326 to 350 of 400 SIEM Jobs in England

VodafoneThree - SOC Analyst

Hiring Organisation
VodafoneThree
Location
Hampshire, United Kingdom
Employment Type
Full Time
customer environments and internal infrastructure by providing continuous 24/7 security monitoring and initial alert triage. You will review and analyse security alerts generated by SIEM platforms and associated security tools, assess their relevance and severity, and escalate suspected security incidents in accordance with documented procedures and service level … working in a Security Operations Centre or similar operational environment. Ability to interpret and analyse logs and alerts from IT, network, and security systems. Experience with SIEM technologies such as Huntsman, Securonix, or Splunk. Foundational knowledge of IT and network security concepts (e.g. Windows, firewalls, IPS, web proxy, email security ...

Cyber Security Analyst

Hiring Organisation
Boeing
Location
Bristol, Gloucestershire, United Kingdom
Salary
£ 70 K
identifying improvements in both tooling and processes to ensure services operated are aligned to industry best practice and Boeing enterprise best practicesConfigure and utilise SIEM, vulnerability management and other security-based tooling.Innovate in the areas of SIEM and SOC and develop best practice.Mentor and oversee development of junior analysts.Work … Qualifications (Required Skills/Experience): 3+ years’ experience in the following areas:Working in a Security Operations Centre (SOC).Working with SIEMs and evaluating SIEM alerts.Experienced in using log aggregation and correlation tools (Splunk preferred).Experienced in interpreting systems, application and network device logs.Experienced in packet capture and analysis.Experienced ...

Cyber Security Engineer

Hiring Organisation
HSB Technical Ltd
Location
Redhill, Surrey, South East, United Kingdom
Employment Type
Permanent
Cyber Security Engineer: Develop and maintain information security plans, policies and procedures Implement and manage security controls across internal and customer networks Monitor SIEM platforms, IDS/IPS systems and other security tools for threats and vulnerabilities Investigate and resolve cyber security incidents and security alerts Carry out vulnerability assessments … continual security improvement initiatives Some of the technologies and platforms you may be working with include: Cisco Firewalls Cisco Routers Cisco Switches Juniper Platforms SIEM Solutions IDS/IPS Vulnerability Management Tools Penetration Testing Tools Computer Forensic Tools ISO27001 Compliance ITIL Qualifications and requirements for the Cyber Security Engineer: Strong ...

Security Engineer (Ref 21232)

Hiring Organisation
Government Recruitment Service
Location
Sheffield, South Yorkshire, United Kingdom
Salary
£ 45 K
exciting challenge, something you are enthusiastic about, and want to join our team please read on and apply!Person SpecificationEssentialUnderstanding of security platform management (SIEM and SOAR).Understanding of enterprise-level monitoring and supporting large user bases.Knowledge of creating and managing security playbooks and of public sector security standards.Excellent communication … listed below, using a separate paragraph for each.- Proven understanding with Cortex XDR, Cortex Data Lake, and Cortex XSOAR.- Understanding with security platforms management (SIEM, SOAR).- Knowledge in creating/managing security playbooks and knowledge of public sector standards.A diverse sift panel will review the information in your ...

Security Engineer

Hiring Organisation
Inspire People
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
controls, user roles, permissions and privileged session monitoring. Monitor vulnerabilities, apply security patches and maintain platform security. Review audit logs and correlate alerts with SIEM data to investigate suspicious activity. Troubleshoot security issues involving firewalls, load balancers, identity systems and credential-management tools. Essential criteria Experience deploying and managing security … Desirable criteria Experience working within Defence, National Security or protectively marked environments Experience with Active Directory, Windows Services, Scheduled Tasks and IIS SIEM monitoring and security investigation experience Knowledge of RBAC, session monitoring and privileged session recording Experience with firewalls, load balancers and network security controls Knowledge of database backup ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks … junior members of the security team. Key skills and experience: Strong background in Security Operations, SOC or Incident Response. Hands-on experience with SIEM and EDR platforms , ideally including Microsoft security technologies. Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge ...

Senior Developer Experience Security Engineer

Hiring Organisation
Motorway
Location
London, United Kingdom
Salary
£ 80 K
logging, and monitoring are consistent, high-quality, and provided as a standard capability for all teams.Define and implement platform-wide security use cases (e.g. SIEM detections, alerts, and signals) that scale across teams without bespoke configurationWork as part of a virtual SOC with the Security Operations Team to support … best practice security for networks, systems, web applications, APIs and databases.Good understanding of secure software development practices.Familiarity with security tools and technologies, such as SIEM, IDS/IPS, WAF and vulnerability scanners.Knowledge of common adversarial Tactics, Techniques and Procedures (Mitre Att&ck TTPs).Knowledge of security standards and frameworks (e.g. ...

