24 of 24 Remote/Hybrid SOAR Jobs in London

Cyber Security Engineer - Assistant Vice President

Location
Greater London, England, United Kingdom
projects. Build and maintain tools for proactive detection, configuration drift monitoring and automated remediation. Security tooling integration and orchestration. Develop and implementation of SOAR capabilities that aligns with existing technology stack. Experience with KMS systems and methodologies. Identity based threat detection and prevention. Privileged Access and Session Management SIEM Management … security monitoring use cases and Threat hunting capabilities. Relevant industry certifications (e.g., AZ-500, SC-200, SC-900, CompTIA Security+) or similar Cert with Security Orchestration, Automation, and Response (SOAR) playbooks within Sentinel or other platforms. Scripting skills (PowerShell, Python) for automation and data manipulation. What Mizuho Can Offer ...

Security Engineer (Site Reliability Engineering) - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
Active SC Clearance. Technical Experience Experience with some of the following technologies would be advantageous: Security & Monitoring Splunk Enterprise Security SIEM & Security Analytics Platforms SOAR Technologies Identity & Access Management (IAM) Cloud & Infrastructure AWS Security Services Microsoft Azure Security Kubernetes Security Docker Security Terraform (Infrastructure as Code) Preferred Certifications The following ...

Senior security analyst - Sector security

Location
Greater London, England, United Kingdom
methodical approach to incident investigation and response. Experience & Knowledge Active Directory recovery and server recovery experience. Experience with security technologies such as SIEM, EDR, SOAR, IDS, WAF, DLP and DDoS mitigation platforms. Knowledge of vulnerability management and vulnerability scanning tools. Understanding of digital forensics principles and practices. Awareness ...

AI Security Consultant

Location
Greater London, England, United Kingdom
Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks. Experience with SOC operations, SIEM/SOAR platforms, detection engineering, threat intelligence or incident response. Knowledge of AI-enabled development platforms, agent frameworks, retrieval-augmented generation, model APIs, vector databases or automation/ ...

Senior Security Operations Engineer New London

Location
Greater London, England, United Kingdom
purple team experience. Experience with CNAPP, CSPM or exposure management platforms. Experience with eBPF or modern observability tooling. Experience implementing security automation using SOAR or similar orchestration platforms. Knowledge of policy-as-code and security governance. Familiarity with supply chain security and software integrity. Experience evaluating AI/LLM security ...

Senior Cyber Analyst

Location
Greater London, England, United Kingdom
technical effectiveness and continual improvement of Microsoft Sentinel, Microsoft Defender, SIEM, SOAR, EDR, and XDR capabilities. Develop and maintain detection rules, use cases, automation, and response playbooks to improve operational efficiency. Work with the Technical Architect to align security tooling, controls, and services with customer and organisational requirements. Technical Leadership … security technologies including Sentinel, Defender XDR, Defender for Endpoint, Defender for Cloud, Microsoft 365 Security, and Entra ID. Experience designing, tuning, and optimising SIEM, SOAR, EDR, and XDR solutions. Strong understanding of threat hunting, attack techniques, threat intelligence, and vulnerability management. Ability to translate technical findings and cyber risk into ...

Security Content Engineer

Location
Greater London, England, United Kingdom
and Logic Apps. Highproficiencyin Kusto Query Language (KQL), with proven experience writing complex, optimized queries for detection and hunting. Strong,demonstratedexperience automating security workflowsusing SOAR platforms, APIs, or scripting languages (Python, PowerShell). Proven ability tooperate with a high degree of autonomy, managing competing priorities and complex projects with minimal ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities …/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance. Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks. Own the vulnerability management programme (on‐prem ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities …/KPIs, escalation paths, continuous improvement plans, quality assurance, and commercial governance. Optimise security monitoring and response tooling working across technology teams (e.g., SIEM, SOAR, EDR/XDR, NDR, email security) including use‐case coverage, alert quality, automation, logging strategy, and operational runbooks. Own the vulnerability management programme (on‐prem ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
hybrid and multi-cloud environments. Automation, Agentic AI & Continuous Improvement Contribute towards automation of deception deployment, detection, investigation, and response workflows using Microsoft Sentinel SOAR, Logic Apps, and Microsoft Security Copilot. Define KPIs and metrics covering deception engagement, detection coverage, and response maturity. Continuously improve detection, hunting, and deception capabilities ...

