Telemetry & Monitoring Consultant with a Security or Observability lens

Role Overview

Apto helps customers turn messy, high-volume telemetry into decision-grade insight — feeding SIEM tools, observability platforms and data lakes. This role sits right in our sweet spot: discover what matters, design what works and deliver, using innovative approaches. 

You’ll be a client-facing consultant who can firstly listen to our customers issues and problems with their current data, threat detection, SIEM and Observability platforms.  Using our service definitions (that are continually improved as part of your role) you will confidently run discovery, translate outcomes into an implementable telemetry design, and work with engineers to deploy and operate pipelines that reduce noise and cost. 

What you’ll do 

Front-of-house Discovery & shaping (our Discovery methodology) 

Lead discovery workshops to understand sources, volumes, constraints, stakeholders, governance, and the real question: What value are we trying to deliver?

  • Produce decision-grade outputs: current state, target state, roadmap, sprint backlog and a clear “definition of done”.
  • Translate between exec outcomes and engineer reality: cost, risk, resilience, detection efficacy, operational overhead. 

Back-of-house delivery (our Design & Deploy Methodology) 

Design telemetry pipelines from end-to-end (collect → process → route → store), including: 

  • Collection: agents/collectors, APIs, syslog, cloud-native sources 
  • Routing: multi-destination delivery, buffering/retry, backpressure, failure modes 
  • Transformation: parsing, enrichment, filtering, masking/redaction (PII) 
  • Standardisation: OpenTelemetry semantic conventions; OCSF mapping for security events where relevant 
  • Quality: validation, sampling, acceptance criteria, rollback plans 
  • Ideate Service Definitions & Deploy artefacts  
  • Design – service definitions – design patterns – that can used as part of both our discovery and design front of house phases 
  • Deploy – artefacts and tooling – used by our engineers to deploy 

Apto Operate Managed Service expansion, productising what works (Our Operate Methodology)

You’ll help us standardise “OEM-operate” patterns across multiple platforms by creating:

  • onboarding patterns, runbooks + health checks 
  • upgrade & patch approaches 
  • support boundaries & SLAs 
  • “minimum viable operate” checklists per platform 

Pick your primary lens (one required, both is a bonus) 

Security lens 

  • SIEM concepts, telemetry-to-use-case mapping, including threat modelling and security framework models, detection lifecycle awareness, threat modelling, and normalisation/OCSF thinking. 

Observability / ITOps lens 

  • Service decomposition, KPIs/SLIs/SLOs, incident/problem thinking, tracing/metrics/log correlation, OTel-first design. 

Technical backbone (you’ll be credible with engineers)

You should be able to, and have experience of, taking a messy ingest problem and producing a practical design that engineers can implement. This includes designing

  • telemetry pipeline architectures: receivers → processors → exporters (OTel Collector model) 
  • pipeline tooling and patterns (e.g. Cribl Stream/Edge/Lake style: reduce/enrich/route to any destination, or other data pipeline tools) 
  • cost/noise optimisation: what drives ingest cost, reducing low-value telemetry, retention/lifecycle strategy 
  • security lake / long retention approaches (e.g., Amazon Security Lake (OCSF) + S3/Parquet; lakehouse stacks like Databricks/Snowflake/Trino/Athena)
  • open detection layer awareness (e.g., OpenSearch Security Analytics; Splunk ES/ESCU where relevant) 

Background that fits best (5–7 years)

You might come from: 

  • data/telemetry engineering in a product company — and you’ve been the person who speaks to stakeholders 
  • consultancy/SI/MSP — and you want more ownership, less hierarchy, more building 
  • SRE/platform/data engineering that’s become increasingly customer-facing 

How we work (our values) 

We want someone who lives these in practice: 

  • Organised & responsive: you can run multiple threads, keep momentum, and be trusted to deliver without being chased. 
  • Accountable & customer and solution-oriented: you own the scenario, lead the comms, and bring options + a way forward. 
  • Growth mindset: curious, opinionated (in a good way), always improving Apto, the customer outcome, and yourself. 
  • Empathetic: you understand different roles have different priorities — and you tailor your approach accordingly. 
  • Strong communicator: you choose the right level, mechanism and frequency; you know what good “over-communication” looks like. 
  • Sound judgement: you know when to escalate, balancing delivery for the customer with the impact on the wider business. 

Why Apto ?

You’ll have real ownership: shaping service definitions, influencing how we deliver, and helping build repeatable consulting motions that scale. 

Salary & package

Negotiable strong market base + bonuses (dependent on experience and lens strength) + benefits. We’re hiring for impact — if you’re exceptional and strongly match both security & observability lenses, we’ll flex. 

Location

 Bristol (3 days/week) + remote (2 days/week) 

Type

 Permanent, full-time

To Apply:

 

 

Send your CV to careers@aptosolutions.co.uk (or LinkedIn) and a short note on: 

  1. A telemetry pipeline you designed (or would design).
  2. How you approach discovery → design → sprint delivery. 

We look forward to hearing from you! 

See how we can build your digital capability,
call us on +44(0)845 226 3351 or send us an email…