226 to 250 of 292 Remote/Hybrid SIEM Jobs

L3 Security Analyst

Location
Newbury, England, United Kingdom
threats using cutting‐edge tools, collaborate with global teams on incident investigations, and mentor colleagues to uplift skills across the CSOC. From fine‐tuning SIEM systems and automating response actions to delivering insightful security reports and advisories, your expertise will help shape Vodafone’s resilience against evolving threats. This … least 4 years in security event analysis and incident response Strong technical knowledge of networking protocols, operating systems (Windows/Linux), and security technologies (SIEM, EDR, IDS/IPS, firewalls, proxies) Hands‐on experience with SIEM tuning and SOAR automation Familiarity with frameworks like MITRE ATT&CK and cyber kill ...

Senior Cyber Security Engineer (EDR) Senior Security Engineer - Monitoring & Detection

Hiring Organisation
Sanderson Recruitment
Location
London, UK
Employment Type
Full-time
securing large-scale, cloud-based environments supporting critical public sector and government services. This is a hands-on engineering role focused on threat detection, SIEM engineering, security monitoring, log management, and SOC optimisation. You'll design and enhance detection capabilities, improve security visibility, and ensure organisations can rapidly identify and … that improve resilience while enabling faster, risk-based decision-making. What You'll Be DoingDetection Engineering & Threat MonitoringDevelop, tune, and maintain detection rules across SIEM, EDR, and threat detection platforms. Create and optimise detection logic using technologies such as Splunk and endpoint security solutions. Map detections against the MITRE ...

Cyber Security Engineer

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£92.11 per hour
upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat … creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books. Experience with SIEM (Security Information Event Management) technologies ...

Cyber Security Engineer

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£92.11 per hour, Benefits Overtime Rate
upgrades, capability implementation, tool integration, data source on-boarding and investigation activity utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat … creation, testing and maintenance of AI or machine learning technologies to assist with the optimisation of work flows or play books. Experience with SIEM (Security Information Event Management) technologies ...

Senior Security Analyst (L3 SOC Analyst)

Location
City Of London, England, United Kingdom
coordinating containment, eradication and recovery activities with internal and external stakeholders. Design, develop and optimise detection rules, threat models and advanced monitoring capabilities across SIEM, EDR and cloud security platforms. Conduct proactive threat hunting activities using threat intelligence, behavioural analytics and industry frameworks to identify previously undetected threats. Develop and … operating in a senior SOC environment, including working in an L3 analyst, incident response, threat hunting or detection engineering capacity. Deep technical knowledge of SIEM, EDR, SOAR, cloud security, identity security, endpoint security and enterprise monitoring platforms. Proven experience leading the investigation and response to complex cyber security incidents and ...

Security Operations Manager

Hiring Organisation
IAG Loyalty
Location
London, UK
Employment Type
Full-time
lifecycle, coordinating responses to security incidents, driving investigations, facilitating lessons learned and ensuring improvement actions are delivered. Alongside this, you'll configure and optimise SIEM, threat protection and case management platforms, developing new detection rules, alerts and automation to improve our ability to identify and respond to emerging threats. … Defence or Incident Response in a complex enterprise environmentProven experience managing the end-to-end security incident management lifecycleHands-on experience configuring and administering SIEM, threat protection, logging and case management platformsExperience developing threat detection use cases, alerts, dashboards and operational reportingStrong understanding of security monitoring, investigation, triage, containment, recovery ...

Senior Security Analyst (L3 SOC Analyst)

Location
Greater London, England, United Kingdom
coordinating containment, eradication and recovery activities with internal and external stakeholders.* Design, develop and optimise detection rules, threat models and advanced monitoring capabilities across SIEM, EDR and cloud security platforms.* Conduct proactive threat hunting activities using threat intelligence, behavioural analytics and industry frameworks to identify previously undetected threats.* Develop and … operating in a senior SOC environment, including working in an L3 analyst, incident response, threat hunting or detection engineering capacity.* Deep technical knowledge of SIEM, EDR, SOAR, cloud security, identity security, endpoint security and enterprise monitoring platforms.* Proven experience leading the investigation and response to complex cyber security incidents and ...

Security Project Manager

Hiring Organisation
LT Harper Recruitment Group
Location
England, United Kingdom
SecOps Project Manager You'll run the delivery of security operations projects for enterprise clients: SOC onboardings, SIEM and EDR rollouts, vulnerability management programmes and incident response service deployments, most of them built on Microsoft Sentinel, Defender and Azure. You'll own each engagement from scoping to handover, sitting between … least five years of project management experience, ideally in a managed services or cyber security setting Working knowledge of managed security services, including SIEM, EDR, vulnerability management and cloud security A track record of delivering projects where cyber security technologies were deployed and integrated Experience running multiple client projects ...

Solution Architect – Identity & Access Management (IAM)

Location
Greater London, England, United Kingdom
observable by design.Experience with areas such as the following would be advantageous: Entra sign in and audit logs Identity Protection Application Insights Dynatrace Grafana SIEM integration Privileged access monitoring Failed authentication monitoring Audit trails Correlation and investigation You should understand the importance of identity telemetry for both operational support and … collaboration. Experience designing authentication for APIs and microservices. Experience with Infrastructure as Code for identity or security configuration. Experience integrating identity telemetry with SIEM and monitoring platforms. Experience delivering architecture within UK central government, healthcare, financial services, defence, policing or another regulated environment. Experience supporting large scale or business critical ...

