Bootstrap

NTT DATA

SOC Solutions Engineer - QRadar

๐Ÿ“ŒLondon Area, United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

โฑ๏ธŽ full-time

๐Ÿง™โ€โ™‚๏ธ mid-level

hybrid

SOC Solutions Engineer



We are currently recruiting for a SOC Solutions Engineer with QRadar experience to join our growing Security Operations Centre business

.

This is a hybrid variable position that can be based in our Birmingham or London office

s

About Us

:NTT Data is a leading Managed Service Provider (MSP) with a global reach empowering local team, undertaking hugely exciting work and is genuinely changing the world

.We specialise in delivering cutting-edge IT and cybersecurity solutions to our diverse client base. We provide expert-managed services to help clients protect their data, comply with regulations, and manage evolving cyber threats. We are looking for a skilled Information Security Manager to join our team and be billed out to a key client to enhance their information security posture

.

What you will be doing

;

  • The primary function of the Senior SOC Engineer is to enhance our security operations capabilities. This role requires deep expertise in SIEM platforms including Splunk, IBM QRadar, Microsoft Defender, Microsoft Sentinel, and Google Chronicle, with a strong focus on playbook development, analytical rule creation, and threat modelling. You will be instrumental in building and optimizing our detection and response strategies
  • .SIEM Engineering & Managemen
  • tDeploy, configure, and maintain SIEM platforms (Splunk, QRadar, Sentinel, Defender, Chronicle)
  • .Onboard and normalize log sources across cloud and on-prem environments
  • .Develop and optimize analytical rules for threat detection, anomaly detection, and behavioural analysis
  • .Playbook Development & Automatio
  • nDesign and implement incident response playbooks for various threat scenarios (e.g., phishing, lateral movement, data exfiltration)
  • .Integrate playbooks with SOAR platforms (e.g., Microsoft Logic Apps, XSOAR) to automate triage and response
  • .Continuously refine playbooks based on threat intelligence and incident feedback
  • .Threat Detection & Respons
  • eMonitor and analyse security alerts and events to identify potential threats
  • .Perform in-depth investigations and coordinate incident response activities
  • .Collaborate with threat intelligence teams to enrich detection logic
  • .Threat Modelling & Use Case Developmen
  • tConduct threat modelling exercises using frameworks like MITRE ATT&CK, STRIDE, or Kill Chain
  • .Translate threat models into actionable detection use cases and SIEM rules
  • .Prioritize detection engineering efforts based on risk and business impact
  • .Reporting & Collaboratio
  • nGenerate reports and dashboards for stakeholders on security posture and incident trends
  • .Work closely with IT, DevOps, and compliance teams to ensure secure system configurations
  • .Provide mentorship and guidance to junior analysts and engineers
  • .Maintain accurate and up-to-date documentation of security procedures, incident response plans, and analysis reports
  • .Support the creation of monthly reporting packs as per contractual requirements
  • .Create and document robust event and incident management processes, Runbooks & Playbook
  • sOther responsibilities
  • :Involvement in scoping and standing up new solutions for new opportunitie
  • sAssisting Pre-Sales team with requirements on new opportunitie
  • sDemonstrations of SOC tools to client
  • sContinual Service Improvement - Recommendations for change to address incidents or persistent events


.
What you will brin

g

  • ; Must be able to obtain SC Clearance or already hold SC clearanc
  • e.Hands-on experience of IBM QRada
  • r.Technical Skill
  • s:Strong knowledge of log formats, parsing, and normalizatio
  • n.Experience with KQL, SPL, AQL, or other SIEM query language
  • s.Familiarity with scripting (Python, PowerShell) for automation and enrichmen
  • t.Security Knowledg
  • e:Deep understanding of threat detection, incident response, and cyber kill chai
  • n.Familiarity with MITRE ATT&CK, NIST, and CIS framework
  • s.Strong verbal and written English communicatio
  • n.Strong interpersonal and presentation skill
  • s.Strong analytical skil
  • lsMust have good understanding on network traffic flows and able to understand normal and suspicious activitie
  • s.Must have good understanding of Vulnerability Scanning and management as well as Ethical Hacking (Penetration Testin
  • g)Knowledge of ITIL disciplines such as Incident, Problem and Change Managemen
  • t.Ability to work with minimal levels of supervisio
  • n.Willingness to work in a job that involves 24/7 on cal

l.Education Requirements & Experien

  • ceMinimum of 3 to 5 years of experience in the IT security industry, preferably working in a SOC/NOC environmen
  • t.Preferably holds Cyber Security Certification e.g. ISC2 CISSP, GIAC, SC-200, Splunk Certified Admin/Power User, IBM QRadar Certified Specialist, Google Chronicle Security Engineer e
  • tcExperience with Service Now Security sui
  • teExperience with Cloud platforms (AWS and/or Microsoft Azur
  • e)Excellent knowledge of Microsoft Office products, especially Excel and Wo

rdReports

  • toSecurity Director โ€“ NTT DATA UK Security Practi
  • ceClient Delivery Director โ€“ NTT DATA UK Managed Servic
  • esWeโ€™re a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting project
  • s.Our inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks; Creating Inclusion Together at NTT DATA UK | NTT DA
  • TAWe offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work option
  • s.You can find more information about NTT DATA UK & Ireland here: https://uk.nttdata.co
  • m/We are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a proud Disability Confident Committed Employer - we are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered tea


m.
Other similar jobs

GPU SW Engineer

@ Huawei Technologies Research & Development (UK) Ltd, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Alternance - Ingรฉnieure/Ingรฉnieur "Edge Computing"

@ EDF, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

SOC Engineer

@ Hitachi Digital, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Embedded Cyber Security Engineer

@ AeroVironment, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Embedded Controls Engineer

@ Actalent, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Embedded Systems Engineer

@ Allied OneSource, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Embedded RTOS Lead Engineer

@ Carrier, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Embedded RTOS Engineer

@ Carrier, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Embedded Engr I

@ Honeywell, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Technical Lead Engineer, Embedded Systems

@ Lam Research, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

  • Employment

    โฑ๏ธŽ full-time

  • Experience

    ๐Ÿง™โ€โ™‚๏ธ mid-level

  • Working model

    hybrid

  • Skills
  • Industry
  • Find similar jobs

    GPU SW Engineer

    @ Huawei Technologies Research & Development (UK) Ltd, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Alternance - Ingรฉnieure/Ingรฉnieur "Edge Computing"

    @ EDF, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    SOC Engineer

    @ Hitachi Digital, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Embedded Cyber Security Engineer

    @ AeroVironment, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Embedded Controls Engineer

    @ Actalent, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Embedded Systems Engineer

    @ Allied OneSource, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Embedded RTOS Lead Engineer

    @ Carrier, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Embedded RTOS Engineer

    @ Carrier, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Embedded Engr I

    @ Honeywell, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

    Technical Lead Engineer, Embedded Systems

    @ Lam Research, ๐Ÿ“United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง

Remote Work
Post time
Level
Employment
Industry
Apply Now โ†—