risk assessments, manage audits, and ensure compliance with GDPR and ISO 27001. Oversee security operations, including monitoring, threat detection, and incident response. Manage security tools and processes: SIEM (AzureSentinel), firewalls, endpoint protection, and identity management. Ensure secure configuration, patch management, and vulnerability remediation. Lead incident response and recovery, including investigations and post-incident reviews. Deliver … Skills/Technologies- 3-7+ years in cybersecurity, IT security, or risk management. Strong knowledge of cybersecurity frameworks (Cyber Essentials, ISO 27001). Hands-on experience with: AzureSentinel and other SIEM tools Microsoft 365 security Azure-hosted environments Proven ability in incident response, compliance programs, and risk management. More ❯
Salisbury, Wiltshire, England, United Kingdom Hybrid/Remote Options
Hays Specialist Recruitment Limited
enabling their team to excel in their roles. Your new role This is a cloud-focused infrastructure position where your primary responsibility will be supporting and enhancing the MicrosoftAzure environment. You'll play a key role in designing and deploying secure, resilient Azure infrastructure and services that underpin the organisation's operations. Your day-to … day work will involve managing and administering a wide range of Azure resources, including compute, storage, networking, identity, and security services. You'll also be responsible for automating infrastructure provisioning, using Infrastructure as Code tools such as Terraform or ARM templates, to ensure efficiency and consistency across deployments. Monitoring the performance and availability of cloud services will be … remediation, and system hardening processes, ensuring that the cloud environment remains robust and secure. In addition, you'll support the migration of workloads from on-premises infrastructure to Azure, helping the organisation take full advantage of cloud capabilities. Maintaining robust disaster recovery and backup strategies across all Azure environments will also be a key focus, ensuring More ❯
Analyst Are you passionate about building secure cloud environments and driving proactive security solutions? We re looking for a highly skilled Information Security Analyst with strong expertise in Azure cloud security, MicrosoftSentinel, and Tenable to join a growing security team. As an Information Security Analyst, you will play a key role in safeguarding cloud environments. … organisation. This is a hands-on role suited to someone who enjoys solving complex security challenges and driving continuous improvement. Key Responsibilities Lead the design and implementation of Azure security best practices, policies, and controls. Manage and optimise MicrosoftSentinel SIEM, including rule creation, use-case development, automation, and threat hunting. Oversee vulnerability management activities using … Continuously assess cloud environments for misconfigurations, threats, and compliance gaps. Prepare security reports, dashboards, and metrics for leadership and stakeholders. Skills & Experience Required Strong hands-on experience with Azure Security Centre, Azure AD, Defender for Cloud, and cloud security architecture. Proven expertise in MicrosoftSentinel SIEM administration, threat detection, and automation (KQL experience desirable More ❯
Analyst Are you passionate about building secure cloud environments and driving proactive security solutions? We’re looking for a highly skilled Information Security Analyst with strong expertise in Azure cloud security, MicrosoftSentinel, and Tenable to join a growing security team. As an Information Security Analyst, you will play a key role in safeguarding cloud environments. … organisation. This is a hands-on role suited to someone who enjoys solving complex security challenges and driving continuous improvement. Key Responsibilities Lead the design and implementation of Azure security best practices, policies, and controls. Manage and optimise MicrosoftSentinel SIEM, including rule creation, use-case development, automation, and threat hunting. Oversee vulnerability management activities using … Continuously assess cloud environments for misconfigurations, threats, and compliance gaps. Prepare security reports, dashboards, and metrics for leadership and stakeholders. Skills & Experience Required Strong hands-on experience with Azure Security Centre, Azure AD, Defender for Cloud, and cloud security architecture. Proven expertise in MicrosoftSentinel SIEM administration, threat detection, and automation (KQL experience desirable More ❯
Analyst Are you passionate about building secure cloud environments and driving proactive security solutions? We’re looking for a highly skilled Information Security Analyst with strong expertise in Azure cloud security, MicrosoftSentinel, and Tenable to join a growing security team. As an Information Security Analyst, you will play a key role in safeguarding cloud environments. … organisation. This is a hands-on role suited to someone who enjoys solving complex security challenges and driving continuous improvement. Key Responsibilities Lead the design and implementation of Azure security best practices, policies, and controls. Manage and optimise MicrosoftSentinel SIEM, including rule creation, use-case development, automation, and threat hunting. Oversee vulnerability management activities using … Continuously assess cloud environments for misconfigurations, threats, and compliance gaps. Prepare security reports, dashboards, and metrics for leadership and stakeholders. Skills & Experience Required Strong hands-on experience with Azure Security Centre, Azure AD, Defender for Cloud, and cloud security architecture. Proven expertise in MicrosoftSentinel SIEM administration, threat detection, and automation (KQL experience desirable More ❯
