101 to 125 of 196 Azure Sentinel Jobs

Senior Cloud Security Consultant

Location
Greater London, England, United Kingdom
changes (Exchange Online) to support their migration. Cloud based Identity Management with Entra ID. Supporting the development of managed services, familiar with Azure DevOps and CI/CD pipelines, PowerShell, Terraform, Logic Apps, and Microsoft business apps. You will be intrinsic to customer engagements throughout the project lifecycle … Microsoft Identity Management/IAM You also have a strong foundation across the Microsoft Security solution stack, including on-premise, endpoint and Azure based solutions. Experience and subject matter expertise in Microsoft Azure scoping and specification Can demonstrate relevant knowledge and experience or hold some ...

Cyber Security Lead

Location
Greater London, England, United Kingdom
Doing You'll take technical ownership across a broad security landscape, including: Designing and implementing security architecture across Microsoft 365, Azure, Entra ID, Defender XDR, Sentinel and Purview Building modern security controls around Zero Trust, secure-by-design and automation Leading architecture reviews and threat modelling … external SOC partners Strengthening vulnerability and exposure management using threat intelligence, exploitability and business risk Automating security processes using Python, PowerShell, Logic Apps, Azure Functions and APIs Supporting technical controls and evidence for ISO 27001 and Cyber Essentials Plus Acting as a senior security SME and helping technology ...

Cyber Security Engineer

Location
Aberdeen City, Scotland, United Kingdom
with minimal supervision. Key responsibilities include: Security Monitoring and Operations - Own the day-to-day security operations across Microsoft security technologies including Microsoft Sentinel, Microsoft Defender, Conditional Access, Entra ID, and related Azure security capabilities, strengthening monitoring, detection, protection, and response. You will help shape what … Microsoft security technologies, in depth. Microsoft Defender across endpoint, identity, Office 365, and cloud apps, including triage and tuning of Defender alerts. Microsoft Sentinel, including writing and tuning your own KQL queries, analytic rules, and workbooks. Microsoft Entra ID and Conditional Access policy design, testing, and troubleshooting. Microsoft ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
vulnerability triage workflows that score real risk by exploitability, reachability, and compensating controls rather than raw CVSS. Harden and secure our cloud environment (Azure), partnering with platform engineering on secure configuration, reviewing and remediating vulnerabilities, identity and network controls, posture management, and logging and detection. Strengthen endpoint … control landscape: cloud security, supply‐chain and vulnerability management, endpoint and identity, and detection and response. Are genuinely technical: comfortable in cloud environments (Azure preferred), CI/CD, and at least one scripting language (e.g. Python, Bash, PowerShell), so your controls hold up in engineering reality. Lead with ...

Solutions Architect

Hiring Organisation
Jobot
Location
San Francisco, California, United States
Employment Type
Permanent
Salary
USD 125 Hourly
threat models. Advise on and implement security program strategy, including risk frameworks, maturity assessments, and roadmap development. Support SaaS security platform implementations (CrowdStrike, Sentinel, Splunk, Chronicle, and similar). Apply foundational networking principles and cloud security best practices across AWS, Azure, and GCP environments. Stay current … operations, MDR. Working knowledge of security program development, cyber risk frameworks, and compliance landscapes. Experience with major security platforms (CrowdStrike, Splunk, Microsoft Sentinel, Palo Alto, Chronicle, or similar). Strong understanding of networking fundamentals (TCP/IP, DNS, firewall architecture, segmentation) and cloud infrastructure security. Proven track record ...

SOC Analyst

Hiring Organisation
Tank Recruitment
Location
London, United Kingdom
Employment Type
Contract
Experience with digital forensics and evidence handling. Strong communication, investigation and analytical skills. Desirable Banking, financial services or other regulated-sector experience. Microsoft Sentinel, Defender XDR, Defender for Identity or Defender for Cloud. KQL, PowerShell, Python or similar scripting/automation. Threat hunting, malware analysis and detection engineering. … Azure and Microsoft 365 investigation experience. EnCase, FTK, Velociraptor, Volatility or Wireshark. Certifications such as GCIH, GCIA, GCFA, GNFA, SC-200, CySA+ or CISSP. Qualifications Relevant cyber security experience, degree or equivalent practical experience. Knowledge of NIST, CIS Controls and recognised information security standards. ...

Technical Lead - Cloud & Cyber Service

Location
Aberdeen City, Scotland, United Kingdom
capacity. Broad technical knowledge across cloud, infrastructure, Microsoft 365, identity, digital workplace, cyber security, resilience and managed services. Strong working knowledge of Microsoft Azure, Microsoft 365 and Microsoft Entra ID/Active Directory. Strong understanding of security and compliance principles, technologies and frameworks, including Zero Trust, Microsoft Defender …/Sentinel, NCSC, NIST and ISO 27001. Experience engaging with senior customer stakeholders and acting as a trusted technical advisor. Strong understanding of ITIL‐aligned service management and managed service environments. Excellent leadership, stakeholder management and communication skills, with the ability to communicate effectively at both technical ...

