51 to 75 of 80 SOAR Jobs in London

Application Security Engineer

Location
Greater London, England, United Kingdom
Practical experience with secure AWS design/implementation and Kubernetes (EKS) security. Hands-on experience with WAF configurations (e.g., Cloudflare) and EDR, SIEM, or SOAR platforms. Relevant industry certifications (e.g., OSCP, OSWA/E, BSCP, PWPA/E, eWPT, or similar). Active involvement in security research, bug bounty programs ...

Director of Cyber Defence

Hiring Organisation
Anson McCade
Location
London Area, United Kingdom
Experience with Defender for Endpoint, Defender for Identity, Defender for Office 365 and/or Defender for Cloud Apps. Strong understanding of SIEM, XDR, SOAR, detection engineering and threat hunting. Experience designing solutions across hybrid and multi-cloud environments. Proven ability to lead complex client engagements and solutioning opportunities. Strong ...

Security Consultant

Hiring Organisation
Anson McCade
Location
Greater London, England, United Kingdom
exposure to Zero Trust, SASE/SSE, cloud security and network segmentation. •Work with technologies including Entra ID, Okta, MFA, SSO, SIEM/SOAR and endpoint security. •Support security assessments, threat modelling, technical testing and client projects. •Assist with modernising legacy VPN, proxy and firewall environments. •Work alongside experienced consultants ...

Sr Channel Solution Consulant

Hiring Organisation
Palo Alto Networks
Location
London, United Kingdom
Salary
£ 80 K
Alto Networks PCNSE/PCSAE, CISSP, CCIE, or equivalent advanced cloud certifications (AWS/Azure/GCP).Deep operational understanding of SecOps workflows, automation (SOAR), and AI-driven security operations.Our Commitment We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple ...

Senior Security Engineer, Operational Research and Development

Hiring Organisation
Amazon
Location
London, United Kingdom
Salary
£ 80 K
effectiveness and consistency- Experience in security operations, risk management, and incident response- Experience designing or building automated security response workflows, playbooks, or orchestration systems (SOAR, custom pipelines, or equivalent)Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make ...

Senior Cyber Incident Response Lead

Location
Greater London, England, United Kingdom
providing strategic direction to maintain a robust security posture for clients. You will own detection rules and playbooks for Microsoft Sentinel, Defender XDR, SIEM, SOAR, EDR and XDR, while mentoring the Cyber Services team. You will collaborate with architects and cross-functional teams to align tooling with client needs, produce ...

Chief Cyber Defence & Incident Response

Location
Greater London, England, United Kingdom
will monitor, detect, respond and recover, reporting to the CISO and guiding cyber defence operations including the MSSP. Focus areas include optimising tooling (SIEM, SOAR, EDR/XDR, NDR), vulnerability management, and threat intel-driven prioritisation. You will drive threat and incident management with governance, metrics, and executive updates. #J ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
security and IT projects to enhance the security posture of infrastructure and the company Detect, investigate, and remediate security incidents using SIEM, EDR, and SOAR tooling (e.g. CrowdStrike, SentinelOne) Conduct threat hunting across cloud and endpoint environments using a Zero Trust framework Administer company-wide IAM and security monitoring infrastructure … experience in security engineering and incident response Bachelor’s degree in Computer Science or a related field, or significant professional security experience Knowledge of SOAR platforms and automation of security workflows Excellent written and verbal communication skills Experience with EDR tools such as CrowdStrike or SentinelOne Strong knowledge of Linux ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
Willis Towers Watson
Location
London, United Kingdom
Salary
£ 100 K
coverage across hybrid and multi-cloud environments.Automation, Agentic AI & Continuous ImprovementContribute towards automation of deception deployment, detection, investigation, and response workflows using Microsoft Sentinel SOAR, Logic Apps, and Microsoft Security Copilot.Define KPIs and metrics covering deception engagement, detection coverage, and response maturity.Continuously improve detection, hunting, and deception capabilities to align … enterprises.Deep expertise across the Microsoft security stack, including:Microsoft Defender for Identity (MDI) deceptive accounts, deceptive devices, and honeytokensMicrosoft Sentinel (analytics rules, workbooks, hunting, SOAR)Microsoft Security Copilot, automated investigation & response, and attack disruptionMicrosoft Defender for Cloud Apps and Defender for CloudProven experience leading incident response across identity, endpoint, email ...

Consultant - Senior Consultant, Enterprise Security

Hiring Organisation
Deloitte
Location
London, United Kingdom
Salary
£ 80 K
systems, applications, and business processes to drive security decisions grounded in real-world risk. Your models will directly shape what gets built and how.SIEM & SOAR Engineering – Engineering, optimising, and operationalising detection and response platforms that genuinely improve security posture – turning noisy tooling into effective, well-tuned capability.You’ll deliver high ...

