• Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
  • Sign in
  • Sign up
  • Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

7 jobs found

Email me jobs like this
Refine Search
Current Search
splunk siem engineer
ALOIS TECHNOLOGIES LIMITED
Interim Cyber Security Officer
ALOIS TECHNOLOGIES LIMITED
Job Description Job Title Interim Cyber Security Officer (Senior Cyber Security Engineer) Contract Details Contract Length: 6 Months Start Date: March 2026 Location: London (Hybrid/On-site as required) IR35 Status: Inside IR35 Daily Rate: Up to 500 per day (Umbrella) Overview We are seeking an experienced Senior Cyber Security Engineer to join a Cyber Security team on an interim contract. This role will provide senior technical expertise to support and optimise an outsourced Security Operations Centre (SOC), ensuring the organisation maximises its investment in security technologies while strengthening its cyber defence capabilities. The successful candidate will have extensive hands-on experience with CrowdStrike Falcon and Splunk Enterprise Security , with the ability to enhance security monitoring, improve incident response processes, support threat hunting activities, and mentor internal team members. Key Responsibilities Lead the deployment, configuration, administration, and ongoing optimisation of the CrowdStrike Falcon platform, ensuring endpoint security policies are effectively implemented and maintained. Work closely with the outsourced Security Operations Centre to develop and enhance Splunk dashboards, alerts, data models, and monitoring capabilities, enabling the identification and investigation of sophisticated cyber threats. Act as the senior technical escalation point for complex and high-priority cyber security incidents, utilising Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) technologies to support rapid investigation, containment, and remediation. Design, develop, and improve Security Orchestration, Automation and Response (SOAR) workflows to reduce manual effort, improve operational efficiency, and accelerate incident response. Conduct proactive threat hunting activities using advanced search techniques and security telemetry to identify malicious activity that may have evaded automated detection. Support vulnerability assessment activities and contribute to security testing initiatives, including exposure to penetration testing and web application security assessments. Develop and maintain cyber security policies, standards, and technical documentation to support governance and operational best practice. Provide technical guidance, mentoring, and knowledge transfer to existing cyber security team members, strengthening internal capability across CrowdStrike, Splunk, and security operations. Collaborate with internal stakeholders and external partners to continuously improve cyber security monitoring, detection, and response capabilities. Maintain awareness of emerging cyber threats, vulnerabilities, and industry best practices to ensure security controls remain effective and up to date. Essential Requirements Applicants must have a minimum of five years' experience working in a dedicated Cyber Security Engineering or SOC Tier 3 environment. Extensive hands-on experience administering and supporting CrowdStrike Falcon , including Falcon Prevent, Falcon Insight, and Falcon Discover, is essential. Strong experience working with Splunk Enterprise Security , including writing complex Search Processing Language (SPL) queries, developing dashboards, alerts, reports, and managing security data. Experience supporting Security Operations Centres, incident response, endpoint detection and response, security monitoring, and threat hunting activities. Excellent understanding of network protocols, cyber attack methodologies, security monitoring techniques, and the MITRE ATT&CK Framework . Good knowledge of cloud security principles across Microsoft Azure and/or AWS environments. Strong analytical, troubleshooting, communication, and stakeholder management skills with the ability to work independently and manage multiple priorities. Desirable Experience performing vulnerability assessments using recognised vulnerability management tools. Exposure to penetration testing and web application security testing. Experience creating and maintaining cyber security policies, standards, and governance documentation. Professional cyber security certifications such as CompTIA Security+, Network+, CySA+, GSEC, CISSP, GCIH, GCIA, or CCSP. CrowdStrike certifications including CCFA, CCFR, or CCSE. Splunk Certified Cybersecurity Defense Engineer certification.
