IT teams, franchisees, vendors, and regional leaders to drive security improvements. Contribute to the development of security programs and frameworks. Provide technical leadership in Microsoft-centric environments (Defender, Sentinel, Azure 365). Requirements: Proven experience in incident response and vulnerability management. Strong proficiency in Microsoft Defender, Sentinel, Azure 365, Tenable, Nessus. Ability … stakeholder engagement and executive reporting. Experience in Microsoft-centric security environments. Exposure to franchisee or third-party business models is a plus. Relevant certifications (e.g., CISSP, CISM, GIAC, Azure Security Engineer) are advantageous. If you want to bee part of a high-impact transformation in a global organization then apply today. More ❯
We’re looking for a hands-on technical expert to join our team and enhance our MicrosoftSentinel & Azure SIEM threat detection capabilities. The Role: Design, implement & tune advanced detection rules and analytics. Translate threat intelligence into actionable detection logic. Lead SIEM enhancements, integrations & content migration. Mentor junior engineers and drive best practices. Collaborate with IR … threat intel teams to refine detections. Skills: Proven experience in SIEM content development & threat detection. Strong expertise with MicrosoftSentinel, Azure & Logic Apps. Deep knowledge of MITRE ATT&CK, attacker TTPs & security principles. Strong analytical & problem-solving skills. More ❯
City of London, London, United Kingdom Hybrid/Remote Options
RiverSafe
We’re looking for a hands-on technical expert to join our team and enhance our MicrosoftSentinel & Azure SIEM threat detection capabilities. The Role: Design, implement & tune advanced detection rules and analytics. Translate threat intelligence into actionable detection logic. Lead SIEM enhancements, integrations & content migration. Mentor junior engineers and drive best practices. Collaborate with IR … threat intel teams to refine detections. Skills: Proven experience in SIEM content development & threat detection. Strong expertise with MicrosoftSentinel, Azure & Logic Apps. Deep knowledge of MITRE ATT&CK, attacker TTPs & security principles. Strong analytical & problem-solving skills. More ❯
Huddersfield, England, United Kingdom Hybrid/Remote Options
Fruition Group
Job Title: Azure Platform Engineer Location: Huddersfield - Hybrid, 2 days per week onsite Salary: Up to £55,000 per annum Why Apply? This is a newly created Azure Platform Engineer position within a business undergoing a major cloud transformation, migrating from a hosted data centre to Microsoft Azure. You'll play a pivotal role in shaping … optimising, and supporting their Azure environment, working within a collaborative IT team of seven. This role is perfect for someone with a strong technical foundation who thrives in a hands-on, solutions driven environment. Responsibilities: Lead and support the migration and optimisation of applications and services within Azure Cloud. Act as a 3rd line escalation point … Service Management. Oversee and coordinate third-party activities to ensure smooth service delivery. Identify and remediate vulnerabilities, contributing to ongoing security and compliance efforts. Requirements: Strong background in MicrosoftAzure Infrastructure and cloud administration. Hands-on experience with Defender, Intune, Azure Policy, and Microsoft 365. Knowledge of RMM platforms and modern device provisioning. Exposure to traditional More ❯
Liverpool, England, United Kingdom Hybrid/Remote Options
Love2shop
models will also be valuable in this role. What we would like from you Duration: 2-4 years of experience in a SOC or cybersecurity-related role. Technologies: MicrosoftAzure, Entra ID, Intune, Azure Arc, Defender XDR, EDR, AzureSentinel, Cloudflare, and Mimecast. IT environments: Including Windows, Linux, VMware, and AKS. Security More ❯
Welwyn Garden City, England, United Kingdom Hybrid/Remote Options
PayPoint plc
models will also be valuable in this role. What we would like from you Duration: 2-4 years of experience in a SOC or cybersecurity-related role. Technologies: MicrosoftAzure, Entra ID, Intune, Azure Arc, Defender XDR, EDR, AzureSentinel, Cloudflare, and Mimecast. IT environments: Including Windows, Linux, VMware, and AKS. Security More ❯
