Stansted, Birchanger, Essex, United Kingdom Hybrid / WFH Options
Solus Accident Repair Centres
with internal teams and third-party suppliers to maximise resources Qualifications Desired qualifications and experience: Minimum 2 years' experience in incident detection, response, and forensics Strong understanding of Azure, Zero Trust Estates, DLP, IDS/IPS, Web-Proxy, and Security Audits Analytical mindset with excellent problem-solving skills Excellent communication and stakeholder engagement skills Self-motivated with a … passion for learning and innovation Sentinel/SIEM certifications Microsoft Security/Identity certifications ISC2 CC or SSCP DevOps/DevSecOps exposure or certifications Who are Solus? Solus, who are owned by Aviva, are one of the UK leaders in vehicle repairs, returning cars to the road in just 11 days on average and a 4.6/ More ❯
with frameworks including CIS Controls, NIST, ISO 27701, and GDPR Oversee incident response, threat detection, and access governance across systems such as iManage, Intapp, Aderant, Microsoft 365, and Azure Drive firm-wide security awareness and training initiatives Monitor regulatory changes and emerging threats, and advise on best practices Ideal Candidate Profile: Strong knowledge of ISO 27001 implementation and … certification Experience in a professional services or legal environment Familiarity with Microsoft 365 Defender, SentinelOne, Purview, and Azure security tools Skilled in managing access controls and security operations across enterprise platforms Excellent communication and stakeholder engagement skills Desirable Attributes: Certifications such as CISM, CISSP, or ISO 27001 Lead Implementer/Auditor Experience working with MDR/XDR partners More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Ryder Reid Legal
with frameworks including CIS Controls, NIST, ISO 27701, and GDPR Oversee incident response, threat detection, and access governance across systems such as iManage, Intapp, Aderant, Microsoft 365, and Azure Drive firm-wide security awareness and training initiatives Monitor regulatory changes and emerging threats, and advise on best practices Ideal Candidate Profile: Strong knowledge of ISO 27001 implementation and … certification Experience in a professional services or legal environment Familiarity with Microsoft 365 Defender, SentinelOne, Purview, and Azure security tools Skilled in managing access controls and security operations across enterprise platforms Excellent communication and stakeholder engagement skills Desirable Attributes: Certifications such as CISM, CISSP, or ISO 27001 Lead Implementer/Auditor Experience working with MDR/XDR partners More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Ryder Reid Legal Ltd
with frameworks including CIS Controls, NIST, ISO 27701, and GDPR Oversee incident response, threat detection, and access governance across systems such as iManage, Intapp, Aderant, Microsoft 365, and Azure Drive firm-wide security awareness and training initiatives Monitor regulatory changes and emerging threats, and advise on best practices Ideal Candidate Profile: Strong knowledge of ISO 27001 implementation and … certification Experience in a professional services or legal environment Familiarity with Microsoft 365 Defender, SentinelOne, Purview, and Azure security tools Skilled in managing access controls and security operations across enterprise platforms Excellent communication and stakeholder engagement skills Desirable Attributes: Certifications such as CISM, CISSP, or ISO 27001 Lead Implementer/Auditor Experience working with MDR/XDR partners More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
Ryder Reid Legal
with frameworks including CIS Controls, NIST, ISO 27701, and GDPR Oversee incident response, threat detection, and access governance across systems such as iManage, Intapp, Aderant, Microsoft 365, and Azure Drive firm-wide security awareness and training initiatives Monitor regulatory changes and emerging threats, and advise on best practices Ideal Candidate Profile: Strong knowledge of ISO 27001 implementation and … certification Experience in a professional services or legal environment Familiarity with Microsoft 365 Defender, SentinelOne, Purview, and Azure security tools Skilled in managing access controls and security operations across enterprise platforms Excellent communication and stakeholder engagement skills Desirable Attributes: Certifications such as CISM, CISSP, or ISO 27001 Lead Implementer/Auditor Experience working with MDR/XDR partners More ❯
slough, south east england, united kingdom Hybrid / WFH Options
Ryder Reid Legal
with frameworks including CIS Controls, NIST, ISO 27701, and GDPR Oversee incident response, threat detection, and access governance across systems such as iManage, Intapp, Aderant, Microsoft 365, and Azure Drive firm-wide security awareness and training initiatives Monitor regulatory changes and emerging threats, and advise on best practices Ideal Candidate Profile: Strong knowledge of ISO 27001 implementation and … certification Experience in a professional services or legal environment Familiarity with Microsoft 365 Defender, SentinelOne, Purview, and Azure security tools Skilled in managing access controls and security operations across enterprise platforms Excellent communication and stakeholder engagement skills Desirable Attributes: Certifications such as CISM, CISSP, or ISO 27001 Lead Implementer/Auditor Experience working with MDR/XDR partners More ❯
