101 to 125 of 247 Azure Sentinel Jobs

Security Automation Software Engineer

Hiring Organisation
G Research
Location
London, UK
Employment Type
Full-time
designs and implements automated detection and response capabilities that protect G-Research's diverse and complex estate, spanning high-performance compute (HPC) environments, Azure and Windows corporate infrastructure, and public cloud platforms such as AWS.As part of SAE, you'll play a hands-on role building secure, scalable … environments. Key responsibilities of the role include: Design, build and maintain automated detection and response systems across G-Research's hybrid environments (HPC, Azure, AWS).Develop high-quality, well-tested code primarily in Python, following secure engineering best practices. Implement and maintain infrastructure-as-code and CI/ ...

Senior SOC Analyst

Location
Greater London, England, United Kingdom
into the Global Security Operations Centre. Review and validate detection logic, thresholds, alert conditions and expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm . Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE ATT&CK . Identify detection … teams. Create investigation workflows, triage processes and escalation procedures for security incidents across Microsoft Defender, CrowdStrike, Cortex XDR, SentinelOne, Carbon Black, Azure, AWS, and GCP environments . Define required enrichment data, threat intelligence inputs and decision‐making criteria. Ensure procedures are practical, repeatable and aligned with global security ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
outputsCreate novel analytic techniques for incident detectionCollaborate with an MSP SOC to maintain and tune the detection catalogueBuild automated reporting dashboards using Microsoft Sentinel workbooksSupport security initiatives including ISO 27001 activities and KQL-based tasksEnsure monitoring coverage across cloud platforms, SaaS apps, and internal systemsContribute to documentation … similar role.Strong proficiency in KQL and hands-on experience with Microsoft SentinelFamiliarity with Microsoft Defender tools (Endpoint & O365)Exposure to Azure cloud logging and Kubernetes environmentsKnowledge of attacker TTPs and MITRE ATT&CK frameworksProactive, collaborative, and innovative mindsetDesirable/Nice-to-Have:Experience with Python, Terraform ...

Crowdstrike Technical Consultant

Location
Greater London, England, United Kingdom
adjacent modules), either in a vendor, partner, or customer capacity Experiencewith at least two of the following: SIEM platforms (Splunk,QRadar, Elastic, Sentinel, Chronicle), endpoint security, identity threat detection, cloud security posture management, or vulnerability/exposure management Experiencewith enterprise security architectures, including identity infrastructure, cloud environments … Azure, GCP), OT/ICS environments, or hybrid data center Bachelor's degree or equivalent work experience. Bonus points if you have Active CrowdStrike certification(s): CCFA, CCSE, or CrowdStrike Champions Professional/Expert Direct experience with CrowdStrike NG-SIEM: migration delivery, parser development, CQL, orLogScaleadministration Experience delivering ...

Information Security Analyst

Location
Greater London, England, United Kingdom
information security, cyber security, security operations or related disciplines. Experience investigating security incidents and managing security alerts. Good understanding of Microsoft 365, Azure/Entra ID and cloud security principles. Experience working with vulnerability management programmes. Knowledge of security frameworks and standards including: ISO/IEC 27001 Cyber … financial services firm or other highly regulated environment. Experience responding to client security questionnaires and audits. Knowledge of Microsoft Security technologies including Defender, Sentinel, Purview and Entra ID. What's In It For You We provide comprehensive support for our colleagues' health and wellbeing, including private medical cover ...

Crowdstrike Technical Consultant

Hiring Organisation
Accenture
Location
Manchester, UK
Employment Type
Full-time
adjacent modules), either in a vendor, partner, or customer capacity Experience with at least two of the following: SIEM platforms (Splunk, QRadar, Elastic, Sentinel, Chronicle), endpoint security, identity threat detection, cloud security posture management, or vulnerability/exposure management Experience with enterprise security architectures, including identity infrastructure, cloud … environments (AWS, Azure, GCP), OT/ICS environments, or hybrid data center Bachelor's degree or equivalent work experience. Bonus points if you haveActive CrowdStrike certification(s): CCFA, CCSE, or CrowdStrike Champions Professional/Expert Direct experience with CrowdStrike NG-SIEM: migration delivery, parser development, CQL, or LogScale ...

Crowdstrike Technical Consultant

Hiring Organisation
Accenture
Location
Holywood, Co. Down, UK
Employment Type
Full-time
adjacent modules), either in a vendor, partner, or customer capacity Experience with at least two of the following: SIEM platforms (Splunk, QRadar, Elastic, Sentinel, Chronicle), endpoint security, identity threat detection, cloud security posture management, or vulnerability/exposure management Experience with enterprise security architectures, including identity infrastructure, cloud … environments (AWS, Azure, GCP), OT/ICS environments, or hybrid data center Bachelor's degree or equivalent work experience. Bonus points if you haveActive CrowdStrike certification(s): CCFA, CCSE, or CrowdStrike Champions Professional/Expert Direct experience with CrowdStrike NG-SIEM: migration delivery, parser development, CQL, or LogScale ...

