301 to 325 of 347 SIEM Jobs in the UK excluding London

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
Analyst to support our defence/aerospace client on a short term contract. The successful candidate will have proven experience using IBM QRadar SIEM in a monitoring and incident response capacity. Key Responsibilities: Monitor and analyse security events using IBM QRadar SIEM Investigate and respond to security incidents across various … standard Cyber requests and provide appropriate responses Job Requirements: Active SC clearance Experience within a Security Operations Centre (SOC) Proficiency with IBM QRadar SIEM for monitoring and incident response Familiarity with common query languages, preferably KQL Understanding of security processes and controls in enterprise environments Ability to work independently with ...

Splunk Specialist

Hiring Organisation
Sanderson Government and Defence
Location
Newport, Gwent, Wales, United Kingdom
Employment Type
Contract
work. This is an exciting opportunity for a hands-on Splunk professional with strong Unix administration skills and a SecDevOps mindset to support ongoing SIEM operations, upgrades, migrations and service improvements. The successful candidate will provide end-to-end support for the Splunk platform, ensuring optimal system health, performance andsecurity while contributing to automation and operational efficiencies. Key Responsibilities Provide end-to-end administration and support of the Splunk SIEM platform. Conduct Splunk health checks and performance monitoring across the environment. Support planned migrations, upgrades and platform enhancement activities. Create, maintain and optimise Splunk alerts, dashboards and reports. Produce ...

Splunk Specialist

Hiring Organisation
Sanderson Government and Defence
Location
Newport-On-Tay, north east scotland, united kingdom
work. This is an exciting opportunity for a hands-on Splunk professional with strong Unix administration skills and a SecDevOps mindset to support ongoing SIEM operations, upgrades, migrations and service improvements. The successful candidate will provide end-to-end support for the Splunk platform, ensuring optimal system health, performance andsecurity while contributing to automation and operational efficiencies. Key Responsibilities Provide end-to-end administration and support of the Splunk SIEM platform. Conduct Splunk health checks and performance monitoring across the environment. Support planned migrations, upgrades and platform enhancement activities. Create, maintain and optimise Splunk alerts, dashboards and reports. Produce ...

Lead Technical Engineer (SOC)

Hiring Organisation
Stott & May Professional Search Limited
Location
Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £800 per day
and support cloud, on-premises VM, and container-based hosting. Design and configure network security devices, routers, switches, VLANs, DNS, and identity management. Lead SIEM onboarding activities, ensuring solutions support high data ingest rates. Develop test procedures covering functional and non-functional requirements. Maintain requirements and user stories, ensuring traceability … technical engineering, SOC deployment, or security infrastructure. Proven experience designing, building, and deploying SOC solutions for previous clients. Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong experience deploying and configuring applications in cloud and/or on-premises environments, particularly for high data ...

Identity and Access Management Manager

Hiring Organisation
Kensington Mortgage Company
Location
Marlow, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
including: IAM governance and lifecycle management. Joiner, Mover and Leaver process design and optimisation. Privileged Access Management (PAM). Security Information and Event Management (SIEM) platforms. Monitoring, alerting and logging solutions. DataDog and observability tooling. AWS and Azure cloud administration. SQL and advanced Excel capability. Incident, access and governance processes. ...

Security Manager - SOC - Welwyn Garden City, United Kingdom of Great Britain and Northern Ireland

Hiring Organisation
Tesco
Location
Welwyn Garden City, Hertfordshire, United Kingdom
Salary
£ 80 K
into customer and business impact.· Understanding of cyber incident management models and escalation frameworks across enterprise environments.· Familiarity with core cyber defence technologies (e.g. SIEM, Endpoint Detection and Response (EDR), Security Orchestration, Automation and Response (SOAR)).· Knowledge of cloud and container security, and modern technology architectures.· Experience with product … into customer and business impact.· Understanding of cyber incident management models and escalation frameworks across enterprise environments.· Familiarity with core cyber defence technologies (e.g. SIEM, Endpoint Detection and Response (EDR), Security Orchestration, Automation and Response (SOAR)).· Knowledge of cloud and container security, and modern technology architectures.· Experience with product ...

