201 to 225 of 349 SIEM Jobs in London

Cyber Security Engineer

Location
Greater London, England, United Kingdom
organisation's cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security, while also providing security advice to technology projects and supporting security-by-design principles. Key Responsibilities Design, implement and … Defender, Purview, Exchange Online, SharePoint and Teams. Support identity and access management, vulnerability management and security monitoring. Investigate and respond to security incidents, including SIEM/SOAR investigations and advanced threat hunting. Support security reviews, audits and annual penetration testing. Identify vulnerabilities, risks and opportunities to improve the organisation ...

AI Security Architect

Location
Greater London, England, United Kingdom
identify, shape, and qualify opportunities across AI-driven security and the security of AI systems Architect AI-powered security solutions spanning threat detection, SIEM/SOAR modernisation, anomaly detection, automated incident response, and predictive risk modelling Define security architectures for AI pipelines, data platforms, model registries, and inference environments, embedding … and supply chain security Solid grounding in Identity and Access Management, including PAM, IGA, ITDR, and machine/non-human identity governance Familiarity with SIEM platforms (e.g. Microsoft Sentinel, Splunk) and SOAR tooling Awareness of AI governance frameworks and standards (NIST AI RMF, ISO/ ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
systems, and processes to protect infrastructure, applications, and data. Partnering with other engineeringand security teams to embed security best practices Automationto support security toolinglike SIEM tooling log ingestion Firewalland networkmanagementwithin hybridcloud and on-premises environments Develop and maintain security policies, standards and procedures Conduct security assessments in the form … Attributes Core concepts of cyber security andplatform engineering such asnetworking, Cloud security, CI/CD pipelines,virtualisation, andIaC Software development skills usingLinux or WSL SIEM and log routing experience in tools such as Splunk, Sentinel, Cribl, and ELK Familiarity with AWS, Azure, and GCPservices Proficiency in scripting or programming (Python ...

Infrastructure Security Engineer - London

Location
Greater London, England, United Kingdom
pipelines; integrate and maintain code scanning platforms Detection, operations & tooling Monitor and respond to security events and incidents in cloud and hybrid environments Maintain SIEM data pipelines needed for reliable alerting Build, deploy, and maintain security operations infrastructure using Python, Terraform, and configuration management (e.g., Puppet) Develop dashboards and alerts … configuration management (e.g., Puppet) Hands-on experience building GitHub Actions and workflows Experience with observability and security operations tooling (e.g., Prometheus, Grafana, CloudWatch, Karma; SIEM platforms such as Wazuh) Experience in building custom cloud security tools or integrations Interest in leveraging AI for cloud security monitoring and automation Contributions ...

OpenAI Engineer (Cyber Security)

Hiring Organisation
Sanderson Recruitment
Location
London, UK
Employment Type
Full-time
Implementing Retrieval-Augmented Generation (RAG) solutions using enterprise knowledge sources. Applying prompt engineering techniques to optimise AI performance and accuracy. Integrating AI capabilities with SIEM, SOAR and other cyber security platforms. Establishing evaluation frameworks to measure effectiveness, accuracy and business value. Embedding Responsible AI principles and security controls throughout … Excellent stakeholder engagement and communication skills. Desirable ExperienceAI solutions within cyber security or threat detection environments. Experience with Microsoft Sentinel, Splunk, QRadar or other SIEM platforms. SOAR platforms and security automation tooling. Cloud platforms including Azure, AWS or Google Cloud. Public sector or government project experience. Active SC Clearance. Reasonable ...

OpenAI Engineer (Cyber Security)

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Implementing Retrieval-Augmented Generation (RAG) solutions using enterprise knowledge sources. Applying prompt engineering techniques to optimise AI performance and accuracy. Integrating AI capabilities with SIEM, SOAR and other cyber security platforms. Establishing evaluation frameworks to measure effectiveness, accuracy and business value. Embedding Responsible AI principles and security controls throughout … stakeholder engagement and communication skills. Desirable Experience AI solutions within cyber security or threat detection environments. Experience with Microsoft Sentinel, Splunk, QRadar or other SIEM platforms. SOAR platforms and security automation tooling. Cloud platforms including Azure, AWS or Google Cloud. Public sector or government project experience. Active SC Clearance. Reasonable ...

