IoT, Cloud, Infrastructure and Network Security controls; Programming/scripting experience (Powershell, ASP, .NET, Python, Perl); Log analysis and configuration reviews across infrastructure components including- Servers, Firewalls, WAF's, SIEM, VMware, etc Security Engineering or Architecture (SABSA an advantage) Knowledge of CI/CD would be an advantage Specifying and performing vulnerability analysis and review pen test and scan results More ❯
Greater Bristol Area, United Kingdom Hybrid/Remote Options
RedRock Resourcing
risk assessments, andsecurity validation/UAT; support incident response. Maintain SBOMs to support vulnerability managementand supply-chain assurance. Integrate and enhance security monitoring, logging and alerting (including SIEM/threat detection). Create security documentation (designs, risk assessments, mitigation plans, ops procedures). Collaborate with project/programme managers and stakeholders to ensure effective control implementation. Skills/ More ❯
data protection, and governance, risk & compliance (GRC). Requirements In-depth understanding of the incident response lifecycle — preparation, detection, containment, eradication, recovery, and lessons learned. Hands-on experience with SIEM tools such as Splunk, Sentinel, or QRadar — including log analysis and data correlation. Strong familiarity with EDR platforms like CrowdStrike, SentinelOne, or Carbon Black. Working knowledge of network security , including More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Cititec
data protection, and governance, risk & compliance (GRC). Requirements In-depth understanding of the incident response lifecycle — preparation, detection, containment, eradication, recovery, and lessons learned. Hands-on experience with SIEM tools such as Splunk, Sentinel, or QRadar — including log analysis and data correlation. Strong familiarity with EDR platforms like CrowdStrike, SentinelOne, or Carbon Black. Working knowledge of network security , including More ❯
City, London, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
experience. Proven experience within a SOC (Security Operations Centre) or NOC (Network Operations Centre). Strong understanding of incident response methodologies and the MITRE ATT&CK framework. Experience using SIEM, IDS/IPS, vulnerability scanners, and Azure security tools. Technical expertise in Microsoft Defender, EDR (Endpoint Detection and Response), and network architecture. Practical experience managing cyber incidents and implementing secure More ❯
London, Fleet Street, United Kingdom Hybrid/Remote Options
The Bridge IT Recruitment
experience. Proven experience within a SOC (Security Operations Centre) or NOC (Network Operations Centre). Strong understanding of incident response methodologies and the MITRE ATT&CK framework. Experience using SIEM, IDS/IPS, vulnerability scanners, and Azure security tools. Technical expertise in Microsoft Defender, EDR (Endpoint Detection and Response), and network architecture. Practical experience managing cyber incidents and implementing secure More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid/Remote Options
Littlefish
emerging tech. The following would also be of interest: Certifications in automation/cloud (Azure Solutions Architect, Terraform, GIAC), vulnerability management (Qualys, ISO 27001, NIST). Experience with SOAR, SIEM, XDR, and cloud-native security (especially Azure). Pre-sales or solution architecture exposure. What can we offer you? Through our one of a kind training programme, the Littlefish Academy More ❯
with Microsoft Cloud technologies ESSENTIAL Other requirements: Proven experience with Microsoft Sentinel, Microsoft Defender for Cloud, and Microsoft Purview in real-world environments. Strong understanding of cloud security architecture, SIEM/SOAR, compliance frameworks (e.g., ISO 27001, NIST, GDPR), and data protection. Familiarity with Azure, Microsoft 365, and hybrid cloud environments. Understanding of security operations, incident response, and threat intelligence. More ❯
to mitigate risks and enhance our data security posture. Technical Expertise in Cybersecurity & Incident Response Experience with email security, cloud platforms, and endpoint protection. Strong understanding of DLP, CASB, SIEM, XDR and other security monitoring tools. Proven ability to manage and/or support response to complex security incidents and data breaches. Strong troubleshooting and problem-solving skills, with the More ❯
Weedon Bec, Northamptonshire, UK Hybrid/Remote Options
HybrIT Services
Security/SharePoint/Exchange Online) Active Directory - Management, Group Policy, Sites and Services, ADconnect Public Cloud - Azure Administration & Management Endpoint Security - Antivirus/Firewalls Desirable Knowledge Experience with SIEM platforms and integration of network devices into SOC environments is desirable. Microsoft Azure - Familiarity with Azure services beyond the basics, such as Azure AD (Entra), or Azure workload configuration such More ❯
Weedon Bec, England, United Kingdom Hybrid/Remote Options
HybrIT Services
Security/SharePoint/Exchange Online) Active Directory - Management, Group Policy, Sites and Services, ADconnect Public Cloud - Azure Administration & Management Endpoint Security - Antivirus/Firewalls Desirable Knowledge Experience with SIEM platforms and integration of network devices into SOC environments is desirable. Microsoft Azure - Familiarity with Azure services beyond the basics, such as Azure AD (Entra), or Azure workload configuration such More ❯
Crawley, England, United Kingdom Hybrid/Remote Options
InfoSec People Ltd
compliance frameworks (NIS2, CAF, ISO 27001). Skills & Experience Required Extensive background in SOC operations, incident response, and threat hunting. Expertise with the Microsoft security stack, including: Microsoft Sentinel (SIEM/SOAR) Microsoft Defender for Endpoint, Identity, Cloud Apps, and Office 365 Microsoft Entra ID (Azure AD) Microsoft Purview (compliance and data protection) Strong knowledge of attacker tactics and techniques More ❯
