problem-solving skills.- Strong communication and interpersonal skills.**Preferred Qualifications:**- Experience with regulatory compliance requirements such as GDPR, HIPAA, or SOX.- Familiarity with security tools and technologies such as SIEM, DLP, and endpoint protection. CISA/CISSP/CCSP MCSA-Microsoft Windows Server MCSE- Microsoft Certified Solution Expert; MCITP-Microsoft Certified IT Professional; VMware Certified Professional;CCNA/CCNP Experience … with security tools and technologies such as intrusion detection systems, SIEM, and vulnerability management tools. Familiarity with regulatory requirements and industry standards related to IT security. Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy More ❯
hands-on' shift-based roles, working as part of a 24/7 operation working in a standard rotation shift pattern. They are responsible for utilising the SOC's SIEMand SOAR toolsets to detect and investigate potential Securityand Service Incidents occurring within the monitored networks. Main Duties Monitor, triage, analyse and investigate alerts, log data and network traffic … skills. Strong analytical skills Must have expertise on TCP/IP network traffic andevent log analysis. Must have knowledge and hands-on experience of Microsoft Sentinel (or any SIEM tool). Must have administrative skills in several operating systems, such as Windows, OS X, and Linux Must be proficient in basic shell scripting, creating Snort rules, or other log More ❯
expertise in the security of the infrastructure, incident managementand update policies as required, in agreement with the IT Security Manager. Ensure continuous improvement of all systems and processes. Key Tasks SIEM Administration: Monitor and manage SecurityInformationandEventManagement (SIEM) systems. Firewall and Proxy Audits: Audit firewall and proxy configurations, coordinating necessary changes with the Infrastructure Team. Incident … requirements) Qualifications Degree in Computing or equivalent MCSE, CCNA an advantage but not necessary Experience Proven experience in a security or data analysis role Experience using Splunk (or similar SIEM) Experience with ISO 27001 compliance Experience in Risk Management Knowledge & Skills In Depth Knowledge of Microsoft operating system Knowledge of securing cloud environments, such as Azure or AWS Knowledge of More ❯
Guildford, Surrey, England, United Kingdom Hybrid / WFH Options
4Square Recruitment Ltd
You’ll collaborate with IT and business teams to embed security into workflows, manage risks, and respond to incidents—all while driving continuous improvement in our systems. Key Responsibilities SIEMManagement: Monitor and optimize SecurityInformationandEventManagement (SIEM) tools like Splunk. Firewall & Proxy Audits: Review configurations and coordinate changes with infrastructure teams. Incident Response: Act as part of … penetration tests andsecurity audits. Policy Development: Keep security policies and staff training programs up to date. Requirements Essential: Degree in Computing or related field. Proven experience in cybersecurity, SIEM tools (e.g., Splunk), and ISO 27001 compliance. Knowledge of Microsoft OS, cloud security (Azure/AWS), and risk management. Strong communication skills to engage stakeholders at all levels. Desirable: Certifications More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid / WFH Options
Corriculo Ltd
sized organisation Hands-on experience in the management of IDS/IPS, Firewalls, VPN, EDR/XDR, mail filtering and other security products Experience of SecurityInformationEventManagement (SIEM) tools Any experience or knowledge of ISO27001 as well as with penetration testing/vulnerability scanning would be highly advantageous The list above is important, but not as important as More ❯
Immingham, Lincolnshire, North East, United Kingdom
Rullion Limited
controls across OT environments. Contribute to the assessment of OT network architecture , protocols, and change management processes. Lead incident response and remediation for cyber events detected by our OT SIEM systems. Actively support vulnerability managementand ensure threat exposure is minimised. Provide hands-on leadership in data and asset management , including backup and removable media deployments. Apply and track securityMore ❯
Wokingham, Berkshire, South East, United Kingdom Hybrid / WFH Options
Experis
Role Title: SIEM Engineer Duration: contract to run until 26/12/2025 Location: Wokingham, Hybrid 2 days onsite Rate: £460 p/d Via Umbrella inside IR35 Clearance required: Active SC is essential Role purpose/summary SIEM Deployment & Management - Set up, configure, and maintain SIEM tools like Sentinel, Elastic, ArcSight, Splunk, or QRadar. DR deployment, configuration & management … events, trends, and system performance. Collaboration - Work with IT andsecurity teams to improve overall cybersecurity posture. Required Skills & Qualifications Technical Expertise - Strong knowledge & experience in security engineering with SIEM & EDR platforms, network security, and understanding of cybersecurity frameworks. Certifications - CISSP, CEH, GIAC, or vendor-specific SIEM certifications. Programming & Scripting - Familiarity with Python, PowerShell, KQL (Kusto query language), KQL (Kibana More ❯
