/DevOps). Knowledge of security frameworks and regulatory compliance standards (NIST CSF, SOX ITGC, GDPR, MITRE ATT&CK, etc.) Experience with common industry SIEMand vulnerability management platforms. Experience maintaining the Microsoft Defender platform and other Microsoft security products. Ability to rank and prioritize vulnerabilities andsecurity recommendations appropriately More ❯
management. Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirus/antimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs. Experience with identity access management solutions, such as SAML/OATH. Experience with HIDS andMore ❯
Amherst, Massachusetts, United States Hybrid / WFH Options
University of Massachusetts Amherst
network and cloud security, incident management, intrusion detection, vulnerability and patch management, and other related concepts and technologies. Experience with security tools such as SIEM, EDR/XDR, forensics tools, firewalls, IDS/IPS, vulnerability management platforms, etc. Experience with computer incident response, including data collection, investigations, containment, and remediation More ❯
San Diego, California, United States Hybrid / WFH Options
Avidity Biosciences
CSF, ISO 27001, CIS) and regulatory compliance (FDA, HIPAA, GxP). Hands-on expertise in threat intelligence, security monitoring, and incident response. Experience with SIEM solutions, endpoint detection and response (EDR), and cloud security (AWS, Azure). Proven ability to lead cyber resilience efforts, including disaster recovery and business continuity More ❯
El Segundo, California, United States Hybrid / WFH Options
Aerospace Corporation
Jira or MS Project. Proficient in one or more programming languages including but not limited to C, C++, Java, Python, or Rust. Experience with SIEM tools, EDR/XDR tools, SOAR tools, scanning and reconnaissance, penetration testing, integration of software products and/or data sources. Experience using containerization technology More ❯
relevant to SaaS products, preferably in a data-heavy environment. Hands-on experience with security technologies such as firewalls, intrusion detection/prevention systems, SIEM, antivirus, encryption, and vulnerability assessment tools. You own relevant certifications (Security+, IAT II/III level or similar). You excel in risk assessments, vulnerability More ❯
Hampton, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
direction, mentor and supervise team members. Qualifications: 5+ years of experience with Cybersecurity in Network Security, Infrastructure Security, Applications or Systems Security, Security Operations, SIEM, Incident Response, or Threat Intelligence 2+ years of experience in medium to large enterprise network environments with change board, documentation, and reporting requirements Experience in More ❯
and response, and supporting the implementation of security controls and policies across cloud, on-premise, and hybrid environments. This role also involves working with SIEM solutions, automating security workflows, and contributing to the company's compliance with Cyber Essentials Plus and ISO 27001 standards. Key Responsibilities: Design, implement, and manage … and threat management. Leverage Infrastructure as Code (IaC) principles using Terraform to automate security policies and infrastructure deployment. Utilize SecurityInformationandEventManagement (SIEM) solutions (preferably Microsoft Sentinel SIEM ) to monitor, detect, and respond to security incidents. Create and maintain runbooks for security incident response, including automating workflows to … cloud infrastructure, managing security controls). SIEM Solutions: First-hand experience working with SIEM solutions , particularly Microsoft Sentinel SIEM . Experience in designing and managing SIEM rule sets, creating dashboards, and correlating data for threat detection. Familiarity with securityevent log analysis, alerts management, and incident response workflows. Cybersecurity Frameworks More ❯
london, south east england, united kingdom Hybrid / WFH Options
Halian
and response, and supporting the implementation of security controls and policies across cloud, on-premise, and hybrid environments. This role also involves working with SIEM solutions, automating security workflows, and contributing to the company's compliance with Cyber Essentials Plus and ISO 27001 standards. Key Responsibilities: Design, implement, and manage … and threat management. Leverage Infrastructure as Code (IaC) principles using Terraform to automate security policies and infrastructure deployment. Utilize SecurityInformationandEventManagement (SIEM) solutions (preferably Microsoft Sentinel SIEM ) to monitor, detect, and respond to security incidents. Create and maintain runbooks for security incident response, including automating workflows to … cloud infrastructure, managing security controls). SIEM Solutions: First-hand experience working with SIEM solutions , particularly Microsoft Sentinel SIEM . Experience in designing and managing SIEM rule sets, creating dashboards, and correlating data for threat detection. Familiarity with securityevent log analysis, alerts management, and incident response workflows. Cybersecurity Frameworks More ❯
systems, and cloud technologies. Strong understanding of security principles, practices, and frameworks (e.g., PCI, NIST, ISO 27001). Experience with security tools such as SIEM, IDS/IPS, endpoint protection, and penetration testing tools. Experience with public cloud security, specifically AWS, Azure, and Google Cloud Platform (GCP). You will More ❯
Cheltenham, Gloucestershire, United Kingdom Hybrid / WFH Options
Accenture
