Shape the Future of AIJoin one of the UK's fastest-growing companies and become a Professional Development Expert in Artificial Intelligence.

View Roles

SIEM Principal Engineer

NCC Group
1 year ago
Applications closed

Related Jobs

View all jobs

Cyber Security Engineer, Crowdstrike, SIEM - Hybrid, London 75k

Cyber Security Engineer, Crowdstrike, SIEM - Hybrid, London 85k

The Opportunity

A successful candidate will be responsible for the day-to-day support and operations of several SIEM solutions within our Leeds based SOC. Roles and responsibilities for this role include, but may not be limited to: 

Maintaining the NCC Group SOCs SIEM platforms 

Onboard and manage SIEM event sources and transition through to live SOC Managed Services. 

Assisting in the development of new SOC infrastructure to assist in SIEM and surrounding SOC requirements. 

Providing guidance and support to SOC personnel regarding SIEM operations, concepts, and development. 

Collaborating with our Analytics Development capability to create and deploy new detection mechanisms (both traditional analytics and machine learning techniques). 

Providing SIEM expertise to support Security Analysts during incidents and investigations. 

Collaborating with other teams to help develop and drive improvements/progression. 

A successful candidate would be able to provide security advice to customers to help them develop their security awareness and infrastructure. Working for a Security Partner requires a surrounding knowledge and experience of security awareness, incidents response, and management. 

The Challenge

As a Principal SIEM Engineer, you will be a subject matter expert in SIEM technologies, responsible for designing, implementing, and optimizing SIEM solutions. Your role involves advanced technical contributions and providing guidance to other engineers. Key behaviours and responsibilities include: 

Technical Leadership: Serve as the go-to expert for SIEM architecture, design, and implementation, offering guidance to the engineering team. 

Implementation: Deploy and configure SIEM tools, integrating data sources and creating correlation rules to identify and respond to security incidents. 

Optimization: Continuously refine SIEM configurations, rules, and alerts to enhance threat detection accuracy and reduce false positives. 

Research: Stay informed about emerging threats and vulnerabilities, applying that knowledge to improve the organization's security posture. 

Collaboration: Collaborate with other security and IT teams to ensure seamless integration of SIEM solutions within the broader technology ecosystem. 

Training: Provide training and knowledge sharing sessions to enhance the skills of SIEM engineers and analysts. 

Documentation: Create detailed technical documentation for SIEM solutions, including architecture diagrams and operational procedures. 

Essential Skills

At NCC Group we are passionate about passionate people; someone who wants to join in our mission of making the world safer and more secure, whilst learning new skills and advancing their career forward.

In terms of technical and behavioral capabilities, we are looking for individuals who have experience in the following areas:

Minimum Requirements 

Splunk Enterprise Certified Administrator 

Desirable Requirements 

Splunk Cloud Certified Administrator 

Splunk Cloud Certified Architect

CompTIA Certifications (Security+/ Network+/ Linux+) 

Crest, GIAC or CISSP Certification 

Degree in related field. 

Other relevant certifications. 

Behaviors

Detail-Oriented: Pay close attention to details when configuring and monitoring SIEM tools to ensure accurate threat detection and incident response. 

Proactive: Demonstrate a proactive approach to monitoring and responding to security events, taking the initiative to investigate and escalate as needed. 

Learning Mindset: Exhibit a strong desire to learn and stay current with SIEM technologies, cybersecurity trends, and emerging threats. 

Collaboration: Work well within a team environment, communicating effectively with colleagues from different departments and sharing insights to improve security posture. 

Critical Thinking: Apply logical and analytical thinking to assess security incidents, troubleshoot issues, and make informed decisions. 

Adaptability: Embrace changes in technology and processes, adapting to new challenges and learning quickly in a dynamic security landscape. 

Professionalism: Conduct oneself with professionalism, integrity, and ethical behaviour in all interactions and situation 

Please do not hesitate to apply.

About NCC Group

The NCC Group family has over 2,000 members located all around the world, providing a trusted advisory service to 15,000 customers. Born in the UK, we have now have offices in North America, Canada, Europe, Asia- Pacific and United Arab Emirates.

We are passionate about helping our customers to protect their brand, value and reputation against the ever-evolving threat landscape. We fuel that passion with investment in our people and our business.

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

10 AI Recruitment Agencies in the UK You Should Know (2025 Job‑Seeker Guide)

Generative‑AI hype has translated into real hiring: Lightcast recorded +57 % year‑on‑year growth in UK adverts mentioning “machine learning”, “LLM” or “gen‑AI” during Q1 2025. Yet supply still lags. Roughly 18,000 core AI professionals work in the UK, but monthly live vacancies hover around 1,400–1,600. That mismatch makes specialist recruiters invaluable—opening stealth vacancies, advising on salary bands and fast‑tracking interview loops. But many tech agencies sprinkle “AI” on their website without an active desk. To save you time, we vetted 50 + consultancies and kept only those with: A registered UK head office (verified via Companies House). A named AI/Machine‑Learning or Data practice.

AI Jobs Skills Radar 2026: Emerging Frameworks, Languages & Tools to Learn Now

As the UK’s AI sector accelerates towards a £1 trillion tech economy, the job landscape is rapidly evolving. Whether you’re an aspiring AI engineer, a machine learning specialist, or a data-driven software developer, staying ahead of the curve means more than just brushing up on Python. You’ll need to master a new generation of frameworks, languages, and tools shaping the future of artificial intelligence. Welcome to the AI Jobs Skills Radar 2026—your definitive guide to the emerging AI tech stack that employers will be looking for in the next 12–24 months. Updated annually for accuracy and relevance, this guide breaks down the top tools, frameworks, platforms, and programming languages powering the UK’s most in-demand AI careers.

How to Find Hidden AI Jobs in the UK Using Professional Bodies like BCS, IET & the Turing Society

Stop Scrolling Job Boards and Start Tapping the Real AI Market Every week a new headline announces millions of pounds flowing into artificial-intelligence research, defence initiatives, or health-tech pilots. Read the news and you could be forgiven for thinking that AI vacancies must be everywhere—just grab your laptop, open LinkedIn, and pick a role. Yet anyone who has hunted seriously for an AI job in the United Kingdom knows the truth is messier. A large percentage of worthwhile AI positions—especially specialist or senior posts—never appear on public boards. They emerge inside university–industry consortia, defence labs, NHS data-science teams, climate-tech start-ups, and venture studios. Most are filled through referral or conversation long before a recruiter drafts a formal advert. If you wait for a vacancy link, you are already at the back of the queue. The surest way to beat that dynamic is to embed yourself in the professional bodies and grassroots communities where the work is conceived. The UK has a dense network of such organisations: the Chartered Institute for IT (BCS); the Institution of Engineering and Technology (IET) with its Artificial Intelligence Technical Network; the Alan Turing Institute and its student-driven Turing Society; the Royal Statistical Society (RSS); the Institution of Mechanical Engineers (IMechE) and its Mechatronics, Informatics & Control Group; public-funding engines like UK Research and Innovation (UKRI); and an ecosystem of Slack channels and Meetup groups that trade genuine, timely intel. This article is a practical, step-by-step guide to using those networks. You will learn: Why professional bodies matter more than algorithmic job boards Exactly which special-interest groups (SIGs) and technical networks to join How to turn CPD events into informal interviews How to monitor grant databases so you hear about posts months before they exist Concrete scripts, portfolio tactics, and outreach rhythms that convert visibility into offers Follow the playbook and you move from passive applicant to insider—the colleague who hears about a role before it is written down.