551 to 575 of 684 SIEM Jobs in the UK

Cyber Security Operations Specialist

Hiring Organisation
Sanderson Recruitment
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550 per day
incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop and optimise SIEM detections, alerting rules and response workflows. Improve the performance and effectiveness of security platforms rather than simply operating them. Produce clear incident reports and recommendations. … and non technical stakeholders to drive security improvements. Technology Environment Experience with the following is highly desirable: Microsoft Defender Microsoft Sentinel Microsoft Purview Proofpoint SIEM, EDR and related security technologies About You You'll have a strong background in Security Operations and Incident Response, with hands on experience working with ...

Senior Cyber Security Engineer (EDR)

Hiring Organisation
Sanderson Government and Defence
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
securing large-scale, cloud-based environments supporting critical public sector and government services. This is a hands-on engineering role focused on threat detection, SIEM engineering, security monitoring, log management, and SOC optimisation . You'll design and enhance detection capabilities, improve security visibility, and ensure organisations can rapidly identify … resilience while enabling faster, risk-based decision-making. What You'll Be Doing Detection Engineering & Threat Monitoring Develop, tune, and maintain detection rules across SIEM, EDR, and threat detection platforms. Create and optimise detection logic using technologies such as Splunk and endpoint security solutions. Map detections against the MITRE ...

Professional Services Staff Consultant

Hiring Organisation
Palo Alto Networks
Location
London, United Kingdom
Salary
£ 80 K
trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendationshands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments6+ years of experience with Security Operations Center (SOC) tooling, processes, and workflowsHands-on technical mastery across SIEM, SOAR … cloud security, and threat intelligenceAbility to conceive, architect, and develop effective correlation and detection rulesFamiliarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus.Strong expertise in Regular Expressions (Regex)Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.), is a plusMust ...

Cyber Security Consultant

Hiring Organisation
Datasource
Location
London, UK
pace, and focused on solving the toughest security challenges facing major Defence and Security organisations today. The work spans detection, response, operating model design, SIEM and SOAR tooling, and everything in between. You'll need deep hands-on experience in security operations architecture, a solid grasp of architecture frameworks like … TOGAF, and real-world exposure to SIEM and SOAR platforms. Working Patterns and location – Hybrid – 2-3 days on site per week The Key Responsibilities of a Cyber Security Consultant: * Design and continuously improve detection and response capabilities for clients. * Define architectural blueprints to guide engineers on implementation and tooling. ...

Senior Developer Experience Security Engineer

Hiring Organisation
Motorway
Location
London, United Kingdom
Salary
£ 80 K
logging, and monitoring are consistent, high-quality, and provided as a standard capability for all teams.Define and implement platform-wide security use cases (e.g. SIEM detections, alerts, and signals) that scale across teams without bespoke configurationWork as part of a virtual SOC with the Security Operations Team to support … best practice security for networks, systems, web applications, APIs and databases.Good understanding of secure software development practices.Familiarity with security tools and technologies, such as SIEM, IDS/IPS, WAF and vulnerability scanners.Knowledge of common adversarial Tactics, Techniques and Procedures (Mitre Att&ck TTPs).Knowledge of security standards and frameworks (e.g. ...

Automation Engineer II, Falcon Complete (Remote)

Hiring Organisation
CrowdStrike
Location
United Kingdom
Salary
£ 45 K
playbooks in SOAR platforms to streamline investigation, triage, and response actionsDevelop PowerShell and Python scripts for security enrichment, remediation, and basic forensic functionsAssist with SIEM query integration into automated workflows to provide context for security investigationsApply data parsing techniques using JSON and Regular Expressions for security data manipulationMonitor and optimize … logic within automation or workflow platformsDesign and execute workflow validation and quality assurance testing strategies to ensure automation reliability and detection integrityBasic understanding of SIEM query languages and security analyticsFamiliarity with data formats (JSON) and Regular Expressions for data parsingUnderstanding of incident detection and response workflows in SOC/ ...

Attack Monitoring Analyst (GSOC)

Hiring Organisation
London Stock Exchange Group
Location
London, United Kingdom
Salary
£ 80 K
days off rotation.RESPONSIBILITIES:• Triage security events and employ a methodical and coherent response to security incidents adopting playbooks where necessary.• Competently operate a chosen SIEM (e.g. Splunk/QRadar/LogRhythm) for incident investigations, or for the development of monitoring dashboards.• Utilise playbooks, existing knowledge and accurate online resources … date with current vulnerabilities, attacks, and countermeasures.• Identify, respond and remediate cyber events generated through monitoring technologies.EXPERIENCE:• Preferred experience with operating or administrating a SIEM (e.g. Splunk/QRadar/LogRhythm).• Solid understanding of networks including the TCP/IP stack, typical organisation architectures, and common protocols abused ...

