Reston, Virginia, United States Hybrid / WFH Options
ICF
certification Desired Skills: Salesforce Platform Developer I certification Platform App Developer Salesforce Advanced Developer Experience in tools and technologies, such as ELK Stack, Codescan, SIEM, GRC, Splunk, Copado, Provar, Eggplant, Commvalt/Capstorm, Colibra, Secure network management, and Endpoint protection Excellent interpersonal skills, as well as excellent communication skills, verbal More ❯
Lead the response to security incidents and ensure timely reporting in line with NIS2/DORA obligations. Threat Detection & Monitoring: Operate and fine-tune SIEM, IDS/IPS, EDR, and other security platforms to detect and mitigate threats. Security Architecture & Hardening: Design, implement, and maintain secure infrastructure across cloud andMore ❯
Lead the response to security incidents and ensure timely reporting in line with NIS2/DORA obligations. Threat Detection & Monitoring: Operate and fine-tune SIEM, IDS/IPS, EDR, and other security platforms to detect and mitigate threats. Security Architecture & Hardening: Design, implement, and maintain secure infrastructure across cloud andMore ❯
Central London, London, United Kingdom Hybrid / WFH Options
Carrington Recruitment Solutions Limited
software development methodologies and practices Ability to Rapid Risk Assessment and Threat Modeling Other technical skills required: Azure Security Monitoring including Application Insights, andSIEM Excellent communication skills to guarantee stakeholder alignment and successful outcomes at all stages of Product delivery and ongoing support This is a great opportunity andMore ❯
analytics without the high costs of indexing or hot storage. We provide comprehensive monitoring of logs, metrics, traces, andsecurity events, featuring APM, RUM, SIEM, Kubernetes monitoring, and more, enhancing operational efficiency and reducing observability expenses by up to 70%. Position Overview: As the Technical Account Manager (TAM) Team More ❯
london, south east england, united kingdom Hybrid / WFH Options
ITR Partners
analytics without the high costs of indexing or hot storage. We provide comprehensive monitoring of logs, metrics, traces, andsecurity events, featuring APM, RUM, SIEM, Kubernetes monitoring, and more, enhancing operational efficiency and reducing observability expenses by up to 70%. Position Overview: As the Technical Account Manager (TAM) Team More ❯
evaluate cloud pricing and service offerings for cost optimization and performance improvements. Collaborate with development teams to identify unmet needs and assist with security, SIEM rule development, and configuration issues. Maintain up-to-date process documentation for the entire cloud environment and ensure compliance with security policies. Minimum Requirements: At More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
security solutions to prevent cyber threats. Incident Response: Formulating and documenting a solid process utilising a 3rd party support partner Security Monitoring & Logging: Develop SIEM solutions, logging strategies, and real-time threat intelligence. Monitor, audit, and improve infrastructure security posture using automated tooling. Policy & Procedures: Define and enforce security policies … automation. Knowledge of DevOps pipelines (CI/CD) andsecurity hardening. Deep understanding of PCI DSS compliance, security frameworks, and audit processes. Familiarity with SIEM solutions, security orchestration platforms, and log management. Strong experience with incident response planning, threat detection, and mitigation. Ability to define security policies, procedures, and structured More ❯
Employment Type: Contract, Work From Home
Rate: From £500 to £700 per day (direct contract with the client)
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Arm Limited
Role Overview: Utilising knowledge of security operations, incident response, and detection engineering, you will be responsible for the delivery of SIEM detections andsecurity automations. The successful candidate will be proficient in automation and orchestration tools (e.g., SOAR platforms, scripting languages like Python, PowerShell) and have experience with integrating security … tools (e.g., SIEM, EDR, firewalls) APIs, and Case Management tools for data enrichment. Responsibilities: Build security automations, logging, andSIEM detections to improve the CDO's efficiency, scalability, and incident response capabilities. Design, implement, and maintain automated workflows and playbooks to streamline CDO operations, including incident response, threat hunting, cyber … repetitive tasks and automate them to improve operational efficiency. Collaborate with Threat Intelligence, Incident Response, and Attack Surface Management to build and tune robust SIEM detections for both proactive and reactive response actions. Continuously evaluate automation solutions for performance, reliability, and scalability, making improvements, as necessary. Collaborate with third-party More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid / WFH Options
Corriculo Ltd
in the management of IDS/IPS, Firewalls, VPN, EDR/XDR, mail filtering and other security products Experience of SecurityInformationEventManagement (SIEM) tools Any experience or knowledge of ISO27001 as well as with penetration testing/vulnerability scanning would be highly advantageous The list above is important More ❯
Basingstoke, Hampshire, United Kingdom Hybrid / WFH Options
Corriculo Ltd
in the management of IDS/IPS, Firewalls, VPN, EDR/XDR, mail filtering, and other security products Experience with SecurityInformationEventManagement (SIEM) tools Any experience or knowledge of ISO27001 as well as with penetration testing/vulnerability scanning would be highly advantageous The list above is important More ❯
Washington, Washington DC, United States Hybrid / WFH Options
OMW Consulting
have an active Secret clearance or higher and a solid background in informationsecurity fundamentals and core technologies (e.g., authentication, encryption, firewalls, vulnerability scanning, SIEM/SOAR, audit logs). Your main responsibilities in this position will include: Achieving ATOs for the company's software across multiple government customers with More ❯
related incidents quickly. Nice to Have: Palo Alto Networks Certifications (e.g., PCNSA, PCNSE). Familiarity with other security tools (e.g., IDS/IPS systems, SIEM platforms). Experience working within highly regulated environments (e.g., finance, healthcare, telecoms). More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
Tesco Underwriting Ltd
and WAF. Experience working in a regulated financial environment. And if you have any of these, even better Threat hunting experience Blue Team experience SIEM detection writing experience We don't expect you to tick every box; if you meet most of the criteria, we encourage you to explore this More ❯
