Cyber Operations Security Engineer

Company: Softcat
Apply for the Cyber Operations Security Engineer
Location: Manchester
Job Description:

Overview

As Security Engineer in Softcat’s Cyber Operations, you help deliver monitoring, detection and remediation services for customers. You’ll work with the Engineering team to apply best practices, evolve platforms, and maintain high standards across the function. You’ll onboard customers to SIEM/Sentinel, configure data connectors, and craft dashboards and automation to improve security outcomes. This role combines hands-on SIEM work with cross-functional collaboration in a supportive, values-driven environment. You’ll join a team that values customer focus, autonomy and inclusion, contributing to meaningful cyber security work.

Pay / Benefits

  • Hybrid working (office + home)
  • Flexible hours
  • Autonomy and supportive team
  • Diversity and inclusion commitments
  • Flexibility around school pick up/drop offs

Responsibilities

  • Onboard customers to SIEM/Sentinel and configure data connectors, KQL, automation, dashboards and reporting
  • Tune, enrich and optimise Sentinel across the environment and align with other SIEM tools
  • Maintain SIEM ingestion pipeline reliability by investigating issues across connectors, parsing, and transformation logic, ensuring data fidelity
  • Collaborate with customers and internal stakeholders to identify development opportunities and improve cyber practices
  • Apply security tools, automation and best practices to platforms and services to improve effectiveness and timeliness

Key requirements

  • Knowledge of incident response frameworks (e.g., NIST CSF, SOC2)
  • Knowledge of information security architecture and logging policies (secure transport, retention, privacy by design)
  • Strong written and oral communication; ability to translate technical info for non-technical audiences
  • Customer-focused and proactive in resolving technical issues
  • Experience in a Managed Service Provider (MSP) or MSSP environment preferred
  • Experience with other SIEM platforms and related security management tools (desirable)
  • Strong communication skills
  • Customer focus
  • Proactive problem-solving
  • Microsoft Sentinel
  • KQL
  • Data connectors and automation

…

Posted: September 16th, 2026