Security Analyst Are you passionate about building secure cloud environments and driving proactive security solutions? Were looking for a highly skilled Information Security Analyst with strong expertise in Azure cloud security, MicrosoftSentinel, and Tenable to join a growing security team. As an Information Security Analyst, you will play a key role in safeguarding cloud environments. … organisation. This is a hands-on role suited to someone who enjoys solving complex security challenges and driving continuous improvement. Key Responsibilities Lead the design and implementation of Azure security best practices, policies, and controls. Manage and optimise MicrosoftSentinel SIEM, including rule creation, use-case development, automation, and threat hunting. Oversee vulnerability management activities using … Continuously assess cloud environments for misconfigurations, threats, and compliance gaps. Prepare security reports, dashboards, and metrics for leadership and stakeholders. Skills & Experience Required Strong hands-on experience with Azure Security Centre, Azure AD, Defender for Cloud, and cloud security architecture. Proven expertise in MicrosoftSentinel SIEM administration, threat detection, and automation (KQL experience desirable More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
WTW
Engineering. This is a hybrid role at London office with a requirement to be in the office based on the business need. The Role: Agentic AI for Security & Sentinel Advanced Capabilities Lead the adoption and integration of Agentic AI for Security to enable autonomous threat detection, adaptive response, and continuous security posture improvement. Architect and optimise MicrosoftSentinel for SIEM, UEBA, and threat intelligence integration, leveraging MicrosoftSentinel Model Context Protocol (MCP) for advanced context-aware analytics and automation. Develop and maintain security analytics and data pipelines within Sentinel Data Lake to support large-scale threat detection, incident response, and threat hunting, while optimizing cost and enabling Agentic AI-driven security operations. … Integrate and automate security workflows using MicrosoftSentinel Graph for unified threat intelligence, incident correlation, and automated response. Microsoft Cloud Security Architecture & Strategy Design and implement Microsoft Cloud Security Architectures for Azure, AWS, OCI, GCP and hybrid cloud environments. Ensure Defender XDR and Defender for Cloud are optimised for advanced threat detection and response. Develop enterprise More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Constant Recruitment Ltd
MicrosoftSentinel Engineer Up to £70,000 DOE Remote – MUST be UK based Are you an experienced MicrosoftSentinel Engineer ready to take ownership of advanced security projects? Do you have strong 3rd-line level experience across Microsoft, Azure, networking, and cloud security? Would you like to join a fast-growing global consultancy where … The team currently numbers around 15 within a 60-person business and is expanding fast including the recent onboarding of a major financial services client. As a MicrosoftSentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work … combines engineering depth with real client interaction ideal for someone who enjoys both hands-on work and architectural thinking. What You Will Be Doing Design, configure, and deliver Sentinel SIEM solutions for enterprise clients. Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to More ❯
hunt for threats, and enjoy taking ownership of complex challenges this role is for you. What Youll Do Lead on threat detection, hunting, and incident response, working with Azure/Defender, Sentinel, and third-party SOCs. Investigate alerts and coordinate responses with internal IT teams and external managed SOCs. Continuously monitor, enhance, and report on security … with ISO27001, GDPR, Cyber Essentials Plus, and other regulatory frameworks. What Were Looking For Proven experience in Cyber Security, Threat Intelligence, or SOC environments. Hands-on experience with Azure Security Center, MicrosoftSentinel, Defender ATP, M365 Security & Compliance, and KQL scripting. Knowledge of frameworks such as MITRE ATT&CK, NIST, CIS, NCSC, and Security Scorecard. Understanding More ❯
