Derbyshire, England, United Kingdom Hybrid / WFH Options
Hays
and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will be leading the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of … threat intelligence, threatdetection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and ensure an end-to-end approach to cyber resilience Is embedded in other functions. What you'll need to More ❯
Chesterfield, England, United Kingdom Hybrid / WFH Options
Hays
and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will be leading the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of … threat intelligence, threatdetection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and ensure an end-to-end approach to cyber resilience Is embedded in other functions. What you'll need to More ❯
Leeds, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Hays
and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will be leading the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of … threat intelligence, threatdetection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and ensure an end-to-end approach to cyber resilience Is embedded in other functions. What you'll need to More ❯
bringing together two pioneers that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure-play Managed Detection and Response (MDR) provider, supporting more than 28,000 organizations. In addition to MDR and other services, Sophos' complete portfolio includes industry-leading endpoint, network, email, and cloud security that … interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threatdetection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs) and Managed Security Service Providers (MSSPs) worldwide … defending more than 600,000 organizations worldwide from phishing, ransomware, data theft, other every day and state-sponsored cybercrimes. The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at . Role Summary As More ❯
equivalent are preferred Bachelor's degree in Information Security, Computer Science, or related field Additional Skills Strong hands-on network and security background Cisco networking Cisco firewalls (Firepower/ThreatDetection) Palo Alto firewalls SIEM experience (Logarithm desirable) Web proxy (Forcepoint desirable) Governance skills Policy writing/reviewing Reporting KPI monitoring Certifications like CCNP/CISM would be More ❯
Abingdon, Oxfordshire, United Kingdom Hybrid / WFH Options
Sophos Group
bringing together two pioneers that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure-play Managed Detection and Response (MDR) provider, supporting more than 28,000 organizations. In addition to MDR and other services, Sophos' complete portfolio includes industry-leading endpoint, network, email, and cloud security that … interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threatdetection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs) and Managed Security Service Providers (MSSPs) worldwide … defending more than 600,000 organizations worldwide from phishing, ransomware, data theft, other every day and state-sponsored cybercrimes. The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at . Role Summary At More ❯
Crawley, England, United Kingdom Hybrid / WFH Options
DGH Recruitment
practices. - Support business units with risk-based security input for projects, client bids, and technology initiatives. - Manage cybersecurity tooling including SIEM, EDR, and mail filtering systems to ensure effective threatdetection and response. - Monitor, investigate, and respond to alerts and incidents, coordinating with internal teams and third-party providers. - Oversee regular vulnerability scans and third-party penetration tests More ❯
on IaaS, container security (e.g., AKS), and DevOps pipelines Evaluate Terraform scripts, advising on automation processes for secure infrastructure deployment Optimize Azure Defender and other monitoring tools to elevate threatdetection capabilities Implement Conditional Access policies, enforcing zero trust and least privilege principles Collaborate across teams to align security protocols with operational objectives Required Skills/Qualifications: Experience More ❯
Crawley, West Sussex, South East, United Kingdom Hybrid / WFH Options
DGH Recruitment
practices. - Support business units with risk-based security input for projects, client bids, and technology initiatives. - Manage cybersecurity tooling including SIEM, EDR, and mail filtering systems to ensure effective threatdetection and response. - Monitor, investigate, and respond to alerts and incidents, coordinating with internal teams and third-party providers. - Oversee regular vulnerability scans and third-party penetration tests More ❯
Chelmsford, Essex, South East, United Kingdom Hybrid / WFH Options
Keystream Group Limited
needs of local government. To read more about our business area, please visit Corporate Services and Transformation Key Responsibilities: Lead and develop an active Security Operations team focused on threatdetection, incident management, and prevention of data breaches or service disruptions. Build and mature the Security Operations Centre (SOC) with a focus on cyber risks, threat intelligence More ❯
San Antonio, Texas, United States Hybrid / WFH Options
Leidos
Responsibilities: Prepare high-impact reports and presentations that shape cybersecurity strategies. Assess and mitigate system security risks across the entire program lifecycle. Ensure compliance in operations security, forensics, insider threatdetection, physical security analysis, and more. Support secure systems operations, validate security requirements, and lead certification/accreditation processes. Develop cutting-edge technical security solutions to enhance cloud More ❯
Collaborate with stakeholders to drive security initiatives and strategy • Implement a best practice IT Controls Framework • Act as the security SME across IT, overseeing security operations, incident management and threatdetection • Ensure robust third-party security, including commercial agreements • Implement security policies and standards • Manage cybersecurity risks and response to incidents • Implement plans to meet cybersecurity regulatory requirements More ❯
Bradford, England, United Kingdom Hybrid / WFH Options
Tata Consultancy Services
