North Ferriby, North Humberside, North East, United Kingdom Hybrid / WFH Options
Heron Foods
for someone who combines technical knowledge with an investigative mindset and strong stakeholder communication skills. Essential skills & experience: Experience working in security operations, SOC, or incident response. Knowledge of SIEM tools, vulnerability management, and log analysis. Understanding of security frameworks such as ISO 27001, NIST, or PCI DSS. Strong communication skills to engage with IT teams, business stakeholders, and non … technical staff. Ability to work independently at Heron Foods while remaining aligned to Group Information Security. Desirable: Hands-on exposure to security tooling (e.g., EDR, SIEM, vulnerability scanners). Experience supporting audits and compliance activities. Scripting/automation skills (e.g., PowerShell, Python) to streamline tasks. Why Join Us? At B&M and Heron Foods, we are on a journey to More ❯
North London, London, United Kingdom Hybrid / WFH Options
Secure Recruitment Ltd
a Pathway to Senior Leadership. Key Skills & Experience of Cyber Sales Manager will include: 3+ Years Minimum of Successful Cyber Security Sales Experience Technical grounding in SOC, MDR, IR, SIEM, or related Solutions Proven Ability to Influence Senior IT/Security Stakeholders Established Network of UK Private-Sector Contacts advantageous Entrepreneurial, Hunter Mindset; Resilient & Confident Native-Level English; German or More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
Opus Recruitment Solutions
Clearance and hybrid working in Gloucester with the end client (frequency TBC, but will be at least once per week). Key skills & experience needed: Familiarity with SOC/SIEM/XDR platforms and how they protect enterprise IT services. Experience drawn from working in an enterprise M365 environment. Understand the value of presenting SOC value to management using business More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Insignis
tech, SaaS, or managed services Strong communicator, confident with executive and technical stakeholders Experience managing renewals and creating structured success plans Awareness of cybersecurity tools and services such as SIEM, EDR, and MSS More ❯
Reston, Virginia, United States Hybrid / WFH Options
RedKey Solutions
and networks. • Automate repeatable tasks and provide consultative support. • Design, configure, implement, troubleshoot, and maintain security platforms (e.g., firewalls, intrusion detection/prevention, anti-virus/malware, cryptography systems, SIEM, MDM). • Formulate systems and methodologies, respond to security events, and assist in remediation efforts. • Participate in the change management process. • Coordinate and monitor log analysis for managed services to … ensure compliance with customer policies andsecurity requirements. Basic Qualifications: • Expertise with at least one of the following tools: Splunk, HBSS/McAfee, Rapid7. • Proficiency in implementing and managing SIEM, end-point security (IDS/IPS, HBSS). • Strong knowledge of networking protocols (TCP/IP, LAN/WAN concepts). • Experience with automation tools (Ansible, CloudFormation). • Strong attention More ❯
Macclesfield, England, United Kingdom Hybrid / WFH Options
LTIMindtree
encryption technologies Adhere to enterprise governance review processes to deliver project goals deliverables Follow enterprise ITSM CMDB processes Monitor and analyze security s using SecurityInformationandEventManagementSIEM tools and respond to security incidents in a timely and effective manner Collaborate with cross functional teams to develop and enforce identity and access management IAM policies and network access … of Zero Trust Network Access in ITOT environments Proficiency in configuring managing and troubleshooting firewalls Cisco Palo Alto etc Experience with intrusion detection prevention systems as well as with SIEM tools andsecurity incident response Excellent problem solving skills analytical thinking and the ability to communicate effectively with diverse stakeholders More ❯
warrington, cheshire, north west england, united kingdom Hybrid / WFH Options
LTIMindtree
encryption technologies Adhere to enterprise governance review processes to deliver project goals deliverables Follow enterprise ITSM CMDB processes Monitor and analyze security s using SecurityInformationandEventManagementSIEM tools and respond to security incidents in a timely and effective manner Collaborate with cross functional teams to develop and enforce identity and access management IAM policies and network access … of Zero Trust Network Access in ITOT environments Proficiency in configuring managing and troubleshooting firewalls Cisco Palo Alto etc Experience with intrusion detection prevention systems as well as with SIEM tools andsecurity incident response Excellent problem solving skills analytical thinking and the ability to communicate effectively with diverse stakeholders More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Oliver James
drive improvements in security visibility. Skills & Experience Required Demonstrated experience in cyber operations, detection & response , or building and running modern SOCs. Strong understanding of SecurityInformationandEventManagement (SIEM) andSecurity Orchestration, Automation and Response (SOAR) platforms (e.g. Google SecOps, Chronicle, Siemplify). Proven experience in solution design , including development of HLD/LLD documentation and architectural blueprints. Familiarity More ❯
Atlanta, Georgia, United States Hybrid / WFH Options
City of Atlanta
