and an ability to work under pressure within a client-facing capacity. Key responsibilities: Provide front line cyber security monitoring and analysis within a Security Operations Centre (SOC) Perform threatdetection and incident response using SIEM tools such as Splunk and Microsoft Defender Conduct in-depth investigations into security alerts, escalating where appropriate and providing remediation advice Carry … out threat analysis to improve detection capability and contribute to continuous service improvement Act as a key point of contact for clients, providing expert advice and clear communication on cyber matters Apply up-to-date knowledge of the cyber threat landscape and defence best practices Essential skills and experience: Proven experience in SOC environments, with a strong More ❯
advanced threats. Project Objectives Strengthen cyber defences for MoD critical infrastructure against sophisticated threats, including APTs. Ensure compliance with HMG policies, JSP 440, JSP 604, and ISO 27001. Enhance threatdetection, incident response, and system recovery capabilities. Securely integrate cloud and hybrid IT systems. Key Responsibilities Lead threat intelligence integration with MoD and NCSC teams. Design and … Certifications: CISSP, CISM, or equivalent. Proven incident response and project leadership skills. Desirable Skills Experience with MoD CSOC or defence contractors. Knowledge of zero-trust models or AI-based threat detection. Personal Attributes Strategic thinker with strong decision-making under pressure. Excellent communication for technical and non-technical audiences. High integrity for handling classified information. Working Conditions Job Type More ❯
Southampton, Hampshire, South East, United Kingdom
University of Southampton
within a hybrid Security Operations Centre (SOC) model, leading the investigation and resolution of cybersecurity incidents, and co-ordinating with the Universitys third-party SOC provider to ensure effective threatdetection, incident response, and continuous monitoring across the University. - Conduct proactive threat hunting activities to detect advanced threats and anomalous behaviour within the University's network, and More ❯
experienced Senior XSOAR/XSIAM Consultant to join a major Public Sector programme. This role is a key position within the security operations landscape, helping to drive advanced automation, threatdetection, and response capabilities across a complex environment. This is a contract opportunity suited to someone with deep technical knowledge of Palo Alto's XSOAR and XSIAM platforms … Responsibilities Design, implement, and optimise Palo Alto XSOAR playbooks and XSIAM workflows to enhance SOC automation Integrate XSIAM with existing SIEM, XDR, and third-party security tools Build advanced detection logic, enrichment pipelines, and correlation rules to improve visibility and response Develop dashboards, reports, and monitoring tools to provide real-time threat intelligence Troubleshoot and resolve complex issues More ❯
environments to protect classified systems and ensure operational resilience. The Cloud Security Engineer will work closely with the CIO, cybersecurity teams, and defence contractors to secure cloud infrastructure, integrate threatdetection, and ensure compliance with MoD and NCSC standards, contributing to the broader goals of cybersecurity, infrastructure modernisation, and data governance. Project Objectives Secure cloud and hybrid IT … or government-approved platforms) for MoD systems. Configure and manage cloud security controls, including IAM, encryption, and network security groups. Conduct cloud-specific vulnerability assessments and penetration testing. Integrate threat intelligence and monitoring tools into cloud environments. Support incident response for cloud-based security incidents, collaborating with MoD's CSOC. Ensure cloud systems meet MoD accreditation and compliance requirements More ❯
for operational and intelligence insights. Key Responsibilities Strategic Leadership : Align IT and cybersecurity strategies with MoD objectives. Primary POC : Coordinate with MoD leadership, NCSC, and defence contractors. Cybersecurity : Oversee threatdetection, incident response, and zero-trust implementation. Digital Transformation : Lead adoption of AI, automation, and secure cloud systems. Infrastructure Modernization : Upgrade networks Send your CV More ❯