maturity of SIEM, SOC, and EDR capabilities while actively addressing emerging threats and vulnerabilities. The security engineer will also play a critical role in incidentresponse, compliance, and implementing innovative security technologies to strengthen the organisation's defenses. Essential functions of the job: SOC operations: perform incident triaging, threat detection, and response activities. SIEM & EDR management: advance and configure SIEM and EDR systems to optimise threat detection and response in Azure environments. Incidentresponse: investigate and mitigate security incidents, applying root cause analysis and remediation. Security testing: conduct regular application and network More ❯
of secure coding practices and DevSecOps methodologies across product engineering squads. Establish and manage robust cloud security frameworks that safeguard sensitive data and applications. IncidentResponse and Disaster Recovery Develop, implement, and test Cybersecurity IncidentResponse Plans (CSIRP) and Disaster Recovery Plans (DRP). Lead the … response to cybersecurity incidents, ensuring rapid containment and recovery. Conduct post-incident analysis along with the incident team to identify root causes and enhance defenses. Third-Party Security and Due Diligence Conduct risk assessments and due diligence on third-party vendors and partners. Establish and enforce third … fintech or technology sectors. Demonstrated success in building security awareness programs and fostering decentralized accountability. Expertise in security operations, cloud security, application security, and incident response. Relevant certifications such as CISSP, CISM are highly desirable. Strong knowledge of security frameworks (e.g., NIST, CIS, ISO 27001) and compliance standards (e.g. More ❯
for our blockchain network, infrastructure, and applications. Protocol & Network Security: Oversee and enhance security for consensus mechanisms, cryptographic algorithms, and network integrity. Threat Detection & IncidentResponse: Design and implement real-time monitoring, detection, and response frameworks to mitigate security threats and vulnerabilities. Smart Contract Security: Collaborate with … testing, and continuous security assessments. Blockchain & Web3 Security Trends: Stay updated with the latest security threats, attack vectors, and solutions in the blockchain industry. Incident Management & Crisis Response: Develop and oversee a structured approach for incidentresponse, including forensic investigation and post-mortem analysis. Collaboration: Build More ❯
for our blockchain network, infrastructure, and applications. Protocol & Network Security: Oversee and enhance security for consensus mechanisms, cryptographic algorithms, and network integrity. Threat Detection & IncidentResponse: Design and implement real-time monitoring, detection, and response frameworks to mitigate security threats and vulnerabilities. Smart Contract Security: Collaborate with … testing, and continuous security assessments. Blockchain & Web3 Security Trends: Stay updated with the latest security threats, attack vectors, and solutions in the blockchain industry. Incident Management & Crisis Response: Develop and oversee a structured approach for incidentresponse, including forensic investigation and post-mortem analysis. Collaboration: Build More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Action For Humanity
Endpoint, Defender for Cloud Apps) for advanced threat protection. Strengthen cloud security posture by managing security configurations across Microsoft Azure environments. 3. Security Automation & IncidentResponse Automate security workflows with Power Automate, Power Apps, and Microsoft Defender XDR. Deploy Microsoft Sentinel (SIEM) for threat detection, log analysis, and … incident response. Establish incidentresponse playbooks and conduct forensic investigations when needed. 4. Compliance & Risk Management Ensure adherence to ISO 27001, NIST, GDPR, and CIS Benchmarks. Conduct risk assessments, vulnerability scans, and security audits. Define data protection, backup, and retention policies aligned with Microsoft 365 compliance tools. More ❯
of experience in designing, analyzing, and troubleshooting distributed systems, and 2 years of experience leading projects and providing technical leadership. Experience in SRE or incident management/response environments. Preferred qualifications: Experience working in computing, distributed systems, storage, or networking. Experience in telemetry systems, incident and risk … up and running, ensuring our users have the best and fastest experience possible. Responsibilities Ensure Google Cloud Platform (GCP) stability and reliability through critical incident support, while driving high-quality customer outcomes and continuous cross-GCP team collaboration. Create training, end-to-end processes for incident management life … cycle and partnering with Cloud Support leadership team. Build systems and tooling to support IncidentResponse team improve visibility into state of Cloud, detection of large-scale issues, communications to customers, stakeholders and customer facing teams. Define and escalate risks in Cloud, reduce Major incident probabilities with More ❯
represent information security being able to interpret technical design and how information security best practices should be applied. Also be able to lead with incident management investigations and conduct risk and vulnerability assessments where appropriate. Key Accountabilities & Responsibilities Role Accountabilities Conduct risk and vulnerability assessments to identify and mitigate … information security within projects ensure best practice is adhered to. Coordinate across departments to ensure risk is managed through compressive security measures and polices Incidentresponse and management – lead and participate in complex incident investigations Develop and maintain cyber incidentresponse plans and playbooks. Conduct … post-incident reviews and implement lessons learnt to improve the organisation’s security posture Requirements: Either Technical Operations Security experience with an interest to work within a governance role or experience working in a Security Governance role Ability to assess system controls based on a documented standard Will be More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Cyber Talent Limited
