Security Posture Jobs in England

126 to 150 of 183 Security Posture Jobs in England

IT SOC Architect

binley, midlands, united kingdom
Ubique Systems
Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure and onboard diverse log sources including Nozomi Networks, firewalls, EDR (e.g., Defender … to enhance detection capabilities and contextualize alerts within the OT landscape. Incident Response Automation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics More ❯
Posted:

IT SOC Architect

leicester, midlands, united kingdom
Ubique Systems
Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure and onboard diverse log sources including Nozomi Networks, firewalls, EDR (e.g., Defender … to enhance detection capabilities and contextualize alerts within the OT landscape. Incident Response Automation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics More ❯
Posted:

IT SOC Architect

coventry, midlands, united kingdom
Ubique Systems
Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure and onboard diverse log sources including Nozomi Networks, firewalls, EDR (e.g., Defender … to enhance detection capabilities and contextualize alerts within the OT landscape. Incident Response Automation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics More ❯
Posted:

Technical Presales Lead - Cyber Security, AI

City of London, London, United Kingdom
Hybrid / WFH Options
Adecco
Job Title: Technical Presales Lead - Cyber Security, AI, Enterprise Location: London (Hybrid) Type: Full-time Salary: depending on experience + benefits About the Role We're looking for a Technical Presales Lead to shape and elevate our presales function. This is a unique opportunity for someone who thrives on combining strategic leadership with hands-on technical engagement. You'll … AI/ML Fundamentals: - Knowledge of Natural Language Processing (NLP), model lifecycle management, and explainability techniques. - Ability to articulate how AI models integrate into enterprise workflows and compliance frameworks. Security & Compliance: - Strong grasp of SOC 2, ISO 27001, GDPR, and enterprise security best practices. - Understanding of identity and access management (IAM), encryption standards, and secure API design. Integrations … trusted technical advisor in customer meetings, supporting strategic deals and proof-of-value (POV) engagements. * Own the Technical Narrative: Clearly articulate the value of our AI technology, platform architecture, security posture, and integration capabilities. * Create High-Impact Assets: Build demo environments, technical guides, and reference architectures that simplify complex concepts for senior stakeholders. * Collaborate Cross-Functionally: Work closely More ❯
Employment Type: Permanent
Posted:

GenAI Security Specialist

London, UK
ActiveFence
What We Are Looking For As a Red Team Specialist focused on GenAI models, you will play a critical role in safeguarding the security and integrity of commercial cutting-edge AI technologies. Your primary responsibility will be to analyze and test commercial GenAI systems including, but not limited to, language models, image generation models, and related infrastructure. The objective … and deliver actionable insights that strengthen AI models and guardrails against potential threats. Key Responsibilities Execute sophisticated and comprehensive attacks on generative foundational models and agentic frameworks. Assess the security posture of AI models and infrastructure, identifying weaknesses and potential threats. Collaborate with security teams to design and implement effective risk mitigation strategies that enhance model resilience. … Apply innovative testing methodologies to ensure state-of-the-art security practices. Document all red team activities, findings, and recommendations with precision and clarity. Must-Have Proven track record in AI vulnerability analysis. Strong understanding of AI technologies and underlying architectures, especially generative models and frameworks. Minimum of 5 years of experience in offensive cybersecurity, with a focus on More ❯
Posted:

GenAI Security Specialist

london, south east england, united kingdom
ActiveFence
What We Are Looking For As a Red Team Specialist focused on GenAI models, you will play a critical role in safeguarding the security and integrity of commercial cutting-edge AI technologies. Your primary responsibility will be to analyze and test commercial GenAI systems including, but not limited to, language models, image generation models, and related infrastructure. The objective … and deliver actionable insights that strengthen AI models and guardrails against potential threats. Key Responsibilities Execute sophisticated and comprehensive attacks on generative foundational models and agentic frameworks. Assess the security posture of AI models and infrastructure, identifying weaknesses and potential threats. Collaborate with security teams to design and implement effective risk mitigation strategies that enhance model resilience. … Apply innovative testing methodologies to ensure state-of-the-art security practices. Document all red team activities, findings, and recommendations with precision and clarity. Must-Have Proven track record in AI vulnerability analysis. Strong understanding of AI technologies and underlying architectures, especially generative models and frameworks. Minimum of 5 years of experience in offensive cybersecurity, with a focus on More ❯
Posted:

