376 to 400 of 641 SIEM Jobs in England

Threat Detection & Response Analyst

Location
Birmingham, England, United Kingdom
Nettitude Group in Birmingham is seeking a vigilant SOC Monitoring Analyst to join our 24x7 team, using SIEM, EDR, and threat intelligence to triage events and advise on risk. You will produce detailed incident reports, tune alerts, and collaborate on advancing monitoring capabilities, including malware analysis and cross‐team projects. ...

Cyber Security Engineer - AVP

Location
Greater London, England, United Kingdom
maintain threat models, assess security controls, and build tools for proactive detection, configuration drift monitoring, and automated remediation. You will be responsible for managing SIEM systems, developing use cases, and refining security monitoring practices. Ensuring the integrity and performance of security infrastructure and collaborating closely with incident response teams … Develop and maintain threat models for information assets and services. Build and optimise security tools for detection, remediation, and orchestration. Design, implement, and maintain SIEM workspaces and develop custom queries for threat hunting and incident investigation. Develop, test, and deploy advanced threat detection use cases based on vulnerability insights. Analyse ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
organisation's cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security, while also providing security advice to technology projects and supporting security-by-design principles. Key Responsibilities Design, implement and … Defender, Purview, Exchange Online, SharePoint and Teams. Support identity and access management, vulnerability management and security monitoring. Investigate and respond to security incidents, including SIEM/SOAR investigations and advanced threat hunting. Support security reviews, audits and annual penetration testing. Identify vulnerabilities, risks and opportunities to improve the organisation ...

IT Specialist Senior IT Security Specialist - Ashford or Cairns

Location
Ashford, England, United Kingdom
Security Operations Specialist you will play a critical role in protecting our digital infrastructure. You’ll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetration testing to stay ahead of cyber threats. You’ll enhance identity and … infrastructure security Strong experience with Fortinet security products and solutions Advanced knowledge of Microsoft Active Directory and Entra ID administration Demonstrated experience with SIEM implementation and management Strong background in network security and infrastructure protection Experience with IDS/IPS systems and security monitoring tools Proven incident response and threat ...

Cyber Security Engineer

Hiring Organisation
Infosec
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£85 - £93 per hour
hands-on engineering role focused on the implementation, maintenance, optimisation and integration of security technologies across complex enterprise environments. Key Responsibilities Administer and maintain SIEM and security monitoring platforms Configure and optimise log ingestion, correlation rules and alerting Develop and maintain automation using PowerShell, Python and Regex Integrate security technologies … analysts to improve detection capabilities and reduce false positives Support change management, CAB activities and technical implementation planning Essential Technical Skills Security Platforms SIEM administration and support Security tooling implementation and maintenance Log onboarding and data source integration Detection engineering and alert tuning Scripting & Automation PowerShell Python Regex Integration Technologies ...

Microsoft Security Engineer

Location
Basildon, England, United Kingdom
Senior Microsoft Security Engineer Azure Security | Microsoft Sentinel | Defender XDR | Purview | SIEM Engineering We are currently supporting a leading organisation looking to hire an experienced Senior Microsoft Security Engineer to join their security engineering function. This is an excellent opportunity for a security professional with strong Microsoft security expertise … and implementation plans Required Experience Strong commercial experience within Microsoft security engineering roles Hands-on experience with Microsoft Sentinel, including KQL, detection engineering and SIEM optimisation Strong knowledge of Microsoft Defender XDR security capabilities Experience with Microsoft Purview DLP, sensitivity labels and information protection Strong understanding of Azure security principles ...

Principal Security Consultant - DSS

Location
Birmingham, England, United Kingdom
align with Zero Trust principles, regulatory requirements and recognised security frameworks. Lead the end-to-end delivery of complex consultancy engagements across SOC/SIEM/SOAR, XDR/EDR, identity, cloud security, vulnerability management and related services, ensuring delivery to agreed scope, quality and timelines. Serve as a senior … discussions. What You'll Bring: Significant experience delivering complex security consultancy engagements within an MSSP or managed services environment, covering SOC design and deployment, SIEM/SOAR, XDR/EDR, identity, cloud security and vulnerability management. Proven capability designing and implementing enterprise security architectures across Microsoft and mixed-vendor environments ...

