for security solutions, ensuring alignment with enterprise architecture andsecurity policies. Design and architect solutions across various security domains including: Data Loss Prevention (DLP) SecurityInformationandEventManagement (SIEM) Identity and Access Management (IAM) Endpoint Detection and Response (EDR), MDM, and Endpoint Management tools Cloud and On-Prem Security Solutions Collaborate with stakeholders such as IT operations, application teams … documentation. Maintain up-to-date knowledge of emerging security threats and best practices to continuously enhance solution designs. Qualifications - Proven experience designing security solutions across multiple domains including DLP, SIEM, IAM, and Endpoint Security. Bachelor's degree in computer science, Cybersecurity, Information Systems, or related field (master's preferred). Experience in cybersecurity with 3+ years in a security architect More ❯
and have a solid background in Cyber Security Engineering working within a high-threat government environment, with the following skills and experience: Proficiency in SecurityInformationandEventManagement (SIEM), including tools such as Splunk, Defender, Sentinel, ELK, and Tenable Threat Modelling System solutions, as well as with IDS/IPS and vulnerability scanners. Experience in Protective Monitoring & SOC operation More ❯
days on, 4 days off rotation. RESPONSIBILITIES: • Triage security events and employ a methodical and coherent response to security incidents adopting playbooks where necessary.• Competently operate a chosen SIEM (e.g. Splunk/QRadar/LogRhythm) for incident investigations, or for the development of monitoring dashboards.• Utilise playbooks, existing knowledge and accurate online resources for guidance when responding to incidents.• Utilise … attacks.• Stay up to date with current vulnerabilities, attacks, and countermeasures.• Identify, respond and remediate cyber events generated through monitoring technologies. EXPERIENCE: • Preferred experience with operating or administrating a SIEM (e.g. Splunk/QRadar/LogRhythm).• Solid understanding of networks including the TCP/IP stack, typical organisation architectures, and common protocols abused by malware.• Experience in securityevent … paced and demanding environment while remaining calm.• Strong verbal and written communication and collaboration skills.• Security industry specific and core technical accreditations such as OSCP, GIAC, CCNA.• Certification demonstrating SIEM operational competences.• Proficient with one or more programming languages (e.g. Python, PowerShell, Java, C#).Join us and be part of a team that values innovation, quality, and continuous improvement. If More ❯
recommending enhancements where appropriate Key Requirements: Circa 5 years’ experience in a related IT role, with strong exposure to security operations Hands-on experience managing security products such as SIEM, TVM and PAM platforms CISSP certification (mandatory) Experience working with and overseeing outsourced security functions Strong technical skills across the E5/Microsoft 365/Defender suite Familiarity with technologies … such as SIEM, PAM, Endpoint Protection, EDR, IPS/IDS, MFA, Encryption and Next Gen Firewalls Experience supporting cyber securityevent triage, incident response and recovery Strong knowledge of operational securitymanagementand tooling This role offers the chance to work in a highly regulated, security-focused environment with genuine breadth across cloud, infrastructure and applications. You will gain exposure More ❯
informationsecurity strategy. Lead and mentor a small team of IT security professionals. Own ISO 27001 implementation and Cyber Essentials Plus certification. Manage operational security: endpoint protection, M365 security, SIEM/SOC, vulnerability management, and incident response. Lead security projects. Build strong relationships with stakeholders and deliver security awareness training. What We’re Looking For: Proven experience in informationsecurity … management, ideally in professional services. Hands-on experience with ISO 27001 and Cyber Essentials Plus. Strong technical knowledge: endpoint security, M365/Entra ID, SIEM, network security, encryption, backup/recovery. Certifications highly desirable: CISM, CISSP, ISO 27001 Lead Implementer . Excellent communicator, strategic thinker, and supportive team leader. Why Apply: This is your chance to shape the security strategy More ❯
and maintain positive working relationships with them Pre-requisites: Experience of more than 12 years in advanced security technologies Strong security professional skilled in SecurityInformationandEventManagement (SIEM), Vulnerability ManagementandSecurity Intelligence, IDAM, Digital Rights Management (DRM), Anti-APT, Data Leak Prevention (DLP), Phishing simulation tools etc Experience in managing P1 incidents Experience in managing shift roster More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Opus Recruitment Solutions Ltd
Month Initial | Inside IR35 | Fully Remote Opus are working with a key client on a Security Engineer contract to support the implementation of Defender XDR including hands on configuration, SIEM integration and related security solutions. This initial 3-month contract can be completed on a fully remote basis and is determined as Inside IR35, offering £500–£525 per day. Key … Skills : Microsoft Defender XDR: Endpoint, Identity, Office 365, Cloud Apps Microsoft Sentinel: KQL, playbook development, SIEM optimisation Privileged Identity Management (PIM) and change control workflows Advanced threat detection, incident response, and threat hunting Log collection via Azure Monitoring Agent and Firewall Management Centre Responsibilities: Configure and fine-tune Microsoft Defender XDR in line with approved designs Participate in Microsoft FastTrack … engagements Integrate Defender XDR with Sentinel SIEM for enhanced detection and response Develop Kusto queries and automation playbooks Support PoC setup for Microsoft Copilot for Security Connect syslogs from on-prem servers and firewalls to Sentinel If this Security Engineer role sounds like a good fit, please apply with your most up to date CV and I’ll be in More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Context Recruitment Limited
