76 to 100 of 101 SOAR Jobs in the UK

MS Sentinel Engineer

Hiring Organisation
TXP Technology x People
Location
Birmingham, West Midlands, England, United Kingdom
Employment Type
Contractor
Contract Rate
£400 - £500 per day
full project lifecycle, from architecture and implementation through to automation, threat detection, and stakeholder engagement. Strong experience with Microsoft Sentinel & Defender SIEM, XDR & SOAR expertise Security architecture and deployment experience Scripting and automation skills SC-200, SC-100 or AZ-500 certifications desirable You'll act as a trusted advisor ...

Senior SecOps & Vulnerability Architecture Leader

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
architecture reviews to ensure products are secure by design. You will design and scale enterprise SIEM, develop detection logic, manage SBOM, prioritize vulnerabilities, build SOAR playbooks, and support audit and regulatory activities while fostering a security-first culture. #J-18808-Ljbffr ...

SOC Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Birmingham, England, United Kingdom
enhance efficiency, reduce false positives, and accelerate response times. Evaluate, recommend, and support the implementation and optimization of SOC technologies (SIEM, EDR/XDR, SOAR, threat intelligence platforms) across heterogeneous client stacks. Develop and maintain advanced detection content, custom queries, correlation rules, and use cases tailored to client environments and … environment). Strong hands‐on expertise with industry‐leading tools: SIEM platforms (Microsoft Sentinel, CrowdStrike) EDR/XDR solutions (CrowdStrike, Microsoft Defender, Carbon Black) SOAR, threat intelligence platforms, and network security tools. Proven experience in advanced threat hunting. Solid automation skills to improve SOC efficiency. Experience designing and tuning detection ...

Principal Security Architect & Advisory Lead

Hiring Organisation
Jobleads-UK
Location
Birmingham, England, United Kingdom
hands‐on delivery. You will shape reference architectures and operating models while aligning to Zero Trust and regulatory requirements. The role covers SOC, SIEM, SOAR, XDR/EDR, identity and cloud security across complex enterprise estates. Collaboration with sales, pre‐sales, and delivery teams is essential to ensure scalable services. ...

SOC Engineer

Hiring Organisation
IBEX RECRUITMENT LTD
Location
England, UK
Employment Type
Full-time
looking forSOC Engineers(both Junior and Senior levels) to join a growing Cyber Security team, engineering and optimising Microsoft Sentinel, Defender XDR, and SOAR capabilities. This isn't a pure triage/analyst role we needengineerswho can build, tune, automate, and scale our detection platform. What you'll be d... ...

Cyber Security Engineer

Hiring Organisation
iDPP
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£425 per day outside IR35
Managing CrowdStrike policies, sensor deployments and platform optimisation Designing and implementing endpoint security controls Integrating CrowdStrike with technologies including Active Directory, ServiceNow, SIEM and SOAR platforms Developing detection rules, response workflows and security policies Supporting threat hunting and improving endpoint visibility Working across Windows server, desktop and cloud workloads Providing … platforms Active Directory integration Enterprise-scale security engineering Desirable Experience Microsoft Defender for Endpoint (MDE) SentinelOne Rapid7 Carbon Black Microsoft Sentinel XSOAR or other SOAR platforms Azure, AWS or GCP security PowerShell or Python automation Zero Trust or enterprise security architecture ...

Cyber Security Analyst

Hiring Organisation
Norton Blake
Location
City of London, London, United Kingdom
/XDR, Network Anomaly Detection (NAD), and cloud security technologies. Oversee vulnerability management and coordinate remediation efforts across global systems. Design and operate SOAR workflows to automate response playbooks and improve operational efficiency. Support the operational management of Secure Email Gateways (SEG), Secure Web Gateways (SWG), Firewalls, and CASB. Monitor … Cloud), alongside Azure Security Centre. Proven experience managing major incidents and collaborating with third-party/outsourced SOC providers. Demonstrated experience designing and operating SOAR workflows. Hands-on knowledge of Network Anomaly Detection (NAD), firewalls, LAN/WAN security principles, Secure Email Gateways, and Secure Web Gateways. Solid grounding ...

Security Presales Systems Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
and RBAC.* Hands-on experience with AWS, Microsoft Azure, Google Cloud, virtualization, and hybrid cloud environments.* Familiarity with AI-driven security, XDR, SIEM, SOAR, APIs, MCP and security automation.* Excellent customer-facing presentation, communication, and solution design skills, with experience delivering workshops, demonstrations and proof-of-concepts.**Preferred Qualifications*** Relevant …/Azure/GCP Security.* HPE SASE & Security certifications or technical accreditations.* Experience with AI-powered security operations, XDR, SIEM/SOAR, and security automation technologies.* Understanding of security and compliance frameworks, such as Zero Trust, NIST CSF, ISO 27001, CIS Controls, GDPR, NIS2, DORA and Cyber Essentials (or equivalent ...

