451 to 475 of 761 SIEM Jobs in the UK

Cyber Security Engineer - AVP

Location
Greater London, England, United Kingdom
maintain threat models, assess security controls, and build tools for proactive detection, configuration drift monitoring, and automated remediation. You will be responsible for managing SIEM systems, developing use cases, and refining security monitoring practices. Ensuring the integrity and performance of security infrastructure and collaborating closely with incident response teams … Develop and maintain threat models for information assets and services. Build and optimise security tools for detection, remediation, and orchestration. Design, implement, and maintain SIEM workspaces and develop custom queries for threat hunting and incident investigation. Develop, test, and deploy advanced threat detection use cases based on vulnerability insights. Analyse ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
organisation's cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security, while also providing security advice to technology projects and supporting security-by-design principles. Key Responsibilities Design, implement and … Defender, Purview, Exchange Online, SharePoint and Teams. Support identity and access management, vulnerability management and security monitoring. Investigate and respond to security incidents, including SIEM/SOAR investigations and advanced threat hunting. Support security reviews, audits and annual penetration testing. Identify vulnerabilities, risks and opportunities to improve the organisation ...

IT Specialist Senior IT Security Specialist - Ashford or Cairns

Location
Ashford, England, United Kingdom
Security Operations Specialist you will play a critical role in protecting our digital infrastructure. You’ll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetration testing to stay ahead of cyber threats. You’ll enhance identity and … infrastructure security Strong experience with Fortinet security products and solutions Advanced knowledge of Microsoft Active Directory and Entra ID administration Demonstrated experience with SIEM implementation and management Strong background in network security and infrastructure protection Experience with IDS/IPS systems and security monitoring tools Proven incident response and threat ...

Cyber Security Engineer

Hiring Organisation
Infosec
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£85 - £93 per hour
hands-on engineering role focused on the implementation, maintenance, optimisation and integration of security technologies across complex enterprise environments. Key Responsibilities Administer and maintain SIEM and security monitoring platforms Configure and optimise log ingestion, correlation rules and alerting Develop and maintain automation using PowerShell, Python and Regex Integrate security technologies … analysts to improve detection capabilities and reduce false positives Support change management, CAB activities and technical implementation planning Essential Technical Skills Security Platforms SIEM administration and support Security tooling implementation and maintenance Log onboarding and data source integration Detection engineering and alert tuning Scripting & Automation PowerShell Python Regex Integration Technologies ...

Microsoft Security Engineer

Location
Basildon, England, United Kingdom
Senior Microsoft Security Engineer Azure Security | Microsoft Sentinel | Defender XDR | Purview | SIEM Engineering We are currently supporting a leading organisation looking to hire an experienced Senior Microsoft Security Engineer to join their security engineering function. This is an excellent opportunity for a security professional with strong Microsoft security expertise … and implementation plans Required Experience Strong commercial experience within Microsoft security engineering roles Hands-on experience with Microsoft Sentinel, including KQL, detection engineering and SIEM optimisation Strong knowledge of Microsoft Defender XDR security capabilities Experience with Microsoft Purview DLP, sensitivity labels and information protection Strong understanding of Azure security principles ...

Principal Security Consultant - DSS

Location
Birmingham, England, United Kingdom
align with Zero Trust principles, regulatory requirements and recognised security frameworks. Lead the end-to-end delivery of complex consultancy engagements across SOC/SIEM/SOAR, XDR/EDR, identity, cloud security, vulnerability management and related services, ensuring delivery to agreed scope, quality and timelines. Serve as a senior … discussions. What You'll Bring: Significant experience delivering complex security consultancy engagements within an MSSP or managed services environment, covering SOC design and deployment, SIEM/SOAR, XDR/EDR, identity, cloud security and vulnerability management. Proven capability designing and implementing enterprise security architectures across Microsoft and mixed-vendor environments ...

Infrastructure Security Engineer - London

Location
Greater London, England, United Kingdom
pipelines; integrate and maintain code scanning platforms Detection, operations & tooling Monitor and respond to security events and incidents in cloud and hybrid environments Maintain SIEM data pipelines needed for reliable alerting Build, deploy, and maintain security operations infrastructure using Python, Terraform, and configuration management (e.g., Puppet) Develop dashboards and alerts … configuration management (e.g., Puppet) Hands-on experience building GitHub Actions and workflows Experience with observability and security operations tooling (e.g., Prometheus, Grafana, CloudWatch, Karma; SIEM platforms such as Wazuh) Experience in building custom cloud security tools or integrations Interest in leveraging AI for cloud security monitoring and automation Contributions ...

