101 to 125 of 237 SOAR Jobs in the UK

Security Engineer, Incident Response

Hiring Organisation
Twilio
Location
United Kingdom
Salary
£ 70 K
cloud environmentExperience working across a technology stack on difficult security challenges and initiativesExperience with SIEM platforms and the ability to extend their functionalityExperience with SOAR tools and automating manual security processesExperience in either AWS, GCP, or other large cloud platformExcellent written and verbal communication skillsAbility to influence and build effective ...

Information Security Analyst

Location
Greater London, England, United Kingdom
familiarity with an EDR platform (CrowdStrike, SentinelOne, Defender) as an investigation tool Detection-as-code experience (Sigma, detection rules in Git, CI-tested detections) SOAR or custom automation for response workflows Experience defending data centre or colocation environments (OOB networks, BMC/IPMI, physical access telemetry) Experience handling security audits ...

Lead Security Analyst

Location
United Kingdom
playbooks, runbooks, templates, or accelerators— back into a practice or community, rather than leaving knowledge within a single team Tools and practices Familiarity with SOAR tooling and automation of triage and enrichment workflows Experience working in Kanban‐led operating models, including managing triage queues, WIP limits, and class‐of‐service ...

Information Security Analyst

Hiring Organisation
Fuse Energy Supply
Location
London, United Kingdom
Salary
£ 80 K
with little guidanceBonus: deep familiarity with an EDR platform (CrowdStrike, SentinelOne, Defender); detection-as-code (Sigma, detections in Git, CI-tested); SOAR or custom response automation; defending data centre or colocation environments (OOB networks, BMC/IPMI, physical access telemetry); handling ISO 27001 or SOC 2 audits; FortiGate logging and ...

Security Operations Engineer, EMEA

Location
Greater London, England, United Kingdom
streamlining authentication/authorization to ensure unified access control across the board Deploy and operationalize some of the security services and tools (eg: SIEM, SOAR, domain monitoring, endpoint tooling, cloud security tooling) Respond to security incidents and harden environments post-incidents. Support control monitoring and remediation for compliance initiatives Gather ...

Technical Sales Content Developer and Trainer for Europe (Barcelona, Spain/ Reading, UK)

Location
Reading, England, United Kingdom
consulting, with a proven track record as a subject matter expert in technical sales content. Practical expertise in enterprise cybersecurity (e.g., SOC, SIEM/SOAR, EDR/XDR, Threat Intelligence, Identity, SaaS, or Cloud Security). Proven ability to author comprehensive, technically rigorous, and instructionally effective technical sales training materials ...

Principal Security Architect

Location
Greater London, England, United Kingdom
senior stakeholders. Implementation & Delivery Oversee the implementation and optimisation of Zero Trust technologies. Lead integration with identity providers, endpoint security, and SIEM/SOAR platforms. Manage proof-of-concept activities, technical evaluations, and vendor engagement. Leadership & Business Development Define Zero Trust strategy and provide architectural governance. Mentor security architects and ...

Security Operations Center Analyst

Hiring Organisation
TRIA
Location
Edinburgh, Scotland, United Kingdom
PaaS, SaaS) in particular AWS, MS Sentinel and Defender Good understanding of Security Operations and related security tools such as Firewalls, VPN Gateway, SIEM, SOAR, EDR, MDR, UEBA, DLP Good understanding and practical experience of Cyber Security Frameworks and standards such as NCSC security principles, NIST Framework, ISO 27001, ISO27005 ...

SIEM Engineer (SC Cleared)

Location
Havant, England, United Kingdom
threat detection and investigation Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases Develop Logic Apps and SOAR workflows to automate response and reduce manual effort Implement CI/CD pipelines (Azure DevOps/Git) to support controlled deployment of SIEM content (rules ...

SIEM Engineer (SC Cleared)

Location
Reading, England, United Kingdom
threat detection and investigation Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases Develop Logic Apps and SOAR workflows to automate response and reduce manual effort Implement CI/CD pipelines (Azure DevOps/Git) to support controlled deployment of SIEM content (rules ...

SIEM Engineer (SC Cleared)

Hiring Organisation
Lorien
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
threat detection and investigation Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases Develop Logic Apps and SOAR workflows to automate response and reduce manual effort Implement CI/CD pipelines (Azure DevOps/Git) to support controlled deployment of SIEM content (rules ...

SOC Architect

Hiring Organisation
Anson Mccade
Location
Camberley, Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£710 per day
waterfall) with senior stakeholders and government systems. Technical & Architectural Competencies SOC Technologies: Design, build, and deployment experience using at least two core technologies: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Architectural Frameworks: Familiarity with architectural frameworks (e.g., TOGAF, Zachmann) and system modeling. Environments: Proficiency in both On-Premises and ...

