576 to 600 of 690 SIEM Jobs in England

Security Platform Engineer, Google Cloud Public Sector

Location
City of Westminster, England, United Kingdom
custom exploits, adversary emulation scenarios, or security automation frameworks for internal testing. Knowledge of cloud-native logging, monitoring, and Security Information and Event Management (SIEM) integration for detecting sophisticated adversary tactics. Understanding of Kubernetes attack surfaces, including container escapes, privilege escalation, and lateral movement techniques. Current and active UK Developed ...

SOC Engineer

Hiring Organisation
83zero Limited
Location
Coventry, West Midlands, United Kingdom
Employment Type
Permanent
Hybrid) We're looking for a Senior SOC L3 Detection Engineer to strengthen an enterprise security operation, with a strong focus on detection engineering, SIEM and threat detection. What you'll be doing Design, build and optimise advanced SIEM detection rules and correlation logic Translate threat intelligence, TTPs and IOCs … complex incident investigations and threat hunting Develop SOAR playbooks, automation and security integrations Improve detection coverage, SOC efficiency and security monitoring capabilities Work across SIEM, EDR/XDR, IAM, cloud and wider security tooling Help develop emerging AI/agentic security use cases What we're looking for Strong hands ...

Security Engineer

Hiring Organisation
Lamb Personnel Ltd
Location
Redhill, Surrey, United Kingdom
Employment Type
Full-Time
Salary
£48,000 - £50,000 per annum
and security of networks; Good working knowledge & experience of o Cisco Firewalls, Routers& Switches, o Compliance standards (ISO27001 and ITIL) o Security tools sets (SIEM, IDS/IPS) o Pen Testing tools o Vulnerability Management · Design, build, test, commission and troubleshoot security solutions (IDS/IPS, SIEM) on internal and … exposure including hands on experience of designing and managing secure networks including the following systems: o Cisco Firewalls, Routers, Switches o Juniper platforms o SIEM tools o IDS/IPS o Penetration testing (PEN Testing) o Computer Forensic tools o ISO27001 & GDPR knowledge · Ability to communicate network security issues ...

Security Engineer – Redhill, Surrey

Location
Redhill, England, United Kingdom
security ensuring integrity and security of networks; Good working knowledge & experience of Cisco Firewalls, Routers& Switches Compliance standards (ISO27001 and ITIL) Security tools sets (SIEM, IDS/IPS) Pen Testing tools Vulnerability Management Design, build, test, commission and troubleshoot security solutions (IDS/IPS, SIEM) on internal and customer networks … years multi network exposure including hands on experience of designing and managing secure networks including the following systems: Cisco Firewalls, Routers, Switches Juniper platforms SIEM tools IDS/IPS Penetration testing (PEN Testing) Computer Forensic tools ISO27001 & GDPR knowledge Ability to communicate network security issues to peers and management Ability ...

IT Security Analyst

Hiring Organisation
Pimlico Banks Recruitment
Location
Towcester, Northamptonshire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
and identifying areas for improvement. Producing DLP reports, matrices and security metrics that provide a clear picture of controls, risks and gaps. Working with SIEM and EDR technologies to investigate threats and improve detection. Reviewing vulnerabilities, prioritising risks and working with technical teams to make sure they're addressed. Supporting … that, you'll have a solid background in information or cyber security and experience across some of the following: Security Operations/incident response SIEM and EDR Identity and Access Management MFA and Conditional Access Vulnerability management Security controls and technical assurance Security reporting and metrics NIST ...

Senior IT Security Analyst (11276)

Location
Greater London, England, United Kingdom
infrastructure teams with firewall configuration, network boundary protection, IDS/IPS and other security controls. Monitor and help configure our security technology landscape, including SIEM, endpoint protection, privileged access management and multi-factor authentication. Carry out regular reviews of security configurations, processes and controls to identify opportunities for improvement. Work … information security frameworks and security solutions, alongside a genuine interest in emerging threats and technologies. You’ll ideally have experience across areas such as: SIEM, vulnerability scanning and endpoint protection. Firewalls, IDS/IPS, Web Application Firewalls and network security. Infrastructure security, hardening and vulnerability/patch management. Windows Server ...

Security Engineer (Threat Response), Sophos Security Team (IDR)

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

Senior IT Security Analyst

Hiring Organisation
Appcast
Location
London, UK
and infrastructure teams with firewall configuration, network boundary protection, IDS/IPS and other security controls.Monitor and help configure our security technology landscape, including SIEM, endpoint protection, privileged access management and multi-factor authentication.Carry out regular reviews of security configurations, processes and controls to identify opportunities for improvement.Work with developers … common information security frameworks and security solutions, alongside a genuine interest in emerging threats and technologies.You’ll ideally have experience across areas such as:SIEM, vulnerability scanning and endpoint protection.Firewalls, IDS/IPS, Web Application Firewalls and network security.Infrastructure security, hardening and vulnerability/patch management.Windows Server and Desktop environments.Cloud ...

