IT teams, franchisees, vendors, and regional leaders to drive security improvements. Contribute to the development of security programs and frameworks. Provide technical leadership in Microsoft-centric environments (Defender, Sentinel, Azure 365). Requirements: Proven experience in incident response and vulnerability management. Strong proficiency in Microsoft Defender, Sentinel, Azure 365, Tenable, Nessus. Ability … stakeholder engagement and executive reporting. Experience in Microsoft-centric security environments. Exposure to franchisee or third-party business models is a plus. Relevant certifications (e.g., CISSP, CISM, GIAC, Azure Security Engineer) are advantageous. If you want to bee part of a high-impact transformation in a global organization then apply today. More ❯
City of London, London, United Kingdom Hybrid / WFH Options
RiverSafe
We’re looking for a hands-on technical expert to join our team and enhance our MicrosoftSentinel & Azure SIEM threat detection capabilities. The Role: Design, implement & tune advanced detection rules and analytics. Translate threat intelligence into actionable detection logic. Lead SIEM enhancements, integrations & content migration. Mentor junior engineers and drive best practices. Collaborate with IR … threat intel teams to refine detections. Skills: Proven experience in SIEM content development & threat detection. Strong expertise with MicrosoftSentinel, Azure & Logic Apps. Deep knowledge of MITRE ATT&CK, attacker TTPs & security principles. Strong analytical & problem-solving skills. More ❯
We’re looking for a hands-on technical expert to join our team and enhance our MicrosoftSentinel & Azure SIEM threat detection capabilities. The Role: Design, implement & tune advanced detection rules and analytics. Translate threat intelligence into actionable detection logic. Lead SIEM enhancements, integrations & content migration. Mentor junior engineers and drive best practices. Collaborate with IR … threat intel teams to refine detections. Skills: Proven experience in SIEM content development & threat detection. Strong expertise with MicrosoftSentinel, Azure & Logic Apps. Deep knowledge of MITRE ATT&CK, attacker TTPs & security principles. Strong analytical & problem-solving skills. More ❯
Huddersfield, England, United Kingdom Hybrid / WFH Options
Fruition Group
Job Title: Azure Platform Engineer Location: Huddersfield - Hybrid, 2 days per week onsite Salary: Up to £55,000 per annum Why Apply? This is a newly created Azure Platform Engineer position within a business undergoing a major cloud transformation, migrating from a hosted data centre to Microsoft Azure. You'll play a pivotal role in shaping … optimising, and supporting their Azure environment, working within a collaborative IT team of seven. This role is perfect for someone with a strong technical foundation who thrives in a hands-on, solutions driven environment. Responsibilities: Lead and support the migration and optimisation of applications and services within Azure Cloud. Act as a 3rd line escalation point … Service Management. Oversee and coordinate third-party activities to ensure smooth service delivery. Identify and remediate vulnerabilities, contributing to ongoing security and compliance efforts. Requirements: Strong background in MicrosoftAzure Infrastructure and cloud administration. Hands-on experience with Defender, Intune, Azure Policy, and Microsoft 365. Knowledge of RMM platforms and modern device provisioning. Exposure to traditional More ❯
Liverpool, England, United Kingdom Hybrid / WFH Options
Love2shop
models will also be valuable in this role. What we would like from you Duration: 2-4 years of experience in a SOC or cybersecurity-related role. Technologies: MicrosoftAzure, Entra ID, Intune, Azure Arc, Defender XDR, EDR, AzureSentinel, Cloudflare, and Mimecast. IT environments: Including Windows, Linux, VMware, and AKS. Security More ❯
Welwyn Garden City, England, United Kingdom Hybrid / WFH Options
PayPoint plc
models will also be valuable in this role. What we would like from you Duration: 2-4 years of experience in a SOC or cybersecurity-related role. Technologies: MicrosoftAzure, Entra ID, Intune, Azure Arc, Defender XDR, EDR, AzureSentinel, Cloudflare, and Mimecast. IT environments: Including Windows, Linux, VMware, and AKS. Security More ❯
environment. Excellent communication and stakeholder engagement skills. Certifications (Preferred): CISSP, GIAC (GCIA/GCIH/GCFA), SC-200, or equivalent. Cloud Experience: Exposure to AWS and/or Azure environments. Security Clearance: You must hold, or be eligible to obtain, SC Clearance . More ❯