with monitoring tools (SolarWinds, Nagios, PRTG). Microsoft Technologies Strong Windows Server (Apply online only)), AD, Group Policy, and systems admin. Working knowledge of Exchange Online. Experience with Azure AD and hybrid identity. Familiar with Intune and JAMF for device management. Solid Office 365 and Windows 10/11 admin skills. Virtualisation & Cloud Skilled in Hyper-V and … VMware (resource management, backups, failover). Exposure to Azure, AWS, GCP for migrations and optimisation. Communication Systems Experience with enterprise VoIP systems. Knowledge of IP CCTV setup, storage, and network integration. Backup & DR Proficient with Veeam for backup/replication. Experience in DR planning, failover, and resilience testing. Security & Compliance Strong grasp of cybersecurity (firewalls, EPP, vulnerabilities, threat … detection). Understanding of ISO 27001 and GDPR; audit support experience. Familiar with SIEM tools (Splunk, Sentinel). Operating Systems & Automation Working knowledge of Linux (Ubuntu, CentOS). Scripting with PowerShell, Bash, Python. Familiar with ITSM platforms (ServiceNow, Freshservice). Soft Skills Strong analytical and problem-solving ability. Excellent communicator across technical/non-technical teams. Highly organised More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Urbanberry Recruitment Ltd
direct reports Essential Experience & Knowledge Experience in Security Operations, Incident Response, or similar role Strong understanding of networking, Windows/Linux, and cybersecurity fundamentals Experience with SIEM (e.g., Sentinel, Splunk), EDR tools, and vulnerability platforms Understanding of security frameworks (ISO 27001, NIST, CIS) Working knowledge of Microsoft InTune Familiarity with GDPR and data protection requirements Desirable Certifications such … as Security+, CEH, GIAC Experience with cloud security (Azure/AWS/GCP) Exposure to AI/ML tools in security contexts Experience with MDM platforms and mobile security Skills & Attributes Strong analytical and problem-solving skills Clear and confident communication skills Ability to work independently and collaborate effectively Detail-focused, adaptable, and proactive Motivated by learning and More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Urbanberry Recruitment Ltd
direct reports Essential Experience & Knowledge Experience in Security Operations, Incident Response, or similar role Strong understanding of networking, Windows/Linux, and cybersecurity fundamentals Experience with SIEM (e.g., Sentinel, Splunk), EDR tools, and vulnerability platforms Understanding of security frameworks (ISO 27001, NIST, CIS) Working knowledge of Microsoft InTune Familiarity with GDPR and data protection requirements Desirable Certifications such … as Security+, CEH, GIAC Experience with cloud security (Azure/AWS/GCP) Exposure to AI/ML tools in security contexts Experience with MDM platforms and mobile security Skills & Attributes Strong analytical and problem-solving skills Clear and confident communication skills Ability to work independently and collaborate effectively Detail-focused, adaptable, and proactive Motivated by learning and More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
ITS Recruitment
authority and governance for the effective use of technical security controls across the firm Act as an escalation point for threat hunting and security incidents Investigate alerts from Azure/Defender, IT monitoring systems, and 3rd-party SOC, helping to ensure critical assets remain secure Manage supplier relationships, report on control effectiveness, and support compliance with ISO … GDPR, and Cyber Essentials Plus Technology NIST, CIS, NCSC, Mitre Att&ck, Security Scorecard, M365/Azure Security Center Azure Security Center, SIEM, Defender ATP, M365 Security, Data Compliance and Governance, PIM & PAM Zscaler (ZTNA), Darktrace, Firewalls, NAC, Network segregation, remote access & wireless technologies Windows & KQL (MS Sentinel) scripting Cloud computing (IaaS, PaaS, SaaS More ❯
baselines. Support architectural governance, project reviews, and digital assurance. Maintain the technical security roadmap and drive improvements across tooling and capabilities. Operate and optimise core security tools (Defender, Sentinel, Tenable, CASB) and track control adoption through KPIs and dashboards. Lead and document security initiatives, including hardening guides, architecture diagrams, and evidence packs. Chair the Cyber Security Working Group … equivalent experience plus relevant security certifications (Security+, CEH, CySA+, Cloud Security Engineer). Significant experience in cyber security operations or incident response. Hands-on expertise with Microsoft Defender, Sentinel, Tenable, CASB, and cloud security (AWS/Azure). Proven security project delivery, PowerShell automation skills, and familiarity with IR frameworks. Consulting-style experience providing advisory support More ❯
Active Directory, Hyper-V and high availability failover clustering Microsoft Data Protection Manager PowerShell scripting and automation All round Microsoft Cloud Operations engineer Cloud Services, IaaS, PaaS, MicrosoftAzure, including Site recovery (ASR) and M365, Exchange Online, OneDrive, Teams Azure networking (private endpoints, Azure firewalls, VPNs, IP Groups etc) Operations systems, Windows Desktop, Windows … Server and Linux Monitoring/Alerting/log Analytics, Sentinel Logic Apps API Management gateways Azure Application Proxies You must be eligible for security clearance living in the UK as a British Citizen. What you need to do now If you're interested in this role, click 'apply now' to forward an up-to-date copy More ❯