and vulnerability management experience Leadership of technical teams within high-security environments Strong knowledge of threat actor tactics, techniques, and procedures (TTPs) Familiarity with tools such as Cobalt Strike, SIEM, and vulnerability scanning platforms Active DV clearance (or willingness to achieve it) The package Competitive salary + benefits Industry-leading training and certifications Opportunity to work on high-impact national More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Sophos Group
that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs) and Managed Security Service Providers (MSSPs) worldwide, defending More ❯
recommendations. Conduct thorough triage and investigations using security tools, including IDS/IPS, Full Packet Capture devices, Firewalls, DDoS detection and mitigation tools, Endpoint Detection and Response (EDR), andSIEM platforms. Identify and analyse threats, vulnerabilities, and indicators of compromise (IoCs). Document, review, and continuously improve SOC procedures andsecurity monitoring processes. Support the ongoing development of Global ManagementMore ❯
Market Harborough, Leicestershire, East Midlands, United Kingdom
CDS Global
A strong working knowledge of hardware and networking components The ability to work unsupervised with strong self-motivation Experience with scripting and automation Experience with virtualization platforms Experience using SIEM platforms Experience with EDR and vulnerability scanning Knowledge of Windows Servers and Azure Cloud Desirable: Experience with ITIL, PCI and GDPR Driving Licence Programming experience with PowerShell, C# and\or More ❯
design and implement end to end network infrastructure automation capabilities Proficiency in configuring, managing, and troubleshooting Firewalls. Cisco Experience with intrusion detection/prevention systems, as well as with SIEM tools andsecurity incident response. Design and implement secure network architectures, including Firewalls, intrusion detection/prevention systems, and encryption technologies. Be able to communicate to technical and non-technical More ❯
ensure clear documentation A solid understanding of the OSI reference model and common network protocols (DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S) Experience with SIEM platforms and/or network packet capture tools It would be beneficial to have experience working within highly regulated or complex technical environments, such as defence, aerospace, or critical national More ❯
ensure clear documentation A solid understanding of the OSI reference model and common network protocols (DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S) Experience with SIEM platforms and/or network packet capture tools It would be beneficial to have experience working within highly regulated or complex technical environments, such as defence, aerospace, or critical national More ❯
in the managed IT or telecoms sector. Solid knowledge of network principles (TCP/IP, routing protocols like OSPF & BGP, VRRP). Understanding of security concepts: firewalls, UTM, IPSec, SIEM, etc. Hands-on experience with at least two of the following: Networks, Cloud, Unified Communications, Cyber Security. Strong communication skills - capable of translating complex jargon to any audience. Excellent problem More ❯
City of London, London, United Kingdom Hybrid / WFH Options
83zero Limited
in the managed IT or telecoms sector. Solid knowledge of network principles (TCP/IP, routing protocols like OSPF & BGP, VRRP). Understanding of security concepts: firewalls, UTM, IPSec, SIEM, etc. Hands-on experience with at least two of the following: Networks, Cloud, Unified Communications, Cyber Security. Strong communication skills - capable of translating complex jargon to any audience. Excellent problem More ❯
Wokingham, Berkshire, United Kingdom Hybrid / WFH Options
Experis - ManpowerGroup
Role Title: SIEM Engineer Duration: contract to run until 26/12/2025 Location: Wokingham, Hybrid 2 days onsite Rate: £460 p/d Via Umbrella inside IR35 Clearance required: Active SC is essential Role purpose/summary SIEM Deployment & Management - Set up, configure, and maintain SIEM tools like ArcSight, Splunk, or QRadar. Threat Detection & Analysis - Monitor security logs … Generate reports on security events, trends, and system performance. Collaboration - Work with IT andsecurity teams to improve overall cybersecurity posture. Required Skills & Qualifications Technical Expertise - Strong knowledge of SIEM platforms, network security, and cybersecurity frameworks. Certifications - CISSP, CEH, GIAC, or vendor-specific SIEM certifications. Programming & Scripting - Familiarity with Python, PowerShell, or other scripting languages. Analytical Thinking - Ability to analyze More ❯
