426 to 450 of 458 SIEM Jobs in the UK

Lead Security Operations Engineer

Hiring Organisation
Pleo
Location
London, United Kingdom
Salary
£ 80 K
forensics, from suspicious traffic through to full incident response, and bring the findings back into how we detect and prevent.Design, tune, and scale our SIEM and logging pipeline through standardized log ingestion across services so signal isn't lost in the noise.Strengthen our perimeter and authentication posture, including WAF configuration … incidents contained, forensics that changed outcomes.A strong development and engineering background. You are comfortable writing the automation, not just specifying it.Hands-on SOC and SIEM management experience, including detection engineering and log pipeline design.Experience in scale-up environments, where you've built capability rather than inherited a mature one.A strong ...

AI Staff Security Engineer

Hiring Organisation
Matchtech
Location
London, United Kingdom
Salary
£ 100 K
protect proprietary models and systems from novel threats like prompt injection, data poisoning, and model inversion/extraction.Automate critical security workflows using Agentic/SIEM integration to achieve high operational velocity and enable rapid response to millisecond attack speeds generated by autonomous adversary AI.Execute regular offensive security operations, including … Teaming/Penetration Testing against agentic frameworks and LLM integrations.Demonstrated ability to engineer or deploy AI Detection and Response (AIDR) workflows utilizing agentic and SIEM technologies, with a strong focus on AI-native threat modeling (e.g., MAESTRO framework).Understanding of Governance, Risk, and Compliance (GRC), specifically managing AI governance policies ...

Security Engineer, Institutional Trading

Hiring Organisation
Blockchain
Location
London, United Kingdom
Salary
£ 80 K
and maintain monitoring for FinOps-specific security signals such as abnormal order patterns, signature misuse, unusual settlements. You will integrate these signals into our SIEM/SOAR for real-time response.Support secrets and key-management hygiene. You will ensure app/service keys are stored in KMS/Vault, scoped … experience.Proven expertise in Threat Modeling. Ability to perform structured reviews (e.g., STRIDE) of complex data flows and operational processes.Experience with observability and detection tooling (SIEM, logs, metrics) and ability to write basic detection rules.Practical experience with KMS/HSM, secrets management platforms (Vault, 1Password, AWS/GCP KMS), IAM patterns ...

Principal Detection Engineer (Remote, GBR)

Hiring Organisation
CrowdStrike
Location
United Kingdom
Salary
£ 80 K
breaches. This role ensures we stop them everywhere, not just in one corner of the platform.Today, our detection teams operate across endpoint, cloud, NG-SIEM, identity, and SaaS security. They're individually strong. But threat actors don't respect domain boundaries, a supply chain attack lands on macOS, pivots through … cross-domain detection strategy. Maintain visibility into the detection team's work, endpoint (Windows, macOS, Linux), cloud (AWS, GCP, Azure, Kubernetes), NG-SIEM, identity (IDP), SaaS security (Adaptive Shield), and FEM. Identify where the same attack scenario has coverage on one surface but gaps on another, and work with ...

SOAR Engineer

Hiring Organisation
Sanderson Government and Defence
Location
Cheltenham, Gloucestershire, South West, United Kingdom
Employment Type
Permanent
SOAR/SIEM Security Engineer - Critical National Infrastructure (OT) 18-Month FTC | SC Cleared A leading cyber security firm is looking for a SOAR/SIEM Security Engineer to join a critical national infrastructure (CNI) client on an 18-month fixed-term contract, supporting the protection of operational technology ...

Devops Engineer

Hiring Organisation
ReVybe IT Recruitment Limited
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£60000 - £70000/annum
Infrastructure as Code principles Implement platform hardening and security best practices across the AWS environment Integrate cloud infrastructure and applications with security tooling, including SIEM, DLP, and other security platforms Manage identity and access controls across the environment, including SSO, IAM, and least-privilege access Monitor and improve platform security … networking, including VPCs, subnets, routing, and security groups Experience with cloud security and platform hardening Knowledge of integrating platforms with security tooling such as SIEM and DLP solutions Experience managing identity and access controls, including AWS IAM and SSO Commercial experience working with MongoDB Strong understanding of security best practices ...

