Haystack
← Back to Jobs
full time
Engineering
83

SOC Engineer

83zero LtdBermuda Park, Nuneaton🇬🇧United KingdomPosted 28 Sept 2026

Quick Overview

Salary
£80k - £100k/yr
Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Bermuda Park, Nuneaton, United Kingdom
Posted
3 days ago

Job Description

Salary: £80,000 - £100,000 Location: Coventry (Hybrid) We're looking for a Senior SOC L3 Detection Engineer to strengthen an enterprise security operation, with a strong focus on detection engineering, SIEM and threat detection.

What you'll be doing Design, build and optimise advanced SIEM detection rules and correlation logic<br />Translate threat intelligence, TTPs and IOCs into effective detections<br />Tune alerts and significantly reduce false positives<br />Onboard, parse and normalise security logs across enterprise environments<br />Support complex incident investigations and threat hunting<br />Develop SOAR playbooks, automation and security integrations<br />Improve detection coverage, SOC efficiency and security monitoring capabilities<br />Work across SIEM, EDR/XDR, IAM, cloud and wider security tooling<br />Help develop emerging AI/agentic security use cases What we're looking for Strong hands-on Detection Engineering / SIEM Engineering experience<br />Proven experience writing and tuning detection logic<br />Strong understanding of MITRE ATT&amp;CK, attacker TTPs and the cyber kill chain<br />Experience reducing false positives and improving alert fidelity<br />Excellent critical thinking and problem-solving skills<br />Experience with Microsoft Sentinel, CrowdStrike NG SIEM or similar<br />Knowledge of SOAR, automation, log pipelines and API integrations<br />Strong communication skills and the ability to explain complex security concepts clearlyAI experience is beneficial but not essential - strong detection engineering is the priority.

Experience within automotive or manufacturing is advantageous but not required. If you're a hands-on L3 security engineer who enjoys building better detections rather than simply responding to alerts, we'd like to hear from you

Similar jobs