Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

SIEM Incident Manager

Hortor
London
10 months ago
Applications closed

Related Jobs

View all jobs

SOC Operations Manager - Azure, ISO27001, Energy

SOC Operations Manager - Active SC, Azure, ISO27001, Energy

Cyber Security Engineer

Junior SOC Analyst

Senior Cyber Security Analyst (Hybrid / Birmingham)

Incident Response (CSIRT) / SOC Level 3 Analyst

SIEM Incident SME - Contract (DV Cleared)Rate: £550pd - £650pd Inside IR35Duration: 6 monthsLocations: Hybrid and then onsite 2/3 days per week in one of the following locations: Corsham, Portsmouth or NorthallertonDue to client requirements, all applicants must require the following, to be considered for this role:Must hold active DV Clearance that has not lapsedSecurity Information and Event Management/Incident Management experienceRole Description:We are seeking a skilled SIEM / Incident Subject Matter Expert to join our clients expanding cybersecurity team. In this role, you will be responsible for designing, delivering, and maintaining operational cybersecurity capabilities. Your focus will be on conducting proactive, risk-based monitoring on priority C4IS/networks to identify both internal and external cyber threats and attacks.Responsibilities:Develop and integrate security event monitoring and incident management services.Respond to security incidents as part of an incident response team.Implement metrics and dashboards for enhanced visibility into the Enterprise infrastructure.Utilize the SOAR platform for playbook automation and case management to streamline processes.Produce documentation to ensure repeatability and standardization of security operating procedures.Enhance investigative methods using SOC software toolsets for better analysis recognition.Maintain a baseline of system security in line with the latest threat intelligence and trends.Participate in root cause analysis of incidents with enterprise engineers.Provide SME guidance on various information security standards and best practices.Offer strategic and tactical security guidance, including evaluating technical controls.Engage in the CRM process and collaborate with SOC engineers to maintain up-to-date security alert dashboards.Document, validate, and create operational processes to aid SOC development.Assist in prioritizing and coordinating the protection of critical cyber defense infrastructure.Build, install, configure, and test dedicated cyber defense hardware.Support junior analysts in managing SOC systems.Essential Experience:Must hold active DV ClearanceExperience with ELK (Elastic, Logstash, Kibana) and Tanium.Familiarity with Enterprise ICS/network architectures and technologies.Proficient in SIEM solutions, including use case identification, creation, deployment, and tuning.Previous experience mentoring or coaching junior analysts.Knowledge of MITRE ATT&CK and Cyber Kill Chain frameworks.Skilled in maintaining Microsoft directory services and using virtualization software.Understanding of key security frameworks (e.g., ISO, NIST 800-53, 800-171, 800-172, C2M2).Excellent communication skills, particularly in writing Defense/Government documentation.Desirable Qualifications:Broad Spectrum Cyber Course (SANS SEC401 or SEC501 or equivalent).SIEM Design, Architecture and Analyst Course (SANS SEC455 or SEC555 or equivalent).Advanced Analyst Course (SANS SEC503 or equivalent).TPBN1_UKTJ

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Why Cyber Security Careers in the UK Are Becoming More Multidisciplinary

Cyber security used to be viewed primarily as a technical discipline: firewalls, encryption, intrusion detection, penetration testing. In the UK today, it’s far broader. Organisations now face complex legal frameworks, ethical dilemmas, human-behaviour risks, communication challenges & usability hurdles. This shift means cyber security careers are becoming more multidisciplinary. From protecting NHS patient records to defending financial services, securing supply chains & safeguarding national infrastructure, cyber security now touches every sector. Employers increasingly want professionals who understand law, ethics, psychology, linguistics & design alongside traditional technical skills. In this article, we’ll explore why UK cyber security careers are expanding in this way, how these five disciplines shape the profession, and what job-seekers & employers need to know to thrive in this new landscape.

Cyber Security Team Structures Explained: Who Does What in a Modern Cyber Security Department

Cyber security has become a top priority for UK organisations of all sizes. From small businesses to financial institutions, healthcare providers, and government bodies, the risk of cyber attack is now a constant concern. Threats are more sophisticated, regulations more demanding, and customers more aware of data privacy than ever before. But defending against cyber threats isn’t simply about having the right tools — it’s about having the right team. A modern cyber security department relies on clearly defined roles and responsibilities to ensure that defences are proactive, incidents are managed swiftly, and compliance is maintained. This article explains the structure of a modern cyber security team, the roles you’ll typically find within it, how they collaborate, and what skills, qualifications, and salaries are expected in the UK job market.

Why the UK Could Be the World’s Next Cyber Security Jobs Hub

Cyber security has become one of the defining challenges of the digital age. From protecting personal data and financial transactions to defending national infrastructure and corporate systems, the demand for strong cyber defences has never been higher. As businesses, governments, and individuals depend more heavily on digital services, the scale and sophistication of cyber threats have risen dramatically. Ransomware attacks, data breaches, state-sponsored cyber operations, and insider threats are now everyday risks. In response, organisations worldwide are investing heavily in cyber security talent. The United Kingdom is uniquely positioned to become a global cyber security jobs hub. With its strong tech sector, world-class universities, advanced defence capabilities, and established financial markets, the UK already has the foundations. The question is whether it can scale up, attract, and retain the right talent to meet global demand. This article explores why the UK is poised to become the world’s next cyber security jobs hub, the opportunities available, the challenges ahead, and what needs to happen for this vision to be realised.