101 to 125 of 163 Azure Sentinel Jobs in England

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, UK
Employment Type
Full-time
perfect opportunity for you. Required Skills and ExperienceStrong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps, Cortex … sources map to the attack lifecycleExperience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearlyTechnical CompetenciesSIEM ...

Senior SOC Analyst (Outside IR35)

Location
West Midlands, England, United Kingdom
within a SOC environment with experience mentoring more junior staff. You will have the following experience: Industry standard Security qualifications (SANS GCIH, CISSP, Azure, Splunk, etc) or equivalent. Strong experience with SIEM technologies within a SOC (Splunk and MS Sentinel experience is highly desirable) Hands ...

Cyber Security Engineer (Threat Detection & Automation)

Hiring Organisation
Additional Resources
Location
London, UK
Employment Type
Full-time
Previously worked as a Threat Detection Engineer or in a similar role. Must have strong expertise in KQL.Hands-on experience with Microsoft Sentinel and Defender (Endpoint, Office 365).Familiarity with Microsoft Entra ID, including Identity Governance. Experience with Microsoft Purview, particularly DLP and data protection tools. Exposure … cloud-native logging in Azure and Kubernetes environments. Understanding of "detection as code" or "everything as code" approaches, including CI/CD pipelines. Experience working with or alongside MSP SOC teams. Awareness of Agile methodologies and ways of working. Knowledge of attacker TTPs, threat modelling, and cyber security ...

Senior Cloud Security Architect

Location
Greater London, England, United Kingdom
centric Managed Security Services Provider (MSSP), you will lead the design, implementation, and optimisation of cloud, data, and AI security solutions across Microsoft Azure, Microsoft 365, and the wider Microsoft Security portfolio. You will help customers strengthen their security posture through the adoption of modern security architectures, Zero … align security strategy with business goals, and accelerate their Cloud and Data security efforts across the board. Advise clients on securing M365, Microsoft Azure Cloud, cyber security and UC platforms. This includes mapping requirements to best-in-class implementations, selecting the most appropriate solutions, and evaluating non-functional ...

IAM Consultant/Developer (Microsoft Entra ID) - UK, fully remote

Location
Greater London, England, United Kingdom
clean handover once migration is complete. What We’re Looking For Essential: Proven experience delivering a migration onto Microsoft Entra ID (formerly Azure AD) — from on‐prem AD DS or from a third‐party IdP (Okta, Ping, ForgeRock, etc.). Demonstrable Experience owning migrations of large user bases … Graph PowerShell SDK. Comfortable working independently and communicating migration risk/status to non‐technical stakeholders. Desirable: KQL for log analysis in Microsoft Sentinel or Azure Monitor. Experience with Entra ID B2B/B2C. Background with an alternative IAM platform (ForgeRock, Ping, Okta) — genuinely useful ...

Head of IT Infrastructure and Security

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft … Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Technology: Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 ...

SOC Analyst (MS Sentinel & Defender, SC Cleared)

Location
Harlow, England, United Kingdom
Analyst (MS Sentinel & Defender, SC Cleared) | Contract Length: 3 month initial contract Location: Harlow Hybrid initially (1 day per week onsite), potential for remote after first week Inside IR35 Clearance Required: SC clearance - candidates must have valid clearance We're looking for an experienced SOC Analyst Consultant … security team within a large enterprise environment. Key Requirements: Demonstrable experience as a SOC Analyst Strong hands-on experience with SIEM, including Microsoft Sentinel Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable ...

Contract Senior Security Engineer: Azure & SOC

Location
Greater London, England, United Kingdom
senior security engineer to bridge cloud security, detection tooling, and incident response. You will own meaningful parts of the security stack, contribute to Azure hardening, and coordinate pen-test cycles. The role is a contract position with day-one impact and independent work expectations. You’ll bring hands … SIEM experience (Microsoft Sentinel preferred), Azure security knowledge, Terraform/Bicep for security tooling, and a proactive approach #J-18808-Ljbffr ...

2nd/3rd Line Security Analyst - Reading

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum
processes - enrichment, ticketing, containment - using Python, Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive … equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands-on SOAR platform configuration Working knowledge of several of: Microsoft Sentinel, Defender XDR, CrowdStrike, Microsoft Entra ID/Azure AD, Microsoft 365, AWS security tooling Experience investigating identity and cloud-based compromise, including ...

