Security Operations Jobs in the UK excluding London

76 to 100 of 255 Security Operations Jobs in the UK excluding London

IT Security Operations Engineer

Buckinghamshire, England, United Kingdom
Hybrid / WFH Options
Addition+
IT Security Operations Engineer Introduction: This is a hands-on role protecting critical digital systems that keep passengers moving safely and employees working securely. You’ll join a collaborative IT team where your expertise will directly strengthen the organisation’s cyber resilience and operational reliability. Role Overview: Location: Hybrid (Midlands or Oxfordshire – 3 days in office) Package … + excellent travel and lifestyle benefits Industry: Transport/Technology/Cyber Security What You’ll Be Doing: Actively monitor, detect, and respond to security threats across IT and operational systems. Manage and optimise key security platforms, including SIEM, XDR, and identity management tools. Implement and review security controls across networks, cloud, and infrastructure. Lead vulnerability … in tooling, automation, and incident response processes. Collaborate across departments — from IT teams to engineers — embedding best practice in every area. Mentor colleagues and promote a culture of continual security improvement. Main Skills Needed: Strong background in IT infrastructure, cloud environments, and cybersecurity operations. Hands-on experience with tools such as SIEM, DLP, endpoint protection, and network monitoring. Knowledge More ❯
Posted:

IT Security Operations Engineer

milton keynes, south east england, united kingdom
Hybrid / WFH Options
Addition+
IT Security Operations Engineer Introduction: This is a hands-on role protecting critical digital systems that keep passengers moving safely and employees working securely. You’ll join a collaborative IT team where your expertise will directly strengthen the organisation’s cyber resilience and operational reliability. Role Overview: Location: Hybrid (Midlands or Oxfordshire – 3 days in office) Package … + excellent travel and lifestyle benefits Industry: Transport/Technology/Cyber Security What You’ll Be Doing: Actively monitor, detect, and respond to security threats across IT and operational systems. Manage and optimise key security platforms, including SIEM, XDR, and identity management tools. Implement and review security controls across networks, cloud, and infrastructure. Lead vulnerability … in tooling, automation, and incident response processes. Collaborate across departments — from IT teams to engineers — embedding best practice in every area. Mentor colleagues and promote a culture of continual security improvement. Main Skills Needed: Strong background in IT infrastructure, cloud environments, and cybersecurity operations. Hands-on experience with tools such as SIEM, DLP, endpoint protection, and network monitoring. Knowledge More ❯
Posted:

IT Security Consultant

Bradford, West Yorkshire, England, United Kingdom
MLC Partners
Senior IT Security Specialist to lead and strengthen the cyber resilience of a complex public-sector programme. The postholder will play a pivotal role in developing, implementing, and governing security strategy, ensuring compliance with national standards, and embedding robust cyber practices across digital and IT estates. This is a senior strategic and technical leadership role, ideal for a … seasoned security professional with a background in enterprise-scale or local government IT environments. £700pd gross umbrella. Key Responsibilities Strategic Planning and Governance Develop, review, and maintain the IT Security Strategy aligned to organisational objectives and statutory duties. Lead the creation and enforcement of cybersecurity governance frameworks. Align security objectives with enterprise architecture and digital transformation strategy. … and boards on cyber risk posture, incidents, and mitigations. Identify and manage strategic risks — technical, legal, reputational, and financial. Evaluate emerging technologies (AI, RPA, cloud, hybrid infrastructure) from a security perspective. Policy, Procedure, and Guidance Oversight Review, update, and enforce security policies, standards, and guidance (e.g. Acceptable Use, Incident Response, Remote Access). Ensure compliance with NCSC, ISO More ❯
Employment Type: Temporary
Salary: £600 - £700 per day
Posted:

Cyber Security Lead

Glasgow, Lanarkshire, Scotland, United Kingdom
Hybrid / WFH Options
Last Mile Infrastructure Limited
Cyber Security Lead Hamilton, Glasgow or Stonehouse, Gloucester Join a leading utilities company that champions innovation and service excellence. At Last Mile, were proud to deliver high-quality solutions across the multi-utility sector, and our IT team is expanding. Were now looking for a talented Cyber Security Lead to play a pivotal role in strengthening our digital … resilience. As a Cyber Security Lead, reporting into the Director, Technology and Data, youll lead and develop a team of security professionals, oversee the delivery and ongoing management of our security infrastructure, and act as the go-to technical expert in threat detection, incident response, and vulnerability management. Were looking for someone with strong leadership skills, a … deep knowledge of the cyber security landscape, and a real passion for safeguarding digital assets. Whats in it for you as a Cyber Security Lead? Here at Last Mile, we pride ourselves in providing a great range of benefits including a fantastic amount of annual leave, including a Christmas shut down. 25 days holiday, increasing after 2 years More ❯
Employment Type: Permanent, Work From Home
Salary: £65,000
Posted:

Director of Information Security

Oxfordshire, England, United Kingdom
Vertex Search
Our investment advisory client is seeking an experienced Director of Information Security to lead the cybersecurity program of a prestigious, globally recognised portfolio company, ensuring the protection of sensitive intellectual property, critical resources, and global operations. This role combines technical expertise with strategic business engagement, ensuring that security is seamlessly integrated across all commercial activities. This role will … oversee the organization’s security strategy, security operations, vulnerability management, incident response, risk identification and mitigation planning/implementation, identity management, network security, privacy, and compliance. The Director will work closely and report to the Group CISO. Responsibilities Strategic Leadership & Business Partnership Act as a trusted advisor to leadership across operations, engineering, and corporate functions. … Translate cybersecurity risks into business terms, enabling executives to make informed decisions. Partner with various areas within the business to embed security into projects & daily operations. Define and drive the overall security roadmap, ensuring it evolves with the business. Lead security benchmarking and strategic planning Continuous assessment of risk across the organization paired with the ability to More ❯
Posted:

Director of Information Security

oxford district, south east england, united kingdom
Vertex Search
Our investment advisory client is seeking an experienced Director of Information Security to lead the cybersecurity program of a prestigious, globally recognised portfolio company, ensuring the protection of sensitive intellectual property, critical resources, and global operations. This role combines technical expertise with strategic business engagement, ensuring that security is seamlessly integrated across all commercial activities. This role will … oversee the organization’s security strategy, security operations, vulnerability management, incident response, risk identification and mitigation planning/implementation, identity management, network security, privacy, and compliance. The Director will work closely and report to the Group CISO. Responsibilities Strategic Leadership & Business Partnership Act as a trusted advisor to leadership across operations, engineering, and corporate functions. … Translate cybersecurity risks into business terms, enabling executives to make informed decisions. Partner with various areas within the business to embed security into projects & daily operations. Define and drive the overall security roadmap, ensuring it evolves with the business. Lead security benchmarking and strategic planning Continuous assessment of risk across the organization paired with the ability to More ❯
Posted:

Security Analyst Network & Support

London, South East, England, United Kingdom
Hybrid / WFH Options
Adecco
Security Analyst (Network & Support) Location - London (Hybrid) Duration - 6 Months (Initially) Rate - £450 (A day) IR35 - Outside IR35 Summary To be part of Digital Services, actively contributing as a member of the Infrastructure and Operations Team to support and develop the Network Infrastructure, Services, and Security. Provide 3rd line support for all wired, Wi-Fi, and remote access … network services to staff, students, contractors, and visitors. Act as a key point of reference in network security, contributing to the implementation, development, provisioning, and operational support of network dependencies. The post holder will be expected to support the designing, implementation, and maintenance of our client's Network Security Infrastructure to protect against cyber threats. Accountabilities and Responsibilities … Security Operations Support Serve as a reference point for network security across IT teams, providing guidance and specialised expertise on security measures. Conduct vulnerability assessments, security audits, and continuous monitoring of network traffic for anomalies using advanced security tools. Collaborate with IT teams to ensure security measures are integrated into network architecture and More ❯
Employment Type: Contractor
Rate: £450 - £500 per day
Posted:

Security Operations Center Analyst

Corsham, England, United Kingdom
LHH
This role is based five days per week on-site in Corsham. Security Analyst – SOC (Corsham, On-Site) An exciting opportunity to join an established Security Operations Centre, providing cyber expertise to support day-to-day operations. The role involves regular SOC activities, introducing new processes, and embedding best practice across the workplace. This role is based … continuous employment history, and an unspent criminal record check (DBS). Key Responsibilities Conduct reactive monitoring of client networks to deliver a layered, agile cyber defence capability across all security domains. Manage and triage alerts, perform impact assessments, and develop mitigating strategies to be briefed up the chain of command. Ensure compliance with all cyber security policies, procedures … reviewing and amending where required. Maintain and share knowledge of current cyber issues, vulnerabilities, and exploits through research, technical reports, and briefs. Skills and Experience Experience working as a Security Analyst in a SOC or equivalent security monitoring and response environment. Current SC clearance (essential). Knowledge of data networks. Experience with SIEM toolsets and security management More ❯
Posted:

Head of Information Security

Derby, England, United Kingdom
Delaney & Bourton
Head of Information Security | Contract | Hybrid – Derby (2–3 Days/Week) | 6 Month initial | Negotiable day-rate We’re partnered with a UK bluechip organisation to appoint an interim InfoSec leader to operate as the #2 to the Group CISO and support them in the delivery of their significant security strategy. In addition supporting the strategy execution … you'll lead day to day team leadership and vendor management across Security Operations, Incident Management, and Threat & Vulnerability Management. You will take the lead on operational and strategic delivery, ensuring the group’s security posture is mature, responsive, and aligned to business objectives. The organisation has a Group operating model across a large number of geographically … divisions, it is essential that this interim appointment has excellent stakeholder management and communication skills to ensure effective strategy adoption. The ideal profile: Senior experience leading Information or Cyber Security in large, distributed enterprises. We are very open to appoint a strong 'Senior Manager' who has the broad InfoSec experience we require, and has deputised for the 'Head of More ❯
Posted:

Head of Information Security

chesterfield, midlands, united kingdom
Delaney & Bourton
Head of Information Security | Contract | Hybrid – Derby (2–3 Days/Week) | 6 Month initial | Negotiable day-rate We’re partnered with a UK bluechip organisation to appoint an interim InfoSec leader to operate as the #2 to the Group CISO and support them in the delivery of their significant security strategy. In addition supporting the strategy execution … you'll lead day to day team leadership and vendor management across Security Operations, Incident Management, and Threat & Vulnerability Management. You will take the lead on operational and strategic delivery, ensuring the group’s security posture is mature, responsive, and aligned to business objectives. The organisation has a Group operating model across a large number of geographically … divisions, it is essential that this interim appointment has excellent stakeholder management and communication skills to ensure effective strategy adoption. The ideal profile: Senior experience leading Information or Cyber Security in large, distributed enterprises. We are very open to appoint a strong 'Senior Manager' who has the broad InfoSec experience we require, and has deputised for the 'Head of More ❯
Posted:

Head of Information Security

nottingham, midlands, united kingdom
Delaney & Bourton
Head of Information Security | Contract | Hybrid – Derby (2–3 Days/Week) | 6 Month initial | Negotiable day-rate We’re partnered with a UK bluechip organisation to appoint an interim InfoSec leader to operate as the #2 to the Group CISO and support them in the delivery of their significant security strategy. In addition supporting the strategy execution … you'll lead day to day team leadership and vendor management across Security Operations, Incident Management, and Threat & Vulnerability Management. You will take the lead on operational and strategic delivery, ensuring the group’s security posture is mature, responsive, and aligned to business objectives. The organisation has a Group operating model across a large number of geographically … divisions, it is essential that this interim appointment has excellent stakeholder management and communication skills to ensure effective strategy adoption. The ideal profile: Senior experience leading Information or Cyber Security in large, distributed enterprises. We are very open to appoint a strong 'Senior Manager' who has the broad InfoSec experience we require, and has deputised for the 'Head of More ❯
Posted:

Information Security Manager

London, South East, England, United Kingdom
Harrison Holgate
Our client, a leading city-based insurance broker, is seeking an experienced Information Security Manager to lead the development and delivery of the firm's information security programme. This key role will be central to protecting business systems, data, and operations across a growing organisation. Key responsibilities:* Design and implement security policies and procedures aligned with … ISO 27001, NIST, and other recognised frameworks. * Manage the information security risk register and lead internal and external audits. * Oversee incident response, including investigation, containment, and recovery. * Conduct vendor security assessments and review contractual security requirements. * Lead day-to-day security operations, including access control, vulnerability management, and endpoint protection. * Build and mentor a new … security team while driving organisation-wide security awareness. Key experience:* Extensive experience in information security within regulated financial services. * Strong understanding of UK insurance broking operations. * Knowledge of FCA, PRA, GDPR, and SOX regulatory frameworks. * Experience in post-acquisition integration and operating model design. * Excellent stakeholder engagement and communication skills. This is an outstanding opportunity for a More ❯
Employment Type: Full-Time
Salary: £80,000 - £100,000 per annum
Posted:

SOC Shift Lead

Hemel Hempstead, Hertfordshire, South East, United Kingdom
Sopra Steria
leaders in their field. Our new position of SOC Shift Lead will direct a team of SOC Analysts, conduct monitoring and triage of alerts associated with host and network security events for our clients critical infrastructure and support the SOC through both delivery of client work and adding skills and ideas to this already diverse team. This role is … 6PM to 6am, 4 days off. Please note you do need to be eligible for DV Clearance for this role. What you'll be doing: Monitor, triage, and investigate security incidents on critical client infrastructure. In depth analysis of network traffic, logs, and system events to identify potential security threats and vulnerabilities. Line Management. Maintain, improve and develop … team knowledge of SOC tools, security operations and triage. Analyse and improve detection rules and use cases in line with Mitre Att&ck and threat-informed defence. Maintain and update security incident documentation, including incident reports, analysis findings, and recommended mitigation strategies. Represent the SOC within Partners meetings. Ability to work shift from our office in Hemel More ❯
Employment Type: Permanent
Salary: 25 days holidays, 6% Contributory pension, 4 x life Insurance
Posted:

SOC Lead

Hemel Hempstead, Hertfordshire, England, United Kingdom
Sopra Steria
leaders in their field. Our new position of SOC Shift Lead will direct a team of SOC Analysts, conduct monitoring and triage of alerts associated with host and network security events for our client’s critical infrastructure and support the SOC through both delivery of client work and adding skills and ideas to this already diverse team. This role … 6PM to 6am, 4 days off. Please note you do need to be eligible for DV Clearance for this role. What you'll be doing: Monitor, triage, and investigate security incidents on critical client infrastructure. In depth analysis of network traffic, logs, and system events to identify potential security threats and vulnerabilities. Line Management. Maintain, improve and develop … team knowledge of SOC tools, security operations and triage. Analyse and improve detection rules and use cases in line with Mitre Att&ck and threat-informed defence. Maintain and update security incident documentation, including incident reports, analysis findings, and recommended mitigation strategies. Represent the SOC within Partners meetings. Ability to work shift from our office in Hemel More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Incident Response (CSIRT) / SOC Level 3 Analyst