AI Security Architect

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
clients to identify, shape, and qualify opportunities across AI-driven security and the security of AI systemsArchitect AI-powered security solutions spanning threat detection, SIEM/SOAR modernisation, anomaly detection, automated incident response, and predictive risk modellingDefine security architectures for AI pipelines, data platforms, model registries, and inference environments, embedding … model theft, and supply chain securitySolid grounding in Identity and Access Management, including PAM, IGA, ITDR, and machine/non-human identity governanceFamiliarity with SIEM platforms (e.g. Microsoft Sentinel, Splunk) and SOAR toolingAwareness of AI governance frameworks and standards (NIST AI RMF, ISO/IEC 42001, EU AI Act)Strong ...

Cyber Security Engineer - Threat Detection

Location
City Of London, England, United Kingdom
response, and red team functions to keep coverage grounded in real adversary behavior. Responsibilities Detection Engineering - Design, build, test, and maintain detection content across SIEM, EDR, and NDR platforms, and document the intent, data source, and expected behavior of each detection Detection Tuning and Health - Own false positive rates, alert … retest Log Source Health - Validate the health and completeness of security log sources, detect collection failures and silent feeds, and onboard or update SIEM log sources in a timely manner Automation and Tooling - Apply a developer and problem-solving mindset to the work, using scripting to build internal tooling, process ...

IT Infrastructure & Systems Manager

Location
Greater London, England, United Kingdom
Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. … Server Security Symantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/XDR Endpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) Networking Cisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & Storage Dell PowerEdge Servers Dell PowerVault SAN Storage ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
London, UK
Employment Type
Full-time
improve detection quality. Examining and correlating log data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments. Working with SOAR platforms, SIEM technologies, MCP solutions, threat intelligence sources, endpoints, applications, network devices, and cloud environments. Mentoring junior analysts and supporting the development of the wider SOC team … cybersecurity, particularly within SOC, incident response, and information technology environments. Strong technical understanding of emerging cybersecurity threats, including adversary use of AI.Experience with SOAR, SIEM, threat intelligence platforms, identity systems, sandboxes, vulnerability management, and EDR/XDR tools. Broad understanding of endpoints, applications, network devices, databases, cloud environments, and security ...

Senior SecOps Specialist

Hiring Organisation
Teya Solutions
Location
London, UK
Employment Type
Full-time
incident reviews and ensure improvements are implemented and follow-upscompleted. Support incident metrics (MTTD, MTTR, recurrence, etc.)SOC Tooling & Platform Operations Operate and improve SIEM, EDR, email security, case management, and vulnerabilitytools. Monitor health, coverage, data quality, and integrations. Troubleshoot ingestion, parsing, API, and configuration issues. Build and maintain integrations … 7+ years in SOC, incident response, detection engineering, or security engineering. Experience leading complex security incidents end-to-end. Strong hands-on experience with SIEM, EDR, and security tooling. Experience building and tuning detections and queries. Experience with log onboarding, telemetry pipelines, and data quality issues. Strong vulnerability management and ...

Security TAM: Enterprise SIEM & Cloud Security Advisor

Location
Greater London, England, United Kingdom
Cisco is seeking a Security Technical Account Manager to drive adoption and optimization of the Splunk platform for our critical customers. You will act as a trusted advisor, translating complex security use cases into practical ...

Remote Security Operations Analyst - SIEM/IR

Location
Greater London, England, United Kingdom
Viasat is seeking a RTO Security Analyst to join the frontline 24x7 team monitoring networks for suspicious activity and triaging security alerts. You will handle incidents across online and on-prem infrastructures, determine attack use ...

Remote UK Security Analyst – Splunk & SIEM (6 Mo)

Location
Greater London, England, United Kingdom
Xcede Recruitment Solutions is looking for an experienced Security Analyst for a 6-month contract that is fully remote. The successful candidate will support a significant technology transformation programme while maintaining effective security visibility during ...

