101 to 125 of 347 SIEM Jobs in London

Security Operations Automation Engineer

Location
Greater London, England, United Kingdom
Chronicle/Siemplify, Microsoft Sentinel, Palo Alto XSOAR, Torq, Tines). Hands‐on experience with APIs and security tool integrations. Understanding of security technologies (SIEM, EDR, VM, Networking & Firewalls, IDS/IPS, Cloud, Web proxy, etc.). The role hybrid with travel to their London office 2-3 days ...

Infrastructure Engineer - Azure / Microsoft / Security

Hiring Organisation
Quant Capital
Location
London, UK
Employment Type
Full-time
/Entra ID, Group Policy, O365, IntuneSolid networking foundations: TCP/IP, VLANs, DNS, VPNs, Wi-FiSecurity engineering knowledge: System hardening, endpoint security, SIEM, incident handlingISO27001, GDPR or PCI compliance exposureCertificates (SSL/TLS), WAF/DDoS, email securityAzure engineering background: Governance, networking, identity and security configurationOwnership mindset and strong ...

AVP Cyber Security Engineer

Location
Greater London, England, United Kingdom
remediation. Lead security tooling integrations and orchestration initiatives. Develop and enhance SOAR capabilities. Support identity-based threat detection, privileged access management, and session monitoring. SIEM Engineering & Security Monitoring Design, implement, and maintain SIEM workspaces, data connectors, analytics rules, dashboards, and playbooks. Develop advanced threat hunting queries and investigation workflows. Onboard … initiatives. Required Experience 5+ years' experience in Security Engineering, Security Operations, Security Automation, or a related cyber security discipline. Strong hands-on experience with SIEM platforms, EDR solutions, and detection engineering. Experience developing and supporting SOAR capabilities. Solid understanding of Active Directory security and Windows event logging. Proficiency with PowerShell ...

Senior Cyber Incident Response Analyst - DFIR - Incident Response/Threat Detection, London, £70-80k

Hiring Organisation
Nicoll Curtin Technology
Location
London, UK
Employment Type
Full-time
activities, developing detection capabilities and supporting the maturity of the organisation's incident response function. Key Skills Incident Response Cyber Security Monitoring Threat Hunting SIEM Platforms MITRE ATT&CK Digital Forensics Network Analysis Vulnerability Management Cloud Security Requirements Proven experience within Incident Response or Cyber Defence Experience investigating complex cyber ...

Senior Data Privacy & BigID Consultant

Location
City Of London, England, United Kingdom
platforms: AWS (S3, RDS, Glue), Azure (ADLS, Purview), GCP (BigQuery) Data cataloguing tools — Collibra, Alation, Informatica ETL pipelines and data lineage concepts Security & Privacy SIEM/DLP tools integration (Splunk, Microsoft Purview) Identity & Access Management basics (IAM, RBAC) Encryption, tokenization, and data masking techniques Scripting & Automation Python/Bash ...

Executive Strategist, UK Public Sector (Remote, GBR)

Location
Greater London, England, United Kingdom
efficiency and drive business outcomes. Deep technical knowledge of modern cybersecurity technologies including endpoint security, XDR/EDR, cloud security, identity and access management, SIEM/log management, incident response, and threat intelligence Experience with security transformation programs, including Zero Trust architecture, cloud migration security, legacy estate modernisation, and security ...

SOC Architect - SC Cleared

Hiring Organisation
Stott & May Professional Search Limited
Location
London, UK
skills & experience Proven experience in SOC Architecture within a senior role. Experience designing, building, and deploying SOC technology, including at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong understanding of Security Operations best practice, secure architecture principles, and risk assessment. Experience with on-premises and cloud ...

Senior SOC Analyst — Threat Detection & Incident Response

Location
City Of London, England, United Kingdom
detect, assess, and respond to threats, coordinating with cross-functional teams to improve security controls and awareness. The role requires hands-on experience with SIEM, IDS, and EDR, plus problem-solving skills to drive rapid uplifts in security posture. #J-18808-Ljbffr ...

Lead DevOps Engineer

Location
Greater London, England, United Kingdom
security, having worked within a compliant environment, and comfortable in security audits and risk conversations.* Comfortable with security tooling such as CrowdStrike and Rapid7, SIEM/SOC.* Observability ownership with Datadog (or equivalent), having defined SLOs, built the dashboards and set the alerting culture.* Experience leading or mentoring a DevOps ...

SOC Shift Lead

Location
Greater London, England, United Kingdom
roles. Certifications (preferred): GCIA, GCIH, CompTIA CySA+, Microsoft SC‐200, or Splunk Certified Power User. Essential Skills Strong analytical mindset, in-depth knowledge of SIEM/EDR tools, malware behaviour, and incident handling methodologies. #J-18808-Ljbffr ...

Director, Cyber Defense

Hiring Organisation
Kyndryl
Location
London, UK
Employment Type
Full-time
detection-as-code discipline across the detection lifecycle: version-controlled content, release rigor, automated testing, and telemetry quality standards, executed jointly with the SIEM, SOAR, & Agent Development team that owns the underlying pipeline and platform. Drive operational measurement toward compressing the defender's detect-decide-act cycle against AI-accelerated ...

