576 to 600 of 684 SIEM Jobs in the UK

2nd / 3rd Line Security Analyst

Hiring Organisation
XACT PLACEMENTS LIMITED
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£60,000
Investigate identity and cloud-based compromise (e.g. anomalous sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python … Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive alert triage Mentor junior analysts and help drive ...

Security Architect

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
and physical layers) in collaboration with other design team members. Support the design of a range of security tools, such as: Splunk and Sentinel SIEM, Nessus Vulnerability management, Microsoft XDR and other as appropriate. Understand and leverage BAE Systems experience, IP and expertise, with support of product and subject matter … Policy and Processes, Technology and Physical Infrastructure layers. Knowledge and experience of design, build and deployment of SOC technology including at least two of SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence, to identify signs of an intrusion. Engineering leadership and management for design, build, deployment and operation of Security Operations ...

Senior Cyber Security Engineer (CyberArk & PAM)

Location
City of Edinburgh, Scotland, United Kingdom
deepest expertise. BeyondCyberArk, the role carries breadth across the modern security stack: hands-onexperience with Zscaler (ZIA/ZPA) and working capability across EDR, SIEM, vulnerability management and the wider cyber product set we operate forclients. You will reportto the Cyber Operations Lead and work closely with the SOC engineers … and evidence them for client audits (ISO 27001, Cyber Essentials Plus). Security tooling & engineering Deploy, configure and maintain the security tooling estate: EDR, SIEM integrations, vulnerability scanning and email security. Support Zscaler (ZIA/ZPA)deployment and policy work alongside the zero trust leads. Own tooling health: versioncurrency, coverage ...

Pre-Sales Solution Architect - Cyber Security

Hiring Organisation
Bytes Software Services
Location
Leatherhead, Surrey, United Kingdom
Salary
£ 80 K
bold, but will have crossover into other areas:Threat & Exposure Management (eg. Red Teaming, Penetration Testing, CTEM, VM, OT)Security Operations and Governance (eg. SIEM, GRC, TPRM, Workshops and Assessments)Identity and Access Management (eg. PAM, PIM, NHI, ITDR, MFA, SSO)DataCentre and Cloud Security (eg. CNAPP, Micro-Segmentation, CSPM … and scoping sessionsDESIRABLEStrong written and verbal communication skillsESSENTIALAwareness of industry frameworks and regulations applicable to the UK and EU marketESSENTIALUnderstanding of security operating models, SIEM or SOC conceptsDESIRABLECORE COMPETENCIES & SKILLS – BASED ON POSITION AND GRADE CompetencyDescriptionTechnical JudgementAbility to make sound scoping and design decisions across aligned Security portfolioDESIRABLECustomer EngagementConfident leading ...

Senior Security Specialist - Threat Hunting

Hiring Organisation
Yolk Recruitment Limited
Location
Cardiff, South Glamorgan, Wales, United Kingdom
Employment Type
Permanent
proactive threat hunting using intelligence-led and hypothesis-driven approaches. Investigate complex security incidents and provide technical escalation within the CSOC. Develop and optimise SIEM detections, analytics, use cases and KQL queries to improve threat detection and reduce false positives. Identify gaps in logging, monitoring and telemetry across cloud, identity … Cyber Security, IT or a related technical discipline. Strong knowledge of cyber security operations, threat hunting, incident response and security monitoring. Experience with SIEM platforms (ideally Microsoft Sentinel), KQL or similar analytics tools. Good understanding of cloud, endpoint, identity, network and application security. Knowledge of security frameworks such as NIST ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
design phase and ongoing operations of our multi-cloud posture, define guardrails and policy-as-code standards, and support the strengthening of our SIEM and detection capability. You'll take on the most complex and ambiguous cloud security challenges in the business, and hold engineers to best practices.This … and PCI DSS benchmarks, and holding engineering teams accountable to remediation outcomes.Work with Security Operations to shape cloud logging and detection requirements, ensuring our SIEM has the right visibility across the estate.Collaborate with senior stakeholders to articulate security risks and mitigations in terms that support business decision-making.Skills and Experience ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
design phase and ongoing operations of our multi-cloud posture, define guardrails and policy-as-code standards, and support the strengthening of our SIEM and detection capability. You'll take on the most complex and ambiguous cloud security challenges in the business, and hold engineers to best practices. This … benchmarks, and holding engineering teams accountable to remediation outcomes. Work with Security Operations to shape cloud logging and detection requirements, ensuring our SIEM has the right visibility across the estate. Collaborate with senior stakeholders to articulate security risks and mitigations in terms that support business decision-making. Skills and Experience ...

