SOC EDR-Centric Response – Work extensively with EDR tools (primary alert source) to detect and analyse modern threats Fine-Tuning & Reporting – Tune SIEM andSOAR systems for accuracy, and deliver clear, actionable incident reports Technical Threat Intelligence – Stay ahead of emerging attack vectors, especially those identified via EDR; apply this … and supporting security tools Strong technical knowledge of TCP/IP, OSI model, Windows/Linux , and cloud environments (Azure, AWS, O365) Familiarity with SOARand scripting for automation (Kusto, SQL, Regex) Excellent communication skills and a proactive, composed approach under pressure Join a team that’s reshaping cyber defence More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
KPMG Careers
helps defend KPMG and its clients from cyber-attacks through timely detection, investigation, and remediation of potential threats. What will you be doing? Developing SOAR Playbooks, programming new API integrations, developing new automation tasks, and maintaining them. Managing installation, maintenance, and support of GSOC tools hosted on multiple environments including … we'd love to see/Amazing Extras: Experience in Security Operations environments. Experience with SIEM solutions, preferably Azure Sentinel. Experience developing and configuring SOAR tools such as XSOAR or Azure Logic Apps with Azure Functions. Knowledge of Query Languages, preferably KQL. Good understanding of Microsoft Azure and O365 solutions. More ❯
GSOC) helps defend KPMG and its clients from cyber-attacks, through timely detection, investigation and remediation of potential threats. What will you be doing? SOAR Playbook Development, Programming new API Integrations, developing new automation tasks and maintenance. Responsible for installation, management, maintenance, and support of GSOC tools hosted on multiple … Amazing Extras: Preferred experience in a Security Operations environment Preferred experience with recognized SIEM solutions, preferably Azure Sentinel Preferred experience with developing and configuring SOAR tools such as XSOAR or Azure Logic Apps with Azure Functions Preferred experience with Query Languages, preferably KQL Preferred a good working knowledge of Microsoft More ❯
the integration and utilization of these key security tools. Responsibilities include designing and optimizing SIEM rules for superior threat detection and incident management, deploying SOAR tools for automated security responses, and ensuring robust API security. The engineer will oversee the performance andsecurity posture of our platforms, customize client reports … XDR products Strong background in SIEM rule design and optimization Extensive experience in implementing and overseeing Endpoint Detection andResponse (EDR) solutions Experience with SOAR tools and automated securityresponse implementations Familiarity with API security protocols and measures Ability to analyze large amounts of data from various sources to solve More ❯
Winchester, Hampshire, United Kingdom Hybrid / WFH Options
Evalian
in creation and maintenance of security processes, playbooks, and documentation to standardise SOC operations. Design and implement automation workflows and integrations using Logic Apps, SOAR platforms, and scripting to enhance SOC efficiency. Assist in the monitoring and investigation of security alerts when required, supporting the SOC team. Contribute to the … security monitoring. Experience in developing KQL queries, custom detection rules. Familiarity with automationand integration tools such as Logic Apps, Power Automate, or other SOAR platforms. Knowledge of cloud security, particularly Azure, AWS, and Google Cloud. Excellent documentation skills and process-building capabilities. Great communication skills and ability to work More ❯
Company Description: About Us McDonald's has run its business in the UK since 1974 and currently operates over 1500 restaurants across the UK and Ireland, serving almost four million customers each day. McDonald's is one of the UK More ❯
technical challenges and proposing solutions or get-well plans. • Learns constantly about the Fortinet technology and products being deployed as part of the Fortinet SOAR solution. • Provides technical guidance or recommendations to engineers or consultants in charge of the delivery. • Performs risk management to minimize project risks. • Creates and maintains … . • Experience with SOC or NOC environments. A good understanding of SOC deployment or operation and/or typical SOC solutions or technologies (e.g. SOAR, SIEM, orchestrationandautomation, threat intelligence, incident response) would be a plus. • Proven ability to handle technical escalations, working closely with both technical and business More ❯