26 to 50 of 199 SOAR Jobs in the UK

AI Security Engineer

Location
Greater London, England, United Kingdom
and proven ability to build and deploy automation using code, APIs, scripting, orchestration platforms, or low‐code technologies such as Python, workflow engines, or SOAR, integrating security logs, AI models, and platform components into cohesive pipelines. Metrics‐driven mindset, with experience defining KPIs, KRIs, dashboards, and reporting to demonstrate risk ...

Security Solutions Architect

Hiring Organisation
Context Recruitment Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £100,000 per annum
environment. Cloud security across Azure and/or AWS. Identity security, Zero Trust and Privileged Access Management. Network, endpoint and infrastructure security. SOC, SIEM, SOAR, EDR, NDR or XDR technologies. Vulnerability management and security monitoring. Threat modelling, risk assessment and security governance. DevSecOps, Infrastructure as Code or security automation. Designing ...

L3 SOC Engineer - Belfast

Hiring Organisation
Lorien
Location
Belfast, UK
Employment Type
Full-time
security monitoring and threat detection capabilities Eligibility for UK Security Clearance (SC) Experience with technologies such as Microsoft Sentinel, Microsoft Defender, KQL, QRadar, LogRhythm, SOAR platforms and other SIEM tools Strong communication and stakeholder management skills Desirable SC-200 (Microsoft Security Operations Analyst Associate) Microsoft security technology experience ...

Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA

Hiring Organisation
GitLab
Location
United Kingdom
Salary
£ 70 K
cloud platforms (AWS & GCP)Familiarity with threat intelligence and adversary tactics (e.g., MITRE ATT&CK)Experience building or working with automation (e.g., Python, scripting, SOAR platforms)Interest or experience in applying AI/ML or data-driven techniques to detection, triage, or response workflowsStrong analytical and problem-solving skills; ability ...

Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA

Hiring Organisation
GitLab
Location
Moffat, Dumfries & Galloway, UK
Employment Type
Full-time
cloud platforms (AWS & GCP)Familiarity with threat intelligence and adversary tactics (e.g., MITRE ATT&CK)Experience building or working with automation (e.g., Python, scripting, SOAR platforms)Interest or experience in applying AI/ML or data-driven techniques to detection, triage, or response workflowsStrong analytical and problem-solving skills; ability ...

Cyber Security Engineer

Hiring Organisation
Infosec
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£85 - £93 per hour
Life (EOL) Migrations End of Support (EOS) Upgrades Security Appliance Administration Threat Detection Technologies Desirable Splunk Microsoft Sentinel QRadar Elastic LogRhythm ArcSight Wazuh SOAR Platforms AI/Machine Learning Security Automation Proxy Administration Network Packet Capture Technologies EDR/XDR Platforms Contract Details Up to £92 per hour (Inside IR35 ...

Cybersecurity Engineer

Location
United Kingdom
engineering, security operations, or cloud security. Strong knowledge of Azure security controls, IAM, and cloud-native security services. Experience with endpoint security, SIEM/SOAR, network security, and automation tools. Familiarity with scripting (Python, PowerShell) and infrastructure-as-code (Terraform, Ansible). Deep understanding of vulnerability management, penetration testing, and ...

Technical Account Manager

Location
Manchester, England, United Kingdom
threat detection, and incident response Ability to understand end-to-end customer environments (cloud, infrastructure, security stack) Experience with security tools (e.g. SIEM, EDR, SOAR, DLP, vulnerability management) Able to interpret and translate security metrics into clear risk-based narratives Proven ability to build and maintain 12-month technical roadmaps ...

GRC Consultant

Location
Greater London, England, United Kingdom
knowledge covering several of the following examples (this list is not exhaustive): AD (Active Directory), Cryptography, End User Computing, IAM, PKI, Server hardening, SIEM, SOAR, virtualisation (VMware) Familiarity with MITRE ATT&CK Familiarity with ITIL Workplace type About NTT DATA NTT DATA is a $30+ billion business and technology services ...

Threat Specialist

Location
Greater London, England, United Kingdom
internal support tickets sent to the Security team Creation & revision of threat detections Perform SIEM product administration for event correlation and threat detection Perform SOAR playbook/dashboard management and product administration Provide insider threat investigation assistance to teams of internal stakeholders Drive automated detection, response, and configuration through various … security concepts Experience with Security Information and Event Management (SIEM) products Experience with Endpoint Detection & Response (EDR) products Experience with SOAR (Security Orchestration, Automation, and Response) products Experience with data analysis of events in security related sources such as IPS, Web Security, Endpoint Protection, Event Logs Experience working with GitHub ...

Security Automation Software Engineer

Hiring Organisation
G Research
Location
London, UK
Employment Type
Full-time
Azure).Familiarity with DevOps and infrastructure automation tooling (e.g. Jenkins, ArgoCD, Terraform, Ansible).Exposure to security operations tooling such as SIEM/XDR/SOAR platforms (e.g. Microsoft Sentinel, Elastic Security, AWS Security Hub).Experience working in agile delivery teams and collaborating with diverse technical stakeholders. Strong problem-solving skills ...

Embedded Cyber Detection and Response Deputy Team Lead

Hiring Organisation
Control Risks
Location
London, UK
Employment Type
Full-time
mentoring analysts, leading investigations, or serving as a technical lead within a security operations environment. Strong hands-on experience with SIEM, EDR/XDR, SOAR, IDS/IPS, log management, and cloud security technologies. Experience with platforms such as Splunk, Microsoft Sentinel, CrowdStrike, SentinelOne, Palo Alto, Microsoft Defender, or equivalent ...

