Crawley, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, Crawley, West Sussex Client: Cloud Decisions Location: Crawley, West Sussex, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 6 Posted: 06.06.2025 Expiry Date: 21.07.2025 Job Description: Job Title: Senior Microsoft Sentinel/SIEMEngineer - Up to … from numerous cloud and data sources. The Role Own and optimize enterprise-wide log onboarding into Microsoft Sentinel Deploy standard and custom connectors, Function Apps, and parsers Build tailored SIEM solutions for threat detection and response Manage log ingestion across hybrid and multi-cloud environments Enhance and develop custom Function Apps and ingestion pipelines Parse, normalize, and optimize log … bases and engineering standards Requirements Experience with complex Microsoft Sentinel deployment at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Skills in SIEM content development, including KQL, analytics rules, and data connectors Scripting and engineering skills: Python, PowerShell, APIs, Function Apps Background in cyber threat detection, incident response, or DFIR (a plus More ❯
City of London, London, Walbrook, United Kingdom Hybrid / WFH Options
Langley James IT Recruitment
Cyber Security Engineer required by a London financial brokerage ( near Bank station ), paying up to £60k + bonus + benefits. Hybrid role (3 days office-based). Join a focused 3-person IT Security team, reporting to the IT Security Officer, to implement and maintain robust security across their infrastructure. Key responsibilities include managing WAF/DDoS, security gateways … SIEM/SOAR/EDR, firewalls, MFA/SSO, MDM/MAM, vulnerability scans, and incident response. Key Responsibilities: Manage WAF/DDoS, web/email security gateways, SIEM/SOAR/EDR (alert response), firewalls, MFA/SSO, MDM/MAM, vulnerability scans/remediation, security certificates, IDS/IPS, PAM, and deliver security awareness training. Remediate More ❯
Slough, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, Slough Client: Cloud Decisions Location: Slough, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 Job Description: Job Title: Senior Microsoft Sentinel/SIEMEngineer Salary: Up to £85,000 + Benefits … as you go. The Role You'll own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that enhance threat detection and response. Log ingestion at scale across hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise, and optimise log … engineering standards Requirements Experience building and integrating complex Microsoft Sentinel solutions at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills: Python, PowerShell, APIs, Function Apps Background in cyber threat detection, incident response, or DFIR is More ❯
London, England, United Kingdom Hybrid / WFH Options
Langley James IT Recruitment
Cyber Security Engineer required by a London financial brokerage ( near Bank station ), paying up to 60k + bonus + benefits. Hybrid role (3 days office-based). Join a focused 3-person IT Security team, reporting to the IT Security Officer, to implement and maintain robust security across their infrastructure. Key responsibilities include managing WAF/DDoS, security gateways … SIEM/SOAR/EDR, firewalls, MFA/SSO, MDM/MAM, vulnerability scans, and incident response. Key Responsibilities: Manage WAF/DDoS, web/email security gateways, SIEM/SOAR/EDR (alert response), firewalls, MFA/SSO, MDM/MAM, vulnerability scans/remediation, security certificates, IDS/IPS, PAM, and deliver security awareness training. Remediate More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, Southampton Client: Cloud Decisions Location: Southampton, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 5 Posted: 06.06.2025 Expiry Date: 21.07.2025 Job Description: Job Title: Senior Microsoft Sentinel/SIEMEngineer Salary: Up to £85,000 + Benefits … base and engineering standards Requirements Experience with complex Microsoft Sentinel deployment at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Skills in SIEM content development: KQL, analytics rules, data connectors Scripting and engineering skills: Python, PowerShell, APIs, Function Apps Background in threat detection, incident response, or DFIR (a plus) Ability to work More ❯
Capgemini Government Solutions (CGS) LLC seeks a highly motivated SIEMengineer with experience handling both ArcSight and Splunk. The ArcSight/Splunk Engineer will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. Ability to demonstrate solid skills in system administration, log management, event correlation, and threat detection and … their skills, work with a motivated and entrepreneurial team, engage with a wide range of collaborators, and build CGS' capabilities to serve our clients. Job Responsibilities As a Principal SIEMEngineer (ArcSight & Splunk), you will be: Responsible for design, implementation and support ArcSight or Splunk core components, including ESM, Loggers, Smart Connectors, Indexers, Forwarders, Search Heads, and Cluster … between the various event flow components Responsible for configuring and deploying data collection for a variety of operating systems and networking platforms Responsible for creating Dashboards and Analytics within SIEM tools Working with monitoring systems supporting auditing, incident response, and system health Responsible for understanding networking components and devices, ports, protocols, and basic networking fix steps Required Qualifications: US More ❯