Cyber Security Assurance Manager

Portsmouth, Hampshire, England, United Kingdom
Hybrid / WFH Options
Computappoint
Portsmouth Hybrid : 3 days onsite a week Permanent Cyber Security Assurance Manager Location: Portsmouth, UK Hybrid: 3 days onsite per week Salary: Up to £65,000 Employment Type: Permanent Job Summary: Our client, a leading IT services and consulting firm, is seeking a Cyber Security Assurance Manager to ensure their SOC meets and maintains top security certifications … activities, supporting RFIs, RFPs, and client audit requests Deliver training and awareness sessions on SOC assurance standards to internal teams Develop customer-facing assurance documentation demonstrating the organisation's security posture Lead the delivery and ongoing maintenance of SOC-related certifications (SOC 2 Type II, SOC 3, ISO/IEC 27001, Cyber Essentials Plus, CREST) Embed certification requirements … strategy Drive continuous improvement in assurance processes and evidence collection efficiency Produce regular reports and dashboards on certification status, audit outcomes, and assurance performance Collaborate with SOC operations, Information Security, Risk & Compliance, and Commercial teams Essential Qualifications & Requirements: Proven experience delivering and maintaining cybersecurity certifications (ISO/IEC 27001, SOC 2 Type II, Cyber Essentials Plus, CREST) Strong understanding More ❯
Employment Type: Full-Time
Salary: Salary negotiable
Posted:

Director of Digital Operations

Salford, Manchester, United Kingdom
NHS
customer (digital service user) experience and service responsiveness, with a focus on purpose and the need to maximise service user productivity and effectiveness Improvement of performance, availability, reliability, and security, of service under-pinning technologies (Hosting & Data Centres, Compute, Storage, Networking, End User Computing) Visible leadership to the digital and information teams, deputising for the CDIO as required, and … their remit deliver on strategic, operational and regulatory objectives. Develop and deliver the technical strategy for the Trust in conjunction with the Head of Enterprise Architecture including, systems and security architecture, integration, cyber-security posture, Effective management, reporting, accountability and compliance for all aspects of Cyber & IT Security including compliance with law and guidance, and resolution … of Cyber & IT security risks and law issues About us The Northern Care Alliance NHS Foundation Trust (NCA) provides hospital and integrated health and social care services to over one million people living across Greater Manchester. Our 20,000 colleagues care for people in hospital and in the community, working across Bury, Rochdale, Oldham and Salford, to save and More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Vulnerability Lead - Engine by Starling

London, United Kingdom
Hybrid / WFH Options
Starling Bank Limited
passionate and experienced Vulnerability Lead to shape and lead the creation and ongoing operation of our comprehensive vulnerability management program. This is a unique opportunity to establish a critical security function, define best practices, and significantly enhance our overall security posture. A key aspect of this role involves the end-to-end management and continuous improvement of the … vulnerability management programme. This includes defining scanning strategies, conducting risk-based triage and prioritisation, overseeing remediation efforts, and providing actionable reporting to enhance the Engine's security posture. What you'll get to do Conduct vulnerability scans regularly and proactively as needed. Validate findings and use a risk-based approach. Enrich findings with threat intelligence and business impact to … resolver groups by triaging and prioritising vulnerabilities to facilitate timely resolution of outstanding findings using a risk based approach Track and manage remediation through to closure with Technology and Security teams. Ensure timely patching of critical vulnerabilities in line with SLAs. Ensure visibility across the technology estate, including cloud environments. Coordinate scanning and coverage of data centre estate, cloud More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Cyber Security Analyst - Consultancy

