251 to 275 of 755 SIEM Jobs in England

SOC Architect

Hiring Organisation
Anson Mccade
Location
Camberley, Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£710 per day
incremental, waterfall) with senior stakeholders and government systems. Technical & Architectural Competencies SOC Technologies: Design, build, and deployment experience using at least two core technologies: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Architectural Frameworks: Familiarity with architectural frameworks (e.g., TOGAF, Zachmann) and system modeling. Environments: Proficiency in both On-Premises ...

SOC Architect - SC Cleared

Hiring Organisation
Stott & May Professional Search Limited
Location
Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£700 - £710 per day
skills & experience Proven experience in SOC Architecture within a senior role. Experience designing, building, and deploying SOC technology, including at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong understanding of Security Operations best practice, secure architecture principles, and risk assessment. Experience with on-premises and cloud ...

SOC Architect - SC Cleared

Hiring Organisation
Stott & May Professional Search Limited
Location
London, UK
skills & experience Proven experience in SOC Architecture within a senior role. Experience designing, building, and deploying SOC technology, including at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong understanding of Security Operations best practice, secure architecture principles, and risk assessment. Experience with on-premises and cloud ...

Operational Technology Engineer (Infrastructure)

Location
Leeds, England, United Kingdom
Develop and maintain our Operational Technology infrastructure including VMWare vSphere, Microsoft and Unix based platforms. Implement and maintain security tooling such as firewalls, AV, SIEM, and vulnerability scanning. Support the OT Incident and Change process. Support system testing for new releases and assist projects with testing standards. Represent ...

Senior SOC Analyst — Threat Detection & Incident Response

Location
City Of London, England, United Kingdom
detect, assess, and respond to threats, coordinating with cross-functional teams to improve security controls and awareness. The role requires hands-on experience with SIEM, IDS, and EDR, plus problem-solving skills to drive rapid uplifts in security posture. #J-18808-Ljbffr ...

Lead DevOps Engineer

Location
Greater London, England, United Kingdom
security, having worked within a compliant environment, and comfortable in security audits and risk conversations.* Comfortable with security tooling such as CrowdStrike and Rapid7, SIEM/SOC.* Observability ownership with Datadog (or equivalent), having defined SLOs, built the dashboards and set the alerting culture.* Experience leading or mentoring a DevOps ...

SOC Shift Lead

Location
Greater London, England, United Kingdom
roles. Certifications (preferred): GCIA, GCIH, CompTIA CySA+, Microsoft SC‐200, or Splunk Certified Power User. Essential Skills Strong analytical mindset, in-depth knowledge of SIEM/EDR tools, malware behaviour, and incident handling methodologies. #J-18808-Ljbffr ...

SOAR Playbook Engineer

Location
Manchester, England, United Kingdom
engineering experience. Advanced Python development skills including REST APIs, JSON processing, testing and debugging. Experience developing and maintaining production Splunk SOAR playbooks. Experience with SIEM tools such as Splunk Enterprise Security and notable event workflows. Experience using Git and software development best practices. Strong understanding of SOC operations and incident ...

Director, Cyber Defense

Hiring Organisation
Kyndryl
Location
London, UK
Employment Type
Full-time
detection-as-code discipline across the detection lifecycle: version-controlled content, release rigor, automated testing, and telemetry quality standards, executed jointly with the SIEM, SOAR, & Agent Development team that owns the underlying pipeline and platform. Drive operational measurement toward compressing the defender's detect-decide-act cycle against AI-accelerated ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
high-pressure, time-sensitive incident environments Willingness to work some weekends and holidays as part of a rotation Desired: Hands-on experience with EDR, SIEM, and forensic collection tools Familiarity with OSQuery, SQL, or KQL Knowledge of MITRE ATT&CK and incident response frameworks Industry certifications such as GCIH, GCED ...

Cybersecurity Analyst Devi Technologies

Location
Birmingham, England, United Kingdom
systems. ✔️ Manage and configure firewalls, IDS/IPS, and endpoint security. ✔️ Investigate security alerts and coordinate incident responses. ✔️ Maintain and analyze logs using SIEM tools. ✔️ Conduct digital forensics and root‐cause analysis of incidents. ✔️ Implement data encryption, MFA, and secure access controls. ✔️ Develop, update, and enforce cybersecurity policies. ✔️ Collaborate with ...

