251 to 275 of 363 SIEM Jobs in London

IT Operations and Security Lead

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Conduct regular security risk assessments, penetration tests, and vulnerability … Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding of firewalls, VPNs, SD-WAN, DNS security, endpoint protection, and cloud security controls. IT Service ...

Security Engineer, Detection Response

Location
Greater London, England, United Kingdom
Monitor and respond to security alerts across multiple channels, including managed SOC escalations. Maintain visibility and logging infrastructure, ensuring effective SIEM (Security Information and Event Management) operations. Support security audits for PCI, SOC2, ISO, and other compliance frameworks, gathering evidence and collaborating with Engineering, GRC and the broader Security Division. … configuration, and management), GitHub administration best practices, and internal security tooling to strengthen Vercel's overall security framework About You: Extensive experience in security operations, including SIEM management, security logging, and detection engineering. Strong knowledge of AWS infrastructure and cloud security best practices. Experience with GitHub administration and security controls. ...

District Sales Manager, Cortex & Cloud - Ireland & UK Public Sector

Hiring Organisation
Palo Alto Networks
Location
London, UK
Employment Type
Full-time
high-growth environment with large quota/dealsStrong understanding of complex solution sales methodologies, value selling and enterprise buying processes with operational disciplineExperience selling SIEM, EDR, or CNAPP (DevSecOps, CloudOps) solutions is highly preferredEstablished relationships with key security decision-makers (CIOs, CISOs) and the ability to drive strategic conversationsExpertise ...

CyberArk Engineer

Location
London, United Kingdom
ensuring resolution within agreed SLAs. Troubleshoot issues across the CyberArk platform, including Vault, CPM, PSM, PVWA, Entra ID integrations, MFA solutions, and SIEM integrations. Perform root cause analysis and manage escalations with CyberArk support where required. Support privileged account onboarding and offboarding, safe administration, policy management, and access reviews. Carry ...

Identity Access Management Architect Engineer Cyber Consulting

Location
Greater London, England, United Kingdom
Defining the system specifications to support optimal performance. Integrating workflows with third-party systems and security tools, such as Security Information and Event Management (SIEM) solutions, multi-factor authentication solutions, and cloud platforms like Amazon Web Services (AWS) and Azure. Defining the Responsible, Accountable, Consulted, and Informed (RACI) matrix ...

Product Reliability Engineer - APM

Location
Greater London, England, United Kingdom
expensive indexing or hot storage. We specialize in comprehensive monitoring of logs, metrics, traces, and security events with features such as APM, RUM, SIEM, Kubernetes monitoring, and more, enhancing operational efficiency and reducing observability spending by up to 70%. We seek a Product Reliability Engineer who ensures that ...

Account Executive

Location
City Of London, England, United Kingdom
action and decision while maintaining focus on achieving optimal outcomes as part of a collaborative development effort. Experience in enterprise security solutions (endpoint, SIEM, networking, etc). Seasoned with financial services sales (banking) or BFSI market. Team Player, Competitive, Optimistic, Enthusiastic, Trust Builder. #J-18808-Ljbffr ...

Senior SOC Shift Lead - 24/7 Incident Response

Location
Greater London, England, United Kingdom
years of experience in SOC or Incident Response and hold a relevant Bachelor’s degree. Key skills include in-depth knowledge of SIEM/EDR tools and strong analytical capabilities. The position requires working in shifts and provides competitive compensation. #J-18808-Ljbffr ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
and maintain detection coverage for cloud‐native threats (privilege escalation, unusual API activity, lateral movement, data exfiltration, and more). Leverage CloudTrail, GuardDuty, and SIEM integrations to maintain visibility across the AWS estate. Align detection logic with MITRE ATT&CK for Cloud. Vulnerability & Configuration Management: Own vulnerability management for cloud … and integrating security scanning into CI/CD workflows. Good experience with container and image security - scanning, runtime protection, supply chain risk. Experience with SIEM and detection engineering - building and tuning cloud‐native detection rules, threat hunting across CloudTrail and application logs. Familiarity with automation platforms and AI‐driven security ...

