APIs, and Case Management tools for data enrichment. Key Skills and Experience Experience contributing to large-scale, sprint-based, security automation and detection engineering projects in a SOC/Cyber Defense or similar environment Recent hands-on experience with managing and implementing Microsoft Sentinel log sources and detection, with knowledge of the related technical best practices in Sentinel and … and platforms and their integration into SOC operations. Responsibilities: Lead technical migration of log sources into Microsoft Sentinel SIEM. Build security automations, logging, and SIEM detections to improve the CyberDefence Operation s efficiency, scalability, and incident response capabilities. Design, implement, and maintain automated workflows and playbooks to streamline CDO operations, including incident response, threat hunting, cyber threat intelligence and vulnerability management. Collaborate with CyberDefence Operation analysts to identify repetitive tasks and automate them to improve operational efficiency. Collaborate with Threat Intelligence, Incident Response, and Attack Surface Management to build and tune robust SIEM detections for both proactive and reactive response actions. Continuously evaluate automation solutions for performance, reliability, and scalability, making improvements More ❯
APIs, and Case Management tools for data enrichment. Key Skills and Experience Experience contributing to large-scale, sprint-based, security automation and detection engineering projects in a SOC/Cyber Defense or similar environment Recent hands-on experience with managing and implementing Microsoft Sentinel log sources and detection, with knowledge of the related technical best practices in Sentinel and … and platforms and their integration into SOC operations. Responsibilities: Lead technical migration of log sources into Microsoft Sentinel SIEM. Build security automations, logging, and SIEM detections to improve the CyberDefence Operation’s efficiency, scalability, and incident response capabilities. Design, implement, and maintain automated workflows and playbooks to streamline CDO operations, including incident response, threat hunting, cyber threat intelligence and vulnerability management. Collaborate with CyberDefence Operation analysts to identify repetitive tasks and automate them to improve operational efficiency. Collaborate with Threat Intelligence, Incident Response, and Attack Surface Management to build and tune robust SIEM detections for both proactive and reactive response actions. Continuously evaluate automation solutions for performance, reliability, and scalability, making improvements More ❯
APIs, and Case Management tools for data enrichment. Key Skills and Experience Experience contributing to large-scale, sprint-based, security automation and detection engineering projects in a SOC/Cyber Defense or similar environment Recent hands-on experience with managing and implementing Microsoft Sentinel log sources and detection, with knowledge of the related technical best practices in Sentinel and … and platforms and their integration into SOC operations. Responsibilities: Lead technical migration of log sources into Microsoft Sentinel SIEM. Build security automations, logging, and SIEM detections to improve the CyberDefence Operation’s efficiency, scalability, and incident response capabilities. Design, implement, and maintain automated workflows and playbooks to streamline CDO operations, including incident response, threat hunting, cyber threat intelligence and vulnerability management. Collaborate with CyberDefence Operation analysts to identify repetitive tasks and automate them to improve operational efficiency. Collaborate with Threat Intelligence, Incident Response, and Attack Surface Management to build and tune robust SIEM detections for both proactive and reactive response actions. Continuously evaluate automation solutions for performance, reliability, and scalability, making improvements More ❯
the strategic direction of Arm's Detect & Response function, delivering outstanding performance and ensuring we are resilient against an evolving threat landscape! In addition to operations, you will lead cyber crisis management, C-Suite level stress testing, team development, and top-level cybersecurity thought leadership. Responsibilities: Own and deliver the strategic roadmap for cyber incident and vulnerability detection … while maximizing data insights and intelligence to inform operational and strategic decision-making. Drive collaboration across Arm and external vendors as we embed a shared understanding to deliver our cyber strategies. Provide strategic input and collaborate with IT, Enterprise Security, and business leadership to inform security roadmaps, governance, and operating models. Maintain a balanced, comprehensive framework of processes, governance More ❯
You will need to login before you can apply for a job. SOC Shift Lead – CyberDefence & Security Location: On–site, Hemel Hempstead Salary: GBP58K – GBP65K + Benefits Security Clearance: Must be eligible for DV Clearance ? Shifts: 2 Days (6AM–6PM), 2 Nights (6PM–6AM), 4 Days Off Lead the Future of CyberDefence Join a … high–performing Cyber Security team at the forefront of Aerospace, Defence, and National Security. We're on a growth trajectory and looking for a SOC Shift Lead to take charge, drive innovation, and protect critical infrastructure. Your Impact: Lead the SOC: Monitor, triage, and investigate security incidents to safeguard critical assets. Threat Intelligence: Analyse network traffic, logs, and … system events to detect vulnerabilities. People Leadership: Manage and mentor analysts, shaping the future of cyber defence. Optimise Security Operations: Enhance SOC tools , improve detection rules, and refine security processes using MITRE ATT&CK . Represent the SOC: Engage with key partners and stakeholders. What You Bring: ? SOC Expertise: Proven experience in Security Operations Centres with hands–on threat More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Arm Limited
