Senior SOC Engineer

REX Cyber Security All jobs
1 day(s) ago
Job Overview
Company REX Cyber Security
Job Type Full-time
Job Level mid-senior
Category Engineering
Posted 2026-08-28
Last Seen 1 day(s) ago

Job Description

Senior SOC Engineer Remote £65000 - £75000 + 20% Bonus We are working exclusively with a leading technology and digital transformation business that is going through a rapid period of growth within its Cyber Services function. As part of this expansion they are looking for a Senior SOC Engineer to join their Security Operations team and play a key role in the continued development of a modern highly technical SOC. This is an excellent opportunity for an experienced SOC Engineer who wants to remain hands-on while taking greater ownership of SOC architecture automation and engineering. You'll work across a broad customer base and have the opportunity to help shape how the SOC evolves as the wider cyber business continues to grow.

The Role

As Senior SOC Engineer you'll take a leading role in the design deployment and ongoing improvement of the technologies underpinning the SOC including SIEM XDR SOAR scripting and automation. You'll work across everything from custom log parsing and automated response workflows through to SIEM/XDR architecture customer onboarding and the development of new detection and response capabilities. You'll also act as a senior technical escalation point within the team supporting other engineers and analysts while working closely with SOC leadership on the ongoing engineering maturity roadmap. The environment offers access to dedicated SOC infrastructure and lab environments covering areas including malware analysis detection testing threat intelligence development and proof of concepts.

Key Responsibilities

Design develop and maintain automation across core SOC workflows to improve response times efficiency and consistency. Architect implement and enhance SIEM and XDR environments across internal and customer-facing deployments. Develop custom SOAR automation integrations playbooks and response workflows. Create and manage log parsing and data normalisation across multiple internal and external data sources. Deploy manage and continually improve SOC technologies including SIEM XDR SOAR and vulnerability management platforms. Lead technical elements of new customer onboarding and security technology deployments. Act as a senior escalation point for complex engineering incidents across internal and managed customer environments. Mentor SOC Engineers and Analysts supporting their technical development. Identify opportunities to automate and improve detection response and wider SOC processes. Use lessons from incidents threat intelligence and emerging attack techniques to continually improve SOC engineering capabilities. Work closely with senior Security Operations leadership on the continued development of the SOC's engineering maturity. Technical Experience We're looking for someone with strong hands-on SOC engineering experience across several of the following areas SOAR Strong experience developing custom automation and integrations. Exposure to platforms such as Cortex XSOAR Logic Apps Siemplify or Jupyter Notebooks would be beneficial. SIEM Strong knowledge of SIEM architecture deployment and design ideally including Microsoft Sentinel Google SecOps or XSIAM. EDR/XDR Experience configuring deploying and maintaining platforms such as CrowdStrike Microsoft Defender Palo Alto Cortex XDR or SentinelOne. Cloud Good understanding of Azure AWS or GCP environments and architecture. Automation & Scripting Experience developing API integrations and automation using a scripting language ideally Python or Go. Vulnerability Management Experience with platforms such as Rapid7 or Tenable. Threat Intelligence Understanding of CTI ingestion methodologies and standards such as STIX/TAXII.

About You

You'll ideally have 3-5+ years' experience within Security Operations including hands-on SOC engineering. Strong experience with SOC automation log source parsing and security tooling. Experience designing or improving SIEM SOAR and XDR environments. The ability to troubleshoot complex security engineering issues. Strong communication skills and the confidence to work with both technical teams and customers. The ability to work independently while contributing to a highly collaborative SOC environment. Eligibility to obtain UK SC or DV security clearance. Why Join? This is a particularly exciting time to join the business. The Cyber Services function is experiencing significant growth creating opportunities for engineers to have a genuine influence over the technology processes and future direction of the SOC. You'll work alongside experienced cyber specialists in a technically focused environment with significant investment in security technology training and professional development. The position also offers exposure to security environments across a wide range of sectors including government defence healthcare telecommunications legal and manufacturing. For someone looking to take the next step in SOC Engineering this offers a combination of hands-on technical work greater ownership career progression and the opportunity to help shape a growing Cyber Services capability.

Unlock: Sign Up for free / Sign In and use the searches from your home page or the links in the footer.