enforce security policies, standards, and guidelines. Collaborate with the Compliance Manager/CISO to ensure adherence to regulatory requirements (e.g., GDPR, ISO 27001). IncidentResponse and Management: Establish and maintain incidentresponse plans and procedures. Lead technical response efforts during security incidents or breaches. … Conduct post-incident analyses to prevent future occurrences. Collaboration: Promote a security-aware culture across the organization. Engage with stakeholders to communicate security strategies and risks effectively. Continuous Improvement: Stay abreast of emerging security threats, trends, and technologies. Proactively identify opportunities to enhance security architecture and processes. Lead initiatives … to improve security monitoring, detection, and response capabilities. Qualifications and Experience: Professional Experience: Minimum of 2 -5 years experience in information security. Proven hands-on experience with DevSecOps practices and tools. Familiarity with cloud security architectures (AWS). Technical Skills: understanding of security principles, protocols, and standards. Proficiency with More ❯
Risk, Compliance Consultant who can lead a variety of customer engagements, including building security strategies and roadmaps, architecture design and implementation support, technical assessments, incidentresponse, and security control implementation support. You will work with AWS sales, engineering, training & certifications, and support teams as well as partners to … in the design/implementation in multiple areas of cyber security, such as identity and access management, infrastructure security, data security, application security, or incident detection and response. You've been hands-on as a software developer, system administrator, network engineer, or systems architect and have experience leading larger … more of the following areas (application security, identity and access management/data protection/infrastructure security such as networks/logging and monitoring, incident detection and response). - Business level Korean reading, document writing, and conversation skills with customers, partners, and colleagues including other departments. - Conversational English More ❯
and strategies to senior leadership and board members. Establish, build and maintain strong partnerships with specialist cybersecurity organisations to enhance our cybersecurity posture and incidentresponse capabilities. Security Operations & Engineering Develop, implement, and oversee enterprise-wide security operations to detect, prevent, and respond to cyber threats. Lead and … enhance Security Information and Event Management (SIEM) and Threat Intelligence capabilities. Lead security incidentresponse and forensic investigations, ensuring robust incident handling and mitigation. Report on cybersecurity KPIs and manage significant IS risks and their appropriate Risk Treatment Plans. Risk & Compliance Management Define and enforce IT security … frameworks: ISO 27001, NIST, CIS, SOC 2, GDPR, GXP, etc. Experience in cloud security Proficient in threat modeling, penetration testing, vulnerability management, and security incident response. Demonstrated ability to build security teams and drive cybersecurity initiatives from scratch. Experience in supporting organisations through security accreditation processes. Strong ability to More ❯
to make a real impact by ensuring the integrity and resilience of the company’s IT environment against evolving cyber threats. Key Responsibilities: Support incident management and security response efforts, providing expertise to address and resolve security incidents quickly and effectively. Perform regular security checks, including daily, weekly … Security solutions and network security operations. Understanding of security testing principles, including vulnerability scanning, risk identification, and mitigation. Knowledge of security auditing and security incidentresponse processes. Experience with event and log analysis to monitor and assess security risks. Solid understanding of Disaster Recovery (DR) and Business Continuity … apply now. Keywords: Information Security Consultant, IT Security Consultant, Cybersecurity Specialist, Microsoft O365 Security, Enterprise Security Jobs, Information Security Leeds, IT Risk Management, Security IncidentResponse, Vulnerability Management, ISO 27001, GDPR Compliance, Security Awareness, Disaster Recovery and Business Continuity. More ❯
developing and conducting security awareness programs to educate staff on best practices and emerging threats. Bonus Experience It'll also be awesome if you: IncidentResponse : Have experience in developing and executing incidentresponse plans, including conducting post-incident analyses and implementing improvements. Certifications : Hold More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Nottingham Building Society
multi-factor authentication (MFA), and identity federation for staff and partners. Documentation and Improvement: Maintain and improve access governance documentation and identity management processes. IncidentResponse: Help with incidentresponse and troubleshooting of identity-related issues. About you: Tool Proficiency: Working knowledge of identity governance and More ❯
multi-factor authentication (MFA), and identity federation for staff and partners. Documentation and Improvement: Maintain and improve access governance documentation and identity management processes. IncidentResponse: Help with incidentresponse and troubleshooting of identity-related issues. About you: Tool Proficiency: Working knowledge of identity governance and More ❯
multi-factor authentication (MFA), and identity federation for staff and partners. Documentation and Improvement: Maintain and improve access governance documentation and identity management processes. IncidentResponse: Help with incidentresponse and troubleshooting of identity-related issues. About you: Tool Proficiency: Working knowledge of identity governance and More ❯
