601 to 625 of 690 SIEM Jobs in England

IT Security Manager

Hiring Organisation
Headliners Recruitment
Location
RG12, Easthampstead, Bracknell Forest, Berkshire, United Kingdom
Employment Type
Permanent
Salary
£70000 - £80000/annum + car + bonus
Lead annual penetration testing and security awareness programmes Support Cyber Essentials, Cyber Essentials Plus, ISO 27001 and similar frameworks Improve security monitoring, logging and SIEM capabilities Support business continuity, disaster recovery and acquisition due diligence Produce clear security reporting for IT and business leadership The technology You’ll work across … modern security environment including: Microsoft Azure, Intune, Okta, Zscaler, SentinelOne, Mimecast, Tenable, KnowBe4, SD-WAN, SIEM About you We’re looking for an experienced IT/cyber security professional with a strong background in security governance, risk and compliance, ideally within a multi-site or international environment. You’ll bring ...

Security Engineer

Location
Greater London, England, United Kingdom
design and build the platform that feeds Outerlimit security telemetry from the Global portal into the tools our customers run their security operations in (SIEM, SOAR, XDR etc). Today we discover shadow AI, enforce policy at the appliance and MCP gateway, and record every tool call an agent attempts. … Platform Build signed, idempotent event delivery with bounded retry, dead-lettering and replay Build a cursor-paginated pull and export API to carry bulk SIEM and XDR telemetry Build native connectors for destinations such as Microsoft Sentinel, Splunk and XSIAM Build self-service API key and webhook management ...

Security Detection & Response Specialist

Location
Chester, England, United Kingdom
apply concepts across multiple domains Basic experience with log analysis and telemetry interpretation, including familiarity with querying or analyzing data using tools such as SIEM platforms or query languages (KQL, SPL, SQL, or similar) Exposure to security platforms and technologies such as SIEM, EDR/XDR, identity systems, or cloud ...

Senior Detection and Response Engineer

Location
Cambridge, England, United Kingdom
Requirements Hands-on experience investigating security incidents, including developing investigation hypotheses, collecting artefacts and analysing endpoint, network and application data. Strong working knowledge of SIEM and security monitoring tooling, including the ability to write and develop queries for complex investigations. Understanding of adversary tactics, techniques and procedures (TTPs), offensive security … MITRE ATT&CK and enhancing security telemetry through automation and tooling. Highest-signal resume keywords Incident Investigation Detection Logic Development MITRE ATT&CK Framework SIEM Tooling Cloud Security Practices ATS Optimization Keywords Hard Skills Security Incident Investigation Detection Rule Development Threat Hunting Forensic Investigation Scripting (PowerShell, Python) Industry Keywords Adversary ...

Cyber Security Manager

Location
Greater London, England, United Kingdom
posture while ensuring exceptional service delivery. This is a highly visible role that combines cyber security expertise, customer engagement and service leadership across SOC, SIEM, MDR, threat intelligence and incident response services. What You’ll Be Doing Act as the primary customer contact for managed cyber security services. Lead service … security data into meaningful business insights, recommendations and executive reports. Drive Customer Success Plans and Continuous Service Improvement initiatives. Monitor service performance across SOC, SIEM, MDR, EDR/XDR, vulnerability management and threat intelligence services. Coordinate the response to major security incidents, managing communications, escalations and stakeholder engagement. Identify security ...

Security Operations Architect

Location
Slough, England, United Kingdom
background in solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile … DevOps, or Kanban delivery models KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps, NSD #J-18808-Ljbffr ...

Security Operations Architect

Location
City Of London, England, United Kingdom
background in solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile … DevOps, or Kanban delivery models KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps, NSD #J-18808-Ljbffr ...

Senior Platform Engineer (United Kingdom)

Location
Greater London, England, United Kingdom
partners and security teams. Build and manage CI/CD pipelines that integrate DevSecOps best practices from development through to deployment. Integrate and maintain SIEM and security tooling, ensuring observability and compliance across all deployed systems. Design, develop, and debug microservices in Go (Golang), with a focus on performance, security … classified environments. Experience building and maintaining secure CI/CD pipelines and integrating security throughout the SDLC. Hands-on experience implementing or managing SIEM, monitoring, and alerting systems. Understanding of REST APIs, authentication flows, event-driven architecture, and microservice patterns. IAC and technical experience with Pulumi, Terrraform, argo and flux ...

Cyber Defence Engineer

Location
West Midlands, England, United Kingdom
experience in system administration. Knowledge of big datatechnologies and ecosystems (e.g. Apache NiFi). Knowledge of currentmarket and emerging tools in data analytical and SIEM platforms. Knowledgeof network security implementations (e.g., IDS, IPS, EDR), including theirfunction and placement in an enterprise network. Knowledgeof intrusion detection systems and signature development. Knowledge … network architectures and technologies. Must-have experience withframeworks and technologies that support data-intensive distributedapplications. Must-have experience withmaintaining and administrating data analytical and SIEM platforms such asElastic. Must-have experience with problemsolving and analytical skills and able to collect information, analyse, report,and advise on evidence-based changes. Skillto ...

