476 to 500 of 652 SIEM Jobs in England

Senior Security Architect - SecOps and Vulnerability Management

Location
Greater London, England, United Kingdom
globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities: Design, scale, and manage the enterprise SIEM architecture to provide centralized visibility and high-fidelity threat detection across all corporate and cloud infrastructure. Develop and influence advanced SIEM correlation rules, custom data … testing, remediation quality, and traceability/auditability in line with resiliency expectations. Required Qualifications, Capabilities, and Skills: Hands‐on experience advising and influencing enterprise SIEM platforms (e.g., Microsoft Sentinel, Splunk, Chronicle/SecOps). Must be proficient in writing/reviewing advanced detection logic (KQL, SPL, or YARA rules). ...

Security Monitoring & Detection Engineering Lead

Location
Manchester, England, United Kingdom
Detection Engineering, translating CDO priorities into a clear roadmap for monitoring, detection, investigation and response. Lead the architecture, engineering and continued development of our SIEM solution, ensuring the SIEM remains resilient, scalable, cost-effective and aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding … risks and capability constraints to the Head of Cyber Defence Operations, providing clear recommendations and action plans. Skills & Experience Extensive experience across security monitoring, SIEM engineering, detection engineering and incident response within a complex enterprise environment. A strong record of designing, building, operating and evolving Microsoft Sentinel as a production ...

Security Monitoring & Detection Engineering Lead

Location
Greater London, England, United Kingdom
Detection Engineering, translating CDO priorities into a clear roadmap for monitoring, detection, investigation and response. Lead the architecture, engineering and continued development of our SIEM solution, ensuring the SIEM remains resilient, scalable, cost-effective and aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding … risks and capability constraints to the Head of Cyber Defence Operations, providing clear recommendations and action plans. Skills & Experience Extensive experience across security monitoring, SIEM engineering, detection engineering and incident response within a complex enterprise environment. A strong record of designing, building, operating and evolving Microsoft Sentinel as a production ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
required eventually . A background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote … Threat hunting, analysis, monitoring, Optimising, reporting, alerting and investigation activity utilising a wide variety of security platforms including AI/ML and behavioural analytics, SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the UK Network Perimeter working with the best ...

Security Consultant

Location
Newcastle upon Tyne, England, United Kingdom
authorization models, secrets management and secure SDLC practices. Ability to work with development teams to improve application security posture and shift security left. 3. SIEM Experience Hands-on experience with SIEM platforms for log onboarding, correlation rule creation, alert triage, dashboarding and use-case tuning. Ability to improve visibility, reduce … noise, and align SIEM content to relevant threats and business risks. 4. Organisation/General Security Broad understanding of enterprise security domains including policy, governance, risk, compliance, awareness, third-party risk and operational security. Experience translating business and regulatory requirements into practical security controls and improvement plans. 5. Identity & Access ...

Security Platform Engineer, UK Security Operations

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP).Develop and implement security monitoring and logging strategies. Investigate and analyse security incidents, including identifying root causes, determining … detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. Experience in contributing to security-focused open-source projects or internal security platform tooling. As a part of the UK Security ...

Information Security Manager with Network Engineering Skills

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
similar)Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonusHost End Point Protection (Symantec)Host IPSPreferred Skills and KnowledgeVulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using … and disadvantagesSecurity Zone Design and considerationsNetwork and Security Architecture Design and ConsiderationsUnderstanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etcRisk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigateMalware/Ransomware and ...

Security Platform Engineer, UK Security Operations

Location
Greater London, England, United Kingdom
detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. Experience in contributing to security-focused open-source projects or internal security platform tooling. About the job As a part … ensure security incidents can be swiftly resolved. Responsibilities Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP). Develop and implement security monitoring and logging strategies. Investigate and ...

Lead Security Architecture & SOC Transformation

Location
Greater London, England, United Kingdom
protective monitoring and SOC transformation engagements across enterprise environments. The role demands progression through architecture, engineering, SOC or consultancy roles and delivering enterprise-scale SIEM, EDR/XDR and managed security service changes. The successful candidate will own engagements from discovery and target-state design through migration, assurance and service ...

