251 to 275 of 292 Remote SIEM Jobs

Tech Lead - SOC Responder

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

2nd / 3rd Line Security Analyst

Hiring Organisation
XACT PLACEMENTS LIMITED
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£60,000
Investigate identity and cloud-based compromise (e.g. anomalous sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python … Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive alert triage Mentor junior analysts and help drive ...

Security Architect

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
and physical layers) in collaboration with other design team members. Support the design of a range of security tools, such as:Splunk and Sentinel SIEM, Nessus Vulnerability management, Microsoft XDR and other as appropriate. Understand and leverage BAE Systems experience, IP and expertise, with support of product and subject matter … Policy and Processes, Technology and Physical Infrastructure layers. Knowledge and experience of design, build and deployment of SOC technology including at least two of SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence, to identify signs of an intrusion. Engineering leadership and management fordesign, build, deployment and operation ofSecurity Operations Centre solutions. ...

Senior Security Engineer (Infrastructure)

Location
Greater London, England, United Kingdom
environments Support security architecture and hardening initiatives across servers, operating systems, cloud platforms, Kubernetes and infrastructure services Support implementation, tuning and operational maturity of SIEM, alerting and security monitoring platforms Support Layer 7 and web security initiatives including WAF, reverse proxy, API protection and edge security controls Support implementation and … switching, firewalling and network segmentation principles Experience with edge and web security platforms such as Cloudflare, Akamai or similar technologies Experience implementing and managing SIEM, logging, monitoring and security detection platforms Strong understanding of infrastructure hardening, IAM, privileged access management and secrets management Experience securing Kubernetes, containerised workloads and cloud ...

Product Engineer, Cloud Security (Multiple Levels)

Location
Belfast City District, Northern Ireland, United Kingdom
detective, and responsive security controls that integrate directly into cloud platforms, CI/CD pipelines, and shared enterprise services Integrate cloud security controls with SIEM and security tooling to generatehigh‐qualitysignals for detection, investigation, and incident response Support incident handling and response by engineering detection logic, automation, and response mechanisms … automated remediation. Experience with data classification, data handling, or data protection strategies that support DLP incloud‐hostedsystems. Familiarity with security telemetry, logging pipelines, and SIEM platforms used for detection, investigation, and incident response. Hands‐oninvolvement in incident response orpost‐incidentanalysis from an engineering perspective (e.g., improving detections, controls, or recovery ...

Security Engineer - Microsoft Defender & Sentinel

Hiring Organisation
LT Harper Recruitment Group
Location
England, United Kingdom
technologies, particularly Defender and Sentinel. Help assess and improve customer security configurations and environments. Use KQL, scripting and automation to improve security operations. Support SIEM, detection and incident response activities. Investigate technical issues and analyse security data and logs. Work with customers and internal teams to deliver security projects. Produce … experience in cyber security, IT, infrastructure, networking or a related technical field. An interest in Microsoft security technologies and cloud security. Exposure to KQL, SIEM or scripting would be beneficial, but isn’t essential. A strong willingness to learn and develop technically. Good problem-solving and analytical skills. Confident communication ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
design phase and ongoing operations of our multi-cloud posture, define guardrails and policy-as-code standards, and support the strengthening of our SIEM and detection capability. You'll take on the most complex and ambiguous cloud security challenges in the business, and hold engineers to best practices. This … benchmarks, and holding engineering teams accountable to remediation outcomes. Work with Security Operations to shape cloud logging and detection requirements, ensuring our SIEM has the right visibility across the estate. Collaborate with senior stakeholders to articulate security risks and mitigations in terms that support business decision-making. Skills and Experience ...

Senior Specialist Engineer - Networks

Hiring Organisation
UK Health Security Agency
Location
Birmingham, Leeds, Liverpool or London (Canary Wharf), E14 4PU, United Kingdom
Salary
£56185.00 to £70566.00
Service Management, Automation & Technical Leadership Lead the monitoring, observability, performance and capacity management of network services, integrating operational and security monitoring with ITSM and SIEM platforms. Drive network automation and Infrastructure as Code using tools such as Ansible and Python to improve consistency and efficiency. Manage vendor relationships, technology lifecycles … Experience with advanced network automation toolchains including Terraform, Ansible, or Python-based frameworks applied to infrastructure provisioning and compliance enforcement. Hands-on experience with SIEM platforms (e.g. Splunk, Microsoft Sentinel) in the context of network security monitoring, alert triage, and threat hunting. Experience with Zero Trust technologies such as Zscaler ...