Aug 19, 2026
Contractor
Job Description Job Title Interim Cyber Security Officer (Senior Cyber Security Engineer) Contract Details Contract Length: 6 Months Start Date: March 2026 Location: London (Hybrid/On-site as required) IR35 Status: Inside IR35 Daily Rate: Up to 500 per day (Umbrella) Overview We are seeking an experienced Senior Cyber Security Engineer to join a Cyber Security team on an interim contract. This role will provide senior technical expertise to support and optimise an outsourced Security Operations Centre (SOC), ensuring the organisation maximises its investment in security technologies while strengthening its cyber defence capabilities. The successful candidate will have extensive hands-on experience with CrowdStrike Falcon and Splunk Enterprise Security , with the ability to enhance security monitoring, improve incident response processes, support threat hunting activities, and mentor internal team members. Key Responsibilities Lead the deployment, configuration, administration, and ongoing optimisation of the CrowdStrike Falcon platform, ensuring endpoint security policies are effectively implemented and maintained. Work closely with the outsourced Security Operations Centre to develop and enhance Splunk dashboards, alerts, data models, and monitoring capabilities, enabling the identification and investigation of sophisticated cyber threats. Act as the senior technical escalation point for complex and high-priority cyber security incidents, utilising Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) technologies to support rapid investigation, containment, and remediation. Design, develop, and improve Security Orchestration, Automation and Response (SOAR) workflows to reduce manual effort, improve operational efficiency, and accelerate incident response. Conduct proactive threat hunting activities using advanced search techniques and security telemetry to identify malicious activity that may have evaded automated detection. Support vulnerability assessment activities and contribute to security testing initiatives, including exposure to penetration testing and web application security assessments. Develop and maintain cyber security policies, standards, and technical documentation to support governance and operational best practice. Provide technical guidance, mentoring, and knowledge transfer to existing cyber security team members, strengthening internal capability across CrowdStrike, Splunk, and security operations. Collaborate with internal stakeholders and external partners to continuously improve cyber security monitoring, detection, and response capabilities. Maintain awareness of emerging cyber threats, vulnerabilities, and industry best practices to ensure security controls remain effective and up to date. Essential Requirements Applicants must have a minimum of five years' experience working in a dedicated Cyber Security Engineering or SOC Tier 3 environment. Extensive hands-on experience administering and supporting CrowdStrike Falcon , including Falcon Prevent, Falcon Insight, and Falcon Discover, is essential. Strong experience working with Splunk Enterprise Security , including writing complex Search Processing Language (SPL) queries, developing dashboards, alerts, reports, and managing security data. Experience supporting Security Operations Centres, incident response, endpoint detection and response, security monitoring, and threat hunting activities. Excellent understanding of network protocols, cyber attack methodologies, security monitoring techniques, and the MITRE ATT&CK Framework . Good knowledge of cloud security principles across Microsoft Azure and/or AWS environments. Strong analytical, troubleshooting, communication, and stakeholder management skills with the ability to work independently and manage multiple priorities. Desirable Experience performing vulnerability assessments using recognised vulnerability management tools. Exposure to penetration testing and web application security testing. Experience creating and maintaining cyber security policies, standards, and governance documentation. Professional cyber security certifications such as CompTIA Security+, Network+, CySA+, GSEC, CISSP, GCIH, GCIA, or CCSP. CrowdStrike certifications including CCFA, CCFR, or CCSE. Splunk Certified Cybersecurity Defense Engineer certification.
Computappoint
Security Engineer
Computappoint
Security Engineer Job Type: Fixed-Term Contract (6 months) Working Arrangement: Hybrid 2 days in the office per week Office Location: City of London Full Job Description This is an exciting opportunity to play a pivotal role in delivering and advancing security engineering initiatives within a globally recognised law firm. You will join a fast-paced and dynamic environment where you'll contribute to a variety of security projects, helping to strengthen the firm's security capabilities while supporting key business objectives. This is not a traditional SOC role. Whilst SIEM engineering and integration experience remain essential, the focus is firmly on security engineering, project delivery, platform improvements, and business engagement. We're looking for someone who can successfully balance multiple priorities, adapt quickly to changing requirements, and drive security initiatives forward with minimal supervision. The Role As a Security Engineer, you will: Lead and contribute to a range of security engineering and improvemeant projects across the business. Enhance, optimise, and integrate security technologies, with a particular focus on SIEM platforms and associated tooling. Identify, onboard, and integrate new log sources across cloud, on-premise, network, endpoint, and identity environments. Design, build, and implement security solutions that improve the organisation's detection, monitoring, and response capabilities. Develop and refine detection use cases, dashboards, workflows, and automation initiatives. Support the design and execution of security-related change and build activities. Work closely with technical teams, security stakeholders, and business users to deliver successful outcomes. Provide subject matter expertise and technical guidance across security platforms and projects. Produce and maintain high-quality technical and operational documentation. What We're Looking For Essential Experience Proven experience working in a Security Engineering role rather than a purely SOC or analyst-focused position. Strong hands-on SIEM engineering and integration experience with platforms such as Microsoft Sentinel, Splunk, Exabeam, QRadar, or Elastic. Experience delivering security-related projects, change initiatives, and platform enhancements. Strong understanding of log ingestion technologies and formats including JSON, Syslog, CEF, and XML. Experience building and tuning detections, correlation rules, dashboards, and security workflows. Scripting and automation experience using tools such as Python, PowerShell, or similar technologies. Ability to manage multiple projects and competing priorities within a fast-paced environment. Excellent communication and stakeholder management skills, with the confidence to engage directly with both technical and non-technical audiences. Strong business English, both written and verbal. Highly Desirable Previous experience working within a law firm, professional services organisation, or consultancy environment. Experience working in client-facing or business-facing security roles. Knowledge of MITRE ATT&CK, threat detection, security operations, and security architecture principles. Familiarity with SOAR platforms and security automation. Relevant certifications such as CISSP, SSCP, Microsoft SC-200/SC-100, or GIAC certifications. A Level 4 qualification or higher in a computing-related discipline, or equivalent commercial experience. Who Will Succeed in This Role? We're looking for a high-energy, proactive individual who thrives in a fast-moving environment. You'll be comfortable operating autonomously, driving initiatives forward, and adapting to changing business priorities. This role will suit someone who enjoys building relationships across the organisation, can communicate effectively with a wide range of stakeholders, and has a track record of delivering successful security engineering outcomes. Services offered by Computappoint Limited are those of an Employment Business and/or Employment Agency in relation to this vacancy. Computappoint do not use AI to filter or assess candidates. We use experienced and dedicated recruiters who focus on matching the best people with the right opportunities.