Siem Engineer208296 About the role you're considering The Cyber Delivery Team is part of the Managed Services function within the Cloud Infrastructure Services (CIS) UK business line. You will interact with a global team of security experts, including Architects, Engineers, Analysts, and Compliance Managers. CIS encourages engagement across different areas of the business and local communities. We are … seeking a skilled SIEMEngineer with expertise in Elastic SIEM to join our cybersecurity team. The ideal candidate will design, implement, and maintain our Elastic SIEM infrastructure to ensure effective security monitoring and incident response. This role is embedded with an existing Customer SOC, providing engineering support alongside Capgemini SOC analysts and the customer SOC team. … or immigration status, employment history for the past 3 years, and a criminal record check (Disclosure and Barring Service). Your role Design and Implementation: Install and maintain Elastic SIEM architecture for optimal performance and scalability. Monitoring and Analysis: Create dashboards and visualizations using the Elastic Stack for real-time security event monitoring. Data Integration: Integrate various data sources More ❯
London, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, West London Client: Cloud Decisions Location: West London, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 Job Description: Job Title: To £85,000 + Benefits + Microsoft Fully Remote, UK (*Global Microsoft Managed … as you go. The Role You will own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that enhance threat detection and response. Log ingestion at scale across hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise, and optimise log … What’s needed? Experience building and integrating complex Microsoft Sentinel solutions at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response, or DFIR More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
BT Group
Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: SIEM Application Engineer Function: Cyber Security Unit: Networks Location: Snowhill, Birmingham, United Kingdom Salary: Competitive with Great Benefits The new Network SIEM is essential to BT's network security, meeting TSA requirements and improving our CAF level. Your role … as a SIEM Application Engineer in Security Engineering is to support the development, implementation, operation and support of BTs Strategic SIEM development. We are seeking a skilled SIEM Application Engineer with expertise in Elasticsearch to join our dynamic team. As a SIEMengineer, you will play a critical role in designing, developing, and … maintaining our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. This role is hybrid (3 days in office) and can be based in one of the following offices: Birmingham, Manchester, Ipswich (Ipswich only applicable to existing BT employees) What you More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
BT Group
SIEM Software Engineer Lead Function: Software Engineering Unit: Networks Location: Snowhill, Birmingham, United Kingdom Salary: Competitive with Great Benefits The new Network SIEM is essential to BT’s network security, meeting TSA requirements and improving our CAF level. Being the SIEM Software Engineer Lead you will play a critical role in designing, developing, implementing, and … maintaining our strategic SIEM platform as part of the SIEM Software Engineering Team, leading the Automation strategy and leading the in-life Automation team. This role can be based in any of the following locations and follows hybrid working: Birmingham, Ipswich, Belfast What you’ll be doing Kubernetes DevOps/SysOps Engineering managing Kubernetes clusters and container orchestration … CI/CD pipeline. Technical leadership working in a high performing team of engineers delivering state of the art security tools for BT. Be an active member of the SIEM/CDP log onboarding team, delivering SIEM/CDP functionality in line with the requirements. Act as product owner, breaking down top level requirements into product backlogs as More ❯
Maidenhead, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
Job Description Short Description Our client is looking for a skilled and experienced Sentinel Engineer to join their cybersecurity team Bullet Points Fully remote if the candidate stays further than 80 miles from Maidenhead £60-80k neg per annum + benefits + bonus Minimum of 10 yrs engineering, with 5+ years in cybersecurity engineering This role is only … be travelling to client meetings as and when required for the role. We have an exciting opportunity to join our MSS Security Operations Centre team as a Cyber Security Engineer specialising in Microsoft’s cyber security solutions. If you are passionate about cyber security and Microsoft and enjoy supporting and building security solutions that provide real value, we would … love to hear from you! The Microsoft Cyber Security Engineer will be a key MSS team member. You will be responsible for deploying, configuring and managing security solutions within the Microsoft Defender suite, Microsoft Purview, Microsoft Entra ID (Azure AD), Intune, and Privileged Management (PIM). You will be skilled in tuning, optimising, and troubleshooting Microsoft security solutions to More ❯
