• Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
  • Sign in
  • Sign up
  • Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

32 jobs found

Email me jobs like this
Refine Search
Current Search
ms sentinel engineer
Hays Technology
Cyber Security Analyst
Hays Technology Rogerstone, Gwent
Cyber Security Analyst Permanent - 42k - 47k + strong benefits Location: Hybrid - South Wales Your new company: I am looking to recruit a Cyber Security Analyst to join a leader in the utilities space. The business has been investing in their cyber security and IT estate and is continuing to grow and enhance their security posture. The company has a strong reputation, and we have placed numerous people into careers there, with strong feedback. The role responsibilities: This is an interesting opportunity where you will work with the cyber resilience team and assist with the Security Operations function, including EDR, SIEM, gathering security control framework evidence and general day-to-day assistance with security tasks. You will help deliver a strategy which will enhance the organisation's security resilience, proactively contributing to mitigating threats, at a good time when the company is expanding and investing in their IT and cyber security estate. Key parts of the role: You will require knowledge and understanding of attack and exploitation techniques and adversarial TTP's. Help to provide resilience to our threat monitoring and response capabilities. Handle security incident response with internal teams and other third parties to ensure that the incident response life cycle is undertaken to a high standard. Monitor and respond to security incidents, alerts and breaches Monitor and track remediation to all identified vulnerabilities Monitor the risks using security tooling to carry out routine checks. Monitor and report on user behavioural analysis such as awareness training and social engineering campaigns. Stay informed about emerging cyber threats and vulnerabilities. You will need: Good knowledge and understanding of SOC processes and procedures. Basic experience using SIEM systems such as MS Sentinel, LogRhythm, AlienVault, Splunk Good understanding of incident response stages and handling. Basic knowledge and experience using leading endpoint detection and threat management products and managing their operation. Good knowledge and awareness of global Information Security Standards, including ISO27002, CIS, NCSE CAF, NIST CSF. Ability to work independently and as part of a team. Excellent communication and interpersonal skills. Ability to obtain UK Security Clearance What you'll get in return: Salary of between 42k- 47k Hybrid working 2/3 days in South Wales per week Possible bonus 5% pension contribution from you, the company pays 10% Enhanced pay for parental leave And more! Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
Jul 29, 2026
Full time
Cyber Security Analyst Permanent - 42k - 47k + strong benefits Location: Hybrid - South Wales Your new company: I am looking to recruit a Cyber Security Analyst to join a leader in the utilities space. The business has been investing in their cyber security and IT estate and is continuing to grow and enhance their security posture. The company has a strong reputation, and we have placed numerous people into careers there, with strong feedback. The role responsibilities: This is an interesting opportunity where you will work with the cyber resilience team and assist with the Security Operations function, including EDR, SIEM, gathering security control framework evidence and general day-to-day assistance with security tasks. You will help deliver a strategy which will enhance the organisation's security resilience, proactively contributing to mitigating threats, at a good time when the company is expanding and investing in their IT and cyber security estate. Key parts of the role: You will require knowledge and understanding of attack and exploitation techniques and adversarial TTP's. Help to provide resilience to our threat monitoring and response capabilities. Handle security incident response with internal teams and other third parties to ensure that the incident response life cycle is undertaken to a high standard. Monitor and respond to security incidents, alerts and breaches Monitor and track remediation to all identified vulnerabilities Monitor the risks using security tooling to carry out routine checks. Monitor and report on user behavioural analysis such as awareness training and social engineering campaigns. Stay informed about emerging cyber threats and vulnerabilities. You will need: Good knowledge and understanding of SOC processes and procedures. Basic experience using SIEM systems such as MS Sentinel, LogRhythm, AlienVault, Splunk Good understanding of incident response stages and handling. Basic knowledge and experience using leading endpoint detection and threat management products and managing their operation. Good knowledge and awareness of global Information Security Standards, including ISO27002, CIS, NCSE CAF, NIST CSF. Ability to work independently and as part of a team. Excellent communication and interpersonal skills. Ability to obtain UK Security Clearance What you'll get in return: Salary of between 42k- 47k Hybrid working 2/3 days in South Wales per week Possible bonus 5% pension contribution from you, the company pays 10% Enhanced pay for parental leave And more! Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at (url removed)
JAM Recruitment Ltd
Cyber Security Architect
JAM Recruitment Ltd Penwortham, Lancashire
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
Jul 29, 2026
Contractor
Senior and Principal Security Architects 50- 90 per hour (Dependent on experience and level) - Inside IR35 12 month contracts Hybrid - 2/3 days a week on site - Warton (PR4) Applicants must have the right to work in the UK Successful applicants must be eligible for SC/DV clearance Role Purpose / Overview Highly experienced security architects with strong technical credentials across enterprise, cloud, network and classified environments. Responsible for designing end-to-end secure architectures (HLD/LLD), leading Design Authorities and Technical Design Authorities, and providing architectural assurance across multi-supplier programmes up to TOP SECRET / Above Secret classifications. Ensures Secure-by-Design principles are embedded from the outset across all programmes. Key Outcomes Security is consistently embedded into system design across all programmes Architectural decisions align with Secure-by-Design principles from the outset Complex, multi-partner and classified environments are designed securely and coherently Identity, cross-domain and data protection controls are defined at the architecture level Design Authority interactions are informed, structured and technically robust Key Responsibilities Design end-to-end secure architectures (HLD/LLD) Lead Design Authorities and Technical Design Authorities Ensure security is consistently embedded into system design across all programmes Align architectural decisions with Secure-by-Design principles from the outset Define identity, cross-domain and data protection controls at the architecture level Enable structured, technically robust Design Authority interactions Provide architectural assurance across complex, multi-partner and classified environments Technical Skills & Experience, a good mix of some or all of the following: Secure-by-Design (MOD SbD / NIST 800-53r5 / NIST CSF / CIS CSC v8.1) - design, maturity tracking and assurance across full programme lifecycles Enterprise & Cloud Security Architecture - AWS, Azure, GCP, Oracle Cloud (multi-cloud landing zones, hybrid identity, secure migration patterns) Classified Platform Design - OFFICIAL, OFFICIAL-SENSITIVE, SECRET and ABOVE SECRET environments, ROSA, Garrison, Citadel, VCF, Cross-Domain Solutions Zero Trust, IDAM & PKI - conditional access, hybrid identity, cryptography, HSMs, IAM, RBAC, OIDC, federation Threat Modelling - STRIDE / STRIDE-LM, attack-surface analysis, trust boundary modelling, design reviews Network & Boundary Security - Checkpoint, Palo Alto, Fortinet, Cisco, Juniper, F5, Zscaler, NSX-T, SD-WAN, encrypted WAN, DMZ, NAC ServiceNow & M365 Architecture - ITSM, ITOM, CSM, EAM, SharePoint Online, Purview, Entra, Sentinel, Defender, Power Platform, CoPilot Container & DevSecOps - Kubernetes (EKS, Tanzu), Terraform, Ansible, CI/CD security, image scanning, container hardening Architecture Frameworks - TOGAF, ArchiMate, SABSA, Zachman, MODAF, JSP standards, NCSC architectural patterns HLD / LLD authoring, Security Patterns, Reference Architectures, Bill of Materials, Crypto Plans and JSP-compliant documentation Design Authority leadership, Technical Security Boards, Gateway Reviews, multi-supplier governance Qualifications & Certifications CISSP (multiple holders), CISM, CCSP, OSCP, CEH TOGAF 9 / TOGAF 9.2, SABSA Foundation, Zachman, ITIL v3/v4 AWS Security Specialty, AWS Solutions Architect, AWS DevOps Pro, AWS Advanced Networking Azure Security Specialist (AZ-500), Azure Solutions Architect (AZ-303/304), Microsoft MCSE CCIE (), CCNP, CCDP, VCP, VCAP-NV, VCP-NV, Check Point CCSE/CCSA, PCNSE ISO 27001 Lead Auditor, ISO 27005 Prince2 Practitioner, MSP, Chartered Engineer (IET), MBCS CITP Government Clearances: SC, DV (active and historic), Five Eyes engagement
Reed Technology
Cyber Security Engineer
Reed Technology Immingham, Lincolnshire
Cyber Security Engineer - Cloud Security & Automation London or North Lincolnshire (Hybrid) 65,000 - 70,000 + Bonus We're supporting a growing organisation as they continue to invest in their Cyber Security capability. This is an exciting opportunity for a Cyber Security Engineer with experience in cloud security, automation and security operations . Working within a collaborative cyber team, you'll help secure cloud environments, enhance detection and response capabilities, and drive automation across security processes. We're particularly interested in individuals who enjoy solving problems through automation, have experience integrating tools and workflows, and are curious about emerging technologies such as AI and machine learning . If you're passionate about modern cyber security, cloud technologies and building smarter, more efficient security solutions, this role offers the opportunity to make a real impact. Key Responsibilities Design and implement security automation workflows to improve efficiency and response times. Develop scripts and integrations using Python, PowerShell and APIs. Manage and optimise security tooling including SIEM, EDR/XDR and monitoring platforms. Support the secure configuration and governance of Azure, AWS and Microsoft 365 environments. Collaborate with IT, Development and Security teams to deliver secure-by-design solutions. Enhance detection, threat monitoring and incident response capabilities. Support threat hunting, investigations and continuous security improvement initiatives. Contribute to the secure adoption of AI-enabled technologies and identify opportunities to leverage automation and machine learning within security operations. Monitor emerging threats and help implement appropriate security controls and safeguards. Skills & Experience Essential Good level of experience within Cyber Security, Security Engineering, Cloud Security or Security Operations. Strong cloud security knowledge across Azure, AWS and/or Microsoft 365. Experience with scripting and automation using Python, PowerShell or similar technologies. Hands-on experience managing and configuring security tooling such as SIEM, EDR/XDR, Microsoft Sentinel, Defender, Splunk or CrowdStrike. Experience integrating systems and workflows through APIs and automation frameworks. Strong communication and stakeholder management skills. Desirable SOC, threat hunting or detection engineering experience. Security orchestration and response automation experience. Microsoft security ecosystem expertise. Exposure to AI, Copilot, LLMs or machine learning technologies. Cloud or cyber security certifications. This is a fantastic opportunity to join a forward-thinking organisation where you'll help shape the future of security operations through cloud security, automation and emerging AI technologies. Whether you're a Cyber Security Engineer, Cloud Security Engineer, Security Automation Engineer, Detection Engineer or Security Operations Engineer , we'd love to hear from you. Apply now using the link provided.