Senior Manager, Cybersecurity

Location
Greater London, England, United Kingdom
operating cybersecurity controls within cloud-based environments.* Strong understanding of Microsoft security technologies, including some combination of: + Microsoft Defender Suite + Microsoft Sentinel + Microsoft Entra ID + Microsoft Purview* Experience with vulnerability management processes and tooling such as Qualys, Tenable, Rapid7, or equivalent platforms.* Knowledge … continuous improvement. **Additional Qualifications for a Competitive Advantage*** Experience within FMCG, manufacturing, supply chain, or consumer goods environments.* Hands-on experience with Microsoft Azure security technologies.* Experience with SIEM, SOAR, threat intelligence, and security monitoring platforms.* Professional certifications such as CISSP, CISM ...

Cyber Engineering Manager

Location
Greater London, England, United Kingdom
environments. Specifically, we’re interested in speaking with candidates who have: Experience leading and mentoring security engineering teams Strong Microsoft security stack expertise (azure, sentinel and defender) Delivered security projects across a range of security environments (cloud, endpoint, identity etc) Managed multiple engineering initiatives alongside ...

Senior Security Engineer - Contract

Location
Greater London, England, United Kingdom
about you. About the teamSecurity Engineering is a team of five covering cloud security, detection, and security operations. They work directly in the Azure estate and are close to the infrastructure, not abstracted behind a policy layer. The team runs Microsoft Sentinel, Defender XDR, and Defender … cloud security, detection tooling, and incident response, without being narrowly specialised. You own meaningful parts of the security stack, contribute hands‐on to Azure cloud hardening, and show up reliably when incidents need investigating or pen test cycles need coordinating. You're energised by visible impact, your work ...

Lead Threat Detection Engineer

Location
Greater London, England, United Kingdom
cases and monitoring Automate manual detection and remediation processes Develop threat intelligence and threat-hunting capabilities Improve security monitoring across AWS, GCP and Azure Work closely with engineering teams to turn security findings into scalable technical improvements Review existing tooling and influence future technology decisions Provide technical leadership … across the security function What we’re looking for: Experience building detections rather than purely responding to SOC alerts Strong SIEM experience – Microsoft Sentinel, Splunk or similar Cloud security experience across AWS, GCP and/or Azure KQL, SPL or similar querying experience Python scripting/ ...

Security Automation and AI SOC Engineer (Torq, Tines, Swimlane)

Hiring Organisation
Adecco
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£750/day
skills. Desirable Experience * Experience designing an AI adoption strategy for a SOC. * Experience with agentic AI or autonomous security workflows. * Experience with Microsoft Sentinel, Splunk or equivalent SIEM platforms. * Experience with cloud security technologies (Azure, GCP or AWS). * Experience with detection engineering and security ...

Cyber Security Specialist

Hiring Organisation
DB Cargo Uk
Location
Doncaster, South Yorkshire, Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
£75,000
Regulations, GDPR and DB Group security requirements. Manage cyber security operations including threat monitoring, incident response, threat intelligence and vulnerability management. Develop Microsoft Sentinel, Microsoft Defender XDR and associated security monitoring capabilities. Provide governance across Azure, AWS, Microsoft 365, Entra ID and Intune environments. Lead information ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
control improvements, and reporting outputs against agreed engagement milestones. Contribute to solution architecture and pre-sales deal shaping for cloud security, Microsoft Defender, Sentinel, Entra, Defender for Cloud, and exposure management opportunities while building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales … engagements. Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack paths, cloud misconfigurations, identity risks, vulnerabilities, and how to prioritise remediation based on exploitability and business ...

Senior SOC Analyst

Location
Greater London, England, United Kingdom
into the Global Security Operations Centre. Review and validate detection logic, thresholds, alert conditions and expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm . Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE ATT&CK . Identify detection … teams. Create investigation workflows, triage processes and escalation procedures for security incidents across Microsoft Defender, CrowdStrike, Cortex XDR, SentinelOne, Carbon Black, Azure, AWS, and GCP environments . Define required enrichment data, threat intelligence inputs and decision‐making criteria. Ensure procedures are practical, repeatable and aligned with global security ...

Principal Security Consultant - DSS

Location
Birmingham, England, United Kingdom
mixed-vendor environments, including SaaS platforms and hybrid cloud estates. Deep hands-on expertise across the Microsoft security and compliance ecosystem, including Microsoft Sentinel, Defender XDR, Purview, Entra ID and Defender for Cloud, from solution design through to implementation and optimisation. Experience designing, onboarding and maturing SOC capabilities … CISSP, CISM, CISA or CySA+, alongside relevant Microsoft security certifications including SC-100 (Microsoft Cybersecurity Architect), SC-200 (Security Operations Analyst), AZ-500 (Azure Security Engineer) or alternates aligned the CrowdStrike ecosystem, such as, CrowdStrike Certified Falcon Administrator (CCFA), CrowdStrike Certified SIEM Engineer (CCSE), CrowdStrike Certified Identity Specialist ...