AI Security Operations (SecOps) Specialist

Location
Macclesfield, England, United Kingdom
agent intent and actions—including prompts and instructions where policy permits—tool calls, identities, memory updates, policy decisions, outputs, errors and outcomes; integrate with SIEM, SOAR, EDR/XDR, cloud, identity, data protection, application security and case-management platforms. Detection and Response: Design, tune and operationalize detections for AI-specific … multi-agent patterns, MCP/A2A concepts and associated security risks Hands-on experience with security monitoring, detection engineering, incident response and automation using SIEM/SOAR and relevant cloud, identity, endpoint, data or application security telemetry. xperience defining and validating controls for cloud and AI platforms, preferably across ...

2nd/3rd Line Security Analyst

Location
Reading, England, United Kingdom
Investigate identity and cloud-based compromise (e.g. anomalous sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python … Logic Apps, APIs or a SOAR platform Correlate evidence across SIEM, endpoint, identity and cloud platforms (Sentinel, Defender XDR, CrowdStrike, Entra ID, Microsoft 365, AWS) to scope the full blast radius of an incident Run hypothesis-led threat hunts, not just reactive alert triage Mentor junior analysts and help drive ...

Senior Security Engineer (Infrastructure)

Location
City Of London, England, United Kingdom
environments Support security architecture and hardening initiatives across servers, operating systems, cloud platforms, Kubernetes and infrastructure services Support implementation, tuning and operational maturity of SIEM, alerting and security monitoring platforms Support Layer 7 and web security initiatives including WAF, reverse proxy, API protection and edge security controls Support implementation and … switching, firewalling and network segmentation principles Experience with edge and web security platforms such as Cloudflare, Akamai or similar technologies Experience implementing and managing SIEM, logging, monitoring and security detection platforms Strong understanding of infrastructure hardening, IAM, privileged access management and secrets management Experience securing Kubernetes, containerised workloads and cloud ...

Technology Delivery Lead: Cyber Security

Location
Greater London, England, United Kingdom
security, engineering, architecture, technology and client workstreams to maintain momentum, resolve delivery blockers and oversee initiatives across areas including IAM, cloud security, endpoint protection, SIEM, application security, vulnerability management and Zero Trust Own project governance, including RAID management, status reporting, decision tracking, change control and escalation, maintaining appropriate human review … including planning, RAID management, governance, financial tracking, resource coordination and stakeholder reporting Good understanding of security domains such as IAM, cloud security, endpoint protection, SIEM, application security and vulnerability management, alongside working knowledge of frameworks such as NIST, ISO 27001 and OWASP Experience coordinating delivery across cloud, on-premise ...

Senior Developer Experience Security Engineer

Location
Greater London, England, United Kingdom
and monitoring are consistent, high-quality, and provided as a standard capability for all teams. Define and implement platform-wide security use cases (e.g. SIEM detections, alerts, and signals) that scale across teams without bespoke configuration Work as part of a virtual SOC with the Security Operations Team to support … security for networks, systems, web applications, APIs and databases. Good understanding of secure software development practices. Familiarity with security tools and technologies, such as SIEM, IDS/IPS, WAF and vulnerability scanners. Knowledge of common adversarial Tactics, Techniques and Procedures (Mitre Att&ck TTPs). Knowledge of security standards and ...

Security Operations Centre Analyst

Hiring Organisation
Oscar Associates (UK) Limited
Location
West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£40,000
shift basis, taking ownership of frontline threat detection and response within a busy security operations environment. Key Responsibilities: Review and triage output from SIEM, IDS/IPS and firewall platforms to detect potential compromise Act as first responder on confirmed incidents, working through investigation, containment and handover to senior staff … Open to rotating shift patterns, including nights/weekends Desirable: Industry-recognised certifications (e.g. CompTIA Security+, SSCP, CEH, GCIH) or working towards Familiarity with SIEM platforms or IT service management tools Track record of meeting SLA-driven targets in a fast-paced environment Comfortable operating within a round-the-clock ...

Senior Developer Experience Security Engineer

Hiring Organisation
Motorway
Location
London, UK
Employment Type
Full-time
and monitoring are consistent, high-quality, and provided as a standard capability for all teams. Define and implement platform-wide security use cases (e.g. SIEM detections, alerts, and signals) that scale across teams without bespoke configurationWork as part of a virtual SOC with the Security Operations Team to support … security for networks, systems, web applications, APIs and databases. Good understanding of secure software development practices. Familiarity with security tools and technologies, such as SIEM, IDS/IPS, WAF and vulnerability scanners. Knowledge of common adversarial Tactics, Techniques and Procedures (Mitre Att&ck TTPs).Knowledge of security standards and frameworks ...

Senior Cloud Security Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
design phase and ongoing operations of our multi-cloud posture, define guardrails and policy-as-code standards, and support the strengthening of our SIEM and detection capability. You'll take on the most complex and ambiguous cloud security challenges in the business, and hold engineers to best practices. This … benchmarks, and holding engineering teams accountable to remediation outcomes. Work with Security Operations to shape cloud logging and detection requirements, ensuring our SIEM has the right visibility across the estate. Collaborate with senior stakeholders to articulate security risks and mitigations in terms that support business decision-making. Skills and Experience ...