Infrastructure Security Engineer - London

Location
Greater London, England, United Kingdom
pipelines; integrate and maintain code scanning platforms Detection, operations & tooling Monitor and respond to security events and incidents in cloud and hybrid environments Maintain SIEM data pipelines needed for reliable alerting Build, deploy, and maintain security operations infrastructure using Python, Terraform, and configuration management (e.g., Puppet) Develop dashboards and alerts … configuration management (e.g., Puppet) Hands-on experience building GitHub Actions and workflows Experience with observability and security operations tooling (e.g., Prometheus, Grafana, CloudWatch, Karma; SIEM platforms such as Wazuh) Experience in building custom cloud security tools or integrations Interest in leveraging AI for cloud security monitoring and automation Contributions ...

OpenAI Engineer (Cyber Security)

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Implementing Retrieval-Augmented Generation (RAG) solutions using enterprise knowledge sources. Applying prompt engineering techniques to optimise AI performance and accuracy. Integrating AI capabilities with SIEM, SOAR and other cyber security platforms. Establishing evaluation frameworks to measure effectiveness, accuracy and business value. Embedding Responsible AI principles and security controls throughout … stakeholder engagement and communication skills. Desirable Experience AI solutions within cyber security or threat detection environments. Experience with Microsoft Sentinel, Splunk, QRadar or other SIEM platforms. SOAR platforms and security automation tooling. Cloud platforms including Azure, AWS or Google Cloud. Public sector or government project experience. Active SC Clearance. Reasonable ...

Cyber Security Engineer - Threat Detection

Location
City Of London, England, United Kingdom
response, and red team functions to keep coverage grounded in real adversary behavior. Responsibilities Detection Engineering - Design, build, test, and maintain detection content across SIEM, EDR, and NDR platforms, and document the intent, data source, and expected behavior of each detection Detection Tuning and Health - Own false positive rates, alert … retest Log Source Health - Validate the health and completeness of security log sources, detect collection failures and silent feeds, and onboard or update SIEM log sources in a timely manner Automation and Tooling - Apply a developer and problem-solving mindset to the work, using scripting to build internal tooling, process ...

IT Infrastructure & Systems Manager

Location
Greater London, England, United Kingdom
Recovery Orchestrator (VRO) environments. Administer endpoint security and encryption solutions, including Symantec Endpoint Protection (SEP) and Symantec Endpoint Encryption (SEE). Support endpoint DLP, SIEM, and security monitoring tools (e.g., Splunk, Tenable). Manage patching processes using ManageEngine Patch Manager Plus. Support Microsoft 365 services and related cloud technologies. … Server Security Symantec Endpoint Protection (SEP) Symantec Endpoint Encryption (SEE) SentinelOne – EDR/XDR Endpoint DLP solutions Firewall administration Vulnerability management tools (e.g., Tenable) SIEM tools (e.g., Splunk) Networking Cisco Switches and Routers FortiGate Firewalls LAN/WAN networking and routing Hardware & Storage Dell PowerEdge Servers Dell PowerVault SAN Storage ...

Senior SecOps Specialist

Hiring Organisation
Teya Solutions
Location
London, UK
Employment Type
Full-time
incident reviews and ensure improvements are implemented and follow-upscompleted. Support incident metrics (MTTD, MTTR, recurrence, etc.)SOC Tooling & Platform Operations Operate and improve SIEM, EDR, email security, case management, and vulnerabilitytools. Monitor health, coverage, data quality, and integrations. Troubleshoot ingestion, parsing, API, and configuration issues. Build and maintain integrations … 7+ years in SOC, incident response, detection engineering, or security engineering. Experience leading complex security incidents end-to-end. Strong hands-on experience with SIEM, EDR, and security tooling. Experience building and tuning detections and queries. Experience with log onboarding, telemetry pipelines, and data quality issues. Strong vulnerability management and ...

Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)

Location
Urmston, England, United Kingdom
actively shaping the security posture of organizations that matter.This is your chance to build real-world experience with cutting-edge tools like SIEM and security automation platforms, all while working in a collaborative, mission-driven environment.If you are successfully offered this position, you will go through a series … problem-solving mindset.Familiarity with incident, problem, or change management.Understanding of security principles and best practices.Strong communication and multitasking skills.Nice-to-Have Skills:Experience with SIEM tools (e.g., QRadar, Splunk, Microsoft Sentinel).Knowledge of TCP/IP and common cyber threats (phishing, malware, DDoS).Certifications like CompTIA Security+, Splunk certified user ...

Security TAM: Enterprise SIEM & Cloud Security Advisor

Location
Greater London, England, United Kingdom
Cisco is seeking a Security Technical Account Manager to drive adoption and optimization of the Splunk platform for our critical customers. You will act as a trusted advisor, translating complex security use cases into practical ...

