26 to 50 of 77 Remote/Hybrid Azure Sentinel Jobs

Information Security Analyst - SecOps Detection

Hiring Organisation
Starling Bank
Location
London, United Kingdom
Salary
£ 80 K
analytics in our SIEM and other security platforms.Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments.Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response.Incident … models like MITRE ATT&CK to prioritize and enhance detective controls.SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics.Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies.Cloud Security: Solid knowledge of security ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
sensitivity labeling policies across the estate. Perform second-line investigations of alerts escalated by the MDR provider across Defender XDR and Sentinel, conducting proactive threat hunting via KQL queries and Sentinel workbooks. Oversee the outsourced vulnerability scanning service, driving findings through to remediation within SLA limits … documentation directly from tooling rather than assembling it by hand. Hands-on experience configuring, tuning, and investigating alerts across Microsoft Defender XDR, Microsoft Sentinel, and Microsoft Defender for Cloud. Strong technical grasp of Entra ID governance, including Conditional Access, PIM, and managing workload identity risks (service principals ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, United Kingdom
Salary
£ 80 K
controls.Develop and maintain incident response procedures, playbooks and documentation aligned to industry best practice.Detection Engineering & Security AutomationConfigure, optimise and continuously improve Microsoft Sentinel and Microsoft Defender technologies.Develop and tune detection logic using KQL to identify emerging threats and attacker behaviours.Build and maintain automated SOAR workflows using Logic Apps … premise environments.Maintain high-quality technical documentation for detections, automations and operational workflows.Cloud Security & Secure-by-DesignSupport secure configuration and operational security across Azure and associated cloud services.Collaborate with infrastructure and engineering teams to embed secure-by-design principles.Evaluate configuration changes and ensure alignment with security standards and controls.Support ...

Cyber Security Analyst – Hybrid, MS Security Stack Expert

Location
Greater London, England, United Kingdom
across a global footprint. You will work on managing cyber incidents, threat hunting, vulnerability management and policy compliance using the Microsoft Security Stack (Azure Sentinel, Defender, Purview). #J-18808-Ljbffr ...

Senior Cryptography & Information Security SME CGEMJP00351299

Location
Knutsford, England, United Kingdom
DigiCert PKI Certifications Venafi Professional Certification Microsoft Security Certifications Preferred Technical Tools & Platforms HSM Platforms Thales Luna HSM Entrust nShield HSM AWS CloudHSM Azure Dedicated HSM PKI & Certificate Management Microsoft Active Directory Certificate Services (ADCS) DigiCert Entrust PKI Venafi Keyfactor AppViewX Key Management Technologies HashiCorp Vault … Azure Key Vault Google Cloud KMS Thales CipherTrust Manager Operating Systems Linux (RHEL, CentOS, Ubuntu) Windows Server Security & Monitoring Splunk Microsoft Sentinel QRadar Dynatrace Datadog Infrastructure & Automation PowerShell Python Bash/Shell Scripting Ansible Terraform Git All profiles will be reviewed against the required skills ...

Information Security Analyst - SecOps Detection

Location
Greater London, England, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Information Security Analyst - SecOps Detection

Location
Cardiff, Wales, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Information Security Analyst - SecOps Detection

Location
Manchester, England, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands-on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Information Security Analyst - Secops Detection

Location
Southampton, England, United Kingdom
SIEM and other security platforms. Proactive Threat Hunting - Formulate hypotheses and hunt for undetected attacker TTPs across our cloud (AWS, GCP, Azure), SaaS, and endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident … like MITRE ATT&CK to prioritize and enhance detective controls. SIEM Expertise: Hands‐on experience with SIEM platforms (e.g., Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics. Threat Hunting: Experience conducting proactive threat hunts, defining hypotheses, and developing hunting methodologies. Cloud Security: Solid knowledge ...

Cyber Engineer

Location
West of England, England, United Kingdom
colleagues within the cyber security team. Technology Environment You'll be working within a predominantly Microsoft-focused environment, including: Microsoft Defender Suite Microsoft Sentinel Microsoft Purview Microsoft Entra ID Azure Microsoft Fabric Vulnerability management platforms such as Tenable and Intruder Operational Technology (OT) environments and industrial … experience in a Security Engineer, Cyber Security Engineer or similar role. Strong experience securing Microsoft cloud and enterprise environments. Expertise across Microsoft Defender, Sentinel, Entra ID and Azure security technologies. Experience implementing vulnerability management and security monitoring solutions. Strong understanding of security frameworks such as NCSC ...

Senior Security Operations Engineer

Location
Belfast City District, Northern Ireland, United Kingdom
tools such as vulnerability management, PAM, IDS/IPS, or DLP Networking fundamentals (firewalls, switches, wireless access points) Experience with Microsoft Defender, Microsoft Sentinel, or Azure security tooling Experience working in a cloud or SaaS environment Relevant certifications (e.g. ...