incident response lifecycle (preparation, identification, containment, eradication, recovery, lessons learned). Proven experience managing and responding to complex security incidents. Hands-on experience with SIEM platforms (e.g., Splunk, Sentinel, QRadar). Ability to query data, analyze logs, and understand how data sources feed into threat detection. Strong knowledge of EDR tools (e.g., CrowdStrike, SentinelOne, Carbon Black) and their … understanding of network protocols, firewalls, intrusion detection/prevention systems (IDS/IPS), and network traffic analysis. Familiarity with security principles and services in major cloud environments (AWS, Azure, GCP). Ability to consume and apply threat intelligence to proactively improve security controls and detection mechanisms. Experience with MacOS desired. Experience with web3 environments desired. Must be able More ❯
roles Solid understanding of SIEM, log analytics, data normalization, and detection lifecycle management (rule creation, tuning, suppression, enrichment) Hands-on experience with XSIAM or similar platforms (Splunk, QRadar, Sentinel, etc.) is a strong plus Strong technical writing and communication skills, with the ability to convey complex ideas clearly to both technical and non-technical audiences Skilled in scripting … etc.) for detection development or incident investigation tasks Experience managing multiple projects or programs in dynamic, fast-paced environments with cross-functional visibility Familiarity with cloud infrastructure (AWS, Azure, GCP), especially as it relates to telemetry ingestion, detection engineering, or automated response — a significant advantage Experience with CNAPP solutions (e.g., Prisma Cloud, Wiz, Orca) and integrating cloud posture More ❯
roles Solid understanding of SIEM, log analytics, data normalization, and detection lifecycle management (rule creation, tuning, suppression, enrichment) Hands-on experience with XSIAM or similar platforms (Splunk, QRadar, Sentinel, etc.) is a strong plus Strong technical writing and communication skills, with the ability to convey complex ideas clearly to both technical and non-technical audiences Skilled in scripting … etc.) for detection development or incident investigation tasks Experience managing multiple projects or programs in dynamic, fast-paced environments with cross-functional visibility Familiarity with cloud infrastructure (AWS, Azure, GCP), especially as it relates to telemetry ingestion, detection engineering, or automated response — a significant advantage Experience with CNAPP solutions (e.g., Prisma Cloud, Wiz, Orca) and integrating cloud posture More ❯
roles Solid understanding of SIEM, log analytics, data normalization, and detection lifecycle management (rule creation, tuning, suppression, enrichment) Hands-on experience with XSIAM or similar platforms (Splunk, QRadar, Sentinel, etc.) is a strong plus Strong technical writing and communication skills, with the ability to convey complex ideas clearly to both technical and non-technical audiences Skilled in scripting … etc.) for detection development or incident investigation tasks Experience managing multiple projects or programs in dynamic, fast-paced environments with cross-functional visibility Familiarity with cloud infrastructure (AWS, Azure, GCP), especially as it relates to telemetry ingestion, detection engineering, or automated response a significant advantage Experience with CNAPP solutions (e.g., Prisma Cloud, Wiz, Orca) and integrating cloud posture More ❯
growing digital transformation and cloud consultancy delivering secure, innovative Microsoft solutions across multiple industries. We're seeking a Microsoft Security Consultant with hands-on expertise across Microsoft 365, Azure, and Defender technologies, passionate about helping clients strengthen their security posture while embracing the latest in modern work and AI. This is a great opportunity for someone who thrives … on solving complex security challenges, designing enterprise-grade cloud solutions, and staying ahead of Microsoft's evolving technology landscape. Key Responsibilities: Design and deliver Microsoft 365 and Azure security solutions in line with best practices and industry standards. Implement and configure tools such as Microsoft Defender, Sentinel (SIEM/XDR), Entra, and Purview. Support internal and … ISO-aligned delivery processes. Experience: Minimum 3+ years' experience delivering Microsoft cloud and security solutions for clients across multiple sectors. 3 or more Microsoft certifications in relevant areas - Azure (AZ), Security (SC), Power Platform (PL), Modern Work (MS), or Copilot/AI. Strong consulting experience in the design and implementation of Microsoft Defender solutions and SIEM/XDR. More ❯