Aug 19, 2026
Full time
Security Engineer Job Type: Fixed-Term Contract (6 months) Working Arrangement: Hybrid 2 days in the office per week Office Location: City of London Full Job Description This is an exciting opportunity to play a pivotal role in delivering and advancing security engineering initiatives within a globally recognised law firm. You will join a fast-paced and dynamic environment where you'll contribute to a variety of security projects, helping to strengthen the firm's security capabilities while supporting key business objectives. This is not a traditional SOC role. Whilst SIEM engineering and integration experience remain essential, the focus is firmly on security engineering, project delivery, platform improvements, and business engagement. We're looking for someone who can successfully balance multiple priorities, adapt quickly to changing requirements, and drive security initiatives forward with minimal supervision. The Role As a Security Engineer, you will: Lead and contribute to a range of security engineering and improvemeant projects across the business. Enhance, optimise, and integrate security technologies, with a particular focus on SIEM platforms and associated tooling. Identify, onboard, and integrate new log sources across cloud, on-premise, network, endpoint, and identity environments. Design, build, and implement security solutions that improve the organisation's detection, monitoring, and response capabilities. Develop and refine detection use cases, dashboards, workflows, and automation initiatives. Support the design and execution of security-related change and build activities. Work closely with technical teams, security stakeholders, and business users to deliver successful outcomes. Provide subject matter expertise and technical guidance across security platforms and projects. Produce and maintain high-quality technical and operational documentation. What We're Looking For Essential Experience Proven experience working in a Security Engineering role rather than a purely SOC or analyst-focused position. Strong hands-on SIEM engineering and integration experience with platforms such as Microsoft Sentinel, Splunk, Exabeam, QRadar, or Elastic. Experience delivering security-related projects, change initiatives, and platform enhancements. Strong understanding of log ingestion technologies and formats including JSON, Syslog, CEF, and XML. Experience building and tuning detections, correlation rules, dashboards, and security workflows. Scripting and automation experience using tools such as Python, PowerShell, or similar technologies. Ability to manage multiple projects and competing priorities within a fast-paced environment. Excellent communication and stakeholder management skills, with the confidence to engage directly with both technical and non-technical audiences. Strong business English, both written and verbal. Highly Desirable Previous experience working within a law firm, professional services organisation, or consultancy environment. Experience working in client-facing or business-facing security roles. Knowledge of MITRE ATT&CK, threat detection, security operations, and security architecture principles. Familiarity with SOAR platforms and security automation. Relevant certifications such as CISSP, SSCP, Microsoft SC-200/SC-100, or GIAC certifications. A Level 4 qualification or higher in a computing-related discipline, or equivalent commercial experience. Who Will Succeed in This Role? We're looking for a high-energy, proactive individual who thrives in a fast-moving environment. You'll be comfortable operating autonomously, driving initiatives forward, and adapting to changing business priorities. This role will suit someone who enjoys building relationships across the organisation, can communicate effectively with a wide range of stakeholders, and has a track record of delivering successful security engineering outcomes. Services offered by Computappoint Limited are those of an Employment Business and/or Employment Agency in relation to this vacancy. Computappoint do not use AI to filter or assess candidates. We use experienced and dedicated recruiters who focus on matching the best people with the right opportunities.