City of London, London, United Kingdom Hybrid/Remote Options
TDA TELECOM LIMITED
or solutions architecture role. Background working with or for a VAR, Systems Integrator, or Security Vendor highly desirable . Technical Expertise Strong understanding of enterprise security technologies, including firewalls, SIEM/SOAR, IAM, DLP, SASE, Zero Trust, and cloud security. Working knowledge of AWS, Azure, and GCP security services. Broad understanding of networking, virtualisation, and enterprise infrastructure. CISSP, CCSP, or More ❯
Wokingham, Berkshire, England, United Kingdom Hybrid/Remote Options
Searchability NS&D
Contract SIEM Engineer Exciting contract opportunity to join a high-performing cybersecurity team Hybrid working model, three days onsite and two remote Contribute to cutting-edge SIEMand EDR deployments for a large-scale organisation Up to £410 per day (Inside IR35) Active SC clearance required ABOUT THE CLIENT: Our client is a well-established technology-driven organisation with a … advancing its cybersecurity capabilities. You will join a dedicated security team working to enhance threat detection and response across complex environments. This is a crucial role for an experienced SIEM Engineer to make a measurable impact by improving resilience and operational security. THE BENEFITS: Up to £410 per day (Inside IR35) Hybrid working arrangement Collaborative and innovative security culture Opportunity … to work with leading SIEMand EDR technologies THE SIEM ENGINEER ROLE: As a SIEM Engineer, you will design, deploy, and maintain SIEMand EDR solutions that strengthen the organisation's security posture. You will work closely with IT andsecurity teams to manage log ingestion, implement integrations, and monitor system activity for potential threats. SIEM ENGINEER ESSENTIAL SKILLS: Proven More ❯
Manchester, England, United Kingdom Hybrid/Remote Options
Acumin
and solution-level security architectures in hybrid and cloud (AWS/Azure) environments. Strong hands-on expertise with enterprise security platforms – including Endpoint Protection, Cloud Security, Network Security, DevSecOps, SIEM/SOAR, and vulnerability management. Deep understanding of secure design principles, IAM, encryption, API security, and application security. Experience performing threat modelling, security risk assessments, and control design validation. In More ❯
City of London, London, United Kingdom Hybrid/Remote Options
Acumin
and solution-level security architectures in hybrid and cloud (AWS/Azure) environments. Strong hands-on expertise with enterprise security platforms – including Endpoint Protection, Cloud Security, Network Security, DevSecOps, SIEM/SOAR, and vulnerability management. Deep understanding of secure design principles, IAM, encryption, API security, and application security. Experience performing threat modelling, security risk assessments, and control design validation. In More ❯
and solution-level security architectures in hybrid and cloud (AWS/Azure) environments. Strong hands-on expertise with enterprise security platforms – including Endpoint Protection, Cloud Security, Network Security, DevSecOps, SIEM/SOAR, and vulnerability management. Deep understanding of secure design principles, IAM, encryption, API security, and application security. Experience performing threat modelling, security risk assessments, and control design validation. In More ❯
Wokingham, Berkshire, England, United Kingdom Hybrid/Remote Options
KBC Technologies UK LTD
Conduct regular security audits and assessments to identify and remediate risks. Apply industry frameworks such as NIST Cybersecurity Framework, ISO 27001, CIS Controls . Oversee and enhance security technologies: SIEM, vulnerability management, cloud security (OCI/Azure/AWS), PKI, cryptography, web/email security, logging and monitoring . Monitor network traffic for anomalies and potential breaches. Collaborate with IT More ❯
East London, London, United Kingdom Hybrid/Remote Options
A&O Shearman
are met. Ensure the IAM service follows and complies with IT andInformationSecurity policies and regulatory standards. Help configure and keep current the integration of IAM technologies with SIEM, SOAR, Service Desk and other tools. Work closely with relevant vendors to ensure optimised use of the supplied technologies and professional services. Serve as an escalation point for issues of More ❯
Wokingham, Berkshire, United Kingdom Hybrid/Remote Options
Damia Group LTD
eg, CyberArk, BeyondTrust, Delinea). Implement least privilege access models and enforce secure credential management. Monitor and audit privileged access activities across systems and applications. Integrate PAM tools with SIEM, IAM, and other security platforms. Develop and maintain policies, procedures, and documentation for PAM operations. Conduct regular access reviews, privilege audits, and risk assessments. Collaborate with IT, DevOps, andSecurityMore ❯
Knutsford, Cheshire, United Kingdom Hybrid/Remote Options
Applause IT Recruitment Ltd
informationsecurity, risk, or compliance roles. Strong understanding of ISMS principles (ISO 27001) and audit support for SOC 2 Type II. Hands-on experience with security tools and controls - SIEM, IAM/PAM, endpoint protection, vulnerability management. Working knowledge of data-protection and privacy standards (GDPR, HIPAA). Excellent communication skills - able to collaborate across technical and non-technical teams. More ❯
Liverpool, England, United Kingdom Hybrid/Remote Options
Love2shop
Working closely with Infrastructure teams, you’ll ensure endpoint configurations meet organisational standards. You’ll also enhance threat-hunting capabilities by integrating threat intelligence and correlating EDR data with SIEMand XDR platforms for deeper insights. Data Loss Prevention (DLP) In this part of the role, you’ll implement and configure DLP solutions, define classification policies, and monitor for potential More ❯