architectural design and implementation of security solutions that span cloud-native, hybrid, and on-premises environments, with a focus on AWS, Azure, and GCP cloud deployments. Collaborate closely with CyberDefence Operations, Security Technology Operations, Governance, Risk and Compliance, IT Infrastructure, Engineering, Compliance and AI teams to integrate security tooling and sophisticated security capabilities into business-critical systems. … CK) and semiconductor-specific regulatory requirements including export control and SoX compliance. Drive innovation by utilising AI and machine learning technologies to enhance threat detection, incident response, and overall cyber defense posture. Partner with senior leadership to communicate security architecture roadmaps, risk mitigation strategies, and compliance postures. Champion a culture of continuous improvement, cross-team collaboration, and technical excellence More ❯
are integrated effectively into day-to-day operations, and that operational feedback is embedded into project delivery. Ultimately, the role plays a key part in strengthening the organisation’s cyberdefence posture by bridging the gap between threat detection, technical resolution, and continuous improvement. As a Security Operations Engineer, you will be: Act as the primary point of More ❯
experienced SOC Shift Lead to join our on-site team in Hemel Hempstead. In this role, you’ll lead a team of Security Operations Centre (SOC) Analysts, delivering critical cyberdefence capabilities for a high-profile client. You’ll take ownership of incident detection, triage, and response activities, while helping drive continual service improvements and mentoring a diverse … talented SOC team. What’s in it for you? Take a leadership role in a mission-critical cyberdefence function. Work with industry-leading tools including Microsoft Sentinel and Splunk. Develop your career while supporting a nationally significant client in a secure environment. Responsibilities: Lead shift-based SOC operations and provide line management to analysts. Triage, monitor, and More ❯
experienced SOC Shift Lead to join our on-site team in Hemel Hempstead. In this role, you’ll lead a team of Security Operations Centre (SOC) Analysts, delivering critical cyberdefence capabilities for a high-profile client. You’ll take ownership of incident detection, triage, and response activities, while helping drive continual service improvements and mentoring a diverse … talented SOC team. What’s in it for you? Take a leadership role in a mission-critical cyberdefence function. Work with industry-leading tools including Microsoft Sentinel and Splunk. Develop your career while supporting a nationally significant client in a secure environment. Responsibilities: Lead shift-based SOC operations and provide line management to analysts. Triage, monitor, and More ❯
SOC role where your expertise makes a real-world impact defending country critical technology. I'm looking for a number of Level 2 SOC Analysts to join an elite cyberdefence team within one of the UK’s most trusted consultancies, supporting high-profile clients across defence, aerospace, and national security. Whether you’re an experienced analyst … of core network protocols and modern security architecture DV clearance eligibility (must have lived in the UK for 10+ years) Aa a SOC analyst you’ll be on the cyber frontlines, protecting systems that can’t afford to go down. This isn’t just another SOC job it’s a chance to defend national infrastructure and grow your career More ❯
plan, life assurance, pension scheme, and a generous flexible benefits fund Key Requirements We are seeking a highly capable SOC Shift Lead to support critical infrastructure within the Aerospace, Defence and Security sector. You will lead from the front—mentoring analysts, managing incident triage, and driving operational improvements in a mission-critical environment. You will lead a team of … will ensure the smooth operation and continual enhancement of SOC processes and personnel. You will play a pivotal role in protecting client systems and guiding the team through sophisticated cyberdefence challenges. Your responsibilities will include: Monitoring, triaging, and investigating alerts across host and network security systems Performing deep analysis of traffic, logs, and system events to identify … England, United Kingdom . London, England, United Kingdom 6 hours ago London, England, United Kingdom 7 hours ago High Wycombe, England, United Kingdom 6 hours ago MGS - Ministry of Defence Guard Service – Security Officer - Shift worker - Northwood Eastbury, England, United Kingdom 7 hours ago London, England, United Kingdom 1 day ago London, England, United Kingdom £33,546.00-£33,546.00 More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Walsh Employment
assurance, pension scheme, and a generous flexible benefits fund Key Requirements We are seeking a highly capable Security Operations Centre Shift Lead to support critical infrastructure within the Aerospace, Defence and Security sector. You will lead from the frontmentoring analysts, managing incident triage, and driving operational improvements in a mission-critical environment. This is a shift-based position , following … will ensure the smooth operation and continual enhancement of SOC processes and personnel. You will play a pivotal role in protecting client systems and guiding the team through sophisticated cyberdefence challenges. Your responsibilities will include: Monitoring, triaging, and investigating alerts across host and network security systems Performing deep analysis of traffic, logs, and system events to identify More ❯
SOC role where your expertise makes a real-world impact defending country critical technology. I'm looking for a number of Level 2 SOC Analysts to join an elite cyberdefence team within one of the UK’s most trusted consultancies, supporting high-profile clients across defence, aerospace, and national security. Whether you’re an experienced analyst … of core network protocols and modern security architecture DV clearance eligibility (must have lived in the UK for 10+ years) Aa a SOC analyst you’ll be on the cyber frontlines, protecting systems that can’t afford to go down. This isn’t just another SOC job it’s a chance to defend national infrastructure and grow your career More ❯
