501 to 525 of 690 SIEM Jobs in England

Senior Security Engineering Consultant

Hiring Organisation
Appcast
Location
Basingstoke, Hampshire, UK
customers improve and automate their SOC functions, tooling, and detection capabilities. You will work across a range of technologies and engagements, from SOAR and SIEM implementation through to vulnerability management, exposure management, and process automation.Your role as Senior Security Engineering ConsultantThe Security Engineering Consultant role sits within the Security Operations … within our Security Engineering function, focused on detection engineering and automation. You will lead the design and delivery of detection and response capabilities across SIEM, XDR and SOAR platforms. This includes building detection rules, developing automations, and creating operational playbooks that support effective SOC outcomes.A key aspect of the role ...

Cyber Security Engineer

Location
Beverley, England, United Kingdom
problem solving and influencing best practice, this role offers real scope to make an impact. What you will be doing Monitor, develop and optimise SIEM and threat detection systems Investigate security incidents, coordinating response, containment and escalation Conduct vulnerability scanning and support remediation across the IT estate Work closely with … Proven experience in a cyber security or infrastructure security role Strong understanding of security principles, threat detection and risk-based thinking Experience with SIEM platforms, vulnerability management tools and detection response technologies such as EDR, XDR or MDR Knowledge of cyber security frameworks such as ISO 27001 or NIST Understanding ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
Operations domain, focused on helping customers improve and automate their SOC functions, tooling, and detection capabilities. Key Responsibilities: Design and deliver detection rulesets across SIEM and XDR platforms Develop and tune detection logic using KQL or equivalent query languages Design detection use cases aligned to MITRE ATT&CK and real … detection approaches Identify gaps in telemetry, logging and enrichment, and provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing ...

IT SOC Analyst

Location
Lutterworth, England, United Kingdom
Westfield Health Cash plan & Lifestyle benefits – Discount on selected stores. Responsibilities Include Monitor information systems for malicious activity using Security Incident and Event Management (SIEM) toolsets. Prioritising according to their criticality and escalating potential or confirmed incidents. Triage and investigate security-related tickets from business users and third-party security … providers. Limiting business disruption from malicious activity by containing and eradicating malicious activity from information systems. Support the development of SIEM and SOAR solutions. Ensure all investigative activity is correctly documented in ticketing systems and followed up with the relevant support teams. Perform research on the latest security/cyber ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
Team Lead Deep understanding of end‐to‐end SOC operations including alert triage, incident response, threat hunting, and case management Extensive experience with SIEM platforms, security orchestration tools, and the broader SOC technology stack Strong knowledge of threat detection methodologies, alert correlation, and incident prioritisation frameworks Expert‐level understanding … tool evaluation, selection, or implementation projects. Experience with security automation, SOAR platforms, or playbook development. Experience working with or partnering with SOC/SIEM/EDR vendors and MSSP (Managed Security Service Provider) vendors. Familiarity with product management principles, agile methodologies, or requirements gathering processes. Experience presenting to executive leadership ...

IT Operations & Cyber Lead

Location
Greater London, England, United Kingdom
and access provisioning in partnership with ITSM. Implement, operate and continually improve cyber defences across endpoints and SaaS platforms: vulnerability management, EDR/SIEM, and incident response. Manage vendors and core infrastructure partners, ensuring cost-effective delivery, timely patching, and contract governance. Maintain secure, high-performance connectivity for offices, labs … Okta or similar) Endpoint Management (Intune, Jamf, or similar) Corporate Networking (LAN/Wi-Fi/VPN/firewalls) Cyber Security Operations (EDR, SIEM, vulnerability management, incident response) Demonstrated ability to define and enforce standards and processes that combine agility with control. Strong vendor and stakeholder-management capability. Excellent communication ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, UK
Employment Type
Full-time
and benefits. Why This Role is ExcitingHigh autonomy: Lead projects from idea to deploymentInnovation-driven: Develop cutting-edge detections beyond standard SIEM rulesCollaborative: Work closely with internal teams and an outsourced SOC partnerMission-focused: Protect critical healthcare data that supports precision medicineKey ResponsibilitiesDesign and develop threat-led detections using threat … Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Employment Businesses Regulations 2003.Keywords: Cyber Threat Engineer, Detection & Response Engineer, SIEM Engineer, Security Detection Engineer,T hreat Hunting Engineer, Security Automation Engineer, SOC Engineer, Incident Response Engineer, Cloud Security Engineer, Network Security Engineer, Cybersecurity Analyst (Threat ...

