quality service by following Saab Group IT standards.Maintains technical knowledge by attending educational workshops; reviewing publications.Systems accreditation for internal and external teamsLeading IT Security Incidentresponse process Required Skills:System administrationNetwork securityProblem solvingInformation security policiesOn-call network troubleshootingFirewall administrationNetwork protocolsRouters, hubs, and switchesCollaboration and communicationProcess improvementKnowledge of systems … depth and common security elements.Hands-on experience analysing high volumes of logs, network data (e.g. Netflow, FPC), and other attack artifacts in support of incident investigationsExperience with vulnerability scanning solutionsIn-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g. Sentinel, Nitro/McAfee More ❯
Behaviour Analytics (EUBA) and Insider Risk Management processes and tools. Proven experience in analysing and responding to DLP alerts and incidents , collaborating with the IncidentResponse team for remediation. Strong knowledge of data classification methodologies and associated compliance frameworks. An understanding of security DLP best practices and frameworks More ❯
Behaviour Analytics (EUBA) and Insider Risk Management processes and tools. Proven experience in analysing and responding to DLP alerts and incidents , collaborating with the IncidentResponse team for remediation. Strong knowledge of data classification methodologies and associated compliance frameworks. An understanding of security DLP best practices and frameworks More ❯
portsmouth, hampshire, south east england, United Kingdom
VANRATH
Behaviour Analytics (EUBA) and Insider Risk Management processes and tools. Proven experience in analysing and responding to DLP alerts and incidents , collaborating with the IncidentResponse team for remediation. Strong knowledge of data classification methodologies and associated compliance frameworks. An understanding of security DLP best practices and frameworks More ❯
maintain standard operating procedures and protocols. Collaborate closely with the Cyber Defence team to uphold enterprise defence practices, guidelines, and procedures. Provide support for incidentresponse efforts as needed. Assist with operational and management reporting produced by the team. Skills/Qualifications A highly self-motivated individual with More ❯
maintain standard operating procedures and protocols. Collaborate closely with the Cyber Defence team to uphold enterprise defence practices, guidelines, and procedures. Provide support for incidentresponse efforts as needed. Assist with operational and management reporting produced by the team. Skills/Qualifications A highly self-motivated individual with More ❯
portsmouth, hampshire, south east england, United Kingdom
Element Materials Technology
maintain standard operating procedures and protocols. Collaborate closely with the Cyber Defence team to uphold enterprise defence practices, guidelines, and procedures. Provide support for incidentresponse efforts as needed. Assist with operational and management reporting produced by the team. Skills/Qualifications A highly self-motivated individual with More ❯
Southampton, Hampshire, United Kingdom Hybrid / WFH Options
NICE
tools (e.g., Prometheus, Grafana, ELK stack, Cloudwatch). Excellent problem-solving skills and the ability to troubleshoot complex issues in distributed systems. Experience of Incident management and blameless postmortems that includes driving the incidentresponse efforts during outages and other critical incidents, resolution, and communication in a More ❯
southampton, south east england, United Kingdom Hybrid / WFH Options
Cloud Decisions
development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incidentresponse or DFIR is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel (KQL More ❯
basingstoke, south east england, United Kingdom Hybrid / WFH Options
Cloud Decisions
development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incidentresponse or DFIR is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel (KQL More ❯
portsmouth, hampshire, south east england, United Kingdom Hybrid / WFH Options
Cloud Decisions
development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incidentresponse or DFIR is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel (KQL More ❯
account lifecycle. Handle laptop logistics, including coordination with Firstbase for non-UK locations. Information Security: Involved in maintaining controls required by ISO27001. Involved in incident response. Conduct Information Security vendor assessments. Manage regular phishing simulation tests. Business Development & Account Management: Perform information security assessments of Veramed. Complete questionnaires and More ❯
and working in a collaborative, team-focused environment, this could be your next move. In this role, you'll: – Lead cyber risk assessments and incidentresponse – Secure systems and data using Microsoft tools – Enhance compliance and governance with Purview – Collaborate across IT, security, and business teams – Support identity More ❯