years of experience in an information/cyber security role focused on security monitoring and analysis. Knowledge of IT security solutions (SecurityInformationandEventManagement, Cloud Access Security Broker, Data Leakage Prevention, Web Application Firewall, Multi Factor Authentication, Data Rights Management, Identity Access/Privileged Access Management, etc.). More ❯
Washington, Washington DC, United States Hybrid / WFH Options
Agile Defense, Inc
Skills •Experience with the following technologies: Cisco Routing & Switching (LAN/WAN), Cisco Firepower IPS/Firewall and Web Security Appliance (WSA) •Familiarity with SIEM tools, data lakes and the design, development of security analytics. •Motivation and desire to learn advanced concepts in cyber and ability to work within a More ❯
Eau Claire, Wisconsin, United States Hybrid / WFH Options
WIN Technology
we'd love to hear from you! Primary Responsibilities : Recommend IT and cyber security solutions to reduce cyber risk Implement security solutions such as SIEM, EDR, IPS/IDS, IAM, app whitelisting, endpoint security, or user awareness programs etc. Create new service offerings that will bring improvement to security posture More ❯
data protection, and cyber law Strong troubleshooting abilities in systems, networking, and cloud environments Proven hands-on experience with tools like PAM, EDR, CASB, SIEM, DLP, email filtering , and vulnerability management Proficient in cloud services , especially in environments using virtual machines, identity management, web apps , and networking components (e.g., virtual More ❯
London, England, United Kingdom Hybrid / WFH Options
Anson McCade
. Expertise in threat/risk modelling, network security, encryption, authentication, and access control. Skilled in configuring security technologies like firewalls, IDS/IPS, SIEM, and vulnerability tools. Knowledge of cloud security (AWS, Azure, and Google) and DevSecOps practices. Experienced in researching emerging tech trends, securing solutions, and using CI More ❯
Peterborough, England, United Kingdom Hybrid / WFH Options
Hamilton Barnes 🌳
learning and professional development. Flexibility to work on-site in Peterborough two days per week (negotiable). Preferred Skills & Certifications: Experience with KQL, Rapid7 SIEM, SentinelOne EDR, Microsoft Defender XDR, or Microsoft Sentinel. Level 3 Analysts: Additional expertise in threat hunting, digital forensics, and leadership experience. Benefits: Competitive salary package More ❯
monitoring, querying, playbook development, and integration with other solutions Proven experience with the Microsoft Defender security stack and Microsoft Online ecosystem Knowledge of other SIEMand SOAR solutions is a plus (Q-radar, Palo Alto, Splunk ) Proven professional experience in a SOC or security-related role Understanding of the MITRE More ❯
experience of building out functions of a Cyber Defence Team e.g. insider risk, threat intelligence, breach attack simulation You have a strong knowledge of SIEMand deep Splunk experience You have a good understanding of various security infrastructure tools such as firewalls, intrusion prevention/detection systems, proxy servers, email More ❯
South West London, London, United Kingdom Hybrid / WFH Options
Client Server
experience of building out functions of a Cyber Defence Team e.g. insider risk, threat intelligence, breach attack simulation You have a strong knowledge of SIEMand deep Splunk experience You have a good understanding of various security infrastructure tools such as firewalls, intrusion prevention/detection systems, proxy servers, email More ❯
Herndon, Virginia, United States Hybrid / WFH Options
VTG
lbs. Perform tasks requiring prolonged sitting, standing, and walking in a secure environment. Top Secret/SCI with Poly Desired: Experience with Splunk, SIEM tools, or endpoint detection and response (EDR) platforms. Prior experience in classified or SCIF environments. Prior experience leading a team. More ❯
Washington, Washington DC, United States Hybrid / WFH Options
Optiv+ClearShark
operating in classified environments. Bachelor's degree in a related area or at least 8 years of related work experience. Robust understanding of identity, SIEM, cybersecurity, and infrastructure concepts. Strong Linux and scripting (Python, Ansible, Teraform, JSON, others.) experience. Ability to troubleshoot Splunk instances. Create custom Splunk reports, dashboards, andMore ❯
Oxon Hill, Maryland, United States Hybrid / WFH Options
Apex Systems
system administration Strong background in guiding technicians with varying skill levels and supporting end users remotely Familiarity with security tools and technologies such as SIEM, IDS/IPS, and firewalls Sharp analytical and problem-solving skills, particularly in optimizing security workflows Professional, customer-focused, and poised under pressure Excellent communication More ❯
Hampton, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
direction, mentor and supervise team members. Qualifications: 5+ years of experience with Cybersecurity in Network Security, Infrastructure Security, Applications or Systems Security, Security Operations, SIEM, Incident Response, or Threat Intelligence 2+ years of experience with software tool integrations, including REST APIs, SOAP, and APIs 2+ years of experience with Cyber More ❯
Huntsville, Alabama, United States Hybrid / WFH Options
Gridiron IT Solutions
under direct supervision. Qualifications 8+ years of experience in cybersecurity Experience with Windows, Apple OSX, and Linux operating systems operations and artifacts Experience with SIEM technologies, including Splunk, Microsoft Sentinel, or Elastic Experience with forensics tools, including Magnet Axiom and FTK Experience performing forensic imaging, remote collection, and forensic analysis More ❯