growing digital transformation and cloud consultancy delivering secure, innovative Microsoft solutions across multiple industries. We're seeking a Microsoft Security Consultant with hands-on expertise across Microsoft 365, Azure, and Defender technologies, passionate about helping clients strengthen their security posture while embracing the latest in modern work and AI. This is a great opportunity for someone who thrives … on solving complex security challenges, designing enterprise-grade cloud solutions, and staying ahead of Microsoft's evolving technology landscape. Key Responsibilities: Design and deliver Microsoft 365 and Azure security solutions in line with best practices and industry standards. Implement and configure tools such as Microsoft Defender, Sentinel (SIEM/XDR), Entra, and Purview. Support internal and … ISO-aligned delivery processes. Experience: Minimum 3+ years' experience delivering Microsoft cloud and security solutions for clients across multiple sectors. 3 or more Microsoft certifications in relevant areas - Azure (AZ), Security (SC), Power Platform (PL), Modern Work (MS), or Copilot/AI. Strong consulting experience in the design and implementation of Microsoft Defender solutions and SIEM/XDR. More ❯
cases across SIEM, EDR, and SOAR platforms. Analyze and investigate alerts across cloud and on-prem infrastructures to identify real threats and eliminate false positives. Strengthen visibility across Azure, AWS, and GCP environments, ensuring comprehensive monitoring and detection coverage. Drive threat hunting activities and develop hypotheses based on attacker TTPs and frameworks like MITRE ATT&CK. Collaborate with … team capability. What You’ll Bring Solid background in threat detection, SOC operations, or incident response. Deep understanding of SIEM, EDR, and cloud-native security tooling (e.g., MicrosoftSentinel, Defender, GuardDuty, Chronicle). Hands-on experience developing and tuning detection content for cloud and hybrid environments. Strong grasp of adversarial tactics and techniques and how they translate to More ❯
cases across SIEM, EDR, and SOAR platforms. Analyze and investigate alerts across cloud and on-prem infrastructures to identify real threats and eliminate false positives. Strengthen visibility across Azure, AWS, and GCP environments, ensuring comprehensive monitoring and detection coverage. Drive threat hunting activities and develop hypotheses based on attacker TTPs and frameworks like MITRE ATT&CK. Collaborate with … team capability. What You’ll Bring Solid background in threat detection, SOC operations, or incident response. Deep understanding of SIEM, EDR, and cloud-native security tooling (e.g., MicrosoftSentinel, Defender, GuardDuty, Chronicle). Hands-on experience developing and tuning detection content for cloud and hybrid environments. Strong grasp of adversarial tactics and techniques and how they translate to More ❯
cases across SIEM, EDR, and SOAR platforms. Analyze and investigate alerts across cloud and on-prem infrastructures to identify real threats and eliminate false positives. Strengthen visibility across Azure, AWS, and GCP environments, ensuring comprehensive monitoring and detection coverage. Drive threat hunting activities and develop hypotheses based on attacker TTPs and frameworks like MITRE ATT&CK. Collaborate with … team capability. What You’ll Bring Solid background in threat detection, SOC operations, or incident response. Deep understanding of SIEM, EDR, and cloud-native security tooling (e.g., MicrosoftSentinel, Defender, GuardDuty, Chronicle). Hands-on experience developing and tuning detection content for cloud and hybrid environments. Strong grasp of adversarial tactics and techniques and how they translate to More ❯
cases across SIEM, EDR, and SOAR platforms. Analyze and investigate alerts across cloud and on-prem infrastructures to identify real threats and eliminate false positives. Strengthen visibility across Azure, AWS, and GCP environments, ensuring comprehensive monitoring and detection coverage. Drive threat hunting activities and develop hypotheses based on attacker TTPs and frameworks like MITRE ATT&CK. Collaborate with … team capability. What You’ll Bring Solid background in threat detection, SOC operations, or incident response. Deep understanding of SIEM, EDR, and cloud-native security tooling (e.g., MicrosoftSentinel, Defender, GuardDuty, Chronicle). Hands-on experience developing and tuning detection content for cloud and hybrid environments. Strong grasp of adversarial tactics and techniques and how they translate to More ❯
london (city of london), south east england, united kingdom
Bestman Solutions
cases across SIEM, EDR, and SOAR platforms. Analyze and investigate alerts across cloud and on-prem infrastructures to identify real threats and eliminate false positives. Strengthen visibility across Azure, AWS, and GCP environments, ensuring comprehensive monitoring and detection coverage. Drive threat hunting activities and develop hypotheses based on attacker TTPs and frameworks like MITRE ATT&CK. Collaborate with … team capability. What You’ll Bring Solid background in threat detection, SOC operations, or incident response. Deep understanding of SIEM, EDR, and cloud-native security tooling (e.g., MicrosoftSentinel, Defender, GuardDuty, Chronicle). Hands-on experience developing and tuning detection content for cloud and hybrid environments. Strong grasp of adversarial tactics and techniques and how they translate to More ❯
