need? • At least 1 year of hands-on experience in a Tier 1 SOC role, preferably within a managed services environment • Practical knowledge of Microsoft Defender XDR and Sentinel SIEM tools • Familiarity with the Microsoft Defender suite, particularly Endpoint Detection and Response • Solid understanding of Microsoft 365 cloud technologies from a securityand threat landscape perspective • Hold current certifications in … you consent to your application being processed and submitted to the client for this vacancy only. KEY SKILLS – Cyber Security, SOC Analyst, Tier 1 Support, Microsoft Defender XDR, Sentinel, SIEM, Endpoint Detection, Microsoft 365, SC-200, SC-900, Incident Response, Threat Monitoring, IT Support More ❯
protocols. What You’ll Need to be Considered CompTIA Security+ and CompTIA CySA+ certification (required). At least 3-5 years of cybersecurity experience. Expertise with security tools like SIEM, endpoint detection, and firewalls. Knowledge of scripting or automation tools such as Python or PowerShell. Familiarity with cloud securityand compliance frameworks like PCI-DSS or HIPAA. Experience drafting workflows More ❯
Brighton, England, United Kingdom Hybrid / WFH Options
Tillo Inc
procedures, and standards to comply with industry regulations. Provide training and support on security best practices. What we’re looking for Proficiency in security tools and technologies, such as SIEM, firewalls, and antivirus software Good understanding of software development processes, ideally with PHP/Laravel Experience with AWS Understanding of Linux, Docker and Kubernetes Experience with ISO 27001 or SOC More ❯
London, England, United Kingdom Hybrid / WFH Options
Fab Lab ABQ
week. About you: You have experience of creating customised security detection use cases You have experience in digital forensics analysis and incident response You have a good knowledge of SIEM, EDR/XDR, Firewalls/IDS/IPS tools and experience of implementing automation procedures for seamless security operations You have a strong understanding of different adversary tactics, techniques andMore ❯
London, England, United Kingdom Hybrid / WFH Options
Little Fish (UK) Ltd
Microsoft Security Operations Analyst certification. Experience: Demonstrated experience in responding to cyber security threats. Proficiency in the use of antivirus technologies. Experience with Endpoint Detection & Response solutions. Familiarity with SIEM platforms. Skills: Awareness of vulnerabilities andsecurity standards. Knowledge of HMG Security Standards and Processes. Ability to balance business needs with technical andsecurity standards. Attributes: Familiarity with ITIL practices. More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
Littlefish
Microsoft Security Operations Analyst certification. Experience: Demonstrated experience in responding to cyber security threats. Proficiency in the use of antivirus technologies. Experience with Endpoint Detection & Response solutions. Familiarity with SIEM platforms. Skills: Awareness of vulnerabilities andsecurity standards. Knowledge of HMG Security Standards and Processes. Ability to balance business needs with technical andsecurity standards. Attributes: Commercial awareness. Familiarity with More ❯
Cardiff, Wales, United Kingdom Hybrid / WFH Options
Bridewell
Security Analyst - Splunk (BBBH195) Cardiff, Wales About Bridewell One of the most exciting prospects in the UK cyber security sector today, Bridewell is a leading cyber security services company specialising in protecting and transforming critical business functions for some of More ❯
VPN, LAN/WAN, VLAN, 802.1X, SSL, and related protocols. OT Security: Strong knowledge of securing operational technology environments, addressing unique threats and vulnerabilities in ICS/SCADA systems. SIEM : Strong understanding of SIEM technologies for log management, log analysis, andevent correlation. Authentication & Access Control: Proficient in 802.1x, RADIUS, LDAP, AD, smart cards, and other authentication mechanisms. Security Tools More ❯
ELK) Have a demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs). Exhibit skills using common Incident Response andSecurity Monitoringapplications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR.), WAF, IPS Additional Information Benefits package includes: Flexible work environment, working hybrid or in the office if you prefer. Great compensation More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
Experian Ltd
Have a demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs). Exhibit skills using common Incident Response andSecurity Monitoring?applications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR.), WAF, IPS Additional Information Benefits package includes: Flexible work environment, working hybrid or in the office if you prefer. Great compensation More ❯
