Hays

Hays

Knutsford, London

SC Cleared Splunk SIEM Engineer

Full-Time£50,000 - 70,000 per yearاليومUnited Kingdom
IT

Job Description

Salary: £50,000 - 70,000 per year

Requirements:
  • We require candidates with active SC Level Clearance and the right to work in the UK.
  • We require UK-based candidates who can work on a hybrid schedule in Cheshire, with 3 days on site and 2 days from home.
  • We require proven experience with Splunk Enterprise Security, including administration, management, maintenance, data models, correlation searches, and use case development.
  • We require experience with Microsoft Sentinel and SIEM architecture.
  • We require strong security operations experience, including threat detection, incident response, and security event analysis in large enterprise environments.
  • We require hands-on experience with log ingestion, data routing, and transformation, ideally using Cribl Stream.
  • We require understanding of data normalisation and parsing in Splunk Enterprise.
  • We require experience with SOAR platforms, playbook development, and automated response workflows.
  • We require working knowledge of network architectures, firewalls, proxies, and common attack vectors.
  • We require excellent technical writing and communication skills.
  • We require evidence of Splunk Enterprise administration and development skills.
  • We require hands-on knowledge of Splunk Cloud.
  • We require hands-on CI/CD experience with tools such as GitLab and Jenkins.
  • We require proficiency in scripting and query languages such as Python, PowerShell, KQL, SPL, and SQL.
  • We consider cloud security, modern infrastructure, extended security stack tools, infrastructure as code, compliance knowledge, and security certifications as advantageous.
Responsibilities:
  • We design, develop, and improve software using engineering methodologies that support business, platform, and technology capabilities.
  • We administer, manage, and maintain our SIEM environment.
  • We develop use cases and correlation searches in Splunk.
  • We analyse security events to support threat detection and incident response.
  • We manage log ingestion, data routing, and transformation pipelines.
  • We support automation through SOAR playbooks and response workflows.
  • We create runbooks, procedures, and technical documentation.
  • We translate complex security concepts for a range of audiences.
  • We work with cloud, containerised, and SaaS-based security environments where required.
Technologies:
  • CI/CD
  • Cloud
  • GitLab
  • Support
  • Jenkins
  • Network
  • PowerShell
  • Python
  • SQL
  • Security
  • Splunk
  • AWS
  • Ansible
  • Architect
  • Azure
  • DevOps
  • Incident Management

More:

We are a global leader in consulting, technology services, and digital transformation, committed to delivering positive change through technology and human collaboration. This role is based in Cheshire, UK, with hybrid working expected at 3 days on site and 2 days from home, with potential for more flexibility once established in the contract. We will only consider candidates who are resident in the UK, have the right to work, and hold active SC Level Clearance. No sponsorship is available.

last updated 32 week of 2026

Interested in this role?

Submit your application now

How to Apply

Ready to apply for this position? Here's what you need:

  • An updated resume highlighting relevant experience
  • A compelling cover letter (if required)
  • Portfolio or work samples (for relevant positions)

About Hays

Hays

Hays

Knutsford

IT

Skills & Technologies

PythonAWSAzureGitCI/CDJenkinsAIDevOpsUI

Inferred from job description

Salary Insight

£60,000

This role

£60,000

UK median

This salary is 0% above the UK median for Software Engineers60,000/yr).

Based on 2024–2025 UK technology sector benchmarks

Explore More UK Opportunities

Thousands of tech jobs across the United Kingdom