london, south east england, united kingdom Hybrid/Remote Options
IO TECH SOLUTIONS LIMITED
Bash). Experience with infrastructure-as-code tooling (Terraform, Ansible). Nice-to-Have Containerization (Docker/Kubernetes/EKS) in production. Monitoring and observability tools (Prometheus, Grafana, ELK, Splunk). Experience managing vendor relationships or external cloud providers. Why Youll Love This Job Work in a fast-paced, cutting-edge crypto environment. Small, flat, collaborative team your impact will More ❯
Oxford, Oxfordshire, South East, United Kingdom Hybrid/Remote Options
EFCI Group Ltd
Desirable Skills Oracle Cloud Infrastructure (OCI) Certified Architect/Professional. Familiarity with Oracle Integration Cloud (OIC) and API Gateway configurations. Experience with monitoring and alerting tools (OCI Monitoring, Grafana, Splunk). Exposure to other major cloud platforms (AWS, Azure). More ❯
opportunity to work with enterprise-scale clients in a fast-paced, shift-based environment. You’ll be part of a collaborative team using cutting-edge technologies like Microsoft Sentinel, Splunk, and MISP Threat Sharing to protect critical infrastructure. Key Responsibilities: Monitor and analyse security alerts and events, conduct initial investigations, and escalate complex incidents. Manage SOC incident queues and support More ❯
Define and measure KPIs, SLAs, and success metrics (e.g., threat coverage, latency impact, policy adherence). Ensure integration of SSE tools with identity providers (Azure AD), SIEM platforms (e.g., Splunk), and DevSecOps pipelines. Support change, readiness, and adoption across business and technical teams. Manage security vendor relationships and roadmap alignment during evaluation and rollout. Drive delivery in agile/DevSecOps More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
Cloud People
defence environment Strong understanding of attack methodologies such as MITRE ATT&CK and the Cyber Kill Chain Hands on experience with SIEM and EDR tools including Microsoft Sentinel, Defender, Splunk or CrowdStrike Experience with triage, containment and incident response Solid understanding of networks, Windows and Linux systems and cloud security across M365, Azure and AWS Excellent communication skills and a More ❯
Apache NiFi, Apache Airflow etc · Good knowledge of stream and batch processing solutions like Apache Flink, Apache Kafka/· Good knowledge of log management, monitoring, and analytics solutions like Splunk, Elastic Stack, New Relic etc Given that this is just a short snapshot of the role we encourage you to apply even if you don't meet all the requirements More ❯
on leadership role where you’ll oversee security monitoring, incident response, and continuous improvement of SOC operations. You’ll work with cutting-edge technologies and frameworks, including Microsoft Sentinel, Splunk, and the MITRE ATT&CK framework, while mentoring and developing your team. Key Responsibilities: Lead and manage a team of SOC Analysts across shift operations. Monitor, triage, and investigate security More ❯
SOX, PCI-DSS, GDPR). Experience working in Agile or SAFe environments. Understanding of banking systems, digital platforms, or transaction processing. Desirable Qualifications & Tools: Experience with Terraform, Ansible, Dynatrace, Splunk, or LogicMonitor. Why Join? You'll join a globally respected financial institution investing heavily in modernising its technology landscape. This is a key leadership role with the autonomy to build More ❯
progression over time Ideal Candidate Profile Holds a 2:1 degree or higher in a STEM discipline Familiar with data and analytical tools such as Excel, SQL, Python, Azure, Splunk, or Wireshark Demonstrates strong problem-solving ability and a logical, analytical mindset Possesses excellent communication, organisation, and stakeholder management skills Shows adaptability, curiosity, and a genuine interest in emerging technologies More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Sopra Steria
Ansible and Terraform. Understanding of datacentre power and cooling requirements. Familiarity with secure environments and regulations (JSP 440, JSP 604, SCIDA). Experience with monitoring tools like SCOM and Splunk Enterprise. If youre interested in this role but not sure if your skills and experience are exactly what were looking for, please do apply, wed love to hear from you More ❯
Portsmouth, Hampshire, England, United Kingdom Hybrid/Remote Options
Franklin Fitch
client onboarding and configuration alignment. Mentor junior engineers and analysts. You’ll bring: 3–5 years’ experience in SOC or security engineering. Strong knowledge of platforms such as Sentinel, Splunk, Defender, or Elastic. Scripting/automation ability (PowerShell, KQL, Python, etc.). Understanding of Azure/AWS cloud and network fundamentals. Desirable: Experience with SOAR tools or Infrastructure-as-Code More ❯