Watford, Hertfordshire, South East, United Kingdom
Hays
Active Directory, Hyper-V and high availability failover clustering Microsoft Data Protection Manager PowerShell scripting and automation All round Microsoft Cloud Operations engineer Cloud Services, IaaS, PaaS, MicrosoftAzure, including Site recovery (ASR) and M365, Exchange Online, OneDrive, Teams Azure networking (private endpoints, Azure firewalls, VPNs, IP Groups etc) Operations systems, Windows Desktop, Windows … Server and Linux Monitoring/Alerting/log Analytics, Sentinel Logic Apps API Management gateways Azure Application Proxies You must be eligible for security clearance living in the UK as a British Citizen. What you need to do now If you're interested in this role, click 'apply now' to forward an up-to-date copy More ❯
Nottingham, Nottinghamshire, England, United Kingdom Hybrid/Remote Options
Staffline Recruitment Limited
be required to our Head Office in Nottingham and to other UK sites for on-site support. Key Responsibilities Implement, configure, and support core IT infrastructure including MicrosoftAzure, Windows Server, Intune, Office 365, networking, and storage technologies. Work closely with managed service providers (MSPs) and vendors to maintain agreed performance and security standards. Manage escalations from the … Infrastructure and Security Manager Internal & External Stakeholders Development & Systems Team Service Desk Team Financial & Legal Responsibilities None. Person Specification Education/Certifications Essential: Full UK Driving Licence Desirable: Azure certifications Microsoft MCP or higher CompTIA A+ Experience Essential: Minimum 2+ years’ experience in a hands-on IT infrastructure role Proven experience supporting cloud and hybrid environments (Azure … party suppliers and MSPs Desirable: Experience with endpoint management (Intune) Exposure to security operations or compliance frameworks AWS exposure Technical Skills Essential: Strong knowledge of Windows Server 2019+, Azure AD, Intune, and Office 365 Understanding of networking fundamentals (DNS, DHCP, VPN, routing) Experience with backup and recovery solutions Familiarity with identity and access management, patching, and monitoring Desirable More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid/Remote Options
Littlefish
defence, helping to design and deliver solutions that strengthen resilience and enable smarter security operations. You will: Architect & Design : Build and evolve secure frameworks using Microsoft Security (Defender, Sentinel, Purview, Entra) and integrate Qualys vulnerability management for continuous threat detection and remediation. Automate & Innovate: Lead the charge on automation (SOAR, IaC, workflow automation) and embed Gen AI into … Expert, AZ-500, etc.). Strategic mindset, strong communication skills, and a passion for emerging tech. The following would also be of interest: Certifications in automation/cloud (Azure Solutions Architect, Terraform, GIAC), vulnerability management (Qualys, ISO 27001, NIST). Experience with SOAR, SIEM, XDR, and cloud-native security (especially Azure). Pre-sales or solution More ❯
Leeds, West Yorkshire, England, United Kingdom Hybrid/Remote Options
Elevation Recruitment Group
findings and actions. Undertake security focussed projects to improve security across Network, Windows Desktop/Server Environments, wider Wintel environment inc virtualised server environments VMWare, intune, O365/Azure in conjunction with the relevant teams. Review vulnerabilities in the environment and suggest, plan and implement remediation. Requirements: Technically minded security engineer Proficiency with security tools such as SIEM … PAM, web filtering, email filtering (Mimecast), IDS/IPS, antivirus, endpoint protection, MS Sentinel, vulnerability assessment tools ie Tenable. Experience in SentinelOne MDR Experience in working with a third party to a managed SOC provision An understanding of the importance of Identity Threat Management Strong analytical skills with a keen eye for detecting security threats and anomalies. Excellent More ❯
required to support, maintain, and enhance the organisation’s core technology platforms. The role focuses on delivering robust, secure, and scalable infrastructure services across a predominantly Microsoft and Azure-based environment. The successful candidate will contribute to service improvement, operational stability, and the ongoing alignment of IT services with business needs. Key Responsibilities • Manage, maintain, and optimise on … premise and cloud infrastructure built primarily on Microsoft technologies and Azure services. • Ensure the availability, performance, security, and resilience of core IT systems, networks, and services. • Implement and maintain automation, monitoring, and configuration management capabilities across the estate. • Support the design and delivery of infrastructure changes, upgrades, and new capabilities following ITIL change and release processes. • Troubleshoot and … Skills and Experience • Strong technical expertise across the Microsoft technology stack, including Windows Server, Active Directory, Group Policy, DNS, DHCP, and SQL Server. • Hands-on experience with MicrosoftAzure, covering IaaS, PaaS, identity, networking, monitoring, and cost management. • Sound understanding of ITIL practices, with practical experience in incident, problem, change, and configuration management. • Proven experience managing virtualised environments More ❯