Junior Platform Engineer - Telemetry, SIEM, Observability

Hiring Organisation
apto solutions
Location
Bristol, United Kingdom
Employment Type
Permanent
Salary
GBP 42,000 Annual
WHO THIS IS FOR You have been working for eighteen months to three years in a hands-on technical role - a platform team, a SOC or security engineering team, an MSP or MSSP, an infrastructure ...

Security Operations Center (SOC) Analyst

Location
Greater London, England, United Kingdom
cybersecurity threats. The job description for a SOC Analyst typically includes the following elements: Key Responsibilities: Continuously monitor security alerts from various sources (SIEM, IDS/IPS, firewalls, antivirus, etc.). Analyze security incidents and events to identify potential threats and vulnerabilities. Use threat intelligence to understand and anticipate cyber … management. Stay up to date with the latest cybersecurity threats, trends, and technologies. Skills and Qualifications: Proficiency with security information and event management (SIEM) systems. Experience with intrusion detection/prevention systems (IDS/IPS), firewalls, and antivirus software. Familiarity with network protocols, operating systems, and security architectures. Strong analytical ...

Presales Executive (Cyber Security)

Location
Leeds, England, United Kingdom
business strategy and technical execution across SEP2’s core portfolio, including the Wingman Managed Services Suite (mXDR, MDR, EDR, Managed Firewalls, vCISO), Google SecOps (SIEM, SOAR, Mandiant Threat Intelligence), and vendor partner technologies (e.g., Check Point, Wiz, SentinelOne, CrowdStrike) and services for our clients. This is a Hybrid position with … designed solutions are scalable, operationally deliverable, and compliant with customer RACI expectations. Demonstrations & Proof of Concepts (POC) Deliver compelling, outcome-based product demonstrations covering SIEM, SOAR, EDR, Cloud Security, and Threat Intelligence platforms. Manage and execute end-to-end technical Proof of Concepts (POCs) for client opportunities, establishing clear success ...

SOC Transformation Principal Consultant, XSIAM Deployment

Location
City Of London, England, United Kingdom
scale SOC modernization. You will guide customers through log migration, detection strategy development, and transformation programs in dynamic enterprise settings. With 10+ years in SIEM/security analytics and 8+ years in SOC tooling, you will partner with executives, sculpt roadmaps, and mentor high-performing teams to deliver measurable security ...

Hybrid Insider Risk & DLP Governance Lead

Location
Nottingham, England, United Kingdom
Insider Risk Director. You will partner with DLP Engineering, review policies, develop detection use cases, and deliver dashboards and reporting using DLP, SIEM, and UEBA. Strong governance and cross-functional collaboration are essential. #J-18808-Ljbffr ...

Network Engineer

Hiring Organisation
TALENTOMETRY LIMITED
Location
Rotherham, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Industrial Network Systems Engineer Company Automation Engineering Consultancy Firm Areas Defence, Factory Automation, UK Critical Infrastructure Tech CCNA, VCP, MCP, SOC, SIEM, SNMP Development Progression and technical development Based Sheffield office and various UK site work Offer Up to £55k + over time + vehicle + private medical Talentometry have ...

Cyber Security Analyst

Location
West of England, England, United Kingdom
improvements in both tooling and processes to ensure services operated are aligned to industry best practice and Boeing enterprise best practices Configure and utilise SIEM, vulnerability management and other security-based tooling. Innovate in the areas of SIEM and SOC and develop best practice. Mentor and oversee development of junior … Required Skills/Experience): 3+ years’ experience in the following areas: Working in a Security Operations Centre (SOC). Working with SIEMs and evaluating SIEM alerts. Experienced in using log aggregation and correlation tools (Splunk preferred). Experienced in interpreting systems, application and network device logs. Experienced in packet capture ...

L3 Security Analyst

Location
Newbury, England, United Kingdom
threats using cutting‐edge tools, collaborate with global teams on incident investigations, and mentor colleagues to uplift skills across the CSOC. From fine‐tuning SIEM systems and automating response actions to delivering insightful security reports and advisories, your expertise will help shape Vodafone’s resilience against evolving threats. This … least 4 years in security event analysis and incident response Strong technical knowledge of networking protocols, operating systems (Windows/Linux), and security technologies (SIEM, EDR, IDS/IPS, firewalls, proxies) Hands‐on experience with SIEM tuning and SOAR automation Familiarity with frameworks like MITRE ATT&CK and cyber kill ...