OpenAI Engineer (Cyber Security)

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Implementing Retrieval-Augmented Generation (RAG) solutions using enterprise knowledge sources. Applying prompt engineering techniques to optimise AI performance and accuracy. Integrating AI capabilities with SIEM, SOAR and other cyber security platforms. Establishing evaluation frameworks to measure effectiveness, accuracy and business value. Embedding Responsible AI principles and security controls throughout … stakeholder engagement and communication skills. Desirable Experience AI solutions within cyber security or threat detection environments. Experience with Microsoft Sentinel, Splunk, QRadar or other SIEM platforms. SOAR platforms and security automation tooling. Cloud platforms including Azure, AWS or Google Cloud. Public sector or government project experience. Active SC Clearance. Reasonable ...

OpenAI Engineer (Cyber Security)

Location
United Kingdom
Implementing Retrieval-Augmented Generation (RAG) solutions using enterprise knowledge sources. Applying prompt engineering techniques to optimise AI performance and accuracy. Integrating AI capabilities with SIEM, SOAR and other cyber security platforms. Establishing evaluation frameworks to measure effectiveness, accuracy and business value. Embedding Responsible AI principles and security controls throughout … stakeholder engagement and communication skills. Desirable Experience AI solutions within cyber security or threat detection environments. Experience with Microsoft Sentinel, Splunk, QRadar or other SIEM platforms. SOAR platforms and security automation tooling. Cloud platforms including Azure, AWS or Google Cloud. Public sector or government project experience. Active SC Clearance. Reasonable ...

Cyber Security Engineer - Threat Detection

Location
City Of London, England, United Kingdom
response, and red team functions to keep coverage grounded in real adversary behavior. Responsibilities Detection Engineering - Design, build, test, and maintain detection content across SIEM, EDR, and NDR platforms, and document the intent, data source, and expected behavior of each detection Detection Tuning and Health - Own false positive rates, alert … retest Log Source Health - Validate the health and completeness of security log sources, detect collection failures and silent feeds, and onboard or update SIEM log sources in a timely manner Automation and Tooling - Apply a developer and problem-solving mindset to the work, using scripting to build internal tooling, process ...

Sr InfoSec Analyst

Location
Belfast City District, Northern Ireland, United Kingdom
RESPONSIBILIES Responsible for working in Security Operation Center (SOC) team environment. Monitor, analyse, investigate security incidents and events using various tools and technologies including SIEM, UEBA, Threat Intel and EDR. Perform security incident and event correlation, analysis, triage using information gathered from a variety of sources within the enterprise. Generate …/Diamond Models, and the MITRE ATT&CK/D3FEND framework). Knowledge of technical security solutions (such as but not limited to firewalls, SIEM, NIDS/NIPS/HIDS/HIPS, EDR, DLP, SOAR, proxies, network behavioural analytics, orchestration, automation and cloud security). Deep knowledge of TCP/ ...

IT Infrastructure & Systems Manager

Location
Greater London, England, United Kingdom
Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. … Server Security Symantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/XDR Endpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) Networking Cisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & Storage Dell PowerEdge Servers Dell PowerVault SAN Storage ...

Senior SecOps Specialist

Hiring Organisation
Teya Solutions
Location
London, UK
Employment Type
Full-time
incident reviews and ensure improvements are implemented and follow-upscompleted. Support incident metrics (MTTD, MTTR, recurrence, etc.)SOC Tooling & Platform Operations Operate and improve SIEM, EDR, email security, case management, and vulnerabilitytools. Monitor health, coverage, data quality, and integrations. Troubleshoot ingestion, parsing, API, and configuration issues. Build and maintain integrations … 7+ years in SOC, incident response, detection engineering, or security engineering. Experience leading complex security incidents end-to-end. Strong hands-on experience with SIEM, EDR, and security tooling. Experience building and tuning detections and queries. Experience with log onboarding, telemetry pipelines, and data quality issues. Strong vulnerability management and ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
United Kingdom
campaign attribution analysis.Surface detection opportunities from technical research and partner with Detection Engineering to turn them into detection content such as YARA, Sigma, or SIEM queries.Support threat hunting, detection engineering, incident response, vulnerability management, fraud, and broader cyber defense teams with intelligence-driven context and prioritization.Develop and refine Priority Intelligence … senior individual contributor or functional lead.Strong knowledge of system, network, and application security, including Windows and Linux internals.Experience analyzing threats using telemetry from SIEM, EDR, and TIP platforms, and familiarity with CTI tools and sources such as OSINT, dark web sources, ISACs, Recorded Future, Mandiant, Flashpoint, Anomali, ThreatConnect, or VirusTotal.Hands ...

Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)

Location
Urmston, England, United Kingdom
actively shaping the security posture of organizations that matter.This is your chance to build real-world experience with cutting-edge tools like SIEM and security automation platforms, all while working in a collaborative, mission-driven environment.If you are successfully offered this position, you will go through a series … problem-solving mindset.Familiarity with incident, problem, or change management.Understanding of security principles and best practices.Strong communication and multitasking skills.Nice-to-Have Skills:Experience with SIEM tools (e.g., QRadar, Splunk, Microsoft Sentinel).Knowledge of TCP/IP and common cyber threats (phishing, malware, DDoS).Certifications like CompTIA Security+, Splunk certified user ...

Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)

Location
Inverness, Scotland, United Kingdom
actively shaping the security posture of organizations that matter. This is your chance to build real-world experience with cutting-edge tools like SIEM and security automation platforms, all while working in a collaborative, mission-driven environment. If you are successfully offered this position, you will go through a series … with incident, problem, or change management. Understanding of security principles and best practices. Strong communication and multitasking skills. Nice-to-Have Skills: Experience with SIEM tools (e.g., QRadar, Splunk, Microsoft Sentinel). Knowledge of TCP/IP and common cyber threats (phishing, malware, DDoS). Certifications like CompTIA Security+, Splunk ...

Security TAM: Enterprise SIEM & Cloud Security Advisor

Location
Greater London, England, United Kingdom
Cisco is seeking a Security Technical Account Manager to drive adoption and optimization of the Splunk platform for our critical customers. You will act as a trusted advisor, translating complex security use cases into practical ...

IT Security Analyst | SIEM & Incident Response

Location
Manchester, England, United Kingdom
Menzies LLP in Manchester is seeking an IT Security Analyst to join the IT & Innovation team. You will monitor security alerts from the SoC, investigate incidents, and help improve configurations to strengthen security across the ...

Senior Security Analyst: Incident Response & SIEM Mastery

Location
Newbury, England, United Kingdom
Vodafone Group Plc is seeking a Level 3 Security Analyst in Newbury to join its Cyber Defence Operations Center of Excellence. This role is pivotal in protecting millions of customers from cyber threats through advanced ...

Hybrid SOC Analyst: Cloud, SIEM & OT Security

Location
Milton, Scotland, United Kingdom
TRIA in the United Kingdom is seeking a skilled SOC Analyst to join a market-leading energy-sector organisation undergoing an IT security transformation. You will secure IT and OT networks and act as the ...

Remote Security Operations Analyst - SIEM/IR

Location
Greater London, England, United Kingdom
Viasat is seeking a RTO Security Analyst to join the frontline 24x7 team monitoring networks for suspicious activity and triaging security alerts. You will handle incidents across online and on-prem infrastructures, determine attack use ...

Remote UK Security Analyst – Splunk & SIEM (6 Mo)

Location
Greater London, England, United Kingdom
Xcede Recruitment Solutions is looking for an experienced Security Analyst for a 6-month contract that is fully remote. The successful candidate will support a significant technology transformation programme while maintaining effective security visibility during ...

Security Information Engineer

Location
Greater London, England, United Kingdom
Requirements Experience with deploying and using a Security Information and Event Management (SIEM) Knowledge of current operating systems i.e., Windows Server 2016-2019, Windows 10, Mac OS and Linux Microsoft Policy & Security – GPO’s, Patching (WSUS), Defender Antivirus & Firewall Penetration Testing exposure/awareness Experience performing technical analysis involving security ...

Senior Information Security Analyst

Location
Towcester, England, United Kingdom
bring You’ll have experience in several of the following areas: Security Operations, Security Incident Response or Security Engineering. Security Information and Event Management (SIEM) and Endpoint Detection & Response (EDR) technologies. Identity and Access Management, including MFA, Conditional Access and Privileged Access. Data Loss Prevention (DLP) technologies and policy management. ...

Security Operations & Risk Analyst (Hybrid)

Location
Manchester, England, United Kingdom
works with Technology teams, third‐party providers, and business stakeholders to reduce cyber risk and maintain policy compliance. You will help monitor SOC/SIEM outputs, participate in risk assessments, and assist with audit responses. Strong communication and a security‐minded mindset are essential for protecting information assets. #J ...