Director of Cyber Defence

Hiring Organisation
Anson McCade
Location
London Area, United Kingdom
Experience with Defender for Endpoint, Defender for Identity, Defender for Office 365 and/or Defender for Cloud Apps. Strong understanding of SIEM, XDR, SOAR, detection engineering and threat hunting. Experience designing solutions across hybrid and multi-cloud environments. Proven ability to lead complex client engagements and solutioning opportunities. Strong ...

Regional Sales Manager, EMEA

Location
Greater London, England, United Kingdom
mentality who enjoys building new business. Ability to thrive in a fast-growing, high-velocity startup environment. Nice to have Experience selling AI, SecOps, SOAR, SIEM, XDR, or security operations platforms. Experience working with enterprise customers across the UK market. Experience partnering with MSSPs, channel partners, or strategic alliances. ...

Senior Security Analyst (L3 SOC Analyst)

Location
City Of London, England, United Kingdom
Conduct proactive threat hunting activities using threat intelligence, behavioural analytics and industry frameworks to identify previously undetected threats. Develop and enhance security automation and SOAR playbooks to improve operational efficiency, response capability and analytical effectiveness. Mentor and support SOC analysts while contributing to the ongoing maturity of detection engineering, incident … senior SOC environment, including working in an L3 analyst, incident response, threat hunting or detection engineering capacity. Deep technical knowledge of SIEM, EDR, SOAR, cloud security, identity security, endpoint security and enterprise monitoring platforms. Proven experience leading the investigation and response to complex cyber security incidents and acting ...

Senior Security Analyst (L3 SOC Analyst)

Location
Greater London, England, United Kingdom
Conduct proactive threat hunting activities using threat intelligence, behavioural analytics and industry frameworks to identify previously undetected threats.* Develop and enhance security automation and SOAR playbooks to improve operational efficiency, response capability and analytical effectiveness.* Mentor and support SOC analysts while contributing to the ongoing maturity of detection engineering, incident … senior SOC environment, including working in an L3 analyst, incident response, threat hunting or detection engineering capacity.* Deep technical knowledge of SIEM, EDR, SOAR, cloud security, identity security, endpoint security and enterprise monitoring platforms.* Proven experience leading the investigation and response to complex cyber security incidents and acting ...

Security Engineer - SIEM/XDR - London (Hybrid)

Hiring Organisation
Nova Source Technologies
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, London (Hybrid) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity to join a leading … security content and alert logic Security telemetry, logging pipelines, data quality and telemetry coverage improvement Cloud security engineering and scalable security architecture design Automation, SOAR, playbooks, enrichment workflows and response improvement Scripting/programming skills such as Python and PowerShell Infrastructure-as-code, CI/CD pipelines, version control and ...

Senior Cyber Detection and Response Engineer

Location
Greater London, England, United Kingdom
authoring and maintaining playbooks for the most significant incident types and owning clear, calm communication up to and including the CISO. Response automation – build SOAR-style automation to accelerate and standardise response, targeting automated first-actions for high-priority incidents and reducing manual triage so the team scales without proportional … Azure). Practical use of the MITRE ATT&CK framework to structure detection coverage and gap analysis. Hands-on experience building and operating SOAR playbooks and response automation, orchestrating across security tooling and ticketing. Proficiency in Python or an equivalent language for detection development, log parsing and automation, producing readable ...

PRINCIPAL SECURITY ENGINEER - UP TO £900 (OUTSIDE IR35) CONTRACT

Hiring Organisation
Secure Recruitment Ltd
Location
North London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £900 per day
/YAML; Git (or comparable Source-Control Platforms; Infrastructure-as-Code (Terraform or equivalent); CI/CD Tooling; Automated Configuration Management; Configuration Testing & Validation; Security Orchestration & Workflow Automation. You Do Not Need to be Full-Time Software Developer , but you should approach Security Technology as an Engineering Problem rather than … Enterprise Environments Experience of Hybrid Cloud & On-Premises Infrastructure AWS, Azure or other Major Cloud Platform Security Experience Experience Integrating Security Tooling with SIEM, SOAR, ITSM & Observability Platforms. Experience Designing or Implementing Zero Trust Architectures. Experience with Identity-Aware Segmentation & Workload Protection The Measure of Success will therefore be both ...

