426 to 450 of 652 SIEM Jobs in England

Pre-Sales Network Architect

Location
Basingstoke, England, United Kingdom
leaders · Experienced at working on bids and large or complex changes · Excellent understanding of a variety of networks and routing protocols · Network management or SIEM designs, tooling or support This contract is based on-site in Baskingstoke, some travel may be required. This is a great opportunity for an experienced ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Location
City Of London, England, United Kingdom
protocols, cryptography, authentication, authorization, and security architecture design principles Hands-on experience with security tools and technologies such as Security Information and Event Management (SIEM), Intrusion Detection System (IDS), Endpoint Detection and Response (EDR), malware analysis tools and email security solutions Knowledge of adversary tactics, attack stages, and detection methods ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Location
Greater London, England, United Kingdom
protocols, cryptography, authentication, authorization, and security architecture design principles Hands‐on experience with security tools and technologies such as Security Information and Event Management (SIEM), Intrusion Detection System (IDS), Endpoint Detection and Response (EDR), malware analysis tools and email security solutions Knowledge of adversary tactics, attack stages, and detection methods ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Hiring Organisation
JP Morgan Chase
Location
London, UK
Employment Type
Full-time
security protocols, cryptography, authentication, authorization, and security architecture design principlesHands-on experience with security tools and technologies such as Security Information and Event Management (SIEM), Intrusion Detection System (IDS), Endpoint Detection and Response (EDR), malware analysis tools and email security solutionsKnowledge of adversary tactics, attack stages, and detection methodsFamiliarity with ...

Cyber Security Manager

Hiring Organisation
Charles Simon Associates Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
Cyber Security Lead (Entra ID, Defender, Purview, SIEM, SOC, Cyber Essentials Plus, ISO 27001, NIST, CISSP, Hands-On, 3rd Party Management) Permanent Home Based Position: Technical Cyber Security Lead Location: Home Based (UK) with occasional travel Salary: £55,000 to £65,000 + strong benefits The short version: A fast … what's in place, decide what stays, what goes and what comes in, and make the case for it. You decide the SOC and SIEM model. Both are outsourced right now. Part of your brief is to work out whether that's the right setup long term or whether ...

Senior Security Operations Engineer New London

Location
Greater London, England, United Kingdom
within a customer-focused SaaS organisation. Strong hands-on experience securing cloud environments (AWS and/or GCP). Deep experience with security monitoring, SIEM platforms, EDR, detection engineering, alert triage and incident response. Experience building or improving operational security capabilities rather than simply operating existing tooling. Experience with security … tooling including SIEM, EDR, DLP, MDM and cloud security platforms. Strong understanding of attacker techniques (MITRE ATT&CK) and how to translate them into effective detections. Experience with vulnerability management and security telemetry. Understanding of modern AI tooling, AI security risks and governance considerations. Good understanding of networking, distributed systems ...

Senior SOC Analyst

Hiring Organisation
Network IT
Location
Hanslope, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 75 Hourly
within a SOC or comparable cyber security operations environment. Experience investigating cyber security alerts and security events using enterprise monitoring techniques. Good knowledge of SIEM platforms, security monitoring tools and log analysis techniques. Understanding of cyber attack methodologies, indicators or compromise, threat intelligence and common attacker techniques. Experience analysing information … environment. Professional certifications such as Microsoft SC-200, CompTIA CySA+, GIAC, GCIA or equivalent Desirable: Experience using Microsoft Sentinel, LogRhythm, or equivalent enterprise SIEM platforms. Experience developing monitoring improvements, detection tuning, or operational process development. Experience supporting Incident Responder activities during major cyber security incidents. Experience contributing to the development ...

Lead SOC Analyst - DV Cleared

Hiring Organisation
Network IT
Location
Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 80 Hourly
within a SOC or comparable cyber security operations environment. Experience leading security monitoring activities and supervising analysts during live operational service. Strong knowledge of SIEM platforms, log analysis, security monitoring technologies and security event investigation. Experience investigating complex cyber security events and determining appropriate escalation paths. Good understanding of cyber … environment. Profession certifications such as Microsoft SC-200, GIAC GCIH, GCIA, CompTIA CySA+ or equivalent. Desirable: Experience using Microsoft Sentinel, LogRhythm, or equivalent enterprise SIEM platforms. Experience developing monitoring improvements, detection tuning, or operational process development. Experience supporting Incident Responder activities during major cyber security incidents. Experience contributing ...