CNI Service Compliance Engineer

Location
Chippenham, England, United Kingdom
following technology types: Server operating systems Networking Fire-walling Virtualisation Endpoint devices Encryption Anti-virus and malware Vulnerability Management Security information and event management (SIEM) Intrusion Detection and Prevention systems (IDS and IPS) #J-18808-Ljbffr ...

Tech Lead - SOC Responder

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

Cyber Security Engineer

Location
Stevenage, England, United Kingdom
upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. Your skillset … creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books Experience with SIEM (Security Information Event Management) technologies Cyber Security Engineer 24 month contract Based in Stevenage - Fully onsite Offering up to £92ph Inside IR35 #J-18808-Ljbffr ...

Cyber Security Engineer

Hiring Organisation
ARM
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 78 - 92 Hourly
upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. Your skillset … creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books Experience with SIEM (Security Information Event Management) technologies If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further ...

Cyber Security Engineer

Hiring Organisation
Advanced Resource Managers Limited
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£78.00 - £92.00 per hour
upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. Your skillset … creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books Experience with SIEM (Security Information Event Management) technologies If this all sounds like something you will be interested in then simply apply and we can discuss the opportunity further ...

T2 SOC Analyst

Hiring Organisation
Oscar Associates (UK) Limited
Location
Stoke-On-Trent, Staffordshire, West Midlands, United Kingdom
Employment Type
Permanent
Salary
£50,000
across areas including: Investigating and responding to medium and high-severity security incidents Performing detailed analysis of alerts, logs and suspicious activity Working with SIEM, EDR and wider security tooling Escalating and coordinating containment and remediation activity Acting as a technical escalation point for Tier 1 analysts Identifying indicators … experience within a SOC or security operations environment, with solid hands-on exposure to areas such as: Security monitoring and alert triage Incident response SIEM platforms EDR technologies Threat analysis/threat intelligence Vulnerability management Detection engineering or SIEM tuning I'm particularly interested in speaking with analysts ...

Network Security Engineer

Hiring Organisation
Rise Technical Recruitment
Location
Redhill, Surrey, United Kingdom
Employment Type
Permanent
Salary
£40000 - £50000/annum + Bonus + Private Healthcare
will be responsible for designing, implementing, and maintaining security solutions while actively monitoring threats and responding to incidents. You will utilise tools such as SIEM, IDS/IPS, and vulnerability management platforms to maintain the integrity of networks, as well as carry out investigations into security events and recommend improvements. … colleagues and contribute to ongoing security improvements. The Role: Design, implement and maintain network security solutions across internal and customer systems Monitor security tools (SIEM, IDS/IPS) and respond to incidents and vulnerabilities Provide third-line support and act as a key escalation point for security issues Develop and ...

Product Engineers -Cloud (Multiple Levels) Hybrid JBLE1 NI

Hiring Organisation
Allstate Northern Ireland
Location
Belfast, UK
detective, and responsive security controls that integrate directly into cloud platforms, CI/CD pipelines, and shared enterprise services Integrate cloud security controls with SIEM and security tooling to generate high-quality signals for detection, investigation, and incident response Support incident handling and response by engineering detection logic, automation, and … Experience with data classification, data handling, or data protection strategies that support DLP in cloud-hosted systems. Familiarity with security telemetry, logging pipelines, and SIEM platforms used for detection, investigation, and incident response. Hands-on involvement in incident response or post-incident analysis from an engineering perspective (e.g., improving detections ...