Tech lead - SOC responder

Hiring Organisation
Colt Telecom
Location
London, UK
Employment Type
Full-time
delivering clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will doSupport SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activitiesUse cases preparation and implementation, connector deployment, maintenance & health checksResponsible for operational activities, Technology escalation … powershell, Unix shell)Experience working in all phases of the SDLCDeep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM ToolsPrior SOC experience a plusExtensive knowledge of network and server security protocols, technologies, and productsIndustry recognized certifications (CISSP, GCIH, GCFA, OSCP, etc) preferredStrong oral and ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
and accreditation requirements. Design across people, process, technology, services and infrastructure . Develop CONOPS and high- and low-level designs. Work with technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence . Design on-premise and cloud security architectures . Conduct risk assessments and support vulnerability management. Research and … Agile, Lean and Waterfall delivery environments. Experience You'll Need Strong experience in SOC/Security Architecture . Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management or Threat Intelligence . Strong knowledge of cloud and on-premise security architecture. Understanding of security best practices, risk and vulnerability ...

Specialist Engineer - Networks

Location
Liverpool, England, United Kingdom
Service Management, Automation & Technical Leadership Lead the monitoring, observability, performance and capacity management of network services, integrating operational and security monitoring with ITSM and SIEM platforms. Drive network automation and Infrastructure as Code using tools such as Ansible and Python to improve consistency and efficiency. Manage vendor relationships, technology lifecycles … Experience with advanced network automation toolchains including Terraform, Ansible, or Python-based frameworks applied to infrastructure provisioning and compliance enforcement. Hands-on experience with SIEM platforms (e.g. Splunk, Microsoft Sentinel) in the context of network security monitoring, alert triage, and threat hunting. Experience with Zero Trust technologies such as Zscaler ...

Elastic SME

Hiring Organisation
Sopra Steria
Location
Hemel Hempstead, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £90,000 per annum
that power operational monitoring, observability and security operations. Designing and architecting enterprise-scale Elastic Stack solutions. Building and optimising high-volume Elasticsearch clusters. Delivering SIEM capabilities, threat detection and security analytics. Developing advanced ingestion pipelines using Logstash, Beats and Elastic Agent. Creating impactful Kibana dashboards, visualisations and reporting solutions. Implementing … recovery documentation. What you will bring: Experience administering enterprise Elastic Stack environments. Deep expertise across: Elasticsearch. Kibana. Logstash. Beats. Elastic Agent & Fleet. Elastic Security (SIEM). Elastic Observability. Strong experience supporting large-scale Elasticsearch clusters. Proven track record designing resilient, highly available platforms Experience delivering security monitoring and observability solutions. ...

Elastic Subject Matter Expert

Hiring Organisation
Sopra Steria
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
that power operational monitoring, observability and security operations. Designing and architecting enterprise-scale Elastic Stack solutions. Building and optimising high-volume Elasticsearch clusters. Delivering SIEM capabilities, threat detection and security analytics. Developing advanced ingestion pipelines using Logstash, Beats and Elastic Agent. Creating impactful Kibana dashboards, visualisations and reporting solutions. Implementing … recovery documentation. What you will bring: Experience administering enterprise Elastic Stack environments. Deep expertise across: Elasticsearch. Kibana. Logstash. Beats. Elastic Agent & Fleet. Elastic Security (SIEM). Elastic Observability. Strong experience supporting large-scale Elasticsearch clusters. Proven track record designing resilient, highly available platforms Experience delivering security monitoring and observability solutions. ...

Identity and Access Management Manager

Hiring Organisation
Kensington Mortgage Company
Location
Marlow, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
including: IAM governance and lifecycle management. Joiner, Mover and Leaver process design and optimisation. Privileged Access Management (PAM). Security Information and Event Management (SIEM) platforms. Monitoring, alerting and logging solutions. DataDog and observability tooling. AWS and Azure cloud administration. SQL and advanced Excel capability. Incident, access and governance processes. ...

