London, South East, England, United Kingdom Hybrid / WFH Options
Salt Search
Cyber Security Lead - Sentinel & Azure | Local Government Rate: £650 per day IR35: Inside IR35 Location: Hybrid - 2 days per week onsite in London Contract: 3 months initially, with strong potential for extension Salt Recruitment's Local Government team is working with a London-based Local Authority to recruit an experienced and hands-on Cyber Security Lead . This role will … and upcoming projects, embedding security practices, and leading preparations for a Public Services Network (PSN) audit. This is a critical delivery role that requires advanced technical expertise with Microsoft Sentinel and Azure , including automation using Sentinel playbooks . You'll also be expected to mentor internal analysts and drive cross-departmental engagement on cyber posture, compliance, and incident response readiness. … Key Responsibilities: Act as the lead for cyber security across multiple projects and programmes Design and implement Sentinel playbooks to automate detection and response Lead on PSN audit readiness and ensure compliance with key frameworks (Cyber Essentials, ISO27001, NIST, GDPR) Conduct cyber risk assessments, maintain the risk register, and drive remediation activity Provide regular reports and updates to senior stakeholders More ❯
the organisation's cyber security posture - particularly around SIEM and incident response, with a strong focus on Microsoft Sentinel. Key Responsibilities: Monitor security alerts and log data using Microsoft Sentinel and related SIEM tools Respond to security incidents, performing root cause analysis and recommending remediations Conduct vulnerability assessments and support threat detection activities Assist with the configuration and optimisation of … teams to ensure best practices in information security are maintained Essential Experience: Proven experience in a cyber security analyst or SOC analyst role Strong hands-on knowledge of Microsoft Sentinel and broader SIEM technologies Solid understanding of threat detection, log analysis, and incident response workflows Experience working in a public sector or regulated environment is highly desirable Ability to clearly More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom
Run-Time Group Ltd
DV Cleared*** Required OUTSIDE I35 We are seeking a skilled and proactive SOC Engineer with strong expertise in Microsoft Sentinel and LogRhythm to join our Security Operations Center team. The ideal candidate will be responsible for monitoring, analyzing, and responding to security incidents, optimizing SIEM configurations, and contributing to threat detection and response strategies. This role requires hands-on experience … with both platforms and a deep understanding of cybersecurity principles and incident management. Key Responsibilities: Monitor and investigate security alerts from Microsoft Sentinel and LogRhythm . Analyze logs, network traffic, and other data sources to detect threats and suspicious activities. Develop and tune detection rules, analytics, and alerting logic in both SIEM platforms. Collaborate with incident response teams to contain … SIEM solutions are properly integrated with data sources (e.g., firewalls, endpoints, cloud services). Support compliance and audit efforts through effective logging and reporting. Provide subject matter expertise for Sentinel and LogRhythm configuration, maintenance, and optimization. Requirements: Technical Skills: Proven experience with Microsoft Sentinel : KQL queries, analytic rules, data connectors, workbooks, etc. Proficiency with LogRhythm SIEM : AI Engine rules, SmartResponse More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Opus Recruitment Solutions Ltd
role with occasional travel to London for key meetings.Key Responsibilities: Design and implement secure cloud architectures within Microsoft Azure Lead the integration and optimisation of SIEM solutions, particularly Microsoft Sentinel Conduct threat modelling, risk assessments, and security architecture reviews Collaborate with engineering, DevOps, and compliance teams to embed security best practices Define and enforce security standards across Azure IaaS, PaaS … and SaaS environments Essential Skills & Experience: Strong background in Azure security architecture Hands-on experience with Microsoft Sentinel or other enterprise SIEM platforms Deep understanding of Azure security services (e.g. Defender for Cloud, Key Vault, Azure AD) Familiarity with Microsoft security frameworks and compliance standards Experience with secure cloud migration and hybrid environments Relevant certifications (e.g. AZ-500, SC More ❯
Security Engineer - SIEM - sought by investment bank based in London - Contract - Hybrid *Inside IR35 - umbrella* Key Responsibilities SIEM Management & Optimization: Design, implement, and maintain Microsoft Sentinel workspaces, connectors, analytics rules, and playbooks Develop advanced KQL queries for threat hunting and reporting Optimize SIEM performance, cost, and data retention policies Troubleshoot log ingestion and parsing issues Log Source Integration: Onboard and … for new security tools Help define and measure control effectiveness Required Skills & Experience 3+ years in a Security Engineer, SOC Analyst, or similar role Hands-on experience with Microsoft Sentinel and KQL Strong knowledge of Active Directory, Windows/Linux systems, and cloud platforms (Azure, AWS, GCP) Proficiency in scripting (PowerShell, Python) Familiarity with security frameworks (MITRE ATT&CK, NIST More ❯