GreyMatter Specialist

Location
Harrow, England, United Kingdom
uncommon? (not required) Certifications such as Network+, Security+, CySA+ 1-3 years' experience as a Security/Network Administrator or equivalent knowledge Prior SIEM experience and/or administration Hands‐on experience with parsing data, log formats, regular expressions Scripting experience (bash, PowerShell, python) Multiple OS experience (mac, windows) Knowledge … various security methodologies and processes, and technical security solutions (SIEM, IDS/IPS, Firewall Solutions, Offensive Security tools) #J-18808-Ljbffr ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
with strong monitoring, analysis, and incident triage capabilities within a Security Operations Centre environment. SOC Analyst - Key Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate … Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred) Strong knowledge of SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or ArcSight Understanding of network protocols, attack techniques, and cyber threat methodologies Experience investigating security incidents across Windows and ...

Senior Security Architect - SecOps and Vulnerability Management

Location
Greater London, England, United Kingdom
globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities: Design, scale, and manage the enterprise SIEM architecture to provide centralized visibility and high-fidelity threat detection across all corporate and cloud infrastructure. Develop and influence advanced SIEM correlation rules, custom data … testing, remediation quality, and traceability/auditability in line with resiliency expectations. Required Qualifications, Capabilities, and Skills: Hands‐on experience advising and influencing enterprise SIEM platforms (e.g., Microsoft Sentinel, Splunk, Chronicle/SecOps). Must be proficient in writing/reviewing advanced detection logic (KQL, SPL, or YARA rules). ...

Security Monitoring & Detection Engineering Lead

Location
Manchester, England, United Kingdom
Detection Engineering, translating CDO priorities into a clear roadmap for monitoring, detection, investigation and response. Lead the architecture, engineering and continued development of our SIEM solution, ensuring the SIEM remains resilient, scalable, cost-effective and aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding … risks and capability constraints to the Head of Cyber Defence Operations, providing clear recommendations and action plans. Skills & Experience Extensive experience across security monitoring, SIEM engineering, detection engineering and incident response within a complex enterprise environment. A strong record of designing, building, operating and evolving Microsoft Sentinel as a production ...

Security Monitoring & Detection Engineering Lead

Location
Greater London, England, United Kingdom
Detection Engineering, translating CDO priorities into a clear roadmap for monitoring, detection, investigation and response. Lead the architecture, engineering and continued development of our SIEM solution, ensuring the SIEM remains resilient, scalable, cost-effective and aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding … risks and capability constraints to the Head of Cyber Defence Operations, providing clear recommendations and action plans. Skills & Experience Extensive experience across security monitoring, SIEM engineering, detection engineering and incident response within a complex enterprise environment. A strong record of designing, building, operating and evolving Microsoft Sentinel as a production ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
required eventually . A background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote … Threat hunting, analysis, monitoring, Optimising, reporting, alerting and investigation activity utilising a wide variety of security platforms including AI/ML and behavioural analytics, SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the UK Network Perimeter working with the best ...

Security Consultant

Location
Newcastle upon Tyne, England, United Kingdom
authorization models, secrets management and secure SDLC practices. Ability to work with development teams to improve application security posture and shift security left. 3. SIEM Experience Hands-on experience with SIEM platforms for log onboarding, correlation rule creation, alert triage, dashboarding and use-case tuning. Ability to improve visibility, reduce … noise, and align SIEM content to relevant threats and business risks. 4. Organisation/General Security Broad understanding of enterprise security domains including policy, governance, risk, compliance, awareness, third-party risk and operational security. Experience translating business and regulatory requirements into practical security controls and improvement plans. 5. Identity & Access ...

Security Platform Engineer, UK Security Operations

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP).Develop and implement security monitoring and logging strategies. Investigate and analyse security incidents, including identifying root causes, determining … detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. Experience in contributing to security-focused open-source projects or internal security platform tooling. As a part of the UK Security ...

Information Security Manager with Network Engineering Skills

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
similar)Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonusHost End Point Protection (Symantec)Host IPSPreferred Skills and KnowledgeVulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using … and disadvantagesSecurity Zone Design and considerationsNetwork and Security Architecture Design and ConsiderationsUnderstanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etcRisk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigateMalware/Ransomware and ...