IAM Consultant/Developer (Microsoft Entra ID) - Contract role, UK, fully remote

Location
United Kingdom
clean handover once migration is complete. What We're Looking For Essential: Proven experience delivering a migration onto Microsoft Entra ID (formerly Azure AD) — from on-prem AD DS or from a third-party IdP (Okta, Ping, ForgeRock, etc.). Strong working knowledge of Conditional Access, Zero Trust … Graph PowerShell SDK. Comfortable working independently and communicating migration risk/status to non-technical stakeholders. Desirable: KQL for log analysis in Microsoft Sentinel or Azure Monitor. Experience with Entra ID B2B/B2C. Background with an alternative IAM platform (ForgeRock, Ping, Okta) — genuinely useful ...

IAM & AI Engineer (Identity and Access Management)

Location
Greater London, England, United Kingdom
logs, access data) to support investigations, identify trends, and contribute to operational and security improvements. Hands-on experience with Microsoft Entra ID (Azure AD), including: User and group management (static and dynamic groups) Role assignments, service principals, and application registrations Familiarity with tenants, directories, objects, and attribute structures … Engineering experience in Active Directory: User and group management, OU structures, Group Policy Objects (GPOs) Basic LDAP knowledge Understanding of Hybrid identity integration (Azure AD Connect/Cloud Sync) Awareness of AD tiering concepts and disaster recovery principles Experience working with Identity Governance tooling such as Saviynt/ ...

IAM & AI Engineer (Identity and Access Management)

Location
Coventry, England, United Kingdom
logs, access data) to support investigations, identify trends, and contribute to operational and security improvements. Hands-on experience with Microsoft Entra ID (Azure AD), including: User and group management (static and dynamic groups) Role assignments, service principals, and application registrations Familiarity with tenants, directories, objects, and attribute structures … Engineering experience in Active Directory: User and group management, OU structures, Group Policy Objects (GPOs) Basic LDAP knowledge Understanding of Hybrid identity integration (Azure AD Connect/Cloud Sync) Awareness of AD tiering concepts and disaster recovery principles Experience working with Identity Governance tooling such as Saviynt/ ...

Cyber Security Analyst - Microsoft Security / IAM - Contract

Hiring Organisation
Searchability
Location
Bristol, Avon, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
Cyber Security Analyst - Microsoft Security/IAM 3-Month Contract | Inside IR35 Bristol/Hybrid - Ideally 1-2 days per week onsite Microsoft Sentinel | Entra ID | IAM | Conditional Access | MFA | RBAC We're looking for an experienced Cyber Security Analyst to join a highly innovative organisation in Bristol … Identity & Access Management within the Microsoft ecosystem , so we're looking for somebody with strong hands-on knowledge of Entra ID/Azure AD, Conditional Access, MFA and RBAC , alongside experience working with Microsoft Sentinel . What you'll be doing Supporting and improving Identity & Access ...

Head of IT Infrastructure and Security

Hiring Organisation
Nexus Jobs
Location
London, United Kingdom
Salary
£ 80 K
zero-trust security principles to enhance protection across cloud platforms. Manage identity and access management (IAM) in a cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft … Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2, FCA). Technology:Microsoft Azure Infrastructure design and administration, including topology, Azure networking, services, and component knowledge, Microsoft AD (Entra), Server and SQL experience, O365 ...

Cyber Security Analyst – Microsoft Security / IAM – Contract

Location
West of England, England, United Kingdom
Cyber Security Analyst – Microsoft Security/IAM 3-Month Contract | Inside IR35 Bristol/Hybrid – Ideally 1-2 days per week onsite Microsoft Sentinel | Entra ID | IAM | Conditional Access | MFA | RBAC We’re looking for an experienced Cyber Security Analyst to join a highly innovative organisation in Bristol … Identity andamp; Access Management within the Microsoft ecosystem , so we’re looking for somebody with strong hands‐on knowledge of Entra ID/Azure AD, Conditional Access, MFA and RBAC , alongside experience working with Microsoft Sentinel . What you’ll be doing Supporting and improving Identity ...

Senior SOC Engineer

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 60 K
including developing custom automation and integrations via API with proficiency in at least one scripting language (preferably Python or GO). Preferred vendors: Azure, AWS, GCPExpert Knowledge of SIEM Architecture and Design – Including familiarity in SIEM deployment and architecture of at least one cloud environment (GCP, AWS, Azure, IBM). Preferred vendors: Microsoft Sentinel, Google SecOps, XSIAMExpert Knowledge of EDR/XDR – including configuration and deployment/maintenance. Preferred vendors: CrowdStrike, Microsoft Defender, Palo Alto XDR, SentinelOneIntermediate Knowledge of VM – including deployment, automation of reporting. Preferred vendors: Rapid 7, TennableIntermediate Knowledge of CTI – including ...