Lead SOC Analyst - DV Cleared

Hiring Organisation
Network IT
Location
Buckinghamshire, Milton Keynes, United Kingdom
Employment Type
Temporary
Salary
£80/hour
within a SOC or comparable cyber security operations environment. Experience leading security monitoring activities and supervising analysts during live operational service. Strong knowledge of SIEM platforms, log analysis, security monitoring technologies and security event investigation. Experience investigating complex cyber security events and determining appropriate escalation paths. Good understanding of cyber … environment. Profession certifications such as Microsoft SC-200, GIAC GCIH, GCIA, CompTIA CySA+ or equivalent. Desirable: Experience using Microsoft Sentinel, LogRhythm, or equivalent enterprise SIEM platforms. Experience developing monitoring improvements, detection tuning, or operational process development. Experience supporting Incident Responder activities during major cyber security incidents. Experience contributing ...

SOC Team Lead

Location
Greater London, England, United Kingdom
frameworks, threat detection, and mitigation strategies Strong leadership and communication skills with the ability to guide teams in high-pressure scenarios Experience working with SIEM, EDR, and vulnerability management platforms Understanding of risk-based prioritisation and regulatory compliance considerations Willingness to support out-of-hours activities based on threat levels … Capable of leading teams, managing complex cybersecurity issues, and ensuring compliance with industry standards. Highest-signal resume keywords Cybersecurity Operations Management Incident Response Frameworks SIEM and EDR Platforms Leadership and Team Guidance Regulatory Compliance Knowledge Hard Skills Incident Response Threat Detection Vulnerability Management Root Cause Analysis Threat Hunting Strategies Cybersecurity ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
Regular team events and knowledge‐sharing sessions create a supportive, engaging place to work. Key Responsibilities Detect and investigate Monitor and triage alerts across SIEM, EDR or XDR, email and web security platforms. Investigate suspicious activity and determine whether escalation is required. Follow SOC runbooks and investigation workflows. Build clear … compromise such as unusual processes, network connections, irregular logon activity or file changes. Hands‐on experience with at least one major security platform (SIEM, EDR or XDR). Familiarity with ticketing tools such as ServiceNow, Salesforce, or JIRA. Familiarity with Windows event logs, authentication logs, basic process trees, and command ...

SOC Analyst - Tier 1

Hiring Organisation
Methods Consulting
Location
London, UK
Employment Type
Full-time
start or grow their career in cybersecurity, with opportunities for advancement and skill development. RequirementsKey Responsibilities: Monitor security alerts and events from Microsoft Defender, SIEM and other security tools. Perform initial triage and analysis of security incidents. Escalate verified incidents to Tier 2/3 analysts as needed. Document incidents … Information Technology, or related field (or equivalent experience).Basic understanding of networking concepts (TCP/IP, DNS, firewalls).Familiarity with security tools such as SIEM, antivirus, IDS/IPS, and endpoint protection. Strong analytical and problem-solving skills. Excellent written and verbal communication skills. Ability to work in a fast ...

SOC Analyst - Tier 1

Location
Greater London, England, United Kingdom
start or grow their career in cybersecurity, with opportunities for advancement and skill development. Key Responsibilities: Monitor security alerts and events from Microsoft Defender, SIEM and other security tools. Perform initial triage and analysis of security incidents. Escalate verified incidents to Tier 2/3 analysts as needed. Document incidents … related field (or equivalent experience). Basic understanding of networking concepts (TCP/IP, DNS, firewalls). Familiarity with security tools such as SIEM, antivirus, IDS/IPS, and endpoint protection. Strong analytical and problem-solving skills. Excellent written and verbal communication skills. Ability to work in a fast-paced ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

Head of Cyber Resilience and Cloud Security

Hiring Organisation
Sanderson Recruitment
Location
South East, United Kingdom
Employment Type
Permanent
Salary
GBP 700 - 950 Daily
Head of Cyber Resilience and Cloud Security Successful Contractor will need to have worked within a Regulated Environment - ideally Financial Services Strong SOC/Siem Background and also Incident Management Leadership experience essential Must have experience in providing cyber operations across data centres and cloud environments eg - strateg click apply ...