SOC Level 3 Technical Lead

Hiring Organisation
Oscar Associates (UK) Limited
Location
Buckinghamshire, South East, United Kingdom
Employment Type
Permanent
Salary
£70,000
pressure and brief client leadership, up to board level, in language they can act on Run proactive threat hunts and build detection content across SIEM, EDR and cloud platforms, tuning out noise as you go Develop SOAR playbooks and automation, and help shape the SOC's tooling roadmap and architecture … breach cases you can walk through in depth Advanced hands-on malware analysis capability, spanning behavioural analysis and reverse engineering Deep expertise across enterprise SIEM platforms and EDR tooling (CrowdStrike knowledge a strong advantage) A well-developed threat hunting toolkit: YARA rules, IOC development, timeline analysis and adversary profiling Cloud ...

Security Engineer - MOD/Defence - DV Cleared

Hiring Organisation
Talent Locker
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£80,000
and improve security platforms controlling privileged access, credentials and administrative activity across critical infrastructure. There is also a requirement within the team for Elastic SIEM capability, so if you have strong Elastic experience alongside your security engineering background, that would also be relevant. The role You'll work across identity … group access. Monitoring privileged sessions and investigating failed authentication activity. Maintaining, patching and upgrading security platforms. Reviewing audit logs and integrating security events with SIEM tooling. Troubleshooting firewalls, load balancers and connectivity issues. Key experience Hands-on Security Engineering within complex environments. Privileged Access Management (PAM) or identity security solutions. ...

Security Architect Microsoft, SIEM, SOAR Hybrid LDN 3d/w -then less

Hiring Organisation
Nova Source Technologies
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
Security Architect Microsoft, SIEM, SOAR, EDR, Cloud Security, Azure, Detection Engineering, Threat Hunting, Security Automation, SOC, APIs, Data Models, Integrations, Microsoft, CrowdStrike, SentinelOne, Palo Alto, Azure, Hybrid (London 3d/w then less) This is an exceptional permanent Security Architect opportunity to join a leading tech company. The Security Architect … travel. Therefore, you must be based at a commutable distance from London. As Security Architect, you will take ownership of key security architecture across SIEM, SOAR, EDR, cloud security, detection engineering, threat hunting and automation. The Security Architect will work closely with internal and 3 rd party engineering and ...

Security Operations Analyst

Hiring Organisation
GoCardless
Location
London, United Kingdom
Salary
£ 70 K
security use cases through to incident response. Your background will ideally be in security operations. In any case, you will be experienced using SIEM tools to develop security monitoring cases and writing scripts to automate tasks and will have previous experience in incident response and threat management.We want people … your Security Operations manager and team members, to ensure we take a data driven approach to presenting our security postureAnalysing logs from multiple sources (SIEM, EDR, DLP, email) to identify and investigate security events and anomaliesRunning day-to-day security operations activitiesProviding technical support for first responder during normal business ...

Head of Cyber Resilience and Cloud

Hiring Organisation
Sanderson Recruitment
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£550 - £850 per day
major cyber incidents when they arise. Key responsibilities include: Leading cyber resilience strategy across cloud and enterprise technology environments. Overseeing cyber operations including SOC, SIEM, threat intelligence, vulnerability management, attack surface management and incident response. Working closely with the CISO to develop and implement strategic initiatives that improve operational resilience … Experience Required Proven experience in a senior cyber security leadership role within a large and complex organisation. Strong technical background covering cyber operations, SOC, SIEM, threat intelligence, incident response, penetration testing and red teaming. Extensive experience leading cyber incidents and crisis management activities across enterprise environments and supply chains. Strong ...