Technical Account Manager- UK

Location
Greater London, England, United Kingdom
expensive indexing or hot storage. We specialize in comprehensive monitoring of logs, metrics, trace and security events with features such as APM, RUM, SIEM, Kubernetes monitoring and more, all enhancing operational efficiency and reducing observability spend by up to 70%.****The Role**As a Technical Account Manager ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
hunting, or advanced SOC rolesDeep understanding of modern attacker tradecraft and intrusion techniques across the attack lifecycleHands-on experience buidling detection logic in modern SIEM platforms (e.g Sentinel)Proficienty with scripting and programmaining (e.g. Python, KQL) to build detection pipelines and automationWillingness to challenge bad detections, weak assumptions, and vanity ...

Senior Cyber Analyst

Location
Greater London, England, United Kingdom
provide recommendations to reduce risk and improve resilience. Security Platforms & Service Improvement Own the technical effectiveness and continual improvement of Microsoft Sentinel, Microsoft Defender, SIEM, SOAR, EDR, and XDR capabilities. Develop and maintain detection rules, use cases, automation, and response playbooks to improve operational efficiency. Work with the Technical Architect … Microsoft security technologies including Sentinel, Defender XDR, Defender for Endpoint, Defender for Cloud, Microsoft 365 Security, and Entra ID. Experience designing, tuning, and optimising SIEM, SOAR, EDR, and XDR solutions. Strong understanding of threat hunting, attack techniques, threat intelligence, and vulnerability management. Ability to translate technical findings and cyber risk ...

Lead Engineer

Location
Greater London, England, United Kingdom
management/recording, credential rotation, least privilege, EPM/PRA) across on-prem and cloud workloads.* Lead complex integrations with AD/EntraID, IdPs, SIEM/SOAR, CSPM, ITSM, DevOps tooling (CI/CD), and secrets management.* Be responsible for the operational model: backup/recovery, DR, platform upgrades, policy … identity protocols (SAML/OIDC/OAuth).Automation proficiency (PowerShell, Python, REST APIs) and Infrastructure-as-Code (Terraform/CloudFormation) for repeatable deployments.Experience with SIEM (e.g., Splunk, Sentinel, QRadar) and SOAR integrations for session telemetry, alerts, and response.Proven leadership in defining standards, runbooks, and governance; excellent customer engagement and interpersonal ...

SOC Analyst - Security Operations & Cloud Focus (Hybrid)

Location
Greater London, England, United Kingdom
and Engineering to resolve incidents across Security Operations, incident response, vulnerability management and cloud security, with opportunities to develop expertise across platforms like SIEM, EDR/XDR and related tooling. #J-18808-Ljbffr ...

Incident Response Engineer, UK Security Operations, Hampshire

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
center dashboards for anomalous activity. Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Managemen (SIEM) etc. Minimum qualifications: Bachelor's degree or equivalent practical experienceCompleted relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.5 years ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
Greater London, England, United Kingdom
center dashboards for anomalous activity. Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Managemen (SIEM) etc. Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
Greater London, England, United Kingdom
center dashboards for anomalous activity. Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Managemen (SIEM) etc. Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative ...

Security Analyst

Location
Greater London, England, United Kingdom
ensure secure delivery across the programme. Experience Required Proven experience in Security Operations or Cyber Security. Hands‐on experience with Splunk, log forwarding and SIEM administration. Strong analytical skills using SPL, KQL and/or SQL. Experience investigating security incidents, insider threats or data exfiltration. Knowledge of vulnerability management and ...

Director, Security Engineering & Operations

Hiring Organisation
Cognism
Location
London, UK
Employment Type
Full-time
high standard on threat hunting, threat intelligence utilisation, and automated response, not just SLA compliance. Ensure Cognism has a holistic, well-maintained SIEM that reflects how we operate and improves continuously as the threat landscape evolves. Build the internal team into a trusted escalation layer, with clear incident response playbooks ...

Cloud Security Operations Engineer

Hiring Organisation
MJA (London) Ltd
Location
London, United Kingdom
Employment Type
Permanent
and/or GCP and you must be hands on and be able to embed security tools. Your experience should also include security monitoring, SIEM platforms, EDR, detection engineering, alert triage and incident response. You MUST have AI enablement experience/knowledge and be able to demonstrate build skills ...

Senior Network Engineer, Studios

Location
Greater London, England, United Kingdom
class) and the hybrid workflows that depend on them. Security: hands‐on management of the firewall estates; network hardening; security telemetry to the group SIEM; work within a security‐by‐design framework aligned to group policy, with deviations justified and recorded. Build, migration and leadership -- Project One: support lab validation ...

Lead Engineer - Network Connectivity

Location
Greater London, England, United Kingdom
IPAM (DDI) platforms SD‐WAN and secure internet breakout architectures Network automation and orchestration tooling IoT and smart‐building connectivity Enterprise observability, logging and SIEM integrations Managed service and third‐party connectivity environments Experience with policy‐based networking principles Qualifications Degree‐level qualification in Computer Science, Networking, Engineering ...

Senior CSIRT Analyst x2 London | £170k–£220k TC | Hybrid

Location
Greater London, England, United Kingdom
hunting, threat intelligence, red teaming or security engineering. You’ll ideally have experience with: Cyber security incident investigation and response Threat hunting and detection SIEM, security monitoring and log analysis Cloud or hybrid environments Modern attack techniques and adversary behaviour Security automation or scripting Threat modelling or adversary simulation Working ...