Jul 29, 2026
Full time
Cyber Security Engineer - Cloud Security & Automation London or North Lincolnshire (Hybrid) 65,000 - 70,000 + Bonus We're supporting a growing organisation as they continue to invest in their Cyber Security capability. This is an exciting opportunity for a Cyber Security Engineer with experience in cloud security, automation and security operations . Working within a collaborative cyber team, you'll help secure cloud environments, enhance detection and response capabilities, and drive automation across security processes. We're particularly interested in individuals who enjoy solving problems through automation, have experience integrating tools and workflows, and are curious about emerging technologies such as AI and machine learning . If you're passionate about modern cyber security, cloud technologies and building smarter, more efficient security solutions, this role offers the opportunity to make a real impact. Key Responsibilities Design and implement security automation workflows to improve efficiency and response times. Develop scripts and integrations using Python, PowerShell and APIs. Manage and optimise security tooling including SIEM, EDR/XDR and monitoring platforms. Support the secure configuration and governance of Azure, AWS and Microsoft 365 environments. Collaborate with IT, Development and Security teams to deliver secure-by-design solutions. Enhance detection, threat monitoring and incident response capabilities. Support threat hunting, investigations and continuous security improvement initiatives. Contribute to the secure adoption of AI-enabled technologies and identify opportunities to leverage automation and machine learning within security operations. Monitor emerging threats and help implement appropriate security controls and safeguards. Skills & Experience Essential Good level of experience within Cyber Security, Security Engineering, Cloud Security or Security Operations. Strong cloud security knowledge across Azure, AWS and/or Microsoft 365. Experience with scripting and automation using Python, PowerShell or similar technologies. Hands-on experience managing and configuring security tooling such as SIEM, EDR/XDR, Microsoft Sentinel, Defender, Splunk or CrowdStrike. Experience integrating systems and workflows through APIs and automation frameworks. Strong communication and stakeholder management skills. Desirable SOC, threat hunting or detection engineering experience. Security orchestration and response automation experience. Microsoft security ecosystem expertise. Exposure to AI, Copilot, LLMs or machine learning technologies. Cloud or cyber security certifications. This is a fantastic opportunity to join a forward-thinking organisation where you'll help shape the future of security operations through cloud security, automation and emerging AI technologies. Whether you're a Cyber Security Engineer, Cloud Security Engineer, Security Automation Engineer, Detection Engineer or Security Operations Engineer , we'd love to hear from you. Apply now using the link provided.
Meritus
Infrastructure Engineer
Meritus
MERITUS are recruiting for an Infrastructure & Cloud Engineer to join a large Technology Consultancy, supporting secure hybrid infrastructure and Microsoft Azure environments across UK Government customers. INFRASTRUCTURE & CLOUD ENGINEER - Up to 65,000 - REMOTE (UK) - ACTIVE SC CLEARANCE REQUIRED We're looking for an experienced Infrastructure & Cloud Engineer with a strong Microsoft background to support and improve enterprise infrastructure across on-premise and Azure environments. This is a hands-on role offering the opportunity to work with modern cloud technologies, automation tools and Microsoft 365 services while supporting business-critical systems within a secure environment. Responsibilities: Support and maintain hybrid infrastructure across Microsoft Azure and on-premise environments. Resolve infrastructure incidents and deliver technical changes in line with change control processes. Administer Azure, Microsoft Entra ID, Active Directory and Microsoft 365 services. Develop automation using PowerShell, Terraform and Bicep. Monitor platform performance and support backup, resilience and disaster recovery solutions. Collaborate with project, service desk and operations teams to deliver reliable infrastructure services. Skills & Experience Essential: Active SC Clearance. Strong experience with Microsoft Azure and Windows Server infrastructure. Experience with Active Directory, Microsoft Entra ID and Microsoft 365. PowerShell scripting and automation experience. Knowledge of Terraform and/or Bicep. VMware and/or Hyper-V administration experience. Strong understanding of Azure security and hybrid infrastructure. Desirable: Azure DevOps and CI/CD. Azure Monitor, Defender for Cloud or Azure Sentinel. Veeam, Azure Backup or similar backup technologies. Experience within Defence, Government or other highly regulated environments. Benefits Up to 65,000 25 days holiday + bank holidays 5% matched pension Private Medical Insurance Remote & Flexible working options This is an excellent opportunity to join a collaborative team working with modern Microsoft cloud technologies across secure, enterprise-scale environments, with plenty of opportunity to develop your skills and contribute to major infrastructure initiatives.
Jul 29, 2026
Full time
MERITUS are recruiting for an Infrastructure & Cloud Engineer to join a large Technology Consultancy, supporting secure hybrid infrastructure and Microsoft Azure environments across UK Government customers. INFRASTRUCTURE & CLOUD ENGINEER - Up to 65,000 - REMOTE (UK) - ACTIVE SC CLEARANCE REQUIRED We're looking for an experienced Infrastructure & Cloud Engineer with a strong Microsoft background to support and improve enterprise infrastructure across on-premise and Azure environments. This is a hands-on role offering the opportunity to work with modern cloud technologies, automation tools and Microsoft 365 services while supporting business-critical systems within a secure environment. Responsibilities: Support and maintain hybrid infrastructure across Microsoft Azure and on-premise environments. Resolve infrastructure incidents and deliver technical changes in line with change control processes. Administer Azure, Microsoft Entra ID, Active Directory and Microsoft 365 services. Develop automation using PowerShell, Terraform and Bicep. Monitor platform performance and support backup, resilience and disaster recovery solutions. Collaborate with project, service desk and operations teams to deliver reliable infrastructure services. Skills & Experience Essential: Active SC Clearance. Strong experience with Microsoft Azure and Windows Server infrastructure. Experience with Active Directory, Microsoft Entra ID and Microsoft 365. PowerShell scripting and automation experience. Knowledge of Terraform and/or Bicep. VMware and/or Hyper-V administration experience. Strong understanding of Azure security and hybrid infrastructure. Desirable: Azure DevOps and CI/CD. Azure Monitor, Defender for Cloud or Azure Sentinel. Veeam, Azure Backup or similar backup technologies. Experience within Defence, Government or other highly regulated environments. Benefits Up to 65,000 25 days holiday + bank holidays 5% matched pension Private Medical Insurance Remote & Flexible working options This is an excellent opportunity to join a collaborative team working with modern Microsoft cloud technologies across secure, enterprise-scale environments, with plenty of opportunity to develop your skills and contribute to major infrastructure initiatives.
Precise Placements Ltd
Security Engineer (SIEM integration) - 6 Month Fixed-Term Contract
Precise Placements Ltd
Security Engineer (SIEM integration) - 6 Month Fixed-Term Contract We are a leading international professional services organisation with a strong global presence across Europe, the Americas, the Middle East and Asia. We provide specialist advisory services to multinational organisations, financial institutions and investment firms, operating within highly regulated environments. We are seeking an experienced Security Engineer (SIEM integration) to join our Information Security Operations team on a 6-month fixed-term contract. This role will play a key part in enhancing and maturing our security monitoring and detection capabilities. The Role As a Security Engineer, you will focus on strengthening and optimising our Security Information and Event Management (SIEM) platform. You will be responsible for onboarding new log sources, improving data pipelines, developing advanced detection use cases, and supporting incident response activities. This is an excellent opportunity for a security professional who enjoys building scalable, high-performing security monitoring environments and working in a collaborative, fast-paced setting. You will report to the Information Security Operations Manager and work closely with the wider security team and internal stakeholders to improve the organisation's overall security posture. Key Responsibilities SIEM Engineering & Optimisation Enhance and optimise the SIEM platform to improve performance, coverage, and detection accuracy Assess SIEM architecture and recommend improvements across ingestion, parsing, correlation, and storage Implement automation and orchestration (SOAR) to streamline security operations Log Source Onboarding & Integration Identify and onboard log sources across cloud, network, endpoint, identity, and application layers Develop custom parsers, connectors, and ingestion workflows Collaborate with internal teams and vendors to ensure high-quality telemetry Detection Engineering Design and implement detection use cases aligned to frameworks such as MITRE ATT&CK Build and tune correlation rules, alerts, dashboards, and anomaly detections Continuously improve detection quality and reduce false positives SOC & Incident Response Support Partner with SOC analysts to refine detection logic Support investigations through advanced SIEM querying and data analysis Provide subject matter expertise during complex security incidents Documentation & Governance Maintain clear documentation of SIEM architecture, data models, and detection logic Ensure alignment with internal policies, compliance requirements, and industry standards Skills & Experience Technical Expertise Strong hands-on experience with SIEM platforms (eg Splunk, Microsoft Sentinel, QRadar, Elastic, LogRhythm, ArcSight, Exabeam) Knowledge of log formats (JSON, syslog, XML, CEF) and ingestion methods (APIs, agents, Kafka, Event Hubs) Experience in detection engineering, threat modelling, and attacker behaviour analysis Familiarity with SOAR tools and automation workflows Security Knowledge Understanding of networks, Windows/Linux systems, cloud platforms (Azure, AWS, GCP), identity systems, and endpoint security tools Knowledge of frameworks such as MITRE ATT&CK and threat hunting methodologies Essential Requirements Degree (or equivalent experience) in a computing or related discipline Proven experience across IT infrastructure and information security Relevant certifications (eg GIAC, CISSP, SSCP, Microsoft SC-200/SC-100, CompTIA Security certifications) Strong Scripting skills (Python, PowerShell, or similar) Excellent communication skills with the ability to engage stakeholders at all levels Proactive, self-starting approach with strong problem-solving ability Desirable Experience Data Loss Prevention (DLP) Network security and secure remote access solutions Cloud and software-defined environments (SaaS, IaaS, PaaS, DaaS) Cyber threat intelligence and open-source intelligence tools Disaster recovery and business continuity planning Knowledge of data privacy regulations Additional Information Some out-of-hours work may be required for planned changes or security incidents Opportunity to contribute to strategic security initiatives and service improvements If you are a motivated Security Engineer looking to make a tangible impact within a global, highly regulated environment, we would love to hear from you.
