SIEM Jobs in the UK

1 to 25 of 307 SIEM Jobs in the UK

Senior Information Security Engineer

Manchester, Lancashire, United Kingdom
DFL
highly technical engineering role, where you'll be hands-on developing and maintaining our security operations tooling. Key Responsibilities: Security Infrastructure & Engineering Architect, implement, and manage security technologies including: SIEM (Sentinel) Microsoft Defender suite (Cloud, Endpoint and Identity), Microsoft Sentinel, Purview and Azure infrastructure (including RBAC, PIM, NSGs and identity protections). Firewalls, IDS/IPS, WAF, VPN, and network More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Concierge Security Engineer 3

England, United Kingdom
Arctic Wolf
Linux, and Unix environments Encryption: Familiarity with encryption protocols and technologies Penetration Testing: Ability to assess and interpret penetration test results to guide remediation Security Tools: Hands-on with SIEM, SOAR, EDR, UTM, and honeypots. Cloud Security: Understanding of cloud platform security measures (AWS, Azure, etc.) Security Frameworks: Advanced knowledge of frameworks such as MITRE ATT&CK, NIST, etc. Consulting More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Engineer

Manchester, North West, United Kingdom
Intrum
posture and make a measurable impact, we'd love to have you on the team. What you will do: Operate and optimise a wide range of security platforms, including SIEM, XDR, EDR, IAM, DLP, PAM, ZTNA, and vulnerability management tools Take ownership of the detection and response lifecycle - triaging alerts, investigating incidents, identifying root causes, and coordinating response actions Implement More ❯
Employment Type: Permanent
Posted:

Cyber Security Manager

London, United Kingdom
Two Circles Ltd
and vulnerability management, anti-virus management, security monitoring etc. Helping design and deliver improved security tooling across all areas of cyber security (DR design and testing, End user tooling, SIEM tooling and event ingestion etc.) Supporting the Technology team to keep information security infrastructure up to date with emerging threats and vulnerabilities, including advising on architecture and design of internal More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Engineer

Bristol, Avon, South West, United Kingdom
Hybrid / WFH Options
NCC
Essentials Plus). Experience aligning infrastructure builds with cyber security standards such as NCSC guidance, CIS benchmarks, or Microsoft Security Baselines. Experience implementing monitoring, logging, and alerting toolsets including SIEM and threat detection platforms. Understanding of data classification, encryption, and secure storage/access principles. Familiarity with endpoint protection platforms and vulnerability management tools. Experience securing hybrid identity solutions and More ❯
Employment Type: Permanent, Work From Home
Posted:

Cyber Security Engineer

Manchester, North West, United Kingdom
Intrum
detection and DevSecOps practices, ensuring security is embedded within operational workflows and cloud-native architectures. What you will do: Operate and optimise core cyber security tools and platforms, including SIEM, XDR, EDR, DLP, IAM, PAM, ZTNA and vulnerability management solutions Lead or support the detection and response lifecycle, including triage of alerts, investigation of incidents, root cause analysis, and coordination More ❯
Employment Type: Permanent
Posted:

Cloud Architect (GCP, AWS or Azure) - MOD DV - Perm

Corsham, Wiltshire, South West, United Kingdom
Sanderson Government and Defence
etc.) UK data protection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as Code (Terraform, Deployment Manager). Desirable: Google Cloud Professional Cloud Security Engineer certification. Experience with UK public sector or regulated industries (e.g. More ❯
Employment Type: Permanent
Salary: £95,000
Posted:

Solutions Architect

London, United Kingdom
Hybrid / WFH Options
TDA TELECOM LIMITED
or solutions architecture role. Background working with or for a VAR, Systems Integrator, or Security Vendor highly desirable . Technical Expertise Strong understanding of enterprise security technologies, including firewalls, SIEM/SOAR, IAM, DLP, SASE, Zero Trust, and cloud security. Working knowledge of AWS, Azure, and GCP security services. Broad understanding of networking, virtualisation, and enterprise infrastructure. CISSP, CCSP, or More ❯
Employment Type: Permanent, Work From Home
Posted:

Azure Cloud Security Engineer

Nationwide, United Kingdom
Hybrid / WFH Options
CPS Group (UK) Limited
and on-premise troubleshooting environments * Relevant Azure security certifications (e.g. AZ-500, Azure Security Engineer Associate), IS(phone number removed) Auditor * Familiarity with security automation and monitoring tools (e.g. SIEM/SOAR) * Proficiency with Cisco and/or Meraki network admin (LAN, VPN, Firewalls) For more information or immediate consideration for this opportunity, please contact Charlie Grant at CPS Group More ❯
Employment Type: Contract
Rate: £550 - £615/day
Posted:

Head of Security Operations

Manchester, Lancashire, United Kingdom
Hybrid / WFH Options
Manchester Digital
of security investigations best practice including the use of Microsoft Purview and computer forensics an advantage. Experience of utilising and monitoring Information Security solutions e.g. email/web gateways, SIEM, Endpoint protection etc. Strong awareness of Cloud services and supporting security solutions & standards. Good understanding of cloud native and devops practices including pipelines and associated processes Hands on experience of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Analyst - L4

Warwick, Warwickshire, England, United Kingdom
KBC Technologies UK LTD
and frameworks like NIST Cybersecurity Framework, ISO 27001, and CIS Critical Security Controls. Familiarity with the use of standard security technology solutions and processes such as user provisioning, directory, SIEM, vulnerability management, Cloud Security (OCI/Azure/AWS), Web Security, Email Security, Logging and Monitoring, General PKI and Cryptography. Evaluate and recommend security technologies, tools, and methodologies to enhance More ❯
Employment Type: Full-Time
Salary: £200 - £250 per day
Posted:

Cybersecurity & Compliance Manager

London Area, United Kingdom
Tosca
a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service More ❯
Posted:

Cybersecurity & Compliance Manager

City of London, London, United Kingdom
Tosca
a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service More ❯
Posted:

Cybersecurity & Compliance Manager

london, south east england, united kingdom
Tosca
a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service More ❯
Posted:

Cybersecurity & Compliance Manager

slough, south east england, united kingdom
Tosca
a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service More ❯
Posted:

Cybersecurity & Compliance Manager

london (city of london), south east england, united kingdom
Tosca
a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incident response and post-incident analysis. Enforce policies for data privacy (GDPR & NIST). Conduct regular security audits. Manage vendor relationships and negotiate contracts. Report service More ❯
Posted:

Cyber Threat Lead

London, United Kingdom
WeAreTechWomen
threat intelligence, and incident readiness and response. Qualifications Key responsibilities of the role are summarised below: Detection engineering - Develop, maintain, and enhance security detection content primarily for the Splunk SIEM, to enable the detection of threats across diverse platforms (e.g. cloud, endpoints, and networks) Collaborate with the extended security team to identify gaps in detection coverage, log ingestion and alerting More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior SOC Analyst – QRadar & Splunk

Glasgow, Scotland, United Kingdom
Hybrid / WFH Options
Anson McCade
Leading investigations into escalated security events and incidents Driving containment, remediation, and root-cause analysis for major incidents Performing malware analysis, reverse engineering, and threat hunting Developing and optimising SIEM use cases (Splunk, QRadar) Shaping SOC runbooks, playbooks, and incident response procedures Supporting client stakeholders with incident reporting and recommendations Staying ahead of emerging threats and integrating threat intelligence Acting More ❯
Posted:

Senior Technical Operations Analyst

Penwortham, Lancashire, United Kingdom
Hybrid / WFH Options
JAM Recruitment Ltd
programming language - Demonstrable experience in using SOAR tooling and its application - Application of data science against large datasets involving unstructured data and designing data models - Knowledge of using SIEM platforms to identify suspected security events and creating content to enhance the platform - Knowledge of custom API's to leverage the SOAR's functionality - Ability to communicate to other stakeholders across More ❯
Employment Type: Contract
Rate: GBP 42 Hourly
Posted:

Senior Technical Operations Analyst

Preston, Lancashire, North West, United Kingdom
Hybrid / WFH Options
JAM Recruitment Ltd
programming language - Demonstrable experience in using SOAR tooling and its application - Application of data science against large datasets involving unstructured data and designing data models - Knowledge of using SIEM platforms to identify suspected security events and creating content to enhance the platform - Knowledge of custom API's to leverage the SOAR's functionality - Ability to communicate to other stakeholders across More ❯
Employment Type: Contract, Work From Home
Rate: Up to £41.94 per hour
Posted:

Cyber Security Programme Manager

London, South East, England, United Kingdom
Hybrid / WFH Options
Tenth Revolution Group
AD) Microsoft Purview Microsoft Intune Azure Security Center Information Security (On-Premise): Firewalls (e.g. Palo Alto, Fortinet) Intrusion Detection/Prevention Systems (IDS/IPS) Endpoint Protection Platforms (EPP) SIEM tools (on-prem or hybrid) Identity & Access Management (IAM) Patch management and vulnerability scanning Data Loss Prevention (DLP) Candidate Profile Proven experience delivering large-scale cyber and information security programmes More ❯
Employment Type: Contractor
Rate: £450 - £500 per day
Posted:

Cyber Security Manager

Elland, United Kingdom
Calderdale and Huddersfield NHS Foundation Trust
of: Corestream (GRC Business Assurance tool) End-point protection Email Protection Encryption Technologies Web Filtering Application control Data Leakage Mobile Device Management Vulnerability Testing Penetration Testing Phishing simulation campaigns SIEM and logging systems Cyber Incident Response OWASP top 10 compliance analysis Forensic Investigation/Breaches Managerial Duties Please see job description for full details of responsibilities Person Specification QUALIFICATIONS/ More ❯
Employment Type: Permanent
Salary: £64455.00 - £74896.00 a year
Posted:

Cyber Defence Manager

Keynsham, Somerset, United Kingdom
VC Evidensia UK
PowerShell and automation. Consulting experience across IT and digital teams. Flexibility for occasional travel and out-of-hours support. Exposure to MxDR/SOC environments and advanced security protocols (SIEM, IDS/IPS, firewalls). Knowledge of GDPR, Cyber Essentials+, PCI-DSS, and other compliance standards. Strong grasp of data protection legislation (e.g., GDPR, Data Protection Act). Global Impact More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

IT Infrastructure and Security Engineer

Leeds, West Yorkshire, England, United Kingdom
Erin Associates
Teams, SharePoint, Intune, Azure) Windows Server/Active Directory, Networking fundamentals (DNS, DHCP, VPNs, firewalls). Security tools, vulnerability management, and incident response Security technologies (firewalls, IDS/IPS, SIEM, vulnerability scanners) Familiarity with Microsoft Defender and Mimecast. Strong analytical and troubleshooting skills across complex IT environments. Experience of Compliance, IT Governance, Change Management etc Any relevant professional certifications would More ❯
Employment Type: Full-Time
Salary: £45,000 - £55,000 per annum, Inc benefits
Posted:

Senior SOC Engineer

Scotland, United Kingdom
Hybrid / WFH Options
Anson Mccade
creation, and threat modelling. The Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats. Key Responsibilities SIEM Engineering & Management Deploy, configure, and maintain the QRadar SIEM platform. Onboard and normalise log sources across on-premises and cloud environments. Develop and optimise analytical rules for threat detection, anomaly … Modelling & Use Case Development Lead threat modelling exercises using frameworks such as MITRE ATT&CK, STRIDE, and Cyber Kill Chain. Translate threat models into actionable detection use cases and SIEM rules. Prioritise detection engineering based on business risk and impact. Reporting & Collaboration Produce reports and dashboards to communicate security posture and incident trends. Partner with IT, DevOps, and compliance teams … to clients. Participate in continual service improvement initiatives, recommending changes to address recurring incidents. Skills & Qualifications Eligible for, or already holding, SC Clearance. Proven expertise in IBM QRadar and SIEM engineering. Strong knowledge of log formats, parsing, and normalisation. Proficiency in SIEM query languages such as KQL, SPL, AQL. Scripting experience with Python or PowerShell for automation. Deep understanding of More ❯
Employment Type: Permanent, Work From Home
Posted:
SIEM
10th Percentile
£43,000
25th Percentile
£50,000
Median
£65,000
75th Percentile
£80,000
90th Percentile
£92,500