Lead SOC Architect

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
high level designs, low level designs and deployment level designs. Support the design of a range of security tools, such as: Splunk and Sentinel SIEM, Nessus Vulnerability management, Microsoft XDR and other as appropriate. Understand and leverage BAE Systems experience, IP and expertise, with support of product and subject matter … Policy and Processes, Technology and Physical Infrastructure layers. Knowledge and experience of design, build and deployment of SOC technology including at least two of SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence, to identify signs of an intrusion. Good understanding of industry best practice in Security Operations for Services, People, Policy ...

SOC Analyst Level 3

Hiring Organisation
Hackajob Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£65,000
techniques and procedures (TTPs). Indicators of Compromise (IOCs) and Indicators of Attack (IOAs). Cyber Threat Intelligence (CTI). Elastic Stack or other SIEM technologies. Open-Source Intelligence (OSINT) methodologies. Communicating technical information clearly to varied audiences. Coaching, mentoring or supporting less experienced analysts. Desirable Experience CompTIA Security+, SecurityX … CISSP, CISM or similar certifications. Experience working within highly secure or government environments. Advanced SIEM engineering and detection content experience. What You'll Gain At DXC, you'll join a team where learning, innovation and career development are actively encouraged. You'll benefit from: Exposure to cutting-edge cyber security ...

Senior IT Infrastructure & Systems Manager

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 55 K
Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. … Plus SAAS solutionsSQL ServerSecuritySymantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/XDREndpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) NetworkingCisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & StorageDell PowerEdge Servers Dell PowerVault SAN Storage Technical CompetenciesData ...

Solutions Consultant - SecOps

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, UK
Employment Type
Full-time
managed services and professional services. Reporting to the SecOps Solutions Architect, you will support Account Managers and customers across three key solution domains: SecOps – SIEM, EDR/XDR, SOAR, automation, AI-assisted triage and threat intelligence. Exposure Management – vulnerability management, CTEM and attack path analysis. Email Security. You will work … SecOps, Exposure Management and Email Security portfolios, and be able to communicate effectively with both technical and business stakeholders. Key Responsibilities: Maintain knowledge across SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability management and exposure management technologies. Understand SOC operations and confidently position our Managed SOC, Managed VOC and Threat ...

Solutions Consultant – SecOps

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
technology, managed services and professional services.Reporting to the SecOps Solutions Architect, you will support Account Managers and customers across three key solution domains:SecOps – SIEM, EDR/XDR, SOAR, automation, AI-assisted triage and threat intelligence.Exposure Management – vulnerability management, CTEM and attack path analysis.Email Security.You will work closely with … SecOps, Exposure Management and Email Security portfolios, and be able to communicate effectively with both technical and business stakeholders.Key Responsibilities:Maintain knowledge across SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability management and exposure management technologies.Understand SOC operations and confidently position our Managed SOC, Managed VOC and Threat Intelligence services.Develop ...

IT Operations Engineer

Hiring Organisation
Oscar
Location
Doncaster, South Yorkshire, United Kingdom
Salary
£ 60 K
IT Operations Engineer - Microsoft Cloud & InfrastructureLeeds/Doncaster - 3 days on site 45,000 We are looking for an experienced Operations Engineer to join a growing IT Operations function, taking ownership of core infrastructure, cloud ...

IT Operations Engineer

Hiring Organisation
Oscar
Location
York, North Yorkshire, United Kingdom
Salary
£ 60 K
IT Operations Engineer - Microsoft Cloud & InfrastructureLeeds/Doncaster - 3 days on site 45,000 We are looking for an experienced Operations Engineer to join a growing IT Operations function, taking ownership of core infrastructure, cloud ...

Security Engineer - SIEM/XDR - London (Hybrid)

Hiring Organisation
Nova Source Technologies
Location
London, UK
Employment Type
Full-time
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, London (Hybrid) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity to join a leading ...

SIEM Engineer (Elastic)

Hiring Organisation
Searchability NS&D
Location
Hemel Hempstead, England, United Kingdom
SIEM Engineer (Elastic) – Hemel Hempstead, UK Up to £90,000 Depending on Experience Hybrid working, 3 days onsite Must be eligible for DV clearance ABOUT THE CLIENT: Our client is a well-established organisation delivering complex, secure technology solutions across enterprise environments. This is an opportunity to take technical ownership … secure on-premises estate. You will take technical ownership of Elasticsearch clusters, Logstash, Kibana, Beats, Elastic Agent and Fleet, while delivering solutions across SIEM, observability, threat detection and high-volume data ingestion. You will design highly available and resilient platforms, optimise cluster performance, implement security controls and automation, and provide ...

Information Security Operations Manager

Location
Greater London, England, United Kingdom
Job Title: Information Security Operations Manager Reporting to: Information Technology Location:Head Office, White City Place, West London Contract Type: Full time, 37.5 hours per week About Us: ME+EM is one of the UK’s ...