controls supporting risk mitigation and contributing to the continual improvement of the business's security composure. Responsibilities: * Provide expertise on application, network and infrastructure security * Monitor security solutions including SIEM, threat detection and data security, endpoint protection, network analytics for alerts * Provide documentation for technical standards to meet corporate security policies/industry best practice * Perform security reviews, identify gaps … root cause of security issues and design appropriate solutions Required Experience: * Prior experience working within the security industry, with a strong background in M365 infrastructure. * Experience of working with SIEM tools * Exposure to email security tools (Sophos, O365 etc) * Excellent patch management skills (Intune SCCM, MECM Endpoint Manager and WSUS) * Experience with vulnerability scanning andmanagement (Insight VM) * Experience with More ❯
landscape. Key Responsibilities: Design and deliver Microsoft 365 and Azure security solutions in line with best practices and industry standards. Implement and configure tools such as Microsoft Defender, Sentinel (SIEM/XDR), Entra, and Purview. Support internal and client environments post-deployment through troubleshooting, optimisation, and user training. Contribute to pre-sales engagements, including solution design, scoping, and client presentations. … relevant areas - Azure (AZ), Security (SC), Power Platform (PL), Modern Work (MS), or Copilot/AI. Strong consulting experience in the design and implementation of Microsoft Defender solutions andSIEM/XDR. Technical, hands-on expertise configuring and deploying Azure, Entra, and Purview. Proven ability to independently design and implement Microsoft 365 security technologies. Excellent communication, presentation, and documentation skills More ❯
landscape. Key Responsibilities: Design and deliver Microsoft 365 and Azure security solutions in line with best practices and industry standards. Implement and configure tools such as Microsoft Defender, Sentinel (SIEM/XDR), Entra, and Purview. Support internal and client environments post-deployment through troubleshooting, optimisation, and user training. Contribute to pre-sales engagements, including solution design, scoping, and client presentations. … relevant areas - Azure (AZ), Security (SC), Power Platform (PL), Modern Work (MS), or Copilot/AI. Strong consulting experience in the design and implementation of Microsoft Defender solutions andSIEM/XDR. Technical, hands-on expertise configuring and deploying Azure, Entra, and Purview. Proven ability to independently design and implement Microsoft 365 security technologies. Excellent communication, presentation, and documentation skills More ❯
and policy enforcement. Define and measure KPIs, SLAs, and success metrics (e.g., threat coverage, latency impact, policy adherence). Ensure integration of SSE tools with identity providers (Azure AD), SIEM platforms (e.g., Splunk), and DevSecOps pipelines. Support change, readiness, and adoption across business and technical teams. Manage security vendor relationships and roadmap alignment during evaluation and rollout. Drive delivery in … Gatekeeper, Apigee, etc. a plus. ? Nice to Have Cloud certifications (Azure, AWS, GCP) Experience working in regulated environments (e.g., finance, government) SAFe Agile or Scrum certifications Prior experience with SIEM/SOAR integration, API security, or Identity Governance ?? Why Join Us Play a key role in shaping enterprise-wide secure access architecture Work with a forward-thinking, cross-functional securityMore ❯
and policy enforcement. Define and measure KPIs, SLAs, and success metrics (e.g., threat coverage, latency impact, policy adherence). Ensure integration of SSE tools with identity providers (Azure AD), SIEM platforms (e.g., Splunk), and DevSecOps pipelines. Support change, readiness, and adoption across business and technical teams. Manage security vendor relationships and roadmap alignment during evaluation and rollout. Drive delivery in … Gatekeeper, Apigee, etc. a plus. Nice to Have Cloud certifications (Azure, AWS, GCP) Experience working in regulated environments (e.g., finance, government) SAFe Agile or Scrum certifications Prior experience with SIEM/SOAR integration, API security, or Identity Governance Why Join Us Play a key role in shaping enterprise-wide secure access architecture Work with a forward-thinking, cross-functional securityMore ❯
with the Cybersecurity Operations Centre (CSOC) and senior stakeholders to transition tools, operations, and people into a new operating model . Familiarity with security processes and tools such as SIEMand Microsoft Sentinel is essential. Location: London ( Hybrid - 1 day/week) Contract Length: Initial 3 months Rate: TBC (inside IR35) Start: ASAP Key Responsibilities Manage the transition of security … governance. Skills & Experience A strong understanding of security operations, frameworks and terminology is essential. Experience with CSOC is essential. Proven track record in operating model transitions . Familiarity with SIEM tools and Microsoft Sentinel . Excellent stakeholder management skills at senior levels. Telco industry experience. Experience in large-scale security programs. If you're interested in this role, click 'apply More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Hays Specialist Recruitment Limited
with the Cybersecurity Operations Centre (CSOC) and senior stakeholders to transition tools, operations, and people into a new operating model . Familiarity with security processes and tools such as SIEMand Microsoft Sentinel is essential.Location: London ( Hybrid - 1 day/week) Contract Length: Initial 3 months Rate: TBC (inside IR35) Start: ASAP Key Responsibilities Manage the transition of security tools … governance. Skills & Experience A strong understanding of security operations, frameworks and terminology is essential. Experience with CSOC is essential. Proven track record in operating model transitions . Familiarity with SIEM tools and Microsoft Sentinel . Excellent stakeholder management skills at senior levels. Telco industry experience. Experience in large-scale security programs. If you're interested in this role, click 'apply More ❯