1 to 25 of 65 SOAR Jobs in London

Cyber Security Engineer - Assistant Vice President

Location
Greater London, England, United Kingdom
projects. Build and maintain tools for proactive detection, configuration drift monitoring and automated remediation. Security tooling integration and orchestration. Develop and implementation of SOAR capabilities that aligns with existing technology stack. Experience with KMS systems and methodologies. Identity based threat detection and prevention. Privileged Access and Session Management SIEM Management … security monitoring use cases and Threat hunting capabilities. Relevant industry certifications (e.g., AZ-500, SC-200, SC-900, CompTIA Security+) or similar Cert with Security Orchestration, Automation, and Response (SOAR) playbooks within Sentinel or other platforms. Scripting skills (PowerShell, Python) for automation and data manipulation. What Mizuho Can Offer ...

Security Operations Analyst (SOC analyst)

Location
Greater London, England, United Kingdom
writing/tuning detection content (e.g., Sigma, YARA, KQL, SPL, or equivalent). Hands-on threat hunting experience using hypothesis-driven methodologies. Familiarity with SOAR platforms, scripting/automation, and AI-assisted security tooling. Experience defending large, complex enterprise or financial-services environments. Exposure to cloud security monitoring (AWS, Azure ...

Security Engineer (Site Reliability Engineering) - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
Active SC Clearance. Technical Experience Experience with some of the following technologies would be advantageous: Security & Monitoring Splunk Enterprise Security SIEM & Security Analytics Platforms SOAR Technologies Identity & Access Management (IAM) Cloud & Infrastructure AWS Security Services Microsoft Azure Security Kubernetes Security Docker Security Terraform (Infrastructure as Code) Preferred Certifications The following ...

Security Team Lead

Location
Greater London, England, United Kingdom
initiatives across IAM, PAM, AD, and network security Drive security automation and DevSecOps practices Lead real-time response to security incidents Oversee SIEM/SOAR integration, alerting, and playbooks Conduct investigations using log analysis, forensic techniques, and threat intelligence Client-Facing Security Services Provide advisory and managed security support ...

Security Architect

Location
Greater London, England, United Kingdom
knowledge covering at least 2 of the following examples (this list is not exhaustive): AD, Cryptography, End User Computing, IAM, PKI, Server hardening, SIEM, SOAR, virtualization (VMware) ROLE DUTIES Thrive as a consultant seeking the variety and challenge of engaging with different clients and variety of technologies and solution types. ...

GRC Consultant

Location
Greater London, England, United Kingdom
knowledge covering several of the following examples (this list is not exhaustive): AD (Active Directory), Cryptography, End User Computing, IAM, PKI, Server hardening, SIEM, SOAR, virtualisation (VMware) Familiarity with MITRE ATT&CK Familiarity with ITIL Workplace type About NTT DATA NTT DATA is a $30+ billion business and technology services ...

Security Architect

Location
Greater London, England, United Kingdom
knowledge covering at least 2 of the following examples (this list is not exhaustive): AD Cryptography End User Computing IAM PKI Server hardening SIEM SOAR virtualization (VMware) ROLE DUTIES Thrive as a consultant seeking the variety and challenge of engaging with different clients and variety of technologies and solution types. ...

Senior security analyst - Sector security

Location
Greater London, England, United Kingdom
methodical approach to incident investigation and response. Experience & Knowledge Active Directory recovery and server recovery experience. Experience with security technologies such as SIEM, EDR, SOAR, IDS, WAF, DLP and DDoS mitigation platforms. Knowledge of vulnerability management and vulnerability scanning tools. Understanding of digital forensics principles and practices. Awareness ...

AI Security Consultant

Location
Greater London, England, United Kingdom
Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations, SIEM/SOAR platforms, detection engineering, threat intelligence or incident response. Knowledge of AI-enabled development platforms, agent frameworks, retrieval-augmented generation, model APIs, vector databases or automation/ ...

Security Architect

Hiring Organisation
EY
Location
City of London, London, United Kingdom
and international as required). Ideally, You’ll Also Have Experience supporting security transformation programs and modernisation. Experience integrating SOC/MDR, SIEM/SOAR and familiarity with MITRE ATT&CK. Experience designing remote and local access models including PAM and ZTNA with identity integration. Familiarity with Microsoft cloud security ...

GRC Consultant

Location
Greater London, England, United Kingdom
knowledge covering several of the following examples (this list is not exhaustive): AD (Active Directory), Cryptography, End User Computing, IAM, PKI, Server hardening, SIEM, SOAR, virtualisation (VMware) Familiarity with MITRE ATT&CK Familiarity with ITIL Workplace type About NTT DATA NTT DATA is a $30+ billion business and technology services ...

Security Automation Software Engineer

Location
Greater London, England, United Kingdom
Familiarity with DevOps and infrastructure automation tooling (e.g. Jenkins, ArgoCD, Terraform, Ansible). Exposure to security operations tooling such as SIEM/XDR/SOAR platforms (e.g. Microsoft Sentinel, Elastic Security, AWS Security Hub). Experience working in agile delivery teams and collaborating with diverse technical stakeholders. Strong problem‐solving ...

