Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid/Remote Options
Experian Ltd
Anti-Virus, Intrusion Prevention, Web Application Firewalls) Interest in developing knowledge across common Incident Response and Security Monitoring applications such as SIEM (e.g., Qradar, Splunk), EDR (e.g., FireEye HX, CrowdStrike Falcon, Microsoft Defender), and SOAR (Palo Alto XSOAR, Google Secops/Chronicle) Desire to build technical skills and hands-on knowledge in the following areas of security operations and incident More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
Cloud People
Strong understanding of attack methodologies such as MITRE ATT&CK and the Cyber Kill Chain Hands on experience with SIEM and EDR tools including Microsoft Sentinel, Defender, Splunk or CrowdStrike Experience with triage, containment and incident response Solid understanding of networks, Windows and Linux systems and cloud security across M365, Azure and AWS Excellent communication skills and a collaborative mindset More ❯
best practices , including vulnerability and incident management. Practical experience with security monitoring and protection tools such as Firewalls, IDS/IPS, XDR, SIEM, CNAPP, and log collection platforms (e.g., CrowdStrike, Lacework). Experience in designing and implementing Identity and Access Management (IAM) solutions and maintaining secure authentication practices. Proficiency with Windows and Linux systems , as well as network scanning and More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
Cloud People
to 5 years of experience in a SOC, security engineering or cyber operations environment • Hands on experience with SIEM or EDR platforms such as Microsoft Sentinel, Splunk, Defender, CrowdStrike or Elastic • Proven ability to build and tune detection rules, dashboards and automation playbooks • Knowledge of scripting or automation using KQL, PowerShell, Python or similar • Familiarity with log management, APIs and More ❯
Experience/Skills: 5 years’ experience in a SOC, security engineering, or cyber operations role. Strong hands-on experience with SIEM or EDR platforms (e.g., Microsoft Sentinel, Splunk, Defender, CrowdStrike, Elastic). Expertise in building and tuning detection rules, dashboards, and automation playbooks. Proficiency in scripting or automation (KQL, PowerShell, Python, or similar). Knowledge of log management, APIs, data More ❯
and upskill junior analysts. You should bring: 2–4 years’ experience in a SOC, CSIRT, or cyber defence environment. Solid knowledge of SIEM and EDR platforms (Sentinel, Splunk, Defender, CrowdStrike, etc.). Understanding of MITRE ATT&CK and network/cloud security principles. Strong analytical and communication skills. Bonus points for: Scripting or automation experience (KQL, PowerShell, Python). Background More ❯
and upskill junior analysts. You should bring: 2–4 years’ experience in a SOC, CSIRT, or cyber defence environment. Solid knowledge of SIEM and EDR platforms (Sentinel, Splunk, Defender, CrowdStrike, etc.). Understanding of MITRE ATT&CK and network/cloud security principles. Strong analytical and communication skills. Bonus points for: Scripting or automation experience (KQL, PowerShell, Python). Background More ❯
eradication, recovery, and lessons learned. Hands-on experience with SIEM tools such as Splunk, Sentinel, or QRadar — including log analysis and data correlation. Strong familiarity with EDR platforms like CrowdStrike, SentinelOne, or Carbon Black. Working knowledge of network security , including protocols, firewalls, IDS/IPS, and traffic analysis. Experience with cloud security principles in AWS, Azure, or GCP. Ability to More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Cititec
eradication, recovery, and lessons learned. Hands-on experience with SIEM tools such as Splunk, Sentinel, or QRadar — including log analysis and data correlation. Strong familiarity with EDR platforms like CrowdStrike, SentinelOne, or Carbon Black. Working knowledge of network security , including protocols, firewalls, IDS/IPS, and traffic analysis. Experience with cloud security principles in AWS, Azure, or GCP. Ability to More ❯
with DLP incident handling, remediation, and reporting Proficiency in Microsoft Office products Experience in securing AI-driven systems and leveraging AI tools. Familiar with Microsoft Defender for Endpoint, Thales, CrowdStrike Falcon and SIEM, CyberArk, Rapid7, and Palo Alto products is a plus Lead Cyber Security Engineer More ❯
infrastructure/networking background with security exposure. Hands-on experience with SIEM platforms – e.g. Microsoft Sentinel, Google Chronicle, or similar. Working knowledge of EDR/XDR tools such as CrowdStrike, SentinelOne, Palo Alto Cortex, or Microsoft Defender. Understanding of incident response frameworks (MITRE ATT&CK preferred). Experience with vulnerability management platforms such as Rapid7 or Tenable. Exposure to Cyber More ❯
You’ll Do Build the SecOps team from the ground up and manage/mentor the team. Lead the implementation, optimisation, and management of cutting-edge security tools like CrowdStrike, Palo Alto, and Mimecast. Take ownership of our cyber defence posture from incident response and vulnerability management to WAFs, DDoS protection, and encryption. Mentor junior engineers, elevate best practices, and More ❯