SOC Engineer

Hiring Organisation
4Square Recruitment Ltd
Location
Cambridge, Cambridgeshire, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £80,000 per annum
capability around the SOC. What you’ll be doing: Proactive security monitoring and threat hunting Investigating and responding to security incidents Engineering and improving SIEM environments Building and tuning detection rules Developing detection coverage around MITRE ATT&CK Supporting and maintaining client security platforms Scripting and automating SOC processes Helping … develop and mature the UK SOC capability What we’re looking for: Strong SOC/Security Operations experience Hands-on SIEM engineering experience Detection engineering and alert tuning Experience with KQL, SQL or similar query languages Linux experience Threat hunting and incident response experience Scripting/automation using Python and ...

Elastic SME

Hiring Organisation
Sopra Steria
Location
Hemel Hempstead, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £90,000 per annum
that power operational monitoring, observability and security operations. Designing and architecting enterprise-scale Elastic Stack solutions. Building and optimising high-volume Elasticsearch clusters. Delivering SIEM capabilities, threat detection and security analytics. Developing advanced ingestion pipelines using Logstash, Beats and Elastic Agent. Creating impactful Kibana dashboards, visualisations and reporting solutions. Implementing … recovery documentation. What you will bring: Experience administering enterprise Elastic Stack environments. Deep expertise across: Elasticsearch. Kibana. Logstash. Beats. Elastic Agent & Fleet. Elastic Security (SIEM). Elastic Observability. Strong experience supporting large-scale Elasticsearch clusters. Proven track record designing resilient, highly available platforms Experience delivering security monitoring and observability solutions. ...

Senior Detection Engineer (Consultancy)

Hiring Organisation
Fazer Recruitment
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £90,000 per annum
visits roughly every couple of weeks. No on-call rota. No clearance requirement. What you'll be doing Designing and building detection rulesets across SIEM and XDR platforms Writing and tuning detection logic in KQL, cutting false positives without losing coverage Mapping customer log sources against use cases to identify … code approach — pipelines, version control, deployment Running workshops, coverage assessments and use case catalogues as customer deliverables What we're looking for Hands-on SIEM engineering experience, ideally Microsoft Sentinel Confident KQL — this is the core of the role SOAR playbook design in Azure Logic Apps, Cortex XSOAR or similar ...

SIEM Engineer

Hiring Organisation
AMS CWS
Location
Cardiff, South Glamorgan, Wales, United Kingdom
Employment Type
Contract, Work From Home
them with skilled interim and temporary professionals, fostering workplaces where everyone can contribute and succeed. On Behalf of Arup, we are looking for a SIEM Engineer for a 12 month contract based in Cardiff with remote work available. Purpose of the role: We're looking for an experienced SIEM Engineer … large scale cybersecurity transformation programme, migrating security monitoring capabilities from Rapid7 to Microsoft Sentinel. This is a hands-on engineering role focused on SIEM migration, log source onboarding, detection engineering, and the optimisation of security monitoring across a complex enterprise environment with over 1,000 systems. What ...

Lead Cyber Security Advisor

Hiring Organisation
SUMMER-BROWNING ASSOCIATES LIMITED
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Contract
Contract Rate
Up to £0.00 per day + Competitive Inside IR35 Day Rate
NIST, ISO 27001, CIS, CAF, HMG GovS 007, and NPSA. Knowledgeable and hands-on experience with security architecture and Security Information and Event Management (SIEM) tools. Solid track record in risk and threat modelling within high-threat government environments. Industry certifications in CISSP, CISM or CRISC To apply, please submit ...

Senior Cyber Security Analyst

Hiring Organisation
Ashurst
Location
Glasgow, Lanarkshire, United Kingdom
Salary
£ 70 K
time permanentposition, based in Glasgow with hybrid working.Main responsibilities include:Oversee and enhance monitoring ofsecurity alerts and events using advanced security information andevent management (SIEM) toolsLead the analysis of security logsand alerts to identify potential security incidentsPerform and supervise comprehensiveanalysis of security logs, network traffic, and data to detect andrespond … successful candidate will have:Relevant Cyber Security and/or IT experienceExperience in metric reporting andKPI/SLA managementExperience with securitytechnologies such as firewalls, SIEM, DLP and endpoint protectionExperience working with Jira, AzureDevOps, ITSM tools such as Cherwell and ServiceNow and the MSOffice suiteExcellent communication skills,both verbal and written ...