environment. Excellent communication and stakeholder engagement skills. Certifications (Preferred): CISSP, GIAC (GCIA/GCIH/GCFA), SC-200, or equivalent. Cloud Experience: Exposure to AWS and/or Azure environments. Security Clearance: You must hold, or be eligible to obtain, SC Clearance . Reference: ODI/N/SOC #oddi More ❯
Implement Conditional Access policies for secure access control Your Skills and Experience Strong experience with Microsoft 365, Intune, Teams, SharePoint, and related services. Excellent knowledge of Microsoft Defender, Sentinel & Azure AD Knowledge of PowerShell scripting Excellent problem-solving and communication skills. Relevant certifications (MS-500, SC-200, SC-300,AZ-500) desirable. More ❯
Implement Conditional Access policies for secure access control Your Skills and Experience Strong experience with Microsoft 365, Intune, Teams, SharePoint, and related services. Excellent knowledge of Microsoft Defender, Sentinel & Azure AD Knowledge of PowerShell scripting Excellent problem-solving and communication skills. Relevant certifications (MS-500, SC-200, SC-300,AZ-500) desirable. More ❯
Implement Conditional Access policies for secure access control Your Skills and Experience Strong experience with Microsoft 365, Intune, Teams, SharePoint, and related services. Excellent knowledge of Microsoft Defender, Sentinel & Azure AD Knowledge of PowerShell scripting Excellent problem-solving and communication skills. Relevant certifications (MS-500, SC-200, SC-300,AZ-500) desirable. More ❯
MicrosoftSentinel Engineer Up to £70,000 DOE Remote – MUST be UK based Are you an experienced MicrosoftSentinel Engineer ready to take ownership of advanced security projects? Do you have strong 3rd-line level experience across Microsoft, Azure, networking, and cloud security? Would you like to join a fast-growing global consultancy where … The team currently numbers around 15 within a 60-person business and is expanding fast including the recent onboarding of a major financial services client. As a MicrosoftSentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work … combines engineering depth with real client interaction ideal for someone who enjoys both hands-on work and architectural thinking. What You Will Be Doing Design, configure, and deliver Sentinel SIEM solutions for enterprise clients. Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Constant Recruitment Ltd
MicrosoftSentinel Engineer Up to £70,000 DOE Remote – MUST be UK based Are you an experienced MicrosoftSentinel Engineer ready to take ownership of advanced security projects? Do you have strong 3rd-line level experience across Microsoft, Azure, networking, and cloud security? Would you like to join a fast-growing global consultancy where … The team currently numbers around 15 within a 60-person business and is expanding fast including the recent onboarding of a major financial services client. As a MicrosoftSentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work … combines engineering depth with real client interaction ideal for someone who enjoys both hands-on work and architectural thinking. What You Will Be Doing Design, configure, and deliver Sentinel SIEM solutions for enterprise clients. Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to More ❯
adapt, grow, and thrive in an ever-evolving world by building, shaping, and optimising diverse talent strategies. On behalf of Tesco IMS, AMS are now looking for a Azure Engineer for a 6 month contract on a remote working model. Tesco IMS deal in the personal - from pet insurance for your best friend, and home insurance for peace … their customers or looking after their people, you'll find there's a warmth and friendliness to everything they do. Key responsibilities: We are looking for a seasoned Azure Engineer with a strong security mindset to lead the design and deployment of secure, scalable cloud solutions. This role is ideal for professionals who thrive in greenfield environments and … have a proven track record of building regulated services in Microsoft Azure. Lead the architecture and implementation of complex greenfield Azure environments from the ground up. Design and deploy secure, compliant cloud services aligned with industry regulations (e.g., ISO 27001, NIST, GDPR). Configure and harden Azure services including Azure AD, Key Vault, Defender More ❯
City of London, London, United Kingdom Hybrid / WFH Options
MFK Recruitment
Proven experience in a 3rd Line/Senior Engineer role within an MSP or security-focused IT environment, supporting multiple clients and environments. Strong knowledge of Microsoft technologies (Azure, Microsoft 365, SharePoint, Intune/Entra) with a focus on security configuration, hardening and monitoring. In-depth understanding of networking, firewalls, VPNs, Windows Server, Active Directory and hybrid cloud … improvement of client security posture. Mentorship and leadership experience, providing cybersecurity guidance to junior engineers and Service Desk teams. Cyber Security & Centralised Services Manager - Desirable Certifications: Microsoft Certified: Azure Administrator/Solutions Expert CompTIA Security+, CISSP, CISM or equivalent cybersecurity qualification ITIL Foundation Vendor-specific certifications (Fortinet, SentinelOne, Datto, Mimecast, Huntress, etc.) Why Join the Company: Be part More ❯
Proven experience in a 3rd Line/Senior Engineer role within an MSP or security-focused IT environment, supporting multiple clients and environments. Strong knowledge of Microsoft technologies (Azure, Microsoft 365, SharePoint, Intune/Entra) with a focus on security configuration, hardening and monitoring. In-depth understanding of networking, firewalls, VPNs, Windows Server, Active Directory and hybrid cloud … improvement of client security posture. Mentorship and leadership experience, providing cybersecurity guidance to junior engineers and Service Desk teams. Cyber Security & Centralised Services Manager - Desirable Certifications: Microsoft Certified: Azure Administrator/Solutions Expert CompTIA Security+, CISSP, CISM or equivalent cybersecurity qualification ITIL Foundation Vendor-specific certifications (Fortinet, SentinelOne, Datto, Mimecast, Huntress, etc.) Why Join the Company: Be part More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
MFK Recruitment
Proven experience in a 3rd Line/Senior Engineer role within an MSP or security-focused IT environment, supporting multiple clients and environments. Strong knowledge of Microsoft technologies (Azure, Microsoft 365, SharePoint, Intune/Entra) with a focus on security configuration, hardening and monitoring. In-depth understanding of networking, firewalls, VPNs, Windows Server, Active Directory and hybrid cloud … improvement of client security posture. Mentorship and leadership experience, providing cybersecurity guidance to junior engineers and Service Desk teams. Cyber Security & Centralised Services Manager - Desirable Certifications: Microsoft Certified: Azure Administrator/Solutions Expert CompTIA Security+, CISSP, CISM or equivalent cybersecurity qualification ITIL Foundation Vendor-specific certifications (Fortinet, SentinelOne, Datto, Mimecast, Huntress, etc.) Why Join the Company: Be part More ❯
to support a leading government client . The role is based in London and will need 2/3 days on site.Im looking for someone that has recent Sentinel and Defender experience and is a SME in this area Background skills required. • Policy Enforcement: Implement Conditional Access, MFA, and DLP policies. Maintain security posture using Secure Score and … of workload. • PowerShell Scripting: Automate routine tasks and configurations across O365 services • Policy Development: Support creation and enforcement of Council-wide O365 usage policies • Configure and maintain Sentinel workspaces aligned with Council tenancy and compliance requirements. • Integrate data sources including Defender for Endpoint, Defender for Identity, Office 365 audit logs, Azure AD, and third-party connectors. … Develop and implement playbooks and alert rules for automated incident response. • Collaborate with the Service Desk to triage and escalate Sentinel alerts. • Administer and maintain Microsoft 365 services including Exchange online, Exchange on prem and managing hybrid setup. • Administer and optimise Microsoft Defender XDR solutions including Defender for Cloud Apps, Defender for Office 365, and Defender for Identity. More ❯
world threats, and shape the future of cybersecurity in a dynamic, multi-entity environment. Requirements: Proven experience in incident response and vulnerability management. Hands-on with Microsoft Defender, Sentinel, Azure 365, and related tools. Strong communicator—able to engage technical and non-technical stakeholders. Experience in distributed or franchisee-based environments is a major plus. Certifications … like CISSP, CISM, GIAC, or Azure Security Engineer are highly valued. Responsibilities: Be the go-to expert for security incidents—detect, respond, and remediate across regions. Drive vulnerability management using top-tier tools like Tenable, Nessus, and Microsoft Defender. Collaborate with franchisees, vendors, and internal teams to close security gaps and elevate resilience. Translate complex threats into clear More ❯
Norwich, England, United Kingdom Hybrid / WFH Options
BizClik
being said ,there is a bare minimum of experience we require: ● At least 2 years of IT support experience ● Knowledge and experience of Microsoft Cloud technologies (Entra, Intune, Azure) ● Knowledge and Experience of endpoint setup and configuration (Windows 10/11 and MacOS) ● Knowledge and Experience of Google Workspace Desirable Experience ● Networking equipment (Wifi, Switches, Firewalls) (Ubiquiti, Fortigate More ❯
hunt for threats, and enjoy taking ownership of complex challenges this role is for you. What Youll Do Lead on threat detection, hunting, and incident response, working with Azure/Defender, Sentinel, and third-party SOCs. Investigate alerts and coordinate responses with internal IT teams and external managed SOCs. Continuously monitor, enhance, and report on security … with ISO27001, GDPR, Cyber Essentials Plus, and other regulatory frameworks. What Were Looking For Proven experience in Cyber Security, Threat Intelligence, or SOC environments. Hands-on experience with Azure Security Center, MicrosoftSentinel, Defender ATP, M365 Security & Compliance, and KQL scripting. Knowledge of frameworks such as MITRE ATT&CK, NIST, CIS, NCSC, and Security Scorecard. Understanding More ❯
role. Strong understanding of security principles, threat landscapes, and incident response. Hands-on experience with SIEM platforms (e.g., Splunk, SentinelOne, Chronicle, etc.). Familiarity with cloud environments (AWS, Azure, GCP) and container security. Excellent analytical and communication skills. Why Join? Work with a globally recognised cyber security leader. Be part of a high-performing team with a strong More ❯
Workplace roadmap aligned with business goals. Lead technology selection and integration (e.g., Microsoft 365, Teams, Intune, Citrix). Manage Unified Endpoint Management (UEM) using Microsoft Intune, SCCM, and Azure AD. Oversee device lifecycle management, including provisioning, patching, and retirement (laptops, desktops, mobile, peripherals). Deploy and manage Azure Virtual Desktop (AVD) for remote and hybrid workforces. … Utilise Azure Autopilot for device provisioning and configuration. Integrate Azure Monitor, Log Analytics, and Sentinel for endpoint visibility and security. Leverage Azure AD Conditional Access and Identity Protection for secure access. Collaborate with InfoSec to enforce endpoint security policies. Ensure compliance with GDPR, ISO 27001, and internal governance. Lead initiatives to improve … Digital Experience Monitoring (DEM) tools. Administer and optimise Microsoft 365 ecosystem (Exchange, SharePoint, OneDrive). Drive adoption of collaboration platforms (Teams, Slack, Zoom). Integrate VDI solutions (Citrix, Azure Virtual Desktop) for remote access. Automate account provisioning via Azure AD and HR system integration. Assign appropriate roles and group memberships based on job function. Provision access More ❯
Harvey Nash are now inviting candidates to apply for the role of Senior SIEM Engineer, (Sentinel). Running until March 2026 Daily rate of £600 - £700 Inside of IR35 Reading location (two days a week) You will be responsible for maintaining our clients SIEM platform. This includes onboarding log sources, developing analytic rules, creating automation for triage and … data analysis and scripting languages (e.g., PowerShell, Python). Strong Security Orchestration, Automation and Response (SOAR) knowledge. Team leadership experience with great collaboration and stakeholder management skills Technologies: SentinelAzure KQL LogRhythm Please submit your CV today for consideration. More ❯
Crawley, England, United Kingdom Hybrid / WFH Options
InfoSec People Ltd
and lead on incident response. Conduct in-depth threat hunting, forensic investigations, and root cause analysis. Develop, test, and optimise detection use cases, rules, and playbooks within MicrosoftSentinel and Defender. Provide mentorship and guidance to junior SOC analysts, enhancing team capability. Collaborate with IT and OT teams to address unique security requirements across CNI environments. Drive improvements … compliance frameworks (NIS2, CAF, ISO 27001). Skills & Experience Required Extensive background in SOC operations, incident response, and threat hunting. Expertise with the Microsoft security stack, including: MicrosoftSentinel (SIEM/SOAR) Microsoft Defender for Endpoint, Identity, Cloud Apps, and Office 365 Microsoft Entra ID (Azure AD) Microsoft Purview (compliance and data protection) Strong knowledge of More ❯