Senior Security Engineer

Hiring Organisation
Docebo
Location
London, United Kingdom
Salary
£ 70 K
and maintain detection coverage for cloud-native threats (privilege escalation, unusual API activity, lateral movement, data exfiltration, and more). Leverage CloudTrail, GuardDuty, and SIEM integrations to maintain visibility across the AWS estate. Align detection logic with MITRE ATT&CK for Cloud.Vulnerability & Configuration Management: Own vulnerability management for cloud workloads … Terraform, CloudFormation) and integrating security scanning into CI/CD workflows.Good experience with container and image security — scanning, runtime protection, supply chain risk.Experience with SIEM and detection engineering — building and tuning cloud-native detection rules, threat hunting across CloudTrail and application logs.Familiarity with automation platforms and AI-driven security tools ...

IT Operations & Cyber Lead

Location
Greater London, England, United Kingdom
and access provisioning in partnership with ITSM. Implement, operate and continually improve cyber defences across endpoints and SaaS platforms: vulnerability management, EDR/SIEM, and incident response. Manage vendors and core infrastructure partners, ensuring cost-effective delivery, timely patching, and contract governance. Maintain secure, high-performance connectivity for offices, labs … Okta or similar) Endpoint Management (Intune, Jamf, or similar) Corporate Networking (LAN/Wi-Fi/VPN/firewalls) Cyber Security Operations (EDR, SIEM, vulnerability management, incident response) Demonstrated ability to define and enforce standards and processes that combine agility with control. Strong vendor and stakeholder-management capability. Excellent communication ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
and benefits.Why This Role is ExcitingHigh autonomy: Lead projects from idea to deploymentInnovation-driven: Develop cutting-edge detections beyond standard SIEM rulesCollaborative: Work closely with internal teams and an outsourced SOC partnerMission-focused: Protect critical healthcare data that supports precision medicineKey ResponsibilitiesDesign and develop threat-led detections using threat intelligence … Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Employment Businesses Regulations 2003.Keywords: Cyber Threat Engineer, Detection & Response Engineer, SIEM Engineer, Security Detection Engineer,T hreat Hunting Engineer, Security Automation Engineer, SOC Engineer, Incident Response Engineer, Cloud Security Engineer, Network Security Engineer, Cybersecurity Analyst (Threat ...

GreyMatter Specialist

Location
Harrow, England, United Kingdom
uncommon? (not required) Certifications such as Network+, Security+, CySA+ 1-3 years' experience as a Security/Network Administrator or equivalent knowledge Prior SIEM experience and/or administration Hands‐on experience with parsing data, log formats, regular expressions Scripting experience (bash, PowerShell, python) Multiple OS experience (mac, windows) Knowledge … various security methodologies and processes, and technical security solutions (SIEM, IDS/IPS, Firewall Solutions, Offensive Security tools) #J-18808-Ljbffr ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
with strong monitoring, analysis, and incident triage capabilities within a Security Operations Centre environment. SOC Analyst - Key Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate … Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred) Strong knowledge of SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or ArcSight Understanding of network protocols, attack techniques, and cyber threat methodologies Experience investigating security incidents across Windows and ...

Senior Security Architect - SecOps and Vulnerability Management

Location
Greater London, England, United Kingdom
globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities: Design, scale, and manage the enterprise SIEM architecture to provide centralized visibility and high-fidelity threat detection across all corporate and cloud infrastructure. Develop and influence advanced SIEM correlation rules, custom data … testing, remediation quality, and traceability/auditability in line with resiliency expectations. Required Qualifications, Capabilities, and Skills: Hands‐on experience advising and influencing enterprise SIEM platforms (e.g., Microsoft Sentinel, Splunk, Chronicle/SecOps). Must be proficient in writing/reviewing advanced detection logic (KQL, SPL, or YARA rules). ...