Technical Account Manager- UK

Location
Greater London, England, United Kingdom
expensive indexing or hot storage. We specialize in comprehensive monitoring of logs, metrics, trace and security events with features such as APM, RUM, SIEM, Kubernetes monitoring and more, all enhancing operational efficiency and reducing observability spend by up to 70%.****The Role**As a Technical Account Manager ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
hunting, or advanced SOC rolesDeep understanding of modern attacker tradecraft and intrusion techniques across the attack lifecycleHands-on experience buidling detection logic in modern SIEM platforms (e.g Sentinel)Proficienty with scripting and programmaining (e.g. Python, KQL) to build detection pipelines and automationWillingness to challenge bad detections, weak assumptions, and vanity ...

Manager - Cyber Security Specialist

Location
West of England, England, United Kingdom
Office 365) and security monitoring. Implement identity and access management (IAM), Privileged Identity Management (PIM) encryption, and network security controls. Design and run SIEM/SOAR use-cases in Microsoft Sentinel (data connectors, analytics rules, workbooks, automation playbooks) to support SOC operations, threat detection, and incident response. Support DevSecOps practices … Squarcle policies and processes. KNOWLEDGE, SKILLS & EXPERIENCE ESSENTIAL Experience in cyber security roles across enterprise or complex environments, including SOC delivery and/or SIEM operations. Strong understanding of: Network security, identity management, and endpoint protection Cloud security (AWS, Azure, or similar) Security frameworks (ISO 27001, NIST, CIS) Proven experience ...

Cyber Security Engineer

Hiring Organisation
Anson McCade
Location
Leeds, West Yorkshire, United Kingdom
Salary
£ 60 K
infrastructure, applications and data.Work collaboratively with engineering and security teams to embed security best practices throughout technology environments.Develop automation to improve security operations, including SIEM log ingestion, routing and security tooling.Support firewall and network security management across cloud, hybrid and on-premises environments.Develop, maintain and enhance security policies, standards and … with CI/CD pipelines, virtualisation and Infrastructure as Code (IaC).Strong Linux or WSL experience, with software development or scripting capability.Practical experience with SIEM and log management platforms, including technologies such as:SplunkMicrosoft SentinelCriblELKExperience with AWS, Microsoft Azure and/or Google Cloud Platform (GCP).Scripting or programming skills ...

Cyber Security Engineer

Hiring Organisation
Anson McCade
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 60 K
infrastructure, applications and data.Work collaboratively with engineering and security teams to embed security best practices throughout technology environments.Develop automation to improve security operations, including SIEM log ingestion, routing and security tooling.Support firewall and network security management across cloud, hybrid and on-premises environments.Develop, maintain and enhance security policies, standards and … with CI/CD pipelines, virtualisation and Infrastructure as Code (IaC).Strong Linux or WSL experience, with software development or scripting capability.Practical experience with SIEM and log management platforms, including technologies such as:SplunkMicrosoft SentinelCriblELKExperience with AWS, Microsoft Azure and/or Google Cloud Platform (GCP).Scripting or programming skills ...

IT Security Operations Engineer

Hiring Organisation
EMBL-EBI
Location
Saffron Walden, Essex, South East, United Kingdom
Employment Type
Contract
Contract Rate
£70,000
Infrastructure Security role. Strong understanding of vulnerability management processes and remediation workflows. Experience investigating and responding to security incidents. Familiarity with security monitoring technologies, SIEM platforms and endpoint security solutions. Knowledge of operating system security across Mac, Windows and Linux environments. Experience with identity and access management concepts. Understanding … Experience securing public cloud platforms. Knowledge of Microsoft 365 security technologies. Experience with vulnerability management platforms such as Tenable, Qualys or Rapid7. Familiarity with SIEM and security automation platforms such as Microsoft Sentinel, Splunk or Elastic. Experience implementing endpoint detection and response (EDR/XDR) technologies. Understanding of Identity Governance ...

IT Security Operations Engineer

Location
Hinxton, England, United Kingdom
Infrastructure Security role. Strong understanding of vulnerability management processes and remediation workflows. Experience investigating and responding to security incidents. Familiarity with security monitoring technologies, SIEM platforms and endpoint security solutions. Knowledge of operating system security across Mac, Windows and Linux environments. Experience with identity and access management concepts. Understanding … Experience securing public cloud platforms. Knowledge of Microsoft 365 security technologies. Experience with vulnerability management platforms such as Tenable, Qualys or Rapid7. Familiarity with SIEM and security automation platforms such as Microsoft Sentinel, Splunk or Elastic. Experience implementing endpoint detection and response (EDR/XDR) technologies. Understanding of Identity Governance ...