Sentinel SME - 6 months - Remote - Outside IR35 We are seeking an experienced MicrosoftSentinel SME for a 6-month contract to work directly with a key customer. This role involves designing and implementing advanced security playbooks, providing expert-level guidance, and delivering robust security monitoring and response solutions using Microsoft Sentinel. Key Responsibilities: Design, configure, and … optimize MicrosoftSentinel environments for effective security monitoring. Develop and maintain custom analytics rules, workbooks, and playbooks. Implement automation and orchestration of incident response using Sentinel and related tools. Act as the primary subject matter expert (SME) on MicrosoftSentinel for the customer. Collaborate with stakeholders to tailor Sentinel use cases to … the customer's security requirements. Provide ongoing support, tuning, and troubleshooting of Sentinel implementations. Ensure best practices for threat detection, incident response, and monitoring are applied. What You Will Ideally Bring: Deep, hands-on experience with MicrosoftSentinel and Azure security services. Strong understanding of SIEM concepts, log ingestion, and security operations workflows. Proven More ❯
environment. Excellent communication and stakeholder engagement skills. Certifications (Preferred): CISSP, GIAC (GCIA/GCIH/GCFA), SC-200, or equivalent. Cloud Experience: Exposure to AWS and/or Azure environments. Security Clearance: You must hold, or be eligible to obtain, SC Clearance . More ❯
environment. Excellent communication and stakeholder engagement skills. Certifications (Preferred): CISSP, GIAC (GCIA/GCIH/GCFA), SC-200, or equivalent. Cloud Experience: Exposure to AWS and/or Azure environments. Security Clearance: You must hold, or be eligible to obtain, SC Clearance . Reference: ODI/N/SOC #oddi More ❯
malware, phishing, and endpoint compromise Perform root cause analysis, containment, and recovery actions Tune detection rules and develop new use cases to improve response times Utilise Microsoft Defender, Sentinel, and Azure Security tools to detect and respond to threats Conduct post-incident reviews and recommend long-term prevention strategies Collaborate with infrastructure and security teams to … systems and processes Experience required Minimum 2 years in a SOC environment followed by recent hands-on incident response experience Strong working knowledge of SIEM and EDR tools (Sentinel, Defender, CrowdStrike, etc.) Solid understanding of Windows, Linux, and network security principles Experience with forensic or threat analysis techniques Familiarity with MITRE ATT&CK, NIST, or similar frameworks Desirable … malware, phishing, and endpoint compromise * Perform root cause analysis, containment, and recovery actions * Tune detection rules and develop new use cases to improve response times * Utilise Microsoft Defender, Sentinel, and Azure Security tools to detect and respond to threats * Conduct post-incident reviews and recommend long-term prevention strategies * Collaborate with infrastructure and security teams to More ❯
Implement Conditional Access policies for secure access control Your Skills and Experience Strong experience with Microsoft 365, Intune, Teams, SharePoint, and related services. Excellent knowledge of Microsoft Defender, Sentinel & Azure AD Knowledge of PowerShell scripting Excellent problem-solving and communication skills. Relevant certifications (MS-500, SC-200, SC-300,AZ-500) desirable. More ❯
Implement Conditional Access policies for secure access control Your Skills and Experience Strong experience with Microsoft 365, Intune, Teams, SharePoint, and related services. Excellent knowledge of Microsoft Defender, Sentinel & Azure AD Knowledge of PowerShell scripting Excellent problem-solving and communication skills. Relevant certifications (MS-500, SC-200, SC-300,AZ-500) desirable. More ❯
Implement Conditional Access policies for secure access control Your Skills and Experience Strong experience with Microsoft 365, Intune, Teams, SharePoint, and related services. Excellent knowledge of Microsoft Defender, Sentinel & Azure AD Knowledge of PowerShell scripting Excellent problem-solving and communication skills. Relevant certifications (MS-500, SC-200, SC-300,AZ-500) desirable. More ❯
MicrosoftSentinel Engineer Up to £70,000 DOE Remote – MUST be UK based Are you an experienced MicrosoftSentinel Engineer ready to take ownership of advanced security projects? Do you have strong 3rd-line level experience across Microsoft, Azure, networking, and cloud security? Would you like to join a fast-growing global consultancy where … The team currently numbers around 15 within a 60-person business and is expanding fast including the recent onboarding of a major financial services client. As a MicrosoftSentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work … combines engineering depth with real client interaction ideal for someone who enjoys both hands-on work and architectural thinking. What You Will Be Doing Design, configure, and deliver Sentinel SIEM solutions for enterprise clients. Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Constant Recruitment Ltd