Security Architect - Microsoft Security

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
endpoint-focused security architecture for user-facing environments Data protection and compliance capabilities through Microsoft Purview Modern SOC enablement leveraging Defender and Sentinel telemetry alongside broader tooling The secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controls What … including Conditional Access, MFA and Privileged Identity Management (PIM) Support the modernisation of our clients SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sources Conduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including ...

Security Architect - Microsoft Security Platform

Location
Greater London, England, United Kingdom
endpoint-focused security architecture for user-facing environments Data protection and compliance capabilities through Microsoft Purview Modern SOC enablement leveraging Defender and Sentinel telemetry alongside broader tooling The secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controls What … including Conditional Access, MFA and Privileged Identity Management (PIM) Support the modernisation of Colt’s SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sources Conduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including ...

Senior SOC Analyst - Leeds

Location
Leeds, England, United Kingdom
dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation. The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected. The customer is committed to development of this improved … groups or targeted ransomware attacks). Understand TCP/IP component layers to identify normal and abnormal traffic Understanding of AWS &/or Azure cloud services Experience of Splunk (with ES) &/or Sentinel, content development experience desirable Non-technical Client side consulting, including stakeholder engagement ...

Senior SOC Analyst - Manchester

Location
Manchester, England, United Kingdom
dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation. The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected. The customer is committed to development of this improved … groups or targeted ransomware attacks). Understand TCP/IP component layers to identify normal and abnormal traffic Understanding of AWS &/or Azure cloud services Experience of Splunk (with ES) &/or Sentinel, content development experience desirable Non-technical Client side consulting, including stakeholder engagement ...

Senior Security Engineering Consultant

Hiring Organisation
Matchtech
Location
Basingstoke, Hampshire, UK
Employment Type
Full-time
provide recommendations to strengthen detection outcomesJob Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferredExperience writing detection logic using KQL or similar query languagesProven experience designing and implementing SOAR automations and playbooks such as Logic Apps, Cortex XSOAR … sources map to the attack lifecycleExperience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or CortexUnderstanding of cloud environments, particularly Azure, and associated security telemetryExperience working in customer-facing or consultancy rolesStrong communication skills, with the ability to explain technical concepts clearlyTechnical Competencies: SIEM ...

Security Monitoring & Detection Engineering Lead

Location
Manchester, England, United Kingdom
engineering, technical investigation and incident response. This is a hands‐on technical role responsible for the architecture, engineering and operational performance of Microsoft Sentinel and the wider security monitoring estate. The role would particularly suit an experienced detection engineering, security operations, red‐team, purple‐team or offensive‐security … aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding of security telemetry across on-premises, Microsoft Azure, AWS and third-party services, ensuring log sources address genuine visibility gaps and provide reliable value for detection and investigation. Own the detection engineering lifecycle ...

Security Monitoring & Detection Engineering Lead

Location
Greater London, England, United Kingdom
engineering, technical investigation and incident response. This is a hands‐on technical role responsible for the architecture, engineering and operational performance of Microsoft Sentinel and the wider security monitoring estate. The role would particularly suit an experienced detection engineering, security operations, red‐team, purple‐team or offensive‐security … aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding of security telemetry across on-premises, Microsoft Azure, AWS and third-party services, ensuring log sources address genuine visibility gaps and provide reliable value for detection and investigation. Own the detection engineering lifecycle ...

AMBG - Cloud Security & Exposure Management Architect

Hiring Organisation
Avanade
Location
London, UK
Employment Type
Full-time
control improvements, and reporting outputs against agreed engagement milestones. Contribute to solution architecture and pre-sales deal shaping for cloud security, Microsoft Defender, Sentinel, Entra, Defender for Cloud, and exposure management opportunities. Build trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements. … Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack paths, cloud misconfigurations, identity risks, vulnerabilities, and how to prioritise remediation based on exploitability and business impact. ...

Security Engineer

Location
Greater London, England, United Kingdom
appliance and MCP gateway, and record every tool call an agent attempts. That signal needs to land natively in Splunk, Microsoft Sentinel, CrowdStrike, XSIAM, Chronicle and Elastic, and drive response through Torq, Tines, ServiceNow SecOps and Logic Apps. This is greenfield, and it is not an architecture-only … Build a cursor-paginated pull and export API to carry bulk SIEM and XDR telemetry Build native connectors for destinations such as Microsoft Sentinel, Splunk and XSIAM Build self-service API key and webhook management in the portal, including scoping, rotation, revocation and audit Extend our tenant-scoped ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
security operations roles. Hands-on SIEM engineering and detection tuning experience. Proven ownership of complex incident response and investigations. Cloud security experience across Azure and AWS. Experience automating SOC workflows and response processes. Threat hunting experience beyond basic log review. Comfortable engaging directly with technical stakeholders. Able … prioritise and operate effectively under pressure. Useful but not essential Microsoft Sentinel experience. Container or Kubernetes environments. CI/CD security tooling exposure. Red or purple team experience. Why this opportunity Senior ownership and autonomy. Modern cloud-first environment. Strong investment in tooling and automation. Opportunity to genuinely ...

