SOAR Jobs in the UK

26 to 50 of 65 SOAR Jobs in the UK

Senior Director of Cyber Security

London, South East, England, United Kingdom
WTW
strongly preferred). Expertise in IAM technologies (SailPoint, Okta, Azure AD, CyberArk, Ping Identity), DLP platforms (Symantec, Microsoft Purview, Forcepoint, Digital Guardian), and security engineering tools (EDR, CSPM, SIEM, SOAR, vulnerability management). Strong knowledge of Zero Trust, data protection regulations (GDPR, FCA, PRA), cloud-native security, and DevSecOps practices. Exceptional leadership, communication, and stakeholder engagement skills, with the ability More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Cyber Security Operations Manager

United Kingdom
Hybrid/Remote Options
Milestone Technologies, Inc
experience leading and managing technical teams. Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO/IEC 27001, IAM). Proficiency with cybersecurity tools and platforms (e.g., SIEM, SOAR, SAS, Sandboxes, EDR solutions and cloud technologies). Working of knowledge of access control principles, cloud technologies (CNAPP, CSPM), data retention, and encryption methodologies. Excellent problem-solving, investigative mindset, and More ❯
Posted:

Security Analyst (GRC)

City, Cardiff, United Kingdom
CPS Group (UK) Limited
external security assessments and audits - Update and maintain incident response plans, playbooks, and procedures - Provide 3rd-line support to IT colleagues and the wider business Technical Skills: - SIEM and SOAR platforms - Log analytics, rule creation, tuning, and threat hunting - Familiarity with security frameworks - Azure and M365 security configuration and alert investigation - Dashboards and visualisation tools - Firewalls (CheckPoint, VMware NSX) - Windows More ❯
Employment Type: Permanent
Salary: GBP 40,000 - 45,000 Annual
Posted:

Security Analyst GRC

Cardiff, South Glamorgan, Wales, United Kingdom
CPS Group
and external security assessments and audits- Update and maintain incident response plans, playbooks, and procedures- Provide 3rd-line support to IT colleagues and the wider businessTechnical Skills:- SIEM and SOAR platforms- Log analytics, rule creation, tuning, and threat hunting- Familiarity with security frameworks- Azure and M365 security configuration and alert investigation- Dashboards and visualisation tools- Firewalls (CheckPoint, VMware NSX)- Windows More ❯
Employment Type: Full-Time
Salary: £40,000 - £45,000 per annum
Posted:

Technical Operations Analyst

Penwortham, Lancashire, United Kingdom
Matchtech
Operations function by providing support to other members of the team to protect BAE Systems against cyber threats. Lead in the identification and the creation, maintenance and troubleshooting of SOAR playbooks, automations and enrichments. Apply critical thinking to solve unique problems in the information security space. Enhancing the processes around interacting with large datasets to construct actionable information to enhance More ❯
Employment Type: Contract
Rate: GBP Annual
Posted:

OT SOC Analyst - Operational Technology

Sussex, United Kingdom
Hybrid/Remote Options
Morson Edge
Ensure all logs feed into the SIEM and build use cases to detect anomalous activity. Incident Response: Lead high-severity incidents, improve playbooks and manage remediation, communication and reporting. SOAR: Develop automated workflows to streamline detection, enrichment and response. Forensics: Perform forensic analysis across multiple data sources and recommend containment and eradication actions. Crisis Testing: Take part in cyber-attack More ❯
Employment Type: Contract
Rate: GBP 600 - 800 Daily
Posted:

OT SOC Analyst - Operational Technology

West Sussex, United Kingdom
Hybrid/Remote Options
Morson Edge
Ensure all logs feed into the SIEM and build use cases to detect anomalous activity. Incident Response: Lead high-severity incidents, improve playbooks and manage remediation, communication and reporting. SOAR: Develop automated workflows to streamline detection, enrichment and response. Forensics: Perform forensic analysis across multiple data sources and recommend containment and eradication actions. Crisis Testing: Take part in cyber-attack More ❯
Employment Type: Contract
Rate: £600 - £800/day None
Posted:

Security Information & Event Monitoring (SIEM) Engineer- SC-Must, Readings UK

Reading, Berkshire, England, United Kingdom
KBC Technologies UK LTD
Skills: Proven hands-on experience in SIEM engineering. Strong understanding of security logs across domains (identity, network, system, data, cloud). Proficient in PowerShell and Python. Good knowledge of SOAR platforms. Leadership and stakeholder management skills More ❯
Employment Type: Contractor
Rate: Salary negotiable
Posted:

IT Security Operations Manager

London, United Kingdom
ARC IT Recruitment Ltd
as CISSP, TOGAF, CCSP, GCIH or equivalent Strong experience securing Microsoft cloud environments (Azure) design, deployment, configuration and management Broad knowledge of infrastructure and security solutions, including SIEM/SOAR Proven track record designing end-to-end solutions with security embedded across network, infrastructure, access, cloud services, controls and SecOps Experience addressing cloud-specific security challenges, patterns and controls Demonstrated More ❯
Employment Type: Permanent
Posted:

IT Security Operations Manager

London, South East, England, United Kingdom
Arc IT Recruitment
as CISSP, TOGAF, CCSP, GCIH or equivalent Strong experience securing Microsoft cloud environments (Azure) - design, deployment, configuration and management Broad knowledge of infrastructure and security solutions, including SIEM/SOAR Proven track record designing end-to-end solutions with security Embedded across network, infrastructure, access, cloud services, controls and SecOps Experience addressing cloud-specific security challenges, patterns and controls Demonstrated More ❯
Employment Type: Full-Time
Salary: Salary negotiable
Posted:

Senior Cloud Security Engineer Kubernetes

City of London, London, England, United Kingdom
Hybrid/Remote Options
Broster Buchanan
Your engineering experiences include Golang and Terraform Technologies AWS, GCP, Azure and private Data Centers Kubernetes, Helm, Flux Distributed systems, mostly Golang based with CockroachDB and NATS SIEM/SOAR, EDR, CNAPP, and a suite of open source tools with custom integrations This is a fully remote role, please email your CV to apply More ❯
Employment Type: Full-Time
Salary: £85,000 - £120,000 per annum
Posted:

Elastic Platform Engineer

london, south east england, united kingdom
G-Research
the following skills and experience: Significant experience administering and scaling Elastic SIEM - Elastic Security, Elastic Stack) -in enterprise environments Expertise with automation and orchestration tools, such as Tines and SOAR platforms Familiarity with Bash, Python or equivalent languages Strong knowledge of Linux systems, networking and cloud logging architectures Proven ability to manage upgrades, migrations and high-availability deployments Experience in More ❯
Posted:

Security Analyst

Buckinghamshire, United Kingdom
VIQU IT
Microsoft Sentinel (SIEM) and Microsoft Defender suite (Defender for Endpoint, Identity, Cloud, etc.). Proven track record in security monitoring, incident response, and alert troubleshooting . Working knowledge of SOAR platforms (preferably within Sentinel or similar). Understanding of threat detection, log analysis, and automation within Microsoft s security ecosystem. Experience with Tenable is beneficial Knowledge of Microsoft Purview would … security alerts and incidents in Microsoft Sentinel and Microsoft Defender . Perform detailed security event analysis and correlation, escalating incidents where necessary. Develop and optimise SOAR (Security Orchestration, Automation and Response) playbooks to enhance incident response and efficiency. Collaborate with wider IT and security teams to improve threat detection, incident handling, and response processes. Apply now to speak with VIQU More ❯
Employment Type: Contract
Rate: GBP 400 - 500 Daily
Posted:

Security Analyst

Milton Keynes, Loughton, Buckinghamshire, United Kingdom
VIQU IT
Microsoft Sentinel (SIEM) and Microsoft Defender suite (Defender for Endpoint, Identity, Cloud, etc.). Proven track record in security monitoring, incident response, and alert troubleshooting . Working knowledge of SOAR platforms (preferably within Sentinel or similar). Understanding of threat detection, log analysis, and automation within Microsoft’s security ecosystem. Experience with Tenable is beneficial Knowledge of Microsoft Purview would … security alerts and incidents in Microsoft Sentinel and Microsoft Defender . Perform detailed security event analysis and correlation, escalating incidents where necessary. Develop and optimise SOAR (Security Orchestration, Automation and Response) playbooks to enhance incident response and efficiency. Collaborate with wider IT and security teams to improve threat detection, incident handling, and response processes. Apply now to speak with VIQU More ❯
Employment Type: Contract
Rate: £400 - £500/day
Posted:

Senior Security Engineer - SIEM, KQL

London, United Kingdom
Harvey Nash
for new security tools Help define and measure control effectiveness Required Skills & Experience Certifications: AZ-500, SC-200, SC-900, CompTIA Security+, CISSP, GCIA, GCIH, GCFA, CCSP Experience with SOAR playbooks, YARA rules, STIX, and YAML Participation in red/purple team exercises. Please apply within for further details - Alex Reeder Harvey Nash 3+ years in a Security Engineer, SOC … NIST, Kill Chain) Experience with EDR, DLP, Proxy, and SEG tools Desirable Qualifications Certifications: AZ-500, SC-200, SC-900, CompTIA Security+, CISSP, GCIA, GCIH, GCFA, CCSP Experience with SOAR playbooks, YARA rules, STIX, and YAML Participation in red/purple team exercises. Please apply within for further details - Alex Reeder Harvey Nash To From Record Yes No Always use More ❯
Employment Type: Contract
Rate: £500 - £600 per day
Posted:

Senior Security Engineer - SIEM, KQL

London, South East, England, United Kingdom
Harvey Nash
for new security tools Help define and measure control effectiveness Required Skills & Experience Certifications: AZ-500, SC-200, SC-900, CompTIA Security+, CISSP, GCIA, GCIH, GCFA, CCSP Experience with SOAR playbooks, YARA rules, STIX, and YAML Participation in red/purple team exercises. Please apply within for further details - Alex Reeder Harvey Nash 3+ years in a Security Engineer, SOC … NIST, Kill Chain) Experience with EDR, DLP, Proxy, and SEG tools Desirable Qualifications Certifications: AZ-500, SC-200, SC-900, CompTIA Security+, CISSP, GCIA, GCIH, GCFA, CCSP Experience with SOAR playbooks, YARA rules, STIX, and YAML Participation in red/purple team exercises. Please apply within for further details - Alex Reeder Harvey Nash To From Record Yes No Always use More ❯
Employment Type: Contractor
Rate: £500 - £600 per day
Posted:

Senior Security Engineer – Cloud

london, south east england, united kingdom
Space NK
investigation of identity-based attacks. Validate secure delegation models, access review processes, and identity lifecycle controls defined by IAM. Threat Detection, Monitoring & Incident Response Own and operate SIEM and SOAR tooling, including Microsoft Sentinel, Defender XDR, Identity Protection, and threat analytics. Develop and refine detection rules, correlation logic, threat hunting use cases, and behavioural analytics. Investigate and support incident response … for Cloud, Conditional Access, and identity protection tooling. Deep knowledge of Microsoft Entra ID, AD DS, MFA, PIM, RBAC, and hybrid identity security. Hands-on experience with SIEM (Sentinel), SOAR, EDR (MDE), CSPM, and vulnerability management tools. Experience securing Windows Server, PKI/ADCS, domain controllers, and virtualisation environments. Practical understanding of Zero Trust security principles and secure-by-design. More ❯
Posted:

Cyber Security Technology Product Owner

London, South East, England, United Kingdom
Salt Search
etc. a plus. Nice to Have Cloud certifications (Azure, AWS, GCP) Experience working in regulated environments (e.g., finance, government) SAFe Agile or Scrum certifications Prior experience with SIEM/SOAR integration, API security, or Identity Governance Why Join Us Play a key role in shaping enterprise-wide secure access architecture Work with a forward-thinking, cross-functional security team Be More ❯
Employment Type: Temporary
Salary: £600 - £800 per day
Posted:

Presales Engineer - Cyber Security

Reading, England, United Kingdom
Hybrid/Remote Options
Areti Group | B Corp™
are now looking for a more consultative, client-facing role. Ideal Background: Proven experience in cyber security design, architecture, or consultancy. Hands-on expertise across domains such as SIEM, SOAR, EDR, Vulnerability Management, WAF, IDAM , and Cloud Security . Strong understanding of vendor technologies (e.g., Fortinet, Palo Alto, Juniper ). Excellent communication and stakeholder engagement skills, able to translate complex More ❯
Posted:

Senior Product Manager, Cybersecurity

remote, united kingdom
Hybrid/Remote Options
Dataminr
resilient, resourceful, and relentless in your pursuit of product excellence. As a bonus, you understand and have built integrations for popular cybersecurity partner solutions, such as Splunk Enterprise, Splunk SOAR, Palo Alto Networks Cortex XSOAR, Microsoft Sentinel, Google SecOps, and/or others. #LI-BM #LI-REMOTE About Dataminr At Dataminr, we are a mission driven team of talented builders More ❯
Posted:

Microsoft Cloud Security Architect Lead

London, South East, England, United Kingdom
Hybrid/Remote Options
WTW
Cloud (Defend, Runtime Sensor, Code), CSPM, and CWP. Automation & Integration : Using Sentinel Graph, Microsoft Graph Security API, playbooks, Logic Apps, Power Automate. Threat Management : SIEM for detection, response, hunting; SOAR workflow design; KQL queries, custom rules, UEBA. Identity & Access Security : Entra ID, Conditional Access, Identity Protection, PIM. Email Security : Microsoft Defender for O365, Darktrace AI, anti-phishing, Safe Links/… and its application in threat detection and response. Understanding of compliance standards (ISO 27001, NIST CSF, GDPR, SOC 2). Familiarity with third-party integrations (e.g., Threat Intelligence Platforms, SOAR tools, Security APIs). Certifications (Preferred): Microsoft SC-100, AZ-500, SC-200, SC-300. CISSP, CCSP. Benefits - GB: Enjoy a benefits package designed to help you thrive, both professionally More ❯
Employment Type: Full-Time
Salary: Competitive salary
Posted:

Technical Security Consultant

Nottingham, Nottinghamshire, East Midlands, United Kingdom
Hybrid/Remote Options
Littlefish
and evolve secure frameworks using Microsoft Security (Defender, Sentinel, Purview, Entra) and integrate Qualys vulnerability management for continuous threat detection and remediation. Automate & Innovate: Lead the charge on automation (SOAR, IaC, workflow automation) and embed Gen AI into security operations, threat intelligence, and reporting. Set Standards: Develop and enforce security architecture standards, governance, and best practicesespecially for AI and automation … for emerging tech. The following would also be of interest: Certifications in automation/cloud (Azure Solutions Architect, Terraform, GIAC), vulnerability management (Qualys, ISO 27001, NIST). Experience with SOAR, SIEM, XDR, and cloud-native security (especially Azure). Pre-sales or solution architecture exposure. What can we offer you? Through our one of a kind training programme, the Littlefish More ❯
Employment Type: Permanent
Salary: £55,000
Posted:

Sentinel SEIM Engineer SC Cleared

South East, United Kingdom
Adroit People Ltd
security logs across multiple domains identity and access, network, system, data, application, cloud and multiple product types. Proficiency in data analysis and scripting languages (e.g., PowerShell, Python). Strong Security Orchestration, Automation and Response (SOAR) knowledge. Team leadership experience with great collaboration and stakeholder management skills JBRP1_UKTJ More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Sentinel SEIM Engineer SC Cleared

Reading, Berkshire, South East, United Kingdom
Adroit People Ltd
security logs across multiple domains identity and access, network, system, data, application, cloud and multiple product types. Proficiency in data analysis and scripting languages (e.g., PowerShell, Python). Strong Security Orchestration, Automation and Response (SOAR) knowledge. Team leadership experience with great collaboration and stakeholder management skills More ❯
Employment Type: Contract
Rate: From £350 to £400 per day Contract (InsideIR35)
Posted:

Senior DLP

london, south east england, united kingdom
London Stock Exchange Group
comprehensive Insider Threat program Hands-on experience conducting DLP operations in the Cloud as well as desired knowledge of other solutions like UEBA,CASB etc. Experience utilizing SIEM/SOAR for data analytics and investigations Passionate about innovation and enjoys the challenges of creating something new Ideally having experience leading teams operationally and mentoring technical associates Stays current with evolving More ❯
Posted:
SOAR
10th Percentile
£56,500
25th Percentile
£65,000
Median
£78,500
75th Percentile
£90,000
90th Percentile
£97,000