26 to 50 of 178 SOAR Jobs in the UK

Cybersecurity Engineer

Location
United Kingdom
engineering, security operations, or cloud security. Strong knowledge of Azure security controls, IAM, and cloud-native security services. Experience with endpoint security, SIEM/SOAR, network security, and automation tools. Familiarity with scripting (Python, PowerShell) and infrastructure-as-code (Terraform, Ansible). Deep understanding of vulnerability management, penetration testing, and ...

Technical Account Manager

Location
Manchester, England, United Kingdom
threat detection, and incident response Ability to understand end-to-end customer environments (cloud, infrastructure, security stack) Experience with security tools (e.g. SIEM, EDR, SOAR, DLP, vulnerability management) Able to interpret and translate security metrics into clear risk-based narratives Proven ability to build and maintain 12-month technical roadmaps ...

GRC Consultant

Location
Greater London, England, United Kingdom
knowledge covering several of the following examples (this list is not exhaustive): AD (Active Directory), Cryptography, End User Computing, IAM, PKI, Server hardening, SIEM, SOAR, virtualisation (VMware) Familiarity with MITRE ATT&CK Familiarity with ITIL Workplace type About NTT DATA NTT DATA is a $30+ billion business and technology services ...

Security AI Operations Engineer

Location
Belfast City District, Northern Ireland, United Kingdom
.* **AI & Workflow Tooling:** Practical experience interacting with generative AI tools, prompt workflows, and enterprise ticketing/orchestration platforms (e.g., Jira, ServiceNow, PagerDuty, or SOAR platforms).* **Cloud & Search Interface Familiarity:** Working comfort navigating the **AWS Management Console** (specifically Amazon Bedrock, Amazon OpenSearch Dashboards, and CloudWatch metrics).* **Communication & Documentation ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
flexibility may be needed for urgent incidents; we aim to plan work sustainably. Knowledgeand hands onexperience withCyber Securitytools, such as Vulnerability/Exposure Management, SOAR and SIEM platforms. Abletoqueryand analysestructured log data. Purpose & Values Purpose: Creating New Worlds with Boundless Imagination to Enhance People’s Lives. Values: Deliver Unforgettable Experiences ...

Software Engineer: First Party Security Products

Hiring Organisation
G Research
Location
London, UK
Employment Type
Full-time
Azure).Familiarity with DevOps and infrastructure automation tooling (e.g. Jenkins, ArgoCD, Terraform, Ansible).Exposure to security operations tooling such as SIEM/XDR/SOAR platforms (e.g. Microsoft Sentinel, Elastic Security, AWS Security Hub).Experience working in agile delivery teams and collaborating with diverse technical stakeholders. Strong problem-solving skills ...

Software Engineer: First Party Security Products

Location
Greater London, England, United Kingdom
Familiarity with DevOps and infrastructure automation tooling (e.g. Jenkins, ArgoCD, Terraform, Ansible). Exposure to security operations tooling such as SIEM/XDR/SOAR platforms (e.g. Microsoft Sentinel, Elastic Security, AWS Security Hub). Experience working in agile delivery teams and collaborating with diverse technical stakeholders. Strong problem-solving ...

AI Security Consultant – OWASP / NIS - CyberSecurity with LLMs

Hiring Organisation
Avanti
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £100,000 per annum
risk, familiarity with NIST AI RMF, OWASP LLM and Agentic guidance, MITRE ATLAS, ISO 27001 or NIST CSF, hands-on SOC/SIEM/SOAR exposure, and certifications like CISSP, CISM, CCSP or GIAC. APPLY NOW FOR IMMEDIATE CONSIDERATION Location – work from any of their UK offices – London, Cambridge, Bristol ...

Sr InfoSec Analyst

Location
Belfast City District, Northern Ireland, United Kingdom
framework). Knowledge of technical security solutions (such as but not limited to firewalls, SIEM, NIDS/NIPS/HIDS/HIPS, EDR, DLP, SOAR, proxies, network behavioural analytics, orchestration, automation and cloud security). Deep knowledge of TCP/IP, UDP, DNS, FTP, SSH, SSL/TLS and HTTP ...

Deputy General Manager - Cybersecurity - Products

Hiring Organisation
Tata Communications
Location
London, UK
Employment Type
Full-time
winning medium and large cybersecurity transformation programmes. Cyber Security DomainsThe candidate should have a broad understanding of enterprise cybersecurity technologies, including: Security OperationsSIEM, SOAR, UEBA, Threat Intelligence, Threat Hunting, Incident Response, XDR, MDRNetwork SecurityNext Generation Firewalls, WAF, SASE, DNS Security, DDoS, NDREndpoint & Identity SecurityEDR, Endpoint Protection, IAM, PAM, MFA, ZTNA ...

IT SOC Analyst

Location
United Kingdom
party security providers. Limiting business disruption from malicious activity by containing and eradicating malicious activity from information systems. Support the development of SIEM and SOAR solutions. Ensure all investigative activity is correctly documented in ticketing systems and followed up with the relevant support teams. Perform research on the latest security ...

IT SOC Analyst

Location
Lutterworth, England, United Kingdom
party security providers. Limiting business disruption from malicious activity by containing and eradicating malicious activity from information systems. Support the development of SIEM and SOAR solutions. Ensure all investigative activity is correctly documented in ticketing systems and followed up with the relevant support teams. Perform research on the latest security ...

Manager, Security Automation

Location
Greater London, England, United Kingdom
and domain expert, balancing hands‐on engineering contributions with strategic planning, partner engagement, and organisational leadership. Minimum Requirements Demonstrable experience designing, implementing, and supporting Security Orchestration, Automation and Response (SOAR) platforms and associated automation workflows. Experience mentoring, coaching, and developing engineers, fostering an inclusive, collaborative, and high‐performing team culture. ...