Job Responsibilities As a SIEMEngineer (ArcSight & Splunk), you will be: Responsible for design, implementation and support ArcSight or Splunk core components, including ESM, Loggers, Smart Connectors, Indexers, Forwarders, Search Heads, and Cluster Managers Responsible for configuration and administration of ArcSight or Splunk ingestion and forwarding for new and existing applications and data Responsible for fix ArcSight or … between the various event flow components Responsible for configuring and deploying data collection for a variety of operating systems and networking platforms Responsible for creating Dashboards and Analytics within SIEM tools Working with monitoring systems supporting auditing, incident response, and system health Responsible for understanding networking components and devices, ports, protocols, and basic networking fix steps Required Qualifications: US … dataflow issues between the various event flow components Experience configuring and deploying data collection for a variety of operating systems and networking platforms Experience creating Dashboards and Analytics within SIEM tools Experience working with monitoring systems supporting auditing, incident response, and system health Understanding of networking components and devices, ports, protocols, and basic networking fix steps The ability to More ❯
worldwide. Here in the Global Information Security team, we work to protect the platforms that support investment solutions for over 20 million people. We are looking for an experienced SIEMEngineer , reporting to the Cyber Security Engineering Manager (SIEM). You will have a strong background in designing and developing monitoring solutions and will be familiar with … onboarding data from varied sources. You will have strong experience of different SIEM architectures and be adaptable in your approach. Your role in FNZ will be to manage and enhance the SIEM solutions for the FNZ Group, supporting the lifecycle of data onboarding, use cases and automating responses. Specific Role Responsibilities Support the creation and delivery of the … roadmap and architecture for the SIEM solutions in FNZ. Deploy, manage and enhance the SIEM technology in FNZ Managing the SIEM infrastructure Log onboarding Rules and Use case development Schema management Threat Intelligence integration Maintain up-to-date knowledge of emerging security threats and trends and build this into the SIEM strategy. Support the Incident Response More ❯
Brighton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, Brighton Client: Cloud Decisions Location: Brighton, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 6 Posted: 06.06.2025 Expiry Date: 21.07.2025 Job Description: Job Title: Senior Microsoft Sentinel/SIEMEngineer Salary: Up to £85,000 + Benefits … from various cloud and data sources. The Role Own and optimize enterprise-wide log onboarding into Microsoft Sentinel Deploy standard and custom connectors, Function Apps, and parsers Build tailored SIEM solutions for threat detection and response Manage log ingestion across hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalize, and optimize log telemetry for … engineering standards Requirements Experience with building and integrating complex Microsoft Sentinel at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills: Python, PowerShell, APIs, Function Apps Background in cyber threat detection, incident response, or DFIR (a More ❯
Ontwerp, implementeer en optimaliseer de beveiligingsinfrastructuren voor onze opdrachtgevers, met behulp van technologieën zoals SIEM, Firewalls, IDS/IPS en Microsoft Sentinel. Splunk of QRadar. Als Senior SOC Engineer speel je een cruciale rol in het beveiligen van de IT-infrastructuur van onze opdrachtgevers. Jij bent samen verantwoordelijk voor het ontwikkelen, beheren en optimaliseren van de beveiligingssystemen die … werk je nauw samen met securityspecialisten en het management om de beveiligingsinfrastructuur continu te verbeteren en te innoveren. Een voorproefje van je uitdagingen Ontwerpen en configureren van beveiligingssystemen zoals SIEM, IDS/IPS, Firewalls en endpoint detection tools. Integreren en optimaliseren van diverse beveiligingstechnologieën en het verbeteren van de monitoring- en detectiesystemen. Adviseren en ondersteunen van het SOC-team … na proeftijd. Klinkt goed, toch? Wat verwachten we van jou? Brede interesse in cybersecurity, eigenlijk ben je er ongemerkt altijd wel mee bezig. Minimaal 6 jaar werkervaring als SOC Engineer, Security Engineer of in een vergelijkbare rol. Uitgebreide ervaring met één of meerdere security monitoring- en detectiesystemen zoals SIEM, Splunk, Microsoft Sentinel, QRadar of andere relevante tools. More ❯
Watford, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, Watford, Hertfordshire Client: Cloud Decisions Location: Watford, Hertfordshire, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 Job Description: Job Title: To £85,000 + Benefits + Microsoft Fully Remote, UK (*Global Microsoft Managed … as you go. The Role You'll own and optimize enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalize … What's needed? Experience building and integrating complex Microsoft Sentinel solutions at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response, or DFIR More ❯
Reading, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, reading col-narrow-left Client: Cloud Decisions Location: reading, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 col-wide Job Description: Job Title: To £85,000 + Benefits + Microsoft … as you go. The Role You'll own and optimize enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalize … standards What's needed? Experience building and integrating complex Microsoft Sentinel at SMC and enterprise levels Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response, or DFIR More ❯
Bath, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, bath col-narrow-left Client: Cloud Decisions Location: bath, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 col-wide Job Description: Job Title: To £85,000 + Benefits + Microsoft … as you go. The Role You'll own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise … engineering standards What's needed? Experience building and integrating complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR More ❯
