Contact Hays Technology
Hays Technology
SC Cleared Splunk SIEM Engineer
Knutsford, Cheshire
Contact Hays Technology
- Hours
- Full Time
- Posted
- 12 hours ago
- Salary
- £500 - 638 - Day
- Recruiter
- Hays Technology
- Closes
- 02 Oct 2026
- Course
- No
- Recruiter Type
- Direct Employer
Description
We are working with a client who is a global leader in consulting, technology services, and digital transformation, committed to delivering positive change through technology and human collaboration. They are looking for a Splunk SIEM Engineer with active SC Clearance in place to design, develop and improve software, utilising various engineering methodologies, that provides business, platform, and technology capabilities for our customers and colleagues.
You will need to demonstrate your Multi-Platform SIEM Expertise: you need proven experience with Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience with log ingestion, data routing, and transformation using tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. SOAR & Automation: Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. Network Security Fundamentals: Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. Communication & Documentation: Excellent technical writing and communication skills to create runbooks, procedures, and translate complex security concepts for diverse audiences.
In order to apply, you must have active SC Level Clearance in place. You must be able to evidence skills in Splunk Enterprise Admin and development. You will be proficient in Splunk Enterprise Security (SIEM) - administering, managing, and maintaining SIEM. Experienced in developing use cases/correlation searches. You will be proficient in data models. Have hands-on knowledge and understanding of Splunk Cloud. Hands-on experience of Microsoft Sentinel. Hands-on CI/CD tools like Gitlab, Jenkins etc. Proficiency in Cribl Stream is expected.
Awareness/experience of the following is an advantage - Cloud Security & Modern Infrastructure: Proficiency with AWS/Azure cloud security, containerised environments, and SaaS-based security solutions. Programming & Scripting: Advanced skills in Python, PowerShell, KQL, SPL, and SQL for automation, custom integrations, and advanced analytics development. Security Certifications: Professional certifications such as CISSP, GCIH, GCFA, Splunk Certified Architect, or Microsoft Sentinel Ninja. Extended Security Stack: Experience with EDR, UBA, CASB, CSPM, vulnerability assessment tools, and threat intelligence platforms. Infrastructure as Code: Experience with Chef, Ansible, Jenkins, GitLab CI/CD for automated security tool deployment and configuration management. Compliance & Governance: Knowledge of regulatory frameworks (SOX, PCI-DSS, GDPR) and hands-on incident response/forensics experience.
Please be clear that only candidates that meet the above criteria with the right to work and that are resident in the UK with active SC Level Clearance will be considered. No sponsorship is available.
This role will involve hybrid working here in the UK at a site based in Cheshire - expected on site 3 days per week and 2 from home. More flexibility may be offered once in situ in the contract. xjnqpsq
Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Ad ID: 5418745246
Stay Safe
"Only access Gumtree from gumtree.com and do not follow links sent by other users"
"Share photos and ask lots of questions about the items you are buying and selling"
"If an ad or reply sounds too good to be true, it probably is"
"Use the 'Reply to ad' button for your safety and privacy"
"Don't reply to email addresses hidden in text and pictures"
"Beware of fake Gumtree, eBay or escrow sites and invoices"
1 of 6
