Senior SOC Engineer
Confidential
Posted: March 13, 2026
Interested in this position?
Create a free account to apply with AI-powered matching
Quick Summary
We are seeking a highly skilled Senior SOC Engineer to join our team in Basingstoke, Hampshire, UK. This role is responsible for designing and implementing secure and connected digital infrastructure. The ideal candidate will have expertise in security operations and a passion for innovation.
Required Skills
Job Description
Nomios' mission is to build a ‘secure and connected’ future. Organisations across Europe depend on us to help secure and connect their digital infrastructures.
In support of our continued UK growth, we are seeking a Senior SOC Engineer to join our Security Operations team. This role presents a great opportunity to shape the direction of a modern, technology focused SOC that values engineering excellence, deep technical capability and a culture of innovation. You will work with a broad and diverse customer base that relies on Nomios to deliver meaningful and effective security outcomes.
Your role as Senior SOC Engineer
As a Senior SOC Engineer at Nomios, you'll lead the design, deployment, and ongoing improvement of the technologies that underpin our SOC, including SIEM, XDR, SOAR, scripting, and automation. From building custom log parsers and response workflows to developing platform architecture, you’ll drive meaningful enhancements to our detection and response capabilities.
You’ll play a central role in security orchestration and automation, helping reduce time to detect and respond by refining playbooks and building intelligent workflows. You’ll also lead customer onboarding in collaboration with SOC Operations, ensuring secure, efficient deployments aligned with our model. Working directly with SIEM/XDR platforms and custom tooling, you’ll have access to dedicated SOC infrastructure: lab environments for malware analysis, detection testing, threat intel development, and proof of concepts.
You’ll be part of a high-performing team that values hands-on expertise, technical leadership, and continuous growth. Our SOC culture is built by engineers who’ve progressed through roles in security operations, threat intelligence, and engineering. You’ll benefit from cyber ranges, training labs, and the freedom to shape your development path.
As part of a leading MSSP, you'll gain exposure to a wide range of industries, from government and defence to healthcare, telecoms, legal, and manufacturing, broadening your knowledge of real-world security practices. Whether you’re a seasoned Senior Engineer or ready to step up, this role offers ownership, impact, and the chance to help shape the mission.
Key Responsibilities
Build
• Mentor and guide SOC engineers and analysts, supporting their technical development and helping them grow within a high-performance team.
• Design, develop and maintain automation across key SOC workflows, improving efficiency, response speed and consistency.
• Create and manage log parsing and data normalisation across a variety of internal and external sources, ensuring high quality telemetry across the estate
• Architect and implement SIEM and XDR environments tailored to both internal use and customer-facing deployments.
• Deploy, manage and continually enhance core SOC technologies, including SIEM, XDR, SOAR, vulnerability management and custom automation scripts, all supported by our dedicated in-house infrastructure and lab environments.
Investigate
• Act as a senior escalation point during complex engineering incidents across both internal systems and managed customer environments.
• Work with the wider engineering team to document, maintain and improve internal wikis and deployment guides, ensuring consistent and high quality engineering delivery across the team.
Improve
• Reporting to the Lead SOC Engineer, collaborate with the Head of Security Operations, on the ongoing development and execution of the SOC’s engineering maturity roadmap.
• Continuously assess and deliver automation and process improvements, both internally and across customer environments, to enhance detection, response and operational efficiency.
• Apply lessons learned from incidents, threat intelligence and emerging attack techniques to refine and improve engineering output, ensuring the SOC remains agile, proactive and threat-driven.