376 to 400 of 871 SIEM Jobs in the UK

Pre Sales Technical Manager Reading, Berkshire, United Kingdom + 1 more Sales Posted 12 hours ago

Location
Reading, England, United Kingdom
and customer engagement models. + Technical Expertise - Deep understanding of IT infrastructure, cybersecurity, cloud platforms, and enterprise software. - Hands-on experience with technologies like SIEM, SOAR, EDR, and virtualization tools. + Sales Acumen - Strong consultative selling skills. - Ability to translate technical features into business benefits. + Leadership & Communication - Proven ability ...

Senior Security Platform Engineer (m/f/d)

Location
Hemel Hempstead, England, United Kingdom
improving, developing and maintaining IT/OT vulnerability management programs and processes. This role performs and leads important tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and … and/or Security Operation centers required. Experience in a Data Center environment an added plus. Advanced expertise in architecting, implementing, and optimizing SIEM and security platforms across hybrid environments. Demonstrated leadership inICS and SCADA security integration and monitoring within critical infrastructure. Deep knowledge on security architecture, with hands ...

Cyber Security Engineer

Hiring Organisation
Accenture
Location
Manchester, UK
Employment Type
Full-time
protect infrastructure, applications, and data. Partnering with other engineering and security teams to embed security best practices Automation to support security tooling like SIEM tooling log ingestion Firewall and network management within hybrid cloud and on-premises environments Develop and maintain security policies, standards and procedures Conduct security assessments … cyber security and platform engineering such as networking, Cloud security, CI/CD pipelines, virtualisation, and IaC Software development skills using Linux or WSL SIEM and log routing experience in tools such as Splunk, Sentinel, Cribl, and ELK Familiarity with AWS, Azure, and GCP services Proficiency in scripting or programming ...

Cyber Security Engineer

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
protect infrastructure, applications, and data. Partnering with other engineering and security teams to embed security best practices Automation to support security tooling like SIEM tooling log ingestion Firewall and network management within hybrid cloud and on-premises environments Develop and maintain security policies, standards and procedures Conduct security assessments … cyber security and platform engineering such as networking, Cloud security, CI/CD pipelines, virtualisation, and IaC Software development skills using Linux or WSL SIEM and log routing experience in tools such as Splunk, Sentinel, Cribl, and ELK Familiarity with AWS, Azure, and GCP services Proficiency in scripting or programming ...

Security Operations Consultant

Location
Belfast City District, Northern Ireland, United Kingdom
means managing live incident containment and day-to-day SOC operations, while helping enterprise and public sector clients modernise their security operations, improve their SIEM, SOAR and EDR capabilities, and build stronger cyber resilience. Join our Digital & Data team and work alongside cyber security, product, design and technology specialists … their Security Operations capabilities, identifying gaps across people, processes and technology and translating these into practical improvements. Advise on the evolution and optimisation of SIEM, SOAR, EDR and threat-detection tooling to improve visibility, reduce noise and strengthen detection and response capabilities. Develop and maintain incident playbooks, standard operating procedures ...

Security Operations Engineer

Hiring Organisation
CloudBees
Location
London, UK
Employment Type
Full-time
that automate alert triage, enrichment, containment and response. Identify repetitive analyst workflows and automate them using APIs, scripting and orchestration platforms. Build integrations across SIEM, EDR, CNAPP, vulnerability management and ticketing systems. Help introduce AI-assisted workflows that improve investigation quality and analyst productivity. Security Operations & Incident ResponseMonitor and investigate … improve the detection stackWhat You'll Bring: Required3+ years of experience in Security Operations, Detection Engineering or Security Engineering. Hands-on experience with enterprise SIEM platforms such as Splunk, Microsoft Sentinel, Elastic, Chronicle or QRadar. Experience building and tuning detection rules. Experience developing SOAR playbooks or security automation. Strong scripting ...

Level 3 SOC Analyst

Hiring Organisation
Capita
Location
Belfast, Down, United Kingdom
Salary
£ 60 K
Threat Intelligence which is actionable information (e.g. IOCs/TTPs), conduct threat hunting activities; leveraging and analyzing sources of information as available through the SIEM, in addition identify and investigate potential suspicious activity as well as helping organizations identify, isolate and contain security issues.You will support the initial implementation and … type and severity.• Identify, create and implement improvements to procedures and processes, with the SOC Manager’s approval. • Identify opportunities for SOC and client SIEM platform configuration improvements, use case development, monitoring rule creation, tuning & optimization.• Stakeholder and Client Reporting, and engagement• Assist in architectural design to facilitate the onboarding ...

