Senior Security Operations Engineer ( SOC Engineer L3)
5 days ago
Royal Leamington Spa
Role: Senior Security Operations Engineer (SOC Engineer L3) Work Location: Warrington or Leamington Spa Role Type: Permanent Mode of Working: Hybrid Are You Ready to Utilise Your Experience in Cyber Security? We have an exciting role for you — Senior Security Operations Engineer (SOC Engineer L3) Careers at TCS: It means more TCS is a purpose-led transformation company, built on belief. We do not just help businesses to transform through technology. We support them in making a meaningful difference to the people and communities they serve - our clients include some of the biggest brands in the UK and worldwide. For you, it means more to make an impact that matters, through challenging projects which demand ambitious innovation and thought leadership. • Want to help build a modern AI led Cyber Security Operations Centre?, • Think that any problem is just a pause between ideas?, • Know how to build a modern SOC build on AI and automation? As an experienced Security Engineer, you will be responsible for designing, implementing, and optimizing security monitoring, detection, response, and automation capabilities across large enterprise environments. Drives security engineering initiatives focused on improving SOC effectiveness, reducing analyst effort, and leveraging AI-driven technologies to enhance threat detection, investigation, and response. • Evaluate, onboard, and integrate security logs from cloud, infrastructure, application, and security technologies., • Design and Implement log ingestion pipelines, parsing logic, normalization standards, enrichment processes, and data quality controls., • Develop, tune, and optimize detection rules, correlation searches, alerting content, and threat detection use cases to improve detection fidelity and reduce false positives., • Design and build automated playbooks, automated response workflows, and orchestration capabilities to streamline security operations., • Develop integrations between SIEM, SOAR, EDR/XDR, IAM, vulnerability management, ticketing systems, cloud platforms, and third-party security tools., • Optimizing security tooling infrastructure, ensuring platform availability, scalability, performance, and operational resilience., • Develop dashboards, reporting, and metrics to measure detection coverage, operational efficiency, platform health, and SOC performance., • Support incident response, threat hunting, and security investigations through detection engineering, automation, and continuous service improvement., • Lead AI and machine learning initiatives to improve alert triage, investigation workflows, threat detection, correlation, and response decision-making., • Identify and implement AI-driven use cases that reduce manual SOC activities, accelerate investigations, enhance analyst productivity, and improve overall response effectiveness., • Collaborate with security, infrastructure, cloud, and application teams to deliver scalable and sustainable security monitoring solutions., • Detection Engineering (taking Threat Intel and designing detection logic to detect TTPs and IoCs)., • Detection Fine-Tuning and false positive reduction., • Critical thinking skills and problem solving, • Communication skills (able to convey complex ideas in simple terms to both non-native English speaker and management), • Leadership qualities, able to inspire team mates to delivery to the highest quality, • Experienced with AI agents (both personal use and implementation of agentic workflows in security tools, • Rule Development, • SOAR and general Security Automation, • AI for Security Operations (implement and optimize AI Agents), • API Integrations (learn and develop logic apps), • Security Tool Administration (get the most of the inbuild capabilities), • Design automated performance metric reporting, • Support the development of SOC processes to take advantage of the changing AI agent landscape., • Bachelor’s degree in cyber security, Computer Science, Information Technology, or related field., • 8+ years of SOC, Detection Engineering, or Security Engineering experience., • Experience designing and implementing enterprise-scale SIEM and EDR solutions., • Microsoft SC-200,, • Microsoft SC-100, • AZ-500, • CEH, • Python scripting TCS is consistently voted a Top Employer in the UK and globally. Our competitive salary packages feature pension, health care, life assurance, laptop, phone, access to extensive training resources and discounts within the larger Tata network. We offer health & wellness initiatives and sports events; we are the proud sponsor of the London Marathon. Tata Consultancy Services UK&I is committed to meeting the accessibility needs of all individuals in accordance with the UK Equality Act 2010 and the UK Human Rights Act 1998. We welcome and embrace diversity in race, nationality, ethnicity, disability, neurodiversity, gender identity, age, physical ability, gender reassignment, sexual orientation. We are a disability inclusive employer and encourage disabled people to apply for this role. As a Disability Confident Employer, we offer an interview to applicants with disabilities or long-term conditions who meet the minimum criteria for the role. #J-18808-Ljbffr