Jul 29, 2026
Security Engineer (SIEM integration) - 6 Month Fixed-Term Contract We are a leading international professional services organisation with a strong global presence across Europe, the Americas, the Middle East and Asia. We provide specialist advisory services to multinational organisations, financial institutions and investment firms, operating within highly regulated environments. We are seeking an experienced Security Engineer (SIEM integration) to join our Information Security Operations team on a 6-month fixed-term contract. This role will play a key part in enhancing and maturing our security monitoring and detection capabilities. The Role As a Security Engineer, you will focus on strengthening and optimising our Security Information and Event Management (SIEM) platform. You will be responsible for onboarding new log sources, improving data pipelines, developing advanced detection use cases, and supporting incident response activities. This is an excellent opportunity for a security professional who enjoys building scalable, high-performing security monitoring environments and working in a collaborative, fast-paced setting. You will report to the Information Security Operations Manager and work closely with the wider security team and internal stakeholders to improve the organisation's overall security posture. Key Responsibilities SIEM Engineering & Optimisation Enhance and optimise the SIEM platform to improve performance, coverage, and detection accuracy Assess SIEM architecture and recommend improvements across ingestion, parsing, correlation, and storage Implement automation and orchestration (SOAR) to streamline security operations Log Source Onboarding & Integration Identify and onboard log sources across cloud, network, endpoint, identity, and application layers Develop custom parsers, connectors, and ingestion workflows Collaborate with internal teams and vendors to ensure high-quality telemetry Detection Engineering Design and implement detection use cases aligned to frameworks such as MITRE ATT&CK Build and tune correlation rules, alerts, dashboards, and anomaly detections Continuously improve detection quality and reduce false positives SOC & Incident Response Support Partner with SOC analysts to refine detection logic Support investigations through advanced SIEM querying and data analysis Provide subject matter expertise during complex security incidents Documentation & Governance Maintain clear documentation of SIEM architecture, data models, and detection logic Ensure alignment with internal policies, compliance requirements, and industry standards Skills & Experience Technical Expertise Strong hands-on experience with SIEM platforms (eg Splunk, Microsoft Sentinel, QRadar, Elastic, LogRhythm, ArcSight, Exabeam) Knowledge of log formats (JSON, syslog, XML, CEF) and ingestion methods (APIs, agents, Kafka, Event Hubs) Experience in detection engineering, threat modelling, and attacker behaviour analysis Familiarity with SOAR tools and automation workflows Security Knowledge Understanding of networks, Windows/Linux systems, cloud platforms (Azure, AWS, GCP), identity systems, and endpoint security tools Knowledge of frameworks such as MITRE ATT&CK and threat hunting methodologies Essential Requirements Degree (or equivalent experience) in a computing or related discipline Proven experience across IT infrastructure and information security Relevant certifications (eg GIAC, CISSP, SSCP, Microsoft SC-200/SC-100, CompTIA Security certifications) Strong Scripting skills (Python, PowerShell, or similar) Excellent communication skills with the ability to engage stakeholders at all levels Proactive, self-starting approach with strong problem-solving ability Desirable Experience Data Loss Prevention (DLP) Network security and secure remote access solutions Cloud and software-defined environments (SaaS, IaaS, PaaS, DaaS) Cyber threat intelligence and open-source intelligence tools Disaster recovery and business continuity planning Knowledge of data privacy regulations Additional Information Some out-of-hours work may be required for planned changes or security incidents Opportunity to contribute to strategic security initiatives and service improvements If you are a motivated Security Engineer looking to make a tangible impact within a global, highly regulated environment, we would love to hear from you.
Vallum
Senior GCP APIGEE Engineer
Vallum Leeds, Yorkshire
The Role: Senior GCP APIGEE Engineer Location: Bristol, Leeds, Halifax, Manchester, Edinburgh, UK Position Type: Contract Inside IR35 Implementation Partner - TCS/LBG Remote work option Available: 2 Days Onsite Job Description: Your responsibilities: Hands-on development and management of Google Apigee API Management Platform . Design, build, and deploy API proxies , policies, and configurations in Apigee. Implement CI/CD pipelines for API life cycle management using tools like Jenkins, GitHub Actions, or Harness. Develop and maintain API security policies (OAuth, JWT, mTLS, rate limiting, threat protection). Automate Apigee deployments and configurations using Infrastructure as Code (IaC) principles. Integrate Apigee with GCP services (Cloud Functions, Pub/Sub, BigQuery, etc.) for end-to-end solutions. Build automated workflows and scripts for API operations using Python . Manage API analytics, monitoring, and logging for performance and compliance. Enforce GCP Organization Policies and API governance standards for secure and compliant API ecosystems. Collaborate with DevOps teams to implement containerized Apigee components and manage deployments on Google Kubernetes Engine (GKE) . Optimize API performance and scalability through caching, quota management, and traffic routing. Support migration of Legacy APIs into Apigee and standardize reusable templates for API development. Essential skills/knowledge/experience: Strong hands-on experience with Google Apigee API Management. Expertise in CI/CD pipelines and DevOps practices for API deployments. Python Scripting for automation and workflow orchestration. Familiarity with Terraform/Terraform Cloud for IaC (good to have). Experience with Jenkins, GitHub, Harness for pipeline automation. Knowledge of Google Kubernetes (GKE) and container orchestration. Understanding of API security standards and policy-as-code (OPA/Sentinel). GCP Certified (preferably Apigee Certified API Engineer). Good to have: Experience with IDE platforms for API development (eg, Backstage).
Jul 29, 2026
Contractor
The Role: Senior GCP APIGEE Engineer Location: Bristol, Leeds, Halifax, Manchester, Edinburgh, UK Position Type: Contract Inside IR35 Implementation Partner - TCS/LBG Remote work option Available: 2 Days Onsite Job Description: Your responsibilities: Hands-on development and management of Google Apigee API Management Platform . Design, build, and deploy API proxies , policies, and configurations in Apigee. Implement CI/CD pipelines for API life cycle management using tools like Jenkins, GitHub Actions, or Harness. Develop and maintain API security policies (OAuth, JWT, mTLS, rate limiting, threat protection). Automate Apigee deployments and configurations using Infrastructure as Code (IaC) principles. Integrate Apigee with GCP services (Cloud Functions, Pub/Sub, BigQuery, etc.) for end-to-end solutions. Build automated workflows and scripts for API operations using Python . Manage API analytics, monitoring, and logging for performance and compliance. Enforce GCP Organization Policies and API governance standards for secure and compliant API ecosystems. Collaborate with DevOps teams to implement containerized Apigee components and manage deployments on Google Kubernetes Engine (GKE) . Optimize API performance and scalability through caching, quota management, and traffic routing. Support migration of Legacy APIs into Apigee and standardize reusable templates for API development. Essential skills/knowledge/experience: Strong hands-on experience with Google Apigee API Management. Expertise in CI/CD pipelines and DevOps practices for API deployments. Python Scripting for automation and workflow orchestration. Familiarity with Terraform/Terraform Cloud for IaC (good to have). Experience with Jenkins, GitHub, Harness for pipeline automation. Knowledge of Google Kubernetes (GKE) and container orchestration. Understanding of API security standards and policy-as-code (OPA/Sentinel). GCP Certified (preferably Apigee Certified API Engineer). Good to have: Experience with IDE platforms for API development (eg, Backstage).
TEKsystems
Cyber Security Engineer
TEKsystems Leeds, Yorkshire
Cyber Security Engineer Job Description This is a hands-on Cyber Security Engineer role within a dedicated cyber security function for our end client based in city centre Leeds. You will play a key role in cyber security operations, threat detection, incident response and continuous improvement across cloud, endpoint, identity and data platforms. The position combines deep technical work with the opportunity to influence secure solution design and strengthen security controls. This is a hybrid opportunity requiring 3 days per week in the Leeds office, so candidates must be willing and able to commute weekly. Responsibilities Support the day-to-day cyber security operations, including security monitoring, threat detection and incident response activities. Investigate and respond to security incidents. Engineer and support the Microsoft Sentinel estate, improving visibility, alert quality and overall response capability. Monitor and assess threat vectors. Work effectively with the Security Operations Centre (SOC)/MDR provider to support monitoring and continuous service improvement. Support the investigation of complex or high-severity incidents, escalating appropriately and focusing on mitigating advanced and AI-driven attack methods. Contribute to continuous improvement in detection engineering, response playbooks and automation, ensuring processes remain effective and up to date. Drive effective use of Microsoft security tooling, including Sentinel and Security Copilot. Essential Skills Minimum of 4 years' true engineering experience in cyber security operations, incident response or threat detection roles. Strong hands-on experience working within a cyber security, security operations or incident response function. Proven experience using Microsoft Sentinel in a production environment, including detection engineering and alert tuning. Knowledge of Microsoft Security Copilot. experience managing or working closely with an outsourced SOC or MDR provider. Strong understanding of modern threat vectors, including ransomware, identity-based attacks and cloud misconfiguration. experience in cloud security, particularly across Microsoft Azure environments. Strong understanding of detection engineering, alert tuning and investigation workflows, including the development and maintenance of incident response processes and playbooks. Good understanding of security frameworks, controls and governance practices Location Leeds, UK Rate/Salary .00 GBP Yearly Trading as TEKsystems. Allegis Group Limited, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at our website. To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go our website. We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice on our website for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.
Jul 29, 2026
Full time
Cyber Security Engineer Job Description This is a hands-on Cyber Security Engineer role within a dedicated cyber security function for our end client based in city centre Leeds. You will play a key role in cyber security operations, threat detection, incident response and continuous improvement across cloud, endpoint, identity and data platforms. The position combines deep technical work with the opportunity to influence secure solution design and strengthen security controls. This is a hybrid opportunity requiring 3 days per week in the Leeds office, so candidates must be willing and able to commute weekly. Responsibilities Support the day-to-day cyber security operations, including security monitoring, threat detection and incident response activities. Investigate and respond to security incidents. Engineer and support the Microsoft Sentinel estate, improving visibility, alert quality and overall response capability. Monitor and assess threat vectors. Work effectively with the Security Operations Centre (SOC)/MDR provider to support monitoring and continuous service improvement. Support the investigation of complex or high-severity incidents, escalating appropriately and focusing on mitigating advanced and AI-driven attack methods. Contribute to continuous improvement in detection engineering, response playbooks and automation, ensuring processes remain effective and up to date. Drive effective use of Microsoft security tooling, including Sentinel and Security Copilot. Essential Skills Minimum of 4 years' true engineering experience in cyber security operations, incident response or threat detection roles. Strong hands-on experience working within a cyber security, security operations or incident response function. Proven experience using Microsoft Sentinel in a production environment, including detection engineering and alert tuning. Knowledge of Microsoft Security Copilot. experience managing or working closely with an outsourced SOC or MDR provider. Strong understanding of modern threat vectors, including ransomware, identity-based attacks and cloud misconfiguration. experience in cloud security, particularly across Microsoft Azure environments. Strong understanding of detection engineering, alert tuning and investigation workflows, including the development and maintenance of incident response processes and playbooks. Good understanding of security frameworks, controls and governance practices Location Leeds, UK Rate/Salary .00 GBP Yearly Trading as TEKsystems. Allegis Group Limited, Bracknell, RG12 1RT, United Kingdom. No Allegis Group Limited operates as an Employment Business and Employment Agency as set out in the Conduct of Employment Agencies and Employment Businesses Regulations 2003. TEKsystems is a company within the Allegis Group network of companies (collectively referred to as "Allegis Group"). Aerotek, Aston Carter, EASi, Talentis Solutions, TEKsystems, Stamford Consultants and The Stamford Group are Allegis Group brands. If you apply, your personal data will be processed as described in the Allegis Group Online Privacy Notice available at our website. To access our Online Privacy Notice, which explains what information we may collect, use, share, and store about you, and describes your rights and choices about this, please go our website. We are part of a global network of companies and as a result, the personal data you provide will be shared within Allegis Group and transferred and processed outside the UK, Switzerland and European Economic Area subject to the protections described in the Allegis Group Online Privacy Notice. We store personal data in the UK, EEA, Switzerland and the USA. If you would like to exercise your privacy rights, please visit the "Contacting Us" section of our Online Privacy Notice on our website for details on how to contact us. To protect your privacy and security, we may take steps to verify your identity, such as a password and user ID if there is an account associated with your request, or identifying information such as your address or date of birth, before proceeding with your request. commitments under the UK Data Protection Act, EU-U.S. Privacy Shield or the Swiss-U.S. Privacy Shield.