Senior SOC Engineer

Hiring Organisation
Reed Technology
Location
Basingstoke, Hampshire, United Kingdom
Employment Type
Permanent
Salary
£50000 - £60000/annum
capabilities that support a modern Security Operations Centre (SOC). The Role You'll design, deploy, and enhance core SOC platforms including SIEM, XDR, SOAR, automation, and security tooling , driving improvements in threat detection, response, and operational efficiency. Working closely with operational teams, you'll support customer onboarding, develop automated … workflows, and help shape the future direction of SOC engineering. Key Responsibilities Design, deploy and optimise SIEM, XDR and SOAR platforms. Build security automation, integrations, and response workflows. Develop log parsing, data normalisation and telemetry solutions. Lead technical onboarding and implementation projects. Act as an escalation point for complex security ...

Director, ProdSecOps

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
drive false-positive reduction, and define L1 alert handling procedures. Deliver the 24/7 coverage model - on-call structure, follow-the-sun planning, SOAR automation of Tier 1 triage. Tooling & Consolidation Consolidate the security stack - one signal, one view, less noise. Drive down cost and eliminate coverage gaps. … environments - betting, gaming, or sports data. Experience integrating acquired companies into an existing security program. Security certifications - CISSP, OSCP, GIAC, or equivalent. Experience with SOAR implementation and security automation at scale. Experience operating follow-the-sun or 24/7 security coverage models. We enjoy an office-first culture and ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
and improving detection across SIEM and EDR platforms. Proactive threat hunting across cloud infrastructure, applications, and CI/CD environments. Building and maintaining automation and response playbooks using SOAR tooling. Working closely with DevOps, infrastructure and engineering teams to improve security posture and response capability. Reducing alert fatigue, improving logging ...

Principal Microsoft Identity Security Specialist

Hiring Organisation
WTW
Location
Greater London, United Kingdom
Employment Type
Full Time
token theft, privilege escalation, and lateral movement. Assist with the integration of identity telemetry and risk signals into Microsoft Sentinel and other SIEM/SOAR platforms. Support secure identity integration across AWS, GCP, OCI, and hybrid environments. Contribute to automation, operational efficiency, and continuous improvement initiatives through scripting, orchestration, and … Microsoft Defender for Cloud Apps. Strong knowledge of SAML, OAuth2, OpenID Connect, Kerberos, and modern authentication models. Experience integrating identity signals into SIEM/SOAR platforms, preferably Microsoft Sentinel. Proven experience securing identities across AWS, GCP, and OCI. Strong scripting or automation experience using PowerShell, Python, or similar. Strong understanding ...

Incident Response (CSIRT) / SOC Level 3 Analyst

Hiring Organisation
Morson Edge
Location
Hampshire, South East, United Kingdom
Employment Type
Contract
development, log onboarding, and detection engineering initiatives Work with internal teams and external MSSP providers to improve monitoring and detection coverage Support and enhance SOAR workflows to automate response and enrichment processes Conduct forensic investigations using multiple security data sources and provide actionable findings Contribute to cyber resilience exercises, simulation … response role Proven experience managing and responding to high-priority cyber security incidents Strong knowledge of: Incident Response Threat Hunting Digital Forensics SIEM platforms SOAR tools Detection Engineering Experience investigating alerts across: Endpoint security tools Network security tools Cloud environments Enterprise applications Strong understanding of threat intelligence, attack techniques, and ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE … response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ATT&CK and threat detection methodologies Azure ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
South East, United Kingdom
Employment Type
Permanent
help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE … response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ATT&CK and threat detection methodologies Azure ...

Security Detection & Response II

Hiring Organisation
Bank of America
Location
Cheshire West and Chester, United Kingdom
Employment Type
Full Time
response activities, including containment, isolation, escalation, and remediation, applying sound judgment during active engagements You will maintain and improve automation and orchestration capabilities, including SOAR workflows, automated playbooks, scripted response actions, and AI-driven enhancements to reduce manual effort and improve detection and response outcomes. Accountable for measurable improvements … similar languages for investigative and detection use cases Practical experience with containment, response actions, and automation, including developing or maintaining SOAR workflows, API integrations, and scripted response actions using sound judgment Experience with security platforms and technologies, including SIEM, EDR/XDR, identity security, and cloud security Working knowledge ...

Senior Security Architect - SecOps and Vulnerability Management

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
risk-based vulnerability management platform that automatically prioritizes infrastructure and application flaws utilizing real-world exploit intelligence and asset criticality. Build and optimize SOAR playbooks to automate incident response workflows, accelerate threat containment, and streamline vulnerability ticketing. Provide senior technical escalation support during critical security incidents and drive post-incident … specifically utilizing EPSS (Exploit Prediction Scoring System) alongside CVSS to determine patching prioritisation. Ability to design and influence automated response playbooks using SOAR platforms Practical experience creating reference architectures and patterns for engineering teams. Proven ability to design and deploy automated preventive and detective guardrails at scale. Ability to solve ...