London, United Kingdom
Hamilton Barnes Associates Limited
Ready to take the lead in safeguarding complex digital ecosystems? Join a specialised cybersecurity consultancy dedicated to protecting organisations through advanced threat detection, incident response, and security architecture expertise. The organisation is recognised for its proactive approach to risk management and its commitment to delivering resilient, compliant, and secure technology environments. The team is hiring a Senior Cyber Security … lead investigations, analyse threats, and enhance defensive capabilities across diverse client infrastructures. The role will focus on identifying vulnerabilities, responding to incidents, and implementing best practices to strengthen overall security posture. Defend the future by staying one step ahead of cyber threats. Apply now! Key Responsibilities Oversee and deliver high-quality client engagements Risk and maturity assessments Cyber due … and trust Contribute to team culture by being an enthusiastic, supportive, and proactive member Requirements 2+ years' experience in a consulting environment or 3+ years' experience in an information security, cyber, or risk role within industry or government. Governance, Risk, and Compliance (GRC) OT Security/Industrial Control Systems Cyber protection of complex IT estates Incident response, crisis More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Microsoft Data Protection Architect

London, South East, England, United Kingdom
Accenture
protection solutions across Microsoft 365, Azure, and hybrid environments. You will be instrumental in helping clients secure their data estates, especially in AI-enabled environments, using Microsoft’s full security stack and Data Security Posture Management (DSPM) capabilities. This is a client-facing, delivery-focused role with opportunities to contribute to pre-sales, solution shaping, and thought More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Senior Threat Detection Specialist

London, South East, England, United Kingdom
Hybrid / WFH Options
QBE Management Services (UK) Limited
Employee Senior Threat Detection Specialist Location: London Happy to talk flexible working The Opportunity As we focus on transformation across the organisation, we’re also investing in our cyber security capabilities to keep our people, data, and customers safe. That’s why we’re building a new Detection Engineering function—and we’re looking for a talented and driven … and accuracy. Build and tune custom detection logic for complex environments and emerging threats. Monitor evolving attacker tactics (TTPs), integrating insights into detection and prevention strategies. Collaborate across Cyber Security, Engineering, and Global IT teams to enhance security posture and incident response. About you Strong experience across both offensive and defensive cyber security disciplines. Deep understanding … of attacker tactics, techniques, and procedures (TTPs), with expertise in the MITRE ATT&CK Framework. Hands-on technical knowledge in cyber detection engineering, security tools, and infrastructure. Skilled in Detection-as-Code and experienced with SIEM query languages. Confident communicator with experience working alongside global technical teams and senior stakeholders. Proactive, collaborative, and driven by curiosity and continuous improvement. More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

DevOps Engineer

Alderley Edge, Cheshire, United Kingdom
Transunion
wide cloud platform while minimising disruptions. Participate in the migration of infrastructure from AWS to Google Cloud Platform (GCP), ensuring a smooth transition and leveraging GCP services effectively. DevOps & Security: Maintain robust CI/CD pipelines, collaborating closely with development teams to streamline deployment processes. Maintain and enhance our security posture, ensuring compliance with industry standards and More ❯
Employment Type: Permanent
Posted:

Java Technical Lead

Bristol, Avon, South West, United Kingdom
Adroit People Ltd
Job Description- About the team Our team isaccountable for security within the mobile channel. Weprovide a suite of mobile security components,that provides an all-round security posture in mobile appsincluding associated services (penetration testing, obfuscation, consultancy etc.). Our mission is tobuild a scalable, adaptable, and proactive approach to securing customers mobile apps, enabling mobile … meet demanding NFRs Desirable knowledge & experience Experience of JAVA development Experience with cryptography frameworks in go and JAVA Experience with SQL databases Experience and/or Interest in application security and/or mobile app security. Experience with cloud environments including DevOps functions and pipelines More ❯
Employment Type: Contract
Rate: From £400 to £450 per day
Posted:

AppSec Lead

Central London, London, United Kingdom
Hybrid / WFH Options
Halian Technology Limited
A leading fintech company is seeking a Lead AppSec Engineer to join their established team. Youll be instrumental in embedding security into every stage of the software development lifecycleguiding engineers, shaping best practices, and driving secure, scalable solutions across our platform. Key Responsibilities: Security Advisory : Serve as the go-to expert for application security across engineering teamsproviding … hands-on guidance, resolving concerns, and fostering a security-first mindset. DevSecOps Enablement : Promote and implement secure development practices across CI/CD pipelines, secrets and key management, dependency management, and secure design. Vulnerability Management : Lead vulnerability remediation effortstriaging findings, prioritizing risks, and partnering with teams to deliver effective, pragmatic fixes. Tooling & Automation : Integrate security tools (e.g., SAST … DAST, SCA, secrets scanning) into developer workflows, ensuring automation is both scalable and developer-friendly. Cloud Security Collaboration : Work alongside infrastructure teams to ensure secure configuration of AWS and Azure environments, with a focus on IAM, network security, encryption, and observability. Architecture & Design Reviews : Provide input and recommendations to ensure new services and features are secure by design. More ❯
Employment Type: Permanent, Work From Home
Posted:

Information Security Analyst

Moulton Park Industrial Estate, Northampton, Northamptonshire, England, United Kingdom
Lynx Recruitment Ltd
Information Security Analyst – Leading UK Construction Company A leading UK construction and development firm is looking for a proactive Information Security Analyst to join their IT Infrastructure team. This is a key role focused on strengthening cybersecurity, managing key security platforms, and supporting compliance initiatives. Key responsibilities: Monitor and manage network defence and vulnerability testing tools. Administer … the cybersecurity awareness training platform and drive engagement. Support data protection and compliance activities. Conduct infrastructure security reviews and risk assessments. Collaborate with internal teams and external partners to enhance security posture. Ideal experience: Background in information security or infrastructure engineering. Strong understanding of network security, threat detection, and incident response. Familiarity with vulnerability testing and … security awareness tools. Knowledge of GDPR and ISO27001 frameworks. Relevant certifications (CISSP, CISM, or CompTIA Security+) beneficial. Location: Northampton – full-time, office-based? Type: PermanentIf you’re passionate about cybersecurity and want to make an impact within a forward-thinking construction environment, get in touch to find out more. More ❯
Employment Type: Full-Time
Salary: Salary negotiable
Posted:

IT Director DDaT -Digital, Data & Transformation Housing West Midlands

Telford, Shropshire, West Midlands, United Kingdom
Hybrid / WFH Options
TALENT LEADERS LTD
Strategy that aligns to the overall executive business strategy moving forward Around their4 Strategic Key Pillarsof: 1. Digital Access & Trust 2. Data & Insight 3. Core Systems & Technology 4. Governance & Security This spans the current technical environment to include - Infrastructure, Cloud, Security, Project, Data, BI and Product As well as ways of working people structure and future proofing the … for how digital experiences work & drive the development of digital services that significantly enhance the experience of both customers & colleagues. Cybersecurity & Risk Management -Maintain and strengthen a robust cyber security posture, ensuring the organisation remains resilient in the face of evolving threats Leadership & Culture Build and develop high performing teams Financial Stewardship Ownership & full budgetary responsibility You are … transformation & delivery focus Demonstrable success in leading enterprise-wide change programmes and PMO functions. Strong understanding of data strategy, analytics platforms, and digital enablement. Expertise in cloud infrastructure, cyber security, and enterprise systems. Excellent stakeholder engagement and communication skills, with the ability to influence at Board and Executive level. Track record of building high-performing teams and leading through More ❯
Employment Type: Permanent
Posted:

GKN Aerospace Global Graduate Programme - Cyber Security

East Cowes, Isle of Wight, South East, United Kingdom
GKN Aerospace
aerospace in a place where youll feel supported, inspired, and encouraged to grow. The role of a Cybersecurity Training and Awareness Specialist is pivotal in fostering a culture of security within an organization. This specialist is responsible for developing and implementing comprehensive training programs that educate employees about cybersecurity best practices, potential threats, and the importance of maintaining a … secure digital environment. By analysing user engagement and training effectiveness, they continuously improve the content to ensure it remains relevant and impactful. This role not only enhances the overall security posture but also empowers employees to be proactive in safeguarding sensitive information. The Cybersecurity function's goals Build a clear and practical framework to guide cybersecurity training and … Isle of Wight, Bristol, or Luton. With a preference for someone to be based at the East Cowes, Isle of Wight office with the rest of the UK Cyber Security team. Travel will be an expectation for this role so a Full UK Driving License would be beneficial. From day one, youll take part in a structured onboarding and More ❯
Employment Type: Permanent
Salary: £30,000
Posted:

Software Security Lead | Hybrid | £84k

London, United Kingdom
Hybrid / WFH Options
Akkodis
Software & Application Security Lead Permanent | Hybrid (UK - a few visits per month) | Up to £84,000 We're partnered with a modern, forward-thinking professional services firm that's putting security at the heart of everything they build. As part of their growing technology function, they're looking for a Software & Application Security Lead to take the … lead in shaping how security is embedded into every stage of their digital product journey. This is a role with real influence - you'll help define the software security strategy, guide engineers on best practice, and ensure the products they deliver are secure by design. You'll work closely with developers, architects, and business stakeholders to create an … environment where secure coding and proactive risk management come naturally. What you'll be doing You'll play a leading role in driving a security-first culture across agile product teams, defining and delivering a clear application security strategy that aligns with business goals. Working hand-in-hand with developers, you'll weave security seamlessly into the More ❯
Employment Type: Permanent
Salary: £75000 - £84000/annum Hybrid, Benefits
Posted:

Software Security Lead Hybrid £84k

London, South East, England, United Kingdom
Hybrid / WFH Options
Akkodis
Software & Application Security Lead Permanent | Hybrid (UK - a few visits per month) | Up to £84,000 We're partnered with a modern, forward-thinking professional services firm that's putting security at the heart of everything they build. As part of their growing technology function, they're looking for a Software & Application Security Lead to take the … lead in shaping how security is embedded into every stage of their digital product journey. This is a role with real influence - you'll help define the software security strategy, guide engineers on best practice, and ensure the products they deliver are secure by design. You'll work closely with developers, architects, and business stakeholders to create an … environment where secure coding and proactive risk management come naturally. What you'll be doing You'll play a leading role in driving a security-first culture across agile product teams, defining and delivering a clear application security strategy that aligns with business goals. Working hand-in-hand with developers, you'll weave security seamlessly into the More ❯
Employment Type: Full-Time
Salary: £75,000 - £84,000 per annum, Inc benefits
Posted:

Google SecOps Engineer (SOAR/UEBA)

City of London, London, United Kingdom
SF Technology Solutions
I am currently assisting a client who operate in a regulated industry, financial services, who are currently embarking a programme of work focused on maturity/designing and implementing security posture utilising SIEM tools such as Google Chronicle & implementing UEBA/SOAR (Security Orchestration, Automation, and Response/User and Entity Behaviour Analytics) built on GCP/… Google Cloud so Google SecOps/Security Operations experience is highly desirable. Key Responsibilities; - Enable and validate UEBA alerting within Chronicle SIEM, based on log sources - Deliver a minimum viable UEBA capability with tested detection logic - Provide engineering support to accelerate onboarding of log sources required for UEBA enrichment and detection fidelity - Demonstrate the ability to work with Google … log source coverage - Design and implement detection use cases aligned to MITRE ATT&CK framework - Enable SOAR integration by identifying high-fidelity detections and mapping Key Technical/IT Security Skills; - Chronicle SIEM - Google SecOps - UEBA Tooling - Windows Event Logs - BindPlane - MITRE ATT&CK - Strong SOC background - SOAR playbooks - GCP Finer Details; - Outside IR35 - Contract until End of December More ❯
Posted:

Google SecOps Engineer (SOAR/UEBA)

London Area, United Kingdom
SF Technology Solutions
I am currently assisting a client who operate in a regulated industry, financial services, who are currently embarking a programme of work focused on maturity/designing and implementing security posture utilising SIEM tools such as Google Chronicle & implementing UEBA/SOAR (Security Orchestration, Automation, and Response/User and Entity Behaviour Analytics) built on GCP/… Google Cloud so Google SecOps/Security Operations experience is highly desirable. Key Responsibilities; - Enable and validate UEBA alerting within Chronicle SIEM, based on log sources - Deliver a minimum viable UEBA capability with tested detection logic - Provide engineering support to accelerate onboarding of log sources required for UEBA enrichment and detection fidelity - Demonstrate the ability to work with Google … log source coverage - Design and implement detection use cases aligned to MITRE ATT&CK framework - Enable SOAR integration by identifying high-fidelity detections and mapping Key Technical/IT Security Skills; - Chronicle SIEM - Google SecOps - UEBA Tooling - Windows Event Logs - BindPlane - MITRE ATT&CK - Strong SOC background - SOAR playbooks - GCP Finer Details; - Outside IR35 - Contract until End of December More ❯
Posted:

Google SecOps Engineer (SOAR/UEBA) - Outside IR35

South East London, London, United Kingdom
SF Recruitment (Tech)
I am currently assisting a client who operate in a regulated industry, financial services, who are currently embarking a programme of work focused on maturity/designing and implementing security posture utilising SIEM tools such as Google Chronicle & implementing UEBA/SOAR (Security Orchestration, Automation, and Response/User and Entity Behaviour Analytics) built on GCP/… Google Cloud so Google SecOps/Security Operations experience is highly desirable. Key Responsibilities; - Enable and validate UEBA alerting within Chronicle SIEM, based on log sources - Deliver a minimum viable UEBA capability with tested detection logic - Provide engineering support to accelerate onboarding of log sources required for UEBA enrichment and detection fidelity - Demonstrate the ability to work with Google … log source coverage - Design and implement detection use cases aligned to MITRE ATT&CK framework - Enable SOAR integration by identifying high-fidelity detections and mapping Key Technical/IT Security Skills; - Chronicle SIEM - Google SecOps - UEBA Tooling - Windows Event Logs - BindPlane - MITRE ATT&CK - Strong SOC background - SOAR playbooks - GCP Finer Details; - Outside IR35 - Contract until End of December More ❯
Employment Type: Contract
Rate: £500 - 700 per day
Posted:

Google SecOps Engineer (SOAR/UEBA) - Outside IR35

London, South Bank, United Kingdom
SF Recruitment
I am currently assisting a client who operate in a regulated industry, financial services, who are currently embarking a programme of work focused on maturity/designing and implementing security posture utilising SIEM tools such as Google Chronicle & implementing UEBA/SOAR (Security Orchestration, Automation, and Response/User and Entity Behaviour Analytics) built on GCP/… Google Cloud so Google SecOps/Security Operations experience is highly desirable. Key Responsibilities; - Enable and validate UEBA alerting within Chronicle SIEM, based on log sources - Deliver a minimum viable UEBA capability with tested detection logic - Provide engineering support to accelerate onboarding of log sources required for UEBA enrichment and detection fidelity - Demonstrate the ability to work with Google … log source coverage - Design and implement detection use cases aligned to MITRE ATT&CK framework - Enable SOAR integration by identifying high-fidelity detections and mapping Key Technical/IT Security Skills; - Chronicle SIEM - Google SecOps - UEBA Tooling - Windows Event Logs - BindPlane - MITRE ATT&CK - Strong SOC background - SOAR playbooks - GCP Finer Details; - Outside IR35 - Contract until End of December More ❯
Employment Type: Contract
Rate: £500 - £700/day
Posted:

Google SecOps Engineer (SOAR/UEBA)

london, south east england, united kingdom
SF Technology Solutions
I am currently assisting a client who operate in a regulated industry, financial services, who are currently embarking a programme of work focused on maturity/designing and implementing security posture utilising SIEM tools such as Google Chronicle & implementing UEBA/SOAR (Security Orchestration, Automation, and Response/User and Entity Behaviour Analytics) built on GCP/… Google Cloud so Google SecOps/Security Operations experience is highly desirable. Key Responsibilities; - Enable and validate UEBA alerting within Chronicle SIEM, based on log sources - Deliver a minimum viable UEBA capability with tested detection logic - Provide engineering support to accelerate onboarding of log sources required for UEBA enrichment and detection fidelity - Demonstrate the ability to work with Google … log source coverage - Design and implement detection use cases aligned to MITRE ATT&CK framework - Enable SOAR integration by identifying high-fidelity detections and mapping Key Technical/IT Security Skills; - Chronicle SIEM - Google SecOps - UEBA Tooling - Windows Event Logs - BindPlane - MITRE ATT&CK - Strong SOC background - SOAR playbooks - GCP Finer Details; - Outside IR35 - Contract until End of December More ❯
Posted:
Security Posture
England
10th Percentile
£41,374
25th Percentile
£48,333
Median
£70,000
75th Percentile
£90,625
90th Percentile
£101,000