126 to 150 of 198 Azure Sentinel Jobs

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...

Senior Security Analyst

Location
United Kingdom
intelligence assessments, and comfort peer‐reviewing others’ analytic tradecraft. Working knowledge of cloud security event investigation and cloud detection tuning, particularly across AWS, Azure or GCP environments, including understanding of infrastructure‐level telemetry. Experience framing security findings in risk terms for non‐technical stakeholders—communicating likelihood, impact … expertise to proposals or bids. Tools and practice familiarity Hands‐on experience with at least one major SIEM platform (for example, Splunk, Microsoft Sentinel or Elastic Security) including writing and tuning detection rules. Familiarity with threat intelligence platforms, OSINT tooling or indicator lifecycle management in an operational context. ...

Senior Cyber Security Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
for5+ years of hands-on experience in a Security Operations, SOC, or equivalent operational security rolePractical experience operating modern security tooling SIEM (e.g. Sentinel), Data Loss Prevention (DLP) tools, EDR, and vulnerability management platformsSolid understanding of security operations workflows: alert triage, incident handling, and vulnerability/finding remediation … Python, KQL)Experience coordinating remediation across multiple engineering or platform teams, and keeping work moving to closureWorking knowledge of cloud environments (e.g. AWS, Azure and GCP) and how security operations apply across cloud and SaaSFamiliarity with common frameworks and standards such as PCI DSS, NIST ...

Senior Cloud Security Architect

Location
Greater London, England, United Kingdom
centric Managed Security Services Provider (MSSP), you will lead the design, implementation, and optimisation of cloud, data, and AI security solutions across Microsoft Azure, Microsoft 365, and the wider Microsoft Security portfolio. You will help customers strengthen their security posture through the adoption of modern security architectures, Zero … align security strategy with business goals, and accelerate their Cloud and Data security efforts across the board. Advise clients on securing M365, Microsoft Azure Cloud, cyber security and UC platforms. This includes mapping requirements to best-in-class implementations, selecting the most appropriate solutions, and evaluating non-functional ...

IAM Consultant/Developer (Microsoft Entra ID) - Contract role, UK, fully remote

Location
United Kingdom
clean handover once migration is complete. What We're Looking For Essential: Proven experience delivering a migration onto Microsoft Entra ID (formerly Azure AD) — from on-prem AD DS or from a third-party IdP (Okta, Ping, ForgeRock, etc.). Strong working knowledge of Conditional Access, Zero Trust … Graph PowerShell SDK. Comfortable working independently and communicating migration risk/status to non-technical stakeholders. Desirable: KQL for log analysis in Microsoft Sentinel or Azure Monitor. Experience with Entra ID B2B/B2C. Background with an alternative IAM platform (ForgeRock, Ping, Okta) — genuinely useful ...

IAM Consultant/Developer - UK, fully remote

Location
Greater London, England, United Kingdom
clean handover once migration is complete. What We're Looking For Essential: Proven experience delivering a migration onto Microsoft Entra ID (formerly Azure AD) — from on-prem AD DS or from a third-party IdP (Okta, Ping, ForgeRock, etc.). Demonstrable Experience owning migrations of large user bases … Graph PowerShell SDK. Comfortable working independently and communicating migration risk/status to non-technical stakeholders. Desirable: KQL for log analysis in Microsoft Sentinel or Azure Monitor. Experience with Entra ID B2B/B2C. Background with an alternative IAM platform (ForgeRock, Ping, Okta) — genuinely useful ...

SOC Analyst (MS Sentinel & Defender, SC Cleared)

Location
Harlow, England, United Kingdom
Analyst (MS Sentinel & Defender, SC Cleared) | Contract Length: 3 month initial contract Location: Harlow Hybrid initially (1 day per week onsite), potential for remote after first week Inside IR35 Clearance Required: SC clearance - candidates must have valid clearance We're looking for an experienced SOC Analyst Consultant … security team within a large enterprise environment. Key Requirements: Demonstrable experience as a SOC Analyst Strong hands-on experience with SIEM, including Microsoft Sentinel Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable ...

CyberArk SME

Location
Wokingham, England, United Kingdom
offboarding Password vaulting, rotation, reconciliation Session monitoring, recording, and auditing Manage privileged access for: Windows, Linux/Unix, Network devices Databases Cloud platforms (Azure) Service, application, and DevOps accounts Integration & Automation Integrate CyberArk with: Active Directory/LDAP SIEM tools (Sentinel) Ticketing tools (ServiceNow) Identity platforms … Azure AD, SSO solutions) Develop and maintain automation scripts using: REST APIs PowerShell/Python Support PAM integrations for CI/CD and DevOps pipelines (Secrets Management). Security, Risk & Compliance Act as SME for PAM best practices, Zero Trust principles, and least privilege. Support internal and external ...