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
Analyst to support our defence/aerospace client on a short term contract. The successful candidate will have proven experience using IBM QRadar SIEM in a monitoring and incident response capacity. Key Responsibilities: Monitor and analyse security events using IBM QRadar SIEM Investigate and respond to security incidents across various … standard Cyber requests and provide appropriate responses Job Requirements: Active SC clearance Experience within a Security Operations Centre (SOC) Proficiency with IBM QRadar SIEM for monitoring and incident response Familiarity with common query languages, preferably KQL Understanding of security processes and controls in enterprise environments Ability to work independently with ...

Splunk Specialist

Hiring Organisation
Sanderson Government and Defence
Location
Newport, Gwent, Wales, United Kingdom
Employment Type
Contract
work. This is an exciting opportunity for a hands-on Splunk professional with strong Unix administration skills and a SecDevOps mindset to support ongoing SIEM operations, upgrades, migrations and service improvements. The successful candidate will provide end-to-end support for the Splunk platform, ensuring optimal system health, performance andsecurity while contributing to automation and operational efficiencies. Key Responsibilities Provide end-to-end administration and support of the Splunk SIEM platform. Conduct Splunk health checks and performance monitoring across the environment. Support planned migrations, upgrades and platform enhancement activities. Create, maintain and optimise Splunk alerts, dashboards and reports. Produce ...

Splunk Specialist

Hiring Organisation
Sanderson Government and Defence
Location
Newport-On-Tay, north east scotland, united kingdom
work. This is an exciting opportunity for a hands-on Splunk professional with strong Unix administration skills and a SecDevOps mindset to support ongoing SIEM operations, upgrades, migrations and service improvements. The successful candidate will provide end-to-end support for the Splunk platform, ensuring optimal system health, performance andsecurity while contributing to automation and operational efficiencies. Key Responsibilities Provide end-to-end administration and support of the Splunk SIEM platform. Conduct Splunk health checks and performance monitoring across the environment. Support planned migrations, upgrades and platform enhancement activities. Create, maintain and optimise Splunk alerts, dashboards and reports. Produce ...

Lead Technical Engineer (SOC)

Hiring Organisation
Stott & May Professional Search Limited
Location
Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £800 per day
and support cloud, on-premises VM, and container-based hosting. Design and configure network security devices, routers, switches, VLANs, DNS, and identity management. Lead SIEM onboarding activities, ensuring solutions support high data ingest rates. Develop test procedures covering functional and non-functional requirements. Maintain requirements and user stories, ensuring traceability … technical engineering, SOC deployment, or security infrastructure. Proven experience designing, building, and deploying SOC solutions for previous clients. Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong experience deploying and configuring applications in cloud and/or on-premises environments, particularly for high data ...

Senior Solutions Engineer

Hiring Organisation
Sumo Logic
Location
London, United Kingdom
Salary
£ 80 K
with experience leading projects and/or working with customersHands on knowledge of Security related products, technologies, and sources such as IDS/IPS, SIEM/Log Management, Network/Endpoint Security, Threat Detection, Incident Response, MSSP/MDR, Threat Feeds, CASB, etcExperience with open source collections (Telegraf, FluentBit, FluentD … increasing complexity of modern cybersecurity and cloud operations challenges, we empower digital teams to move from reaction to readiness—combining agentic AI-powered SIEM and log analytics into a single platform to detect, investigate, and resolve modern challenges. Customers around the world rely on Sumo Logic for trusted insights ...