be responsible for implementing and maintaining robust security measures to protect the organisation's technology infrastructure. Client Details The organisation is a public sector. Description Key Responsibilities MicrosoftSentinel Configure and maintain Sentinel analytics rules, workbooks, and connectors Develop and optimise dashboards and reports for threat visibility Manage Sentinel upgrades and ensure platform stability … Defender platforms Collaborate with IT teams to remediate vulnerabilities and improve endpoint security SOAR Automation Design, build, and deploy automated playbooks using Logic Apps Integrate SOAR workflows with Sentinel and Defender alerts Continuously improve automation to reduce response times and manual effort Strategic & Analytic Duties Analyse security datasets to identify trends and emerging threats Produce actionable plans and … reports for senior stakeholders Drive multiple concurrent initiatives, from tactical fixes to strategic improvements Profile A successful Infrastructure Security Engineer should have: Hands-on experience with MicrosoftSentinel including configuration, reporting, and upgrades Strong understanding of SOAR playbook development and automation Ability to manage multiple simultaneous initiatives effectively Proficiency in KQL, Azure Logic Apps, and MicrosoftMore ❯
own time and resources to ensure aims are met. Using information effectively - able to develop insights and conclusions following risk events Desirable Knowledge of cloud security particularly MicrosoftAzure (E5) including defender for endpoint, sentinel, and purview. A knowledge of ITIL including incident management and problem management including root cause analysis. A knowledge of the data More ❯
City of London, London, United Kingdom Hybrid / WFH Options
McCabe & Barton
own time and resources to ensure aims are met. Using information effectively - able to develop insights and conclusions following risk events Desirable Knowledge of cloud security particularly MicrosoftAzure (E5) including defender for endpoint, sentinel, and purview. A knowledge of ITIL including incident management and problem management including root cause analysis. A knowledge of the data More ❯
london, south east england, united kingdom Hybrid / WFH Options
McCabe & Barton
own time and resources to ensure aims are met. Using information effectively - able to develop insights and conclusions following risk events Desirable Knowledge of cloud security particularly MicrosoftAzure (E5) including defender for endpoint, sentinel, and purview. A knowledge of ITIL including incident management and problem management including root cause analysis. A knowledge of the data More ❯
london (city of london), south east england, united kingdom Hybrid / WFH Options
McCabe & Barton
own time and resources to ensure aims are met. Using information effectively - able to develop insights and conclusions following risk events Desirable Knowledge of cloud security particularly MicrosoftAzure (E5) including defender for endpoint, sentinel, and purview. A knowledge of ITIL including incident management and problem management including root cause analysis. A knowledge of the data More ❯
slough, south east england, united kingdom Hybrid / WFH Options
McCabe & Barton
own time and resources to ensure aims are met. Using information effectively - able to develop insights and conclusions following risk events Desirable Knowledge of cloud security particularly MicrosoftAzure (E5) including defender for endpoint, sentinel, and purview. A knowledge of ITIL including incident management and problem management including root cause analysis. A knowledge of the data More ❯
Leeds, West Yorkshire, England, United Kingdom Hybrid / WFH Options
Context Recruitment Limited
Security Solution Architect Location: Remote Salary: Paying up to 80k basic + commission (120-130k OTE) A top tier Azure Expert MSP is seeking a Security-Focused Solution Architect to join their high-performing Presales team. This is a strategic opportunity to shape enterprise security solutions using the Microsoft Security Stack, supporting clients across sectors in their … best practices in identity, access, threat protection, and compliance within the Microsoft ecosystem. Key Responsibilities Design and present secure cloud solutions leveraging the Microsoft Security Stack, including Defender, Sentinel, Entra ID, Purview, and Intune. Collaborate with sales and technical teams to translate business needs into scalable, secure architectures. Lead client engagements, workshops, and technical assessments to shape solution … responses, and technical documentation with clarity and precision. Candidate Profile Proven experience in cloud security architecture, ideally within a Microsoft-focused environment. Deep understanding of Microsoft 365 and Azure security capabilities. Strong communication and stakeholder engagement skills, particularly in presales or consultancy settings. Relevant certifications (e.g., SC-100, AZ-500, MS-500) are highly desirable. Ability to work More ❯
Reading, Berkshire, England, United Kingdom Hybrid / WFH Options
Proactive Appointments
and processes Experience of security products, e.g., firewalls, web filtering, anti-virus etc. Some knowledge of specialized security tools would be highly desirable (e.g. Palo Alto, Tenable, Defender, Sentinel tools). would be very beneficial A security professional qualification such as CISSP, CISM, CCSP, CISA, ISO27001 Lead Implementor/Auditor, CEH or equivalent Cloud Computing experience from multiple … vendors (O365, Azure, AWS, Google, etc.) PCI-DSS GRC Cyber Security Analyst Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal More ❯