551 to 575 of 690 SIEM Jobs in England

Platform Engineer - Monitoring, Observability & SIEM (MONSO)

Hiring Organisation
Berenberg
Location
London, UK
Employment Type
Full-time
Platform Engineer – Monitoring, Observability & SIEM (MONSO) Persönliche Daten Land Vereinigtes Königreich Stadt London Art der Anstellung Professional Arbeitszeit Vollzeit Vertragsart Unbefristet Offene Stellen 1 Beschreibung & Anforderungen For our SPEAR Technology (Security, Platform Engineering, Automation and Runtime) division in London we are looking to hire a: Platform Engineer – Monitoring, Observability & SIEM … other teams to do more themselves—such as empower-ing our SOC/CyberSec team to develop (including AI-assisted workflows), test, and deploy SIEM use cases independently via CI/CD.The platform spans Splunk Enterprise on-prem (running on Kubernetes), Splunk Observability Cloud, and SolarWinds, with future expansion into ...

Senior Cyber Security Engineer – SIEM & Threat Detection

Location
Greater London, England, United Kingdom
Proactive Security team, focusing on building security tech stacks to mitigate threats with offensive and preventive measures. You will develop threat models, manage SIEM systems, and implement detection use cases while collaborating with incident response to protect information assets in a hybrid UK workplace. The role demands strong scripting (PowerShell ...

Elasticsearch Consultant

Location
Greater London, England, United Kingdom
Elastic SIEM Engineer We are seeking an experienced Elastic SIEM Engineer to design, implement and maintain security monitoring solutions using the Elastic Stack. The successful candidate will be responsible for developing scalable log-management and threat-detection capabilities across complex cloud and containerised environments. Key Responsibilities Design, deploy and support … Elastic SIEM solutions using Elasticsearch, Logstash and Kibana. Build and maintain log‐ingestion pipelines for infrastructure, applications, cloud platforms and security tools. Develop Kibana dashboards, alerts, detection rules and visualisations. Configure data parsing, enrichment, transformation and indexing within Logstash and Elasticsearch. Integrate Kafka to support reliable, high‐volume event streaming ...

Security Operations Specialist ( L3 )

Hiring Organisation
Michael Page
Location
Liverpool, Merseyside, United Kingdom
Employment Type
Contract
Contract Rate
£60000 - £65000/annum healthcare
attack techniques, threat actor methodologies, and appropriate mitigation strategies. Experience investigating security incidents and coordinating response activities. Knowledge of Security Information and Event Management (SIEM), Identity and Access Management (IAM), and Data Loss Prevention (DLP) technologies. Good understanding of modern security frameworks, detection engineering concepts, and operational security best practices. ...

Blockchain Security Operations Vice President

Location
City Of London, England, United Kingdom
multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem ...

Blockchain Security Operations Vice President

Location
Greater London, England, United Kingdom
multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem ...

Cyber Security Analyst

Hiring Organisation
Boeing
Location
Bristol, UK
Employment Type
Full-time
identifying improvements in both tooling and processes to ensure services operated are aligned to industry best practice and Boeing enterprise best practicesConfigure and utilise SIEM, vulnerability management and other security-based tooling. Innovate in the areas of SIEM and SOC and develop best practice. Mentor and oversee development of junior … Qualifications (Required Skills/Experience): 3+ years' experience in the following areas: Working in a Security Operations Centre (SOC).Working with SIEMs and evaluating SIEM alerts. Experienced in using log aggregation and correlation tools (Splunk preferred).Experienced in interpreting systems, application and network device logs. Experienced in packet capture and ...

Security Architect - Microsoft Security Platform

Hiring Organisation
Colt Telecom
Location
London, UK
Employment Type
Full-time
Microsoft 365 E5 security capabilities, including: Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps)Microsoft Entra ID (P2), Conditional Access and identity protectionMicrosoft Sentinel (SIEM integration)Microsoft PurviewStrong experience designing and implementing Microsoft Purview capabilities, including DLP, Information Protection, Insider Risk and eDiscovery Strong understanding of Zero Trust architecture principles … particularly identity-driven security models Experience deploying and operating Defender and SIEM capabilities, integrated within a wider security ecosystem Experience conducting security design reviews and translating policy into practical controls Experience performing risk assessments aligned to recognised methodologies Strong understanding of cloud security concepts across IaaS, PaaS and SaaS, particularly ...

Senior Cybersecurity Analyst - Social, Healthcare and Public Entities

Location
City of Westminster, England, United Kingdom
and participation in audit/certification such as: GDPR, NIST SP800-53, ISO 27001, NIST CSF, etc Experience evaluating logging activities for ingestion into SIEM as part of continuous monitoring plan Experience with security technologies and tooling, e.g. vulnerability scanners, firewalls, network monitors, IAM, SIEM, IDS/IPS Knowledge ...