IT Infrastructure and Security Engineer · Colchester ·

Location
Colchester, England, United Kingdom
Conduct threat analysis to address new and emerging risks; deploy response strategies to mitigate vulnerabilities. Manage and optimise security tools, including Next-Gen SIEM, SOAR, EDR/MDR/XDR, and cloud security solutions (CASB, ZTNA, SASE). Lead cybersecurity audits, compliance initiatives, and certification efforts (Cyber Essentials ...

Head of Security Incident Management

Hiring Organisation
WPP
Location
London, UK
Employment Type
Full-time
modern incident response methodologies, operating models, and governance frameworks. Experience leading multidisciplinary cyber security teams in large, global organisations. Deep technical understanding of SIEM, SOAR, EDR/XDR, cloud security, identity security, email security, and digital forensics. Experience defining operational metrics, service management frameworks, and continual improvement programmes. Ability ...

Senior Security Operations Engineer New London

Location
Greater London, England, United Kingdom
purple team experience. Experience with CNAPP, CSPM or exposure management platforms. Experience with eBPF or modern observability tooling. Experience implementing security automation using SOAR or similar orchestration platforms. Knowledge of policy-as-code and security governance. Familiarity with supply chain security and software integrity. Experience evaluating AI/LLM security ...

L3 Security Analyst

Location
Newbury, England, United Kingdom
networking protocols, operating systems (Windows/Linux), and security technologies (SIEM, EDR, IDS/IPS, firewalls, proxies) Hands‐on experience with SIEM tuning and SOAR automation Familiarity with frameworks like MITRE ATT&CK and cyber kill chain Knowledge of cloud platforms (Azure, AWS, GoogleCloud) and scripting/programming skills Excellent ...

Advanced Cyber Defense Practice Lead

Location
Huntingdon, England, United Kingdom
Experience advising senior stakeholders, including CISOs and cyber defense leaders, on strategy, maturity, gaps, target‐state design, and actionable improvement roadmaps Experience with SIEM, SOAR, XDR, EDR, NDR, IAM, cloud security platforms, and enterprise security technologies Experience developing proposals, technical solution narratives, roadmaps, business cases, and client‐ready presentations Experience ...

Senior Application Engineer (SIEM)

Hiring Organisation
Hackajob Ltd
Location
Yeovil, Somerset, South West, United Kingdom
Employment Type
Permanent, Work From Home
Delivery within secure/enterprise/defence environments Desirable: Experience with SIEM/EDR/vulnerability management tools (e.g. Splunk, Trellix, Tenable, or similar) SOAR platforms and automation of security response workflows Integration with monitoring, alerting, and incident response systems Threat detection, analytics, and use case development Experience integrating with ...

Forward Deployed Implementation Engineer (EMEA)

Location
United Kingdom
pipelines Load and deploy existing TENEX content into customer environments - including parsers, dashboards, detections, and playbooks developed by the Security Solution Engineers - SIEM/SOAR Work from standardized playbooks to deliver MDR coverage within target SLOs Troubleshoot connectivity, ingestion, and configuration issues during deployment Enable customers through hands-on training ...

Senior Application Engineer (SIEM)

Location
Yeovil, England, United Kingdom
within secure/enterprise/defence environments## ## Desirable:* Experience with SIEM/EDR/vulnerability management tools (e.g. Splunk, Trellix, Tenable, or similar)* SOAR platforms and automation of security response workflows* Integration with monitoring, alerting, and incident response systems* Threat detection, analytics, and use case development* Experience integrating with ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Tewkesbury, Gloucestershire, South West, United Kingdom
Employment Type
Permanent, Work From Home
ideally have: Significant experience designing, building or deploying Security Operations Centre solutions . Experience with at least two of the following: SIEM SOAR EDR Vulnerability Management Threat Intelligence Strong understanding of SOC operating models, including people, process, policy, services and technology . Good understanding of common cyber threats and appropriate ...

Senior Consultant, Cybersecurity, Engineering, TC, UKI

Location
Greater London, England, United Kingdom
required). Ideally, You’ll Also Have Experience supporting security transformation or modernization programs. Familiarity with: SOC/MDR operating models SIEM/SOAR technologies MITRE ATT&CK. Awareness of modern access management such as PAM and ZTNA. Exposure to Microsoft security technologies such as: Microsoft Sentinel Microsoft Entra ...

Principal Security Design Consultant

Location
Greater London, England, United Kingdom
propositions and pre-sales activity. Primary responsibilities: soc architecture and Transformation: Lead discovery, current-state assessment and target-state design for SOC, SIEM, SOAR, EDR/XDR and protective monitoring engagements. Define monitoring strategies, target operating models, service boundaries, responsibilities, escalation paths, service levels and transition plans for client-operated … and third-party services. Develop detection and response architectures covering analytics rules, MITRE ATT&CK-aligned use cases, threat hunting, workbooks, watchlists, automation and SOAR playbooks. Design secure integrations with ITSM, CMDB, threat intelligence, vulnerability management, identity, network and incident response processes. Produce and own architecture artefacts including requirements, High ...

Lead Security Analyst

Location
United Kingdom
playbooks, runbooks, templates, or accelerators— back into a practice or community, rather than leaving knowledge within a single team Tools and practices Familiarity with SOAR tooling and automation of triage and enrichment workflows Experience working in Kanban‐led operating models, including managing triage queues, WIP limits, and class‐of‐service ...