creating custom use-cases, log-source integration, and Logs Parsing. Implement actions to contain and eliminate threats, restore systems to a secure state, and minimize damage. Continuously monitor the threat landscape for emerging threats, vulnerabilities, and evolving attack tactics. Communicate with clients, internal teams, and vendors regarding security incidents and recommendations. Develop and improve SOC processes and designing training … programs. Provide guidance on effective cyber defenses and actionable, cost-effective solutions. Focus on utilizing SOAR platforms to automate and improve security processes, incident response, and threat detection. Develop and implement plans to mitigate identified risks, including security controls and countermeasures. Your Profile: Essential knowledge/experience: Experience with Alerts/Threats Investigation. Driving Major Incident Response. Desirable skills More ❯
support services, and enterprise architecture. Lead strategic initiatives during acquisition activities, ensuring smooth systems integration and transition. Champion a robust cybersecurity strategy that aligns with ISO27001 compliance and proactive threat detection. Establish and maintain effective disaster recovery and business continuity plans. Optimise IT performance through service delivery improvements and effective budget management. Drive digital transformation and promote the adoption More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Franklin Bates
Join a world-leading cybercrime SaaS organisation in an exciting Senior/Principal AI Engineer role to deliver robust and impactful AI-based solutions to advance threatdetection efficiency. Our client is headquartered in the UK and, whilst being well-established with significant sector success behind them, serving the largest names globally across the banking and government spaces … platform. Required experience for the Senior/Principal AI Engineer role: Machine learning (ML), deep learning and statistical analysis skills – even better if these skills have been applied to threatdetection, malware analysis, phishing and/or abuse detection. Experience building production-grade AI pipelines, including data ingestion, feature engineering, validation, model deployment, and monitoring. Experience designing and … implementing anomaly detection, classification, clustering, and retrieval across vision and language models, ideally for identifying cyber threats (URLs, domains, phishing, botnets, etc.) Proficient in a major backend language (ideally Golang) and related ML/AI libraries (e.g. Tensorflow & PyTorch, etc.) Experience with an MLOps platform like Kubeflow. Demonstrated ability to transition models from prototype to production. Experience assessing various More ❯
Join a world-leading cybercrime SaaS organisation in an exciting Senior/Principal AI Engineer role to deliver robust and impactful AI-based solutions to advance threatdetection efficiency. Our client is headquartered in the UK and, whilst being well-established with significant sector success behind them, serving the largest names globally across the banking and government spaces … platform. Required experience for the Senior/Principal AI Engineer role: Machine learning (ML), deep learning and statistical analysis skills – even better if these skills have been applied to threatdetection, malware analysis, phishing and/or abuse detection. Experience building production-grade AI pipelines, including data ingestion, feature engineering, validation, model deployment, and monitoring. Experience designing and … implementing anomaly detection, classification, clustering, and retrieval across vision and language models, ideally for identifying cyber threats (URLs, domains, phishing, botnets, etc.) Proficient in a major backend language (ideally Golang) and related ML/AI libraries (e.g. Tensorflow & PyTorch, etc.) Experience with an MLOps platform like Kubeflow. Demonstrated ability to transition models from prototype to production. Experience assessing various More ❯
South East London, England, United Kingdom Hybrid / WFH Options
Franklin Bates
Join a world-leading cybercrime SaaS organisation in an exciting Senior/Principal AI Engineer role to deliver robust and impactful AI-based solutions to advance threatdetection efficiency. Our client is headquartered in the UK and, whilst being well-established with significant sector success behind them, serving the largest names globally across the banking and government spaces … platform. Required experience for the Senior/Principal AI Engineer role: Machine learning (ML), deep learning and statistical analysis skills – even better if these skills have been applied to threatdetection, malware analysis, phishing and/or abuse detection. Experience building production-grade AI pipelines, including data ingestion, feature engineering, validation, model deployment, and monitoring. Experience designing and … implementing anomaly detection, classification, clustering, and retrieval across vision and language models, ideally for identifying cyber threats (URLs, domains, phishing, botnets, etc.) Proficient in a major backend language (ideally Golang) and related ML/AI libraries (e.g. Tensorflow & PyTorch, etc.) Experience with an MLOps platform like Kubeflow. Demonstrated ability to transition models from prototype to production. Experience assessing various More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
Queen Square Recruitment Limited
experienced SOC Analyst (Level 3) to join its cybersecurity operations team. This role is ideal for senior professionals who thrive in high-stakes environments and enjoy working on proactive threatdetection, incident response, and advanced security automation. Key Responsibilities Lead the investigation and resolution of high-severity security incidents Conduct proactive threat hunting using Microsoft Sentinel and … the Defender suite Develop and fine-tune analytic rules, detection use-cases, and automation playbooks Perform deep-dive analysis on malware, phishing, and lateral movement threats Correlate events across diverse log sources and technologies Collaborate with engineering teams to optimise Microsoft security tool integration Mentor junior SOC analysts and contribute to internal knowledge sharing Maintain and enhance incident response … processes and documentation Produce regular SOC performance reports and threat intelligence summaries Required Skills & Experience: 5+ years in cybersecurity, with 2+ years at SOC Level 3 or senior analyst level Expertise in Microsoft Sentinel (KQL, custom rules, automation, dashboards) Strong hands-on experience with Microsoft Defender for Endpoint, Identity, and Office 365 Proficient in handling incidents aligned with MITRE More ❯