Lead Technical Engineer (SOC)

Hiring Organisation
Stott & May Professional Search Limited
Location
Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £800 per day
and support cloud, on-premises VM, and container-based hosting. Design and configure network security devices, routers, switches, VLANs, DNS, and identity management. Lead SIEM onboarding activities, ensuring solutions support high data ingest rates. Develop test procedures covering functional and non-functional requirements. Maintain requirements and user stories, ensuring traceability … technical engineering, SOC deployment, or security infrastructure. Proven experience designing, building, and deploying SOC solutions for previous clients. Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong experience deploying and configuring applications in cloud and/or on-premises environments, particularly for high data ...

Lead Technical Engineer (SOC)

Location
London, United Kingdom
and support cloud, on-premises VM, and container-based hosting. Design and configure network security devices, routers, switches, VLANs, DNS, and identity management. Lead SIEM onboarding activities, ensuring solutions support high data ingest rates. Develop test procedures covering functional and non-functional requirements. Maintain requirements and user stories, ensuring traceability … technical engineering, SOC deployment, or security infrastructure. Proven experience designing, building, and deploying SOC solutions for previous clients. Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong experience deploying and configuring applications in cloud and/or on-premises environments, particularly for high data ...

Senior Sales Engineer

Hiring Organisation
Sumo Logic
Location
London, UK
Employment Type
Full-time
with experience leading projects and/or working with customersHands on knowledge of Security related products, technologies, and sources such as IDS/IPS, SIEM/Log Management, Network/Endpoint Security, Threat Detection, Incident Response, MSSP/MDR, Threat Feeds, CASB, etcExperience with open source collections (Telegraf, FluentBit, FluentD … increasing complexity of modern cybersecurity and cloud operations challenges, we empower digital teams to move from reaction to readiness—combining agentic AI-powered SIEM and log analytics into a single platform to detect, investigate, and resolve modern challenges. Customers around the world rely on Sumo Logic for trusted insights ...

Senior Solutions Engineer

Location
Greater London, England, United Kingdom
experience leading projects and/or working with customers Hands on knowledge of Security related products, technologies, and sources such as IDS/IPS, SIEM/Log Management, Network/Endpoint Security, Threat Detection, Incident Response, MSSP/MDR, Threat Feeds, CASB, etc Experience with open source collections (Telegraf, FluentBit … increasing complexity of modern cybersecurity and cloud operations challenges, we empower digital teams to move from reaction to readiness- combining agentic AI-powered SIEM and log analytics into a single platform to detect, investigate, and resolve modern challenges. Customers around the world rely on Sumo Logic for trusted insights ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
and accreditation requirements. Design across people, process, technology, services and infrastructure . Develop CONOPS and high- and low-level designs. Work with technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence . Design on-premise and cloud security architectures . Conduct risk assessments and support vulnerability management. Research and … Agile, Lean and Waterfall delivery environments. Experience You'll Need Strong experience in SOC/Security Architecture . Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management or Threat Intelligence . Strong knowledge of cloud and on-premise security architecture. Understanding of security best practices, risk and vulnerability ...

Senior Attack Monitoring Analyst, GSOC

Location
Greater London, England, United Kingdom
candidate availability. RESPONSIBILITIES Triage security events and employ a methodical and coherent response to security incidents adopting playbooks where necessary. Competently operate a chosen SIEM (e.g., Splunk/QRadar/LogRhythm) for incident investigations, or for the development of monitoring dashboards. Utilise playbooks, existing knowledge and accurate online resources … with current vulnerabilities, attacks, and countermeasures. Identify, respond and remediate cyber events generated through monitoring technologies. EXPERIENCE Preferred experience with operating or administrating a SIEM (e.g., Splunk/QRadar/LogRhythm). Solid understanding of networks including the TCP/IP stack, typical organisation architectures, and common protocols abused ...

SOC Analyst Level 2

Hiring Organisation
Hackajob Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
nationality requirements where these are necessary to meet UK Government or contractual security obligations. What Youll Be Doing Monitoring and investigating alerts from SIEM tools within a 24/7/365 SOC environment. Responding to and triaging security incidents, escalating where appropriate. Acting as a senior point of contact … environment. Confidence analysing logs and identifying suspicious or malicious behaviour. Familiarity with threat actors, TTPs, and modern detection techniques. Experience using Elastic Stack and SIEM technologies. Knowledge of OSINT techniques and how they can support investigations. Effective communication skills, with the ability to explain technical issues clearly to different audiences. ...

Incident Response Analyst

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

SIEM Engineer

Location
Reading, England, United Kingdom
business requirements. Develop Logic Apps and SOAR workflows to automate security response. Implement CI/CD pipelines using Azure DevOps/Git for controlled SIEM content deployment. Automate SIEM configuration and deployments across environments. Continuously tune and optimise detections to improve accuracy and reduce false positives. Experience with LogRhythm, Check … Point firewalls and SIEM logging platforms. SEC503/SANS certification or training would be highly desirable. #J-18808-Ljbffr ...