Have a demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs). Exhibit skills using common Incident Response andSecurity Monitoring applications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR.), WAF, IPS Additional Information Benefits package includes: Flexible work environment, working hybrid or in the office if you prefer. Great compensation More ❯
enterprise infrastructure. It would be great if you had: Skills in malware analysis or reverse engineering. Experience with scripting or programming (Python, PowerShell, Bash, etc.). Exposure to additional SIEM tools such as QRadar. 25 days annual leave (plus option to purchase more). Health cash plan, life assurance, and company pension. Flexible benefits fund tailored to your lifestyle needs. More ❯
Southampton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
Monitoring : Conduct regular security assessments, vulnerability scans, and monitor/respond to security incidents using tools such as Azure Sentinel and other security technologies (XDR, NDR, IDS/IPS, SIEM). Root Cause Analysis and Compliance : Perform root cause analysis for security incidents, implement corrective actions, and ensure compliance with industry regulations (GDPR, HIPAA). DevOps Integration : Collaborate with development … including a deep understanding of Azure networking, compute, storage, and databases. Security Tools : Hands-on experience with security tools and technologies (e.g., Azure Sentinel, XDR, NDR, IDS/IPS, SIEM). Automation & Scripting : Proficiency in scripting (e.g., PowerShell, Azure CLI) and working with Azure DevOps. Desirable Skills : Experience with containerization, knowledge of Azure Data Lake, Azure IoT Hub, and API More ❯
in malware analysis or reverse engineering. Experience with scripting or programming (Python, PowerShell, Bash, etc.). Relevant SOC certifications (e.g., CREST, Blue Team Level 1). Exposure to additional SIEM tools such as QRadar. Benefits: 25 days annual leave (plus option to purchase more). Health cash plan, life assurance, and company pension. Flexible benefits fund tailored to your lifestyle More ❯
Slough, England, United Kingdom Hybrid / WFH Options
Tesco Mobile
Engineers As a DevSecOps Engineer you will be helping the team manage and deploy the environment in a secure and optimised manner. This will include managing the logging andSIEM aspects of the infrastructure and coordinating with application development teams to resolve issues. You will also work with the rest of the squad to incorporate more security checks into the … Engineers As a DevSecOps Engineer you will be helping the team manage and deploy the environment in a secure and optimised manner. This will include managing the logging andSIEM aspects of the infrastructure and coordinating with application development teams to resolve issues. You will also work with the rest of the squad to incorporate more security checks into the More ❯
enterprise environment. In-depth knowledge of cybersecurity best practices, threat landscape, and regulatory requirements (e.g., GDPR, HIPAA, NIST). Proficiency with security tools and technologies such as firewalls, VPNs, SIEM, IDS/IPS, and endpoint protection. Excellent analytical, problem-solving, and decision-making skills. Strong communication and interpersonal skills, with the ability to effectively collaborate with technical and non-technical More ❯
knowledge transfer to customer teams and junior consultants Maintain up-to-date knowledge of security trends, technologies, and regulatory compliance frameworks Support broader security initiatives such as integration with SIEM, EDR, and cloud-native controls Requirements: Minimum 7 years of experience in network or cybersecurity engineering, with a focus on enterprise firewall deployments Strong expertise in Checkpoint, Palo Alto Networks More ❯
For: ️ Proven experience as a Cybersecurity Engineer or in a similar cybersecurity role ️ Strong knowledge of network protocols, encryption techniques, andsecurity technologies (e.g., firewalls, IDS/IPS, VPNs, SIEM) ️ Experience with cloud securityand hybrid environments (AWS, Azure, GCP) ️ Hands-on experience with security incident response and vulnerability management tools ️ Certifications such as CISSP, CEH, CompTIA Security+, or Cisco More ❯