Sanderson
Cloud Architect GCP, AWS or Azure - MOD DV - Perm
Sanderson Corsham, Wiltshire
Cloud Architect - MOD DV - Perm Location: Corsham, 4 days on-site Clearance: Active MOD DV - Must have DV in place, no scope for sponsorship Salary : £80,000 - £95,000 + Benefits An exciting opportunity has opened up to join one of Google Cloud's primary technical partners, as they push on with a new programme of work in the UK Defence sector, utilising cutting edge Cloud technologies. The role suits a Cloud Architect with a defence background that has an interest in utilising their AWS/Azure experience and up-skilling with GCP certifications and a training programme. As well as applying any existing GCP experience. About the role As a Cloud Architect you will be responsible for designing and advising on secure cloud architectures within Google Cloud Platform (GCP), ensuring compliance with UK and international standards. You will work with clients across sectors to assess risks, implement robust security controls, and guide secure cloud adoption strategies. This role requires a strong understanding of cloud-native security, regulatory frameworks, and the ability to translate technical risks into business impact. Part of this role, you will be required to obtain GCP certification. What You'll Do: Design and implement secure architectures, incorporating identity, access management, encryption, and network security. Conduct cloud security assessments and gap analyses for UK-based organisations. Advise on compliance with UK regulations (e.g. GDPR, NCSC Cloud Security Principles, ISO 27001). Develop and enforce cloud security policies, procedures, and governance models. Lead threat modelling, risk assessments, and vulnerability management initiatives. Configure and manage security tools such as Google SecOps tooling, Security Command Center, Cloud Armour, and VPC Service Controls. Collaborate with engineering and DevOps teams to embed security into CI/CD pipelines. Support incident response planning and cloud-specific disaster recovery strategies. Stay up to date with GCP security features, UK regulatory changes, and emerging threats. Requirements What You'll Bring Essential Skills & Experience: Experience in cloud security. Strong knowledge of: Security services (IAM, Cloud KMS, VPC Service Controls, etc.) UK data protection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as Code (Terraform, Deployment Manager). Desirable: Google Cloud Professional Cloud Security Engineer certification. Experience with UK public sector or regulated industries (e.g. finance, healthcare). Familiarity with container security (GKE, Kubernetes RBAC, image scanning). Proficiency in scripting (Python, Bash) for automation and tooling. Experience with incident response in cloud-native environments. Previous consultancy experience within UK public sector organisations. If you're interested in the above, reach out to or apply Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
Oct 07, 2025
Full time
Cloud Architect - MOD DV - Perm Location: Corsham, 4 days on-site Clearance: Active MOD DV - Must have DV in place, no scope for sponsorship Salary : £80,000 - £95,000 + Benefits An exciting opportunity has opened up to join one of Google Cloud's primary technical partners, as they push on with a new programme of work in the UK Defence sector, utilising cutting edge Cloud technologies. The role suits a Cloud Architect with a defence background that has an interest in utilising their AWS/Azure experience and up-skilling with GCP certifications and a training programme. As well as applying any existing GCP experience. About the role As a Cloud Architect you will be responsible for designing and advising on secure cloud architectures within Google Cloud Platform (GCP), ensuring compliance with UK and international standards. You will work with clients across sectors to assess risks, implement robust security controls, and guide secure cloud adoption strategies. This role requires a strong understanding of cloud-native security, regulatory frameworks, and the ability to translate technical risks into business impact. Part of this role, you will be required to obtain GCP certification. What You'll Do: Design and implement secure architectures, incorporating identity, access management, encryption, and network security. Conduct cloud security assessments and gap analyses for UK-based organisations. Advise on compliance with UK regulations (e.g. GDPR, NCSC Cloud Security Principles, ISO 27001). Develop and enforce cloud security policies, procedures, and governance models. Lead threat modelling, risk assessments, and vulnerability management initiatives. Configure and manage security tools such as Google SecOps tooling, Security Command Center, Cloud Armour, and VPC Service Controls. Collaborate with engineering and DevOps teams to embed security into CI/CD pipelines. Support incident response planning and cloud-specific disaster recovery strategies. Stay up to date with GCP security features, UK regulatory changes, and emerging threats. Requirements What You'll Bring Essential Skills & Experience: Experience in cloud security. Strong knowledge of: Security services (IAM, Cloud KMS, VPC Service Controls, etc.) UK data protection and compliance frameworks (GDPR, ICO guidance) Identity federation, SSO, and role-based access control Network segmentation and firewall configuration in cloud environments. Logging, monitoring, and SIEM integration (e.g. Splunk, Chronicle) Experience with Infrastructure as Code (Terraform, Deployment Manager). Desirable: Google Cloud Professional Cloud Security Engineer certification. Experience with UK public sector or regulated industries (e.g. finance, healthcare). Familiarity with container security (GKE, Kubernetes RBAC, image scanning). Proficiency in scripting (Python, Bash) for automation and tooling. Experience with incident response in cloud-native environments. Previous consultancy experience within UK public sector organisations. If you're interested in the above, reach out to or apply Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.
Harvey Nash
Cyber Security Engineer
Harvey Nash Milton Keynes, Buckinghamshire
I am currently looking for 2 experienced Cyber Security Engineers (DV Cleared) for a client, based in Milton Keynes with occasional travel to London. DV Clearance is essential - applicants without current clearance unfortunately cannot be considered. About the Role: These roles sit within a client's Cybersecurity Operations function. You will play a key part in designing, implementing, and maintaining the platforms that support enterprise-scale security operations. From SIEM and log collection to endpoint detection, automation, and integration, you'll help ensure the SOC team has the reliable and scalable infrastructure it needs to detect, investigate, and respond to threats. Responsibilities: Manage and optimise SIEM platforms (Splunk, Microsoft Sentinel, open-source alternatives) across hybrid-cloud environments Configure and maintain log/data pipelines from endpoints, cloud services, and network devices Ensure high availability, reliability, and performance of core security platforms Integrate new security tools into the ecosystem, including automation via APIs, Scripting, and AI Maintain clear documentation, diagrams, and procedures to support knowledge sharing and consistency Skills & Experience: Strong hands-on experience with SIEM technologies (Splunk, Sentinel, etc.) Knowledge of cloud platforms (Azure, AWS, GCP) and hybrid environments Scripting skills (Python, PowerShell) for automation and integration Experience with SOAR and SecDevOps practices (Git, GitHub, Azure DevOps, CI/CD) Good understanding of frameworks such as NIST, MITRE ATT&CK, CAF Background in Incident Response or SOC analysis is highly valued Soft Skills: Strong analytical and problem-solving mindset Effective communication and collaboration skills Ability to thrive in a fast-paced, dynamic environment Certifications (Splunk, Microsoft, SANS, etc.) are desirable but not required. Location: Milton Keynes (with some travel to London) Positions: 2 available If you're DV cleared and want to take on a challenging and rewarding role with a leading organisation, I'd love to hear from you.