GCS
Cyber Security Engineer (OUTSIDE IR35)
GCS Brixton, Devon
Cyber Security Engineer - Microsoft 365 & Azure 6-Month Contract Outside IR35 (Apply online only) per day Remote (UK) 1-2 Days per Month On-Site (South West London) A leading public sector organisation is looking for a Cyber Security Engineer to support a major cyber security improvement programme. Working alongside the Cyber Security, Infrastructure and Platform teams, you'll help deliver a range of security enhancements across Microsoft 365, Azure and AWS, strengthening the organisation's overall security posture while improving identity, endpoint, cloud and data protection capabilities. This is a fantastic opportunity for someone who enjoys hands-on engineering and wants to be involved in delivering meaningful security improvements across a large enterprise environment. Key Responsibilities Deliver security improvement projects across Microsoft 365, Azure and AWS. Implement and enhance security controls across identity, endpoint, cloud and data protection. Configure and support Microsoft Intune, Microsoft Defender, Microsoft Purview and related Microsoft security technologies. Assist with SIEM configuration, alert tuning and security monitoring. Support Identity & Access Management improvements, including MFA, Conditional Access and Microsoft Entra ID. Work closely with Infrastructure, Platform and Service Desk teams to plan and implement security changes. Assist with vulnerability management and endpoint security improvements. Support cloud security initiatives across Azure and AWS. Produce clear technical documentation and operational handover documentation. Work collaboratively with internal technical teams to ensure successful delivery of security initiatives. Essential Experience We're looking for someone with experience across several of the following areas: Experience working as a Cyber Security Engineer within an enterprise environment. Good knowledge of Microsoft 365 and Azure security. Experience with Microsoft Intune and Microsoft Defender. Understanding of Identity & Access Management, including Microsoft Entra ID, MFA and Conditional Access. Experience supporting or configuring SIEM platforms (Microsoft Sentinel or similar). Knowledge of endpoint security and vulnerability management. Experience working within Azure and/or AWS environments. Basic PowerShell scripting skills. Experience delivering technical projects and working with multiple technology teams. Strong communication skills with the ability to produce clear technical documentation. Desirable Experience Experience in any of the following would be beneficial but is not essential: Microsoft Purview, DLP or Information Protection. Zscaler (ZIA/ZPA). AWS Security. Infrastructure-as-Code (Terraform, Bicep or ARM Templates). Experience within the UK Public Sector or another regulated environment. Knowledge of UK GDPR, PSN or PCI DSS. Contract Details Role: Cyber Security Engineer - Microsoft 365 & Azure Contract: 6 Months Day Rate: (Apply online only) per day IR35 Status: Outside IR35 Location: Remote (UK) Travel: 1-2 days per month on-site in South West London Start Date: ASAP This is an excellent opportunity to join a high-profile cyber security programme, working on modern Microsoft security technologies within a collaborative team while enjoying the flexibility of a predominantly remote contract. GCS is acting as an Employment Business in relation to this vacancy.
Jul 29, 2026
Contractor
Cyber Security Engineer - Microsoft 365 & Azure 6-Month Contract Outside IR35 (Apply online only) per day Remote (UK) 1-2 Days per Month On-Site (South West London) A leading public sector organisation is looking for a Cyber Security Engineer to support a major cyber security improvement programme. Working alongside the Cyber Security, Infrastructure and Platform teams, you'll help deliver a range of security enhancements across Microsoft 365, Azure and AWS, strengthening the organisation's overall security posture while improving identity, endpoint, cloud and data protection capabilities. This is a fantastic opportunity for someone who enjoys hands-on engineering and wants to be involved in delivering meaningful security improvements across a large enterprise environment. Key Responsibilities Deliver security improvement projects across Microsoft 365, Azure and AWS. Implement and enhance security controls across identity, endpoint, cloud and data protection. Configure and support Microsoft Intune, Microsoft Defender, Microsoft Purview and related Microsoft security technologies. Assist with SIEM configuration, alert tuning and security monitoring. Support Identity & Access Management improvements, including MFA, Conditional Access and Microsoft Entra ID. Work closely with Infrastructure, Platform and Service Desk teams to plan and implement security changes. Assist with vulnerability management and endpoint security improvements. Support cloud security initiatives across Azure and AWS. Produce clear technical documentation and operational handover documentation. Work collaboratively with internal technical teams to ensure successful delivery of security initiatives. Essential Experience We're looking for someone with experience across several of the following areas: Experience working as a Cyber Security Engineer within an enterprise environment. Good knowledge of Microsoft 365 and Azure security. Experience with Microsoft Intune and Microsoft Defender. Understanding of Identity & Access Management, including Microsoft Entra ID, MFA and Conditional Access. Experience supporting or configuring SIEM platforms (Microsoft Sentinel or similar). Knowledge of endpoint security and vulnerability management. Experience working within Azure and/or AWS environments. Basic PowerShell scripting skills. Experience delivering technical projects and working with multiple technology teams. Strong communication skills with the ability to produce clear technical documentation. Desirable Experience Experience in any of the following would be beneficial but is not essential: Microsoft Purview, DLP or Information Protection. Zscaler (ZIA/ZPA). AWS Security. Infrastructure-as-Code (Terraform, Bicep or ARM Templates). Experience within the UK Public Sector or another regulated environment. Knowledge of UK GDPR, PSN or PCI DSS. Contract Details Role: Cyber Security Engineer - Microsoft 365 & Azure Contract: 6 Months Day Rate: (Apply online only) per day IR35 Status: Outside IR35 Location: Remote (UK) Travel: 1-2 days per month on-site in South West London Start Date: ASAP This is an excellent opportunity to join a high-profile cyber security programme, working on modern Microsoft security technologies within a collaborative team while enjoying the flexibility of a predominantly remote contract. GCS is acting as an Employment Business in relation to this vacancy.
Reed Technology
Senior Cyber Consultant
Reed Technology
Senior Cyber Consultant 65,000 + 15k Bonus Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ATT&CK and threat detection methodologies Azure security and cloud telemetry exposure Previous consultancy or customer-facing experience What's on Offer 65,000 base salary Annual Bonus Predominantly remote working No on-call requirement Exposure to enterprise-scale cyber security projects Strong development and progression opportunities Ideal for: Detection Engineers, SIEM Engineers, Senior SOC Analysts, Security Automation Engineers, SOC Consultants, and Cyber Security Engineers seeking a consultancy-focused role.
Jul 29, 2026
Full time
Senior Cyber Consultant 65,000 + 15k Bonus Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ATT&CK and threat detection methodologies Azure security and cloud telemetry exposure Previous consultancy or customer-facing experience What's on Offer 65,000 base salary Annual Bonus Predominantly remote working No on-call requirement Exposure to enterprise-scale cyber security projects Strong development and progression opportunities Ideal for: Detection Engineers, SIEM Engineers, Senior SOC Analysts, Security Automation Engineers, SOC Consultants, and Cyber Security Engineers seeking a consultancy-focused role.
ARM
Asset Engineer (E&P)
ARM
Asset Engineer (E&P) - Fixed Plant & Contact Systems Location: Stratford, London (Hybrid) Contract: 8 Months (Extension Possible) Rate: 410- 520 per day (Inside IR35) Requirement: PTS & Sentinel Card We're looking for an experienced Asset Engineer (E&P) to support the development of long-term asset strategies and investment plans for fixed plant and traction power infrastructure. Key responsibilities: Develop E&P asset strategies and investment plans. Support renewal, refurbishment and enhancement programmes. Assess asset condition and provide engineering recommendations. Produce technical reports, business cases and asset management plans. Work closely with engineering, maintenance and project teams. Essential experience: Asset engineering, maintenance or asset management background. Knowledge of Electrification & Plant (E&P) assets. Experience with fixed plant, contact systems, OLE, traction power or similar infrastructure. Strong analytical, reporting and stakeholder management skills. Rail industry experience is desirable. This is an excellent opportunity to work on major infrastructure programmes within a collaborative hybrid environment, with the potential for contract extension. We can only consider applications from candidates who are eligible to work in the UK. For more information, please contact Marika Powell at ARM. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Jul 29, 2026
Contractor
Asset Engineer (E&P) - Fixed Plant & Contact Systems Location: Stratford, London (Hybrid) Contract: 8 Months (Extension Possible) Rate: 410- 520 per day (Inside IR35) Requirement: PTS & Sentinel Card We're looking for an experienced Asset Engineer (E&P) to support the development of long-term asset strategies and investment plans for fixed plant and traction power infrastructure. Key responsibilities: Develop E&P asset strategies and investment plans. Support renewal, refurbishment and enhancement programmes. Assess asset condition and provide engineering recommendations. Produce technical reports, business cases and asset management plans. Work closely with engineering, maintenance and project teams. Essential experience: Asset engineering, maintenance or asset management background. Knowledge of Electrification & Plant (E&P) assets. Experience with fixed plant, contact systems, OLE, traction power or similar infrastructure. Strong analytical, reporting and stakeholder management skills. Rail industry experience is desirable. This is an excellent opportunity to work on major infrastructure programmes within a collaborative hybrid environment, with the potential for contract extension. We can only consider applications from candidates who are eligible to work in the UK. For more information, please contact Marika Powell at ARM. Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission. Where the role is marked as Outside IR35 in the advertisement this is subject to receipt of a final Status Determination Statement from the end Client and may be subject to change.