Senior Cyber Security Engineer (EDR)

Hiring Organisation
Sanderson Government and Defence
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
securing large-scale, cloud-based environments supporting critical public sector and government services. This is a hands-on engineering role focused on threat detection, SIEM engineering, security monitoring, log management, and SOC optimisation . You'll design and enhance detection capabilities, improve security visibility, and ensure organisations can rapidly identify … resilience while enabling faster, risk-based decision-making. What You'll Be Doing Detection Engineering & Threat Monitoring Develop, tune, and maintain detection rules across SIEM, EDR, and threat detection platforms. Create and optimise detection logic using technologies such as Splunk and endpoint security solutions. Map detections against the MITRE ...

Security Architect

Hiring Organisation
Searchability NS&D
Location
London Area, United Kingdom
with cloud security across AWS, Azure or Google Cloud Understanding of network security, encryption, authentication and access control Experience with security tooling such as SIEM, IDS, firewalls and vulnerability assessment tools Knowledge of threat modelling and risk assessment TO BE CONSIDERED: Please either apply through this advert or emailing … client in conjunction with this vacancy only. KEY SKILLS Security Architect, Cyber Security, ISO 27001, NIST, Cloud Security, AWS, Azure, Risk Assessment, Threat Modelling, SIEM, Defence ...

CSOC Lead

Location
Cheltenham, England, United Kingdom
Incident Response Lead for major cyber security events, coordinating technical investigations, containment and remediation activities. Lead advanced threat hunting and digital forensic investigations using SIEM, EDR, network telemetry and threat intelligence sources. Work closely with global CSOC teams to improve cyber defence capabilities, operational processes and detection methodologies. Provide clear … . Proven success leading teams, projects or operational cyber security functions. Strong incident response, cyber threat hunting and digital forensics expertise. Experience using commercial SIEM, EDR and network analysis platforms. Strong understanding of network protocols and traffic analysis across the OSI model. Experience working with cyber threat intelligence methodologies and ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
analysing escalated security alerts from Tier 1 analysts Conducting detailed incident investigations to determine scope, impact and root cause Monitoring and analysing activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity and emerging threats Supporting incident response and containment activities Performing threat hunting activities … Security Operations Centre (SOC), cyber security operations or incident response environment Experience investigating and responding to complex security alerts and incidents Strong knowledge of SIEM platforms and security event analysis Experience with endpoint detection and response (EDR) technologies A good understanding of incident response processes and methodologies Knowledge of common ...

Security Operations Engineer

Location
Hessle, England, United Kingdom
security issues and design effective remediation solutions Monitor and configure security tools - global EDR/XDR policies, blocklists, and automated containment rules including SIEM, EDR and respond to threat detection alerts. Maintain and enhance security monitoring capabilities through effective integrations and optimisation of security tooling, ensure effective data collection and … Detection & Response (EDR/XDR) tooling. Experience managing security tooling such as Microsoft Defender XDR, Sentinel, CrowdStrike, Splunk, QRadar, SentinelOne or similar enterprise-grade SIEM/XDR platforms. Direct experience securing Microsoft 365 tenants and standard corporate SaaS environments. Proven experience interfacing with, tuning, or triaging escalations from a third ...

Cyber Security Engineer (REF 197774)

Location
Manchester, England, United Kingdom
improving threat detection capabilities, and ensuring our security operations remain effective in an evolving threat landscape. Key Responsibilities Manage, maintain and develop the Elastic SIEM platform. Improve security monitoring, detection and response capabilities. Support Security Operations Centre (SOC) and Network Operations Centre (NOC) activities. Design and enhance security controls across … tooling effectively supports operational and business requirements. What We're Looking For Strong foundation in cyber security engineering and security operations. Experience working with SIEM technologies (Elastic experience advantageous but not essential). Understanding of log management, telemetry pipelines and data integration. Knowledge of cloud security principles across AWS and ...

Senior Security Engineer

Location
Inverness, Scotland, United Kingdom
will keep the lights green on all Security Toolkit Infrastructure within our remit and support various toolsets including Microsoft Security Stack, Email Gateway, SIEM, IDPS, GVM and Malware Protection.* You will record and respond to health alerts from the Security Infrastructure we maintain.* Require knowledge of how to tune and … Defender, Wider E5 licensing suite.* Desirable: Netskope experience administering and maintaining Netskope Security Cloud platform, including configuration of policies, integration with identity providers and SIEM tools, troubleshooting service issues, and ensuring optimal performance.## **We are a Disability Confident Employer**Capgemini is proud to be a Disability Confident Employer (Level ...