Cyber Security Engineer

Hiring Organisation
HSB Technical Ltd
Location
Redhill, Surrey, UK
Employment Type
Full-time
responsibilities of the Cyber Security Engineer: Develop and maintain information security plans, policies and proceduresImplement and manage security controls across internal and customer networksMonitor SIEM platforms, IDS/IPS systems and other security tools for threats and vulnerabilitiesInvestigate and resolve cyber security incidents and security alertsCarry out vulnerability assessments and … ToolsISO27001 ComplianceITILQualifications and requirements for the Cyber Security Engineer: Strong experience with Cisco Firewalls, Routers and SwitchesExperience with Juniper networking platformsHands-on knowledge of SIEM, IDS/IPS and vulnerability managementExperience carrying out or supporting penetration testing activitiesUnderstanding of ISO27001, GDPR and ITIL best practicesAbility to communicate technical cyber security ...

Senior Detection and Response Engineer

Location
Cambridge, England, United Kingdom
Requirements Hands-on experience investigating security incidents, including developing investigation hypotheses, collecting artefacts and analysing endpoint, network and application data. Strong working knowledge of SIEM and security monitoring tooling, including the ability to write and develop queries for complex investigations. Understanding of adversary tactics, techniques and procedures (TTPs), offensive security … MITRE ATT&CK and enhancing security telemetry through automation and tooling. Highest-signal resume keywords Incident Investigation Detection Logic Development MITRE ATT&CK Framework SIEM Tooling Cloud Security Practices ATS Optimization Keywords Hard Skills Security Incident Investigation Detection Rule Development Threat Hunting Forensic Investigation Scripting (PowerShell, Python) Industry Keywords Adversary ...

IT Security & Compliance Lead

Location
City of Edinburgh, Scotland, United Kingdom
and external partners (e.g. SOCaaS providers), and running post‐incident reviews and tabletop exercises. Operate and tune security monitoring and detection tooling (EDR, DLP, SIEM, or similar) to catch and respond to threats quickly. Compliance & Certification Own SOC 2 Type II and ISO 27001/27017/… post‐incident review. Working knowledge of SOC 2 and the ISO 27000 series. Comfortable evaluating and operating security tooling such as EDR, DLP, or SIEM platforms. A strong cross‐functional operator, comfortable bridging IT, Security, Engineering, and GTM teams. Valued Exposure to privacy regulation (e.g. GDPR) and AI governance frameworks ...

Senior Cyber Security Analyst

Hiring Organisation
Roc Search Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
security technologies including Mimecast, Netskope and CyberArk . Investigating and responding to security alerts and incidents. Working alongside the firm's external SOC/SIEM provider. Maintaining security documentation and evidence. Supporting the organisation's ISO 27001 certification programme. Assisting the Lead Cyber Engineer with security projects and improvements. Helping … particularly interested in candidates who have: Good knowledge of cybersecurity and security operations. Experience investigating security alerts, incidents or vulnerabilities. Exposure to SIEM and security monitoring . Experience with technologies such as Mimecast, Netskope, CyberArk, PAM or similar . Strong analytical and problem-solving skills. A collaborative approach and willingness ...

Security Architect

Hiring Organisation
Develop
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
and customer-facing teams to develop modern security capabilities and influence long-term technology strategy. Key responsibilities include: Designing enterprise security architectures across SIEM, SOAR, EDR and Cloud Security platforms. Defining architecture standards and technical governance. Designing secure integrations between security platforms and cloud services. Improving detection engineering, security automation … experienced Security Architect or a Senior Security Engineer ready to step into an architecture role. You'll ideally have experience with: Enterprise Security Architecture SIEM SOAR EDR Microsoft Security Microsoft Sentinel Microsoft Defender SentinelOne Cloud Security Azure Detection Engineering Security Automation Security Governance API integrations Security Platform Design Experience with ...