IT Support Engineer - Preston

Hiring Organisation
Adria Solutions Ltd
Location
Preston, Midge Hall, Lancashire, United Kingdom
Employment Type
Permanent
Salary
£35000 - £45000/annum
including VPNs, VLANs, and Wi-Fi. Monitor and support servers, storage, backups, and virtual environments. Assist with patching, vulnerability remediation, endpoint security, MDR, and SIEM solutions. Support ITIL service desk processes, change management, and major incident management. Essential Skills & Experience Microsoft 365 and Entra ID administration. Intune MDM and Conditional … UniFi, Aruba, Veeam, Bitdefender, PRTG, SQL Server, MySQL, IIS, Apache, WSUS, and related technologies. Desirable ITIL Foundation. Microsoft certifications. VMware experience. Exposure to cybersecurity, SIEM, and MDR solutions. This is an excellent opportunity for a motivated IT professional looking to broaden their experience across infrastructure, cloud services, networking, and security ...

SecOps Engineer

Hiring Organisation
OCS Group
Location
London, United Kingdom
Salary
£ 70 K
fixes, build them, and measure the outcomeMain Duties & Responsibilities of the Role Detection engineering and tuningBuild, test and maintain high-quality detections across our SIEM, XDR and email security platforms, mapped to the MITRE ATT&CK frameworkContinuously tune existing detections to reduce false positives and improve fidelity, using a data … that give analysts and leadership a clear view of operational healthPlatform health and configurationOwn the configuration and ongoing health of assigned SecOps platforms, including SIEM, EDR, email security and identity protection Monitor for configuration drift, agent coverage gaps and ingestion failures, and resolve them at sourceLead technical onboarding ...

Senior Channel Account Executive MSP

Hiring Organisation
Sophos
Location
United Kingdom
Salary
£ 60 K
United KingdomSales – Field Sales/Permanent/RemoteAbout UsSophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their ...

Cyber Security Ops. Professional

Hiring Organisation
BT Group
Location
Ipswich, Suffolk, United Kingdom
Salary
£ 70 K
contributes to the protection of brand and reputation.Key Purposes:•Responsible for the protective monitoring of systems and networks, specifically security information and event management (SIEM).•Supporting Operational Security and Service Delivery Teams, to ensure they have up-to-date and effective technical security controls.This job role can be based … monitor, identify, analyse, and respond to security threats.Incident detection, reporting, initial analysis/investigation, and incident prioritisation, to support the Security Incident ProcessImplementation and support of SIEM configuration - dashboards, rules, alerts, correlations, watchlists, reports etcUtilising other security technologies to enhance detection and identification of threats (Firewall, Anti-Virus, EDR/ ...

Security and compliance Architect

Hiring Organisation
Oscar Associates (UK) Limited
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£600 - £680 per day
tenancy, virtualisation, containers, encryption, key and secrets management, AI runtime and threat modelling. Design IAM solutions, including identity providers, SSO, RBAC and MFA. Define SIEM/SOAR architecture and detailed designs for logging, correlation, playbooks and incident response. Review and validate Bills of Materials for security, IAM and SIEM/… SOAR Key Experience: Strong Security Architecture experience within complex enterprise environments Experience across network security, IAM, SIEM/SOAR and threat modelling Strong understanding of EPP, DLP, encryption, containers and cloud or infrastructure security Ability to produce high-level and detailed technical designs If this sounds like a good ...

Cyber Security Manager

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 70 K
compliant to industry standards.This role covers information protection, including data loss protection and data classification, and threat protection, including security information and event management (SIEM), user and entity behaviour analytics (UEBA), point products like anti-virus (AV) and intrusion detection system/intrusion prevention system (IDS/IPS) and penetration … ISO27001, PCI and GDPR. Possibly a certified ethical hackerKnowledge of Security technologies is essential, such as network appliances, firewall administration, AD, IAM, PAM, SIEM, UEBA, AV, IDS/IPS and MDM solutions Understanding of common frameworks, such as ITIL or LEAN is preferredGood exposure of user environment management, including desktops ...

Operational Technology (OT) Cyber Security Engineer

Hiring Organisation
Bilfinger
Location
Chesterfield, Derbyshire, United Kingdom
Salary
£ 60 K
Host Intrusion Detection (HIDS)Malware detection and protection i.e. Endpoint Detection and Response (EDR)Network Intrusion Detection (IDS)Network monitoringSecurity Information and Event Management (SIEM)Support Project Managers with the planning and execution of OT cyber security aspects of projects to ensure they meet the time, cost and quality required … Host Intrusion Detection (HIDS)Malware detection and protection i.e. Endpoint Detection and Response (EDR)Network Intrusion Detection (IDS)Network monitoringSecurity Information and Event Management (SIEM)Practitioner of the ISA/IEC 62443 suite of standards, with particular focus on -2-1, 2-4, 3-2 and 3-3.Experience working ...

