high wycombe, south east england, united kingdom Hybrid / WFH Options
Air IT Group
support employees efforts to make a positive impact Company social events and competitions Discount and Cashback Scheme Group Income Protection Life Insurance EAP and Virtual GP Service Ready to soar with Air IT? Apply now and be part of something extraordinary! Air IT are equal opportunities employers, who value diversity and are strongly committed to providing equal employment opportunities for More ❯
Crawley, Sussex, United Kingdom Hybrid / WFH Options
Morson Edge
Security Service Provider (MSSP) and internal teams to ensure complete log source integration and effective alert correlation across cloud and on-prem environments. Support and develop the organisation's SOAR platform, creating automated workflows and improving response efficiency. Perform digital forensics investigations, analysing logs, network data, and system artefacts to determine root causes. Participate in cyber crisis simulation exercises and … related discipline, or equivalent professional experience. Industry-recognised certifications such as CISSP, GIAC/GCIA/GCIH, AZ-500, CEH, CASP+, or SIEM-specific training. Strong knowledge of SIEM, SOAR, EDR, IDS/IPS, NAC, DLP, and related security technologies. Familiarity with frameworks such as MITRE ATT&CK, NIST, CIS, and ISO/IEC 27001/27002. Hands-on experience More ❯
Crawley, West Sussex, South East, United Kingdom Hybrid / WFH Options
Morson Edge
Security Service Provider (MSSP) and internal teams to ensure complete log source integration and effective alert correlation across cloud and on-prem environments. Support and develop the organisation's SOAR platform, creating automated workflows and improving response efficiency. Perform digital forensics investigations, analysing logs, network data, and system artefacts to determine root causes. Participate in cyber crisis simulation exercises and … related discipline, or equivalent professional experience. Industry-recognised certifications such as CISSP, GIAC/GCIA/GCIH, AZ-500, CEH, CASP+, or SIEM-specific training. Strong knowledge of SIEM, SOAR, EDR, IDS/IPS, NAC, DLP, and related security technologies. Familiarity with frameworks such as MITRE ATT&CK, NIST, CIS, and ISO/IEC 27001/27002. Hands-on experience More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid / WFH Options
IO Associates
you Ownership & Autonomy: You won't just follow a process, you'll create it. The team's culture is built on innovation and trust. Cutting-Edge Projects: From building SOAR playbooks and API integrations to designing full automation frameworks - your work will directly shape how customers run their SOCs. Serious Tech Exposure: Get hands-on with SOAR (XSOAR, Logic Apps … to the next challenge. What We're Looking For Background in SOC, Security Engineering, or Automation - ideally customer-facing. Python/PowerShell/REST API scripting ability. Experience with SOAR or SIEM platforms (any modern stack). Someone who's hands-on, curious, and solutions-driven. Not a corporate consultant, we want builders, problem solvers, and innovators. The Package More ❯
Senior Security Consultant (Detection/SOAR/Automation/Integration) UK-Wide – Remote (Travel to Reading once per month). Base Salary: Up to £85,000 per annum + Technical Development & Certifications Areti are delighted to be supporting a rapidly expanding cybersecurity business in their search for a Senior Security Consultant to join their high-performing UK team. This award … a Senior Security Consultant , you’ll play a pivotal role in designing, building, and optimising detection andresponse workflows across enterprise environments. You’ll bring a deep understanding of SOAR , SIEM , and end-to-end automation , helping customers improve their security posture through innovation, integration, and process efficiency. This isn’t just about following best practice - it’s about defining … and data sources using Python , PowerShell , and API-driven orchestration. Advise customers and internal teams on security operations, automation strategy , and continuous improvement. Lead the design and deployment of SOARand SIEM solutions (Splunk, Cortex XSOAR, Microsoft Sentinel, etc.). Collaborate with engineering and architecture teams to deliver scalable, automated processes that improve efficiency and detection accuracy. Act as a More ❯
across multiple environments, driving innovation in automation, detection, and SOC transformation. You’ll be part of a growing Professional Services team, working with a broad mix of technologies including SOAR, SIEM, XDR, vulnerability and exposure management, and cloud security platforms . Expect a healthy mix of customer-facing projects and internal innovation work. What you’ll be doing: Designing, building … and automating security operations tooling (SOAR, SIEM, XDR) Delivering technical consultancy across detection engineering, integration, and process improvement Developing custom playbooks, parsers, andautomation frameworks Running vulnerability and exposure assessments using leading tools Helping customers mature and optimise their SOC functions What you’ll bring: Proven experience in Security Operations, SOC Engineering, or Cyber Consultancy Strong scripting andautomation skills … Python, PowerShell, REST APIs) Practical knowledge of SIEM andSOAR technologies (Microsoft Sentinel, XSOAR, Logic Apps, etc.) Exposure to EDR/XDR platforms and vulnerability management tools Excellent communication and documentation skills Eligibility for SC or DV clearance Why it’s worth a look: Hybrid flexibility with regular Berkshire office collaboration Exposure to cutting-edge security tooling and lab environments More ❯