Claranet
Senior Security Engineer (Team Lead)
Claranet City, Leeds
The Role The Senior Security Engineer (Team Leader) is responsible for leading a dedicated security engineering team, combining hands-on platform engineering with technical leadership and people management. You will own security platform architecture, act as the primary escalation point for complex issues, and ensure platforms remain secure, resilient, and compliant within a regulated environment. Key Responsibilities Act as technical lead for security engineering and platform architecture Serve as primary escalation point for complex and major incidents Provide technical leadership and mentoring to engineers and analysts Line manage and develop the security engineering and analyst teams Own platform maintenance, configuration, and lifecycle management Ensure security platforms are integrated across hybrid environments Oversee patching, upgrades, and platform performance Drive platform improvements and engineering enhancements Support detection engineering, tuning, and platform optimisation Lead automation and SOAR initiatives to improve efficiency Collaborate with SOC providers on SIEM governance and data ingestion Ensure platforms meet regulatory and compliance requirements Maintain engineering documentation, standards, and governance Represent engineering in client governance and audit activities Coordinate cross-team resolution of complex technical issues Experience & Knowledge Essential: Significant experience in security engineering and platform management Strong leadership experience managing technical teams Deep knowledge of Microsoft Defender and SIEM platforms (e.g. Sentinel) Experience in hybrid cloud and on-prem environments Strong understanding of security architecture and frameworks Experience in regulated environments (e.g. financial services) Strong stakeholder and client engagement skills Experience with automation and scripting (PowerShell, Python, etc.) Desirable: Experience with vulnerability and exposure management tools Knowledge of security frameworks (NIST, ISO 27001, CIS) Relevant security certifications (e.g. CISSP, AZ-500, SC-100)
Jul 28, 2026
Full time
The Role The Senior Security Engineer (Team Leader) is responsible for leading a dedicated security engineering team, combining hands-on platform engineering with technical leadership and people management. You will own security platform architecture, act as the primary escalation point for complex issues, and ensure platforms remain secure, resilient, and compliant within a regulated environment. Key Responsibilities Act as technical lead for security engineering and platform architecture Serve as primary escalation point for complex and major incidents Provide technical leadership and mentoring to engineers and analysts Line manage and develop the security engineering and analyst teams Own platform maintenance, configuration, and lifecycle management Ensure security platforms are integrated across hybrid environments Oversee patching, upgrades, and platform performance Drive platform improvements and engineering enhancements Support detection engineering, tuning, and platform optimisation Lead automation and SOAR initiatives to improve efficiency Collaborate with SOC providers on SIEM governance and data ingestion Ensure platforms meet regulatory and compliance requirements Maintain engineering documentation, standards, and governance Represent engineering in client governance and audit activities Coordinate cross-team resolution of complex technical issues Experience & Knowledge Essential: Significant experience in security engineering and platform management Strong leadership experience managing technical teams Deep knowledge of Microsoft Defender and SIEM platforms (e.g. Sentinel) Experience in hybrid cloud and on-prem environments Strong understanding of security architecture and frameworks Experience in regulated environments (e.g. financial services) Strong stakeholder and client engagement skills Experience with automation and scripting (PowerShell, Python, etc.) Desirable: Experience with vulnerability and exposure management tools Knowledge of security frameworks (NIST, ISO 27001, CIS) Relevant security certifications (e.g. CISSP, AZ-500, SC-100)
Opus Recruitment Solutions
Sentinel Engineer
Opus Recruitment Solutions
Role: Sentinel Engineer Type: Contract (Inside IR35) Duration: 6 months Location: Remote Overview We are seeking an experienced Microsoft Sentinel Engineer with a strong cyber security background to support the delivery, optimisation, and ongoing development of a large-scale Microsoft security environment. The successful candidate will play a key role in enhancing security monitoring, threat detection, automation, and SIEM capabilities, whilst helping drive security improvements across cloud and hybrid platforms. This role is ideally suited to a hands-on Security Engineer with proven experience implementing and managing Microsoft Sentinel, delivering SIEM migrations, and working across the wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy platforms into Microsoft Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . Develop automation and orchestration playbooks using Azure Logic Apps. Work with Microsoft Defender technologies to improve threat detection and response. Build dashboards, workbooks and reporting capabilities for operational and management teams. Support Security Operations teams with incident response, threat hunting and security investigations. Tune detections and reduce false positives whilst improving overall visibility and coverage. Implement security best practices aligned to industry frameworks and standards. Collaborate with internal and third-party stakeholders across security, infrastructure and cloud teams. Essential Skills & Experience Technical Skills Microsoft Sentinel SIEM Migration Experience Log Analytics Azure Monitor Microsoft Defender XDR Microsoft Defender for Endpoint Microsoft Defender for Cloud Microsoft 365 Security Kusto Query Language (KQL) Azure Logic Apps Azure Lighthouse Experience Minimum 5 years' experience within Cyber Security, Security Engineering, SOC, SIEM Engineering or related disciplines. Strong understanding of SIEM, SOAR, threat detection and incident response. Demonstrable experience designing and implementing Microsoft Sentinel solutions. Experience developing detection rules, use cases and security monitoring capabilities. Strong threat hunting and security investigation experience. Knowledge of MITRE ATT&CK and modern security operations practices. Experience working within enterprise-scale Azure and Microsoft security environments. Desirable Skills QRadar Devo SentinelOne Mimecast Check Point Qualys Azure Networking Terraform PowerShell Python GitHub Azure DevOps ServiceNow Azure RBAC Azure Monitor Agent (AMA) Data Collection Rules (DCR) Syslog CEF Windows Event Logging Linux Logging REST APIs Candidate Profile The ideal candidate will be a proactive and technically strong Security Engineer who combines deep Microsoft Sentinel expertise with a broad understanding of cyber security operations. You will be comfortable working in a fast-paced environment, engaging with stakeholders at all levels, and driving improvements across monitoring, detection, automation and incident response capabilities.
Jul 28, 2026
Contractor
Role: Sentinel Engineer Type: Contract (Inside IR35) Duration: 6 months Location: Remote Overview We are seeking an experienced Microsoft Sentinel Engineer with a strong cyber security background to support the delivery, optimisation, and ongoing development of a large-scale Microsoft security environment. The successful candidate will play a key role in enhancing security monitoring, threat detection, automation, and SIEM capabilities, whilst helping drive security improvements across cloud and hybrid platforms. This role is ideally suited to a hands-on Security Engineer with proven experience implementing and managing Microsoft Sentinel, delivering SIEM migrations, and working across the wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy platforms into Microsoft Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . Develop automation and orchestration playbooks using Azure Logic Apps. Work with Microsoft Defender technologies to improve threat detection and response. Build dashboards, workbooks and reporting capabilities for operational and management teams. Support Security Operations teams with incident response, threat hunting and security investigations. Tune detections and reduce false positives whilst improving overall visibility and coverage. Implement security best practices aligned to industry frameworks and standards. Collaborate with internal and third-party stakeholders across security, infrastructure and cloud teams. Essential Skills & Experience Technical Skills Microsoft Sentinel SIEM Migration Experience Log Analytics Azure Monitor Microsoft Defender XDR Microsoft Defender for Endpoint Microsoft Defender for Cloud Microsoft 365 Security Kusto Query Language (KQL) Azure Logic Apps Azure Lighthouse Experience Minimum 5 years' experience within Cyber Security, Security Engineering, SOC, SIEM Engineering or related disciplines. Strong understanding of SIEM, SOAR, threat detection and incident response. Demonstrable experience designing and implementing Microsoft Sentinel solutions. Experience developing detection rules, use cases and security monitoring capabilities. Strong threat hunting and security investigation experience. Knowledge of MITRE ATT&CK and modern security operations practices. Experience working within enterprise-scale Azure and Microsoft security environments. Desirable Skills QRadar Devo SentinelOne Mimecast Check Point Qualys Azure Networking Terraform PowerShell Python GitHub Azure DevOps ServiceNow Azure RBAC Azure Monitor Agent (AMA) Data Collection Rules (DCR) Syslog CEF Windows Event Logging Linux Logging REST APIs Candidate Profile The ideal candidate will be a proactive and technically strong Security Engineer who combines deep Microsoft Sentinel expertise with a broad understanding of cyber security operations. You will be comfortable working in a fast-paced environment, engaging with stakeholders at all levels, and driving improvements across monitoring, detection, automation and incident response capabilities.