Oct 06, 2025
Contractor
I am currently looking for 2 experienced Cyber Security Engineers (DV Cleared) for a client, based in Milton Keynes with occasional travel to London. DV Clearance is essential - applicants without current clearance unfortunately cannot be considered. About the Role: These roles sit within a client's Cybersecurity Operations function. You will play a key part in designing, implementing, and maintaining the platforms that support enterprise-scale security operations. From SIEM and log collection to endpoint detection, automation, and integration, you'll help ensure the SOC team has the reliable and scalable infrastructure it needs to detect, investigate, and respond to threats. Responsibilities: Manage and optimise SIEM platforms (Splunk, Microsoft Sentinel, open-source alternatives) across hybrid-cloud environments Configure and maintain log/data pipelines from endpoints, cloud services, and network devices Ensure high availability, reliability, and performance of core security platforms Integrate new security tools into the ecosystem, including automation via APIs, Scripting, and AI Maintain clear documentation, diagrams, and procedures to support knowledge sharing and consistency Skills & Experience: Strong hands-on experience with SIEM technologies (Splunk, Sentinel, etc.) Knowledge of cloud platforms (Azure, AWS, GCP) and hybrid environments Scripting skills (Python, PowerShell) for automation and integration Experience with SOAR and SecDevOps practices (Git, GitHub, Azure DevOps, CI/CD) Good understanding of frameworks such as NIST, MITRE ATT&CK, CAF Background in Incident Response or SOC analysis is highly valued Soft Skills: Strong analytical and problem-solving mindset Effective communication and collaboration skills Ability to thrive in a fast-paced, dynamic environment Certifications (Splunk, Microsoft, SANS, etc.) are desirable but not required. Location: Milton Keynes (with some travel to London) Positions: 2 available If you're DV cleared and want to take on a challenging and rewarding role with a leading organisation, I'd love to hear from you.
LA International Computer Consultants Ltd
SOC Manager
LA International Computer Consultants Ltd Leamington Spa, Warwickshire
SOC Manager 6 Month contract initially Based: Hybrid/Leamington & Gaydon - Hybrid as per business need Rate: £Market rates p/d (via Umbrella company) We have a great opportunity with a world leading organisation where you will be provided with all of the support and development to succeed. A progressive organisation where you can really make a difference. We have a great opportunity for a SOC Manager to join the team. As SOC Manager you will: * Oversee SOC activities by reviewing your team's performance metrics, incident reports and other key indicators * Lead incident response efforts when a security incident occurs, the SOC team has to respond as quickly as possible * Lead these efforts by establishing clear incident response procedures and protocols and conveying them to the team * Analyse incident reports to understand your organization's security posture by reviewing incident reports, SOC managers identify patterns and trends that may indicate weaknesses or vulnerabilities in their security defences * Serve as the point of contact (POC) for security incidents within the company. You are the primary liaison between the SOC team, other internal stakeholders, and external parties such as vendors, clients or regulatory bodies. * Be responsible for conducting information security investigations as a result of security incidents. These are previously identified by the Level 2 security analyst who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone) End to end security incident management. You will play a key role in providing the highest level of technical expertise and handling the most complex security incidents. Key Responsibilities: * Manage service and process improvements of SOC, auditing SOC incidents, identifying new use cases and automations * POC for SOC engineering team, threat intelligence analyst and Threat exposure management * Act as a point of escalation for Level-2 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques * Act as the lead coordinator to individual information security incidents * Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks (tools, techniques, Procedures) in support of technologies managed by the Security Operations Centre. * Document incidents from initial detection through final resolution * Ensure threat management, threat modelling, identify threat vectors and develop use cases for security monitoring * Create reports, dashboards, metrics for SOC operations and presentation to Sr. Mgmt. * Act as focal point for any investigations involving security; to prepare reports and note follow up action * Participate in the role of Incident Manager during any incidents and emergencies * Ensure that all business recovery/contingency plans and/or procedures held within the security control rooms are always kept up to date * Coordinate with IT teams on escalations, tracking, performance issues, and outages Key skills & experience: * Strong knowledge in Authentication, End Point Security, Internet Policy Enforcement, Firewalls, Web Content Filtering, Database Activity Monitoring (DAM), Public Key Infrastructure (PKI), Data Loss Prevention (DLP), Identity and Access Management (IAM) and SOC advancements such as EDR and SOAR * Good knowledge of SIEM technologies, like Google Chronicle, Splunk ES or QRadar * In-depth familiarity with security policies based on industry standards and best practices * Experienced within the information security field, with emphasis on security operations, incident management, intrusion analysis, security device installations, configuration, and troubleshooting (e. g., Firewall, IDS, etc.) * Experience in Log source integration and in Developing new correlation rules & Parser writing * Experienced in SOC automation development, cloud operations (e. g. AWS), Designing, building security operations centers and Regulatory Compliance * Ability to lead and communicate efficiently within a team environment along with Incident management process development and/or incident management experience * Solid understanding of information technology and information security required * Excellent communication and presentation skills with demonstrated skill in presenting analytical data effectively to varied audiences (including executives) * Ability to work well under pressure with differing levels of Management This is an excellent opportunity on a great project of work, If you are looking for your next exciting opportunity, apply now for your CV to reach me directly, we will respond as soon as possible. LA International is a HMG approved ICT Recruitment and Project Solutions Consultancy, operating globally from the largest single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds. Award Winning LA International, winner of the Recruiter Awards for Excellence, Best IT Recruitment Company, Best Public Sector Recruitment Company and overall Gold Award winner, has now secured the most prestigious business award that any business can receive, The Queens Award for Enterprise: International Trade, for the second consecutive period.