L3 SOC Analyst

Hiring Organisation
Anson Mccade
Location
Belfast, County Antrim, Northern Ireland, United Kingdom
Employment Type
Permanent
Salary
£60,000
impact, and recommend the response and escalation path. You'll triage threat intelligence (IOCs and TTPs) from multiple sources, run threat hunts across the SIEM, and help organisations identify, isolate and contain security issues. You'll also guide and mentor two analysts, without direct line management, and support the rollout … advanced event and incident analysis, including baselining and trend analysis Conduct intelligence-led threat hunting using IOCs and TTPs, investigating suspicious activity through the SIEM Support Major Incident Response from a protective monitoring perspective, helping teams identify, contain and remediate threats Give timely advice on response plans based on incident ...

Senior SOC Analyst

Location
England, United Kingdom
onboarding of EMEA detection rules into the Global Security Operations Centre. Review and validate detection logic, thresholds, alert conditions and expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm . Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE … experience). Strong background in security incident investigation, threat analysis, and threat hunting. Experience reviewing, tuning and validating detection rules and security alerts within SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, or LogRhythm . Experience working with Microsoft Defender XDR, Microsoft Defender for Endpoint, CrowdStrike Falcon, Cortex ...

SOC Analyst

Hiring Organisation
Tank Recruitment
Location
London, United Kingdom
Employment Type
Contract
support the detection, triage, investigation, containment and resolution of cyber security incidents across a complex enterprise environment. Key Responsibilities Monitor and investigate alerts from SIEM, EDR/XDR, identity, email, cloud and network security technologies. Triage incidents, assess severity and business impact, and coordinate containment, eradication and recovery. Investigate phishing … updates to senior stakeholders. Essential Skills & Experience Practical experience in cyber security incident response, security monitoring or a SOC environment. Hands-on experience with SIEM and EDR/XDR technologies. Experience investigating Windows and Linux systems, authentication activity, security logs and network traffic. Strong understanding of the incident response lifecycle. ...

Cybersecurity Engineer

Location
United Kingdom
expansion. Key Responsibilities Security Engineering & Operations Design and implement security solutions across cloud, endpoint, identity, and network security. Configure and maintain security tools, including SIEM, EDR, WAFs, firewalls, IAM, and vulnerability management platforms. Collaborate with infrastructure and DevOps teams to embed security into CI/CD pipelines. Lead the deployment … cybersecurity engineering, security operations, or cloud security. Strong knowledge of Azure security controls, IAM, and cloud-native security services. Experience with endpoint security, SIEM/SOAR, network security, and automation tools. Familiarity with scripting (Python, PowerShell) and infrastructure-as-code (Terraform, Ansible). Deep understanding of vulnerability management, penetration testing ...

SOC Analyst

Hiring Organisation
Motorway
Location
London, United Kingdom
Salary
£ 60 K
escalate more complex incidents to senior members of the Security team.What You’ll Be Doing• Monitor, triage and investigate security alerts and incidents across SIEM, EDR,CrowdStrike and other security platforms.• Investigate suspicious endpoint, email, identity and cloud activity and support incident response activities.• Analyse security logs and indicators … years of experience within Cyber Security, Security Operations, SOC or a similar technical security environment.• Hands-on experience with cyber security technologies such as SIEM, EDR/XDR, vulnerability management or cloud security tools.• Good understanding of security alert triage, incident investigation and common cyber threats.• Understanding of networking fundamentals ...

Principal Security Architect — DevSecOps (Group Manager II - Information Security)

Hiring Organisation
UST Global
Location
Nottingham, Nottinghamshire, United Kingdom
Salary
£ 70 K
drift detection, and deployment guardrails.Software supply-chain security: SBOMs, artifact signing, provenance, dependency controls, and build integrity.Observability and security monitoring: Prometheus, Grafana, CloudWatch, OpenTelemetry, SIEM, tracing, logging, and event correlation.API security: OAuth2/OIDC, mTLS, service mesh, gateway security, rate limiting, token validation, and service-to-service authorization.Financial services, banking ...

Head of Information Security

Location
Greater London, England, United Kingdom
penetration tests, disaster recovery, and business continuity planning. Ensure vulnerability and patch management services meet service levels. Oversee and manage the effectiveness of MDR, SIEM, and SOAR services. Own security risk assessments for applications, infrastructure, and network architecture. Understanding the Business Develop a deep understanding of council, partners and local ...

Chief Information Security Officer (CISO)

Location
Greater London, England, United Kingdom
alongside requirements relevant to regulated customers, such as DORA and NIS2. Security tooling: Compliance automation and monitoring tools such as Vanta, Drata and SIEM platforms. Infrastructure and IT: Kubernetes and cloud security, secrets and key management, identity providers and device management. About you You've built security programs at growing ...