Contract Senior Security Engineer: Azure & SOC

Location
Greater London, England, United Kingdom
senior security engineer to bridge cloud security, detection tooling, and incident response. You will own meaningful parts of the security stack, contribute to Azure hardening, and coordinate pen-test cycles. The role is a contract position with day-one impact and independent work expectations. You’ll bring hands … SIEM experience (Microsoft Sentinel preferred), Azure security knowledge, Terraform/Bicep for security tooling, and a proactive approach #J-18808-Ljbffr ...

2nd/3rd Line Security Analyst

Location
Reading, England, United Kingdom
processes - enrichment, ticketing, containment - using Python, Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive … equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands‐on SOAR platform configuration Working knowledge of several of: Microsoft Sentinel, Defender XDR, CrowdStrike, Microsoft Entra ID/Azure AD, Microsoft 365, AWS security tooling Experience investigating identity and cloud-based compromise, including ...

Security Architect - Microsoft Security

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
endpoint-focused security architecture for user-facing environments Data protection and compliance capabilities through Microsoft Purview Modern SOC enablement leveraging Defender and Sentinel telemetry alongside broader tooling The secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controls What … including Conditional Access, MFA and Privileged Identity Management (PIM) Support the modernisation of our clients SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sources Conduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including ...

Security Architect - Microsoft Security Platform

Location
Greater London, England, United Kingdom
endpoint-focused security architecture for user-facing environments Data protection and compliance capabilities through Microsoft Purview Modern SOC enablement leveraging Defender and Sentinel telemetry alongside broader tooling The secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controls What … including Conditional Access, MFA and Privileged Identity Management (PIM) Support the modernisation of Colt’s SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sources Conduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including ...

Senior Security Engineer

Location
Gateshead, England, United Kingdom
implementatie en het beheer van specifieke security-oplossingen. Je bent de kartrekker voor onder andere het opzetten van ons nieuwe SOC, Microsoft Sentinel (SIEM) voor actieve threat detection en het beheren van Microsoft Defender for Cloud voor vulnerability management. Je analyseert en volgt security-incidenten op, en bent … ontmoeten! HBO werk- en denkniveau, aangevuld met security-certificeringen (bijv. AZ-500, SC-200); Diepgaande, specialistische kennis van de Azure security-stack; Hands-on ervaring met Microsoft Sentinel voor het opzetten van detectieregels, incident response (SOAR) en threat hunting; Ervaring met Microsoft Defender for Cloud voor ...

Senior SOC Analyst - Leeds

Location
Leeds, England, United Kingdom
dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation. The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected. The customer is committed to development of this improved … groups or targeted ransomware attacks). Understand TCP/IP component layers to identify normal and abnormal traffic Understanding of AWS &/or Azure cloud services Experience of Splunk (with ES) &/or Sentinel, content development experience desirable Non-technical Client side consulting, including stakeholder engagement ...

Senior SOC Analyst - Manchester

Location
Manchester, England, United Kingdom
dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation. The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected. The customer is committed to development of this improved … groups or targeted ransomware attacks). Understand TCP/IP component layers to identify normal and abnormal traffic Understanding of AWS &/or Azure cloud services Experience of Splunk (with ES) &/or Sentinel, content development experience desirable Non-technical Client side consulting, including stakeholder engagement ...

IT Cyber Security Architect 325032

Location
United Kingdom
where designs do not meet required standards. Represent Littlefish Group at CAB and design authority forums, assessing changes for security impact. Shape Microsoft Sentinel architecture across complex customer environments. Produce high and low-level security designs, control mappings and technical decision records. Deliver security assessments, architecture reviews … Microsoft 365 and Azure posture reviews. Design and implement layered security controls from initial requirements through to testing and handover. Provide technical escalation, mentoring and guidance to CSOC and project engineering teams. Support pre-sales activity and contribute reusable security designs, standards and playbooks to the Littlefish Group ...

Senior SOC Analyst (Outside IR35)

Location
West Midlands, England, United Kingdom
within a SOC environment with experience mentoring more junior staff. You will have the following experience: Industry standard Security qualifications (SANS GCIH, CISSP, Azure, Splunk, etc) or equivalent. Strong experience with SIEM technologies within a SOC (Splunk and MS Sentinel experience is highly desirable) Hands ...

Senior Infrastructure Engineer

Location
Lisburn, Northern Ireland, United Kingdom
Nice to have but not essential: Experience with Fortinet technologies including FortiGate, FortiClient EMS, FortiManager and FortiAnalyzer. Experience with Microsoft Defender XDR, Microsoft Sentinel or similar security platforms. Experience with VMware vSphere, Hyper-V and Veeam Backup & Replication. Microsoft Azure, Security, Modern Workplace or Infrastructure certifications. ...