and working in a collaborative, team-focused environment, this could be your next move. In this role, you'll: – Lead cyber risk assessments and incidentresponse – Secure systems and data using Microsoft tools – Enhance compliance and governance with Purview – Collaborate across IT, security, and business teams – Support identity More ❯
portsmouth, hampshire, south east england, United Kingdom
Harvey Nash
and working in a collaborative, team-focused environment, this could be your next move. In this role, you'll: – Lead cyber risk assessments and incidentresponse – Secure systems and data using Microsoft tools – Enhance compliance and governance with Purview – Collaborate across IT, security, and business teams – Support identity More ❯
innovative Infrastructure Management, AI, Modern Workplace, and Managed Security Services. Our modern Security Operations Centre (SOC) provides 24/7 threat detection, monitoring, and incidentresponse, empowering organisations across various industries to protect their digital assets with confidence. We’re looking for a strategic, hands-on SOC Manager … of our security services. What You'll Do Lead and manage day-to-day SOC operations, ensuring 24/7 threat monitoring and effective incident response. Oversee security alert triage, investigation, and escalation workflows. Drive continuous improvement across SOC processes, detection logic, and response capabilities. Develop and maintain More ❯
maintain the Company’s competitive edge. Guiding the creation and maintenance of advanced tools and scripts for real-time detection, threat analysis, and rapid incident response. Championing the adoption of cutting-edge security standards and practices, ensuring our mobile platforms meet both internal and industry regulatory requirements. By applying More ❯
maintain the Company’s competitive edge. Guiding the creation and maintenance of advanced tools and scripts for real-time detection, threat analysis, and rapid incident response. Championing the adoption of cutting-edge security standards and practices, ensuring our mobile platforms meet both internal and industry regulatory requirements. By applying More ❯
portsmouth, hampshire, south east england, United Kingdom
bet365
maintain the Company’s competitive edge. Guiding the creation and maintenance of advanced tools and scripts for real-time detection, threat analysis, and rapid incident response. Championing the adoption of cutting-edge security standards and practices, ensuring our mobile platforms meet both internal and industry regulatory requirements. By applying More ❯
Ensure a framework and culture that ensures continuous improvement of platform health, compliance and resiliency. Oversee the implementation of best practices for system monitoring, incidentresponse, and problem resolution to ensure high availability and performance. Work with senior stakeholders to mature the concept of Site Reliability within the … services written within a modern OO language such as Java or Python Knowledge of languages such as PowerShell, C# Understand or worked within an Incident Management Process (ITSM) Desirable Requirements: AWS Linux - Debian, CentOS, Alpine and AWS Linux Terraform, Docker, Kubernetes, Git Observability/APM Platforms Jenkins, Nginx, MySQL More ❯
from you. What You’ll Be Doing Monitor & Detect: Identify and respond to security alerts from SIEM, IDS/IPS, EDR, and other tools. IncidentResponse: Investigate threats and escalate incidents, ensuring rapid containment and resolution. Threat Hunting: Proactively search for hidden threats and conduct forensic investigations. Lead More ❯
Portsmouth, England, United Kingdom Hybrid / WFH Options
Computappoint
cutting-edge technologies in a fast-paced, collaborative environment. What You’ll Do Lead 24/7 SOC operations, ensuring timely threat detection and incidentresponse Drive continuous improvement in SOC processes, playbooks, and performance metrics Manage, mentor, and grow a team of SOC Analysts and Security Specialists More ❯
Experience 2+ years of experience in business development, sales, or lead generation within the cyber security sector. Strong understanding of penetration testing, red teaming, incidentresponse, and cyber maturity assessments. Excellent communication skills, with the ability to simplify complex technical concepts and convey their business value to prospects. More ❯
Experience 2+ years of experience in business development, sales, or lead generation within the cyber security sector. Strong understanding of penetration testing, red teaming, incidentresponse, and cyber maturity assessments. Excellent communication skills, with the ability to simplify complex technical concepts and convey their business value to prospects. More ❯
portsmouth, hampshire, south east england, United Kingdom
Magnus & Wolf
Experience 2+ years of experience in business development, sales, or lead generation within the cyber security sector. Strong understanding of penetration testing, red teaming, incidentresponse, and cyber maturity assessments. Excellent communication skills, with the ability to simplify complex technical concepts and convey their business value to prospects. More ❯