Cyber Security Engineer

Hiring Organisation
Oscar Associates (UK) Limited
Location
Surrey, South East, United Kingdom
Employment Type
Permanent
Salary
£50,000
implement information security policies, controls and solutions. Monitor security events, risks and vulnerabilities and investigate incidents. Design, build, test and troubleshoot security solutions including SIEM and IDS/IPS. Manage vulnerability testing and recommend improvements. Provide cybersecurity expertise across network design and management. Maintain security policies, procedures and technical documentation. … teams through knowledge sharing and training. Requirements 5+ years' multi-network experience with hands-on secure network design and management. Experience with Cisco, Juniper, SIEM, IDS/IPS, penetration testing and forensic tools. Knowledge of ISO27001, GDPR, ITIL and vulnerability management. Strong communication and customer-facing skills. SC Clearance ...

Security Operations Engineer

Location
Hessle, England, United Kingdom
security issues and design effective remediation solutions Monitor and configure security tools - global EDR/XDR policies, blocklists, and automated containment rules including SIEM, EDR and respond to threat detection alerts. Maintain and enhance security monitoring capabilities through effective integrations and optimisation of security tooling, ensure effective data collection and … Detection & Response (EDR/XDR) tooling. Experience managing security tooling such as Microsoft Defender XDR, Sentinel, CrowdStrike, Splunk, QRadar, SentinelOne or similar enterprise-grade SIEM/XDR platforms. Direct experience securing Microsoft 365 tenants and standard corporate SaaS environments. Proven experience interfacing with, tuning, or triaging escalations from a third ...

Infrastructure Security Engineer

Hiring Organisation
Blockchain
Location
London, UK
Employment Type
Full-time
ownership, and a drive to continuously improve the security posture of complex systems. Familiarity with some of the following: Cloudflare (DDoS protection, WAF), OSS SIEM tools (Splunk, Elastic, etc), Incident management platforms (e.g. Incident.io, PagerDuty)Familiarity with at least one of the following CI/CD systems (Github Actions, Concourse … governance frameworks (e.g., CIS Benchmarks, NIST, SOC2, ISO 27001, PCI DSS) and how to operationalize them. Hands-on experience with building and maintaining a SIEM comprised of open-source and hosted componentsExperience securing consumer-facing web and iOS/Android applicationsExperience designing policies and administering Vault & other Hashicorp products. Experience ...

Lead Technical Engineer

Hiring Organisation
Anson Mccade
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£790 per day
with proven capability in SOC deployment for previous clients. Strong hands-on experience designing, building, and operating SOC technology, including at least two of: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence . Proven delivery record in SIEM onboarding and configuring applications for high data-ingest rates (Cloud and/ ...

Security Engineer

Location
Luton, England, United Kingdom
Description We are easyJet - a FTSE listed, £multi-billion low-cost airline that serves tens of millions of customers every single year. If you're reading this, you have probably already been an easyJet customer ...

Senior SOC Analyst | SIEM, Incident Response, SC Cleared

Location
West Midlands, England, United Kingdom
minimum of five years' SOC experience, mentor junior staff, and contribute to rapid incident response and threat detection. This role emphasizes hands-on SIEM work (Splunk, MS Sentinel), log analysis (Wireshark), and strong knowledge of Windows and Linux systems, networking, encryption and vulnerability management. #J-18808-Ljbffr ...

Senior Attack Monitoring Analyst, GSOC

Hiring Organisation
London Stock Exchange Group
Location
London, UK
Employment Type
Full-time
candidate availability. RESPONSIBILITIES: Triage security events and employ a methodical and coherent response to security incidents adopting playbooks where necessary. Competently operate a chosen SIEM (e.g., Splunk/QRadar/LogRhythm) for incident investigations, or for the development of monitoring dashboards. Utilise playbooks, existing knowledge and accurate online resources … with current vulnerabilities, attacks, and countermeasures. Identify, respond and remediate cyber events generated through monitoring technologies. EXPERIENCE: Preferred experience with operating or administrating a SIEM (e.g., Splunk/QRadar/LogRhythm). Solid understanding of networks including the TCP/IP stack, typical organisation architectures, and common protocols abused ...

CyberArk SME

Location
Wokingham, England, United Kingdom
platforms. Perform daily operations, incident resolution, upgrades, patching, and health checks. Configure password rotation, session monitoring, and access controls. Support integration with Active Directory, SIEM, ServiceNow, and other enterprise tools. Ensure CyberArk platform meets security, audit, and compliance requirements. Act as the primary CyberArk SME, providing guidance and support … Windows, Linux/Unix, Network devices Databases Cloud platforms (Azure) Service, application, and DevOps accounts Integration & Automation Integrate CyberArk with: Active Directory/LDAP SIEM tools (Sentinel) Ticketing tools (ServiceNow) Identity platforms (Azure AD, SSO solutions) Develop and maintain automation scripts using: REST APIs PowerShell/Python Support PAM integrations ...

