Negotiable
Undetermined
Remote
England, United Kingdom
Summary: The QRadar SME / Consultant role involves supporting and enhancing clients' SIEM environments, specifically focusing on IBM QRadar. The position requires a comprehensive review of the current deployment, improving log source coverage, and strengthening detection capabilities. The consultant will work closely with security operations and engineering teams to ensure the effectiveness and resilience of the solution. This is a contract position with a duration of 3 months, starting in mid to late May 2026.
Key Responsibilities:
- Conduct a comprehensive review of the IBM QRadar SIEM solution, including architecture, configuration, and performance
- Assess and optimize log sources, ensuring correct onboarding, parsing, normalization, and coverage
- Design, develop, and tune detection use cases and correlation rules to improve threat visibility
- Perform detection engineering, including use case lifecycle management and continuous improvement
- Provide ongoing maintenance and administration of the QRadar platform
- Lead or support upgrades, patching, and system enhancements, ensuring minimal disruption
- Identify gaps, inefficiencies, and opportunities for improvement across the SIEM environment
- Collaborate with SOC analysts to improve alert fidelity and reduce false positives
- Produce clear documentation, including architecture reviews, recommendations, and runbooks
- Provide advisory support and best practice guidance to internal stakeholders
Key Skills:
- Strong hands-on experience with IBM QRadar SIEM
- Proven experience conducting QRadar health checks / solution reviews
- Deep understanding of log source integration, parsing (DSM), and normalization
- Experience in detection engineering, including rule creation, tuning, and threat use case development
- Solid knowledge of SIEM operations, including maintenance and troubleshooting
- Experience performing QRadar upgrades and patching
- Familiarity with security frameworks (e.g., MITRE ATT&CK) and threat detection methodologies
- Strong analytical and problem-solving skills
Salary (Rate): undetermined
City: undetermined
Country: United Kingdom
Working Arrangements: remote
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
QRadar SME / Consultant Role: QRadar Subject-Matter-Expert / QRadar Consultant Specialism(s) : IBM QRadar, SIEM, Log Source Analysis, Detection / Security Engineering, Upgrading & Patching, Tuning, Security Frameworks Type: Contract, Daily Rate Pay Rate: DoE Start: Mid-End May 2026 Location: Remote / Midlands Duration: 3 Months
QRadar SME / Consultant Overview
CPS Group UK are delighted to be seeking an experienced IBM QRadar SME / Consultant to support, optimize, and enhance our clients SIEM environment. This role will focus on reviewing the current QRadar deployment, improving log source coverage, strengthening detection capabilities, and ensuring the platform is maintained and upgraded in line with best practices. You’ll act as a subject matter expert, working closely with security operations and engineering teams to ensure the solution is effective, resilient, and aligned with evolving threat landscapes.
- Conduct a comprehensive review of the IBM QRadar SIEM solution, including architecture, configuration, and performance
- Assess and optimize log sources , ensuring correct onboarding, parsing, normalization, and coverage
- Design, develop, and tune detection use cases and correlation rules to improve threat visibility
- Perform detection engineering , including use case lifecycle management and continuous improvement
- Provide ongoing maintenance and administration of the QRadar platform
- Lead or support upgrades, patching, and system enhancements , ensuring minimal disruption
- Identify gaps, inefficiencies, and opportunities for improvement across the SIEM environment
- Collaborate with SOC analysts to improve alert fidelity and reduce false positives
- Produce clear documentation, including architecture reviews, recommendations, and runbooks
- Provide advisory support and best practice guidance to internal stakeholder
Required Skills & Experience
- Strong hands-on experience with IBM QRadar SIEM
- Proven experience conducting QRadar health checks / solution reviews
- Deep understanding of log source integration , parsing (DSM), and normalization
- Experience in detection engineering , including rule creation, tuning, and threat use case development
- Solid knowledge of SIEM operations, including maintenance and troubleshooting
- Experience performing QRadar upgrades and patching
- Familiarity with security frameworks (e.g., MITRE ATT&CK) and threat detection methodologies
- Strong analytical and problem-solving skills
For more information or immediate consideration for this opportunity, please contact Charlie Grant at CPS Group UK on 02920 37 55 99 or email cgrant@cpsgroupuk.com