Director, ProdSecOps

Hiring Organisation
Genius Sports
Location
London, United Kingdom
Salary
£ 120 K
SLAs, drive false-positive reduction, and define L1 alert handling procedures.Deliver the 24/7 coverage model — on-call structure, follow-the-sun planning, SOAR automation of Tier 1 triage.Tooling & ConsolidationConsolidate the security stack — one signal, one view, less noise. Drive down cost and eliminate coverage gaps.Own the security tooling … tech and regulated environments — betting, gaming, or sports data.Experience integrating acquired companies into an existing security program.Security certifications — CISSP, OSCP, GIAC, or equivalent.Experience with SOAR implementation and security automation at scale.Experience operating follow-the-sun or 24/7 security coverage models.We enjoy an ‘office-first’ culture and maximize opportunities ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
London, United Kingdom
Salary
£ 80 K
reduce false positives and improve detection quality.Examining and correlating log data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments.Working with SOAR platforms, SIEM technologies, MCP solutions, threat intelligence sources, endpoints, applications, network devices, and cloud environments.Mentoring junior analysts and supporting the development of the wider … experience in cybersecurity, particularly within SOC, incident response, and information technology environments.Strong technical understanding of emerging cybersecurity threats, including adversary use of AI.Experience with SOAR, SIEM, threat intelligence platforms, identity systems, sandboxes, vulnerability management, and EDR/XDR tools.Broad understanding of endpoints, applications, network devices, databases, cloud environments, and security ...

Cyber Security Engineer

Hiring Organisation
Morgan Hunt Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£390.00 - £430.00 per day
cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security , while also providing security advice to technology projects and supporting security-by-design principles. Key Responsibilities Design, implement and maintain cyber … Online, SharePoint and Teams. Support identity and access management, vulnerability management and security monitoring . Investigate and respond to security incidents, including SIEM/SOAR investigations and advanced threat hunting. Support security reviews, audits and annual penetration testing. Identify vulnerabilities, risks and opportunities to improve the organisation's security posture. ...

Interim Cyber Security Officer

Location
Greater London, England, United Kingdom
technical escalation point for high‐severity security incidents, facilitating rapid investigation, containment, and remediation using EDR and SIEM tools. Develop and implement SOAR workflows to automate detection, response, and security operations processes. Conduct proactive threat hunting using SIEM/EDR data and MITRE ATT&CK‐aligned techniques. Support vulnerability assessment … network protocols, cloud security (AWS/Azure), and threat detection methodologies. Working knowledge of the MITRE ATT&CK framework. Experience building automation or SOAR playbooks for security operations. CrowdStrike certifications (CCFA/CCFR/CCSE – any combination preferred). Splunk Certified Cybersecurity Defense Engineer (mandatory preferred requirement). Security certifications ...

Senior Corporate Security Engineer

Hiring Organisation
Deliveroo
Location
London, United Kingdom
Salary
£ 80 K
OAuth 2.0, OpenID Connect).Practical experience securing macOS, Windows and Linux endpoints using MDM and EDR/XDR tooling.Experience operating SIEM and/or SOAR platforms and tuning detection logic.Experience with vulnerability management and patch governance.Ability to write production-quality automation scripts.Demonstrated experience leading cross-functional technical initiatives.Desirable SkillsExperience with … Zero Trust Network Access platforms.Hands on experience deploying applications into K8 and Docker environmentsData Loss Prevention (DLP) and SaaS security governance.Advanced detection engineering or SOAR playbook development.Experience supporting ISO 27001 or SOC 2 audits.Relevant certifications (e.g. CISSP, CISM, GIAC).Workplace & BenefitsAt Deliveroo we know that people are the heart ...

AI & Automation Engineering, Global Security (Vice President)

Hiring Organisation
Jefferies Financial Group
Location
London, United Kingdom
Salary
£ 80 K
configuration drift detection, data classification and DLP event triage, and vulnerability prioritisation and contextualisation. Develop LLM and agent-based workflows integrated with SIEM, EDR, SOAR, IGA, PAM, CSPM, DLP, ticketing and threat intelligence platforms via supported APIs. Set the global AI Security and automation roadmap in partnership with the Head … tool and function calling, orchestration, and evaluation or regression testing of non-deterministic outputs. Working knowledge of security operations tooling and workflow — SIEM, EDR, SOAR, case management, threat intelligence. Practical familiarity with at least two additional security domains from identity and access management, privileged access, network or cloud security ...