IT SOC Engineer

Location
United Kingdom
Auto enrolment pension scheme, Life Assurance, Westfield Health Cash plan & Lifestyle benefits - Discount on selected stores. Responsibilities include: Develop content for a complex and growing SIEM infrastructure. This includes use cases, dashboards, active channels, reports, rules, filters, trends and active lab sessions. Use SIEM in the daily operational work, which … Advanced industry-standard SOC Security qualifications (SANS, ISC2, etc.). Proven Tier 3 SOC Engineering experience (2 years) Demonstrable experience working with SIEM technology and SIEM engineering (including tool configuration), i.e. within an enterprise SOC. Experience in the creation of use cases, analytics and playbooks. Experience with automation languages, such ...

IT SOC Engineer

Location
Lutterworth, England, United Kingdom
Auto enrolment pension scheme, Life Assurance, Westfield Health Cash plan & Lifestyle benefits - Discount on selected stores. Responsibilities Include Develop content for a complex and growing SIEM infrastructure. This includes use cases, dashboards, active channels, reports, rules, filters, trends and active lab sessions. Use SIEM in the daily operational work, which … Advanced industry-standard SOC Security qualifications (SANS, ISC2, etc.). Proven Tier 3 SOC Engineering experience (2 years) Demonstrable experience working with SIEM technology and SIEM engineering (including tool configuration), i.e. within an enterprise SOC. Experience in the creation of use cases, analytics and playbooks. Experience with automation languages, such ...

24/7 Security Incident Analyst – SIEM & Threat Response

Location
Inverness, Scotland, United Kingdom
Capgemini in the UK is seeking a Security Incident Management Analyst to detect, investigate, and respond to threats across government and commercial clients. You’ll monitor security systems, log incidents, and ensure tool health, collaborating ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 70 K
aspects of Azure, M365, and preferably Google Cloud Platforms (GCP). Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity.Key … governance requirements.Conduct periodic security audits and risk assessments, offering actionable recommendations.Security tooling engineering and maintenance:Day to day maintenance of various security tools including SIEM and vulnerability scanning toolsets.Manage upgrades, configuration changes and feature enhancements.Support the Cyber Incident Response teamProvide support on all types of cyber incident response as part ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
London, UK
Employment Type
Full-time
aspects of Azure, M365, and preferably Google Cloud Platforms (GCP). Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity. … Conduct periodic security audits and risk assessments, offering actionable recommendations. Security tooling engineering and maintenance: Day to day maintenance of various security tools including SIEM and vulnerability scanning toolsets. Manage upgrades, configuration changes and feature enhancements. Support the Cyber Incident Response teamProvide support on all types of cyber incident response ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
Manchester, UK
Employment Type
Full-time
aspects of Azure, M365, and preferably Google Cloud Platforms (GCP). Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity. … Conduct periodic security audits and risk assessments, offering actionable recommendations. Security tooling engineering and maintenance: Day to day maintenance of various security tools including SIEM and vulnerability scanning toolsets. Manage upgrades, configuration changes and feature enhancements. Support the Cyber Incident Response teamProvide support on all types of cyber incident response ...

Information Security Engineer

Location
United Kingdom
aspects of Azure, M365, and preferably Google Cloud Platforms (GCP). Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity. … Conduct periodic security audits and risk assessments, offering actionable recommendations. Security tooling engineering and maintenance: Day to day maintenance of various security tools including SIEM and vulnerability scanning toolsets. Manage upgrades, configuration changes and feature enhancements. Support the Cyber Incident Response team: Provide support on all types of cyber incident ...

Hybrid Security Engineer: IAM, Zero Trust & Cloud Security

Location
Greater London, England, United Kingdom
lead end-to-end security engineering projects in a Microsoft environment. You will work across identity and access management, cloud security, vulnerability management and SIEM/detection, with a focus on SSO improvements and Zero Trust initiatives. The role suits a hands-on security professional ready to take broader technical ...

Hybrid SOC Security Analyst — Threat Detection & Response

Location
West of England, England, United Kingdom
Consulting Group is seeking an Information Security Analyst for its Security Operations Centre. The role involves monitoring security across SIEM/EDR, investigating alerts, and proactively hunting threats to protect PA's technology estate. You will develop detections, playbooks and dashboards; support forensics and post-incident reviews; and contribute ...

Cyber Security Engineer: Cloud, DevSecOps & Zero Trust

Location
Greater Manchester, England, United Kingdom
offers hybrid work in Greater Manchester and the opportunity to influence security strategy and automation. The ideal candidate will have hands-on experience with SIEM, EDR, IAM, WAF, and cloud security controls, plus scripting skills in PowerShell, #J-18808-Ljbffr ...