426 to 450 of 641 SIEM Jobs in England

Lead SOC Analyst - DV Cleared

Hiring Organisation
Network IT
Location
Buckinghamshire, Milton Keynes, United Kingdom
Employment Type
Temporary
Salary
£80/hour
within a SOC or comparable cyber security operations environment. Experience leading security monitoring activities and supervising analysts during live operational service. Strong knowledge of SIEM platforms, log analysis, security monitoring technologies and security event investigation. Experience investigating complex cyber security events and determining appropriate escalation paths. Good understanding of cyber … environment. Profession certifications such as Microsoft SC-200, GIAC GCIH, GCIA, CompTIA CySA+ or equivalent. Desirable: Experience using Microsoft Sentinel, LogRhythm, or equivalent enterprise SIEM platforms. Experience developing monitoring improvements, detection tuning, or operational process development. Experience supporting Incident Responder activities during major cyber security incidents. Experience contributing ...

SOC Team Lead

Location
Greater London, England, United Kingdom
frameworks, threat detection, and mitigation strategies Strong leadership and communication skills with the ability to guide teams in high-pressure scenarios Experience working with SIEM, EDR, and vulnerability management platforms Understanding of risk-based prioritisation and regulatory compliance considerations Willingness to support out-of-hours activities based on threat levels … Capable of leading teams, managing complex cybersecurity issues, and ensuring compliance with industry standards. Highest-signal resume keywords Cybersecurity Operations Management Incident Response Frameworks SIEM and EDR Platforms Leadership and Team Guidance Regulatory Compliance Knowledge Hard Skills Incident Response Threat Detection Vulnerability Management Root Cause Analysis Threat Hunting Strategies Cybersecurity ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
Regular team events and knowledge‐sharing sessions create a supportive, engaging place to work. Key Responsibilities Detect and investigate Monitor and triage alerts across SIEM, EDR or XDR, email and web security platforms. Investigate suspicious activity and determine whether escalation is required. Follow SOC runbooks and investigation workflows. Build clear … compromise such as unusual processes, network connections, irregular logon activity or file changes. Hands‐on experience with at least one major security platform (SIEM, EDR or XDR). Familiarity with ticketing tools such as ServiceNow, Salesforce, or JIRA. Familiarity with Windows event logs, authentication logs, basic process trees, and command ...

SOC Analyst - Tier 1

Hiring Organisation
Methods Consulting
Location
London, UK
Employment Type
Full-time
start or grow their career in cybersecurity, with opportunities for advancement and skill development. RequirementsKey Responsibilities: Monitor security alerts and events from Microsoft Defender, SIEM and other security tools. Perform initial triage and analysis of security incidents. Escalate verified incidents to Tier 2/3 analysts as needed. Document incidents … Information Technology, or related field (or equivalent experience).Basic understanding of networking concepts (TCP/IP, DNS, firewalls).Familiarity with security tools such as SIEM, antivirus, IDS/IPS, and endpoint protection. Strong analytical and problem-solving skills. Excellent written and verbal communication skills. Ability to work in a fast ...

SOC Analyst - Tier 1

Location
Greater London, England, United Kingdom
start or grow their career in cybersecurity, with opportunities for advancement and skill development. Key Responsibilities: Monitor security alerts and events from Microsoft Defender, SIEM and other security tools. Perform initial triage and analysis of security incidents. Escalate verified incidents to Tier 2/3 analysts as needed. Document incidents … related field (or equivalent experience). Basic understanding of networking concepts (TCP/IP, DNS, firewalls). Familiarity with security tools such as SIEM, antivirus, IDS/IPS, and endpoint protection. Strong analytical and problem-solving skills. Excellent written and verbal communication skills. Ability to work in a fast-paced ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

Head of Cyber Resilience and Cloud Security

Hiring Organisation
Sanderson Recruitment
Location
South East, United Kingdom
Employment Type
Permanent
Salary
GBP 700 - 950 Daily
Head of Cyber Resilience and Cloud Security Successful Contractor will need to have worked within a Regulated Environment - ideally Financial Services Strong SOC/Siem Background and also Incident Management Leadership experience essential Must have experience in providing cyber operations across data centres and cloud environments eg - strateg click apply ...

Lead Security Engineer: Zero Trust, IAM & SIEM Focus

Location
Greater London, England, United Kingdom
Burns Sheehan Limited is seeking a Lead Security Engineer to join a growing international business. This hands-on role focuses on building and improving security controls across a complex IT estate, rather than pure monitoring ...

Information Security Analyst - Security Operations Centre

Location
Melbourn, England, United Kingdom
security incidents, proactively hunting for threats, and continually improving security detections, controls and working practices. Key Activities: Monitor and investigate security alerts across SIEM, EDR/XDR, email security, cloud platforms, identity, network security and data loss prevention tooling. Triage security events, determine scope and impact, coordinate containment and remediation … closely related technical security role. Strong investigation, log analysis and correlation skills across endpoint, identity, email, cloud and network telemetry. Experience using SIEM and EDR/XDR platforms to investigate alerts and support containment and remediation. Ability to document investigations clearly, maintain evidence and explain findings to technical and ...

Information Security Analyst - Security Operations Centre

Location
Royston, England, United Kingdom
security incidents, proactively hunting for threats, and continually improving security detections, controls and working practices. Key Activities: Monitor and investigate security alerts across SIEM, EDR/XDR, email security, cloud platforms, identity, network security and data loss prevention tooling. Triage security events, determine scope and impact, coordinate containment and remediation … closely related technical security role. Strong investigation, log analysis and correlation skills across endpoint, identity, email, cloud and network telemetry. Experience using SIEM and EDR/XDR platforms to investigate alerts and support containment and remediation. Ability to document investigations clearly, maintain evidence and explain findings to technical and ...