Security Information Engineer

Location
Greater London, England, United Kingdom
Requirements Experience with deploying and using a Security Information and Event Management (SIEM) Knowledge of current operating systems i.e., Windows Server 2016-2019, Windows 10, Mac OS and Linux Microsoft Policy & Security – GPO’s, Patching (WSUS), Defender Antivirus & Firewall Penetration Testing exposure/awareness Experience performing technical analysis involving security ...

Senior API Security Engineer for External Integrations

Location
Greater London, England, United Kingdom
Outerlimit is seeking a Security Engineer to design and implement the platform that feeds security telemetry into SIEM, SOAR and XDR tools. You will personally author the v1 surface, extending a Data Platform with a versioned public API and robust event delivery guarantees. You will build native connectors to major ...

Head of Information Security

Location
Greater London, England, United Kingdom
management and cyber incident response activities, ensuring effective preparedness, response, recovery and post-incident review processes Oversee relationships with outsourced security service providers, including SIEM and Managed Detection and Response partners Ensure security monitoring, threat detection and response capabilities remain effective and aligned to business risk Drive continual improvements … Detection and Monitoring Identity and Access Management Network Security Application Security Security Governance and Risk Management Regulatory and Compliance Requirements Rapid7 or either managed SIEM solutions Experience with industry frameworks and standards such as: ISO 27001 NIST Cyber Security Framework CIS Controls APRA CPS 234 GDPR and privacy-related security ...

Cyber Security Consultant

Hiring Organisation
Gazelle Global Consulting Ltd
Location
London, United Kingdom
Employment Type
Contract, Work From Home
with three specialist contract opportunities across defensive security, security engineering and offensive testing. The roles cover different areas of the security lifecycle: * Security Engineer: SIEM, detection and response engineering, threat hunting, security telemetry, SOAR automation and secure CI/CD pipelines. * Cyber Security Specialist: enterprise security across cloud, AI, endpoint ...

Software Engineer (EDR Workflows, Security)

Location
Greater London, England, United Kingdom
management capabilities, Elastic Defend and third party providers response actions as forensics capabilities through OSquery. The team is leading XDR key expansion to our SIEM foundations and enhancing user experience in onboarding and managing our security product As a Software Engineer on the Security EDR Workflows team, you will help ...

AI Security Architect: Secure AI & IAM Innovator

Location
Greater London, England, United Kingdom
cyber security with AI, and involves shaping opportunities, proposals, and governance frameworks. Ideal candidates have deep security architecture experience, IAM expertise, and familiarity with SIEM/SOAR platforms. #J-18808-Ljbffr ...

Cloud Security Engineer: Secure DevOps & IaC (Hybrid UK)

Location
Greater London, England, United Kingdom
this hybrid UK-wide role, you will advise engineers, implement cloud-native security controls, and support the rollout of commercial tooling such as SIEM, SAST and CNAPP across ITV. #J-18808-Ljbffr ...

IT Operations Platforms and Security Lead

Location
Greater London, England, United Kingdom
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud‐native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

Security Automation and AI SOC Engineer (Torq, Tines, Swimlane)

Hiring Organisation
Adecco
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£750/day
human oversight mechanisms for AI-driven workflows. Technical Skills * Scripting or development experience (Python preferred). * Experience integrating security technologies using APIs. * Understanding of SIEM, EDR, Identity and Cloud Security technologies. * Strong analytical and problem-solving skills. Desirable Experience * Experience designing an AI adoption strategy for a SOC. * Experience with … agentic AI or autonomous security workflows. * Experience with Microsoft Sentinel, Splunk or equivalent SIEM platforms. * Experience with cloud security technologies (Azure, GCP or AWS). * Experience with detection engineering and security use case development. * Experience building automation metrics and measuring operational efficiency. * Familiarity with modern AI platforms including LLMs ...

IT Operations Platforms and Security Lead

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

IAM Architect & Engineer (Hybrid) — Cloud, Security & Identity

Location
Greater London, England, United Kingdom
base package from £80,000 to £120,000 plus extras. You will define IAM use cases, architect solutions and integrate with cloud platforms and SIEM tools while ensuring ongoing operation and maintenance of IAM environments across client environments. #J-18808-Ljbffr ...