Senior Platform Engineer (United Kingdom)

Location
Greater London, England, United Kingdom
What You’ll Do Build and manage CI/CD pipelines that integrate DevSecOps best practices from development through to deployment. Integrate and maintain SIEM and security tooling, ensuring observability and compliance across all deployed systems. Build and implement scalable, secure cloud infrastructure using Kubernetes and Pulumi (Go-based), ensuring … classified environments. Experience building and maintaining secure CI/CD pipelines and integrating security throughout the SDLC. Hands‐on experience implementing or managing SIEM, monitoring, and alerting systems. Understanding of REST APIs, authentication flows, event‐driven architecture, and microservice patterns. Excellent written and verbal communication skills, with strong documentation habits. ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Camberley, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
security, operational and accreditation requirements Developing SOC concepts, CONOPS, high-level designs, low-level designs and deployment designs Designing and integrating security technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence Assessing existing SOC capabilities and identifying opportunities to improve security maturity Designing secure and resilient on-premise and … with both technical teams and senior customers. Strong experience architecting Security Operations Centre solutions Hands-on experience designing and deploying at least two of SIEM, SOAR, EDR, Vulnerability Management or Threat Intelligence technologies Strong understanding of SOC operating models, people, processes and technology Experience with both on-premise and cloud ...

SOAR Engineer

Location
Bradley Stoke, England, United Kingdom
SOAR/SIEM Security Engineer - Critical National Infrastructure (OT) 18-Month FTC | SC Cleared A leading cyber security firm is looking for a SOAR/SIEM Security Engineer to join a critical national infrastructure (CNI) client on an 18-month fixed-term contract, supporting the protection of operational technology ...

Senior Director, Pricing Operations

Location
Oxford, England, United Kingdom
About Us Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and expert-led services. Sophos meets organizations wherever they are in their security maturity and grows with them ...

Security Engineer - MOD/Defence - DV Cleared

Location
Southampton, England, United Kingdom
and improve security platforms controlling privileged access, credentials and administrative activity across critical infrastructure. There is also a requirement within the team for Elastic SIEM capability, so if you have strong Elastic experience alongside your security engineering background, that would also be relevant. The role You’ll work across identity … group access. Monitoring privileged sessions and investigating failed authentication activity. Maintaining, patching and upgrading security platforms. Reviewing audit logs and integrating security events with SIEM tooling. Troubleshooting firewalls, load balancers and connectivity issues. Key experience Hands-on Security Engineering within complex environments. Privileged Access Management (PAM) or identity security solutions. ...

SIEM Engineer (SC Cleared)

Hiring Organisation
Lorien
Location
Reading, Berkshire, UK
Employment Type
Full-time
Description Job Title: SIEM Engineer (SC Cleared) Location: Reading/Havant Duration: 6 months Description: Lead onboarding and integration of log sources into Microsoft Sentinel to ensure complete and reliable security telemetry Develop custom parsers and data transformations to normalise and enrich ingested data Design and optimise KQL queries … and SOAR workflows to automate response and reduce manual effort Implement CI/CD pipelines (Azure DevOps/Git) to support controlled deployment of SIEM content (rules, parsers, playbooks) Automate deployment and configuration across environments to improve consistency and speed of delivery Perform ongoing tuning and optimisation of detections ...

SOC Analysts - L2 and L3 (SC and DV-Cleared)

Hiring Organisation
Pigment Consulting
Location
Manchester, North West, United Kingdom
Employment Type
Contract
Responsibilities: Tier 2 SOC Analyst You will be responsible for investigating and responding to security incidents escalated from Tier 1, including: Detailed investigation of SIEM, EDR, network and authentication alerts. Threat hunting and identification of indicators of compromise. Investigation of phishing, malware, credential compromise and suspicious activity. Supporting containment, eradication … and mentoring to Tier 1 and Tier 2 SOC analysts. Required experience: Proven experience within a SOC, security monitoring or incident response environment. Strong SIEM and security event investigation experience. Experience with EDR/XDR technologies. Good understanding of cyber attack techniques and MITRE ATT&CK. Experience investigating common security ...

Senior SOC Analyst — SIEM, IR & Threat Hunting

Location
West of England, England, United Kingdom
Boeing Defence United Kingdom Limited is seeking a Cyber Security Analyst to monitor and improve security operations. You will configure SIEM and vulnerability tools, respond to alerts, and mentor junior analysts. The role requires experience in SOC environments, incident response, and threat analysis, with a focus on continuous improvement and ...

Cyber Security Analyst

Location
West Midlands, England, United Kingdom
Cyber Security Analyst, you'll support and enhance our security operations capability - monitoring, detecting, and responding to threats across our digital estate using SIEM, EDR/XDR and related platforms. What you'll do: Lead or support incident response end-to-end: triage, containment, eradication, recovery, and post-incident review … University, including awareness and training initiatives What you'll bring: Strong understanding of security technologies and controls - endpoint protection, network security, IDS/IPS, SIEM/EDR Experience working in large, complex IT or network environments supporting critical infrastructure Knowledge of recognised security standards and risk assessment methodologies A relevant ...