Intec Select Ltd
Senior Infrastructure Engineer
Intec Select Ltd City, London
Senior Infrastructure Engineer 80,000 - 100,000 London (4 Days Onsite) Global Brand Overview We are seeking a highly motivated Senior Infrastructure Engineer to join our growing IT team in a modern, cloud-first environment. This role is responsible for the design, implementation, support, and optimisation of both Azure cloud and on-premises infrastructure services, ensuring the availability, security, scalability, and performance of critical business systems. Working across Microsoft Azure, Microsoft 365, Windows Server, and endpoint management technologies, you will play a key role in delivering infrastructure improvements, supporting business growth, and driving technical best practices. This is an excellent opportunity for an experienced infrastructure professional looking to work with the latest Microsoft technologies while contributing to strategic technology initiatives. Role & Responsibilities Design, deploy, and support Azure infrastructure and services Manage Entra ID, Microsoft 365, Intune, and endpoint security Administer Windows Server, Active Directory, DNS, DHCP, and Group Policy Support backup, disaster recovery, and business continuity solutions Automate infrastructure using PowerShell, Terraform, or Bicep Monitor platform health and security using Azure monitoring tools Provide technical leadership, documentation, and project support Skills & Experience Infrastructure, Systems, or Cloud Engineering Strong Azure administration experience Windows Server and Active Directory expertise Microsoft 365 and Intune administration experience PowerShell scripting and automation skills Good understanding of networking (TCP/IP, DNS, DHCP, VPNs, Routing) Excellent troubleshooting and stakeholder management skills Desirable Azure certifications (AZ-104, AZ-305, SC-300) Terraform, Bicep, or Infrastructure as Code experience Microsoft Sentinel, Defender Suite, or security framework knowledge Experience in regulated or financial services environments Package 80,000 - 100,000 + annual bonus Hybrid working & flexible hours 25 days holiday + bank holidays Private medical insurance & life assurance Enhanced pension contribution Senior Infrastructure Engineer 80,000 - 100,000 London (4 Days Onsite) Global Brand
Jul 28, 2026
Full time
Senior Infrastructure Engineer 80,000 - 100,000 London (4 Days Onsite) Global Brand Overview We are seeking a highly motivated Senior Infrastructure Engineer to join our growing IT team in a modern, cloud-first environment. This role is responsible for the design, implementation, support, and optimisation of both Azure cloud and on-premises infrastructure services, ensuring the availability, security, scalability, and performance of critical business systems. Working across Microsoft Azure, Microsoft 365, Windows Server, and endpoint management technologies, you will play a key role in delivering infrastructure improvements, supporting business growth, and driving technical best practices. This is an excellent opportunity for an experienced infrastructure professional looking to work with the latest Microsoft technologies while contributing to strategic technology initiatives. Role & Responsibilities Design, deploy, and support Azure infrastructure and services Manage Entra ID, Microsoft 365, Intune, and endpoint security Administer Windows Server, Active Directory, DNS, DHCP, and Group Policy Support backup, disaster recovery, and business continuity solutions Automate infrastructure using PowerShell, Terraform, or Bicep Monitor platform health and security using Azure monitoring tools Provide technical leadership, documentation, and project support Skills & Experience Infrastructure, Systems, or Cloud Engineering Strong Azure administration experience Windows Server and Active Directory expertise Microsoft 365 and Intune administration experience PowerShell scripting and automation skills Good understanding of networking (TCP/IP, DNS, DHCP, VPNs, Routing) Excellent troubleshooting and stakeholder management skills Desirable Azure certifications (AZ-104, AZ-305, SC-300) Terraform, Bicep, or Infrastructure as Code experience Microsoft Sentinel, Defender Suite, or security framework knowledge Experience in regulated or financial services environments Package 80,000 - 100,000 + annual bonus Hybrid working & flexible hours 25 days holiday + bank holidays Private medical insurance & life assurance Enhanced pension contribution Senior Infrastructure Engineer 80,000 - 100,000 London (4 Days Onsite) Global Brand
Morson Edge
Electrical Administrator
Morson Edge
Electrical Administrator (Rail) Maximo Experience Essential Location: West London Job Type: 3-6 months Salary: £180 - £220 LTD - depending on experience Monday - Friday - 8.30am - 17.30 We are looking for an experienced Electrical Administrator to support the delivery of electrical maintenance and project activities across the rail network. The successful candidate will be required to triage and gather information on open Emergency Maintenance, Planned Maintenance and Corrective Maintenance and close where required. Also Project documentation, with a strong focus on using the Maximo asset management system. This is an excellent opportunity for an organised and detail-oriented individual, with strong data entry experience and as well as triage and have a good understanding of electrical maintenance administration would be a advantage. Key Responsibilities • To triage and gather information on open Emergency Maintenance, Planned Maintenance and Corrective Maintenance and close where required legacy works that have been completed and ascertain remaining on Maximo. • Administer and manage work orders using the IBM Maximo Asset Management System • Raise, update, and close maintenance work orders within agreed timescales. • Maintain accurate electrical asset records, maintenance history, and compliance documentation. • Support the planning and scheduling of electrical maintenance activities. • Ensure all documentation is completed and stored in line with client and Network Rail requirements. • Produce reports from Maximo to monitor work progress, outstanding tasks, and KPIs. • Assist with the management of inspection, testing, and certification records. • Coordinate with engineers, supervisors, planners, and project managers to ensure accurate data capture. • Process purchase orders, material requests, and supplier documentation where required. • Support audits by maintaining accurate and up-to-date records. • Provide general administrative support to the Electrical Delivery Team. Requirements • Experience supporting electrical maintenance or engineering teams. • Previous administration experience within the rail industry would be ideal but not essential. • Electrical background would be an advantage for this role. • Proven experience using IBM Maximo for work order and asset management. • Strong knowledge of Microsoft Office, particularly Excel, Word, and Outlook. • Excellent organisational and time management skills. • High level of accuracy and attention to detail. • Ability to work under pressure and manage multiple priorities. • Knowledge of Network Rail standards and compliance processes would be an advantage. • Sentinel sponsorship but not essential. .
Jul 28, 2026
Contractor
Electrical Administrator (Rail) Maximo Experience Essential Location: West London Job Type: 3-6 months Salary: £180 - £220 LTD - depending on experience Monday - Friday - 8.30am - 17.30 We are looking for an experienced Electrical Administrator to support the delivery of electrical maintenance and project activities across the rail network. The successful candidate will be required to triage and gather information on open Emergency Maintenance, Planned Maintenance and Corrective Maintenance and close where required. Also Project documentation, with a strong focus on using the Maximo asset management system. This is an excellent opportunity for an organised and detail-oriented individual, with strong data entry experience and as well as triage and have a good understanding of electrical maintenance administration would be a advantage. Key Responsibilities • To triage and gather information on open Emergency Maintenance, Planned Maintenance and Corrective Maintenance and close where required legacy works that have been completed and ascertain remaining on Maximo. • Administer and manage work orders using the IBM Maximo Asset Management System • Raise, update, and close maintenance work orders within agreed timescales. • Maintain accurate electrical asset records, maintenance history, and compliance documentation. • Support the planning and scheduling of electrical maintenance activities. • Ensure all documentation is completed and stored in line with client and Network Rail requirements. • Produce reports from Maximo to monitor work progress, outstanding tasks, and KPIs. • Assist with the management of inspection, testing, and certification records. • Coordinate with engineers, supervisors, planners, and project managers to ensure accurate data capture. • Process purchase orders, material requests, and supplier documentation where required. • Support audits by maintaining accurate and up-to-date records. • Provide general administrative support to the Electrical Delivery Team. Requirements • Experience supporting electrical maintenance or engineering teams. • Previous administration experience within the rail industry would be ideal but not essential. • Electrical background would be an advantage for this role. • Proven experience using IBM Maximo for work order and asset management. • Strong knowledge of Microsoft Office, particularly Excel, Word, and Outlook. • Excellent organisational and time management skills. • High level of accuracy and attention to detail. • Ability to work under pressure and manage multiple priorities. • Knowledge of Network Rail standards and compliance processes would be an advantage. • Sentinel sponsorship but not essential. .
Square One Resources
Splunk SIEM Engineer
Square One Resources Manchester, Lancashire
Splunk SIEM Engineer Location: Manchester ( 3 days on site ) Contract Duration: Until 30 November 2026 IR35 Status: Inside IR35 Day Rate: 500-550 Start Date: 11/08/2026 About the Role We are seeking an experienced Splunk SIEM Engineer to join a leading organisation within the Financial Services sector. You will be responsible for designing, developing, administering, and enhancing enterprise SIEM capabilities while working across modern security technologies including Splunk Enterprise Security, Splunk Cloud, Microsoft Sentinel, and Cribl Stream. This is an exciting opportunity to work within a large-scale enterprise environment, helping improve threat detection, security monitoring, automation, and incident response capabilities. Essential Experience Bachelor's degree (minimum qualification). Strong experience administering and developing Splunk Enterprise . Extensive experience with Splunk Enterprise Security (ES) , including: Administering, managing, and maintaining SIEM environments. Developing SIEM use cases and correlation searches. Strong understanding of Splunk Data Models . Hands-on experience with Splunk Cloud . Hands-on experience with Microsoft Sentinel . Experience with Cribl Stream , including log ingestion, data routing, transformation, parsing, and data normalisation. Experience working in enterprise Security Operations environments, including threat detection, incident response, and security event analysis. Experience with SOAR platforms, playbook development, and security automation. Good understanding of network security, including Firewalls, proxies, network architecture, and common attack vectors. Excellent technical documentation and communication skills. Desirable Skills AWS and Azure cloud security. Containerised environments and SaaS security solutions. Python, PowerShell, SPL, KQL, and SQL. EDR, UBA, CASB, CSPM, vulnerability assessment, and threat intelligence platforms. CI/CD tools such as GitLab and Jenkins. Infrastructure as Code using Chef or Ansible. Knowledge of SOX, PCI-DSS, and GDPR. Incident response and digital forensics experience. Preferred Certifications CISSP GCIH GCFA Splunk Certified Architect Microsoft Sentinel Interested? If this opportunity is of interest, we'd love to hear from you. If this role isn't quite the right fit but you know someone who may be suitable, please feel free to share this opportunity with them.
Jul 28, 2026
Contractor
Splunk SIEM Engineer Location: Manchester ( 3 days on site ) Contract Duration: Until 30 November 2026 IR35 Status: Inside IR35 Day Rate: 500-550 Start Date: 11/08/2026 About the Role We are seeking an experienced Splunk SIEM Engineer to join a leading organisation within the Financial Services sector. You will be responsible for designing, developing, administering, and enhancing enterprise SIEM capabilities while working across modern security technologies including Splunk Enterprise Security, Splunk Cloud, Microsoft Sentinel, and Cribl Stream. This is an exciting opportunity to work within a large-scale enterprise environment, helping improve threat detection, security monitoring, automation, and incident response capabilities. Essential Experience Bachelor's degree (minimum qualification). Strong experience administering and developing Splunk Enterprise . Extensive experience with Splunk Enterprise Security (ES) , including: Administering, managing, and maintaining SIEM environments. Developing SIEM use cases and correlation searches. Strong understanding of Splunk Data Models . Hands-on experience with Splunk Cloud . Hands-on experience with Microsoft Sentinel . Experience with Cribl Stream , including log ingestion, data routing, transformation, parsing, and data normalisation. Experience working in enterprise Security Operations environments, including threat detection, incident response, and security event analysis. Experience with SOAR platforms, playbook development, and security automation. Good understanding of network security, including Firewalls, proxies, network architecture, and common attack vectors. Excellent technical documentation and communication skills. Desirable Skills AWS and Azure cloud security. Containerised environments and SaaS security solutions. Python, PowerShell, SPL, KQL, and SQL. EDR, UBA, CASB, CSPM, vulnerability assessment, and threat intelligence platforms. CI/CD tools such as GitLab and Jenkins. Infrastructure as Code using Chef or Ansible. Knowledge of SOX, PCI-DSS, and GDPR. Incident response and digital forensics experience. Preferred Certifications CISSP GCIH GCFA Splunk Certified Architect Microsoft Sentinel Interested? If this opportunity is of interest, we'd love to hear from you. If this role isn't quite the right fit but you know someone who may be suitable, please feel free to share this opportunity with them.