Senior 3rd Line Infrastructure Engineer

Hiring Organisation
RECRUIT123 LIMITED
Location
Walsall, West Midlands, United Kingdom
Employment Type
Permanent
Salary
£40,000
client environment In-depth knowledge of Windows Server and Active Directory Strong Microsoft 365 administration and troubleshooting experience Experience with Microsoft Intune and Azure cloud infrastructure Strong networking knowledge including DNS, DHCP, VPNs and firewalls Excellent troubleshooting and problem-solving skills A structured approach to technical documentation Excellent … Scoping, planning and delivering infrastructure projects Managing on-premise to cloud migrations and hardware refreshes Standardising and securing client environments using Microsoft Intune, Azure/Entra ID and Microsoft 365 Supporting and maintaining physical servers, Hyper-V/VMware environments and network infrastructure Delivering advanced troubleshooting and resolving ...

Security Engineering Consultant (Detection Engineering / Microsoft Sentinel)

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £85,000 per annum
Senior Security Engineering Consultant (Detection Engineering/Microsoft Sentinel) Remote 80% £80,000 + performance bonus About the role Our client, a well-established cybersecurity services provider, is growing its UK Professional Services team and needs a Senior Security Engineering Consultant to lead detection engineering and automation … Produce clear deliverables such as detection strategies, use case catalogues and coverage assessments What you'll bring Strong SIEM engineering experience, ideally Microsoft Sentinel Proven KQL detection writing SOAR experience (Logic Apps, Cortex XSOAR or similar) Python or PowerShell scripting, including API integration XDR/EDR experience (Defender ...

MICROSOFT PURVIEW SECURITY CONSULTANT

Hiring Organisation
Adecco
Location
City of London, Greater London, United Kingdom
Employment Type
Permanent
Salary
£45000 - £52000/annum Benefits
skills. * Ability to gather and translate business requirements into technical solutions. * Willingness to travel to client sites as required. * Microsoft Security, Compliance or Azure certifications. * Experience with Microsoft Defender technologies. * Understanding of GDPR, ISO 27001 and other compliance frameworks. * Knowledge of Zero Trust security principles. * Experience delivering Microsoft … Retention Policies, eDiscovery, eDiscovery Premium, Insider Risk Management, Communication Compliance, Microsoft Defender, Defender XDR, Defender for Office 365, Defender for Cloud Apps, Microsoft Sentinel, Microsoft Entra ID, Azure Active Directory, Conditional Access, Identity and Access Management (IAM), Zero Trust, GDPR, ISO 27001, Cyber Essentials, Risk Management ...

CyberArk SME

Location
Wokingham, England, United Kingdom
offboarding Password vaulting, rotation, reconciliation Session monitoring, recording, and auditing Manage privileged access for: Windows, Linux/Unix, Network devices Databases Cloud platforms (Azure) Service, application, and DevOps accounts Integration & Automation Integrate CyberArk with: Active Directory/LDAP SIEM tools (Sentinel) Ticketing tools (ServiceNow) Identity platforms … Azure AD, SSO solutions) Develop and maintain automation scripts using: REST APIs PowerShell/Python Support PAM integrations for CI/CD and DevOps pipelines (Secrets Management). Security, Risk & Compliance Act as SME for PAM best practices, Zero Trust principles, and least privilege. Support internal and external ...

Principal Engineer (Microsoft)

Hiring Organisation
Claranet Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
endpoint management. This includes Windows Active Directory and integration with Microsoft Entra ID, unified security operations with Microsoft Defender XDR and Microsoft Sentinel, and modern endpoint and device management with Microsoft Intune and Microsoft Configuration Manager (SCCM/ConfigMgr), providing practical guidance, design assurance and implementation support where … Travel: Ability to travel to different sites and locations on a weekly basis Critical Competencies – Technical Competencies (Essential) Strong architectural capability across Microsoft Azure and core Microsoft cloud services Proficiency in security technologies, frameworks, and secure architecture patterns (including Microsoft Defender XDR and Microsoft Sentinel) Strong ...