Sep 26, 2025
Contractor
SOC Manager 6 Month contract initially Based: Hybrid/Leamington & Gaydon - Hybrid as per business need Rate: £Market rates p/d (via Umbrella company) We have a great opportunity with a world leading organisation where you will be provided with all of the support and development to succeed. A progressive organisation where you can really make a difference. We have a great opportunity for a SOC Manager to join the team. As SOC Manager you will: * Oversee SOC activities by reviewing your team's performance metrics, incident reports and other key indicators * Lead incident response efforts when a security incident occurs, the SOC team has to respond as quickly as possible * Lead these efforts by establishing clear incident response procedures and protocols and conveying them to the team * Analyse incident reports to understand your organization's security posture by reviewing incident reports, SOC managers identify patterns and trends that may indicate weaknesses or vulnerabilities in their security defences * Serve as the point of contact (POC) for security incidents within the company. You are the primary liaison between the SOC team, other internal stakeholders, and external parties such as vendors, clients or regulatory bodies. * Be responsible for conducting information security investigations as a result of security incidents. These are previously identified by the Level 2 security analyst who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone) End to end security incident management. You will play a key role in providing the highest level of technical expertise and handling the most complex security incidents. Key Responsibilities: * Manage service and process improvements of SOC, auditing SOC incidents, identifying new use cases and automations * POC for SOC engineering team, threat intelligence analyst and Threat exposure management * Act as a point of escalation for Level-2 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques * Act as the lead coordinator to individual information security incidents * Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks (tools, techniques, Procedures) in support of technologies managed by the Security Operations Centre. * Document incidents from initial detection through final resolution * Ensure threat management, threat modelling, identify threat vectors and develop use cases for security monitoring * Create reports, dashboards, metrics for SOC operations and presentation to Sr. Mgmt. * Act as focal point for any investigations involving security; to prepare reports and note follow up action * Participate in the role of Incident Manager during any incidents and emergencies * Ensure that all business recovery/contingency plans and/or procedures held within the security control rooms are always kept up to date * Coordinate with IT teams on escalations, tracking, performance issues, and outages Key skills & experience: * Strong knowledge in Authentication, End Point Security, Internet Policy Enforcement, Firewalls, Web Content Filtering, Database Activity Monitoring (DAM), Public Key Infrastructure (PKI), Data Loss Prevention (DLP), Identity and Access Management (IAM) and SOC advancements such as EDR and SOAR * Good knowledge of SIEM technologies, like Google Chronicle, Splunk ES or QRadar * In-depth familiarity with security policies based on industry standards and best practices * Experienced within the information security field, with emphasis on security operations, incident management, intrusion analysis, security device installations, configuration, and troubleshooting (e. g., Firewall, IDS, etc.) * Experience in Log source integration and in Developing new correlation rules & Parser writing * Experienced in SOC automation development, cloud operations (e. g. AWS), Designing, building security operations centers and Regulatory Compliance * Ability to lead and communicate efficiently within a team environment along with Incident management process development and/or incident management experience * Solid understanding of information technology and information security required * Excellent communication and presentation skills with demonstrated skill in presenting analytical data effectively to varied audiences (including executives) * Ability to work well under pressure with differing levels of Management This is an excellent opportunity on a great project of work, If you are looking for your next exciting opportunity, apply now for your CV to reach me directly, we will respond as soon as possible. LA International is a HMG approved ICT Recruitment and Project Solutions Consultancy, operating globally from the largest single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds. Award Winning LA International, winner of the Recruiter Awards for Excellence, Best IT Recruitment Company, Best Public Sector Recruitment Company and overall Gold Award winner, has now secured the most prestigious business award that any business can receive, The Queens Award for Enterprise: International Trade, for the second consecutive period.
