26 to 50 of 81 Remote Azure Sentinel Jobs

Cloud Security Engineer (f/m/d)

Hiring Organisation
EnBW Energie Baden-Württemberg AG
Location
Lisboa, Portugal
Employment Type
Permanent
Salary
EUR Annual
workdays. Your tasks Join our new Security team in the Lisbon IT Hub and help us build secure, scalable cloud environments across AWS, Azure and GCP. Your responsibilities: Design and implement secure cloud architectures (AWS & Azure) Operate and optimize our SIEM platform (Microsoft Sentinel … Maintain clear and structured technical documentation Your profile Must-have: 3+ years of experience in Cloud Engineering and IT Security Strong knowledge of Azure and/or AWS Hands-on experience with scripting/automation (Python, Bash or PowerShell) Good understanding of DevSecOps principles Solid communication skills ...

Senior Security Engineer

Location
Cardiff, Wales, United Kingdom
experienced Senior Security Engineer to join our Managed Security Service Provider (MSSP) team. You will be responsible for driving our adoption of Sentinel, client onboarding projects, managing multi-vendor SIEM proof of concepts with a specific focus on a Microsoft Sentinel, developing custom connectors to ingest … code (IaC) and DevOps Pipelines with Bicep/Terraform and proficiency in scripting/programming languages such as Python/Go. Experience with Sentinel deployments, log management, and threat detection is required, including expertise in dashboard creation, query development, and alert configuration. Additional experience in Splunk deployments ...

Senior Vulnerability Management Engineer

Hiring Organisation
HCLTech
Location
City of London, London, United Kingdom
exception and risk acceptance process: assess compensating controls, document residual risk, and obtain formal sign-off. • Integrate VM tooling with SIEM (Splunk, Microsoft Sentinel), ITSM (ServiceNow VR module), and CMDB for automated ticket creation and asset correlation. • Automate vulnerability reporting and remediation tracking using Python, REST APIs (Qualys … Automation and API integration: Python scripting, REST API calls to Qualys/Tenable/Rapid7; ServiceNow VR module configuration. • SIEM integration: Splunk, Microsoft Sentinel – correlating vulnerability data with threat events. • CMDB-driven asset correlation: ServiceNow CMDB, ensuring VM data reflects accurate asset inventory. • Network and infrastructure knowledge sufficient ...

Information Security Analyst - SecOps Detection

Hiring Organisation
Starling Bank
Location
London, United Kingdom
Salary
£ 80 K
analytics in our SIEM and other security platforms.Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments.Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response.Incident … models like MITRE ATT&CK to prioritize and enhance detective controls.SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics.Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies.Cloud Security: Solid knowledge of security ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
sensitivity labeling policies across the estate. Perform second-line investigations of alerts escalated by the MDR provider across Defender XDR and Sentinel, conducting proactive threat hunting via KQL queries and Sentinel workbooks. Oversee the outsourced vulnerability scanning service, driving findings through to remediation within SLA limits … documentation directly from tooling rather than assembling it by hand. Hands-on experience configuring, tuning, and investigating alerts across Microsoft Defender XDR, Microsoft Sentinel, and Microsoft Defender for Cloud. Strong technical grasp of Entra ID governance, including Conditional Access, PIM, and managing workload identity risks (service principals ...

Cyber Security Lead

Location
Greater London, England, United Kingdom
Doing You'll take technical ownership across a broad security landscape, including: Designing and implementing security architecture across Microsoft 365, Azure, Entra ID, Defender XDR, Sentinel and Purview Building modern security controls around Zero Trust, secure-by-design and automation Leading architecture reviews and threat modelling … external SOC partners Strengthening vulnerability and exposure management using threat intelligence, exploitability and business risk Automating security processes using Python, PowerShell, Logic Apps, Azure Functions and APIs Supporting technical controls and evidence for ISO 27001 and Cyber Essentials Plus Acting as a senior security SME and helping technology ...

Senior Cryptography & Information Security SME CGEMJP00351299

Location
Knutsford, England, United Kingdom
DigiCert PKI Certifications Venafi Professional Certification Microsoft Security Certifications Preferred Technical Tools & Platforms HSM Platforms Thales Luna HSM Entrust nShield HSM AWS CloudHSM Azure Dedicated HSM PKI & Certificate Management Microsoft Active Directory Certificate Services (ADCS) DigiCert Entrust PKI Venafi Keyfactor AppViewX Key Management Technologies HashiCorp Vault … Azure Key Vault Google Cloud KMS Thales CipherTrust Manager Operating Systems Linux (RHEL, CentOS, Ubuntu) Windows Server Security & Monitoring Splunk Microsoft Sentinel QRadar Dynatrace Datadog Infrastructure & Automation PowerShell Python Bash/Shell Scripting Ansible Terraform Git All profiles will be reviewed against the required skills ...

