SecurityOperations Manager Contract role (Outside IR35) Location: London (Remote) iO Associates is aligned with a leading housing association to recruit a hands-on SecurityOperations Manager to lead incident response, threat detection, and security monitoring efforts. You'll guide a capable SOC team, manage … real-time investigations, and enhance their security posture using Microsoft Sentinel, Defender, and KQL. Key Responsibilities: Lead and manage the SecurityOperations Centre (SOC) Handle incident response (including drills, simulations, response actions) Oversee threat detection and monitoring (via SIEM tools) Drive vulnerability management Report security posture … GSOC, CPSA, SANS, CCIM, MS-500, AZ-500/204, SC-100/200/300/400. Proven experience managing a SOC/SecurityOperations function within housing association/public sector. Strong experience with Microsoft Sentinel, Kusto (KQL), Azure Defender tools Hands-on incident response, threat More ❯
Head of SOC Operations - URGENT Start date: ASAP Location: London (1-2 days a week in the office) Contract length: 6 Months initially (likely to extend) Company: FTSE 100 Company How you will contribute.. The Head of SOC Operations will play a critical role in, overseeing the …/365 monitoring, detection, and response to cybersecurity threats and incidents, ensuring operational excellence, threat intelligence integration, and alignment with the organization's security objectives. The ideal candidate is a proven cybersecurity leader with a deep understanding of securityoperations, threat landscapes, incident response, and team leadership. … This individual will play a key role in shaping the future of our cyber defense capabilities. Responsibilities: Lead and manage the daily operations of the SecurityOperations Center, including managing a multi-tiered team of managers, analysts, and incident responders. Develop and execute SOC strategy, goals, and More ❯
I have a requirement to support a university in their search for a SecurityOperations Manager. You will need to have experience managing and working with Managed Service Security Providers. Higher Education experience is deseribale but not essential. You will need to demonstrate SecurityOperations experience, working with SOC, SIEM, Sentinel, DFE etc. Ideally having security credentials that are backed up with certifications. Role: SecurityOperations Manager Rate: £5-600 per day Length: Initial 3 months IR35: Outside Location: Hybrid (South of England) Start date: 16.06.2025 Please contact for further information. More ❯
SecurityOperations Lead A Global FS Firm requires a Contract SOC Lead to provide operational leadership across the SOC during an MSSP transition. Day Rate: £585pd IR35 Status: Outside Duration: 6 months initially Travel: 2 days a week in Central London This SOC Lead will have the following … previous experience: Provide strategic and operational leadership to L2/L3 analysts, fostering a high-performance culture through mentorship, coaching, and clear alignment with security priorities. Oversee day-to-day security monitoring, incident triage, queue management, and tool effectiveness, ensuring SLAs are met and operational workflows are optimised. … while coordinating with stakeholders and supporting an on-call rota for critical events. Ensure audit-readiness through the creation of compliance documentation, reporting on security posture and trends, and maintaining internal control frameworks (e.g., NIST CSF) Manage the transition to a new MSSP by delivering robust SOPs, process documentation More ❯
South London, London, United Kingdom Hybrid / WFH Options
Summer Browning Associates
Summer-Browning Associates are currently supporting our Central Government client, who are seeking a Splunk Security Architect on an initial 9 month contract. Service Location: London (Hybrid) As a Splunk Security Architect your main responsibilities will be to: * Produce Architecture diagrams, high level and low-level design documents. … to end experience of delivery lifecycle experience for improvements to Splunk SaaS. * Experience of defining improvements within Cyber departments, particularly, SIEM improvements within Cyber SecurityOperations Centre (CSOC) functions that result in an increase in SIEM Maturity Levels. * Good communication, reporting, documentation and presentational skills. * AWS Infrastructure skills … for the configuration of EC2 servers, S3 buckets etc. Desirable: * Public Sector experience. * Experience with wider SIEM Solutions. * Experience with multiple Cyber Security related technologies. To apply, please submit latest CV for consideration More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Matchtech
Splunk Engineer/Security Architect Location: Hybrid - Remote with up to 2 days/week in Contract Duration: 9 months (192 working days) Active SC clearance required Role Overview We are seeking an experienced Splunk Engineer/Security Architect to lead strategic and tactical improvements to the SIEM … and associated components across a large-scale hybrid security environment. You'll play a pivotal role in enhancing monitoring capabilities, driving SIEM convergence, and supporting the maturity of security operations. This role is aligned to a national programme improving the government's ability to detect and respond to … Experience with SIEM convergence from legacy platforms Familiarity with tools such as JIRA, Confluence, Git Background in Ethical Hacking, IDAM, PKI, or broader information security disciplines A team-oriented, adaptable mindset with a problem-solving approach Required Qualifications Splunk Cloud Administrator Splunk Enterprise Security Splunk SOAR Administrator Splunk More ❯
I am recruiting for a Splunk Security Architect to work on a hybrid basis - 2 days in London, 3 days remote. The role falls inside IR35 so you will have to work through an umbrella company for the duration of the contract. You must have worked in Central Government … experience for improvements to Splunk SaaS is also essential. You must have experience of defining improvements within Cyber departments, particularly, SIEM improvements within Cyber SecurityOperations Centre (CSOC) functions that result in an increase in SIEM Maturity Levels. Please apply ASAP to discuss further. More ❯
per day (inside ir35) - 9 months+ All applicants must hold an active SC clearance. My client is on the hunt for a Lead Security Architect to join a central government client of theirs. They require someone with strong experience in Splunk. Responsibilities: Produce Architecture diagrams, high level and low … Full end to end experience of the delivery lifecycle experience for improvements Experience of defining improvements within Cyber departments, particularly, SIEM improvements within Cyber SecurityOperations Centre (CSOC) functions that result in an increase in SIEM Maturity Levels. Experience of the lifecycle of SIEM delivery, including convergence from More ❯
Job Title: Cloud Security and Infrastructure Engineer Location: London (One day a week on site) Rate: 500 a day Outside IR35 Contract Duration: 6 Months Key Responsibilities: Oversee Azure Kubernetes Service (AKS) deployments, ensuring high availability, security, and scalability. Manage Microsoft 365 identity and access solutions, including Azure … AD B2C and Single Sign-On (SSO) configurations. Administer secure remote access technologies and enforce zero-trust policies. Configure Cloudflare for web security, DDoS protection, and performance enhancement. Lead incident response, conduct forensic investigations, and implement preventive measures. Manage Dataverse solutions, including data modelling, access permissions, and security policies. Required Skills: Strong knowledge of Azure AKS and DevOps practices. Proficiency in Microsoft 365 security and identity access management. Familiarity with Cloudflare security services. Expertise in Microsoft Defender security operations. Advanced knowledge of Microsoft RBAC and PIM. Experience in threat detection and incident response. Hands More ❯