support efforts to retain security accreditations Required skills and experience of the Operations Analyst Broad experience as a Microsoft-focused Cloud Engineer or Operations Analyst Strong knowledge of Azure services, including IaaS, PaaS, ASR, and M365 (Exchange Online, Teams, OneDrive) Understanding of Azure networking components: private endpoints, Azure Firewall, VPNs, IP Groups Experience working … with Windows Server, Windows Desktop, and Linux environments Windows Server, Active Directory, Hyper-V PowerShell for automation and scripting. Experience with monitoring tools, Log Analytics, Sentinel and alerting platforms Familiarity with Logic Apps, API Management, and Azure Application Proxy Strong knowledge of LAN/WAN technologies including switching, routing, firewalls, MPLS, VRF, SD-WAN and DNS More ❯
Strong analytical mindset with excellent attention to detail. Solid understanding of adversary techniques (eg, MITRE ATT&CK) and common attack patterns. Hands-on experience using SIEM tools (eg, Sentinel or equivalent platforms). Familiarity with EDR/XDR solutions such as Defender for Endpoint, CrowdStrike, SentinelOne or similar. Good grounding in core networking and security concepts (TCP/… IP, Firewalls, IDS/IPS). Practical knowledge of Windows, Linux and cloud environments (Azure, AWS or GCP). Strong written and verbal communication skills, especially for technical reporting. Ability to work independently and collaboratively in a dynamic environment. Desirable Skills: Experience in Scripting or automation (Python, PowerShell, etc.). Industry certifications such as Security+, SC-200, GIAC More ❯
Strong analytical mindset with excellent attention to detail. Solid understanding of adversary techniques (e.g., MITRE ATT&CK) and common attack patterns. Hands-on experience using SIEM tools (e.g., Sentinel or equivalent platforms). Familiarity with EDR/XDR solutions such as Defender for Endpoint, CrowdStrike, SentinelOne or similar. Good grounding in core networking and security concepts (TCP/… IP, firewalls, IDS/IPS). Practical knowledge of Windows, Linux and cloud environments (Azure, AWS or GCP). Strong written and verbal communication skills, especially for technical reporting. Ability to work independently and collaboratively in a dynamic environment. Desirable Skills: Experience in scripting or automation (Python, PowerShell, etc.). Industry certifications such as Security+, SC-200, GIAC More ❯
exposure to a wide range of modern technologies, this role will suit you perfectly. You’ll act as a key escalation point for technical issues across Microsoft 365, Azure, Windows Server, networking and endpoint management. You’ll work extensively with their RMM platform and cybersecurity tooling—including SentinelOne, Huntress and backup solutions-so a strong focus on security … as an escalation point for 1st line engineers and seeing issues through to full resolution Monitoring, managing and remediating systems using RMM tools Troubleshooting issues across Microsoft 365, Azure AD, Windows Server and endpoint devices Supporting endpoint security, EDR platforms (SentinelOne, Huntress) and backup solutions Assisting with deployments, migrations and infrastructure upgrades Escalating complex issues to senior engineers … and best-practice initiatives What You’ll Bring Essential: 2+ years’ experience in an MSP or multi-client IT support environment Strong knowledge of Microsoft 365, Intune and Azure AD Solid understanding of Windows Server, Active Directory and Group Policy Good networking fundamentals (VLANs, firewalls, VPNs, DNS, DHCP) Strong troubleshooting ability with a “see it through” mindset Excellent More ❯
Manchester, Lancashire, England, United Kingdom Hybrid/Remote Options
Adria Solutions
exposure to a wide range of modern technologies, this role will suit you perfectly. You’ll act as a key escalation point for technical issues across Microsoft 365, Azure, Windows Server, networking and endpoint management. You’ll work extensively with their RMM platform and cybersecurity tooling—including SentinelOne, Huntress and backup solutions-so a strong focus on security … as an escalation point for 1st line engineers and seeing issues through to full resolution Monitoring, managing and remediating systems using RMM tools Troubleshooting issues across Microsoft 365, Azure AD, Windows Server and endpoint devices Supporting endpoint security, EDR platforms (SentinelOne, Huntress) and backup solutions Assisting with deployments, migrations and infrastructure upgrades Escalating complex issues to senior engineers … and best-practice initiatives What You’ll Bring Essential: 2+ years’ experience in an MSP or multi-client IT support environment Strong knowledge of Microsoft 365, Intune and Azure AD Solid understanding of Windows Server, Active Directory and Group Policy Good networking fundamentals (VLANs, firewalls, VPNs, DNS, DHCP) Strong troubleshooting ability with a “see it through” mindset Excellent More ❯