MicrosoftSentinel Engineer Up to £70,000 DOE Remote – MUST be UK based Are you an experienced MicrosoftSentinel Engineer ready to take ownership of advanced security projects? Do you have strong 3rd-line level experience across Microsoft, Azure, networking, and cloud security? Would you like to join a fast-growing global consultancy where … The team currently numbers around 15 within a 60-person business and is expanding fast including the recent onboarding of a major financial services client. As a MicrosoftSentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work … combines engineering depth with real client interaction ideal for someone who enjoys both hands-on work and architectural thinking. What You Will Be Doing Design, configure, and deliver Sentinel SIEM solutions for enterprise clients. Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to More ❯
adapt, grow, and thrive in an ever-evolving world by building, shaping, and optimising diverse talent strategies. On behalf of Tesco IMS, AMS are now looking for a Azure Engineer for a 6 month contract on a remote working model. Tesco IMS deal in the personal - from pet insurance for your best friend, and home insurance for peace … their customers or looking after their people, you'll find there's a warmth and friendliness to everything they do. Key responsibilities: We are looking for a seasoned Azure Engineer with a strong security mindset to lead the design and deployment of secure, scalable cloud solutions. This role is ideal for professionals who thrive in greenfield environments and … have a proven track record of building regulated services in Microsoft Azure. Lead the architecture and implementation of complex greenfield Azure environments from the ground up. Design and deploy secure, compliant cloud services aligned with industry regulations (e.g., ISO 27001, NIST, GDPR). Configure and harden Azure services including Azure AD, Key Vault, Defender More ❯
Proven experience in a 3rd Line/Senior Engineer role within an MSP or security-focused IT environment, supporting multiple clients and environments. Strong knowledge of Microsoft technologies (Azure, Microsoft 365, SharePoint, Intune/Entra) with a focus on security configuration, hardening and monitoring. In-depth understanding of networking, firewalls, VPNs, Windows Server, Active Directory and hybrid cloud … improvement of client security posture. Mentorship and leadership experience, providing cybersecurity guidance to junior engineers and Service Desk teams. Cyber Security & Centralised Services Manager - Desirable Certifications: Microsoft Certified: Azure Administrator/Solutions Expert CompTIA Security+, CISSP, CISM or equivalent cybersecurity qualification ITIL Foundation Vendor-specific certifications (Fortinet, SentinelOne, Datto, Mimecast, Huntress, etc.) Why Join the Company: Be part More ❯
City of London, London, United Kingdom Hybrid/Remote Options
MFK Recruitment
Proven experience in a 3rd Line/Senior Engineer role within an MSP or security-focused IT environment, supporting multiple clients and environments. Strong knowledge of Microsoft technologies (Azure, Microsoft 365, SharePoint, Intune/Entra) with a focus on security configuration, hardening and monitoring. In-depth understanding of networking, firewalls, VPNs, Windows Server, Active Directory and hybrid cloud … improvement of client security posture. Mentorship and leadership experience, providing cybersecurity guidance to junior engineers and Service Desk teams. Cyber Security & Centralised Services Manager - Desirable Certifications: Microsoft Certified: Azure Administrator/Solutions Expert CompTIA Security+, CISSP, CISM or equivalent cybersecurity qualification ITIL Foundation Vendor-specific certifications (Fortinet, SentinelOne, Datto, Mimecast, Huntress, etc.) Why Join the Company: Be part More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
MFK Recruitment