multi-factor authentication (MFA), and identity federation for staff and partners. Documentation and Improvement: Maintain and improve access governance documentation and identity management processes. IncidentResponse: Help with incidentresponse and troubleshooting of identity-related issues.About you: - Tool Proficiency: Working knowledge of identity governance and privileged More ❯
ISO3001, NIST, GDPR, etc.). Vendor Management: Evaluate, select, and manage relationships with third-party vendors and contractors who supply security solutions and services. IncidentResponse Planning: Develop and maintain incidentresponse strategies and procedures in collaboration with the security operations team. Training & Awareness: Provide guidance More ❯
cloud infrastructure for clients and internal operations. Automate AWS infrastructure builds following CIS hardening standards . Ensure top-tier security configuration, access management, and incidentresponse on cloud platforms. Operational Support & IncidentResponse: Support business-critical Windows and Linux-based environments. Monitor and respond to security … IAM, endpoint security, threat management). DevOps & IT Service Management (ITSM): Experience with Jira (Atlassian automation), ServiceNow, or other ITSM platforms . Understanding of incident management processes and security KPIs. Networking & Compliance: Strong knowledge of network security protocols, vulnerability management, and firewalls . Proven experience in security compliance frameworks More ❯
cloud infrastructure for clients and internal operations. Automate AWS infrastructure builds following CIS hardening standards . Ensure top-tier security configuration, access management, and incidentresponse on cloud platforms. Operational Support & IncidentResponse: Support business-critical Windows and Linux-based environments. Monitor and respond to security … IAM, endpoint security, threat management). DevOps & IT Service Management (ITSM): Experience with Jira (Atlassian automation), ServiceNow, or other ITSM platforms . Understanding of incident management processes and security KPIs. Networking & Compliance: Strong knowledge of network security protocols, vulnerability management, and firewalls . Proven experience in security compliance frameworks More ❯
culture. About the Role You will be responsible for configuring and managing our security systems, monitoring security events, analysing potential security incidents, and coordinating incidentresponse activities to protect our organisation's assets. KEY RESPONSIBILITIES Act as a primary point of contact for security incidents and alerts detected … forensic investigations, and implement remediation actions to contain and mitigate risks. Maintain and optimise security monitoring tools and technologies to ensure effective detection and response capabilities. Collaborate with IT and engineering teams to implement security best practices and ensure compliance with security policies and standards. Review existing systems to … conforms to security best practices. SKILLS, KNOWLEDGE & EXPERIENCE Proven experience in a SOC or security operations role, with hands-on experience in security monitoring, incidentresponse, and threat detection. Strong understanding of network security principles, protocols, and technologies (firewalls, IDS/IPS, SIEM, etc.). Experience with security More ❯
Senior Security Engineer, Detection and Response London, UK Please note this is for London, UK. You only need to apply to one location if there are multiple listed for the job. At Ripple, we're building a world where value moves like information does today. Through our crypto solutions … help us achieve this mission by actively working to protect our staff, company, and the larger crypto communities we engage with. Ripple's Detection & Response team defends against internal and external threats across our company and services. To accomplish this, we are building data pipelines and detections, automating incidentresponse, and developing leading-edge solutions to collect and analyze data in both security incidents and investigations. As a Detection and Response Engineer, you will build and grow your career in all of these areas. WHAT YOU'LL DO: Help lead the overall detection and responseMore ❯
Plymouth, Devon, South West, United Kingdom Hybrid / WFH Options
Inspire People
equivalent, or you can showcase significant experience in an IT domain. As an excellent communicator, you thrive in collaborative team environments. Your expertise includes IncidentResponse, where you have led technical investigations and developed response frameworks. You are proficient with Security Information and Event Management (SIEM) systems … Experience in configuring and maintaining SIEM tooling including operating procedures and playbook Utilisation of Cyber Threat Intelligence within a Security Operations context Experience in IncidentResponse, particularly in leading on technical investigations and response frameworks and procedures Ability to manage technical risk and lead on implementing appropriate More ❯
mapping. Oversee the information security training and awareness programme, ensuring it reflects both regulatory obligations and operational realities. Maintain up-to-date security documentation, incident logs, audit records and policy registers. Preparedness & IncidentResponse Lead and continuously improve the company's incidentresponse framework, including More ❯
e.g., ISO 22301, DORA). Direct regular security audits, risk assessments, and vulnerability analyses, ensuring that findings are addressed effectively and efficiently. Lead security incidentresponse efforts, including complex investigations and remediation, and develop robust incidentresponse plans and playbooks. Ensure compliance with relevant industry standards More ❯
helping to triage and remediate findings. Security Champion Enablement: Collaborate with engineering teams to build security awareness and develop a network of Security Champions. Incident & Response Readiness: Support Smarsh SOC and security incidentresponse, including root cause analysis and post-mortem reviews for your product(s More ❯