We’re looking for a hands-on technical expert to join our team and enhance our Microsoft Sentinel & Azure SIEM threat detection capabilities. The Role: Design, implement & tune advanced detection rules and analytics. Translate threat intelligence into actionable detection logic. Lead SIEM enhancements, integrations & content migration. Mentor junior engineers and drive best practices. Collaborate with IR & threat intel teams to … refine detections. Skills: Proven experience in SIEM content development & threat detection. Strong expertise with Microsoft Sentinel, Azure & Logic Apps. Deep knowledge of MITRE ATT&CK, attacker TTPs & security principles. Strong analytical & problem-solving skills. More ❯
City of London, London, United Kingdom Hybrid/Remote Options
RiverSafe
We’re looking for a hands-on technical expert to join our team and enhance our Microsoft Sentinel & Azure SIEM threat detection capabilities. The Role: Design, implement & tune advanced detection rules and analytics. Translate threat intelligence into actionable detection logic. Lead SIEM enhancements, integrations & content migration. Mentor junior engineers and drive best practices. Collaborate with IR & threat intel teams to … refine detections. Skills: Proven experience in SIEM content development & threat detection. Strong expertise with Microsoft Sentinel, Azure & Logic Apps. Deep knowledge of MITRE ATT&CK, attacker TTPs & security principles. Strong analytical & problem-solving skills. More ❯
Microsoft XDR | £500 - £525 | 3 Month Initial | Inside IR35 | Fully Remote Opus are recruiting for a Security Engineer to support the implementation of Defender XDR including hands on configuration, SIEM integration and related security solutions. This initial 3-month contract can be completed on a fully remote basis and is determined as Inside IR35, offering £500–£525 per day. Key … Skills: Microsoft Defender XDR: Endpoint, Identity, Office 365, Cloud Apps Microsoft Sentinel: KQL, playbook development, SIEM optimisation Privileged Identity Management (PIM) and change control workflows Advanced threat detection, incident response, and threat hunting Log collection via Azure Monitoring Agent and Firewall Management Centre Responsibilities: Configure and fine-tune Microsoft Defender XDR in line with approved designs Participate in Microsoft FastTrack … engagements Integrate Defender XDR with Sentinel SIEM for enhanced detection and response Develop Kusto queries and automation playbooks Support PoC setup for Microsoft Copilot for Security Connect syslogs from on-prem servers and firewalls to Sentinel If this Security Engineer role sounds like a good fit, please apply with your most up to date CV and I’ll be in More ❯
Month Initial | Inside IR35 | Fully Remote Opus are working with a key client on a Security Engineer contract to support the implementation of Defender XDR including hands on configuration, SIEM integration and related security solutions. This initial 3-month contract can be completed on a fully remote basis and is determined as Inside IR35, offering £500-£525 per day. Key … Skills : Microsoft Defender XDR: Endpoint, Identity, Office 365, Cloud Apps Microsoft Sentinel: KQL, playbook development, SIEM optimisation Privileged Identity Management (PIM) and change control workflows Advanced threat detection, incident response, and threat hunting Log collection via Azure Monitoring Agent and Firewall Management Centre Responsibilities: Configure and fine-tune Microsoft Defender XDR in line with approved designs Participate in Microsoft FastTrack … engagements Integrate Defender XDR with Sentinel SIEM for enhanced detection and response Develop Kusto queries and automation playbooks Support PoC setup for Microsoft Copilot for Security Connect syslogs from on-prem Servers and Firewalls to Sentinel If this Security Engineer role sounds like a good fit, please apply with your most up to date CV and I'll be in More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Opus Recruitment Solutions Ltd
Month Initial | Inside IR35 | Fully Remote Opus are working with a key client on a Security Engineer contract to support the implementation of Defender XDR including hands on configuration, SIEM integration and related security solutions. This initial 3-month contract can be completed on a fully remote basis and is determined as Inside IR35, offering £500–£525 per day. Key … Skills : Microsoft Defender XDR: Endpoint, Identity, Office 365, Cloud Apps Microsoft Sentinel: KQL, playbook development, SIEM optimisation Privileged Identity Management (PIM) and change control workflows Advanced threat detection, incident response, and threat hunting Log collection via Azure Monitoring Agent and Firewall Management Centre Responsibilities: Configure and fine-tune Microsoft Defender XDR in line with approved designs Participate in Microsoft FastTrack … engagements Integrate Defender XDR with Sentinel SIEM for enhanced detection and response Develop Kusto queries and automation playbooks Support PoC setup for Microsoft Copilot for Security Connect syslogs from on-prem servers and firewalls to Sentinel If this Security Engineer role sounds like a good fit, please apply with your most up to date CV and I’ll be in More ❯
A SOC Analyst will be responsible for providing Protective Monitoring Services across a range of Secure Customers. They will be responsible for the day to day monitoring using various SIEM Tools (Qradar, Sentinel & LogRhythm). Some of the responsibilities that come along with this role include the following: Security Analytics Incident investigation, triage and escalation Threat monitoring and response Trend … other team members including SOC engineers and Service Managers. Skills required: Microsoft Certified: Security Operations Analyst Associate Certification (SC200) is a mandatory requirement for role fulfilment Experience working with SIEM technologies andsecurity tooling An understanding of IT Infrastructure and Networking An understanding of vulnerability and threat management An understanding of the incident response lifecycle T he ability to work More ❯
Reading, England, United Kingdom Hybrid/Remote Options
ALOIS Solutions