Security Engineer (SIEM / XDR) Microsoft Sentinel, Defender - Remote

Hiring Organisation
Nova Source Technologies
Location
United Kingdom
Employment Type
Permanent, Work From Home
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, Remote (with UK wide travel) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity … SIEM and XDR tooling Microsoft Sentinel and Microsoft Defender for Endpoint Detection engineering, detection-as-code, KQL, security content and alert logic Automation, SOAR, playbooks, enrichment workflows and response improvement Scripting/programming with Python and/or PowerShell Infrastructure-as-code, CI/CD pipelines, version control API integrations ...

Security Operations Architect

Hiring Organisation
Searchability NS&D
Location
London Area, United Kingdom
solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile, DevOps … submit (subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps ...

SOC Engineer

Hiring Organisation
IBEX RECRUITMENT LTD
Location
North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
looking for SOC Engineers (both Junior and Senior levels) to join a growing Cyber Security team, engineering and optimising Microsoft Sentinel, Defender XDR, and SOAR capabilities. This isn't a pure triage/analyst role we need engineers who can build, tune, automate, and scale our detection platform. What … and Log Analytics platforms Onboarding and normalising log sources across hybrid/cloud environments Writing and tuning KQL detection rules and analytics logic Building SOAR playbooks (Logic Apps, automation workflows) to reduce manual effort Managing telemetry ingestion, parsers, and data retention for cost optimisation Producing platform health reports and identifying ...

SOC Engineer

Hiring Organisation
17918
Location
London, United Kingdom
looking for SOC Engineers (both Junior and Senior levels) to join a growing Cyber Security team, engineering and optimising Microsoft Sentinel, Defender XDR, and SOAR capabilities. This isn't a pure triage/analyst role we need engineers who can build, tune, automate, and scale our detection platform. What … and Log Analytics platforms Onboarding and normalising log sources across hybrid/cloud environments Writing and tuning KQL detection rules and analytics logic Building SOAR playbooks (Logic Apps, automation workflows) to reduce manual effort Managing telemetry ingestion, parsers, and data retention for cost optimisation Producing platform health reports and identifying ...

Senior Technical Account Manager

Hiring Organisation
Jobleads-UK
Location
United Kingdom
ideally in cybersecurity or enterprise software. Strong understanding of the Security Operations Center (SOC) environment, tools, and workflows. Comfortable explaining and troubleshooting: SIEM and SOAR integrations Security alert workflows and incident investigation processes Technical proficiency in: Writing SQL queries to extract and analyze data Experience working with APIs or integration … startup environment: adaptable, proactive, and eager to build new processes. Nice to have Experience using or administering security tools (e.g., Splunk, QRadar, Chronicle, Sentinel, SOAR platforms) Reading and editing Python code (even if not from scratch) Previous experience in customer success or account management roles Interest in collaborating on commercial ...

Senior Security Engineering Team Lead

Hiring Organisation
Interface Recruitment
Location
Nationwide, United Kingdom
Employment Type
Permanent
Salary
£82500 - £85500/annum 25 days / PHI / PEN / DIS
incidents Own the configuration, maintenance and optimisation of the Microsoft security platform Drive detection engineering, rule tuning and continuous platform improvement Lead SIEM and SOAR engineering activities, including automation and Logic Apps Oversee log ingestion, telemetry quality and detection coverage Support vulnerability management and exposure management tooling Work closely with … work across a modern Microsoft-centric cyber security stack including: Microsoft Defender XDR Defender for Endpoint Defender for Identity Microsoft Sentinel Logic Apps SOAR Automation Microsoft Purview Qualys XM Cyber CyberArk Detection Engineering KQL Threat Hunting Platform Engineering About You We're looking for someone who combines deep technical expertise ...

Information Security Senior Consultant

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
process improvements and contributing to the team knowledge base. Collaborate with local and global detection and response teams to optimise detections, integrate logic with SOAR playbooks and improve consistency, coverage and control effectiveness. Support proactive threat hunting to identify control gaps, emerging threats and opportunities to improve detection coverage. What … related qualifications highly regarded Highly developed written and verbal communication, critical thinking, and analytical skills. Proficiency with SOC tools such as SIEM and SOAR, ideally in a corporate technology environment. A strong understanding of common cyber threats and attacks against financial services organisations. Proven ability to translate incident learnings into ...

Security Architect Microsoft, SIEM, SOAR Hybrid LDN 3d/w -then less

Hiring Organisation
Nova Source Technologies
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
Security Architect Microsoft, SIEM, SOAR, EDR, Cloud Security, Azure, Detection Engineering, Threat Hunting, Security Automation, SOC, APIs, Data Models, Integrations, Microsoft, CrowdStrike, SentinelOne, Palo Alto, Azure, Hybrid (London 3d/w then less) This is an exceptional permanent Security Architect opportunity to join a leading tech company. The Security Architect … Therefore, you must be based at a commutable distance from London. As Security Architect, you will take ownership of key security architecture across SIEM, SOAR, EDR, cloud security, detection engineering, threat hunting and automation. The Security Architect will work closely with internal and 3 rd party engineering and SOC teams ...