Wokingham, Berkshire, United Kingdom Hybrid / WFH Options
Experis
Role Title: SIEM Engineer Duration: contract to run until 26/12/2025 Location: Wokingham, Hybrid 2 days onsite Rate: £460 p/d Via Umbrella inside IR35 Clearance required: Active SC is essential Role purpose/summary SIEM Deployment & Management - Set up, configure, and maintain SIEM tools like ArcSight, Splunk, or QRadar. Threat Detection & Analysis - Monitor security logs … Generate reports on security events, trends, and system performance. Collaboration - Work with IT andsecurity teams to improve overall cybersecurity posture. Required Skills & Qualifications Technical Expertise - Strong knowledge of SIEM platforms, network security, and cybersecurity frameworks. Certifications - CISSP, CEH, GIAC, or vendor-specific SIEM certifications. Programming & Scripting - Familiarity with Python, PowerShell, or other scripting languages. Analytical Thinking - Ability to analyze More ❯
applying NIST CSF, ITIL, ISO 27001, ISO and other best practice standards Desirable Experience/Skills: In-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g., ArcSight, Splunk, Nitro/McAfee Enterprise Security Manager, QRadar, LogLogic). Understanding of eventand incident investigations and incident response in a 24/7 SOC environment. Proficiency … in configuring and managing security technologies such as firewalls, IDS/IPS, SIEM, DLP, and Endpoint protection solutions. Good understanding and knowledge of security concepts, protocols, processes, architectures, and platforms (authentication and access control technologies, intrusion detection, network traffic analysis, Web Application Firewalls, Encryption and Key Management, SIEM technology, incident handling, media/malware analysis, etc.) Good knowledge of cloud More ❯
Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
DCS Recruitment
respond to security incidents. Lead and participate in incident management , ensuring swift identification, investigation, and resolution of security threats using modern toolsets. Who You Are: Experienced with Azure Sentinel , SIEM, and other security monitoring/incident management tools. Adept at i ncident management, risk assessment, and operational security for enterprise systems. Passionate about automation, innovation, and continuous improvement in security. More ❯
Birmingham, West Midlands, West Midlands (County), United Kingdom Hybrid / WFH Options
DCS Recruitment Limited
respond to security incidents. Lead and participate in incident management , ensuring swift identification, investigation, and resolution of security threats using modern toolsets. Who You Are: Experienced with Azure Sentinel , SIEM, and other security monitoring/incident management tools. Adept at i ncident management, risk assessment, and operational security for enterprise systems. Passionate about automation, innovation, and continuous improvement in security. More ❯
Building on your current skills the scope of the training will be IBM Power SC for Power 9, 10 and 11, storage defender and Insights and use of a SIEM agent reporting. Key Skills Previous experience as an IBM System i/Power i/IBM i/i Series Operations Technical Consultant with excellence in Power I (IBMi ,System More ❯
Building on your current skills the scope of the training will be IBM Power SC for Power 9, 10 and 11, storage defender and Insights and use of a SIEM agent reporting. Key Skills Previous experience as an IBM System i/Power i/IBM i/i Series Operations Technical Consultant with excellence in Power I (IBMi ,System More ❯
in-stream analytics without reliance on expensive indexing or hot storage. We specialize in comprehensive monitoring of logs, metrics, traces, andsecurity events with features such as APM, RUM, SIEM, Kubernetes monitoring, and more, enhancing operational efficiency and reducing observability spending by up to 70%. We seek a Quality and Support Strategist professional who ensures that the Coralogix Alerting More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Nomios
solutioning for one or more of the following vendors: Fortinet, Palo Alto, Juniper, Cisco, Netskope, Zscaler, CrowdStrike. We would also love to receive applications from people with skills solutioning SIEM, SOAR, or Managed Security Services (experience in DDoS, WAF, IDAM, EDR, MDM or Vulnerability Management is a plus). We are also interested to hear from candidates with operational expertise More ❯