Senior Cyber Analyst

Location
Greater London, England, United Kingdom
provide recommendations to reduce risk and improve resilience. Security Platforms & Service Improvement Own the technical effectiveness and continual improvement of Microsoft Sentinel, Microsoft Defender, SIEM, SOAR, EDR, and XDR capabilities. Develop and maintain detection rules, use cases, automation, and response playbooks to improve operational efficiency. Work with the Technical Architect … Microsoft security technologies including Sentinel, Defender XDR, Defender for Endpoint, Defender for Cloud, Microsoft 365 Security, and Entra ID. Experience designing, tuning, and optimising SIEM, SOAR, EDR, and XDR solutions. Strong understanding of threat hunting, attack techniques, threat intelligence, and vulnerability management. Ability to translate technical findings and cyber risk ...

Lead Engineer

Location
Greater London, England, United Kingdom
management/recording, credential rotation, least privilege, EPM/PRA) across on-prem and cloud workloads.* Lead complex integrations with AD/EntraID, IdPs, SIEM/SOAR, CSPM, ITSM, DevOps tooling (CI/CD), and secrets management.* Be responsible for the operational model: backup/recovery, DR, platform upgrades, policy … identity protocols (SAML/OIDC/OAuth).Automation proficiency (PowerShell, Python, REST APIs) and Infrastructure-as-Code (Terraform/CloudFormation) for repeatable deployments.Experience with SIEM (e.g., Splunk, Sentinel, QRadar) and SOAR integrations for session telemetry, alerts, and response.Proven leadership in defining standards, runbooks, and governance; excellent customer engagement and interpersonal ...

Incident Response Analyst

Hiring Organisation
Harvey Nash
Location
London, United Kingdom
Employment Type
Contract
managing security incidents through their full lifecycle while collaborating with technical and business stakeholders. Key Responsibilities Monitor and investigate security alerts generated by SIEM, EDR/XDR, identity, email, cloud and network security tools. Lead and support cyber security incident investigations, including phishing, malware, account compromise, unauthorised access and data … trend analysis and security governance reporting. Essential Experience Experience working within Incident Response, Cyber Security Operations or SOC environments. Strong hands-on experience with SIEM and EDR/XDR technologies. Proven ability to investigate and respond to cyber security incidents. Knowledge of Windows and Linux security investigations, authentication events, security ...

Head of Cyber Security and Assurance

Location
West Midlands, England, United Kingdom
Operations: Act as the technical lead for major cyber security incidents and critical vulnerabilities impacting West Midlands Police. Establish operational frameworks, playbooks, security monitoring (SIEM/XDR), and simulated wargaming exercises. Governance, Policy & Compliance: Own and update Information Assurance policies aligned with national frameworks (NCSC, NIST CSF, ISO 27001). ...

Security Architect - DV Cleared Security Architect - DV Cleared

Hiring Organisation
Sanderson Recruitment
Location
Aldershot, Hampshire, UK
Employment Type
Full-time
hybrid and multi-cloud environmentsArchitect application security, API security and secure SDLC integrationDesign security operations centre (SOC) capabilities and security information and event management (SIEM)Lead security technology evaluation and implementation programmesTechnical Leadership & GovernanceLead security technical teams and provide architectural mentoringEstablish security design standards, architecture patterns and operational governanceDrive technical … application securityStrong understanding of threat models, attack vectors and defence-in-depth strategiesProficiency in cloud security (AWS, Azure security, or equivalent)Knowledge of security tools (SIEM, DLP, EDR, WAF, firewalls, etc.)Understanding of cryptography, encryption and security protocolsFamiliarity with MOD security requirements, Classification Guides and defence standardsKnowledge of compliance frameworks ...

SOC Analyst - Security Operations & Cloud Focus (Hybrid)

Location
Greater London, England, United Kingdom
and Engineering to resolve incidents across Security Operations, incident response, vulnerability management and cloud security, with opportunities to develop expertise across platforms like SIEM, EDR/XDR and related tooling. #J-18808-Ljbffr ...

Incident Response Engineer, UK Security Operations, Hampshire

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
center dashboards for anomalous activity. Demonstrate subject matter expert across typical security disciplines, vulnerability, Endpoint Detection and Response(EDR), Security Information and Event Managemen (SIEM) etc. Minimum qualifications: Bachelor's degree or equivalent practical experienceCompleted relevant industry course/certification offerings such as CEH, GIAC or CompTIA Sec+.5 years ...