Security Engineer (SIEM)
Security Engineer (SIEM) - Public Sector
Location: London (Hybrid)
Rate: Up to £525 per day (Outside IR35)
Contract: 12 months initial
Start: ASAP
Clearance: Active UK SC Clearance required
We are supporting a client delivering a secure cloud platform for critical public sector services. They are seeking an experienced Security Engineer (SIEM) to help develop and enhance security monitoring capabilities across a new Google Distributed Cloud (GDC) environment.
Key Responsibilities- Deploy and support Elastic SIEM across Kubernetes environments
- Integrate cloud, Kubernetes, and application logs into SIEM platforms
- Create and tune detection rules, alerts, dashboards, and visualisations
- Implement detections as code using Git and CI/CD pipelines
- Work with SOC teams to improve threat visibility and response
- Produce runbooks and operational documentation
- Experience as a Security Engineer, Detection Engineer, or SIEM Engineer
- Strong hands-on experience with Elastic Stack/Elastic SIEM
- Experience with Kubernetes environments and logging
- Experience operating SIEM solutions in cloud or hybrid environments
- Strong understanding of detection engineering and SOC operations
- Experience with Git and CI/CD pipelines
- Active UK SC Clearance is essential
- Must be willing and eligible to undergo DV Clearance
Experience within UK Government, Defence, National Security, or other secure and regulated environments would be highly beneficial.