Cloud Engineer

Location
Greater London, England, United Kingdom
have the opportunity to work on impactful projects across multiple regions and technologies. You'll be; Configuring, maintaining and supporting the Azure estate, including Microsoft Azure cloud services, servers and storage, cloud networking, DNS and email security systems. Administering Entra ID, including Conditional Access, Privileged Identity … Management and hybrid identity components. Designing, deploying and managing cloud‐based infrastructure and services utilising infrastructure‐as‐code, adhering to Azure Policy where configured. Applying security‐first principles in proportion to Jellycat's risk. Ensuring adherence to IT security standards and policies, including patch management, MFA, least‐privilege ...

L3 SOC Analyst

Hiring Organisation
Anson Mccade
Location
Belfast, County Antrim, Northern Ireland, United Kingdom
Employment Type
Permanent
Salary
£60,000
issues. You'll also guide and mentor two analysts, without direct line management, and support the rollout and management of IBM QRadar, Microsoft Sentinel, Defender for Endpoint, Defender for Identity and Defender for Cloud. Key responsibilities Handle security incidents escalated by L1 and L2 analysts, carry out business … Eligible for SC clearance (mandatory) Proven experience at Level 3 SOC Analyst or senior security operations level Strong hands-on experience with Microsoft Sentinel, Microsoft Defender for Endpoint (MDE) and KQL Experience onboarding, configuring, tuning and reporting on SIEM solutions Threat intelligence experience Leadership and mentoring experience Commercial ...

3rd Line Engineer

Location
Greater London, England, United Kingdom
scalability, and performance to meet the growth needs of ME+EM. Investigate and diagnose advanced software, hardware, and network problems, utilising expert knowledge of Azure, Google Cloud and Hyper‐V infrastructure to troubleshoot and identify root causes and implement effective solutions. Collaborate with second‐line engineers, vendors, and other … evaluating their potential impact and recommending innovative solutions to address business needs. Skills IT-related degree or equivalent professional experience CCNA or Microsoft Azure Administrator (AZ-104) certified — essential Experience in a third‐line, cloud, or network infrastructure role Proven experience designing and implementing backup & disaster recovery strategies ...

Security Engineer

Hiring Organisation
CPS Group (UK) Limited
Location
Cardiff, South Glamorgan, United Kingdom
Employment Type
Permanent
Salary
£40000 - £45000/annum
Microsoft security controls, including Defender policies, Entra settings and Exchange Online security Building and maintaining detection capabilities using KQL, Advanced Hunting and Microsoft Sentinel Managing phishing simulation campaigns and supporting vulnerability scanning Reviewing client environments and identifying opportunities to improve their Microsoft 365 security posture Supporting incident response … security technologies, particularly Defender XDR, Entra, Defender for Cloud Apps and Exchange Online Strong knowledge of KQL and Advanced Hunting Experience with Microsoft Sentinel, including analytics rules and Content Hub solutions Good understanding of security protocols, standards and best practices Knowledge of vulnerability management and risk analysis Strong ...

Head of Cloud Engineering

Location
Greater London, England, United Kingdom
complex cloud transformation, security modernisation, and AI adoption programmes. Support pre-sales activities, workshops, proof of concepts, and executive presentations. Technology & Innovation Microsoft Azure Microsoft 365 Security Microsoft Defender Suite Microsoft Sentinel Microsoft Entra Microsoft Copilot for Security Microsoft Purview AWS Security Google Cloud Security … Access) Microsoft 365 Defender (Defender for Endpoint, Defender for Office 365, Defender for Identity, Defender for Cloud Apps) Microsoft Defender for Cloud Microsoft Sentinel Microsoft Copilot for Security Microsoft Intune AWS Security Services Google Cloud Platform Security Zero Trust Architectures DevSecOps CNAP platforms (like Wiz and Palo Alto ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments. Calm under pressure, able to lead effectively during incidents and make ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, UK
Employment Type
Full-time
structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments. Calm under pressure, able to lead effectively during incidents and make ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...

Senior Security Analyst

Location
United Kingdom
intelligence assessments, and comfort peer‐reviewing others’ analytic tradecraft. Working knowledge of cloud security event investigation and cloud detection tuning, particularly across AWS, Azure or GCP environments, including understanding of infrastructure‐level telemetry. Experience framing security findings in risk terms for non‐technical stakeholders—communicating likelihood, impact … expertise to proposals or bids. Tools and practice familiarity Hands‐on experience with at least one major SIEM platform (for example, Splunk, Microsoft Sentinel or Elastic Security) including writing and tuning detection rules. Familiarity with threat intelligence platforms, OSINT tooling or indicator lifecycle management in an operational context. ...