Blockchain Cyber Intelligence Vice President

Location
Greater London, England, United Kingdom
including network security, malware analysis, threat hunting, threat intelligence production, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem ...

Blockchain Cyber Intelligence Vice President

Location
Greater London, England, United Kingdom
including network security, malware analysis, threat hunting, threat intelligence production, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem ...

Senior Technical Trainer

Location
Reading, England, United Kingdom
Minimum 5+ years of experience with Cyber Security products or platforms, such as but not limited to Endpoint Security, Vulnerability Management, SIEM (Security Information and Event Management), Network Security, Firewall, UTMs, Compliance solutions, etc. Must have previous experience in designing and developing materials and writing assessments for technical training. Excellent ...

Security Architect - Microsoft Security

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
security capabilities, including: Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps) Microsoft Entra ID (P2), Conditional Access and identity protection Microsoft Sentinel (SIEM integration) Microsoft Purview Strong experience designing and implementing Microsoft Purview capabilities, including DLP, Information Protection, Insider Risk and eDiscovery Strong understanding of Zero Trust architecture principles, particularly … identity-driven security models Experience deploying and operating Defender and SIEM capabilities, integrated within a wider security ecosystem Experience conducting security design reviews and translating policy into practical controls Experience performing risk assessments aligned to recognised methodologies Strong understanding of cloud security concepts across IaaS, PaaS and SaaS, particularly within ...

Senior Security Operations Engineer (SOC Engineer L3)

Location
Royal Leamington Spa, England, United Kingdom
Senior Security Operations Engineer (SOC Engineer L3) to join their security function. This is a highly technical role focused on SOC engineering, detection engineering, SIEM/SOAR, security automation and AI-driven security operations . You’ll design and improve security monitoring, detection, response and automation capabilities across a large … enterprise environment, with a particular focus on AI and agentic technologies . Key Responsibilities Design and optimise security monitoring, SIEM and detection capabilities . Onboard and manage security logs, including ingestion, parsing, normalisation and enrichment . Develop and tune detection rules, correlation searches and threat detection use cases . Build ...

Interim Cyber Security Officer

Location
Greater London, England, United Kingdom
and security data models. Serve as a technical escalation point for high‐severity security incidents, facilitating rapid investigation, containment, and remediation using EDR and SIEM tools. Develop and implement SOAR workflows to automate detection, response, and security operations processes. Conduct proactive threat hunting using SIEM/EDR data and MITRE … needed. Requirements Minimum of 5+ years’ experience in Cyber Security Engineering or SOC Tier 3 role. Strong hands‐on experience with endpoint security and SIEM platforms in enterprise environments. Experience supporting or working alongside managed SOC providers. At least 2 years’ experience in vulnerability assessment tools (desirable). Exposure ...

Senior Security Analyst (L3 SOC Analyst)

Location
City Of London, England, United Kingdom
coordinating containment, eradication and recovery activities with internal and external stakeholders. Design, develop and optimise detection rules, threat models and advanced monitoring capabilities across SIEM, EDR and cloud security platforms. Conduct proactive threat hunting activities using threat intelligence, behavioural analytics and industry frameworks to identify previously undetected threats. Develop and … operating in a senior SOC environment, including working in an L3 analyst, incident response, threat hunting or detection engineering capacity. Deep technical knowledge of SIEM, EDR, SOAR, cloud security, identity security, endpoint security and enterprise monitoring platforms. Proven experience leading the investigation and response to complex cyber security incidents and ...

Technical Security Architect

Location
England, United Kingdom
including HLDs, LLDs, architecture patterns and data-flow diagrams. Lead the refresh and evergreening of security technologies, including IAM, PAM, firewalls, EDR/XDR, SIEM, vulnerability management and cloud security. Evaluate new technologies through PoCs/PoVs and make clear, evidence-based recommendations. Design and review cloud, identity, network, perimeter … ability to influence both technical and senior stakeholders. CISSP (or equivalent) and TOGAF and/or SABSA. Desirable Zero Trust, DevSecOps, MITRE ATT&CK, SIEM, PAM, Kubernetes/container security, PKI and security automation experience. At DXC Technology, we believe strong connections and community are key to our success. ...