Lead Technical Engineer

Hiring Organisation
Anson Mccade
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£790 per day
proven capability in SOC deployment for previous clients. Strong hands-on experience designing, building, and operating SOC technology, including at least two of: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence . Proven delivery record in SIEM onboarding and configuring applications for high data-ingest rates (Cloud and/ ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, United Kingdom
Salary
£ 80 K
organisation. This fits within the context of the broader organizational Crisis Management plan owned outside Technology.A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements.Key ResponsibilitiesOwn the incident … SLAs/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance.Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks.Own the vulnerability management programme (on‐prem and ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities …/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance. Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks. Own the vulnerability management programme (on‐prem ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities …/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance. Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks. Own the vulnerability management programme (on‐prem ...

Security Detection & Response I

Location
Chester, England, United Kingdom
feedback to enhance detection logic and coverage Contribute to the development and refinement of investigation guides, runbooks, and playbooks, while learning to leverage automation, SOAR workflows, and AI-assisted tools to improve efficiency Identify gaps in telemetry, monitoring, or processes and expedite improvement opportunities to support continuous enhancement of detection ...

Cyber Security Engineer

Hiring Organisation
Robert Walters
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
Implement identity access control measures and DLP controls Respond to Tier 3 security incidents Monitor threat intelligence Participate in pentests Engineer Microsoft Sentinel detections & SOAR playbooks Senior Cyber Security Engineer: Technical Experience XDR - Palo Alto Cortex Microsoft Security: Defender of Endpoint, Identity, Cloud Apps, Office 365 Azure AD Microsoft Purview ...

Security Consultant

Hiring Organisation
Anson Mccade
Location
East London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
Deploy and optimise technologies including DLP, CASB, FWaaS, Cloud Firewall and App Connectors . Integrate Zero Trust platforms with Entra ID, Okta, SIEM/SOAR and endpoint security platforms . Support migration from legacy VPN, proxy and firewall technologies to modern Zero Trust models. Conduct POCs, technical validation, threat modelling ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
hybrid and multi-cloud environments. Automation, Agentic AI & Continuous Improvement Contribute towards automation of deception deployment, detection, investigation, and response workflows using Microsoft Sentinel SOAR, Logic Apps, and Microsoft Security Copilot. Define KPIs and metrics covering deception engagement, detection coverage, and response maturity. Continuously improve detection, hunting, and deception capabilities ...

SecOps Engineer

Hiring Organisation
OCS Group
Location
United Kingdom
Salary
£ 60 K
including version control, peer review and CI/CD where appropriate Automation and toolingIdentify repetitive analyst tasks and engineer automation to remove them, using SOAR, native platform automation, scripting or low-code approachesBuild and maintain integrations between security tools and adjacent platforms such as identity, endpoint management and ticketingDevelop and ...

Solutions Consultant

Location
Basingstoke, England, United Kingdom
experience Understanding of SOC operations and incident response (essential) Knowledge of Microsoft Defender and/or Microsoft Sentinel (essential) Experience with SIEM, XDR, EDR, SOAR or Threat Intelligence platforms Strong technical presentation skills Ability to engage both technical and business stakeholders What’s On Offer Up to £75,000 basic ...

Platform Engineer - Monitoring, Observability & SIEM (MONSO)

Location
City of Westminster, England, United Kingdom
. Experience with CI/CD tooling (GitLab CI, GitHub Actions) and GitOps practices. Exposure to automated or AI-assisted SIEM detection engineering and SOAR concepts. Incident and Capacity Management understanding. We are a leading European private bank, with over 430 years of experience and deep rooted history ...

Platform Engineer – Monitoring, Observability & SIEM (MONSO)

Hiring Organisation
Berenberg
Location
London, United Kingdom
Salary
£ 100 K
Rapid7).Experience with CI/CD tooling (GitLab CI, GitHub Actions) and GitOps practices.Exposure to automated or AI-assisted SIEM detection engineering and SOAR concepts.Incident and Capacity Management understanding.What we offer you: Private pension plan - 10% of base salary contribution by BerenbergGenerous 30 day holiday allowancePrivate Health InsuranceLife Insurance schemeFlexible ...

SIEM Engineer

Location
Reading, England, United Kingdom
threat detection and investigation. Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements. Develop Logic Apps and SOAR workflows to automate security response. Implement CI/CD pipelines using Azure DevOps/Git for controlled SIEM content deployment. Automate SIEM configuration and deployments across ...