Senior Security Engineer - Detection & Response New London, UK

Location
Greater London, England, United Kingdom
develop, test, and deploy high-fidelity rule-based and anomaly-based detections-as-code Detect and respond to cyber threats using security data lake, SIEM, and cloud platforms Respond to alerts, cyber threats, and drive end-to-end incident response investigations Perform digital forensic investigations to include collection and analysis … automate detection and response operations Conduct threat hunts across corporate, cloud and product environments Support data engineering workflows for core security data lake and SIEM platforms Be an active member of D&R on-call rotations Coach and mentor security engineers within the detection & response team We’d love ...

Senior Security Engineer - Detection & Response

Hiring Organisation
Klaviyo
Location
Greater London, United Kingdom
Employment Type
Full Time
Salary
84000 to 126000 GBP Annually
develop, test, and deploy high-fidelity rule-based and anomaly-based detections-as-code Detect and respond to cyber threats using security data lake, SIEM, and cloud platforms Respond to alerts, cyber threats, and drive end-to-end incident response investigations Perform digital forensic investigations to include collection and analysis … automate detection and response operations Conduct threat hunts across corporate, cloud and product environments Support data engineering workflows for core security data lake and SIEM platforms Be an active member of D&R on-call rotations Coach and mentor security engineers within the detection & response team We’d love ...

Security Operations Center (SOC) Designer

Location
Greater London, England, United Kingdom
software, and network components. Develop and maintain the SOC's layout, including physical and virtual configurations. Evaluate, select, and integrate security technologies such as SIEM, IDS/IPS, firewalls, and endpoint protection systems. Ensure seamless integration of security tools and platforms to enable efficient data collection, analysis, and response. Develop … and conduct workshops to ensure the SOC team is well-equipped to handle security incidents. Skills and Qualifications Extensive knowledge of security technologies, including SIEM, IDS/IPS, firewalls, endpoint protection, and threat intelligence platforms. Experience with network architecture, operating systems, and security protocols. Proven experience in designing and implementing ...

Security Engineer (Institutional Trading)

Location
Greater London, England, United Kingdom
and maintain monitoring for FinOps‐specific security signals such as abnormal order patterns, signature misuse, unusual settlements. You will integrate these signals into our SIEM/SOAR for real‐time response. Support secrets and key‐management hygiene. You will ensure app/service keys are stored in KMS/Vault … expertise in Threat Modeling. Ability to perform structured reviews (e.g., STRIDE) of complex data flows and operational processes. Experience with observability and detection tooling (SIEM, logs, metrics) and ability to write basic detection rules. Practical experience with KMS/HSM, secrets management platforms (Vault, 1Password, AWS/ ...

Security Engineer, Institutional Trading

Hiring Organisation
Blockchain
Location
London, UK
Employment Type
Full-time
and maintain monitoring for FinOps-specific security signals such as abnormal order patterns, signature misuse, unusual settlements. You will integrate these signals into our SIEM/SOAR for real-time response. Support secrets and key-management hygiene. You will ensure app/service keys are stored in KMS/Vault … expertise in Threat Modeling. Ability to perform structured reviews (e.g., STRIDE) of complex data flows and operational processes. Experience with observability and detection tooling (SIEM, logs, metrics) and ability to write basic detection rules. Practical experience with KMS/HSM, secrets management platforms (Vault, 1Password, AWS/ ...

SOC Monitoring Analyst - DV Cleared

Hiring Organisation
Identifi Global Resources Ltd
Location
Preston, Lancashire, North West, United Kingdom
Employment Type
Contract
Contract Rate
£400 per day
security incidents Conduct Vulnerability Management and incident response activities Prepare report incidents and SOC performance metrics to SOC Leadership Work hands on with SIEM detection tooling and prepare reporting used for the use-case development Contribute to reporting and configuration changes, enhancements, and operational alignment Ensure incident workflows, escalation paths … operations within government, defence, or critical infrastructure Previous hands on experience in Vulnerability management and incident response and security operations escalation Understanding of SIEM platforms, detection engineering, and Vulnerability alert management Familiarity with ITSM tooling, ideally ServiceNow Strong stakeholder management and reporting capability Understanding of regulated environments (MOD, HMG, Defence ...

Account Executive

Location
City Of London, England, United Kingdom
close that gap. Our mission is to enable security teams to decide and act faster across the entire threat lifecycle. The Securonix Unified Defense SIEM is the industry’s first platform powered by agentic AI and designed with a human-in-the-loop philosophy. It unifies detection, investigation, and response … result is a CyberOps experience that scales as threats evolve. Securonix is recognized as a six-time Leader in the Gartner Magic Quadrant for SIEM and a Customers’ Choice on Gartner Peer Insights. The company has been featured by leading publications including WIRED, Dark Reading, and Fortune for its innovation ...