Senior Network Security Consultant

Hiring Organisation
CRG TEC
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£60000 - £75000/annum
implementation plans before taking responsibility for successful delivery. There’s also an increasing focus on modern security operations, so exposure to areas such as SIEM, SOAR and XDR would be useful. Beyond project delivery, you’ll act as a senior technical escalation point, carry out customer security audits and health … then remaining involved through implementation and ongoing support. Experience around security compliance frameworks and public-sector environments would be useful, as would exposure to SIEM, SOAR, XDR and infrastructure automation. More than anything, they want somebody who can take technical ownership. Someone who can get into the detail when needed ...

AD - Global Detection Engineering

Hiring Organisation
NCC Group
Location
London, United Kingdom
Salary
£ 100 K
coverage for advanced cyber attacks • Manage senior detection engineers who each manage a number of detection engineers on a specific technology set (EDR, NDR, SIEM) • Work pro-actively with wider NCC teams to ensure all relevant inputs are available (TI, DFIR, RTO etc) to build top-notch detection logic andand improvements that provide improved coverage to clients and improved efficiency to our SOC.Skills, Knowledge & ExpertiseExperience in detection engineering on a range of technologies (SIEM and EDR, ideally NDR as well) Experience in working in a global firm in a multi-cultural context Experience in working in a complex international ...

SOC Shift Lead

Hiring Organisation
Anson McCade
Location
City of London, London, United Kingdom
Investigate attack vectors, scope and potential impact across multiple data sources Perform root cause analysis and coordinate containment, eradication and recovery Correlate events across SIEM, EDR and other security tooling to build a clear incident narrative Identify detection gaps and support improvements to rules, thresholds and playbooks Mentor and provide … Analysis , with proven experience leading a SOC team or acting as a senior escalation point . You should have strong hands-on knowledge of: SIEM and EDR technologies Incident response and investigation Threat analysis and malware behaviour Detection engineering/tuning Incident containment and remediation Leading or mentoring SOC Analysts ...

Senior Enterprise Account Executive, UK Public Sector

Hiring Organisation
Sophos
Location
United Kingdom
Salary
£ 60 K
United KingdomSales – Field Sales/Permanent/RemoteAbout UsSophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
attacks, and ensure the organisation is prepared to respond Improve detection coverage, security tooling, telemetry, automation and operational processes Manage key security platforms including SIEM, SOAR, EDR and NDR Provide risk based decision making around cyber incidents, containment, recovery and remediation Manage external security partners and ensure effective delivery and … incident response within a complex enterprise environment Hands-on experience across security monitoring, incident response, threat intelligence and detection engineering Strong understanding of SIEM, SOAR, EDR, NDR, logging, telemetry and security tooling Proven experience managing major cyber incidents, including containment, recovery and executive communication Strong understanding of emerging cyber threats ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£85,000
/developing junior analysts Strong security incident investigation and response experience Experience across areas such as threat hunting and incident response Good knowledge of SIEM/EDR tooling no specific SIEM platform is required Ability to confidently take ownership of escalations in a critical 24/7 environment The role ...

Security & Compliance Architect

Hiring Organisation
Networking People (UK) Limited
Location
United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£650 - £680 per day + Outside IR35
Security Architect to work on a major security infrastructure programme. You'll need to hit the ground running across network security architecture, IAM, and SIEM/SOAR design work - this is a broad, senior-level brief requiring both strategic architecture thinking and hands-on validation of technical detail. Key Responsibilities … Identity & Access Management High-level design of identity providers, SSO and role-based access controls Validate BoM for IAM products, directories and MFA hardware SIEM/SOAR High-level architecture of log collection, correlation and incident-response systems Low-level design of log sources, parsers, playbooks and dashboards Validate ...