SIEM Detection Engineer - SC Cleared

Hiring Organisation
Sanderson Recruitment Plc
Location
Reading, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 625 - 675 Daily
Blue Chip Utlities Client is looking for a number of SIEM Engineers who hold SC Clearance. It will be based between Reading or Havant and will require Active SC clearance. SIEM Engineer (SC Active) Rate; Flexible (inside IR35/via umbrella) Location; Remote, Ad-hoc Reading Duration; 6 month initial … Clearance (Essential). . Strong experience with Microsoft Sentinel engineering, administration and optimisation. . Proven experience onboarding and integrating complex log sources into SIEM platforms. . Experience developing custom parsers, transformations and data normalisation logic. . Strong knowledge of KQL (Kusto Query Language), advanced query development and optimisation. . Experience ...

Security Platform Engineer, Google Cloud Public Sector

Location
Greater London, England, United Kingdom
custom exploits, adversary emulation scenarios, or security automation frameworks for internal testing. Knowledge of cloud-native logging, monitoring, and Security Information and Event Management (SIEM) integration for detecting sophisticated adversary tactics. Understanding of Kubernetes attack surfaces, including container escapes, privilege escalation, and lateral movement techniques. Current and active UK Developed ...

Security Platform Engineer, Google Cloud Public Sector

Location
City of Westminster, England, United Kingdom
custom exploits, adversary emulation scenarios, or security automation frameworks for internal testing. Knowledge of cloud-native logging, monitoring, and Security Information and Event Management (SIEM) integration for detecting sophisticated adversary tactics. Understanding of Kubernetes attack surfaces, including container escapes, privilege escalation, and lateral movement techniques. Current and active UK Developed ...

Cyber Security Engineer

Hiring Organisation
Akkodis
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Contract
creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books. Experience with SIEM (Security Information Event Management) technologies Responsibilities: We are looking for a Cyber Security Engineer to support the Cyber Security Capability Manager in ensuring Digital Excellence … upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK network SOC Threat Detection ...

Cyber Security Engineer

Hiring Organisation
HSB Technical Ltd
Location
Redhill, Surrey, South East, United Kingdom
Employment Type
Permanent
Cyber Security Engineer: Develop and maintain information security plans, policies and procedures Implement and manage security controls across internal and customer networks Monitor SIEM platforms, IDS/IPS systems and other security tools for threats and vulnerabilities Investigate and resolve cyber security incidents and security alerts Carry out vulnerability assessments … continual security improvement initiatives Some of the technologies and platforms you may be working with include: Cisco Firewalls Cisco Routers Cisco Switches Juniper Platforms SIEM Solutions IDS/IPS Vulnerability Management Tools Penetration Testing Tools Computer Forensic Tools ISO27001 Compliance ITIL Qualifications and requirements for the Cyber Security Engineer: Strong ...

Senior Security Operations Analyst

Hiring Organisation
We Are Fr Group
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£65,000
and incident response at real scale. Senior Security Operations Analyst Salary - £54,000 - £65,000 + bonus Location - Manchester or Leeds - Hybrid The opportunity SIEM - write and tune detection rules, investigate alerts end-to-end, and collaborate with Infrastructure, Networks, DevOps and an outsourced SOC. Threat intelligence & hunting - monitor intelligence … estate. Policy & control design - contribute to security policy, standards, and documentation, and design and test logical security controls. Essential skills and experience Hands-on SIEM experience - Chronicle, Splunk, or Sentinel Strong understanding of firewalls, IDS/IPS and Windows Security Event Logs Knowledge of cloud and traditional infrastructure security principles ...

Director, Security Operations Enablement

Hiring Organisation
American International Group (AIG)
Location
London, United Kingdom
Salary
£ 100 K
senior leadership role responsible for the engineering and enablement functions that underpin Security Operations. This includes ownership of Data Engineering, Data Analytics, and SIEM/SOAR engineering capabilities, ensuring that platforms, data pipelines, and automation solutions effectively support detection and response outcomes. This role manages a global team of engineering … engineering delivery with broader strategic objectives.What you'll need to succeedOwn and lead the Security Operations Enablement function, covering Data Engineering, Data Analytics, and SIEM/SOAR engineeringDefine and deliver the strategic roadmap for Security Operations platforms and capabilities, ensuring alignment with organizational cyber defense prioritiesManage and develop a global ...

Security Detection & Response I

Hiring Organisation
Bank of America
Location
Chester, Cheshire, United Kingdom
Salary
£ 70 K
and apply concepts across multiple domainsBasic experience with log analysis and telemetry interpretation, including familiarity with querying or analyzing data using tools such as SIEM platforms or query languages (KQL, SPL, SQL, or similar)Exposure to security platforms and technologies such as SIEM, EDR/XDR, identity systems, or cloud ...