Information Security Analyst - SecOps Detection

Location
Greater London, England, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Information Security Analyst - SecOps Detection

Location
Cardiff, Wales, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Information Security Analyst - SecOps Detection

Location
Manchester, England, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, United Kingdom
Salary
£ 80 K
controls.Develop and maintain incident response procedures, playbooks and documentation aligned to industry best practice.Detection Engineering & Security AutomationConfigure, optimise and continuously improve Microsoft Sentinel and Microsoft Defender technologies.Develop and tune detection logic using KQL to identify emerging threats and attacker behaviours.Build and maintain automated SOAR workflows using Logic Apps … premise environments.Maintain high-quality technical documentation for detections, automations and operational workflows.Cloud Security & Secure-by-DesignSupport secure configuration and operational security across Azure and associated cloud services.Collaborate with infrastructure and engineering teams to embed secure-by-design principles.Evaluate configuration changes and ensure alignment with security standards and controls.Support ...

Cyber Security Analyst – Hybrid, MS Security Stack Expert

Location
Greater London, England, United Kingdom
across a global footprint. You will work on managing cyber incidents, threat hunting, vulnerability management and policy compliance using the Microsoft Security Stack (Azure Sentinel, Defender, Purview). #J-18808-Ljbffr ...

Information Security Analyst - Secops Detection

Location
Southampton, England, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands‐on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
vulnerability triage workflows that score real risk by exploitability, reachability, and compensating controls rather than raw CVSS. Harden and secure our cloud environment (Azure), partnering with platform engineering on secure configuration, reviewing and remediating vulnerabilities, identity and network controls, posture management, and logging and detection. Strengthen endpoint … control landscape: cloud security, supply‐chain and vulnerability management, endpoint and identity, and detection and response. Are genuinely technical: comfortable in cloud environments (Azure preferred), CI/CD, and at least one scripting language (e.g. Python, Bash, PowerShell), so your controls hold up in engineering reality. Lead with ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
outputsCreate novel analytic techniques for incident detectionCollaborate with an MSP SOC to maintain and tune the detection catalogueBuild automated reporting dashboards using Microsoft Sentinel workbooksSupport security initiatives including ISO 27001 activities and KQL-based tasksEnsure monitoring coverage across cloud platforms, SaaS apps, and internal systemsContribute to documentation … similar role.Strong proficiency in KQL and hands-on experience with Microsoft SentinelFamiliarity with Microsoft Defender tools (Endpoint & O365)Exposure to Azure cloud logging and Kubernetes environmentsKnowledge of attacker TTPs and MITRE ATT&CK frameworksProactive, collaborative, and innovative mindsetDesirable/Nice-to-Have:Experience with Python, Terraform ...

Cyber Engineer

Location
West of England, England, United Kingdom
colleagues within the cyber security team. Technology Environment You'll be working within a predominantly Microsoft-focused environment, including: Microsoft Defender Suite Microsoft Sentinel Microsoft Purview Microsoft Entra ID Azure Microsoft Fabric Vulnerability management platforms such as Tenable and Intruder Operational Technology (OT) environments and industrial … experience in a Security Engineer, Cyber Security Engineer or similar role. Strong experience securing Microsoft cloud and enterprise environments. Expertise across Microsoft Defender, Sentinel, Entra ID and Azure security technologies. Experience implementing vulnerability management and security monitoring solutions. Strong understanding of security frameworks such as NCSC ...

IAM Consultant/Developer (Microsoft Entra ID) - Contract role, UK, fully remote

Location
United Kingdom
clean handover once migration is complete. What We're Looking For Essential: Proven experience delivering a migration onto Microsoft Entra ID (formerly Azure AD) — from on-prem AD DS or from a third-party IdP (Okta, Ping, ForgeRock, etc.). Strong working knowledge of Conditional Access, Zero Trust … Graph PowerShell SDK. Comfortable working independently and communicating migration risk/status to non-technical stakeholders. Desirable: KQL for log analysis in Microsoft Sentinel or Azure Monitor. Experience with Entra ID B2B/B2C. Background with an alternative IAM platform (ForgeRock, Ping, Okta) — genuinely useful ...

Senior Security Operations Engineer

Location
Belfast City District, Northern Ireland, United Kingdom
tools such as vulnerability management, PAM, IDS/IPS, or DLP Networking fundamentals (firewalls, switches, wireless access points) Experience with Microsoft Defender, Microsoft Sentinel, or Azure security tooling Experience working in a cloud or SaaS environment Relevant certifications (e.g. ...

Head of IT Infrastructure and Security

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 80 K
zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft … Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Technology:Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, United Kingdom
Salary
£ 80 K
MITRE ATT&CK to structure detections, gaps analysis, and defensive improvements.Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments.Calm under pressure, able to lead effectively during incidents ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments. Calm under pressure, able to lead effectively during incidents and make ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments. Calm under pressure , able to lead effectively during incidents and make ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 490,000 - 495,495 Daily
implementation and ongoing support. The organisation is investing heavily in its security capabilities and Microsoft technology estate, with several key initiatives planned across Azure and Microsoft 365. The successful candidate will play a pivotal role in helping shape and deliver these programmes while supporting the wider security function. … optimisation, supporting MDM and MAM capabilities. Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
Surbiton, Surrey, St. Mark's, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£490 - £495/day £495pd, Outside IR35
implementation and ongoing support. The organisation is investing heavily in its security capabilities and Microsoft technology estate, with several key initiatives planned across Azure and Microsoft 365. The successful candidate will play a pivotal role in helping shape and deliver these programmes while supporting the wider security function. … optimisation, supporting MDM and MAM capabilities. Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...