Security Pre-Sales Specialist – Managed Security Solutions

Location
Hull and East Yorkshire, England, United Kingdom
customer engagement. You will collaborate with Account Managers and service delivery teams, while delivering enablement sessions to internal sales teams and staying current with SIEM, XDR, EDR, and the Microsoft Security #J-18808-Ljbffr ...

SOC Analyst

Location
Hereford, England, United Kingdom
and assess alerts escalated by the outsourced SOC; validate their accuracy and determine potential impact. Initial Investigation: Perform first-line investigation using available tools (SIEM, Device Logs, firewall logs and SIEM alerts). User Interaction: Engage with affected end users or asset owners to collect additional information, verify events … including malware, phishing, lateral movement and privilege escalation. Working knowledge of network fundamentals, windows/Linux system logs and authentication systems. Working knowledge of SIEM platforms (e.g. Microsoft sentinel, Splunk, Elastic, QRadar). Awareness of security frameworks and methodologies (NIST CSF, MITRE ATT&CK, ISO27001). #J-18808-Ljbffr ...

Cyber Security Consultant

Hiring Organisation
Gazelle Global Consulting Ltd
Location
South East, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
with three specialist contract opportunities across defensive security, security engineering and offensive testing. The roles cover different areas of the security lifecycle: Security Engineer: SIEM, detection and response engineering, threat hunting, security t click apply for full job details ...

Infra & Security Leader | Hybrid, Multi-Site IT

Location
Milton Keynes, England, United Kingdom
Engineers, ensuring stability, availability and security of a complex technology estate spanning LAN/WAN/WLAN, cloud, IAM, EUC and security tech like SIEM, EDR/XDR and next-generation #J-18808-Ljbffr ...

IT Infrastructure Operations and Security Lead

Location
Greater London, England, United Kingdom
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud‐native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign‐On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD‐WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

Senior Security Architecture & Advisory Lead

Location
Biggin Hill, England, United Kingdom
LevelBlue seeks a Principal Consultant for the AIR team to design, deliver, and optimise security operations capabilities across SIEM, Identity, and EDR. You will lead complex engagements from pre-sales through delivery and handover, acting as a trusted advisor to security leadership and sponsors. The role blends deep technical architecture ...

IT Infrastructure Operations and Security Lead

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

Senior Security Solutions Architect — Hybrid

Location
Greater London, England, United Kingdom
SecurityHQ in London hybrid role shaping security architectures for SIEM, XDR/MDR, cloud security. You’ll lead discovery, translate requirements into reference designs, and own technical responses for RFIs and proposals. You’ll collaborate with Sales, Partners, and Delivery, present to CISO/CIO audiences, and drive automation and ...

IT Operations and Security Lead

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

Security Engineer, Detection Response

Location
Greater London, England, United Kingdom
Monitor and respond to security alerts across multiple channels, including managed SOC escalations. Maintain visibility and logging infrastructure, ensuring effective SIEM (Security Information and Event Management) operations. Support security audits for PCI, SOC2, ISO, and other compliance frameworks, gathering evidence and collaborating with Engineering, GRC and the broader Security Division. … configuration, and management), GitHub administration best practices, and internal security tooling to strengthen Vercel's overall security framework About You: Extensive experience in security operations, including SIEM management, security logging, and detection engineering. Strong knowledge of AWS infrastructure and cloud security best practices. Experience with GitHub administration and security controls. ...

Vendor Manager

Location
Basingstoke, England, United Kingdom
plans for the Palo Alto Networks portfolio, ensuring Nomios has a clear commercial approach across areas such as network security, Cortex, XSIAM, XDR, SASE, SIEM, EDR, AI security and OT security. Increase the attachment of Nomios managed and professional services to Palo Alto Networks solutions, including relevant managed NOC, managed ...

District Sales Manager, Cortex & Cloud - Ireland & UK Public Sector

Hiring Organisation
Palo Alto Networks
Location
London, UK
Employment Type
Full-time
high-growth environment with large quota/dealsStrong understanding of complex solution sales methodologies, value selling and enterprise buying processes with operational disciplineExperience selling SIEM, EDR, or CNAPP (DevSecOps, CloudOps) solutions is highly preferredEstablished relationships with key security decision-makers (CIOs, CISOs) and the ability to drive strategic conversationsExpertise ...

CyberArk Engineer

Location
London, United Kingdom
ensuring resolution within agreed SLAs. Troubleshoot issues across the CyberArk platform, including Vault, CPM, PSM, PVWA, Entra ID integrations, MFA solutions, and SIEM integrations. Perform root cause analysis and manage escalations with CyberArk support where required. Support privileged account onboarding and offboarding, safe administration, policy management, and access reviews. Carry ...

Identity Access Management Architect Engineer Cyber Consulting

Location
Greater London, England, United Kingdom
Defining the system specifications to support optimal performance. Integrating workflows with third-party systems and security tools, such as Security Information and Event Management (SIEM) solutions, multi-factor authentication solutions, and cloud platforms like Amazon Web Services (AWS) and Azure. Defining the Responsible, Accountable, Consulted, and Informed (RACI) matrix ...

Product Reliability Engineer – APM

Location
Greater London, England, United Kingdom
expensive indexing or hot storage. We specialize in comprehensive monitoring of logs, metrics, traces, and security events with features such as APM, RUM, SIEM, Kubernetes monitoring, and more, enhancing operational efficiency and reducing observability spending by up to 70%.We seek a **Product Reliability Engineer** who ensures that the Coralogix ...