{"id":1148764,"url":"https://alion.io/job/phoenix-software-soc-deployment-engineer","title":"SOC Deployment Engineer","company":{"id":2760,"name":"Phoenix Software","domain":"phoenixs.co.uk","url":"https://alion.io/company/phoenix-software","size_band":null,"is_staffing_agency":false,"is_intermediary":false,"ats_vendor":"Workable","truth_index":{"grade":"A","score":95,"open_postings":6,"ghost_share":0,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":62,"computed_at":"2026-09-23T05:45:00Z"}},"role":"Hardware","role_family":"Hardware","seniority":null,"employment_type":"full_time","work_mode":"remote","remote_scope":"stated_countries","hiring_geo_confidence":"structured","locations":[],"countries":[],"hiring_countries":["GB"],"hiring_countries_total":1,"salary":null,"salary_estimate":{"min_usd":54000,"max_usd":142000,"period":"year","method":"role_country_seniority_unknown","sample_n":62},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"DNS","optional":false},{"name":"Microsoft Sentinel","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"VMWare","optional":false}],"status":"live","first_seen_at":"2026-09-23T16:43:47Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-24T00:18:57Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"Phoenix enables digital transformation across the UK public sector, empowering organisations to innovate with cloud and hybrid infrastructures, data, AI, security and collaboration technologies.\nWe are now hiring a SOC Deployment Engineer to join our Security Operations Centre (SOC) and support the delivery of our managed security services. This role will focus on the deployment, configuration and optimisation of security tooling, helping ensure customer environments are onboarded effectively and monitored securely.\nWorking closely with SOC Analysts, Engineers and customers, you will support the implementation of SIEM and SOAR technologies, maintain SOC infrastructure and contribute to the ongoing improvement of our security operations capabilities.\nWhat will you be doing?\nDesign, deploy and support SIEM solutions to meet customer security requirements.\nWork with customers and internal stakeholders to gather requirements and support onboarding activities.\nConfigure and fine-tune SIEM platforms to optimise performance, visibility and detection capability.\nSupport the development and deployment of SOAR playbooks to streamline incident response processes.\nMaintain the availability and performance of SOC infrastructure, including servers, networks and security appliances.\nConfigure and optimise log ingestion pipelines and security tool integrations.\nManage SOC ticket queues and ensure service-level agreements are achieved.\nEnsure incidents are accurately logged, tracked and documented.\nSupport the ongoing development and improvement of managed security services.\nCollaborate with analysts, engineers and service teams to improve operational effectiveness.\nContribute to security tooling enhancements, process improvements and operational standards.\nWhat are we looking for?\nExperience designing, deploying and supporting SIEM solutions, ideally Microsoft Sentinel.\nExperience working with Microsoft Azure environments.\nGood understanding of SOC operations and managed security services.\nKnowledge of security technologies, threat detection and security monitoring.\nStrong understanding of networking and communication protocols including HTTP, DNS and TCP/UDP.\nUnderstanding of malware techniques, persistence mechanisms and threat actor behaviours.\nExperience with scripting or automation languages such as PowerShell, Python, Bash or similar.\nExperience working with virtualisation technologies such as VMware.\nUnderstanding of cloud environments including Azure and AWS.\nKnowledge of security domains such as identity and access management, web security, intrusion detection and cloud security.\nStrong troubleshooting, analytical and problem-solving skills.\nExcellent communication and stakeholder engagement skills.\nExperience & Qualifications\nExperience working within a SOC, cyber security or security engineering environment.\nExperience deploying and supporting SIEM technologies.\nExperience supporting enterprise security tooling and infrastructure.\nExperience working with security automation technologies beneficial.\nRelevant Microsoft, cyber security or infrastructure certifications desirable.\nPractical stuff\nWhere is the role based?\nThis role can be fully remote within the UK, with quarterly visits to our HQ in Pocklington (YO42).\nHow many interviews?\nFollowing a screen with the Recruitment Team, you can expect a two-stage interview process.\nImportantSecurity Clearance\nDue to the nature of our customer base and managed security services, SC clearance is required for this role. Candidates must either already hold active SC clearance or be eligible and willing to obtain and maintain it.\nTo obtain SC clearance, candidates will normally need to have lived continuously in the UK for at least five years and satisfy the relevant security vetting requirements.\nImportantBPSS Check\nAs part of our recruitment process and due to the nature of the work we do, all employees are required to undertake a BPSS check. While some employees may require further security clearance, the BPSS check is mandatory and all offers of employment are conditional upon successful completion.\nHave you made it this far?\nIf you're still reading, we think there's a strong chance you might be our kind of person.\nHere's the thing, research suggests many women and underrepresented groups don't apply unless they meet every requirement. Even if you don't tick every box above, we encourage you to introduce yourself.\nWe believe a diversity of perspectives and experiences makes a team stronger, and the stronger our team, the more successful we will be.","description_format":"text","description_chars":4570,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[{"name":"United Kingdom","iso":"GB","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Incident Response","Information Technology","Software","Cloud Computing"],"lifecycle":[{"event":"open","at":"2026-09-23T16:43:47Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":0,"expected_fill_days":62,"reasons":["conf:0","win:early"],"computed_at":"2026-09-24T01:13:00Z"},"pay":null,"html_url":"https://alion.io/job/phoenix-software-soc-deployment-engineer","json_url":"https://alion.io/job/phoenix-software-soc-deployment-engineer.json","meta":{"generated_at":"2026-09-24T01:13:00Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}