Proven experience in a 3rd Line/Senior Engineer role within an MSP or security-focused IT environment, supporting multiple clients and environments. Strong knowledge of Microsoft technologies (Azure, Microsoft 365, SharePoint, Intune/Entra) with a focus on security configuration, hardening and monitoring. In-depth understanding of networking, firewalls, VPNs, Windows Server, Active Directory and hybrid cloud … improvement of client security posture. Mentorship and leadership experience, providing cybersecurity guidance to junior engineers and Service Desk teams. Cyber Security & Centralised Services Manager - Desirable Certifications: Microsoft Certified: Azure Administrator/Solutions Expert CompTIA Security+, CISSP, CISM or equivalent cybersecurity qualification ITIL Foundation Vendor-specific certifications (Fortinet, SentinelOne, Datto, Mimecast, Huntress, etc.) Why Join the Company: Be part More ❯
to support a leading government client . The role is based in London and will need 2/3 days on site.Im looking for someone that has recent Sentinel and Defender experience and is a SME in this area Background skills required. • Policy Enforcement: Implement Conditional Access, MFA, and DLP policies. Maintain security posture using Secure Score and … of workload. • PowerShell Scripting: Automate routine tasks and configurations across O365 services • Policy Development: Support creation and enforcement of Council-wide O365 usage policies • Configure and maintain Sentinel workspaces aligned with Council tenancy and compliance requirements. • Integrate data sources including Defender for Endpoint, Defender for Identity, Office 365 audit logs, Azure AD, and third-party connectors. … Develop and implement playbooks and alert rules for automated incident response. • Collaborate with the Service Desk to triage and escalate Sentinel alerts. • Administer and maintain Microsoft 365 services including Exchange online, Exchange on prem and managing hybrid setup. • Administer and optimise Microsoft Defender XDR solutions including Defender for Cloud Apps, Defender for Office 365, and Defender for Identity. More ❯
bring: Proven experience leading or managing cyber and information security operations Strong grasp of frameworks such as ISO27001, NIST, GDPR and modern security tooling (e.g. Microsoft 365 Defender, Sentinel, Azure) Excellent communication and influencing skills — able to engage both technical and non-technical stakeholders A practical, business-focused approach to security leadership Why join: You’ll More ❯
role. Strong understanding of security principles, threat landscapes, and incident response. Hands-on experience with SIEM platforms (e.g., Splunk, SentinelOne, Chronicle, etc.). Familiarity with cloud environments (AWS, Azure, GCP) and container security. Excellent analytical and communication skills. Why Join? Work with a globally recognised cyber security leader. Be part of a high-performing team with a strong More ❯
hunt for threats, and enjoy taking ownership of complex challenges this role is for you. What Youll Do Lead on threat detection, hunting, and incident response, working with Azure/Defender, Sentinel, and third-party SOCs. Investigate alerts and coordinate responses with internal IT teams and external managed SOCs. Continuously monitor, enhance, and report on security … with ISO27001, GDPR, Cyber Essentials Plus, and other regulatory frameworks. What Were Looking For Proven experience in Cyber Security, Threat Intelligence, or SOC environments. Hands-on experience with Azure Security Center, MicrosoftSentinel, Defender ATP, M365 Security & Compliance, and KQL scripting. Knowledge of frameworks such as MITRE ATT&CK, NIST, CIS, NCSC, and Security Scorecard. Understanding More ❯
Workplace roadmap aligned with business goals. Lead technology selection and integration (e.g., Microsoft 365, Teams, Intune, Citrix). Manage Unified Endpoint Management (UEM) using Microsoft Intune, SCCM, and Azure AD. Oversee device lifecycle management, including provisioning, patching, and retirement (laptops, desktops, mobile, peripherals). Deploy and manage Azure Virtual Desktop (AVD) for remote and hybrid workforces. … Utilise Azure Autopilot for device provisioning and configuration. Integrate Azure Monitor, Log Analytics, and Sentinel for endpoint visibility and security. Leverage Azure AD Conditional Access and Identity Protection for secure access. Collaborate with InfoSec to enforce endpoint security policies. Ensure compliance with GDPR, ISO 27001, and internal governance. Lead initiatives to improve … Digital Experience Monitoring (DEM) tools. Administer and optimise Microsoft 365 ecosystem (Exchange, SharePoint, OneDrive). Drive adoption of collaboration platforms (Teams, Slack, Zoom). Integrate VDI solutions (Citrix, Azure Virtual Desktop) for remote access. Automate account provisioning via Azure AD and HR system integration. Assign appropriate roles and group memberships based on job function. Provision access More ❯