Crawley, Sussex, United Kingdom
Hybrid / WFH Options
Morson Edge
SOC Level 3 Analyst Location: Crawley (Hybrid) Department: Information Systems Type: Contract Full-time Outside IR35 About the Role My client is seeking an experienced Incident Response (CSIRT)/Security Operations Centre (SOC) Level 3 Analyst to join their Information Systems directorate, based in Crawley. In this critical role, you'll respond to high-severity cyber incidents and … escalated security events, leveraging your technical expertise, analytical mindset, and industry-standard tools to contain, eradicate, and recover from cyber threats. Your work will directly contribute to safeguarding my client's network systems, operational technology, and customer data from emerging and sophisticated cyber risks. Key Responsibilities As a senior member of the Security Operations team, you will … and OT environments to identify and eliminate hidden threats. Develop and enhance SOC policies, playbooks, and incident response processes to align with industry best practices. Collaborate with the Managed Security Service Provider (MSSP) and internal teams to ensure complete log source integration and effective alert correlation across cloud and on-prem environments. Support and develop the organisation's SOAR More ❯
Employment Type: Contract
Rate: GBP Annual
Posted:

Incident Response (CSIRT) / SOC Level 3 Analyst

Crawley, West Sussex, South East, United Kingdom
Hybrid / WFH Options
Morson Edge
SOC Level 3 Analyst Location: Crawley (Hybrid) Department: Information Systems Type: Contract | Full-time Outside IR35 About the Role My client is seeking an experienced Incident Response (CSIRT)/Security Operations Centre (SOC) Level 3 Analyst to join their Information Systems directorate, based in Crawley. In this critical role, you'll respond to high-severity cyber incidents and … escalated security events, leveraging your technical expertise, analytical mindset, and industry-standard tools to contain, eradicate, and recover from cyber threats. Your work will directly contribute to safeguarding my client's network systems, operational technology, and customer data from emerging and sophisticated cyber risks. Key Responsibilities As a senior member of the Security Operations team, you will … and OT environments to identify and eliminate hidden threats. Develop and enhance SOC policies, playbooks, and incident response processes to align with industry best practices. Collaborate with the Managed Security Service Provider (MSSP) and internal teams to ensure complete log source integration and effective alert correlation across cloud and on-prem environments. Support and develop the organisation's SOAR More ❯
Employment Type: Contract
Posted:

Senior Azure Engineer / Cloud Operations Lead

Worthing, West Sussex, England, United Kingdom
Hybrid / WFH Options
Real Technical Solutions
Senior Azure Engineer/Cloud Operations Lead – Worthing/Hybrid £70,000 - £75,000 plus benefits/bonus – Hybrid working in Worthing office 2 days per week Core notes: Strength as a lead and strong technically. Azure/Azure Native Services. PaaS. IaaS. Terraform/Infrastructure as Code (IaC). Huge opportunity to grow. Overview of the Senior Azure … Engineer/Cloud Operations Lead position: A large organisation that has far reaching impacts on the environment, the community and our ecosystem, seek an experienced Senior Azure Engineer/Cloud Operations Lead to help play a critical role in the design, implementation, and ongoing operation of the companies cloud infrastructure, with a strong emphasis on Microsoft Azure. As … a key technical contributor within the Cloud Operations function, you will be responsible for ensuring that cloud-based services are available, secure, efficient, and cost-effective. This includes provisioning and managing compute, storage, networking, and identity services, as well as supporting the use of advanced PaaS capabilities and analytics platforms. You will be in a hands-on role that More ❯
Employment Type: Full-Time
Salary: £70,000 - £75,000 per annum
Posted:

Information Security Officer

Basingstoke, England, United Kingdom
Reassured
Information Security Officer Full-time, Permanent Basingstoke (hybrid) £85,000 Reassured are looking for an Information Security Officer to lead and evolve our approach to protecting data, systems and customer trust. If you're passionate about embedding security into business operations and driving awareness across teams, this is a brilliant opportunity to make a real impact. … You’ll be responsible for managing our information security operations, governance and certifications, including ISO27001 and Cyber Essentials Plus. Working closely with IT leadership and stakeholders across the business, you’ll ensure our systems and processes meet the highest standards while fostering a culture of security-first thinking. What you'll be doing: Leading the development and … delivery of our information security strategy Managing audits, certifications and risk assessments Supporting secure system design and change Driving company-wide security awareness and training Acting as Incident Response Manager for security events What we're looking for: 5+ years’ experience in information security Strong knowledge of ISO27001, Cyber Essentials Plus and risk management CISSP or More ❯
Posted:

Information Security Officer

southampton, south east england, united kingdom
Reassured
Information Security Officer Full-time, Permanent Basingstoke (hybrid) £85,000 Reassured are looking for an Information Security Officer to lead and evolve our approach to protecting data, systems and customer trust. If you're passionate about embedding security into business operations and driving awareness across teams, this is a brilliant opportunity to make a real impact. … You’ll be responsible for managing our information security operations, governance and certifications, including ISO27001 and Cyber Essentials Plus. Working closely with IT leadership and stakeholders across the business, you’ll ensure our systems and processes meet the highest standards while fostering a culture of security-first thinking. What you'll be doing: Leading the development and … delivery of our information security strategy Managing audits, certifications and risk assessments Supporting secure system design and change Driving company-wide security awareness and training Acting as Incident Response Manager for security events What we're looking for: 5+ years’ experience in information security Strong knowledge of ISO27001, Cyber Essentials Plus and risk management CISSP or More ❯
Posted:

SC Cleared Cyber Security Analyst - Ransomware

Exeter, Devon, United Kingdom
Alexander Mann Solutions - Public Sector Resourcing
On behalf of the Met Office, we are looking for a Cyber Security Analyst (Inside IR35) for a 6 month contract based hybrid in Exeter as and when required. As a Cyber Security Analyst, your main responsibilities will be: . Supporting information security delivery work, including the development and implementation of Information Security Policies, Standards, processes … and guidance. . The security of Digital infrastructure by proactively analysing security threats/challenges/risks to the environment, including conducting penetration testing and compliance reviews monitoring of Information Security and information management to ensure compliance including reviewing and monitoring system and network logs for malicious activity or unacceptable use. Typical Skills: . Technical Knowledge within … anti-virus, networking, vulnerability management, encryption, Microsoft technologies, Linux. Knowledge of Information Security standards, legislation and practices, including GDPR & Data Protection Act 2018. . Experience in dealing with a wide range of Information Security matters and operating in an ITIL based environment. . Strong problem solving ability, with flexibility to think creatively and adapt to and implement rapidly More ❯
Employment Type: Contract
Rate: GBP Annual
Posted:

Cyber Security Engineer

welwyn garden city, east anglia, united kingdom
Hybrid / WFH Options
PayPoint
Job Advert What will you be doing? The PayPoint Group is looking to expand its Information Security team, and we have a new role for a Cyber Security Engineer. You will be responsible for creating, implementing, and maintaining security content such as rules, playbooks, dashboards, and reports for our security systems. This role requires a strong … understanding of security best practices, and experience working with enterprise security platforms within a SOC environment. You will join the Information Security team and use your experience and technical skills and work closely with your team members. This role is Hybrid with a requirement to be onsite at least once a week in Liverpool/Welwyn Garden … City. Key responsibilities Security Engineering You'll develop and refine detection rules, alerts, and automation playbooks using Microsoft security platforms to identify threats and reduce false positives. Your role will also involve managing log ingestion, ensuring full coverage of critical assets, and driving the integration of automation and AI to enhance our security operations. Security Analysis More ❯
Posted:

Cyber Security Assurance Manager

Portsmouth, Hampshire, South East, United Kingdom
Hybrid / WFH Options
Robert Half
Job Posting: Cyber Security Assurance Manager Location: Portsmouth (Hybrid) Salary: £50,000 - £65,000 DOE Are You Ready to Lead the Way in Cyber Security Assurance? Robert Half are seeking a dynamic, proactive, and experienced Cyber Security Assurance Manager to join a globally-scaled, fast-paced Security Operations Centre (SOC) environment. In this crucial role … you will ensure that the SOC maintains its commitment to best-in-class standards through internationally recognised security certifications and industry-wide assurance frameworks, delivering confidence to clients and meeting regulatory expectations. As a core team member in Governance, Risk, and Compliance (GRC) , you will lead certification efforts, influence operational processes, and engage directly with customers and auditors to … showcase security credentials that differentiate our SOC from the competition. If you're skilled in blending technical insight with customer-focused communication while driving compliance excellence, this opportunity is for you! What We're Looking For: Qualifications and Experience: Proven experience delivering and managing cybersecurity certifications (e.g., ISO/IEC 27001, SOC2 Type II, Cyber Essentials Plus, CREST). More ❯
Employment Type: Permanent, Work From Home
Posted:

Senior SIEM Consultant

Bristol, Gloucestershire, United Kingdom
Apto Solutions Ltd
empowering clients to own, manage and rule their data. One of our specialisations is in cybersecurity consultancy offering end-to-end SIEM services, helping clients design, deploy, and optimise security monitoring and threat detection solutions. Our team provides comprehensive support across all stages of SIEM implementation, from initial strategy and solution design to deployment and ongoing management. Our focus … is on delivering tailored solutions that enhance security postures, maintain compliance, and provide actionable threat intelligence. What we're looking for We are seeking a client-focused Senior SIEM Consultant with a strong foundation in SIEM technologies, cybersecurity best practices, and threat detection strategies. In this role, you will work closely with clients to understand their security needs … other leading SIEM tools. You'll participate in hands-on configuration and optimisation as needed but with a primary focus on advising clients, developing design strategies, and ensuring their security objectives are met. This position is ideal for someone with experience in SIEM or SOC environments who is comfortable in a consultative, client-facing role. Knowledge of cloud security More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

SOC Detection Engineer

Farnborough, England, United Kingdom
Talent Locker
Defence capabilities? This role offers the opportunity to contribute to the development and optimisation of advanced threat detection systems within a highly secure environment. You will work within a Security Operations Centre (SOC), designing and maintaining detection logic across SIEM (Security Information and Event Management) and EDR (Endpoint Detection and Response) platforms. Your work will help identify … positives, and improve overall detection coverage across networks, endpoints, cloud services, and identity platforms. Job Description As a SOC Detection Engineer, you will be part of a specialist cyber operations team responsible for implementing and maintaining high-fidelity detection capabilities. You will contribute to the development of detection rules, threat hunting activities, and automation workflows to support incident response … and continuous improvement. Key responsibilities include: Designing and tuning detection rules and use cases in SIEM and EDR platforms Monitoring and investigating security alerts to identify potential threats Conducting proactive threat hunting using MITRE ATT&CK and threat intelligence sources Collaborating with incident response teams to support investigations and containment Enhancing detection coverage across network, endpoint, cloud, and identity More ❯
Posted:

SOC Detection Engineer

southampton, south east england, united kingdom
Talent Locker
Defence capabilities? This role offers the opportunity to contribute to the development and optimisation of advanced threat detection systems within a highly secure environment. You will work within a Security Operations Centre (SOC), designing and maintaining detection logic across SIEM (Security Information and Event Management) and EDR (Endpoint Detection and Response) platforms. Your work will help identify … positives, and improve overall detection coverage across networks, endpoints, cloud services, and identity platforms. Job Description As a SOC Detection Engineer, you will be part of a specialist cyber operations team responsible for implementing and maintaining high-fidelity detection capabilities. You will contribute to the development of detection rules, threat hunting activities, and automation workflows to support incident response … and continuous improvement. Key responsibilities include: Designing and tuning detection rules and use cases in SIEM and EDR platforms Monitoring and investigating security alerts to identify potential threats Conducting proactive threat hunting using MITRE ATT&CK and threat intelligence sources Collaborating with incident response teams to support investigations and containment Enhancing detection coverage across network, endpoint, cloud, and identity More ❯
Posted:
Security Operations
the UK excluding London
10th Percentile
£37,500
25th Percentile
£43,000
Median
£59,000
75th Percentile
£70,000
90th Percentile
£81,250