Stoke-On-Trent, Staffordshire, West Midlands, United Kingdom
LA International Computer Consultants Ltd
Log Management & Analysis: Oversee the ingestion, parsing, and normalization of security logs from Azure, AWS, M365, and hybrid environments to improve threat visibility. * Security EventCorrelation & Automation: Develop advanced correlation rules, alerts, playbooks, and automation workflows using Sentinel, KQL, and SOAR integrations to enhance threat detection and … enhance security operations. Required Skills & Qualifications * Strong experience designing, managing, and integrating Microsoft Sentinel and Microsoft Defender for Cloud. * Proficiency in SIEM architecture, security eventcorrelation, log ingestion, and cloud security analytics. * Hands-on experience with security automation (SOAR), threat intelligence platforms, and log parsing techniques. * Strong understanding More ❯
Analysts, assessing threat severity and advising on initial response actions. Utilize expertise in SIEM solutions, especially Kusto Query Language (KQL), for log analysis, eventcorrelation, and documentation of security incidents. Identify and escalate critical threats to Tier 3 Analysts with detailed analysis for further action, ensuring compliance with More ❯
Analysts, determining threat severity and advising on initial response actions. Apply expertise in SIEM solutions utilizing Kusto Query Language (KQL), to perform log analysis, eventcorrelation, and thorough documentation of security incidents. Identify and escalate critical threats to Tier 3 Analysts with detailed analysis for further action, ensuring More ❯
Analysts, determining threat severity and advising on initial response actions. Apply expertise in SIEM solutions utilizing Kusto Query Language (KQL), to perform log analysis, eventcorrelation, and thorough documentation of security incidents. Identify and escalate critical threats to Tier 3 Analysts with detailed analysis for further action, ensuring More ❯
practices. Strong analytical and problem-solving abilities. Excellent written and verbal communication skills. Desirable Skills (Nice to Have): Familiarity with SIEM solutions and security event correlation. Experience with data replication, backup, and recovery strategies. Palo Alto Firewall administration experience. Scripting proficiency with Bash and Python. Tech Stack Exposure: Firewalls More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
TieTalent
security infrastructure and policies. Develop technical solutions and new security toolsets to mitigate security vulnerabilities and automate repeatable tasks. Build, implement and tune SIEM eventcorrelation rules/logic, and content, to filter out security events associated with known network behaviour, known false positives and/or known More ❯