Square One Resources
Splunk SIEM Engineer
Square One Resources Manchester, Lancashire
Splunk SIEM Engineer Location: Manchester ( 3 days on site ) Contract Duration: Until 30 November 2026 IR35 Status: Inside IR35 Day Rate: 500-550 Start Date: 11/08/2026 About the Role We are seeking an experienced Splunk SIEM Engineer to join a leading organisation within the Financial Services sector. You will be responsible for designing, developing, administering, and enhancing enterprise SIEM capabilities while working across modern security technologies including Splunk Enterprise Security, Splunk Cloud, Microsoft Sentinel, and Cribl Stream. This is an exciting opportunity to work within a large-scale enterprise environment, helping improve threat detection, security monitoring, automation, and incident response capabilities. Essential Experience Strong experience administering and developing Splunk Enterprise . Extensive experience with Splunk Enterprise Security (ES) , including: Administering, managing, and maintaining SIEM environments. Developing SIEM use cases and correlation searches. Strong understanding of Splunk Data Models . Hands-on experience with Splunk Cloud . Hands-on experience with Microsoft Sentinel . Experience with Cribl Stream , including log ingestion, data routing, transformation, parsing, and data normalisation. Experience working in enterprise Security Operations environments, including threat detection, incident response, and security event analysis. Experience with SOAR platforms, playbook development, and security automation. Good understanding of network security, including Firewalls, proxies, network architecture, and common attack vectors. Excellent technical documentation and communication skills. Desirable Skills AWS and Azure cloud security. Containerised environments and SaaS security solutions. Python, PowerShell, SPL, KQL, and SQL. EDR, UBA, CASB, CSPM, vulnerability assessment, and threat intelligence platforms. CI/CD tools such as GitLab and Jenkins. Infrastructure as Code using Chef or Ansible. Knowledge of SOX, PCI-DSS, and GDPR. Incident response and digital forensics experience. Preferred Certifications Bachelor's degree. CISSP GCIH GCFA Splunk Certified Architect Microsoft Sentinel Interested? If this opportunity is of interest, we'd love to hear from you. Send your CV or any questions If this role isn't quite the right fit but you know someone who may be suitable, please feel free to share this opportunity with them.
Jul 28, 2026
Contractor
Splunk SIEM Engineer Location: Manchester ( 3 days on site ) Contract Duration: Until 30 November 2026 IR35 Status: Inside IR35 Day Rate: 500-550 Start Date: 11/08/2026 About the Role We are seeking an experienced Splunk SIEM Engineer to join a leading organisation within the Financial Services sector. You will be responsible for designing, developing, administering, and enhancing enterprise SIEM capabilities while working across modern security technologies including Splunk Enterprise Security, Splunk Cloud, Microsoft Sentinel, and Cribl Stream. This is an exciting opportunity to work within a large-scale enterprise environment, helping improve threat detection, security monitoring, automation, and incident response capabilities. Essential Experience Strong experience administering and developing Splunk Enterprise . Extensive experience with Splunk Enterprise Security (ES) , including: Administering, managing, and maintaining SIEM environments. Developing SIEM use cases and correlation searches. Strong understanding of Splunk Data Models . Hands-on experience with Splunk Cloud . Hands-on experience with Microsoft Sentinel . Experience with Cribl Stream , including log ingestion, data routing, transformation, parsing, and data normalisation. Experience working in enterprise Security Operations environments, including threat detection, incident response, and security event analysis. Experience with SOAR platforms, playbook development, and security automation. Good understanding of network security, including Firewalls, proxies, network architecture, and common attack vectors. Excellent technical documentation and communication skills. Desirable Skills AWS and Azure cloud security. Containerised environments and SaaS security solutions. Python, PowerShell, SPL, KQL, and SQL. EDR, UBA, CASB, CSPM, vulnerability assessment, and threat intelligence platforms. CI/CD tools such as GitLab and Jenkins. Infrastructure as Code using Chef or Ansible. Knowledge of SOX, PCI-DSS, and GDPR. Incident response and digital forensics experience. Preferred Certifications Bachelor's degree. CISSP GCIH GCFA Splunk Certified Architect Microsoft Sentinel Interested? If this opportunity is of interest, we'd love to hear from you. Send your CV or any questions If this role isn't quite the right fit but you know someone who may be suitable, please feel free to share this opportunity with them.
Additional Resources
Threat Detection Engineer - Hybrid / Remote
Additional Resources City Of Westminster, London
Join a well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you ll focus on building high-impact detection capabilities, shaping how security protects sensitive genomic and AI-driven data at scale. This role offers hybrid / remote working options, a salary range of £60,000 - £80,000 and benefits. Why This Role is Exciting High autonomy: Lead projects from idea to deployment Innovation-driven: Develop cutting-edge detections beyond standard SIEM rules Collaborative: Work closely with internal teams and an outsourced SOC partner Mission-focused: Protect critical healthcare data that supports precision medicine Key Responsibilities Design and develop threat-led detections using threat intelligence and threat-hunting outputs Create novel analytic techniques for incident detection Collaborate with an MSP SOC to maintain and tune the detection catalogue Build automated reporting dashboards using Microsoft Sentinel workbooks Support security initiatives including ISO 27001 activities and KQL-based tasks Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems Contribute to documentation of processes, tools, and detection logic What You ll Bring Must-Have Skills & Experience: Previously worked as a Threat Detection Engineer or in a similar role. Strong proficiency in KQL and hands-on experience with Microsoft Sentinel Familiarity with Microsoft Defender tools (Endpoint & O365) Exposure to Azure cloud logging and Kubernetes environments Knowledge of attacker TTPs and MITRE ATT&CK frameworks Proactive, collaborative, and innovative mindset Desirable / Nice-to-Have: Experience with Python, Terraform, or CI/CD pipelines Familiarity with Microsoft Purview, Entra ID, DLP, or Insider Risk tools Understanding of ISO 27001, Agile ways of working Knowledge of statistics, data science, or AI/ML applied to cybersecurity Relevant certifications (MS-500, AZ-500, SC-series, Security+, GSOC, CCSK) Perks & Benefits Hybrid / remote working options Flexible benefits package Opportunity to innovate and make a real impact in threat detection Work in a small, fast-paced, highly collaborative team Contribute to advancing precision healthcare using genomic data and AI Ready to build next-generation threat detection and protect life-changing data Apply today! Important Information: We endeavour to process your personal data in a fair and transparent manner. In applying for this role, Additional Resources will be acting in your best interest and may contact you in relation to the role, either by email, phone, or text message. For more information see our Privacy Policy on our website. It is important you are aware of your individual rights and the provisions the company has put in place to protect your data. If you would like further information on the policy or GDPR please contact us. Additional Resources Ltd is an Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Employment Businesses Regulations 2003.
Jul 27, 2026
Full time
Join a well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you ll focus on building high-impact detection capabilities, shaping how security protects sensitive genomic and AI-driven data at scale. This role offers hybrid / remote working options, a salary range of £60,000 - £80,000 and benefits. Why This Role is Exciting High autonomy: Lead projects from idea to deployment Innovation-driven: Develop cutting-edge detections beyond standard SIEM rules Collaborative: Work closely with internal teams and an outsourced SOC partner Mission-focused: Protect critical healthcare data that supports precision medicine Key Responsibilities Design and develop threat-led detections using threat intelligence and threat-hunting outputs Create novel analytic techniques for incident detection Collaborate with an MSP SOC to maintain and tune the detection catalogue Build automated reporting dashboards using Microsoft Sentinel workbooks Support security initiatives including ISO 27001 activities and KQL-based tasks Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems Contribute to documentation of processes, tools, and detection logic What You ll Bring Must-Have Skills & Experience: Previously worked as a Threat Detection Engineer or in a similar role. Strong proficiency in KQL and hands-on experience with Microsoft Sentinel Familiarity with Microsoft Defender tools (Endpoint & O365) Exposure to Azure cloud logging and Kubernetes environments Knowledge of attacker TTPs and MITRE ATT&CK frameworks Proactive, collaborative, and innovative mindset Desirable / Nice-to-Have: Experience with Python, Terraform, or CI/CD pipelines Familiarity with Microsoft Purview, Entra ID, DLP, or Insider Risk tools Understanding of ISO 27001, Agile ways of working Knowledge of statistics, data science, or AI/ML applied to cybersecurity Relevant certifications (MS-500, AZ-500, SC-series, Security+, GSOC, CCSK) Perks & Benefits Hybrid / remote working options Flexible benefits package Opportunity to innovate and make a real impact in threat detection Work in a small, fast-paced, highly collaborative team Contribute to advancing precision healthcare using genomic data and AI Ready to build next-generation threat detection and protect life-changing data Apply today! Important Information: We endeavour to process your personal data in a fair and transparent manner. In applying for this role, Additional Resources will be acting in your best interest and may contact you in relation to the role, either by email, phone, or text message. For more information see our Privacy Policy on our website. It is important you are aware of your individual rights and the provisions the company has put in place to protect your data. If you would like further information on the policy or GDPR please contact us. Additional Resources Ltd is an Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Employment Businesses Regulations 2003.
83Zero Ltd
GCP Cloud Architect (Banking Domain)
83Zero Ltd City, London
GCP Cloud Architect (Banking) Location: London (Hybrid - 1-2 days per week in the office) Salary: 90,000 - 100,000 + Bonus + Excellent Benefits We're partnering with a leading global technology consultancy that's continuing to invest heavily in its Cloud Engineering and Financial Services practice. As part of this growth, we're looking for an experienced GCP Cloud Architect to join a team delivering large-scale cloud transformation programmes for major banking clients. This is an opportunity to work on complex, enterprise-scale cloud platforms, helping to design secure, scalable, and automated cloud environments that support critical banking services. You'll collaborate with architects, engineers, platform teams, and business stakeholders to define cloud strategy and implement best practices across modern cloud-native environments. What you'll be doing You'll lead the design and delivery of cloud architecture solutions across Google Cloud Platform, while also leveraging Azure where required. You'll be responsible for designing enterprise Landing Zones, developing Infrastructure as Code solutions, establishing cloud governance standards, and supporting the adoption of modern DevOps practices. Working within highly regulated financial services environments, you'll help shape cloud strategy, improve platform resilience, and ensure solutions meet security, compliance, and operational requirements. What we're looking for We're looking for someone with proven experience designing enterprise cloud solutions on Google Cloud Platform (GCP) , alongside strong Azure knowledge. You'll have hands-on experience with Kubernetes , particularly Google Kubernetes Engine (GKE) and Azure Kubernetes Service (AKS) , and be confident designing scalable, production-grade container platforms. You'll have strong expertise in Terraform and Terraform Cloud , using Infrastructure as Code to automate cloud deployments and platform provisioning. Experience working with CI/CD tools such as Jenkins, GitHub Actions, or Harness , together with Python for automation and scripting, is essential. You'll also have a solid understanding of cloud governance, policy-as-code frameworks such as OPA or Sentinel , and enterprise security best practices within regulated environments. Experience with developer platforms such as Backstage would be advantageous. Preferred Certifications Google Professional Cloud Architect Microsoft Azure Solutions Architect Expert Certified Kubernetes Administrator (CKA) or equivalent Kubernetes certification What's on offer You'll join one of the world's leading technology consultancies, working on high-profile cloud transformation programmes for some of the UK's largest banking organisations. If you're passionate about enterprise cloud architecture and want to play a key role in shaping the future of cloud within financial services, we'd love to hear from you.
