Winchester, Hampshire, United Kingdom Hybrid / WFH Options
Evalian
in creation and maintenance of security processes, playbooks, and documentation to standardise SOC operations. Design and implement automation workflows and integrations using Logic Apps, SOAR platforms, and scripting to enhance SOC efficiency. Assist in the monitoring and investigation of security alerts when required, supporting the SOC team. Contribute to the … security monitoring. Experience in developing KQL queries, custom detection rules. Familiarity with automationand integration tools such as Logic Apps, Power Automate, or other SOAR platforms. Knowledge of cloud security, particularly Azure, AWS, and Google Cloud. Excellent documentation skills and process-building capabilities. Great communication skills and ability to work More ❯
SOC EDR-Centric Response – Work extensively with EDR tools (primary alert source) to detect and analyse modern threats Fine-Tuning & Reporting – Tune SIEM andSOAR systems for accuracy, and deliver clear, actionable incident reports Technical Threat Intelligence – Stay ahead of emerging attack vectors, especially those identified via EDR; apply this … and supporting security tools Strong technical knowledge of TCP/IP, OSI model, Windows/Linux , and cloud environments (Azure, AWS, O365) Familiarity with SOARand scripting for automation (Kusto, SQL, Regex) Excellent communication skills and a proactive, composed approach under pressure Join a team that’s reshaping cyber defence More ❯
SOC EDR-Centric Response – Work extensively with EDR tools (primary alert source) to detect and analyse modern threats Fine-Tuning & Reporting – Tune SIEM andSOAR systems for accuracy, and deliver clear, actionable incident reports Technical Threat Intelligence – Stay ahead of emerging attack vectors, especially those identified via EDR; apply this … and supporting security tools Strong technical knowledge of TCP/IP, OSI model, Windows/Linux , and cloud environments (Azure, AWS, O365) Familiarity with SOARand scripting for automation (Kusto, SQL, Regex) Excellent communication skills and a proactive, composed approach under pressure Join a team that’s reshaping cyber defence More ❯
SOC EDR-Centric Response – Work extensively with EDR tools (primary alert source) to detect and analyse modern threats Fine-Tuning & Reporting – Tune SIEM andSOAR systems for accuracy, and deliver clear, actionable incident reports Technical Threat Intelligence – Stay ahead of emerging attack vectors, especially those identified via EDR; apply this … and supporting security tools Strong technical knowledge of TCP/IP, OSI model, Windows/Linux , and cloud environments (Azure, AWS, O365) Familiarity with SOARand scripting for automation (Kusto, SQL, Regex) Excellent communication skills and a proactive, composed approach under pressure Join a team that’s reshaping cyber defence More ❯
SOC EDR-Centric Response – Work extensively with EDR tools (primary alert source) to detect and analyse modern threats Fine-Tuning & Reporting – Tune SIEM andSOAR systems for accuracy, and deliver clear, actionable incident reports Technical Threat Intelligence – Stay ahead of emerging attack vectors, especially those identified via EDR; apply this … and supporting security tools Strong technical knowledge of TCP/IP, OSI model, Windows/Linux , and cloud environments (Azure, AWS, O365) Familiarity with SOARand scripting for automation (Kusto, SQL, Regex) Excellent communication skills and a proactive, composed approach under pressure Join a team that’s reshaping cyber defence More ❯
SOC EDR-Centric Response – Work extensively with EDR tools (primary alert source) to detect and analyse modern threats Fine-Tuning & Reporting – Tune SIEM andSOAR systems for accuracy, and deliver clear, actionable incident reports Technical Threat Intelligence – Stay ahead of emerging attack vectors, especially those identified via EDR; apply this … and supporting security tools Strong technical knowledge of TCP/IP, OSI model, Windows/Linux , and cloud environments (Azure, AWS, O365) Familiarity with SOARand scripting for automation (Kusto, SQL, Regex) Excellent communication skills and a proactive, composed approach under pressure Join a team that’s reshaping cyber defence More ❯
monitoring, SIEM, and endpoint detection. About the role: You will develop and maintain infrastructure supporting Jisc's security services, focusing on managing our SIEM, SOAR, and threat intelligence platforms, and collaborating with threat intelligence teams to automate and enhance these systems. Key responsibilities include: Developing and maintaining security platforms and … Documenting processes in line with standards Driving continuous technological improvements Representing Jisc externally at conferences and taskforces Key skills and experience: Experience with SIEM, SOAR, and threat intelligence platforms Operational experience in network services or cybersecurity Designing and deploying technical solutions Knowledge of IaaS, SaaS, Linux server administration Experience with More ❯
Company Description: About Us McDonald's has run its business in the UK since 1974 and currently operates over 1500 restaurants across the UK and Ireland, serving almost four million customers each day. McDonald's is one of the UK More ❯
technical challenges and proposing solutions or get-well plans. • Learns constantly about the Fortinet technology and products being deployed as part of the Fortinet SOAR solution. • Provides technical guidance or recommendations to engineers or consultants in charge of the delivery. • Performs risk management to minimize project risks. • Creates and maintains … . • Experience with SOC or NOC environments. A good understanding of SOC deployment or operation and/or typical SOC solutions or technologies (e.g. SOAR, SIEM, orchestrationandautomation, threat intelligence, incident response) would be a plus. • Proven ability to handle technical escalations, working closely with both technical and business More ❯
ECS Resource Group are currently working in partnership with a global managed service provider, assisting them with searching for a SOAR Developer on a contract basis. The successful candidate will be working with a Telecoms end clientacross various projects. Key Responsibilities: Work closely with security analysts and engineers to detect … and address security gaps by implementing automation workflows that enhance security operations. Evaluate and enhance CSOC workflows and processes by integrating automation through SOAR tools and technologies. Create and implement custom scripts to automate current detection andresponse workflows. Requirements: Experience of threat detection andresponse methodologies. Excellent background with … tools such as SIEM & SOAR. Excellent understanding of cyber security principles. Good background with SOAR platforms such as Splunk Phantom, Siemplify & IBM Resilient. Telecommunications background. Further job details available upon request. Please note, due to internal capabilities it will be difficult for us to take internal calls regarding your application More ❯
ECS Resource Group are currently working in partnership with a global managed service provider, assisting them with searching for a SOAR Developer on a contract basis. The successful candidate will be working with a Telecoms end clientacross various projects. Key Responsibilities: Work closely with security analysts and engineers to detect … and address security gaps by implementing automation workflows that enhance security operations. Evaluate and enhance CSOC workflows and processes by integrating automation through SOAR tools and technologies. Create and implement custom scripts to automate current detection andresponse workflows. Requirements: Experience of threat detection andresponse methodologies. Excellent background with … tools such as SIEM & SOAR. Excellent understanding of cyber security principles. Good background with SOAR platforms such as Splunk Phantom, Siemplify & IBM Resilient. Telecommunications background. Further job details available upon request. Please note, due to internal capabilities it will be difficult for us to take internal calls regarding your application More ❯