reporting for stakeholders. Identify automation and workflow enhancements. Essential Skills Strong experience with Microsoft Defender platforms. Incident investigation skills across endpoint, identity, and cloud. Understanding of Microsoft 365, Azure, and Zero Trust. Skilled in ASR rules, AV baselines, and KQL analytics. Desirable Skills Experience with Microsoft Sentinel. Understanding of MITRE ATT and CK. Exposure to red team activities. More ❯
SOC Analyst/TTP/Threats/Monitoring/Detection/ZTNA/Sentinel/Splunk. Superb London based client have an Urgent role, Inside IR35, Hybrid Remote and Onsite for an experienced SOC Analyst/TTP/Threats Monitoring/Detection/ZTNA/Sentinel/Splunk. If you have worked in a busy SOC … Detection please get in touch. This role will see youinvestigating suspicious activity, validating detections etc, threat hunting etc. Experience with XDR Software, Crowdstrike, Carbon Black, Mitre Attack, KQL, MicrosoftAzure, Sentinel, Qualys IDS Web proxies etc please get in touch. Full details on request. More ❯
Engineer - SIEM, KQL- sought by investment bank based in London. *Inside IR35 - 3 days a week on-site** Key Responsibilities SIEM Management & Optimization: Design, implement, and maintain MicrosoftSentinel workspaces, connectors, analytics rules, and playbooks Develop advanced KQL queries for threat hunting and reporting Optimize SIEM performance, cost, and data retention policies Troubleshoot log ingestion and parsing issues … team exercises. Please apply within for further details - Alex Reeder Harvey Nash 3+ years in a Security Engineer, SOC Analyst, or similar role Hands-on experience with MicrosoftSentinel and KQL Strong knowledge of Active Directory, Windows/Linux systems, and cloud platforms (Azure, AWS, GCP) Proficiency in scripting (PowerShell, Python) Familiarity with security frameworks (MITRE More ❯
Engineer - SIEM, KQL- sought by investment bank based in London. *Inside IR35 - 3 days a week on-site** Key Responsibilities SIEM Management & Optimization: Design, implement, and maintain MicrosoftSentinel workspaces, connectors, analytics rules, and playbooks Develop advanced KQL queries for threat hunting and reporting Optimize SIEM performance, cost, and data retention policies Troubleshoot log ingestion and parsing issues … team exercises. Please apply within for further details - Alex Reeder Harvey Nash 3+ years in a Security Engineer, SOC Analyst, or similar role Hands-on experience with MicrosoftSentinel and KQL Strong knowledge of Active Directory, Windows/Linux systems, and cloud platforms (Azure, AWS, GCP) Proficiency in scripting (PowerShell, Python) Familiarity with security frameworks (MITRE More ❯
and standards. Ensures accurate delivery progress reporting is completed and communicated to relevant stakeholders Knowledge & Experience Certification in one or more cloud vendor offerings such as AWS, GCP, Azure, OCI preferred . CISSP, CCSP, OSCP, SANS or equivalent desirable Specific Knowledge & Experience: Strong hands-on experience in a cloud security environment. This could either be as a cloud … cloud connectivity methods and orchestration technologies. Experience with Infrastructure as Code (IaC) and Policy as Code(PaC) - Terraform, CloudFormation, Deployment Manager, CfnNag, CloudFormation Guard, Cloud Query Language, Hashicorp Sentinel Language, Prisma Cloud Resource Query Language, and Monitoring Query Language. Cloud Security Policy Engineering and Testing - create cloud security policy, engineer it, test it and deploy it. Experience Workload … Security, SIEM, Logging and Monitoring. In depth knowledge of various Cloud Models - IaaS, PaaS, SaaS, hybrid and multi-cloud models. Familiar with common industry cloud providers - AWS, GCP, Azure, OCI. Practical understanding of industry cloud security principles and their application - NCSC, NIST, CSA. Familiarity with common cloud related compliance Benchmarks - CIS, GDPR, PCI-DSS, ISO27001, ISO27017, ISO27018, TSR More ❯
Inside IR35* *Remote.* MUST HAVE: experience with SentinelOne and not Azure/MicrosoftSentinel We are seeking a highly skilled SentinelOne Security Architect & Engineer to own the design and implementation of an on-premises SentinelOne deployment. This role requires deep technical expertise in endpoint protection, architecture design, and hands-on implementation. The ideal candidate will be More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Opus Recruitment Solutions Ltd
BPSS/SC Test Engineer – Azure Platform | £400 Outside IR35 | 3 Months Initial | Remote Opus are recruiting for a Platform Test Engineer to support a key government client with testing and assurance of a new Azure Platform deployed via Terraform and Git workflows. This role focuses on validating platform components against design, security, and compliance standards … and can be completed on a fully remote basis. A minimum of current and active BPSS Clearance is required for this position , SC clearance is desirable. Key Skills: Azure platform testing (networking, identity, governance, security) Terraform validation and Git-based workflows Automation with PowerShell, Azure CLI, Python (pytest/Pester) Azure Policy, RBAC, CAF … governance Logging and observability: Log Analytics, Sentinel Tools: Checkov, TFLint, PSRule for Azure BPSS Required , SC Clearance Desirable Responsibilities: Design and execute manual/automated tests for Azure infrastructure Validate networking, identity, policy, and security configurations Build automated test scripts and integrate with Git workflows Maintain test plans, evidence packs, and assurance artefacts Support More ❯