City of London, London, United Kingdom Hybrid/Remote Options
DVF Recruitment
You’ll Do Build the SecOps team from the ground up and manage/mentor the team. Lead the implementation, optimisation, and management of cutting-edge security tools like CrowdStrike, Palo Alto, and Mimecast. Take ownership of our cyber defence posture from incident response and vulnerability management to WAFs, DDoS protection, and encryption. Mentor junior engineers, elevate best practices, and More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Career Legal
You’ll Do Build the SecOps team from the ground up and manage/mentor the team. Lead the implementation, optimisation, and management of cutting-edge security tools like CrowdStrike, Palo Alto, and Mimecast. Take ownership of our cyber defence posture from incident response and vulnerability management to WAFs, DDoS protection, and encryption. Mentor junior engineers, elevate best practices, and More ❯
Security. Strong technical knowledge of networking, authentication, and cloud (Azure/O365). Experience with DLP, incident response, and ISO 27002 standards. Familiarity with tools such as Microsoft Defender, CrowdStrike, CyberArk, Rapid7, or Palo Alto. CISSP or CEH certification preferred. Excellent communication, problem-solving, and stakeholder management skills. Additional Details Standard hours: 9:00am-5:00pm with on-call participation. More ❯
networking technologies (TCP/IP, routing, switching, firewalls, VPN's, SD-WAN etc) Hands-on familiarity with leading security solutions and platforms (eg: Cisco, Palo Alto Networks, Fortinet, CheckPoint, CrowdStrike etc) Strong understanding of security frameworks, tools, standards (eg: ISO 27001, NST, CIS controls, Zero Trust architecture) Act as a technical SME for the solutions offered, understanding their architecture and More ❯
and Bold Trusted Partners: Microsoft: Top 3 Service Providers, Azure Expert Status, Fastrack & Inner Circle Partner HPE: Platinum Partner - FY23 UK&I Solution Provider of the Year Palo Alto & Crowdstrike: part of our NextDefense Cyber Security Portfolio Fortinet: Elite VIP Program - one of only 2 in the UK AWS: Advanced Solution & Managed Service Provider Program Job Description As the first More ❯
Bold, Trusted Trusted Partners: Microsoft: Top 3 Service Providers, Azure Expert Status, Fastrack & Inner Circle Partner HPE: Platinum Partner - FY23 UK&I Solution Provider of the Year Palo Alto & Crowdstrike: part of our NextDefense Cyber Security Portfolio Fortinet: Elite VIP Program - one of only 2 in the UK AWS: Advanced Solution & Managed Service Provider Program Job Description Service Architect - Remote More ❯
of compliance frameworks and risk management strategies. Preferred Qualifications Certifications such as CISSP, CCSP, CISM, AWS/Azure Security Specialty, or equivalent. Experience with tools like Okta, Azure AD, CrowdStrike, Tanium, Zscaler, Vault, and other modern security platforms. Familiarity with DevSecOps principles, Infrastructure as Code, and secure software development practices. Who You'll Work With Work Environment & Additional Information Hybrid More ❯
Crewe, England, United Kingdom Hybrid/Remote Options
DCS Technology
process development Key Skills & Experience: • Strong technical background in cyber security • Experience with application, cloud (AWS) , and infrastructure security • Proven hands-on experience with EDR/NDR tools , particularly CrowdStrike • Proficient with Linux and databases such as MySQL , PostgreSQL , Apache , and PHP • Knowledge of ISO 27001 , Cyber Essentials , and general security frameworks What you get in return: • Up to More ❯
Crewe, Cheshire, England, United Kingdom Hybrid/Remote Options
DCS Recruitment
process development Key Skills & Experience: * Strong technical background in cyber security * Experience with application, cloud (AWS) , and infrastructure security * Proven hands-on experience with EDR/NDR tools , particularly CrowdStrike * Proficient with Linux and databases such as MySQL , PostgreSQL , Apache , and PHP * Knowledge of ISO 27001 , Cyber Essentials , and general security frameworks What you get in return: * Up to More ❯
to strengthening defences across on-premises, cloud, and SaaS environments, you’ll play a vital role in safeguarding critical systems and data. The environment is - Mimecast, Antivirus/EDR, CrowdStrike, Security Awareness Platform, KnowBe4, O365, Web Proxy/proxies, Phishing, Policies, AD/Active Directory. However the client is happy to welcome candidates with other tech backgrounds. You’ll lead More ❯
Burton Upon Trent, England, United Kingdom Hybrid/Remote Options
Digital Gurus
infrastructure role. A broad technical base across Azure/M365/Entra, Active Directory, Windows Server, and networking fundamentals. Practical experience with EDR and web/email security tools (CrowdStrike, Defender for Endpoint, Zscaler, Mimecast, or similar). Evidence of delivering change, e.g., project rollouts, migrations, or improvements you’ve owned end-to-end. Confident communicator who can explain technical More ❯