Security Operations Center Analyst

Hiring Organisation
Anson McCade
Location
City of London, London, United Kingdom
technical guidance to junior analysts. You'll be responsible for: Leading investigations into medium and high-severity security incidents Analysing and correlating data across SIEM, EDR and other security sources Leading containment, eradication and recovery activities Conducting root-cause analysis and producing incident reports Supporting detection rule and threshold tuning … looking for We're particularly interested in candidates with: 5–10 years' experience across SOC, Incident Response or Threat Analysis Strong experience with SIEM and EDR technologies Hands-on experience investigating and responding to security incidents Knowledge of threat detection, containment and remediation Experience acting as a technical escalation point ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
and benefits.Why This Role is ExcitingHigh autonomy: Lead projects from idea to deploymentInnovation-driven: Develop cutting-edge detections beyond standard SIEM rulesCollaborative: Work closely with internal teams and an outsourced SOC partnerMission-focused: Protect critical healthcare data that supports precision medicineKey ResponsibilitiesDesign and develop threat-led detections using threat intelligence … Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Employment Businesses Regulations 2003.Keywords: Cyber Threat Engineer, Detection & Response Engineer, SIEM Engineer, Security Detection Engineer,T hreat Hunting Engineer, Security Automation Engineer, SOC Engineer, Incident Response Engineer, Cloud Security Engineer, Network Security Engineer, Cybersecurity Analyst (Threat ...

Senior IT Infrastructure & Systems Manager

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 55 K
Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. … Plus SAAS solutionsSQL ServerSecuritySymantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/XDREndpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) NetworkingCisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & StorageDell PowerEdge Servers Dell PowerVault SAN Storage Technical CompetenciesData ...

IT Operations Engineer

Hiring Organisation
Oscar
Location
Doncaster, South Yorkshire, United Kingdom
Salary
£ 60 K
IT Operations Engineer - Microsoft Cloud & InfrastructureLeeds/Doncaster - 3 days on site 45,000 We are looking for an experienced Operations Engineer to join a growing IT Operations function, taking ownership of core infrastructure, cloud ...

IT Operations Engineer

Hiring Organisation
Oscar
Location
York, North Yorkshire, United Kingdom
Salary
£ 60 K
IT Operations Engineer - Microsoft Cloud & InfrastructureLeeds/Doncaster - 3 days on site 45,000 We are looking for an experienced Operations Engineer to join a growing IT Operations function, taking ownership of core infrastructure, cloud ...

Security Engineer - Detection Engineering - Welwyn Garden City, United Kingdom of Great Britain and Northern Ireland

Hiring Organisation
Tesco
Location
Welwyn Garden City, Hertfordshire, United Kingdom
Salary
£ 70 K
coding practices and test-driven development approaches within an engineering or security context. Practical exposure to security platforms (e.g., Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR)) and their role in detection engineering. Understanding of how custom detection rules, alerts, and telemetry are designed, tested, and implemented … coding practices and test-driven development approaches within an engineering or security context. Practical exposure to security platforms (e.g., Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR)) and their role in detection engineering. Understanding of how custom detection rules, alerts, and telemetry are designed, tested, and implemented ...

SIEM Engineer (Elastic)

Hiring Organisation
Searchability NS&D
Location
Hemel Hempstead, England, United Kingdom
SIEM Engineer (Elastic) – Hemel Hempstead, UK Up to £90,000 Depending on Experience Hybrid working, 3 days onsite Must be eligible for DV clearance ABOUT THE CLIENT: Our client is a well-established organisation delivering complex, secure technology solutions across enterprise environments. This is an opportunity to take technical ownership … secure on-premises estate. You will take technical ownership of Elasticsearch clusters, Logstash, Kibana, Beats, Elastic Agent and Fleet, while delivering solutions across SIEM, observability, threat detection and high-volume data ingestion. You will design highly available and resilient platforms, optimise cluster performance, implement security controls and automation, and provide ...

Cyber Security Specialist (SecOps / Liverpool)

Hiring Organisation
Michael Page International
Location
Liverpool, Merseyside, United Kingdom
Salary
£ 60 K
cyber attack techniques, threat actor methodologies, and appropriate mitigation strategies.Experience investigating security incidents and coordinating response activities.Knowledge of Security Information and Event Management (SIEM), Identity and Access Management (IAM), and Data Loss Prevention (DLP) technologies.Good understanding of modern security frameworks, detection engineering concepts, and operational security best practices.Experience securing cloud ...