Infrastructure Security Engineer

Hiring Organisation
Blockchain
Location
London, UK
Employment Type
Full-time
ownership, and a drive to continuously improve the security posture of complex systems. Familiarity with some of the following: Cloudflare (DDoS protection, WAF), OSS SIEM tools (Splunk, Elastic, etc), Incident management platforms (e.g. Incident.io, PagerDuty)Familiarity with at least one of the following CI/CD systems (Github Actions, Concourse … governance frameworks (e.g., CIS Benchmarks, NIST, SOC2, ISO 27001, PCI DSS) and how to operationalize them. Hands-on experience with building and maintaining a SIEM comprised of open-source and hosted componentsExperience securing consumer-facing web and iOS/Android applicationsExperience designing policies and administering Vault & other Hashicorp products. Experience ...

Lead Technical Engineer

Hiring Organisation
Anson Mccade
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£790 per day
with proven capability in SOC deployment for previous clients. Strong hands-on experience designing, building, and operating SOC technology, including at least two of: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence . Proven delivery record in SIEM onboarding and configuring applications for high data-ingest rates (Cloud and/ ...

Security Engineer

Location
Luton, England, United Kingdom
Description We are easyJet - a FTSE listed, £multi-billion low-cost airline that serves tens of millions of customers every single year. If you're reading this, you have probably already been an easyJet customer ...

Lead SOC Architect

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
high level designs, low level designs and deployment level designs. Support the design of a range of security tools, such as:Splunk and Sentinel SIEM, Nessus Vulnerability management, Microsoft XDR and other as appropriate. Understand and leverage BAE Systems experience, IP and expertise, with support of product and subject matter … Policy and Processes, Technology and Physical Infrastructure layers. Knowledge and experience of design, build and deployment of SOC technology including at least two of SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence, to identify signs of an intrusion. Good understanding of industry best practice in Security Operations for Services, People, Policy ...

Senior SOC Engineer

Hiring Organisation
Experis
Location
Nationwide, United Kingdom
Employment Type
Permanent
Microsoft security solutions. Responsibilities will include: Design, implementation and support of Microsoft Sentinel and Microsoft Defender/Defender XDR Engineering and optimisation of SIEM capabilities across enterprise environments Developing and tuning KQL queries, analytics and detection rules Designing and implementing SOC automation, playbooks and scripting Improving security event detection and … Sentinel/Azure Sentinel Microsoft Defender/Defender XDR Strong KQL/Kusto Query Language capability Security Engineering, SOC Engineering or Microsoft Security Consulting SIEM engineering rather than solely alert monitoring or incident triage Detection engineering and security monitoring optimisation Automation, scripting, SOAR or Sentinel playbooks Cloud security assessments, controls ...

Cyber Operations Security Engineer

Location
Manchester, England, United Kingdom
Engineering, utilizing various security tools, automation, best practice and efficiency across the platforms in use and surrounding technical practices Deliver end‐to‐end SIEM/Sentinel engineering by onboarding customers, configuring data connectors, integrations, KQL, automation, dashboards and reporting. Implement tuning, enrichment and optimisation across Sentinel and align with other … SIEM tools. Maintain SIEM ingestion pipeline reliability by investigating and resolving issues across connectors, parsing, content, automation and transformation logic, while proactively monitoring latency, throughput and data fidelity to prevent data loss. We'd love you to have: Knowledge and understanding of incident Response frameworks such as NIST CSF, SOC2 ...

SIEM Engineer (Elastic)

Hiring Organisation
Searchability NS&D
Location
Hemel Hempstead, England, United Kingdom
SIEM Engineer (Elastic) – Hemel Hempstead, UK Up to £90,000 Depending on Experience Hybrid working, 3 days onsite Must be eligible for DV clearance ABOUT THE CLIENT: Our client is a well-established organisation delivering complex, secure technology solutions across enterprise environments. This is an opportunity to take technical ownership … secure on-premises estate. You will take technical ownership of Elasticsearch clusters, Logstash, Kibana, Beats, Elastic Agent and Fleet, while delivering solutions across SIEM, observability, threat detection and high-volume data ingestion. You will design highly available and resilient platforms, optimise cluster performance, implement security controls and automation, and provide ...

Senior Cyber Security Analyst

Location
Glasgow, Scotland, United Kingdom
Glasgow with hybrid working. Main responsibilities include: Oversee and enhance monitoring of security alerts and events using advanced security information and event management (SIEM) tools Lead the analysis of security logs and alerts to identify potential security incidents Perform and supervise comprehensive analysis of security logs, network traffic, and data … Relevant Cyber Security and/or IT experience Experience in metric reporting and KPI/SLA management Experience with security technologies such as firewalls, SIEM, DLP and endpoint protection Experience working with Jira, Azure DevOps, ITSM tools such as Cherwell and ServiceNow and the MS Office suite Excellent communication skills ...

Security Operations Specialist

Location
Greater London, England, United Kingdom
clear and effective stakeholder communication, and mentoring other members of the SOC team. What you will do Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities Use cases preparation and implementation, connector deployment, maintenance & health checks Responsible for operational activities … Unix shell) Experience working in all phases of the SDLC Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools Prior SOC experience a plus Extensive knowledge of network and server security protocols, technologies, and products Industry recognized certifications (CISSP, GCIH, GCFA, OSCP ...