automation. Experience with SOAR platforms and security automation workflows. Excellent problem-solving, stakeholder management, and collaboration skills. Team leadership or mentoring experience is highly desirable. Preferred Technologies/Tools: Splunk, QRadar, LogRhythm, Sentinel, ArcSight, Elastic, or similar SIEM tools. Familiarity with EDR, IDS/IPS, firewalls, and other security infrastructure. Exposure to both IT and OT (Operational Technology) environments. More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid/Remote Options
Anson Mccade
hands-on architecture role focused on designing and deploying monitoring, patching, and automation systems across complex Windows and Linux environments. Key Responsibilities: Design and integrate enterprise management tooling: Zabbix, Splunk, Elastic Stack, ServiceNow, Microsoft System Centre Suite Architect monitoring, patching, and automation systems in secure, SC/DV-cleared environments Produce high-quality HLDs, LLDs, and formal technical documentation Collaborate More ❯
of OAuth2.0, SAML, OpenID Connect . Familiarity with ISO 27001, NIST CSF, CAF & GDPR . Experience leading or overseeing MSPs. Current SC clearance . Desirable: Knowledge of Microsoft Sentinel, Splunk, or Elastic SIEM . Experience in SOC build or cyber transformation projects. Degree/HND in a relevant STEM field. More ❯
Help coach and upskill junior analysts. You should bring: 2–4 years’ experience in a SOC, CSIRT, or cyber defence environment. Solid knowledge of SIEM and EDR platforms (Sentinel, Splunk, Defender, CrowdStrike, etc.). Understanding of MITRE ATT&CK and network/cloud security principles. Strong analytical and communication skills. Bonus points for: Scripting or automation experience (KQL, PowerShell, Python More ❯
Help coach and upskill junior analysts. You should bring: 2–4 years’ experience in a SOC, CSIRT, or cyber defence environment. Solid knowledge of SIEM and EDR platforms (Sentinel, Splunk, Defender, CrowdStrike, etc.). Understanding of MITRE ATT&CK and network/cloud security principles. Strong analytical and communication skills. Bonus points for: Scripting or automation experience (KQL, PowerShell, Python More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid/Remote Options
CBSbutler Holdings Limited
Working with stakeholders to analyse requirements, negotiate and bring consensus in bids and delivery projects Knowledge and experience of Enterprise management toolsets Including but not limited to - Zabbix, Elastic, Splunk, Microsoft System Centre Suite, Service Now * Working with business IT infrastructures and the tools required to manage them efficiently, particularly monitoring, patching and automation systems for Windows and Linux. * Working More ❯
Basingstoke, England, United Kingdom Hybrid/Remote Options
CBSbutler
Working with stakeholders to analyse requirements, negotiate and bring consensus in bids and delivery projects Knowledge and experience of Enterprise management toolsets Including but not limited to - Zabbix, Elastic, Splunk, Microsoft System Centre Suite, Service Now • Working with business IT infrastructures and the tools required to manage them efficiently, particularly monitoring, patching and automation systems for Windows and Linux. • Working More ❯
Stevenage, Hertfordshire, South East, United Kingdom Hybrid/Remote Options
MBDA
in monitoring technologies e.g. PRTG, Nagios. DESIRABLES Understanding of cyber security capabilities and their integrations to networks infrastructure. Existing knowledge of/aptitude to learn Darktrace Antigena and Respond, Splunk ES or Log Rhythm tools. Strong ability to interpret complex information via use of packet capture in order to identify malicious traffic in detail, revealing attacker behaviours like C2, exploitation More ❯
CND’s own internal security posture. Be proactive with client requirements, offering guidance and input to highly technical challenges. Essential Skills: Experience working with SIEM tools such as ArcSight, Splunk, LogRhythm, or AlienVault. Understanding of how to get the best from available tooling. Exposure to building capability and consulting with customers to change their environment. Knowledge of process and procedure More ❯
cyber security experience , preferably in an MSP, Enterprise SOC, or consultancy. Hands-on experience with Microsoft Sentinel, Defender, Purview, and XDR . Broad SIEM capability: ideally Microsoft Sentinel or Splunk —and able to go beyond dashboards to build detections, correlations, and meaningful insights. Experience centralising log sources and onboarding new tools and data feeds into a SIEM/SOAR platform. More ❯