Cyber Security Engineer - MS Sentinel, Defender, SSO, PKI, SC-100/200, CISSP

Hiring Organisation
Comtecs Ltd
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £100,000 per annum
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … cybersecurity posture from an infrastructure perspective and external security rating. Identify, assess and remediate vulnerabilities across hardware, software and infrastructure (Windows Server and Azure Cloud). Monitor emerging threats and lead or support Incident Response investigations and mitigation. Evaluate, test and recommend security enhancements, controls and threat prevention ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 490,000 - 495,495 Daily
implementation and ongoing support. The organisation is investing heavily in its security capabilities and Microsoft technology estate, with several key initiatives planned across Azure and Microsoft 365. The successful candidate will play a pivotal role in helping shape and deliver these programmes while supporting the wider security function. … optimisation, supporting MDM and MAM capabilities. Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
Surbiton, Surrey, St. Mark's, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£490 - £495/day £495pd, Outside IR35
implementation and ongoing support. The organisation is investing heavily in its security capabilities and Microsoft technology estate, with several key initiatives planned across Azure and Microsoft 365. The successful candidate will play a pivotal role in helping shape and deliver these programmes while supporting the wider security function. … optimisation, supporting MDM and MAM capabilities. Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates ...

Senior Infrastructure Engineer

Hiring Organisation
Panasonic
Location
Cardiff, South Glamorgan, United Kingdom
Salary
£ 60 K
PMUK's core IT services and enterprise infrastructure. This is a hands-on technical leadership role, combining deep expertise in Microsoft 365, Azure, security, and infrastructure with responsibility for strategy, governance, and service delivery. The position plays a key role in modernising the workplace, enhancing security posture … future-ready. Microsoft 365 Administration & GovernanceOwn and manage the Microsoft 365 tenant (Global Administrator level).Administer core services, including:Microsoft Entra ID (Azure AD) – identity and access management.Microsoft Defender Suite – Endpoint, Identity, Office 365, Cloud Apps.Microsoft Purview – data governance, DLP, retention, and eDiscovery.Implement and maintain security, compliance ...

Senior Cyber Security Engineer

Hiring Organisation
Comtecs
Location
City of London, London, United Kingdom
Employment Type
Permanent
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … cybersecurity posture from an infrastructure perspective and external security rating. Identify, assess and remediate vulnerabilities across hardware, software and infrastructure (Windows Server and Azure Cloud). Monitor emerging threats and lead or support Incident Response investigations and mitigation. Evaluate, test and recommend security enhancements, controls and threat prevention ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
provide recommendations to strengthen detection outcomes Job Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps … attack lifecycle Experience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearly Technical Competencies: SIEM ...

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
perfect opportunity for you.Required Skills and ExperienceStrong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps, Cortex XSOAR … sources map to the attack lifecycleExperience with XDR or EDR platforms such as Microsoft Defender, CrowdStrike or Cortex Understanding of cloud environments, particularly Azure, and associated security telemetry Experience working in customer-facing or consultancy roles Strong communication skills, with the ability to explain technical concepts clearlyTechnical CompetenciesSIEM ...

Senior SOC Analyst (Outside IR35)

Location
West Midlands, England, United Kingdom
within a SOC environment with experience mentoring more junior staff. You will have the following experience: Industry standard Security qualifications (SANS GCIH, CISSP, Azure, Splunk, etc) or equivalent. Strong experience with SIEM technologies within a SOC (Splunk and MS Sentinel experience is highly desirable) Hands ...

Cyber Security Engineer (Threat Detection & Automation)

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
looking for:Previously worked as a Threat Detection Engineer or in a similar role.Must have strong expertise in KQL.Hands-on experience with Microsoft Sentinel and Defender (Endpoint, Office 365).Familiarity with Microsoft Entra ID, including Identity Governance.Experience with Microsoft Purview, particularly DLP and data protection tools.Exposure to cloud … native logging in Azure and Kubernetes environments.Understanding of “detection as code” or “everything as code” approaches, including CI/CD pipelines.Experience working with or alongside MSP SOC teams.Awareness of Agile methodologies and ways of working.Knowledge of attacker TTPs, threat modelling, and cyber security frameworks.Understanding of statistics, data science ...

Principal Cyber Security Operations Analyst

Location
City Of London, England, United Kingdom
guidance and technical authority across security operations and incident response activities. Have proven experience working with SIEM and EDR technologies such as Microsoft Sentinel, Splunk, Microsoft Defender and Trend Micro. Demonstrate strong cyber investigation skills, applying evidence-led analysis, Digital Forensics and Incident Response methodologies to identify, contain … Have experience managing cyber incidents through detection, investigation, containment, remediation and post-incident review activities. Demonstrate knowledge of cloud and hybrid environments, including Azure, AWS, networking, identity management and enterprise security controls. Have experience developing and improving incident response playbooks, detection use cases and cyber security operational procedures. ...

Senior Security Analyst

Location
United Kingdom
intelligence assessments, and comfort peer‐reviewing others’ analytic tradecraft. Working knowledge of cloud security event investigation and cloud detection tuning, particularly across AWS, Azure or GCP environments, including understanding of infrastructure‐level telemetry. Experience framing security findings in risk terms for non‐technical stakeholders—communicating likelihood, impact … expertise to proposals or bids. Tools and practice familiarity Hands‐on experience with at least one major SIEM platform (for example, Splunk, Microsoft Sentinel or Elastic Security) including writing and tuning detection rules. Familiarity with threat intelligence platforms, OSINT tooling or indicator lifecycle management in an operational context. ...