Portsmouth, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, portsmouth, hampshire col-narrow-left Client: Cloud Decisions Location: portsmouth, hampshire, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 col-wide Job Description: Job Title: To £85,000 + Benefits … as you go. The Role You'll own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise … engineering standards What's needed? Experience building and integrating complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR More ❯
Hounslow, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, south west london col-narrow-left Client: Cloud Decisions Location: south west london, United Kingdom Job Category: Other - EU work permit required: Yes col-narrow-right Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 col-wide Job Description: Job Title: To … as you go. The Role You'll own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise … engineering standards What's needed? Experience building and integrating complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR More ❯
CIS doesn't just stop at security, as we actively encourage our staff to engage with other areas of the business and local communities. We are seeking a skilled SIEMEngineer with expertise in Elastic SIEM to join our cybersecurity team. The ideal candidate will be responsible for designing, implementing, and maintaining our customers Elastic SIEM infrastructure to ensure robust security monitoring and incident response capabilities. Embedded with an existing Customer SOC, you will provide Engineering support and expertise for the customers Elastic SIEM implementation, working alongside Capgemini SOC analysts and the customer SOC team. This role is required to be onsite 5 days per week in Warwick If you are successfully offered this … history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service) Your role Design and Implementation : Install and maintain the architecture for Elastic SIEM, ensuring optimal performance and scalability. Monitoring and Analysis : Create custom dashboards and visualisations using the Elastic Stack for real-time monitoring and analysis of security events. Data Integration : Integrate More ❯
Cheltenham, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
as you go. The Role You'll own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise … engineering standards What's needed? Experience building and integrating complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR More ❯
Aberdeen, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
as you go. The Role You'll own and optimise enterprise-wide log onboarding into Microsoft Sentinel – deploying standard and custom connectors, Function Apps, and parsers to build tailored SIEM solutions that drive real-world threat detection and response. Log ingestion at scale across numerous hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalise … engineering standards What's needed? Experience building and integrating complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
Social network you want to login/join with: Senior Microsoft Sentinel/SIEMEngineer, Glasgow Client: Cloud Decisions Location: Glasgow, United Kingdom Job Category: Other EU work permit required: Yes Job Views: 3 Posted: 31.05.2025 Expiry Date: 15.07.2025 Job Description: Job Title: Senior Microsoft Sentinel/SIEMEngineer Salary: Up to £85,000 + Benefits … enterprise-scale log ingestion and Sentinel integration engineering skills. The Role Own and optimize enterprise-wide log onboarding into Microsoft Sentinel Deploy connectors, Function Apps, and parsers for tailored SIEM solutions Manage log ingestion across hybrid and multi-cloud environments Enhance custom Function Apps and ingestion pipelines Parse, normalize, and optimize log telemetry Partner with IR teams on active … Microsoft teams on detection capabilities Contribute to knowledge base and engineering standards Requirements Experience with Microsoft Sentinel in enterprise environments Understanding of security telemetry across various layers Skills in SIEM content development, KQL, analytics rules, data connectors Scripting skills: Python, PowerShell, APIs, Function Apps Background in threat detection, incident response, or DFIR (a plus) Ability to work in fast More ❯
It's about bringing your skills, curiosity, creativity, and your true self to your work. Due to continued growth, DXC Technology has a great opportunity for an experienced Lead SIEMEngineer to join our Microsoft and Cloud Security Practice based in either our Erskine or Farnborough sites. Successful candidates will be required to be based in the UK … and hold or be eligible for SC/DV clearance. Job Essentials: SIEMEngineer skills, preferably ArcSight. Office-based role 5 days a week from either Erskine or Farnborough. Security clearance level of DV must be obtained and is an essential requirement for this role. Job Functions: Drive technical and architectural improvement of the ArcSight SIEM managed … management, troubleshooting, and tuning. Maintain documentation of the managed infrastructure. Engage with other DXC technical teams, providing technical assistance where appropriate. Act as a technical escalation point for ArcSight SIEM-specific incidents for both service and technical matters. Design, review, and implement ArcSight architecture and components. Demonstrate troubleshooting skills on ArcSight and its components. Mentoring experience, necessary for training More ❯