Belfast, County Antrim, Northern Ireland, United Kingdom Hybrid / WFH Options
AWD Online
Cyber Security/Network Security Engineer who has experience building, configuring and managing technical solutions, ideally security tools such as anti-malware, content filtering, SIEM and threatdetection solutions is required by a well-established based in Belfast, Northern Ireland. SALARY: £38,000 - £45,000 per annum + Excellent Benefits BENEFITS: 26 Days Holiday plus Bank Holidays. Includes … opportunity for a Cyber Security/Network Security Engineer who has experience building, configuring and managing technical solutions, ideally security tools such as anti-malware, content filtering, SIEM and threatdetection solutions. Working as the Cyber Security/Network Security Engineer which the organisation calls a Security Engineer, you'll be at the frontline of cyber defence, working … Produce and maintain clear, accurate and up-to-date procedural documentation Participate in playbook test exercises and respond to genuine security incidents Identify current and emerging security threats Analyse threat intelligence and escalate to the OSM as appropriate Work with other security and technology colleagues to ensure that security vulnerabilities are mitigated quickly Deliver monthly vulnerability scans and support More ❯
Graylog : Empowering ThreatDetection, Investigation, & Response Solutions with Cutting-Edge Technology Graylog specialises in delivering top-notch ThreatDetection, Investigation, & Response (TDIR) solutions, backed by our latest addition, the Graylog API security platform. As a renowned centralised log management (CLM) and Security Information Event Management (SIEM) provider, we offer unparalleled fast and efficient log analysis capabilities … Defence Magazine at RSA in 2023, and 2024 saw us take home gold and become the Globee Winner for Security Information & Event Management and the 2024 Globee Winner for Threat Hunting, Detection, Intelligence, and Response. Graylog was named a "Leader" and "Fast Mover" in GigaOM's 2024 Radar Report for SIEM and 2025 has seen Graylog recognized in More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Sophos Group
bringing together two pioneers that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure-play Managed Detection and Response (MDR) provider, supporting more than 28,000 organizations. In addition to MDR and other services, Sophos' complete portfolio includes industry-leading endpoint, network, email, and cloud security that … interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threatdetection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs) and Managed Security Service Providers (MSSPs) worldwide … defending more than 600,000 organizations from phishing, ransomware, data theft, and other everyday and state-sponsored cybercrimes. The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at . Role Summary The Customer More ❯
values. Description Lead and manage the Security Operations team to ensure optimal performance and adherence to best practices. Develop and implement effective security operations process, playbooks Oversee the monitoring, detection, and response to cybersecurity threats and incidents. Collaborate with stakeholders to ensure compliance with relevant regulations and standards. Provide training and guidance to team members to support their professional … skills in vulnerabilities management, incident management, and the implementation of security protocols. Knowledge of relevant cybersecurity regulations and standards. Experience with Microsoft tools and technologies used in monitoring and threat detection. Excellent leadership abilities and the capacity to mentor team members effectively. Strong communication skills to collaborate with stakeholders at all levels. Job Offer A yearly bonus to reward More ❯
Job Description Lead and manage the Security Operations team to ensure optimal performance and adherence to best practices. Develop and implement effective security operations process, playbooks Oversee the monitoring, detection, and response to cybersecurity threats and incidents. Collaborate with stakeholders to ensure compliance with relevant regulations and standards. Provide training and guidance to team members to support their professional … skills in vulnerabilities management, incident management, and the implementation of security protocols. Knowledge of relevant cybersecurity regulations and standards. Experience with Microsoft tools and technologies used in monitoring and threat detection. Excellent leadership abilities and the capacity to mentor team members effectively. Strong communication skills to collaborate with stakeholders at all levels. What's on Offer A yearly bonus More ❯
Senior Customer Success Manager - German Speaking London, UK At ExtraHop, we're on a mission to help organizations achieve complete visibility, real-time threatdetection, and proactive security through cutting-edge network detection and response (NDR) technology. Our NDR product is a market leader, providing our customers with the ability to detect, investigate, and respond to threats … to protect and propagate trust by revealing the cybertruth, and we partner with every customer, every day, to uncover it. Our Reveal(x) 360 platform is the only network detection and response solution delivering the 360-degree visibility needed to see everything on the network. When organizations have full network transparency with ExtraHop, they can see more, know more More ❯
Reston, Virginia, United States Hybrid / WFH Options
CGI
future duties and responsibilities: The Cyber Security Dev Sec Ops Engineer will be responsible for ensuring a strong internal control environment through the static code analysis for vulnerabilities and threatdetection on applications hosted on AWS environments Key Responsibilities: Tweak and tune rules to ensure optimal in-line and out-of-band security controls. Lead and communicate effectively More ❯