can be extended Work location : Reading/Havant, UK - Hybrid (at least 2 days in office) Inside IR35 Candidate MUST BE SECURITY CLEARED As a SecurityInformation & Event Monitoring (SIEM) Engineer, you are responsible for maintaining the SIEM platform. This includes onboarding log sources, creating custom parsers, developing analytic rules, creating automation for triage and remediation, and integrating with other … in infrastructure projects to develop, plan, and implement solutions for security monitoring. • Design, implement, and maintain detection rulesets. Scope, plan, and track log integrations. • Guide, develop, and grow the SIEM Engineering team. • Collaborate with the wider Threat Detection & Response team to ensure the SIEM platform meets their day-to-day needs and support incidents as necessary. You have: • Proven hands … on SIEM Engineering background. • Extensive experience working with security logs across multiple domains – identity and access, network, system, data, application, cloud – and multiple product types. • Proficiency in data analysis and scripting languages (e.g., PowerShell, Python). • Strong Security Orchestration, Automation and Response (SOAR) knowledge. • Team leadership experience with great collaboration and stakeholder management skills More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid/Remote Options
Corriculo Ltd
hoc travel to other sites/data centres. The Role The Cyber Security Engineer will be joining the internal security team, monitoring and analysing real-time security events using SIEM tools to detect and respond to potential threats. The Cyber Security Engineer will conduct regular vulnerability assessments and penetration tests to identify and mitigate security risks and breaches, and will … virtualisation, etc. Hands-on experience in the management of IDS/IPS, Firewalls, VPN, EDR/XDR, mail filtering and other security products Experience of SecurityInformationEventManagement (SIEM) tools Any experience or knowledge of ISO27001 as well as with penetration testing/vulnerability scanning would be highly advantageous The list above is important, but not as important as More ❯
Birmingham, England, United Kingdom Hybrid/Remote Options
Undisclosed
using Postfix. Interpret and implement Low-Level Design documentation. Ensure secure mail routing and compliance with enterprise security standards. Integrate Postfix with core enterprise solutions such as VCF, HPE, SIEM, and LDAP/AD. Troubleshoot mail delivery and server performance issues. Automate and monitor processes using scripting (e.g., Bash, Python). Produce comprehensive technical documentation. Required Skills & Experience: Extensive hands … Proficiency in Linux system administration (RHEL, CentOS, Ubuntu). Experience with TLS, SPF/DKIM/DMARC, and SASL protocols. Ability to integrate Postfix into enterprise systems (VCF, HPE, SIEM, LDAP/AD). Strong troubleshooting and problem-solving skills. Scripting experience for automation and monitoring (Bash, Python). Excellent technical documentation skills. Preferred Qualifications: Knowledge of high availability, load More ❯
City, Birmingham, United Kingdom Hybrid/Remote Options
Experis
using Postfix. Interpret and implement Low-Level Design documentation. Ensure secure mail routing and compliance with enterprise security standards. Integrate Postfix with core enterprise solutions such as VCF, HPE, SIEM, and LDAP/AD. Troubleshoot mail delivery and server performance issues. Automate and monitor processes using scripting (e.g., Bash, Python). Produce comprehensive technical documentation. Required Skills & Experience: Extensive hands … Proficiency in Linux system administration (RHEL, CentOS, Ubuntu). Experience with TLS, SPF/DKIM/DMARC, and SASL protocols. Ability to integrate Postfix into enterprise systems (VCF, HPE, SIEM, LDAP/AD). Strong troubleshooting and problem-solving skills. Scripting experience for automation and monitoring (Bash, Python). Excellent technical documentation skills. Preferred Qualifications: Knowledge of high availability, load More ❯
Birmingham, West Midlands, West Midlands (County), United Kingdom Hybrid/Remote Options
Experis
using Postfix. Interpret and implement Low-Level Design documentation. Ensure secure mail routing and compliance with enterprise security standards. Integrate Postfix with core enterprise solutions such as VCF, HPE, SIEM, and LDAP/AD. Troubleshoot mail delivery and server performance issues. Automate and monitor processes using scripting (e.g., Bash, Python). Produce comprehensive technical documentation. Required Skills & Experience: Extensive hands … Proficiency in Linux system administration (RHEL, CentOS, Ubuntu). Experience with TLS, SPF/DKIM/DMARC, and SASL protocols. Ability to integrate Postfix into enterprise systems (VCF, HPE, SIEM, LDAP/AD). Strong troubleshooting and problem-solving skills. Scripting experience for automation and monitoring (Bash, Python). Excellent technical documentation skills. Preferred Qualifications: Knowledge of high availability, load More ❯
Birmingham, England, United Kingdom Hybrid/Remote Options
E-Resourcing Ltd - Specialist I.T. Recruitment
Lead DevOps Engineer – Kubernetes/Docker/SIEM Birmingham – hybrid working – 3 days in the office/2 days remote £65-70k pa + bonus and benefits We are recruiting a fantastic opportunity to join a busy Security Engineering team and be instrumental in the design, development, implementation and maintenance of a SIEM platform. You will lead the SIEM … automation strategy and provide advise and guidance on SIEM platform automation to the DevOps team. Taking ownership of SIEM DevOps your technical experience will need to include Kubernetes, Docker, CI/CD, SIEMand development tools such as Python, JavaScript and Golang. You should be happy working in an Agile environment acting as a product owner, creating product backlogs as More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
Hargreaves Lansdown
methods and practice. Assist in the design of a strategy to create a custom automated methodology for identifying potential security principles violations and providing increased early detection capabilities using SIEM & CSPM tools. About you In-depth knowledge of tools and technologies being used in cloud environments to provide security controls and assessments of the applications. 2 years experience working with … AWS native security services (inc. Lambda, Kenisis Firehose). 1 year experience using SIEM platforms. Interview process This will be a two-stage interview process consisting of a 30-minute introductory conversation and a technical assessment. Working Schedule This role is permanent, full time, 37.5 hours per week, Monday to Friday. For this role, we offer a hybrid flexible working More ❯
Employment Type: Permanent, Part Time, Work From Home