongside SOC Operations
  • Acting as senior escalation for complex engineering issues
  • Supporting and mentoring engineers and analysts across the team
What we're looking for
  • Around 3-5 years in a Security Operations Centre in an engineering or platform capacity
  • Strong Microsoft Sentinel experience, with confident KQL
  • Hands‑on with Microsoft Defender and the wider Microsoft security stack
    - Intune, Entra , Defender for Endpoint
  • Exposure to endpoint tooling such as Crowd Strike, Carbon Black or Darktrace
  • Scripting in Python or Power Shell for automation and log analysis
  • Some vulnerability management experience
    - Tenable, Rapid7, Qualys or similar
  • Automation and orchestration exposure
    - Logic Apps, Cortex XSOAR or similar - is welcome but not essential
  • Eligible for UK SC or DV security clearance - essential

Experience at an MSSP, MDR provider or security reseller is a real advantage, though we're equally happy to hear from strong in‑house SOC engineers. You don't need every tool on this list. Strong Sentinel and KQL with a willingness to develop the rest is enough.

What's on offer
  • Up to £65,000 depending on experience
  • Fully home-based, with two paid trips a month to Basingstoke
  • Genuine 9-to-5 - no shift rota, no on‑call
  • New headcount in a growing team
  • Access to lab environments, cyber ranges and hands‑on training labs
  • Certification and training support with a clear technical progression path
  • Exposure to enterprise security estates across multiple industries
#J-18808-Ljbffr
Position Requirements
10+ Years work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary