26 to 50 of 87 Azure Sentinel Jobs in the UK excluding London

Cyber Security Engineer

Hiring Organisation
Anson Mccade
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
experience, with software development or scripting capability. Practical experience with SIEM and log management platforms, including technologies such as: Splunk Microsoft Sentinel Cribl ELK Experience with AWS, Microsoft Azure and/or Google Cloud Platform (GCP). Scripting or programming skills using Python, Bash and/ ...

Cyber Security Engineer

Hiring Organisation
Accenture
Location
Manchester, UK
Employment Type
Full-time
/CD pipelines, virtualisation, and IaC Software development skills using Linux or WSL SIEM and log routing experience in tools such as Splunk, Sentinel, Cribl, and ELK Familiarity with AWS, Azure, and GCP services Proficiency in scripting or programming (Python, Bash, PowerShell) Excellent problem-solving, analytical ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner … security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing platform health, onboarding and configuration. Design and maintain automation and orchestration workflows using Logic Apps, Sentinel Playbooks, Power Automate, PowerShell, Python and API integrations to reduce manual operational effort. ...

Security Operations Manager

Location
Belfast City District, Northern Ireland, United Kingdom
Depending on the client environment and engagement, you can expect to work across technologies including: SIEM and security analytics platforms, such as Microsoft Sentinel and Splunk. SOAR and security automation technologies used for enrichment, triage and response orchestration. Endpoint Detection and Response (EDR/XDR) platforms, such … Microsoft Defender for Endpoint and CrowdStrike Falcon. Threat intelligence, detection engineering, investigation and incident response technologies. Cloud security monitoring across Microsoft Azure, AWS and GCP environments. What you can expect Work collaboratively across multiple technical teams and stakeholder groups, using your Security Operations expertise to solve complex client ...

Security Operations Consultant

Location
Belfast City District, Northern Ireland, United Kingdom
Depending on the client environment and engagement, you can expect to work across technologies including: SIEM and security analytics platforms, such as Microsoft Sentinel and Splunk. SOAR and security automation technologies used for enrichment, triage and response orchestration. Endpoint Detection and Response (EDR/XDR) platforms, such … Microsoft Defender for Endpoint and CrowdStrike Falcon. Threat intelligence, detection engineering, investigation and incident response technologies. Cloud security monitoring across Microsoft Azure, AWS and GCP environments. What you can expect Work collaboratively across multiple technical teams and stakeholder groups, using your Security Operations expertise to solve complex client ...

Zscaler Administrator - Application Packaging

Location
Leatherhead, England, United Kingdom
policies, authentication, application segmentation, and secure access controls Proven troubleshooting skills across access, identity, networking, and cloud connectivity issues Good knowledge of Microsoft Azure networking and infrastructure services Experience supporting Windows Server, Active Directory, DNS, certificates, and authentication services A solid understanding of enterprise networking concepts including routing … ability to work effectively with both technical and non‐technical stakeholders Desirable Experience Microsoft Entra ID, Conditional Access, MFA, and SSO Microsoft Sentinel, Defender, Splunk, or SIEM platforms Zscaler Digital Experience (ZDX) Cloud security and Zero Trust architectures PowerShell, Python, Terraform, or automation tooling Palo Alto, Cisco ...

IT Infrastructure Analyst

Hiring Organisation
Omnes Healthcare Limited
Location
Manchester, M3 5NA, United Kingdom
Salary
£34000.00
annum Participation in an on-call rota is required Main duties of the job Key Responsibilities Maintain and support Microsoft 365, Microsoft Azure, Windows Server and enterprise infrastructure. Administer Active Directory, Microsoft Entra ID, Group Policy and identity services. Support Hyper-V, Azure Virtual Machines … storage. Monitor infrastructure performance, capacity and availability and implement improvements where required. Maintain accurate infrastructure documentation, configuration records, standards and procedures. Support Microsoft Azure networking, storage, compute, backup and platform services. Manage Microsoft 365 services including Exchange Online, SharePoint Online, Teams and OneDrive. Support cloud migration, infrastructure modernisation ...

Cyber Security Engineer

Hiring Organisation
Anson Mccade
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£60,000
monitoring, incident response and threat intelligence. What were looking for Experience in some of the following: Cyber security and platform engineering. SIEM: Splunk, Sentinel, Cribl or ELK. Cloud: AWS, Azure or GCP. Scripting: Python, Bash or PowerShell. Networking, IDS/IPS, vulnerability management or endpoint security. ...

GCP Cloud Engineer

Location
Warwick, England, United Kingdom
Code (IaC), CI/CD, and DevSecOps practices. What you'll do Design, build, and manage complex cloud environments using GCP and Azure, ensuring adherence to architectural guardrails and tagging standards. Develop and maintain secure, multi-region, multi-account cloud landing zones using automation frameworks. Implement advanced networking … using Terraform, CloudFormation, and Ansible for repeatable, auditable deployments. Integrate IaC pipelines with version control (Git), automated testing, and policy-as-code (e.g., Sentinel, OPA) for compliance enforcement. Champion GitOps and immutable infrastructure patterns. CI/CD & DevOps: Build and optimize CI/CD pipelines (Azure ...

Senior Infrastructure, Cloud & Cyber Security Engineer

Location
Norwich, England, United Kingdom
Microsoft Intune, Windows Autopilot, endpoint security, device compliance and configuration management. Manage application deployment, MDM/MAM, device lifecycle, patching and operational compliance. Azure Infrastructure & Cloud Services Design, deploy and support Azure environments, including virtual machines, storage, networking, backup and recovery. Support hybrid cloud, migration, automation … resilient, available and well-optimised. Troubleshoot complex infrastructure, network and virtualisation issues. Cyber Security & Compliance Lead cyber security initiatives and administer Microsoft Defender, Sentinel and Purview services. Monitor alerts, investigate incidents, manage vulnerabilities, conduct risk reviews and maintain security baselines. Support compliance, audits, business continuity and disaster recovery ...

Lead Site Reliability Engineer

Location
Nottingham, England, United Kingdom
production operations, SRE, or DevOps roles, with at least 3+ years in a people management capacity. Proven experience managing cloud‐native services on Azure and AWS, including: Azure SQL, Cosmos DB, Application Gateway, Key Vault, Storage, DNS, Load Balancer, Virtual Machines, Azure Machine Learning … Sentinel; AWS Lambda, ECS, RDS, CloudWatch. Strong understanding of SRE principles (SLOs, SLIs, error budgets, incident response). Hands‐on experience with container orchestration (Kubernetes, Docker). Proficiency in CI/CD pipelines and infrastructure‐as‐code tools (Terraform, GitHub Actions, Jenkins). Familiarity with observability platforms (Datadog ...

Senior Cybersecurity TAM & Roadmap Lead

Location
Manchester, England, United Kingdom
customer technical relations across security operations. You will quantify maturity via the TAM Score, shape a defensible 12-month roadmap, and provide Azure Sentinel/Defender XDR expertise to guide prioritised improvements. You’ll translate data into narrative, resolve technical queries, and escalate as needed ...

Cyber Security Engineer

Location
Aberdeen City, Scotland, United Kingdom
with minimal supervision. Key responsibilities include: Security Monitoring and Operations - Own the day-to-day security operations across Microsoft security technologies including Microsoft Sentinel, Microsoft Defender, Conditional Access, Entra ID, and related Azure security capabilities, strengthening monitoring, detection, protection, and response. You will help shape what … Microsoft security technologies, in depth. Microsoft Defender across endpoint, identity, Office 365, and cloud apps, including triage and tuning of Defender alerts. Microsoft Sentinel, including writing and tuning your own KQL queries, analytic rules, and workbooks. Microsoft Entra ID and Conditional Access policy design, testing, and troubleshooting. Microsoft ...

Technical Lead - Cloud & Cyber Service

Location
Aberdeen City, Scotland, United Kingdom
capacity. Broad technical knowledge across cloud, infrastructure, Microsoft 365, identity, digital workplace, cyber security, resilience and managed services. Strong working knowledge of Microsoft Azure, Microsoft 365 and Microsoft Entra ID/Active Directory. Strong understanding of security and compliance principles, technologies and frameworks, including Zero Trust, Microsoft Defender …/Sentinel, NCSC, NIST and ISO 27001. Experience engaging with senior customer stakeholders and acting as a trusted technical advisor. Strong understanding of ITIL‐aligned service management and managed service environments. Excellent leadership, stakeholder management and communication skills, with the ability to communicate effectively at both technical ...

Cyber Security Specialist

Hiring Organisation
DB Cargo Uk
Location
Doncaster, South Yorkshire, Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
£75,000
Regulations, GDPR and DB Group security requirements. Manage cyber security operations including threat monitoring, incident response, threat intelligence and vulnerability management. Develop Microsoft Sentinel, Microsoft Defender XDR and associated security monitoring capabilities. Provide governance across Azure, AWS, Microsoft 365, Entra ID and Intune environments. Lead information ...

Principal Security Consultant - DSS

Location
Birmingham, England, United Kingdom
mixed-vendor environments, including SaaS platforms and hybrid cloud estates. Deep hands-on expertise across the Microsoft security and compliance ecosystem, including Microsoft Sentinel, Defender XDR, Purview, Entra ID and Defender for Cloud, from solution design through to implementation and optimisation. Experience designing, onboarding and maturing SOC capabilities … CISSP, CISM, CISA or CySA+, alongside relevant Microsoft security certifications including SC-100 (Microsoft Cybersecurity Architect), SC-200 (Security Operations Analyst), AZ-500 (Azure Security Engineer) or alternates aligned the CrowdStrike ecosystem, such as, CrowdStrike Certified Falcon Administrator (CCFA), CrowdStrike Certified SIEM Engineer (CCSE), CrowdStrike Certified Identity Specialist ...

L3 SOC Analyst

Hiring Organisation
Anson Mccade
Location
Belfast, County Antrim, Northern Ireland, United Kingdom
Employment Type
Permanent
Salary
£60,000
issues. You'll also guide and mentor two analysts, without direct line management, and support the rollout and management of IBM QRadar, Microsoft Sentinel, Defender for Endpoint, Defender for Identity and Defender for Cloud. Key responsibilities Handle security incidents escalated by L1 and L2 analysts, carry out business … Eligible for SC clearance (mandatory) Proven experience at Level 3 SOC Analyst or senior security operations level Strong hands-on experience with Microsoft Sentinel, Microsoft Defender for Endpoint (MDE) and KQL Experience onboarding, configuring, tuning and reporting on SIEM solutions Threat intelligence experience Leadership and mentoring experience Commercial ...

Security Engineer

Hiring Organisation
CPS Group (UK) Limited
Location
Cardiff, South Glamorgan, United Kingdom
Employment Type
Permanent
Salary
£40000 - £45000/annum
Microsoft security controls, including Defender policies, Entra settings and Exchange Online security Building and maintaining detection capabilities using KQL, Advanced Hunting and Microsoft Sentinel Managing phishing simulation campaigns and supporting vulnerability scanning Reviewing client environments and identifying opportunities to improve their Microsoft 365 security posture Supporting incident response … security technologies, particularly Defender XDR, Entra, Defender for Cloud Apps and Exchange Online Strong knowledge of KQL and Advanced Hunting Experience with Microsoft Sentinel, including analytics rules and Content Hub solutions Good understanding of security protocols, standards and best practices Knowledge of vulnerability management and risk analysis Strong ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...

SOC Analyst (MS Sentinel & Defender, SC Cleared)

Location
Harlow, England, United Kingdom
Analyst (MS Sentinel & Defender, SC Cleared) | Contract Length: 3 month initial contract Location: Harlow Hybrid initially (1 day per week onsite), potential for remote after first week Inside IR35 Clearance Required: SC clearance - candidates must have valid clearance We're looking for an experienced SOC Analyst Consultant … security team within a large enterprise environment. Key Requirements: Demonstrable experience as a SOC Analyst Strong hands-on experience with SIEM, including Microsoft Sentinel Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable ...

CyberArk SME

Location
Wokingham, England, United Kingdom
offboarding Password vaulting, rotation, reconciliation Session monitoring, recording, and auditing Manage privileged access for: Windows, Linux/Unix, Network devices Databases Cloud platforms (Azure) Service, application, and DevOps accounts Integration & Automation Integrate CyberArk with: Active Directory/LDAP SIEM tools (Sentinel) Ticketing tools (ServiceNow) Identity platforms … Azure AD, SSO solutions) Develop and maintain automation scripts using: REST APIs PowerShell/Python Support PAM integrations for CI/CD and DevOps pipelines (Secrets Management). Security, Risk & Compliance Act as SME for PAM best practices, Zero Trust principles, and least privilege. Support internal and external ...

2nd/3rd Line Security Analyst

Location
Reading, England, United Kingdom
processes - enrichment, ticketing, containment - using Python, Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive … equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands‐on SOAR platform configuration Working knowledge of several of: Microsoft Sentinel, Defender XDR, CrowdStrike, Microsoft Entra ID/Azure AD, Microsoft 365, AWS security tooling Experience investigating identity and cloud-based compromise, including ...

Security Architect - Microsoft Security

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
endpoint-focused security architecture for user-facing environments Data protection and compliance capabilities through Microsoft Purview Modern SOC enablement leveraging Defender and Sentinel telemetry alongside broader tooling The secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controls What … including Conditional Access, MFA and Privileged Identity Management (PIM) Support the modernisation of our clients SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sources Conduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including ...

Senior Security Engineer

Location
Gateshead, England, United Kingdom
implementatie en het beheer van specifieke security-oplossingen. Je bent de kartrekker voor onder andere het opzetten van ons nieuwe SOC, Microsoft Sentinel (SIEM) voor actieve threat detection en het beheren van Microsoft Defender for Cloud voor vulnerability management. Je analyseert en volgt security-incidenten op, en bent … ontmoeten! HBO werk- en denkniveau, aangevuld met security-certificeringen (bijv. AZ-500, SC-200); Diepgaande, specialistische kennis van de Azure security-stack; Hands-on ervaring met Microsoft Sentinel voor het opzetten van detectieregels, incident response (SOAR) en threat hunting; Ervaring met Microsoft Defender for Cloud voor ...

Senior SOC Analyst - Leeds

Location
Leeds, England, United Kingdom
dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation. The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected. The customer is committed to development of this improved … groups or targeted ransomware attacks). Understand TCP/IP component layers to identify normal and abnormal traffic Understanding of AWS &/or Azure cloud services Experience of Splunk (with ES) &/or Sentinel, content development experience desirable Non-technical Client side consulting, including stakeholder engagement ...