Senior Security Architect - SecOps and Vulnerability Management

Hiring Organisation
JP Morgan Chase
Location
London, United Kingdom
Salary
£ 100 K
risks.Design a risk-based vulnerability management platform that automatically prioritizes infrastructure and application flaws utilizing real-world exploit intelligence and asset criticality.Build and optimize SOAR playbooks to automate incident response workflows, accelerate threat containment, and streamline vulnerability ticketing.Provide senior technical escalation support during critical security incidents and drive post-incident … Qualys, or Wiz, specifically utilizing EPSS (Exploit Prediction Scoring System) alongside CVSS to determine patching prioritisation.Ability to design and influence automated response playbooks using SOAR platformsPractical experience creating reference architectures and patterns for engineering teams.Proven ability to design and deploy automated preventive and detective guardrails at scale.Ability to solve design ...

Security Engineer - SIEM/XDR - London (Hybrid)

Hiring Organisation
Nova Source Technologies
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, London (Hybrid) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity to join a leading … security content and alert logic Security telemetry, logging pipelines, data quality and telemetry coverage improvement Cloud security engineering and scalable security architecture design Automation, SOAR, playbooks, enrichment workflows and response improvement Scripting/programming skills such as Python and PowerShell Infrastructure-as-code, CI/CD pipelines, version control and ...

Senior Cyber Detection and Response Engineer

Location
Greater London, England, United Kingdom
authoring and maintaining playbooks for the most significant incident types and owning clear, calm communication up to and including the CISO. Response automation – build SOAR-style automation to accelerate and standardise response, targeting automated first-actions for high-priority incidents and reducing manual triage so the team scales without proportional … Azure). Practical use of the MITRE ATT&CK framework to structure detection coverage and gap analysis. Hands-on experience building and operating SOAR playbooks and response automation, orchestrating across security tooling and ticketing. Proficiency in Python or an equivalent language for detection development, log parsing and automation, producing readable ...

Manager, IT Security Engineering

Location
Uxbridge, England, United Kingdom
security space. These include (but are not limited to): E nd-to-end management of EDR solutions at enterprise scale DLP & DSPM Automation/Security Orchestration Automation & Response (SOAR) Scripting (python, PowerShell , bash etc.) Security Information & Event Management (SIEM) content creation, data source on‐boarding Strong verbal and written communication ...

Senior Security Engineer, Detection and Response

Hiring Organisation
Roblox
Location
London, United Kingdom
Salary
£ 80 K
enable collaboration while remaining secure.You will:Build Detection & Response Systems: Design, write, and maintain production-quality detections, automations and integrations (detections-as-code, SOAR playbooks, data and enrichment pipelines) that scale our monitoring capability and reduce manual toil.Own Tooling & Platform: Develop and improve the tooling the global SIRT/… and production environments, taking ownership from identification to resolution.Knowledge/Tools/Techniques: Deep understanding of security tooling (SIEM, EDR, IDS/IPS, NDR, SOAR) and experience extending or building on it. You are proficient in applying Incident Response frameworks (NIST IR Lifecycle, Cyber Kill Chain, MITRE ...

Security Architect

Hiring Organisation
Develop
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
and customer-facing teams to develop modern security capabilities and influence long-term technology strategy. Key responsibilities include: Designing enterprise security architectures across SIEM, SOAR, EDR and Cloud Security platforms. Defining architecture standards and technical governance. Designing secure integrations between security platforms and cloud services. Improving detection engineering, security automationSecurity Architect or a Senior Security Engineer ready to step into an architecture role. You'll ideally have experience with: Enterprise Security Architecture SIEM SOAR EDR Microsoft Security Microsoft Sentinel Microsoft Defender SentinelOne Cloud Security Azure Detection Engineering Security Automation Security Governance API integrations Security Platform Design Experience with other ...

Security Operations Architect

Hiring Organisation
Searchability NS&D
Location
London Area, United Kingdom
solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile, DevOps … submit (subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps ...

Pre-Sales Solutions Consultant

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 per annum
This is a genuine opportunity to shape how a leading security operations practice takes its services to market — working across SIEM, EDR/XDR, SOAR, exposure management and email security, with an initial focus on Microsoft Defender and Microsoft Sentinel. The Role Reporting to the SecOps Solutions Architect … operations, detection and response Working knowledge of Microsoft Defender and Microsoft Sentinel Familiarity with at least two of: SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability management, exposure management or email security Confident presenter, comfortable engaging both technical and business stakeholders Strong written skills for proposals and technical documentation Full ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
and ensure the organisation is prepared to respond Improve detection coverage, security tooling, telemetry, automation and operational processes Manage key security platforms including SIEM, SOAR, EDR and NDR Provide risk based decision making around cyber incidents, containment, recovery and remediation Manage external security partners and ensure effective delivery and service … incident response within a complex enterprise environment Hands-on experience across security monitoring, incident response, threat intelligence and detection engineering Strong understanding of SIEM, SOAR, EDR, NDR, logging, telemetry and security tooling Proven experience managing major cyber incidents, including containment, recovery and executive communication Strong understanding of emerging cyber threats ...