Security Platform Engineer, UK Security Operations

Location
Greater London, England, United Kingdom
detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. Experience in contributing to security-focused open-source projects or internal security platform tooling. About the job As a part … ensure security incidents can be swiftly resolved. Responsibilities Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP). Develop and implement security monitoring and logging strategies. Investigate and ...

Lead Security Architecture & SOC Transformation

Location
Greater London, England, United Kingdom
protective monitoring and SOC transformation engagements across enterprise environments. The role demands progression through architecture, engineering, SOC or consultancy roles and delivering enterprise-scale SIEM, EDR/XDR and managed security service changes. The successful candidate will own engagements from discovery and target-state design through migration, assurance and service ...

Junior Platform Engineer - Telemetry, SIEM, Observability

Hiring Organisation
apto solutions
Location
Bristol, United Kingdom
Employment Type
Permanent
Salary
GBP 42,000 Annual
WHO THIS IS FOR You have been working for eighteen months to three years in a hands-on technical role - a platform team, a SOC or security engineering team, an MSP or MSSP, an infrastructure ...

Security Operations Center (SOC) Analyst

Location
Greater London, England, United Kingdom
cybersecurity threats. The job description for a SOC Analyst typically includes the following elements: Key Responsibilities: Continuously monitor security alerts from various sources (SIEM, IDS/IPS, firewalls, antivirus, etc.). Analyze security incidents and events to identify potential threats and vulnerabilities. Use threat intelligence to understand and anticipate cyber … management. Stay up to date with the latest cybersecurity threats, trends, and technologies. Skills and Qualifications: Proficiency with security information and event management (SIEM) systems. Experience with intrusion detection/prevention systems (IDS/IPS), firewalls, and antivirus software. Familiarity with network protocols, operating systems, and security architectures. Strong analytical ...

Presales Executive (Cyber Security)

Location
Leeds, England, United Kingdom
business strategy and technical execution across SEP2’s core portfolio, including the Wingman Managed Services Suite (mXDR, MDR, EDR, Managed Firewalls, vCISO), Google SecOps (SIEM, SOAR, Mandiant Threat Intelligence), and vendor partner technologies (e.g., Check Point, Wiz, SentinelOne, CrowdStrike) and services for our clients. This is a Hybrid position with … designed solutions are scalable, operationally deliverable, and compliant with customer RACI expectations. Demonstrations & Proof of Concepts (POC) Deliver compelling, outcome-based product demonstrations covering SIEM, SOAR, EDR, Cloud Security, and Threat Intelligence platforms. Manage and execute end-to-end technical Proof of Concepts (POCs) for client opportunities, establishing clear success ...

SOC Transformation Principal Consultant, XSIAM Deployment

Location
City Of London, England, United Kingdom
scale SOC modernization. You will guide customers through log migration, detection strategy development, and transformation programs in dynamic enterprise settings. With 10+ years in SIEM/security analytics and 8+ years in SOC tooling, you will partner with executives, sculpt roadmaps, and mentor high-performing teams to deliver measurable security ...

Hybrid Insider Risk & DLP Governance Lead

Location
Nottingham, England, United Kingdom
Insider Risk Director. You will partner with DLP Engineering, review policies, develop detection use cases, and deliver dashboards and reporting using DLP, SIEM, and UEBA. Strong governance and cross-functional collaboration are essential. #J-18808-Ljbffr ...

Network Engineer

Hiring Organisation
TALENTOMETRY LIMITED
Location
Rotherham, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Industrial Network Systems Engineer Company Automation Engineering Consultancy Firm Areas Defence, Factory Automation, UK Critical Infrastructure Tech CCNA, VCP, MCP, SOC, SIEM, SNMP Development Progression and technical development Based Sheffield office and various UK site work Offer Up to £55k + over time + vehicle + private medical Talentometry have ...

Cyber Security Analyst

Location
West of England, England, United Kingdom
improvements in both tooling and processes to ensure services operated are aligned to industry best practice and Boeing enterprise best practices Configure and utilise SIEM, vulnerability management and other security-based tooling. Innovate in the areas of SIEM and SOC and develop best practice. Mentor and oversee development of junior … Required Skills/Experience): 3+ years’ experience in the following areas: Working in a Security Operations Centre (SOC). Working with SIEMs and evaluating SIEM alerts. Experienced in using log aggregation and correlation tools (Splunk preferred). Experienced in interpreting systems, application and network device logs. Experienced in packet capture ...