Security Automation Software Engineer

Location
Greater London, England, United Kingdom
Familiarity with DevOps and infrastructure automation tooling (e.g. Jenkins, ArgoCD, Terraform, Ansible). Exposure to security operations tooling such as SIEM/XDR/SOAR platforms (e.g. Microsoft Sentinel, Elastic Security, AWS Security Hub). Experience working in agile delivery teams and collaborating with diverse technical stakeholders. Strong problem‐solving ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
flexibility may be needed for urgent incidents; we aim to plan work sustainably. Knowledgeand hands onexperience withCyber Securitytools, such as Vulnerability/Exposure Management, SOAR and SIEM platforms. Abletoqueryand analysestructured log data. Purpose & Values Purpose: Creating New Worlds with Boundless Imagination to Enhance People’s Lives. Values: Deliver Unforgettable Experiences ...

Security Operations Manager

Hiring Organisation
IAG Loyalty
Location
London, UK
Employment Type
Full-time
Centres or Managed Security Service ProvidersFamiliarity with Microsoft Sentinel, Splunk, Microsoft Defender, CrowdStrike or similar enterprise security platformsExperience automating security operations using scripting or SOAR technologiesWe might not be right for you if...You prefer working within a narrow technical specialism rather than owning security operations end-to-end. You enjoy ...

Security Operations Manager

Hiring Organisation
IAG Loyalty
Location
London, United Kingdom
Salary
£ 70 K
Centres or Managed Security Service ProvidersFamiliarity with Microsoft Sentinel, Splunk, Microsoft Defender, CrowdStrike or similar enterprise security platformsExperience automating security operations using scripting or SOAR technologiesWe might not be right for you if...You prefer working within a narrow technical specialism rather than owning security operations end-to-end.You enjoy maintaining ...

Sr InfoSec Analyst

Location
Belfast City District, Northern Ireland, United Kingdom
framework). Knowledge of technical security solutions (such as but not limited to firewalls, SIEM, NIDS/NIPS/HIDS/HIPS, EDR, DLP, SOAR, proxies, network behavioural analytics, orchestration, automation and cloud security). Deep knowledge of TCP/IP, UDP, DNS, FTP, SSH, SSL/TLS and HTTP ...

Deputy General Manager - Cybersecurity - Products

Hiring Organisation
Tata Communications
Location
London, UK
Employment Type
Full-time
winning medium and large cybersecurity transformation programmes. Cyber Security DomainsThe candidate should have a broad understanding of enterprise cybersecurity technologies, including: Security OperationsSIEM, SOAR, UEBA, Threat Intelligence, Threat Hunting, Incident Response, XDR, MDRNetwork SecurityNext Generation Firewalls, WAF, SASE, DNS Security, DDoS, NDREndpoint & Identity SecurityEDR, Endpoint Protection, IAM, PAM, MFA, ZTNA ...

IT SOC Analyst

Location
United Kingdom
party security providers. Limiting business disruption from malicious activity by containing and eradicating malicious activity from information systems. Support the development of SIEM and SOAR solutions. Ensure all investigative activity is correctly documented in ticketing systems and followed up with the relevant support teams. Perform research on the latest security ...

IT SOC Analyst

Location
Lutterworth, England, United Kingdom
party security providers. Limiting business disruption from malicious activity by containing and eradicating malicious activity from information systems. Support the development of SIEM and SOAR solutions. Ensure all investigative activity is correctly documented in ticketing systems and followed up with the relevant support teams. Perform research on the latest security ...

Manager, Security Automation

Location
Greater London, England, United Kingdom
and domain expert, balancing hands‐on engineering contributions with strategic planning, partner engagement, and organisational leadership. Minimum Requirements Demonstrable experience designing, implementing, and supporting Security Orchestration, Automation and Response (SOAR) platforms and associated automation workflows. Experience mentoring, coaching, and developing engineers, fostering an inclusive, collaborative, and high‐performing team culture. ...

IT Infrastructure and Security Engineer · Colchester ·

Location
Colchester, England, United Kingdom
Conduct threat analysis to address new and emerging risks; deploy response strategies to mitigate vulnerabilities. Manage and optimise security tools, including Next-Gen SIEM, SOAR, EDR/MDR/XDR, and cloud security solutions (CASB, ZTNA, SASE). Lead cybersecurity audits, compliance initiatives, and certification efforts (Cyber Essentials ...

Head of Security Incident Management

Hiring Organisation
WPP
Location
London, UK
Employment Type
Full-time
modern incident response methodologies, operating models, and governance frameworks. Experience leading multidisciplinary cyber security teams in large, global organisations. Deep technical understanding of SIEM, SOAR, EDR/XDR, cloud security, identity security, email security, and digital forensics. Experience defining operational metrics, service management frameworks, and continual improvement programmes. Ability ...

Senior Security Operations Engineer New London

Location
Greater London, England, United Kingdom
purple team experience. Experience with CNAPP, CSPM or exposure management platforms. Experience with eBPF or modern observability tooling. Experience implementing security automation using SOAR or similar orchestration platforms. Knowledge of policy-as-code and security governance. Familiarity with supply chain security and software integrity. Experience evaluating AI/LLM security ...

L3 Security Analyst

Location
Newbury, England, United Kingdom
networking protocols, operating systems (Windows/Linux), and security technologies (SIEM, EDR, IDS/IPS, firewalls, proxies) Hands‐on experience with SIEM tuning and SOAR automation Familiarity with frameworks like MITRE ATT&CK and cyber kill chain Knowledge of cloud platforms (Azure, AWS, GoogleCloud) and scripting/programming skills Excellent ...