or Mathematics 4-6 years of relevant experience or equivalent combination of education and work experience Hands-on experience with one or more of the following platforms or technologies: SIEM, Sentinel, Palo Alto, Windows Defender, Proofpoint, and Qualys Ability to Script Advanced knowledge of Unix, Linux, Windows and operating systems Advanced knowledge of networking protocols and services such as the … or Mathematics 4-6 years of relevant experience or equivalent combination of education and work experience Hands-on experience with one or more of the following platforms or technologies: SIEM, Sentinel, Palo Alto, Windows Defender, Proofpoint, and Qualys Ability to Script Advanced knowledge of Unix, Linux, Windows and operating systems Advanced knowledge of networking protocols and services such as the More ❯
Hanover, Maryland, United States Hybrid / WFH Options
ICS Nett, Inc
We are hiring a Cybersecurity Engineer/Systems Administrator for our DCSA contract in Hanover, MD Cybersecurity Engineer/Systems Administration- Windows or Linux System Security Administrator, with SIEM experience Elastic and Or Splunk • Clearance Level: Active Secret clearance required, eligibility for TS preferred. • Hybrid Work Model: 1-2 Days onsite providing flexibility for work-life balance. • Cutting-Edge Environment … informationsecurity? If so, we have a thrilling opportunity for you! Position Overview: As an Information Windows or Linux System Security Administrator-Redhat/Amazon Linux- AWS Cloud , with SIEM experience Elastic and Or Splunk you will be at the forefront of ensuring the highest standards of informationsecurity operations for the Department of Defense. Red Team activity Defensive or More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
Lorien
This is a hands-on role focused on protecting the organisation's network and systems from cyber-attacks. You'll be responsible for managing and remediating security incidents, tuning SIEM alerts, supporting endpoint detection and response tooling, and contributing to post-incident investigations.You'll also play a key role in vulnerability management, security reporting, and supporting the deployment and maintenance … the following: Experience in Infrastructure support or working within a SOC/Security team Strong understanding of Microsoft O365/Azure Security, endpoint and email security tooling Familiarity with SIEM tools and IT Service Management platforms Knowledge of current and emerging cyber threats andsecurity technologies Experience with vulnerability identification and remediation The Benefits: Salary up to £50,000 + More ❯
Huntingdon, Cambridgeshire, East Anglia, United Kingdom Hybrid / WFH Options
Leidos Innovations UK Limited
remain at the required security posture against baseline requirements Develop and document system security baselines. Work with the Protective Monitoring engineering team to ensure logs are forward to the SIEM capability Work with the customer and appropriate agencies to develop new policies, design processes, and procedures, and develop technical designs Assess system vulnerabilities, implement risk mitigation strategies, validate secure systems … Endpoint Security Products Working knowledge of the accreditation process for secure/sensitive systems Experience in producing/updating Design artefacts Understanding of the implementation, operation and maintenance of SIEM products Understanding of network and boundary protection technologies (firewalls, mail gateways, load balancers, anti-virus) Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc) Understanding of security infrastructure in More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Marlin Selection
technical leader in safeguarding sensitive data and systems. Key Responsibilities/Duties Manage WAF and DDoS systems Manage the Web Security Gateway Manage the Email Security Gateway Manage the SIEM, SOAR, Identity Protection and EDR, and respond to alerts and threats. Carry out vulnerability scans, identify risks, and remediation. Manage the perimeter and VPN firewalls. Manage MFA and SSO. Manage … in managing the majority of the following technology stack CrowdStrike EDR Mimecast Mail Security Gateway Duo Okta Rapid7 IVM, Tenable IO or Nessus Rapid7 IDR or CrowdStrike Next Gen SIEM Palo Alto Firewalls and Panorama InTune and Conditional Access Entra ID, Active Directory, DNS, GPO Experience using the following technology stack would be advantageous; understanding the principles is required. Imperva More ❯
Phoenix, Arizona, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Portland, Maine, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Cheyenne, Wyoming, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Portland, Oregon, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Virginia Beach, Virginia, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Omaha, Nebraska, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Bridgeport, Connecticut, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Dover, Delaware, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Wichita, Kansas, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Miami, Florida, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Billings, Montana, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯
Louisville, Kentucky, United States Hybrid / WFH Options
TTEC
our Great Place to Work certification in the United States says it all! What You'll Do Investigate security alerts and threat hunting leads across a variety of technologies (SIEM, EDR, email security, cloud, etc) as part of the SOC and with the Threat Management team. Maintain situational awareness of changes to threat landscape, industry trends, and internal operating environment. … and response to significant security events What You Bring to the Role Hands-on SOC experience investigating and responding to security events across two or more of the following: SIEM, EDR, email security, NGFW, cloud platforms, threat intelligence Must have cloud platform expertise (GCP, AWS, Asure) Strong foundational knowledge of core enterprise information technologies andsecurity principles Strong communication andMore ❯