before they impact operations. • Oversee the selection, deployment, andmanagement of security technologies, including but not limited to firewalls, endpoint detection and response (EDR), multi-factor authentication (MFA), encryption, SIEM, and intrusion detection/prevention systems (IDS/IPS). Data Management & Analytics • Lead the development and enforcement of robust data governance policies, ensuring data is accurate, secure, and used More ❯
of 2 years' experience with cloud platforms such as AWS, Azure, and Google Cloud. Experience with Okta, Salesforce, Slack, Jira, and Github. Experience with security tools and technologies, including SIEM, IDS/IPS, and endpoint protection. Proven success in contributing to a team-oriented environment. Proven ability to provide creative solutions to problems. Thorough knowledge of AWS/Azure services More ❯
Proven experience as a Cybersecurity Specialist or in a similar role within IT security ️ Strong knowledge of cybersecurity principles, threat intelligence, andsecurity controls ️ Experience with security tools (e.g., SIEM, firewalls, EDR, VPN, DLP) and vulnerability management ️ Solid understanding of regulatory frameworks and industry standards (e.g., GDPR, NIST, ISO 27001) ️ Certifications such as CISSP, CISM, CompTIA Security+, or CEH are More ❯
or SOC analyst/manager Proficiency in scripting with Python Knowledge of JavaScript or PowerShell is a plus Experience with security design, automation, and use-cases Familiarity with EDR, SIEM, SOAR, NGFW ecosystems Knowledge of cloud providers (GCP, AWS, Azure) Attack surface management experience is a plus Customer-facing experience is essential Self-motivated learner with business focus Excellent collaboration More ❯
Overview We are seeking a contract XSIAM Engineer with deep expertise in Palo Alto Networks technologies , ideally coming from an XSOAR background , and possessing strong experience across XDR andSIEM environments. This is a key role within our security operations function, focused on enhancing detection, automation, and response capabilities. *For this role you must be eligible for SC Clearance* Key … SOC efficiency and visibility Design and manage security automation workflows , drawing from previous XSOAR experience Integrate and optimize XDR capabilities to support proactive threat detection Set up and maintain SIEM-style log ingestion , correlation rules, and enrichment pipelines Build custom dashboards and reporting tools for real-time security insights Troubleshoot complex issues related to XSIAM , XSOAR, and related integrations Ensure … Ideally experience implementing and managing XSIAM in real-world environments but will consider strong XSOAR Consultants who want to evolve into XSIAM. Strong understanding of Security Operations, XDR , andSIEM principles Proficient in scripting and automation (e.g., Python, PowerShell) Solid experience with log analysis , event correlation, and alert tuning Needs to be eligible for SC Clearance Desirable Qualifications Palo Alto More ❯
Bath, Somerset, South West, United Kingdom Hybrid / WFH Options
London & Country Mortgages
change. Furthermore, whilst not essential, in addition to the Essential skills it would be desirable to have knowledge and experience of the following technologies; SSL certificate management Vulnerability managementSIEM experience (Ideally MS Sentinel) Infrastructure As Code (Ideally Terraform and Ansible) Powershell SQL Cisco Umbrella Nutanix Hyperconverged Infrastructure support Netapp Support Knowledge of and/or certification in ITIL More ❯
Overview We are seeking a contract XSIAM Engineer with deep expertise in Palo Alto Networks technologies , ideally coming from an XSOAR background , and possessing strong experience across XDR andSIEM environments. This is a key role within our security operations function, focused on enhancing detection, automation, and response capabilities. *For this role you must be eligible for SC Clearance* Key … SOC efficiency and visibility Design and manage security automation workflows , drawing from previous XSOAR experience Integrate and optimize XDR capabilities to support proactive threat detection Set up and maintain SIEM-style log ingestion , correlation rules, and enrichment pipelines Build custom dashboards and reporting tools for real-time security insights Troubleshoot complex issues related to XSIAM , XSOAR, and related integrations Ensure … Ideally experience implementing and managing XSIAM in real-world environments but will consider strong XSOAR Consultants who want to evolve into XSIAM. Strong understanding of Security Operations, XDR , andSIEM principles Proficient in scripting and automation (e.g., Python, PowerShell) Solid experience with log analysis , event correlation, and alert tuning Needs to be eligible for SC Clearance Desirable Qualifications Palo Alto More ❯