A Council in London are seeking an Azure CloudOps Engineer to design, deploy, and maintain highly resilient, secure, and cost-optimised cloud infrastructure and services on Microsoft Azure. This role is responsible for establishing and adhering to strict UK Government Digital Service (GDS) reliability standards and implementing rigorous FinOps governance policies. The engineer must drive operational excellence through … product and delivery teams. Incident and Problem Management Leadership: Leading the technical response and resolution for high-priority cloud incidents (P1 and P2). The role demands integrating Azure Monitor and Azure Service Health alerts directly with the Council's ITSM platform to automatically generate tickets and drive continuous operational improvements aimed at minimising Mean Time … as-Code (IaC) Development: Developing, testing, and maintaining reusable IaC templates (specifically Bicep or Terraform) for standardising infrastructure deployment. This includes creating robust PowerShell and Python Runbooks within Azure Automation for routine configuration management, scheduled maintenance, and automated incident remediation actions. Security Operations (SecOps) and Threat Response: Implementing proactive threat detection and automated security response capabilities. This involves More ❯
A Council in London are seeking an Azure CloudOps Engineer to design, deploy, and maintain highly resilient, secure, and cost-optimised cloud infrastructure and services on Microsoft Azure. This role is responsible for establishing and adhering to strict UK Government Digital Service (GDS) reliability standards and implementing rigorous FinOps governance policies. The engineer must drive operational excellence through … product and delivery teams. Incident and Problem Management Leadership: Leading the technical response and resolution for high-priority cloud incidents (P1 and P2). The role demands integrating Azure Monitor and Azure Service Health alerts directly with the Council's ITSM platform to automatically generate tickets and drive continuous operational improvements aimed at minimising Mean Time … as-Code (IaC) Development: Developing, testing, and maintaining reusable IaC templates (specifically Bicep or Terraform) for standardising infrastructure deployment. This includes creating robust PowerShell and Python Runbooks within Azure Automation for routine configuration management, scheduled maintenance, and automated incident remediation actions. Security Operations (SecOps) and Threat Response: Implementing proactive threat detection and automated security response capabilities. This involves More ❯
SME - Birmingham Hybrid - 99.5% remote. 0.5% customer office - £575-595 per day inside IR35 - Duration until 06/03/2026 MUST HAVE: experience with SentinelOne and not Azure/MicrosoftSentinel Seeking a highly skilled SentinelOne Security Architect & Engineer to own the design and implementation of an on-premises SentinelOne deployment. This role requires deep More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Opus Recruitment Solutions Ltd
on a fully remote basis and is determined as Inside IR35, offering £500–£525 per day. Key Skills : Microsoft Defender XDR: Endpoint, Identity, Office 365, Cloud Apps MicrosoftSentinel: KQL, playbook development, SIEM optimisation Privileged Identity Management (PIM) and change control workflows Advanced threat detection, incident response, and threat hunting Log collection via Azure Monitoring Agent … and Firewall Management Centre Responsibilities: Configure and fine-tune Microsoft Defender XDR in line with approved designs Participate in Microsoft FastTrack engagements Integrate Defender XDR with Sentinel SIEM for enhanced detection and response Develop Kusto queries and automation playbooks Support PoC setup for Microsoft Copilot for Security Connect syslogs from on-prem servers and firewalls to SentinelMore ❯
SentinelOne within an enterprise environment. The role includes producing HLDs/LLDs, building the platform, and integrating it with existing security tools. Important: Must have SentinelOne experience (not Azure/MicrosoftSentinel). Required Skills Strong, hands-on experience deploying and architecting SentinelOne in enterprise environments. Solid knowledge of endpoint protection, threat detection, and response. Background More ❯
Score posture. Provide guidance on automated investigation and threat hunting. Required Skills Expertise in Microsoft Defender suite and Microsoft 365 security. Strong knowledge of Intune, Conditional Access, and Azure security. Experience with enterprise-scale security deployments. Ability to interpret and improve Secure Score metrics. Preferred Skills Familiarity with FastTrack methodology. Experience with MicrosoftSentinel and advanced More ❯