Security Operations Consultant
- Location
- Belfast City District, Northern Ireland, United Kingdom
identifying gaps across people, processes and technology and translating these into practical improvements. Advise on the evolution and optimisation of SIEM, SOAR, EDR and threat‐detection tooling to improve visibility, reduce noise and strengthen detection and response capabilities. Develop and maintain incident playbooks, standard operating procedures, automated … SIEM and security analytics platforms, such as Microsoft Sentinel and Splunk. SOAR and security automation technologies used for enrichment, triage and response orchestration. Endpoint Detection and Response (EDR/XDR) platforms, such as Microsoft Defender for Endpoint and CrowdStrike Falcon. Threat intelligence, detection engineering, investigation and incident ...