Whitehall Resources Ltd
SOC Manager
Whitehall Resources Ltd Gaydon, Warwickshire
SOC Manager Whitehall Resources are looking for a SOC Manager. This role is hybrid working with 2-3 days per week onsite in Warwickshire, and the remainder remote working, for an initial 6-month contract. *Inside IR35* Job Description: Establish goals and priorities by working closely with your team to identify the most critical focus areas. These include: Improving incident response times Reducing false positives and other extraneous alerts Enhancing threat detection capabilities Oversee your staff's activities and ensure they focus on the right priorities Oversee SOC activities by reviewing your team's performance metrics, incident reports and other key indicators Lead incident response efforts when a security incident occurs, the SOC team has to respond as quickly as possible Lead these efforts by establishing clear incident response procedures and protocols and conveying them to the team Analyse incident reports to understand your organization's security posture by reviewing incident reports, SOC managers identify patterns and trends that may indicate weaknesses or vulnerabilities in their security defences Serve as the point of contact (POC) for security incidents within the company. You are the primary liaison between the SOC team, other internal stakeholders, and external parties such as vendors, clients or regulatory bodies. Be responsible for conducting information security investigations as a result of security incidents. These are previously identified by the Level 2 security analyst who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone) End to end security incident management. You will play a key role in providing the highest level of technical expertise and handling the most complex security incidents. Report to the Customer about security operations. This means that you must keep the CISO and Head of security operations informed about everything that's happening in the operations centre. You can do this by preparing clear and concise reports that highlight key findings, and recommendations about the operations. Your reports will help the customer make informed decisions about security investments and strategies that align with the company's goals. Your responsibilities: Manage service and process improvements of SOC, auditing SOC incidents, identifying new use cases and automations POC for SOC engineering team, threat intelligence analyst and Threat exposure management Act as a point of escalation for Level-2 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques Act as the lead coordinator to individual information security incidents Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks (tools, techniques, Procedures) in support of technologies managed by the Security Operations Centre. Document incidents from initial detection through final resolution Ensure threat management, threat modelling, identify threat vectors and develop use cases for security monitoring Create reports, dashboards, metrics for SOC operations and presentation to Sr. Mgmt. Act as focal point for any investigations involving security; to prepare reports and note follow up action Participate in the role of Incident Manager during any incidents and emergencies Ensure that all business recovery/contingency plans and/or procedures held within the security control rooms are always kept up to date Coordinate with IT teams on escalations, tracking, performance issues, and outages Essential skills and experience: Strong knowledge in Authentication, End Point Security, Internet Policy Enforcement, Firewalls, Web Content Filtering, Database Activity Monitoring (DAM), Public Key Infrastructure (PKI), Data Loss Prevention (DLP), Identity and Access Management (IAM) and SOC advancements such as EDR and SOAR Good knowledge of SIEM technologies, like Google Chronicle, Splunk ES or QRadar In-depth familiarity with security policies based on industry standards and best practices Experienced within the information security field, with emphasis on security operations, incident management, intrusion analysis, security device installations, configuration, and troubleshooting (e. g., Firewall, IDS, etc.) Experience in Log source integration and in Developing new correlation rules & Parser writing Experienced in SOC automation development, cloud operations (e. g. AWS), Designing, building security operations centers and Regulatory Compliance Ability to lead and communicate efficiently within a team environment along with Incident management process development and/or incident management experience Solid understanding of information technology and information security required Excellent communication and presentation skills with demonstrated skill in presenting analytical data effectively to varied audiences (including executives) Ability to work well under pressure with differing levels of Management Desirable skills and experience: Experience of Agile ways of working. All of our opportunities require that applicants are eligible to work in the specified country/location, unless otherwise stated in the job description. Whitehall Resources are an equal opportunities employer who value a diverse and inclusive working environment. All qualified applicants will receive consideration for employment without regard to race, religion, gender identity or expression, sexual orientation, national origin, pregnancy, disability, age, veteran status, or other characteristics.