Security Monitoring & Detection Engineering Lead

Location
Manchester, England, United Kingdom
engineering, technical investigation and incident response. This is a hands‐on technical role responsible for the architecture, engineering and operational performance of Microsoft Sentinel and the wider security monitoring estate. The role would particularly suit an experienced detection engineering, security operations, red‐team, purple‐team or offensive‐security … aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding of security telemetry across on-premises, Microsoft Azure, AWS and third-party services, ensuring log sources address genuine visibility gaps and provide reliable value for detection and investigation. Own the detection engineering lifecycle ...

Security Monitoring & Detection Engineering Lead

Location
Greater London, England, United Kingdom
engineering, technical investigation and incident response. This is a hands‐on technical role responsible for the architecture, engineering and operational performance of Microsoft Sentinel and the wider security monitoring estate. The role would particularly suit an experienced detection engineering, security operations, red‐team, purple‐team or offensive‐security … aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding of security telemetry across on-premises, Microsoft Azure, AWS and third-party services, ensuring log sources address genuine visibility gaps and provide reliable value for detection and investigation. Own the detection engineering lifecycle ...

Security Engineer

Location
Greater London, England, United Kingdom
appliance and MCP gateway, and record every tool call an agent attempts. That signal needs to land natively in Splunk, Microsoft Sentinel, CrowdStrike, XSIAM, Chronicle and Elastic, and drive response through Torq, Tines, ServiceNow SecOps and Logic Apps. This is greenfield, and it is not an architecture-only … Build a cursor-paginated pull and export API to carry bulk SIEM and XDR telemetry Build native connectors for destinations such as Microsoft Sentinel, Splunk and XSIAM Build self-service API key and webhook management in the portal, including scoping, rotation, revocation and audit Extend our tenant-scoped ...

Forward Deployed Implementation Engineer (London)

Location
United Kingdom
role for engineers who love seeing things work. Job Responsibilities Execute end-to-end platform deployments across Google SecOps and/or Microsoft Sentinel for new customers Onboard log sources, configure data connectors, and validate ingestion pipelines Load and deploy existing TENEX content into customer environments — including parsers … cybersecurity, IT operations, cloud engineering, or a related technical field Hands-on experience with SIEM platforms, particularly Google SecOps and/or Microsoft Sentinel Experience with log source onboarding, data connectors, and ingestion pipeline configuration Familiarity with data pipeline technologies such as Bindplane, OpenTelemetry, Cribl, or similar Scripting ...

Senior 3rd Line Infrastructure Engineer

Hiring Organisation
RECRUIT123 LIMITED
Location
Walsall, West Midlands, United Kingdom
Employment Type
Permanent
Salary
£40,000
client environment In-depth knowledge of Windows Server and Active Directory Strong Microsoft 365 administration and troubleshooting experience Experience with Microsoft Intune and Azure cloud infrastructure Strong networking knowledge including DNS, DHCP, VPNs and firewalls Excellent troubleshooting and problem-solving skills A structured approach to technical documentation Excellent … Scoping, planning and delivering infrastructure projects Managing on-premise to cloud migrations and hardware refreshes Standardising and securing client environments using Microsoft Intune, Azure/Entra ID and Microsoft 365 Supporting and maintaining physical servers, Hyper-V/VMware environments and network infrastructure Delivering advanced troubleshooting and resolving ...

MICROSOFT PURVIEW SECURITY CONSULTANT

Hiring Organisation
Adecco
Location
City of London, Greater London, United Kingdom
Employment Type
Permanent
Salary
£45000 - £52000/annum Benefits
skills. * Ability to gather and translate business requirements into technical solutions. * Willingness to travel to client sites as required. * Microsoft Security, Compliance or Azure certifications. * Experience with Microsoft Defender technologies. * Understanding of GDPR, ISO 27001 and other compliance frameworks. * Knowledge of Zero Trust security principles. * Experience delivering Microsoft … Retention Policies, eDiscovery, eDiscovery Premium, Insider Risk Management, Communication Compliance, Microsoft Defender, Defender XDR, Defender for Office 365, Defender for Cloud Apps, Microsoft Sentinel, Microsoft Entra ID, Azure Active Directory, Conditional Access, Identity and Access Management (IAM), Zero Trust, GDPR, ISO 27001, Cyber Essentials, Risk Management ...

Security Architect - Microsoft Security Platform

Hiring Organisation
Colt Telecom
Location
London, UK
Employment Type
Full-time
Identity-driven and endpoint-focused security architecture for user-facing environmentsData protection and compliance capabilities through Microsoft PurviewModern SOC enablement leveraging Defender and Sentinel telemetry alongside broader toolingThe secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controlsWhat … including Conditional Access, MFA and Privileged Identity Management (PIM)Support the modernisation of Colt's SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sourcesConduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including defining ...