Security Monitoring & Detection Engineering Lead

Location
Greater London, England, United Kingdom
Detection Engineering, translating CDO priorities into a clear roadmap for monitoring, detection, investigation and response. Lead the architecture, engineering and continued development of our SIEM solution, ensuring the SIEM remains resilient, scalable, cost-effective and aligned with AJ Bell’s technology estate and threat profile. Define and govern the onboarding … risks and capability constraints to the Head of Cyber Defence Operations, providing clear recommendations and action plans. Skills & Experience Extensive experience across security monitoring, SIEM engineering, detection engineering and incident response within a complex enterprise environment. A strong record of designing, building, operating and evolving Microsoft Sentinel as a production ...

Security Platform Engineer, UK Security Operations

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP).Develop and implement security monitoring and logging strategies. Investigate and analyse security incidents, including identifying root causes, determining … detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. Experience in contributing to security-focused open-source projects or internal security platform tooling. As a part of the UK Security ...

Information Security Manager with Network Engineering Skills

Hiring Organisation
Nexus Jobs
Location
London, UK
Employment Type
Full-time
similar)Cyber Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonusHost End Point Protection (Symantec)Host IPSPreferred Skills and KnowledgeVulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using … and disadvantagesSecurity Zone Design and considerationsNetwork and Security Architecture Design and ConsiderationsUnderstanding of Information Security (Confidentiality, Integrity, Availability), MITRE ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etcRisk Management in Cyber Security, SSL Blind spots, what causes them and how to mitigateMalware/Ransomware and ...

Security Platform Engineer, UK Security Operations

Location
Greater London, England, United Kingdom
detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. Experience in contributing to security-focused open-source projects or internal security platform tooling. About the job As a part … ensure security incidents can be swiftly resolved. Responsibilities Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP). Develop and implement security monitoring and logging strategies. Investigate and ...

Lead Security Architecture & SOC Transformation

Location
Greater London, England, United Kingdom
protective monitoring and SOC transformation engagements across enterprise environments. The role demands progression through architecture, engineering, SOC or consultancy roles and delivering enterprise-scale SIEM, EDR/XDR and managed security service changes. The successful candidate will own engagements from discovery and target-state design through migration, assurance and service ...

Security Operations Center (SOC) Analyst

Location
Greater London, England, United Kingdom
cybersecurity threats. The job description for a SOC Analyst typically includes the following elements: Key Responsibilities: Continuously monitor security alerts from various sources (SIEM, IDS/IPS, firewalls, antivirus, etc.). Analyze security incidents and events to identify potential threats and vulnerabilities. Use threat intelligence to understand and anticipate cyber … management. Stay up to date with the latest cybersecurity threats, trends, and technologies. Skills and Qualifications: Proficiency with security information and event management (SIEM) systems. Experience with intrusion detection/prevention systems (IDS/IPS), firewalls, and antivirus software. Familiarity with network protocols, operating systems, and security architectures. Strong analytical ...

SOC Transformation Principal Consultant, XSIAM Deployment

Location
City Of London, England, United Kingdom
scale SOC modernization. You will guide customers through log migration, detection strategy development, and transformation programs in dynamic enterprise settings. With 10+ years in SIEM/security analytics and 8+ years in SOC tooling, you will partner with executives, sculpt roadmaps, and mentor high-performing teams to deliver measurable security ...

Blockchain Cyber Intelligence Vice President

Location
City of Westminster, England, United Kingdom
including network security, malware analysis, threat hunting, threat intelligence production, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem ...

Blockchain Cyber Intelligence Vice President

Location
Greater London, England, United Kingdom
including network security, malware analysis, threat hunting, threat intelligence production, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem ...

Security Architect - Microsoft Security

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
security capabilities, including: Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps) Microsoft Entra ID (P2), Conditional Access and identity protection Microsoft Sentinel (SIEM integration) Microsoft Purview Strong experience designing and implementing Microsoft Purview capabilities, including DLP, Information Protection, Insider Risk and eDiscovery Strong understanding of Zero Trust architecture principles, particularly … identity-driven security models Experience deploying and operating Defender and SIEM capabilities, integrated within a wider security ecosystem Experience conducting security design reviews and translating policy into practical controls Experience performing risk assessments aligned to recognised methodologies Strong understanding of cloud security concepts across IaaS, PaaS and SaaS, particularly within ...