Head of Cloud Engineering

Location
Greater London, England, United Kingdom
complex cloud transformation, security modernisation, and AI adoption programmes. Support pre-sales activities, workshops, proof of concepts, and executive presentations. Technology & Innovation Microsoft Azure Microsoft 365 Security Microsoft Defender Suite Microsoft Sentinel Microsoft Entra Microsoft Copilot for Security Microsoft Purview AWS Security Google Cloud Security … Access) Microsoft 365 Defender (Defender for Endpoint, Defender for Office 365, Defender for Identity, Defender for Cloud Apps) Microsoft Defender for Cloud Microsoft Sentinel Microsoft Copilot for Security Microsoft Intune AWS Security Services Google Cloud Platform Security Zero Trust Architectures DevSecOps CNAP platforms (like Wiz and Palo Alto ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, United Kingdom
Salary
£ 80 K
MITRE ATT&CK to structure detections, gaps analysis, and defensive improvements.Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments.Calm under pressure, able to lead effectively during incidents ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments. Calm under pressure, able to lead effectively during incidents and make ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments. Calm under pressure , able to lead effectively during incidents and make ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
vulnerability triage workflows that score real risk by exploitability, reachability, and compensating controls rather than raw CVSS. Harden and secure our cloud environment (Azure), partnering with platform engineering on secure configuration, reviewing and remediating vulnerabilities, identity and network controls, posture management, and logging and detection. Strengthen endpoint … control landscape: cloud security, supply‐chain and vulnerability management, endpoint and identity, and detection and response. Are genuinely technical: comfortable in cloud environments (Azure preferred), CI/CD, and at least one scripting language (e.g. Python, Bash, PowerShell), so your controls hold up in engineering reality. Lead with ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
outputsCreate novel analytic techniques for incident detectionCollaborate with an MSP SOC to maintain and tune the detection catalogueBuild automated reporting dashboards using Microsoft Sentinel workbooksSupport security initiatives including ISO 27001 activities and KQL-based tasksEnsure monitoring coverage across cloud platforms, SaaS apps, and internal systemsContribute to documentation … similar role.Strong proficiency in KQL and hands-on experience with Microsoft SentinelFamiliarity with Microsoft Defender tools (Endpoint & O365)Exposure to Azure cloud logging and Kubernetes environmentsKnowledge of attacker TTPs and MITRE ATT&CK frameworksProactive, collaborative, and innovative mindsetDesirable/Nice-to-Have:Experience with Python, Terraform ...

IAM Consultant/Developer (Microsoft Entra ID) - Contract role, UK, fully remote

Location
United Kingdom
clean handover once migration is complete. What We're Looking For Essential: Proven experience delivering a migration onto Microsoft Entra ID (formerly Azure AD) — from on-prem AD DS or from a third-party IdP (Okta, Ping, ForgeRock, etc.). Strong working knowledge of Conditional Access, Zero Trust … Graph PowerShell SDK. Comfortable working independently and communicating migration risk/status to non-technical stakeholders. Desirable: KQL for log analysis in Microsoft Sentinel or Azure Monitor. Experience with Entra ID B2B/B2C. Background with an alternative IAM platform (ForgeRock, Ping, Okta) — genuinely useful ...

Cyber Security Analyst - Microsoft Security / IAM - Contract

Hiring Organisation
Searchability
Location
Bristol, Avon, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
Cyber Security Analyst - Microsoft Security/IAM 3-Month Contract | Inside IR35 Bristol/Hybrid - Ideally 1-2 days per week onsite Microsoft Sentinel | Entra ID | IAM | Conditional Access | MFA | RBAC We're looking for an experienced Cyber Security Analyst to join a highly innovative organisation in Bristol … Identity & Access Management within the Microsoft ecosystem , so we're looking for somebody with strong hands-on knowledge of Entra ID/Azure AD, Conditional Access, MFA and RBAC , alongside experience working with Microsoft Sentinel . What you'll be doing Supporting and improving Identity & Access ...

Head of IT Infrastructure and Security

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 80 K
zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft … Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Technology:Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 ...

Cyber Security Analyst – Microsoft Security / IAM – Contract

Location
West of England, England, United Kingdom
Cyber Security Analyst – Microsoft Security/IAM 3-Month Contract | Inside IR35 Bristol/Hybrid – Ideally 1-2 days per week onsite Microsoft Sentinel | Entra ID | IAM | Conditional Access | MFA | RBAC We’re looking for an experienced Cyber Security Analyst to join a highly innovative organisation in Bristol … Identity andamp; Access Management within the Microsoft ecosystem , so we’re looking for somebody with strong hands‐on knowledge of Entra ID/Azure AD, Conditional Access, MFA and RBAC , alongside experience working with Microsoft Sentinel . What you’ll be doing Supporting and improving Identity ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 490,000 - 495,495 Daily
implementation and ongoing support. The organisation is investing heavily in its security capabilities and Microsoft technology estate, with several key initiatives planned across Azure and Microsoft 365. The successful candidate will play a pivotal role in helping shape and deliver these programmes while supporting the wider security function. … optimisation, supporting MDM and MAM capabilities. Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
Surbiton, Surrey, St. Mark's, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£490 - £495/day £495pd, Outside IR35
implementation and ongoing support. The organisation is investing heavily in its security capabilities and Microsoft technology estate, with several key initiatives planned across Azure and Microsoft 365. The successful candidate will play a pivotal role in helping shape and deliver these programmes while supporting the wider security function. … optimisation, supporting MDM and MAM capabilities. Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...

Cyber Security Engineer (Threat Detection & Automation)

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
looking for:Previously worked as a Threat Detection Engineer or in a similar role.Must have strong expertise in KQL.Hands-on experience with Microsoft Sentinel and Defender (Endpoint, Office 365).Familiarity with Microsoft Entra ID, including Identity Governance.Experience with Microsoft Purview, particularly DLP and data protection tools.Exposure to cloud … native logging in Azure and Kubernetes environments.Understanding of “detection as code” or “everything as code” approaches, including CI/CD pipelines.Experience working with or alongside MSP SOC teams.Awareness of Agile methodologies and ways of working.Knowledge of attacker TTPs, threat modelling, and cyber security frameworks.Understanding of statistics, data science ...