persistent threat and their tactics, procedure and technics. Solid understanding of Enterprise Backend to Frontend system architecture. Familiarity with defender techniques, security monitoring andSIEM tools. Strong ability to analyse and distil complex issues and present succinct updates to managementand associated committees. The ability to create clear documentation relating More ❯
Basingstoke, Hampshire, South East, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
leadership, crisis management, and decision-making skills. Excellent communication and stakeholder management abilities. Deep understanding of adversarial attack techniques andsecurity threats. Experience with SIEM architecture, XDR, and incident response tooling. Strong knowledge of vulnerability management processes and tools. Proficiency in threat intelligence analysis and its integration into response strategies. More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
Axiom Software Solutions Limited
and Purview Governance. Experience with Fabric Tenant Settings, Workspace Templates, and network configurations including VNET, Private Link, and Private DNS. Knowledge of logging andSIEM integrations with Microsoft Sentinel and ServiceNow. Understanding of deployment methodologies such as Waterfall, Agile, Scrum. More ❯
compliance assurance across complex IT environments. Their solution suite includes managed detection and response (MDR), next-generation firewalls, endpoint protection, and integration with leading SIEM technologies to ensure a resilient security posture for organizations with 500 to 5000+ seats. The Role: As the Commercial Accounts Director, you will drive end More ❯
related metrics and monitoring/audits Network, VM & container image and system hardening, Cloud issues and misconfigurations Endpoint Security, Infrastructure Identity and Access Management, SIEM, Threat intelligence, common misconfigs (DNS, email, networking, etc.) Organising and performing penetration testing of our infrastructure, and collaborating with external parties on those tests. Picking More ❯
Hemel Hempstead, Hertfordshire, United Kingdom Hybrid / WFH Options
TieTalent
SIEM Content Engineer - National Security & Defence Location: Hybrid role - Hemel Hempstead (1 day/week on-site) Clearance: Must hold or be eligible for DV Overview I have a great opportunity for a skilled SIEM professional to work as a SIEM Content Engineer within a leading consultancy's Security Operations … Centre (SOC) team. The role will focus on country-critical technology in the defence and national security space. Key Responsibilities Develop and maintain SIEM content (rules, dashboards, reports) Analyze SIEM data to detect and respond to threats Collaborate with SOC Analysts, Architects, and Engineers Stay current on emerging threats and … incorporate into detection logic Support security standards and best practices Requirements 3+ years experience with SIEM tools (Splunk, Sentinel, QRadar) Strong understanding of security protocols and frameworks (NIST, ISO, PCI DSS) Scripting experience (Python, PowerShell, regex) Excellent problem-solving and communication skills Security certifications (CISSP, CISM, etc.) are a plus More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
like Firewall Management, IDS/IPS, Email protection amongst others. In this role you will: Focus on the analysis of Security Incident EventManagement (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support … practices and metric reporting fundamentals. Experienced in manipulation of data sources and presentation in PowerBI. Desirable skills, qualifications, and experience: Qualified or experienced in SIEM solutions (ideally SPLUNK.) Microsoft related qualifications (Azure, Microsoft Windows, Microsoft SQL.) Qualified to ICS2 CC, CISM, CISSP or relevant Cybersecurity related qualification. Working knowledge of More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
like Firewall Management, IDS/IPS, Email protection amongst others. In this role you will: Focus on the analysis of Security Incident EventManagement (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support … practices and metric reporting fundamentals. Experienced in manipulation of data sources and presentation in PowerBI. Desirable skills, qualifications, and experience: Qualified or experienced in SIEM solutions (ideally SPLUNK.) Microsoft related qualifications (Azure, Microsoft Windows, Microsoft SQL.) Qualified to ICS2 CC, CISM, CISSP or relevant Cybersecurity related qualification. Working knowledge of More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
like Firewall Management, IDS/IPS, Email protection amongst others. In this role you will: Focus on the analysis of Security Incident EventManagement (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support … practices and metric reporting fundamentals. Experienced in manipulation of data sources and presentation in PowerBI. Desirable skills, qualifications, and experience: Qualified or experienced in SIEM solutions (ideally SPLUNK.) Microsoft related qualifications (Azure, Microsoft Windows, Microsoft SQL.) Qualified to ICS2 CC, CISM, CISSP or relevant Cybersecurity related qualification. Working knowledge of More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
like Firewall Management, IDS/IPS, Email protection amongst others. In this role you will: Focus on the analysis of Security Incident EventManagement (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support … practices and metric reporting fundamentals. Experienced in manipulation of data sources and presentation in PowerBI. Desirable skills, qualifications, and experience: Qualified or experienced in SIEM solutions (ideally SPLUNK.) Microsoft related qualifications (Azure, Microsoft Windows, Microsoft SQL.) Qualified to ICS2 CC, CISM, CISSP or relevant Cybersecurity related qualification. Working knowledge of More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
like Firewall Management, IDS/IPS, Email protection amongst others. In this role you will: Focus on the analysis of Security Incident EventManagement (SIEM) data, which includes: Provide Deloitte firms with cybersecurity data. Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support … practices and metric reporting fundamentals. Experienced in manipulation of data sources and presentation in PowerBI. Desirable skills, qualifications, and experience: Qualified or experienced in SIEM solutions (ideally SPLUNK.) Microsoft related qualifications (Azure, Microsoft Windows, Microsoft SQL.) Qualified to ICS2 CC, CISM, CISSP or relevant Cybersecurity related qualification. Working knowledge of More ❯