IT Security Analyst | SIEM & Incident Response

Location
Manchester, England, United Kingdom
Menzies LLP in Manchester is seeking an IT Security Analyst to join the IT & Innovation team. You will monitor security alerts from the SoC, investigate incidents, and help improve configurations to strengthen security across the ...

Senior Security Analyst: Incident Response & SIEM Mastery

Location
Newbury, England, United Kingdom
Vodafone Group Plc is seeking a Level 3 Security Analyst in Newbury to join its Cyber Defence Operations Center of Excellence. This role is pivotal in protecting millions of customers from cyber threats through advanced ...

Remote Security Operations Analyst - SIEM/IR

Location
Greater London, England, United Kingdom
Viasat is seeking a RTO Security Analyst to join the frontline 24x7 team monitoring networks for suspicious activity and triaging security alerts. You will handle incidents across online and on-prem infrastructures, determine attack use ...

Remote UK Security Analyst – Splunk & SIEM (6 Mo)

Location
Greater London, England, United Kingdom
Xcede Recruitment Solutions is looking for an experienced Security Analyst for a 6-month contract that is fully remote. The successful candidate will support a significant technology transformation programme while maintaining effective security visibility during ...

Security Information Engineer

Location
Greater London, England, United Kingdom
Requirements Experience with deploying and using a Security Information and Event Management (SIEM) Knowledge of current operating systems i.e., Windows Server 2016-2019, Windows 10, Mac OS and Linux Microsoft Policy & Security – GPO’s, Patching (WSUS), Defender Antivirus & Firewall Penetration Testing exposure/awareness Experience performing technical analysis involving security ...

Senior Information Security Analyst

Location
Towcester, England, United Kingdom
bring You’ll have experience in several of the following areas: Security Operations, Security Incident Response or Security Engineering. Security Information and Event Management (SIEM) and Endpoint Detection & Response (EDR) technologies. Identity and Access Management, including MFA, Conditional Access and Privileged Access. Data Loss Prevention (DLP) technologies and policy management. ...

Security Operations & Risk Analyst (Hybrid)

Location
Manchester, England, United Kingdom
works with Technology teams, third‐party providers, and business stakeholders to reduce cyber risk and maintain policy compliance. You will help monitor SOC/SIEM outputs, participate in risk assessments, and assist with audit responses. Strong communication and a security‐minded mindset are essential for protecting information assets. #J ...

Senior API Security Engineer for External Integrations

Location
Greater London, England, United Kingdom
Outerlimit is seeking a Security Engineer to design and implement the platform that feeds security telemetry into SIEM, SOAR and XDR tools. You will personally author the v1 surface, extending a Data Platform with a versioned public API and robust event delivery guarantees. You will build native connectors to major ...

Head of Information Security

Location
Greater London, England, United Kingdom
management and cyber incident response activities, ensuring effective preparedness, response, recovery and post-incident review processes Oversee relationships with outsourced security service providers, including SIEM and Managed Detection and Response partners Ensure security monitoring, threat detection and response capabilities remain effective and aligned to business risk Drive continual improvements … Detection and Monitoring Identity and Access Management Network Security Application Security Security Governance and Risk Management Regulatory and Compliance Requirements Rapid7 or either managed SIEM solutions Experience with industry frameworks and standards such as: ISO 27001 NIST Cyber Security Framework CIS Controls APRA CPS 234 GDPR and privacy-related security ...

Senior Information Security Analyst

Location
Manchester, England, United Kingdom
mature our overall security posture. This is a blended technical security and governance role. One day you could be investigating an alert within our SIEM or responding to a security incident; the next, you could be assessing a supplier, supporting an ISO 27001 audit or discussing a control decision with … compliance. You’ll need: Substantial experience working within an Information or Cyber Security role. Strong hands-on technical capability across several areas such as: SIEM & log analysis Endpoint Detection & Response Vulnerability management AWS/cloud security Identity & Access Management Email & network security Practical experience taking a senior role in security ...

Cyber Security Consultant

Hiring Organisation
Gazelle Global Consulting Ltd
Location
London, United Kingdom
Employment Type
Contract, Work From Home
with three specialist contract opportunities across defensive security, security engineering and offensive testing. The roles cover different areas of the security lifecycle: * Security Engineer: SIEM, detection and response engineering, threat hunting, security telemetry, SOAR automation and secure CI/CD pipelines. * Cyber Security Specialist: enterprise security across cloud, AI, endpoint ...