Security Engineer - SIEM - sought by investment bank based in London - Contract - Hybrid *Inside IR35 - umbrella* Key Responsibilities SIEM Management & Optimization: Design, implement, and maintain Microsoft Sentinel workspaces, connectors, analytics rules, and playbooks Develop advanced KQL queries for threat hunting and reporting Optimize SIEM performance, cost, and data retention policies Troubleshoot log ingestion and parsing issues Log Source Integration: Onboard and … for new security tools Help define and measure control effectiveness Required Skills & Experience 3+ years in a Security Engineer, SOC Analyst, or similar role Hands-on experience with Microsoft Sentinel and KQL Strong knowledge of Active Directory, Windows/Linux systems, and cloud platforms (Azure, AWS, GCP) Proficiency in scripting (PowerShell, Python) Familiarity with security frameworks (MITRE ATT&CK, NIST More ❯
Enfield, Middlesex, England, United Kingdom Hybrid / WFH Options
Eden Brown Synergy
in London who are seeking an experienced Cyber Security Analyst to play a key role in strengthening their cyber security capabilities and ensuring the effective use of Microsoft's Sentinel security information and event management system. This opportunity offers a chance to contribute to a progressive, security-focused team committed to protecting critical infrastructure and information assets. The role is … to attend the London office 2 days per week. Key Responsibilities: * Monitor and analyse various security systems to identify, mitigate, and respond to risks and potential threats. * Utilise Microsoft Sentinel and related tools to analyse security data, detect anomalies, and respond effectively to incidents. * Oversee vulnerability assessments and penetration testing to ensure robust security measures are maintained. * Contribute to the More ❯
Leeds, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Certes IT Service Solutions
Technologies (McAfee, Cisco, Citrix and Microsoft) * Expected a broad understanding of five or more of the below is essential: * Cloud Security including extensive experience with MDE * SIEM/SOAR (Sentinel) * Cloud security monitoring and compliance. (AWS, Azure, and Google) * IPS/WAF experience * Firewalls * Reverse Proxy * Forward Proxy * End Point Security products * Network Security * Enterprise Architecture * Application Security * Vulnerability Management More ❯
environments You must be able to demonstrate current and recent E5 security products knowledge; Defender for Clouds Apps, Defender for Identity, and password protection. Experience of Configuring alerts into Sentinel and AD recovery PCP plan testing. This opportunity offers long term opportunity and requires 2 to 3 days in London . Key skill areas are Office 365 lead and E5 More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Oscar Associates (UK) Limited
security architecture using industry frameworks (i.e ISO 27001, CIS, NIST) Produce architecture dcumentation, risk assessments and design decision Experience required: Expertise in Microsoft Security Stack (E5 Security, Defender, Endpoint, Sentinel) Strong knowledge of Microsoft Licensing and governance Experiecne designing reusable security architecture patterns and templates Ideal certifications: Microsoft Security Architect Expert (SC100) CISSP/CISM Public Cloud Architect Certification (Azure More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Salt Search
product, and security stakeholders Passionate about improving developer experience and contributing to team knowledge-sharing Nice to Have: Experience with Kafka, gRPC, GraphQL, or policy-as-code tools like Sentinel or OPA Contributions to internal or open-source platforms Familiarity with building cost-optimized and compliant infrastructure in regulated environments *Rates depend on experience and client requirements More ❯
Extensive experience in a similar role Proven experience in cyber security, with a focus on security information and event management In-depth knowledge of security monitoring techniques, using Microsoft Sentinel Local Authority experience is essential How to apply Once your CV is received, if you are successful you will be contacted. Due to the extremely high number of applications, it More ❯
Milton Keynes, Buckinghamshire, England, United Kingdom Hybrid / WFH Options
Sanderson
Practitioner Analyst ensuring terms of the Service Level Agreement (SLA) are met. Key Requirements: Experience of working with SIEM and IPS within a SOC environment. Extensive knowledge of Microsoft Sentinel and Defender for Endpoints. Understanding of Cyber Threats Relevant Cyber Security Analyst experience and certification. Ability to produce clear security investigation documentation. Eligibility: To be considered for the role, you More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom Hybrid / WFH Options
Hays
Citizenship or Dual Nationality) Strong analytical skills with experience handling large datasets Proven experience working in a SOC environment with SIEM and IPS tools In-depth knowledge of Microsoft Sentinel and Defender for Endpoint Solid understanding of cyber threats and security operations Advanced IT skills and relevant cybersecurity certifications (e.g., CISSP, GCIH, CEH) Ability to produce clear, concise security investigation More ❯
Employment Type: Contract, Work From Home
Rate: £500.0 - £545.0 per day + £500 - 545 p/d outside IR35
specific vendor technologies would not be expected a broad understanding of five or more of the below is essential. Cloud Security including extensive experience with MDE SIEM/SOAR (Sentinel) Cloud security monitoring and compliance. (AWS, Azure and Google) IPS/WAF experience Firewalls Reverse Proxy Forward Proxy End Point Security products Network Security Enterprise Architecture Application Security Vulnerability Management More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
the Security Operations Center. As a Tier 3 CERT Analyst you will lead the investigation and remediation of advanced cyber threats, leveraging cutting-edge tools such as Splunk, Microsoft Sentinel, CrowdStrike, and Defender and other security stacks. You will handle complex incidents like APTs, malware, and data breaches, ensuring swift, effective responses to minimize risk to the organization and its More ❯