Jul 27, 2026
Full time
GCP Cloud Architect (Banking) Location: London (Hybrid - 1-2 days per week in the office) Salary: 90,000 - 100,000 + Bonus + Excellent Benefits We're partnering with a leading global technology consultancy that's continuing to invest heavily in its Cloud Engineering and Financial Services practice. As part of this growth, we're looking for an experienced GCP Cloud Architect to join a team delivering large-scale cloud transformation programmes for major banking clients. This is an opportunity to work on complex, enterprise-scale cloud platforms, helping to design secure, scalable, and automated cloud environments that support critical banking services. You'll collaborate with architects, engineers, platform teams, and business stakeholders to define cloud strategy and implement best practices across modern cloud-native environments. What you'll be doing You'll lead the design and delivery of cloud architecture solutions across Google Cloud Platform, while also leveraging Azure where required. You'll be responsible for designing enterprise Landing Zones, developing Infrastructure as Code solutions, establishing cloud governance standards, and supporting the adoption of modern DevOps practices. Working within highly regulated financial services environments, you'll help shape cloud strategy, improve platform resilience, and ensure solutions meet security, compliance, and operational requirements. What we're looking for We're looking for someone with proven experience designing enterprise cloud solutions on Google Cloud Platform (GCP) , alongside strong Azure knowledge. You'll have hands-on experience with Kubernetes , particularly Google Kubernetes Engine (GKE) and Azure Kubernetes Service (AKS) , and be confident designing scalable, production-grade container platforms. You'll have strong expertise in Terraform and Terraform Cloud , using Infrastructure as Code to automate cloud deployments and platform provisioning. Experience working with CI/CD tools such as Jenkins, GitHub Actions, or Harness , together with Python for automation and scripting, is essential. You'll also have a solid understanding of cloud governance, policy-as-code frameworks such as OPA or Sentinel , and enterprise security best practices within regulated environments. Experience with developer platforms such as Backstage would be advantageous. Preferred Certifications Google Professional Cloud Architect Microsoft Azure Solutions Architect Expert Certified Kubernetes Administrator (CKA) or equivalent Kubernetes certification What's on offer You'll join one of the world's leading technology consultancies, working on high-profile cloud transformation programmes for some of the UK's largest banking organisations. If you're passionate about enterprise cloud architecture and want to play a key role in shaping the future of cloud within financial services, we'd love to hear from you.
83Zero Ltd
GCP Cloud Architect (Banking Domain)
83Zero Ltd City, London
GCP Cloud Architect (Banking) Location: London (Hybrid - 1-2 days per week in the office) Salary: £90,000 - £100,000 + Bonus + Excellent Benefits We're partnering with a leading global technology consultancy that's continuing to invest heavily in its Cloud Engineering and Financial Services practice. As part of this growth, we're looking for an experienced GCP Cloud Architect to join a team delivering large-scale cloud transformation programmes for major banking clients. This is an opportunity to work on complex, enterprise-scale cloud platforms, helping to design secure, scalable, and automated cloud environments that support critical banking services. You'll collaborate with architects, engineers, platform teams, and business stakeholders to define cloud strategy and implement best practices across modern cloud-native environments. What you'll be doing You'll lead the design and delivery of cloud architecture solutions across Google Cloud Platform, while also leveraging Azure where required. You'll be responsible for designing enterprise Landing Zones, developing Infrastructure as Code solutions, establishing cloud governance standards, and supporting the adoption of modern DevOps practices. Working within highly regulated financial services environments, you'll help shape cloud strategy, improve platform resilience, and ensure solutions meet security, compliance, and operational requirements. What we're looking for We're looking for someone with proven experience designing enterprise cloud solutions on Google Cloud Platform (GCP) , alongside strong Azure knowledge. You'll have hands-on experience with Kubernetes , particularly Google Kubernetes Engine (GKE) and Azure Kubernetes Service (AKS) , and be confident designing scalable, production-grade container platforms. You'll have strong expertise in Terraform and Terraform Cloud , using Infrastructure as Code to automate cloud deployments and platform provisioning. Experience working with CI/CD tools such as Jenkins, GitHub Actions, or Harness , together with Python for automation and Scripting, is essential. You'll also have a solid understanding of cloud governance, policy-as-code frameworks such as OPA or Sentinel , and enterprise security best practices within regulated environments. Experience with developer platforms such as Backstage would be advantageous. Preferred Certifications Google Professional Cloud Architect Microsoft Azure Solutions Architect Expert Certified Kubernetes Administrator (CKA) or equivalent Kubernetes certification What's on offer You'll join one of the world's leading technology consultancies, working on high-profile cloud transformation programmes for some of the UK's largest banking organisations. If you're passionate about enterprise cloud architecture and want to play a key role in shaping the future of cloud within financial services, we'd love to hear from you.
Jul 27, 2026
Full time
GCP Cloud Architect (Banking) Location: London (Hybrid - 1-2 days per week in the office) Salary: £90,000 - £100,000 + Bonus + Excellent Benefits We're partnering with a leading global technology consultancy that's continuing to invest heavily in its Cloud Engineering and Financial Services practice. As part of this growth, we're looking for an experienced GCP Cloud Architect to join a team delivering large-scale cloud transformation programmes for major banking clients. This is an opportunity to work on complex, enterprise-scale cloud platforms, helping to design secure, scalable, and automated cloud environments that support critical banking services. You'll collaborate with architects, engineers, platform teams, and business stakeholders to define cloud strategy and implement best practices across modern cloud-native environments. What you'll be doing You'll lead the design and delivery of cloud architecture solutions across Google Cloud Platform, while also leveraging Azure where required. You'll be responsible for designing enterprise Landing Zones, developing Infrastructure as Code solutions, establishing cloud governance standards, and supporting the adoption of modern DevOps practices. Working within highly regulated financial services environments, you'll help shape cloud strategy, improve platform resilience, and ensure solutions meet security, compliance, and operational requirements. What we're looking for We're looking for someone with proven experience designing enterprise cloud solutions on Google Cloud Platform (GCP) , alongside strong Azure knowledge. You'll have hands-on experience with Kubernetes , particularly Google Kubernetes Engine (GKE) and Azure Kubernetes Service (AKS) , and be confident designing scalable, production-grade container platforms. You'll have strong expertise in Terraform and Terraform Cloud , using Infrastructure as Code to automate cloud deployments and platform provisioning. Experience working with CI/CD tools such as Jenkins, GitHub Actions, or Harness , together with Python for automation and Scripting, is essential. You'll also have a solid understanding of cloud governance, policy-as-code frameworks such as OPA or Sentinel , and enterprise security best practices within regulated environments. Experience with developer platforms such as Backstage would be advantageous. Preferred Certifications Google Professional Cloud Architect Microsoft Azure Solutions Architect Expert Certified Kubernetes Administrator (CKA) or equivalent Kubernetes certification What's on offer You'll join one of the world's leading technology consultancies, working on high-profile cloud transformation programmes for some of the UK's largest banking organisations. If you're passionate about enterprise cloud architecture and want to play a key role in shaping the future of cloud within financial services, we'd love to hear from you.
Fynity
Senior Security Analyst
Fynity City, Leeds
Senior Security Analyst Leeds Hybrid Working Microsoft Security Defender XDR Sentinel KQL I'm working with an exciting new client looking to add several experienced Senior Security Analysts to a high-performing SOC team supporting a regulated enterprise environment. This is a genuinely hands-on SOC role where you'll own security incidents from detection through to resolution while also driving proactive threat hunting, vulnerability management and continuous security improvements. Hybrid Working on Shift. Office: Monday, Wednesday & Friday (Leeds) Home: Tuesday, Thursday, nights, weekends & bank holidays What you'll be doing Investigating and responding to complex cyber security incidents Threat hunting across Microsoft Defender XDR and Microsoft Sentinel Using KQL to investigate alerts and identify root cause Working closely with Infrastructure, Cloud and Security Engineering teams Running proactive security activities, including vulnerability scanning and security validation Improving detection rules and strengthening the overall security posture What we're looking for Strong commercial experience with Microsoft Defender XDR Strong experience using Microsoft Sentinel Excellent KQL query writing and investigation skills Proven experience within a SOC or Security Operations environment Experience handling incidents from investigation through to remediation Knowledge of hybrid Microsoft environments (Azure & on-prem) Ability to work independently and make sound technical decisions Nice to have Experience in a SOC covering regulated industries such as Financial Services, Government or Critical National Infrastructure Vulnerability Management (Qualys) Microsoft SC-200 or other recognised security certifications Please note: Candidates must be eligible to obtain SC and/or NPPV3 clearance If you're an experienced SOC Analyst looking for your next challenge working with Microsoft Defender XDR, Sentinel and KQL, this could be for you.
Jul 25, 2026
Full time
Senior Security Analyst Leeds Hybrid Working Microsoft Security Defender XDR Sentinel KQL I'm working with an exciting new client looking to add several experienced Senior Security Analysts to a high-performing SOC team supporting a regulated enterprise environment. This is a genuinely hands-on SOC role where you'll own security incidents from detection through to resolution while also driving proactive threat hunting, vulnerability management and continuous security improvements. Hybrid Working on Shift. Office: Monday, Wednesday & Friday (Leeds) Home: Tuesday, Thursday, nights, weekends & bank holidays What you'll be doing Investigating and responding to complex cyber security incidents Threat hunting across Microsoft Defender XDR and Microsoft Sentinel Using KQL to investigate alerts and identify root cause Working closely with Infrastructure, Cloud and Security Engineering teams Running proactive security activities, including vulnerability scanning and security validation Improving detection rules and strengthening the overall security posture What we're looking for Strong commercial experience with Microsoft Defender XDR Strong experience using Microsoft Sentinel Excellent KQL query writing and investigation skills Proven experience within a SOC or Security Operations environment Experience handling incidents from investigation through to remediation Knowledge of hybrid Microsoft environments (Azure & on-prem) Ability to work independently and make sound technical decisions Nice to have Experience in a SOC covering regulated industries such as Financial Services, Government or Critical National Infrastructure Vulnerability Management (Qualys) Microsoft SC-200 or other recognised security certifications Please note: Candidates must be eligible to obtain SC and/or NPPV3 clearance If you're an experienced SOC Analyst looking for your next challenge working with Microsoft Defender XDR, Sentinel and KQL, this could be for you.

Modal Window

  • Blog
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Instagram
  • Pinterest
  • Youtube
Parent and Partner sites: IT Job Board | Search Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | London Jobs | Property jobs
© 2008-2026 Jobs Hiring Near Me