across multiple environments, driving innovation in automation, detection, and SOC transformation. You’ll be part of a growing Professional Services team, working with a broad mix of technologies including SOAR, SIEM, XDR, vulnerability and exposure management, and cloud security platforms . Expect a healthy mix of customer-facing projects and internal innovation work. What you’ll be doing: Designing, building … and automating security operations tooling (SOAR, SIEM, XDR) Delivering technical consultancy across detection engineering, integration, and process improvement Developing custom playbooks, parsers, andautomation frameworks Running vulnerability and exposure assessments using leading tools Helping customers mature and optimise their SOC functions What you’ll bring: Proven experience in Security Operations, SOC Engineering, or Cyber Consultancy Strong scripting andautomation skills … Python, PowerShell, REST APIs) Practical knowledge of SIEM andSOAR technologies (Microsoft Sentinel, XSOAR, Logic Apps, etc.) Exposure to EDR/XDR platforms and vulnerability management tools Excellent communication and documentation skills Eligibility for SC or DV clearance Why it’s worth a look: Hybrid flexibility with regular Berkshire office collaboration Exposure to cutting-edge security tooling and lab environments More ❯
Stevenage, Hertfordshire, England, United Kingdom Hybrid / WFH Options
MBDA
and efficiency of our Security Operations Centre (SOC). This role is perfect for someone who thrives on solving complex technical challenges, enjoys working with tools like Splunk andSOAR, and wants to contribute to a mission that truly matters. Salary : Circa £50,000 – £60,000 depending on experience Dynamic (hybrid) working :2 days per week on-site due to … threat landscape. Key responsibilities include; Act as the subject matter expert (SME) for Splunk across all cyber securityand observability use cases. Lead SOC automation initiatives using scripting andSOAR tools, optimising processes through AI and ML technologies. Support alert tuning, connectivity, and visibility across monitored networks and infrastructure. Maintain and document SOC integrations, ensuring accurate configuration and performance visibility. More ❯
Stevenage, Hertfordshire, South East, United Kingdom Hybrid / WFH Options
MBDA
and efficiency of our Security Operations Centre (SOC). This role is perfect for someone who thrives on solving complex technical challenges, enjoys working with tools like Splunk andSOAR, and wants to contribute to a mission that truly matters. Salary : Circa £50,000 - £60,000 depending on experience Dynamic (hybrid) working : 2 days per week on-site due to … threat landscape. Key responsibilities include; Act as the subject matter expert (SME) for Splunk across all cyber securityand observability use cases. Lead SOC automation initiatives using scripting andSOAR tools, optimising processes through AI and ML technologies. Support alert tuning, connectivity, and visibility across monitored networks and infrastructure. Maintain and document SOC integrations, ensuring accurate configuration and performance visibility. More ❯
across the entire IT estate. Familiarity with endpoint protection platforms and vulnerability management tools. Experience securing hybrid identity solutions and federated authentication models Understanding of securityautomation concepts, including securityorchestrationandresponse (SOAR) including ability to script or automate repetitive tasks. Experience producing security artefacts and configuration documentation, including risk assessments, security design records, hardening standards, control implementation guides More ❯
across the entire IT estate. Familiarity with endpoint protection platforms and vulnerability management tools. Experience securing hybrid identity solutions and federated authentication models Understanding of securityautomation concepts, including securityorchestrationandresponse (SOAR) including ability to script or automate repetitive tasks. Experience producing security artefacts and configuration documentation, including risk assessments, security design records, hardening standards, control implementation guides More ❯
across the entire IT estate. Familiarity with endpoint protection platforms and vulnerability management tools. Experience securing hybrid identity solutions and federated authentication models Understanding of securityautomation concepts, including securityorchestrationandresponse (SOAR) including ability to script or automate repetitive tasks. Experience producing security artefacts and configuration documentation, including risk assessments, security design records, hardening standards, control implementation guides More ❯
across the entire IT estate. Familiarity with endpoint protection platforms and vulnerability management tools. Experience securing hybrid identity solutions and federated authentication models Understanding of securityautomation concepts, including securityorchestrationandresponse (SOAR) including ability to script or automate repetitive tasks. Experience producing security artefacts and configuration documentation, including risk assessments, security design records, hardening standards, control implementation guides More ❯