purchase products at the point of sale. Role Overview Location: Warrington What you’ll be doing: Monitor and respond to real-time security alerts and incidents Collaborate with internal cyber teams, including GRC and CyberDefence, to analyse, escalate, and manage security incidents effectively Utilise a range of security tools such as SIEM, IDS, antivirus, vulnerability scanners More ❯
critical systems? We're hiring for a SOC Analyst (Level 2) to join a high-performing team within a leading consultancy that operates at the heart of cybersecurity for defence, aerospace, and national security . Whether you're an experienced SOC professional or a sharp Junior ready to step up, this is your chance to work with cutting-edge … We need: Solid grasp of network protocols and security architecture DV clearance eligibility (UK residency for 10+ years) Why this role? You’ll be working on the frontlines of cyberdefence, protecting systems that can’t afford to fail. #J-18808-Ljbffr More ❯
Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive, AI-native approach to security. … products, Building and maintaining greenfield services, Researching and implementing features that align with the Cloud Security product feature set, Investigating and furthering our unique methodology in defending against unknown cyber-attacks, Innovation is of paramount importance and as such, creativity in approach is encouraged as much as traditional project-based development. What experience do I need: We welcome applications More ❯
Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive, AI-native approach to security. … ideas to further improve Darktrace's services and offerings, Improving the performance and competencies of existing products and platforms, Investigating and furthering our unique methodology in defending against unknown cyber-attacks. Innovation is of paramount importance and as such, creativity in approach is encouraged as much as traditional project-based development. This is a hybrid role, and the expectation … solving immediate challenges, Comfortable working autonomously and taking independent decisions as well as having the ability to work cooperatively within a team, Able to show knowledge or interest in cyber-security/malware forensics, Experienced with statistical analysis of static or dynamic systems, Familiar with Docker, Knowledgeable about cloud computing environments would be beneficial. 23 days' holiday + all More ❯
Chelmsford, Essex, United Kingdom Hybrid / WFH Options
BAE Systems (New)
Location(s): UK, Europe & Africa : UK : Great Baddow BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments. BAE Systems Digital Intelligence Defence … You will have the opportunity to work with these colleagues in multi-disciplinary teams and to work on a wide range of data science topics for customers across the defence, security and commercial sectors as well as on internal BAE Systems AI programmes. You will also have the opportunity to maintain strong links with academic partners and SMEs as … to develop solutions for practical applications of ML in these domains. You will have a proven record of successful proposal writing and delivery to funding bodies relevant to the Defence sector. You should have existing skills in Machine Learning (ML), will need to be a proficient programmer in Python, with extensive experience in the use of libraries and toolboxes More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Darktrace
Engineer, Security Architecture (Graduate) Cambridge Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive More ❯
Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive, AI-native approach to security. … on a wide variety of projects and with a diverse toolset. As a C++ focused Software Engineer, you will be responsible and improving our ability to stop in-progress cyber-attacks using proprietary software and third-party integrations. In this role you will be working daily with core software modules which are written in C++ and be confident working … you'll be: Comfortable working autonomously and taking independent decisions as well as having the ability to work cooperatively within a team, Able to show knowledge or interest in cyber-security/malware forensics, Experienced with statistical analysis of static or dynamic systems, Knowledgeable about cloud computing environments would be beneficial. Benefits we offer: 23 days' holiday + all More ❯
Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive, AI-native approach to security. More ❯
Software Engineer (Full Stack, Machine Learning) Cambridge Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered More ❯
Location(s): UK, Europe & Africa : UK : Great Baddow BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments. BAE Systems Digital Intelligence Defence … You will have the opportunity to work with these colleagues in multi-disciplinary teams and to work on a wide range of data science topics for customers across the defence, security and commercial sectors as well as on internal BAE Systems AI programmes. You will also have the opportunity to maintain strong links with academic partners and SME partners … to develop solutions for practical applications of ML in these domains. You will have a proven record of successful proposal writing and delivery to funding bodies relevant to the Defence sector. You should have existing skills in Machine Learning (ML), will need to be a proficient programmer in Python, with extensive experience in the use of libraries and toolboxes More ❯
Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive, AI-native approach to security. More ❯
Darktrace has more than 2,500 employees located globally. Founded by mathematicians and cyberdefence experts in 2013, Darktrace is a global leader in cyber security AI, delivering complete AI-powered solutions in its mission to free the world of cyber disruption. For over a decade, Darktrace has pioneered a proactive, AI-native approach to security. More ❯