Sep 26, 2025
Contractor
SOC Manager Whitehall Resources are looking for a SOC Manager. This role is hybrid working with 2-3 days per week onsite in Warwickshire, and the remainder remote working, for an initial 6-month contract. *Inside IR35* Job Description: Establish goals and priorities by working closely with your team to identify the most critical focus areas. These include: Improving incident response times Reducing false positives and other extraneous alerts Enhancing threat detection capabilities Oversee your staff's activities and ensure they focus on the right priorities Oversee SOC activities by reviewing your team's performance metrics, incident reports and other key indicators Lead incident response efforts when a security incident occurs, the SOC team has to respond as quickly as possible Lead these efforts by establishing clear incident response procedures and protocols and conveying them to the team Analyse incident reports to understand your organization's security posture by reviewing incident reports, SOC managers identify patterns and trends that may indicate weaknesses or vulnerabilities in their security defences Serve as the point of contact (POC) for security incidents within the company. You are the primary liaison between the SOC team, other internal stakeholders, and external parties such as vendors, clients or regulatory bodies. Be responsible for conducting information security investigations as a result of security incidents. These are previously identified by the Level 2 security analyst who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone) End to end security incident management. You will play a key role in providing the highest level of technical expertise and handling the most complex security incidents. Report to the Customer about security operations. This means that you must keep the CISO and Head of security operations informed about everything that's happening in the operations centre. You can do this by preparing clear and concise reports that highlight key findings, and recommendations about the operations. Your reports will help the customer make informed decisions about security investments and strategies that align with the company's goals. Your responsibilities: Manage service and process improvements of SOC, auditing SOC incidents, identifying new use cases and automations POC for SOC engineering team, threat intelligence analyst and Threat exposure management Act as a point of escalation for Level-2 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques Act as the lead coordinator to individual information security incidents Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks (tools, techniques, Procedures) in support of technologies managed by the Security Operations Centre. Document incidents from initial detection through final resolution Ensure threat management, threat modelling, identify threat vectors and develop use cases for security monitoring Create reports, dashboards, metrics for SOC operations and presentation to Sr. Mgmt. Act as focal point for any investigations involving security; to prepare reports and note follow up action Participate in the role of Incident Manager during any incidents and emergencies Ensure that all business recovery/contingency plans and/or procedures held within the security control rooms are always kept up to date Coordinate with IT teams on escalations, tracking, performance issues, and outages Essential skills and experience: Strong knowledge in Authentication, End Point Security, Internet Policy Enforcement, Firewalls, Web Content Filtering, Database Activity Monitoring (DAM), Public Key Infrastructure (PKI), Data Loss Prevention (DLP), Identity and Access Management (IAM) and SOC advancements such as EDR and SOAR Good knowledge of SIEM technologies, like Google Chronicle, Splunk ES or QRadar In-depth familiarity with security policies based on industry standards and best practices Experienced within the information security field, with emphasis on security operations, incident management, intrusion analysis, security device installations, configuration, and troubleshooting (e. g., Firewall, IDS, etc.) Experience in Log source integration and in Developing new correlation rules & Parser writing Experienced in SOC automation development, cloud operations (e. g. AWS), Designing, building security operations centers and Regulatory Compliance Ability to lead and communicate efficiently within a team environment along with Incident management process development and/or incident management experience Solid understanding of information technology and information security required Excellent communication and presentation skills with demonstrated skill in presenting analytical data effectively to varied audiences (including executives) Ability to work well under pressure with differing levels of Management Desirable skills and experience: Experience of Agile ways of working. All of our opportunities require that applicants are eligible to work in the specified country/location, unless otherwise stated in the job description. Whitehall Resources are an equal opportunities employer who value a diverse and inclusive working environment. All qualified applicants will receive consideration for employment without regard to race, religion, gender identity or expression, sexual orientation, national origin, pregnancy, disability, age, veteran status, or other characteristics.
Reed
Cyber Security Engineer
Reed
SOC Analyst - £45k This is a fantastic opportunity to join a well-established MSP as part of their SOC function. You will be joining a fast paced fast growing arm of the business which has gone from strength to strength since its addition to the business. The role comes with pretty much 100% remote home working with once a month visits to their office in Manchester. They are a full Microsoft Gold Partner / Family Run and also voted one of the top employers in the UK. The current SOC function has a small close knit team of engineers - they deploy a flat SOC structure so you will be involved in all elements of a SOC function. They are big on certifications and open to candidates with them or happy to put you through relevant courses. Key skills / responsibilities: • Proven experience up to 12 months working as a SOC Analyst• Experience in deep diving into security issues and analysis rather than just ticket management.• Experience with SIEM solutions (Azure Sentinel as but Splunk etc also useful to have.• Scripting experience with - KQL / PowerShell Scripting• Threat Hunting / Analysis Investigation• Opportunity to run and be involved in webinars.• Opportunity to train and mentor new team members in the future.• Core infrastructure / networking background would be desired. The role comes with a base up to £45k They are interviewing ASAP so apply today for consideration!
Sep 25, 2025
Full time
SOC Analyst - £45k This is a fantastic opportunity to join a well-established MSP as part of their SOC function. You will be joining a fast paced fast growing arm of the business which has gone from strength to strength since its addition to the business. The role comes with pretty much 100% remote home working with once a month visits to their office in Manchester. They are a full Microsoft Gold Partner / Family Run and also voted one of the top employers in the UK. The current SOC function has a small close knit team of engineers - they deploy a flat SOC structure so you will be involved in all elements of a SOC function. They are big on certifications and open to candidates with them or happy to put you through relevant courses. Key skills / responsibilities: • Proven experience up to 12 months working as a SOC Analyst• Experience in deep diving into security issues and analysis rather than just ticket management.• Experience with SIEM solutions (Azure Sentinel as but Splunk etc also useful to have.• Scripting experience with - KQL / PowerShell Scripting• Threat Hunting / Analysis Investigation• Opportunity to run and be involved in webinars.• Opportunity to train and mentor new team members in the future.• Core infrastructure / networking background would be desired. The role comes with a base up to £45k They are interviewing ASAP so apply today for consideration!

Modal Window

  • Blog
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Instagram
  • Pinterest
  • Youtube
Parent and Partner sites: IT Job Board | Search Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | London Jobs | Property jobs
© 2008-2026 Jobs Hiring Near Me