Lead Security Engineer: Zero Trust, IAM & SIEM Focus

Location
Greater London, England, United Kingdom
Burns Sheehan Limited is seeking a Lead Security Engineer to join a growing international business. This hands-on role focuses on building and improving security controls across a complex IT estate, rather than pure monitoring ...

Information Security Analyst - Security Operations Centre

Location
Royston, England, United Kingdom
security incidents, proactively hunting for threats, and continually improving security detections, controls and working practices. Key Activities: Monitor and investigate security alerts across SIEM, EDR/XDR, email security, cloud platforms, identity, network security and data loss prevention tooling. Triage security events, determine scope and impact, coordinate containment and remediation … closely related technical security role. Strong investigation, log analysis and correlation skills across endpoint, identity, email, cloud and network telemetry. Experience using SIEM and EDR/XDR platforms to investigate alerts and support containment and remediation. Ability to document investigations clearly, maintain evidence and explain findings to technical and ...

Information Security Analyst - Security Operations Centre

Location
Melbourn, England, United Kingdom
security incidents, proactively hunting for threats, and continually improving security detections, controls and working practices. Key Activities: Monitor and investigate security alerts across SIEM, EDR/XDR, email security, cloud platforms, identity, network security and data loss prevention tooling. Triage security events, determine scope and impact, coordinate containment and remediation … closely related technical security role. Strong investigation, log analysis and correlation skills across endpoint, identity, email, cloud and network telemetry. Experience using SIEM and EDR/XDR platforms to investigate alerts and support containment and remediation. Ability to document investigations clearly, maintain evidence and explain findings to technical and ...

Security Pre-Sales Specialist – Managed Security Solutions

Location
Hull and East Yorkshire, England, United Kingdom
customer engagement. You will collaborate with Account Managers and service delivery teams, while delivering enablement sessions to internal sales teams and staying current with SIEM, XDR, EDR, and the Microsoft Security #J-18808-Ljbffr ...

SOC Analyst

Location
Hereford, England, United Kingdom
and assess alerts escalated by the outsourced SOC; validate their accuracy and determine potential impact. Initial Investigation: Perform first-line investigation using available tools (SIEM, Device Logs, firewall logs and SIEM alerts). User Interaction: Engage with affected end users or asset owners to collect additional information, verify events … including malware, phishing, lateral movement and privilege escalation. Working knowledge of network fundamentals, windows/Linux system logs and authentication systems. Working knowledge of SIEM platforms (e.g. Microsoft sentinel, Splunk, Elastic, QRadar). Awareness of security frameworks and methodologies (NIST CSF, MITRE ATT&CK, ISO27001). #J-18808-Ljbffr ...

Cyber Security Consultant

Hiring Organisation
Gazelle Global Consulting Ltd
Location
South East, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
with three specialist contract opportunities across defensive security, security engineering and offensive testing. The roles cover different areas of the security lifecycle: Security Engineer: SIEM, detection and response engineering, threat hunting, security t click apply for full job details ...

Infra & Security Leader | Hybrid, Multi-Site IT

Location
Milton Keynes, England, United Kingdom
Engineers, ensuring stability, availability and security of a complex technology estate spanning LAN/WAN/WLAN, cloud, IAM, EUC and security tech like SIEM, EDR/XDR and next-generation #J-18808-Ljbffr ...

IT Infrastructure Operations and Security Lead

Location
Greater London, England, United Kingdom
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud‐native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign‐On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD‐WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

Senior Security Architecture & Advisory Lead

Location
Biggin Hill, England, United Kingdom
LevelBlue seeks a Principal Consultant for the AIR team to design, deliver, and optimise security operations capabilities across SIEM, Identity, and EDR. You will lead complex engagements from pre-sales through delivery and handover, acting as a trusted advisor to security leadership and sponsors. The role blends deep technical architecture ...

IT Infrastructure Operations and Security Lead

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...