Senior SOC Engineer

Hiring Organisation
Experis
Location
Nationwide, United Kingdom
Employment Type
Permanent
Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender/Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and scripting Improving security event detection and … Sentinel/Azure Sentinel Microsoft Defender/Defender XDR Strong KQL/Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, scripting, SOAR or Sentinel playbooks Cloud security assessments, controls ...

SOC Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
high-severity security incidents. Support containment, eradication and recovery efforts in partnership with technical stakeholders. Produce detailed incident reports and recommendations. Tune and optimise SIEM and detection rules to improve threat visibility. Identify opportunities to strengthen detection capabilities, processes and response playbooks. Provide mentoring and technical guidance to junior … within a SOC, Incident Response or Threat Analysis environment. Strong understanding of cybersecurity operations, incident response methodologies and threat investigations. Hands-on experience with SIEM and EDR platforms. Knowledge of malware behaviour, attack techniques and threat detection. Excellent analytical and problem-solving skills. Bachelor's degree in Cybersecurity, Computer Science ...

Identity and Access Management Manager

Hiring Organisation
Kensington Mortgage Company
Location
Marlow, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
including: IAM governance and lifecycle management. Joiner, Mover and Leaver process design and optimisation. Privileged Access Management (PAM). Security Information and Event Management (SIEM) platforms. Monitoring, alerting and logging solutions. DataDog and observability tooling. AWS and Azure cloud administration. SQL and advanced Excel capability. Incident, access and governance processes. ...

Security Manager - SOC - Welwyn Garden City, United Kingdom of Great Britain and Northern Ireland

Hiring Organisation
Tesco
Location
Welwyn Garden City, Hertfordshire, United Kingdom
Salary
£ 80 K
into customer and business impact.· Understanding of cyber incident management models and escalation frameworks across enterprise environments.· Familiarity with core cyber defence technologies (e.g. SIEM, Endpoint Detection and Response (EDR), Security Orchestration, Automation and Response (SOAR)).· Knowledge of cloud and container security, and modern technology architectures.· Experience with product … into customer and business impact.· Understanding of cyber incident management models and escalation frameworks across enterprise environments.· Familiarity with core cyber defence technologies (e.g. SIEM, Endpoint Detection and Response (EDR), Security Orchestration, Automation and Response (SOAR)).· Knowledge of cloud and container security, and modern technology architectures.· Experience with product ...

Junior Cyber Security Analyst (Security Officer)

Hiring Organisation
NHS England
Location
Leeds / Exeter, LS1 4AP, United Kingdom
Salary
£43954.90 to £52928.70
levels/national-security-vetting-clearance-levels#securitycheck-sc Person Specification Knowledge Essential Knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilise related applications to protect organisational networks from cyber risks. Knowledge of tools, techniques and processes of intrusion detection and prevention; ability ...

Security Operations Specialist

Location
Greater London, England, United Kingdom
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

Security Platform Engineer

Hiring Organisation
Experis
Location
United Kingdom
Employment Type
Permanent
Salary
GBP 70,000 - 100,000 Annual
Within this role, you will be responsible for: Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP) Develop and implement security monitoring and logging strategies Investigate and analyse ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
City of Westminster, England, United Kingdom
center dashboards for anomalous activity. Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Management (SIEM) etc. Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative ...

CNI Service Compliance Engineer

Location
Chippenham, England, United Kingdom
following technology types: Server operating systems Networking Fire-walling Virtualisation Endpoint devices Encryption Anti-virus and malware Vulnerability Management Security information and event management (SIEM) Intrusion Detection and Prevention systems (IDS and IPS) #J-18808-Ljbffr ...

Tech lead - SOC responder

Hiring Organisation
Colt Technology Services UK
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

Tech Lead - SOC Responder

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

Cyber Security Engineer

Location
Stevenage, England, United Kingdom
upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. Your skillset … creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books Experience with SIEM (Security Information Event Management) technologies Cyber Security Engineer 24 month contract Based in Stevenage - Fully onsite Offering up to £92ph Inside IR35 #J-18808-Ljbffr ...