Security Operations Architect

Location
City Of London, England, United Kingdom
solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile, DevOps … Kanban delivery models KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps, NSD #J-18808-Ljbffr ...

Security Operations Architect

Hiring Organisation
Searchability NS&D
Location
City of London, London, United Kingdom
solution design and development for security operations Experience with Architecture Frameworks (ideally TOGAF) and developing HLD and LLD documents Technical expertise in SIEM and SOAR tooling, such as Google SecOps or similar Proficiency with EDR, XDR, and NDR tools like Crowdstrike or Microsoft Defender Experience working within Agile, DevOps … submit (subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS Security Operations Architect, Cyber Security, SIEM, SOAR, EDR, XDR, Solution Design, TOGAF, HLD, LLD, Google SecOps ...

Pre-Sales Solutions Consultant

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 per annum
This is a genuine opportunity to shape how a leading security operations practice takes its services to market — working across SIEM, EDR/XDR, SOAR, exposure management and email security, with an initial focus on Microsoft Defender and Microsoft Sentinel. The Role Reporting to the SecOps Solutions Architect … operations, detection and response Working knowledge of Microsoft Defender and Microsoft Sentinel Familiarity with at least two of: SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability management, exposure management or email security Confident presenter, comfortable engaging both technical and business stakeholders Strong written skills for proposals and technical documentation Full ...

Cyber AI Engineer - Remote

Hiring Organisation
CBSbutler Holdings Limited trading as CBSbutler
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £425/day
and knowledge retrieval Developing AI solutions using Python and modern AI frameworks Working with vector databases and retrieval technologies Integrating AI capabilities with SIEM, SOAR and wider cyber platforms Designing prompts and optimising LLM performance Building proofs-of-concept and technical prototypes Developing evaluation frameworks to test model performance, accuracy … development Vector databases and knowledge retrieval AI evaluation and model testing API integration and secure software engineering Cyber Security/SOC environments SIEM/SOAR technologies Rapid prototyping and PoC development You don't need to have done everything above. Strong practical GenAI engineering experience combined with an interest ...

Remote Incident Response Engineer: SIEM & SOAR Expert

Location
Greater London, England, United Kingdom
detections, and automation to safeguard data and drivers on our platform. Remote-friendly with opportunities to collaborate across teams; required skills include SIEM/SOAR, EDR/XDR like CrowdStrike, and cloud security with AWS and #J-18808-Ljbffr ...

SOC Lead SOC Manager London Hybrid £95k

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent
Salary
£90,000
understand requirements and design appropriate MSSP security solutions. Having a good understanding of how SOC services fit together with technologies such as SIEM, SOAR, EDR/XDR and threat intelligence. Helping shape the architecture and implementation of customer solutions, without needing to be the person configuring everything yourself. Identifying opportunities … improve automation, orchestration and use of technology. Supporting the implementation and adoption of SOAR and other automation capabilities. Working alongside other MSSP services such as Vulnerability Assessment, Vulnerability Management, MDR, SIEM and incident response . Improving processes, procedures, playbooks and operational standards. Developing and mentoring the existing SOC team, helping ...

SOC Lead SOC Manager London Hybrid £85k

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent
Salary
£85,000
understand requirements and design appropriate MSSP security solutions. Having a good understanding of how SOC services fit together with technologies such as SIEM, SOAR, EDR/XDR and threat intelligence. Helping shape the architecture and implementation of customer solutions, without needing to be the person configuring everything yourself. Identifying opportunities … improve automation, orchestration and use of technology. Supporting the implementation and adoption of SOAR and other automation capabilities. Working alongside other MSSP services such as Vulnerability Assessment, Vulnerability Management, MDR, SIEM and incident response . Improving processes, procedures, playbooks and operational standards. Developing and mentoring the existing SOC team, helping ...