Rodeo
Get started

Anson McCade

Senior SOC Engineer

Glasgow
£60k/yr
Posted about 20 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Senior SOC Engineer

£60,000 GBP
Onsite WORKING
Location: Glasgow, Scotland - United Kingdom
Type: Permanent

Senior SOC Engineer

A leading organisation is seeking a Senior SOC Engineer to strengthen its security operations capability and drive continuous improvement across detection, response, and automation. This pivotal role requires deep expertise in IBM QRadar, with a strong focus on playbook development, analytical rule creation, and threat modelling. The Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats.

Key Responsibilities

SIEM Engineering & Management

  • Deploy, configure, and maintain the QRadar SIEM platform.
  • Onboard and normalise log sources across on-premises and cloud environments.
  • Develop and optimise analytical rules for threat detection, anomaly detection, and behavioural analysis.

Playbook Development & Automation

  • Design and implement incident response playbooks for scenarios such as phishing, lateral movement, and data exfiltration.
  • Integrate playbooks with SOAR platforms (e.g., Microsoft Logic Apps, XSOAR) to streamline triage and automate response.
  • Refine playbooks based on threat intelligence and incident insights.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Threat Detection & Response

  • Monitor and analyse security alerts and events to identify potential threats.
  • Conduct investigations and coordinate incident response activities.
  • Collaborate with threat intelligence teams to enhance detection logic.

Threat Modelling & Use Case Development

  • Lead threat modelling exercises using frameworks such as MITRE ATT&CK, STRIDE, and Cyber Kill Chain.
  • Translate threat models into actionable detection use cases and SIEM rules.
  • Prioritise detection engineering based on business risk and impact.

Reporting & Collaboration

  • Produce reports and dashboards to communicate security posture and incident trends.
  • Partner with IT, DevOps, and compliance teams to enforce secure configurations.
  • Provide mentorship to junior analysts and engineers.
  • Maintain documentation of security procedures, incident response plans, runbooks, and playbooks.
  • Contribute to monthly reporting packs in line with contractual obligations.

Additional Contributions

  • Support pre-sales teams with technical requirements for new opportunities.
  • Demonstrate SOC tools and capabilities to clients.
  • Participate in continual service improvement initiatives, recommending changes to address recurring incidents.

Skills & Qualifications

  • Eligible for, or already holding, SC Clearance.
  • Proven expertise in IBM QRadar and SIEM engineering.
  • Strong knowledge of log formats, parsing, and normalisation.
  • Proficiency in SIEM query languages such as KQL, SPL, AQL.
  • Scripting experience with Python or PowerShell for automation.
  • Deep understanding of threat detection, incident response, and the cyber kill chain.
  • Familiarity with frameworks including MITRE ATT&CK, NIST, and CIS.
  • Strong communication, analytical, and presentation skills.
  • Solid understanding of network traffic flows, vulnerability management, and penetration testing principles.
  • Knowledge of ITIL processes (Incident, Problem, Change Management).
  • Ability to work independently and thrive in a 24/7 on-call environment.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Education & Experience

  • 3-5 years' experience in the IT security industry, ideally in a SOC/NOC environment.
  • Cybersecurity certifications preferred (e.g., ISC2 CISSP, GIAC, SC-200, IBM QRadar Certified Specialist, Splunk Certified Admin/Power User, Google Chronicle Security Engineer).
  • Hands-on experience with ServiceNow Security Suite.
  • Familiarity with cloud platforms (AWS and/or Microsoft Azure).
  • Proficiency in Microsoft Office products, particularly Excel and Word.

Reference: AMC/RHU/SOC

#ryhu LNKD1_UKTJ

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

IBM QRadar
SIEM Engineering
Playbook Development
Threat Modelling
Incident Response
SOAR
MITRE ATT&CK
Python
PowerShell
KQL
SPL
AQL
Log Normalisation
Network Traffic Analysis
Vulnerability Management
ServiceNow Security Suite

Location

Glasgow, Scotland, United Kingdom

Sign up to applySee more jobs like this