Tech lead - SOC responder

Hiring Organisation
Colt Technology Services UK
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

Tech Lead - SOC Responder

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...

Cyber Threat Detection & Response Apprentice

Hiring Organisation
Specialist Network Operations
Location
HOLLIS HOUSE, MAESBURY ROAD, OSWESTRY, England, United Kingdom
Employment Type
Higher Apprenticeship
Salary
£20,000 a year
traffic and security alerts to identify potential threats Supporting investigations into security incidents, gathering evidence and documenting findings Using Security Information and Event Management (SIEM) tools to detect and analyse suspicious activities Collaborating with the cyber security team to respond to incidents and implement mitigation strategies Helping maintain and update ...

NMC Cyber Security Engineering Lead

Hiring Organisation
Police Digital Services
Location
Wigan, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
configuration of Sentinel and log sources. Co-ordination of the testing, implementation and configuration of new data sources. Contribute towards the management of SIEM content such as detections. Line Management responsibilities for NMC Cyber Security Engineers. Working with wider NMC teams, contributing to Continual Service Improvement and innovations. What … need to succeed in the role Essential Experience of supporting and developing SIEM platforms in the context of a Security Operations Centre across a multi-tenant environment. Practical experience in the creation, testing, implementation, and support of custom tooling to support Security Operations. Initiative and the ability to produce quality ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, United Kingdom
Employment Type
Permanent
Monitor security events, alerts, and incidents across enterprise networks and systems. Manage security cases and tickets through to resolution. Analyse logs and data from SIEM platforms, security monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow … and Linux environments. Excellent written and verbal communication skills. Desirable Industry certifications such as GCIH, GCIA, or equivalent cyber security qualifications. Experience working with SIEM platforms and security monitoring technologies. Knowledge of Oracle and virtualised environments. What's on Offer Opportunity to work within a highly skilled cyber security team. ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, United Kingdom
Salary
£ 70 K
premise environments.Key ResponsibilitiesMonitor security events, alerts, and incidents across enterprise networks and systems.Manage security cases and tickets through to resolution.Analyse logs and data from SIEM platforms, security monitoring tools, network infrastructure, and endpoint technologies.Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques.Follow established incident … securing and supporting Windows and Linux environments.Excellent written and verbal communication skills.DesirableIndustry certifications such as GCIH, GCIA, or equivalent cyber security qualifications.Experience working with SIEM platforms and security monitoring technologies.Knowledge of Oracle and virtualised environments.What's on OfferOpportunity to work within a highly skilled cyber security team.Exposure to complex security ...

Senior Security Operations Analyst

Hiring Organisation
We Are Fr Group
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£65,000
and incident response at real scale. Senior Security Operations Analyst Salary - £54,000 - £65,000 + bonus Location - Manchester or Leeds - Hybrid The opportunity SIEM - write and tune detection rules, investigate alerts end-to-end, and collaborate with Infrastructure, Networks, DevOps and an outsourced SOC. Threat intelligence & hunting - monitor intelligence … estate. Policy & control design - contribute to security policy, standards, and documentation, and design and test logical security controls. Essential skills and experience Hands-on SIEM experience - Chronicle, Splunk, or Sentinel Strong understanding of firewalls, IDS/IPS and Windows Security Event Logs Knowledge of cloud and traditional infrastructure security principles ...

2nd / 3rd Line Security Analyst

Hiring Organisation
XACT PLACEMENTS LIMITED
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£60,000
Investigate identity and cloud-based compromise (e.g. anomalous sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python … Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive alert triage Mentor junior analysts and help drive ...

Security Consultant - SDA Lead Eng

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
and physical layers) in collaboration with other design team members. Support the design of a range of security tools, such as: Splunk and Sentinel SIEM, Nessus Vulnerability management, Microsoft XDR and other as appropriate. Understand and leverage BAE Systems experience, IP and expertise, with support of product and subject matter … Policy and Processes, Technology and Physical Infrastructure layers. Knowledge and experience of design, build and deployment of SOC technology including at least two of SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence, to identify signs of an intrusion. Good understanding of industry best practice in Security Operations for Services, People, Policy ...

Security Operations Specialist

Hiring Organisation
Sanderson
Location
Greater Bristol Area, United Kingdom
incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop and optimise SIEM detections, alerting rules and response workflows. Improve the performance and effectiveness of security platforms rather than simply operating them. Produce clear incident reports and recommendations. … and non technical stakeholders to drive security improvements. Technology Environment Experience with the following is highly desirable: Microsoft Defender Microsoft Sentinel Microsoft Purview Proofpoint SIEM, EDR and related security technologies About You You'll have a strong background in Security Operations and Incident Response, with hands on experience working with ...