Security Operations Architect

Hiring Organisation
Searchability NS&D
Location
City of London, London, United Kingdom
background in solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile … and submit (subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps ...

Security Operations Architect

Location
Slough, England, United Kingdom
background in solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile … DevOps, or Kanban delivery models KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps, NSD #J-18808-Ljbffr ...

Security Operations Architect

Location
City Of London, England, United Kingdom
background in solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile … DevOps, or Kanban delivery models KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps, NSD #J-18808-Ljbffr ...

Senior Platform Engineer (United Kingdom)

Location
Greater London, England, United Kingdom
partners and security teams. Build and manage CI/CD pipelines that integrate DevSecOps best practices from development through to deployment. Integrate and maintain SIEM and security tooling, ensuring observability and compliance across all deployed systems. Design, develop, and debug microservices in Go (Golang), with a focus on performance, security … classified environments. Experience building and maintaining secure CI/CD pipelines and integrating security throughout the SDLC. Hands-on experience implementing or managing SIEM, monitoring, and alerting systems. Understanding of REST APIs, authentication flows, event-driven architecture, and microservice patterns. IAC and technical experience with Pulumi, Terrraform, argo and flux ...

Senior SOC Analyst

Location
City Of London, England, United Kingdom
security alerts and incidents Leading incident triage, containment and remediation activities Performing threat hunting and identifying suspicious behaviour across the environment Developing and improving SIEM rules, alerts and security use cases Analysing endpoint, network, cloud and identity-related security events Producing clear incident reports and communicating findings to technical and … Skills and experience Strong experience working in a SOC or security operations environment Demonstrable experience investigating and responding to security incidents Good knowledge of SIEM, EDR and security monitoring technologies Experience analysing logs from endpoints, networks, cloud platforms and identity servicesUnderstanding of common attack techniques and frameworks such as MITRE ...

Security Engineer, Institutional Trading

Hiring Organisation
Blockchain
Location
London, UK
Employment Type
Full-time
and maintain monitoring for FinOps-specific security signals such as abnormal order patterns, signature misuse, unusual settlements. You will integrate these signals into our SIEM/SOAR for real-time response. Support secrets and key-management hygiene. You will ensure app/service keys are stored in KMS/Vault … expertise in Threat Modeling. Ability to perform structured reviews (e.g., STRIDE) of complex data flows and operational processes. Experience with observability and detection tooling (SIEM, logs, metrics) and ability to write basic detection rules. Practical experience with KMS/HSM, secrets management platforms (Vault, 1Password, AWS/ ...

Pre-Sales Solutions Consultant

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 per annum
centre of that growth. This is a genuine opportunity to shape how a leading security operations practice takes its services to market — working across SIEM, EDR/XDR, SOAR, exposure management and email security, with an initial focus on Microsoft Defender and Microsoft Sentinel. The Role Reporting to the SecOps … architecture Strong understanding of SOC operations, detection and response Working knowledge of Microsoft Defender and Microsoft Sentinel Familiarity with at least two of: SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability management, exposure management or email security Confident presenter, comfortable engaging both technical and business stakeholders Strong written skills ...

Junior SOC Analyst

Hiring Organisation
Constant Recruitment Ltd
Location
Remote
Employment Type
Permanent
Salary
£25,000 - £28,000 DOE
reviewing security alerts Learning how to distinguish genuine threats from false positives Investigating potential security incidents Understanding logs and identifying unusual activity Working with SIEM and security monitoring technologies Learning Microsoft Sentinel and the wider Microsoft security stack Understanding when incidents need to be escalated Supporting security reporting and documentation … previous IT, MSP, MSSP or SOC experience would certainly be useful, but commercial cyber security experience is not essential. Exposure to Microsoft Sentinel, another SIEM platform or Microsoft Defender would also be a bonus rather than a requirement. More importantly, we want somebody who: Is fascinated by cyber security and ...

Senior Software Engineer - AI Security

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

Senior Sales Engineer

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

Senior Marketing Manager, Lead Lifecycle & Conversion

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...