across the entire IT estate. Familiarity with endpoint protection platforms and vulnerability management tools. Experience securing hybrid identity solutions and federated authentication models Understanding of securityautomation concepts, including securityorchestrationandresponse (SOAR) including ability to script or automate repetitive tasks. Experience producing security artefacts and configuration documentation, including risk assessments, security design records, hardening standards, control implementation guides More ❯
Coventry, Warwickshire, United Kingdom Hybrid / WFH Options
NLB Services
UK (Hybrid - 3 days/week) Type of employment - Contract (Initially 6 months) Job Description: Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure … OT landscape. Incident ResponseAutomation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics. More ❯
Coventry, England, United Kingdom Hybrid / WFH Options
NLB Services
UK (Hybrid - 3 days/week) Type of employment - Contract (Initially 6 months) Job Description: Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure … OT landscape. Incident ResponseAutomation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics. More ❯
leicester, midlands, united kingdom Hybrid / WFH Options
NLB Services
UK (Hybrid - 3 days/week) Type of employment - Contract (Initially 6 months) Job Description: Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure … OT landscape. Incident ResponseAutomation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics. More ❯
binley, midlands, united kingdom Hybrid / WFH Options
NLB Services
UK (Hybrid - 3 days/week) Type of employment - Contract (Initially 6 months) Job Description: Role: 10+ years of experience in Cyber security Designing & implementation on Network Security, SIEM, SOAR & Threat Intelligence. Key Responsibilities: Lead Sentinel Deployment for OT SOC Architect and implement Microsoft Sentinel across global OT environments to centralize security monitoring and incident response. Log Source Integration Configure … OT landscape. Incident ResponseAutomation Design and implement playbooks using Logic Apps to automate incident response workflows for common OT security events. Execution of the use cases on SIEM, SOAR & Threat Intelligence Build custom workbooks and dashboards to visualize OT security posture, threat trends, and SOC performance metrics. More ❯
tools such as firewalls, intrusion detection/prevention systems, SIEM solutions (i.e. Splunk, Exabeam, Sentinel, Chronicle) and endpoint security platforms to the level of administration and deployment. Exposure to SOAR tools, observability tools and data stream processing tools Hands-on experience with vulnerability assessment tools, penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring More ❯
tools such as firewalls, intrusion detection/prevention systems, SIEM solutions (i.e. Splunk, Exabeam, Sentinel, Chronicle) and endpoint security platforms to the level of administration and deployment. Exposure to SOAR tools, observability tools and data stream processing tools Hands-on experience with vulnerability assessment tools, penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring More ❯
tools such as firewalls, intrusion detection/prevention systems, SIEM solutions (i.e. Splunk, Exabeam, Sentinel, Chronicle) and endpoint security platforms to the level of administration and deployment. Exposure to SOAR tools, observability tools and data stream processing tools Hands-on experience with vulnerability assessment tools, penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring More ❯
tools such as firewalls, intrusion detection/prevention systems, SIEM solutions (i.e. Splunk, Exabeam, Sentinel, Chronicle) and endpoint security platforms to the level of administration and deployment. Exposure to SOAR tools, observability tools and data stream processing tools Hands-on experience with vulnerability assessment tools, penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring More ❯
tools such as firewalls, intrusion detection/prevention systems, SIEM solutions (i.e. Splunk, Exabeam, Sentinel, Chronicle) and endpoint security platforms to the level of administration and deployment. Exposure to SOAR tools, observability tools and data stream processing tools Hands-on experience with vulnerability assessment tools, penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring More ❯
london (city of london), south east england, united kingdom
RiverSafe
tools such as firewalls, intrusion detection/prevention systems, SIEM solutions (i.e. Splunk, Exabeam, Sentinel, Chronicle) and endpoint security platforms to the level of administration and deployment. Exposure to SOAR tools, observability tools and data stream processing tools Hands-on experience with vulnerability assessment tools, penetration testing methodologies and forensic analysis techniques. Experience in writing content/polices for monitoring More ❯
with the addition of a Technical Consultant . As a Technical Consultant , you'll bring expertise across Core Networking (Netskope, Fortinet, Palo Alto, or Juniper) or Cyber Security (SIEM, SOAR), helping to design and deliver enterprise-level solutions for clients across the UK. This is an excellent opportunity to join a dynamic, fast-growing business where innovation, technical excellence, and … on expertise with leading vendors such as Netskope, Fortinet, Palo Alto, or Juniper Networks , including the design and support of enterprise-grade architectures , or, a strong understanding of SIEM , SOAR , and Managed Security Services , with the ability to translate technical capabilities into clear business value . Additional knowledge of DDoS protection , Web Application Firewalls (WAF) , Endpoint Detection & Response (EDR) , Identity More ❯