AI & ML Engineer (Cybersecurity)

Location
Cheltenham, England, United Kingdom
Development: Design, build, and maintain AI agents and agentic workflows using platforms such as Azure AI Foundry, integrating with security toolsets such as SOAR, SIEM, and EDR. Secure Configuration: Implement safeguards to protect against adversarial inputs, including prompt injection and jailbreaks, ensuring AI systems meet robust security standards. System Architecture … with third‐party platforms and internal tooling. Experience of deploying infrastructure-as-code is advantageous. Knowledge of typical enterprise security tooling (such as SOAR, SIEM and EDR) is advantageous. Collaborative and engaging approach to problem solving, and a willingness to work as part of the team. Passionate for diversity, recognising ...

Senior CSIRT Analyst

Hiring Organisation
G Research
Location
London, UK
Employment Type
Full-time
technology landscape, including high-performance compute clusters, Kubernetes and containerised infrastructures, and corporate Windows environments. You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating … role include: Investigating and responding to complex security incidents across cloud, hybrid, and on-premise environmentsProactively hunting for threats and developing detection logic across SIEM and cloud security systemsParticipating in red and purple team exercises to test, validate and enhance detection and response capabilitiesDeveloping and maintaining automation workflows using tools ...

Senior CSIRT Analyst

Location
Greater London, England, United Kingdom
technology landscape, including high-performance compute clusters, Kubernetes and containerised infrastructures, and corporate Windows environments. You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating … include: Investigating and responding to complex security incidents across cloud, hybrid, and on-premise environments Proactively hunting for threats and developing detection logic across SIEM and cloud security systems Participating in red and purple team exercises to test, validate and enhance detection and response capabilities Developing and maintaining automation workflows ...

Senior Systems Engineer

Location
Greater London, England, United Kingdom
VLAN, 802.1X, SSL, and related protocols. OT Security: Strong Knowledge with securing operational technology environments, addressing unique threats and vulnerabilities inICS/SCADA systems. SIEM : Strong Understanding of SIEM technologies for log management, log analysis, and event correlation. Authentication & Access Control: Proficient in 802.1x, RADIUS, LDAP, AD, smart cards, and ...

Information Security Analyst

Location
Manchester, England, United Kingdom
Security Operations & Monitoring Support the day‐to‐day operation of information security controls and services. Monitor security tooling, alerts, and dashboards, including SOC and SIEM outputs. Investigate and respond to security events and incidents in line with agreed procedures. Escalate security incidents and risks to the Information Security Manager … detail. Experience working in regulated or enterprise environments. Exposure to cloud security concepts (e.g. Azure security services). Experience with security tooling such as SIEM, endpoint protection, or vulnerability management tools. Relevant education or certifications (or working towards) in information security. About Us Our benefits We offer all employees ...

Analyst, Information Security

Location
Greater London, England, United Kingdom
help protect SPE’s employees, productions, intellectual property, business operations, and technology environment. What you'll do: Monitor, review, and triage security alerts from SIEM, EDR, email security, identity, cloud, and other security platforms under the direction of senior analysts. Support investigation of suspected security events, including phishing, malware, credential … understanding of networking, operating systems, identity and access management, endpoint security, cloud services, email security, and common cybersecurity threats. Security operations exposure: Familiarity with SIEM, EDR, ticketing/case management, email security, vulnerability management, or log analysis tools preferred. Incident response discipline: Ability to follow playbooks, document investigative steps, preserve ...

Information Security Operations Manager

Location
Greater London, England, United Kingdom
Job Title: Information Security Operations Manager Reporting to: Information Technology Location:Head Office, White City Place, West London Contract Type: Full time, 37.5 hours per week About Us: ME+EM is one of the UK’s ...

Security Architect

Location
Greater London, England, United Kingdom
solutions in alignment with enterprise architecture principles and security policies. Design and architect security solutions across multiple domains, including: Security Information and Event Management (SIEM) Identity and Access Management (IAM) Endpoint Security (EDR, MDM, Endpoint Management tools) Cloud and On-Premises Security Architectures Create high-level and detailed architectural designs … Qualifications & Skills Demonstrated experience creating high-level security solution designs and authoring detailed technical documentation. Proven expertise in designing solutions across multiple security domains including DLP, SIEM, IAM, and Endpoint Security. Strong background in security architecture or solution design , with at least 3+ years in a dedicated security architecture role. ...