Senior Security Operations Engineer New London

Location
Greater London, England, United Kingdom
purple team experience. Experience with CNAPP, CSPM or exposure management platforms. Experience with eBPF or modern observability tooling. Experience implementing security automation using SOAR or similar orchestration platforms. Knowledge of policy-as-code and security governance. Familiarity with supply chain security and software integrity. Experience evaluating AI/LLM security ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
flexibility may be needed for urgent incidents; we aim to plan work sustainably. Knowledgeand hands onexperience withCyber Securitytools, such as Vulnerability/Exposure Management, SOAR and SIEM platforms. Abletoqueryand analysestructured log data. Purpose & Values Purpose: Creating New Worlds with Boundless Imagination to Enhance People’s Lives. Values: Deliver Unforgettable Experiences ...

Manager, Security Automation

Location
Greater London, England, United Kingdom
and domain expert, balancing hands‐on engineering contributions with strategic planning, partner engagement, and organisational leadership. Minimum Requirements Demonstrable experience designing, implementing, and supporting Security Orchestration, Automation and Response (SOAR) platforms and associated automation workflows. Experience mentoring, coaching, and developing engineers, fostering an inclusive, collaborative, and high‐performing team culture. ...

Senior Consultant, Cybersecurity, Engineering, TC, UKI

Location
Greater London, England, United Kingdom
required). Ideally, You’ll Also Have Experience supporting security transformation or modernization programs. Familiarity with: SOC/MDR operating models SIEM/SOAR technologies MITRE ATT&CK. Awareness of modern access management such as PAM and ZTNA. Exposure to Microsoft security technologies such as: Microsoft Sentinel Microsoft Entra ...

Senior Cyber Analyst

Location
Greater London, England, United Kingdom
technical effectiveness and continual improvement of Microsoft Sentinel, Microsoft Defender, SIEM, SOAR, EDR, and XDR capabilities. Develop and maintain detection rules, use cases, automation, and response playbooks to improve operational efficiency. Work with the Technical Architect to align security tooling, controls, and services with customer and organisational requirements. Technical Leadership … security technologies including Sentinel, Defender XDR, Defender for Endpoint, Defender for Cloud, Microsoft 365 Security, and Entra ID. Experience designing, tuning, and optimising SIEM, SOAR, EDR, and XDR solutions. Strong understanding of threat hunting, attack techniques, threat intelligence, and vulnerability management. Ability to translate technical findings and cyber risk into ...

Security Content Engineer

Location
Greater London, England, United Kingdom
and Logic Apps. Highproficiencyin Kusto Query Language (KQL), with proven experience writing complex, optimized queries for detection and hunting. Strong,demonstratedexperience automating security workflowsusing SOAR platforms, APIs, or scripting languages (Python, PowerShell). Proven ability tooperate with a high degree of autonomy, managing competing priorities and complex projects with minimal ...

SecOps Engineer

Location
City Of London, England, United Kingdom
version control, peer review and CI/CD where appropriate Automation and tooling Identify repetitive analyst tasks and engineer automation to remove them, using SOAR, native platform automation, scripting or low-code approaches Build and maintain integrations between security tools and adjacent platforms such as identity, endpoint management and ticketing ...

Principal Security Design Consultant

Location
Greater London, England, United Kingdom
propositions and pre-sales activity. Primary responsibilities: soc architecture and Transformation: Lead discovery, current-state assessment and target-state design for SOC, SIEM, SOAR, EDR/XDR and protective monitoring engagements. Define monitoring strategies, target operating models, service boundaries, responsibilities, escalation paths, service levels and transition plans for client-operated … and third-party services. Develop detection and response architectures covering analytics rules, MITRE ATT&CK-aligned use cases, threat hunting, workbooks, watchlists, automation and SOAR playbooks. Design secure integrations with ITSM, CMDB, threat intelligence, vulnerability management, identity, network and incident response processes. Produce and own architecture artefacts including requirements, High ...

Information Security Analyst

Location
Greater London, England, United Kingdom
familiarity with an EDR platform (CrowdStrike, SentinelOne, Defender) as an investigation tool Detection-as-code experience (Sigma, detection rules in Git, CI-tested detections) SOAR or custom automation for response workflows Experience defending data centre or colocation environments (OOB networks, BMC/IPMI, physical access telemetry) Experience handling security audits ...

Head of Cyber Security Operations

Location
Greater London, England, United Kingdom
risk management, SIEM, threat intelligence, and vulnerability management. Experience with penetration testing tools, methodologies, and security assessment technique. Proven experience in incident response, SIEM, SOAR, and UEBA solutions. Strong leadership, communication and stakeholder‐management skills. About Us At QA, we believe the future belongs to organisations that are able ...

Principal Security Architect

Location
Greater London, England, United Kingdom
senior stakeholders. Implementation & Delivery Oversee the implementation and optimisation of Zero Trust technologies. Lead integration with identity providers, endpoint security, and SIEM/SOAR platforms. Manage proof-of-concept activities, technical evaluations, and vendor engagement. Leadership & Business Development Define Zero Trust strategy and provide architectural governance. Mentor security architects and ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities …/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance. Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks. Own the vulnerability management programme (on‐prem ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities …/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance. Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks. Own the vulnerability management programme (on‐prem ...