About this role
Salary: £? - ? per year
Requirements: Experience in security engineering within complex enterprise environments.Experience with Security Operations Centre (SOC) processes, monitoring, and incident response.Experience with security monitoring, threat detection, and investigation.Experience with SIEM, XDR, or security analytics platforms.Experience with Palo Alto Networks technologies, particularly Cortex XSIAM.Experience developing and maintaining security rules, policies, and configurations.Experience with security tooling integrations and automation.Experience producing technical documentation and reporting for senior stakeholders.Current valid SC clearance is mandatory.Experience working within UK Government, public sector, or highly regulated environments is desirable.Knowledge of cyber security frameworks such as the Cyber Assessment Framework (CAF), Minimum Cyber Security Standard (MCSS), or GovAssure is desirable.Experience with threat intelligence platforms and security analytics is desirable.Strong understanding of modern cyber threats and defensive security practices is desirable. Responsibilities: Implement, configure, and manage Palo Alto Networks Cortex XSIAM to enhance security monitoring and incident response capabilities.Develop and maintain security policies, detection rules, and configurations to improve threat identification and response.Integrate XSIAM with existing security tools and information systems to automate security operations and workflows.Monitor and analyse security alerts, incidents, and threat activity to identify risks and emerging patterns.Support cyber incident investigations and response activities.Collaborate with internal teams and external partners to share threat intelligence and improve security awareness.Provide technical security guidance and support to IT teams and business stakeholders.Maintain awareness of emerging cyber threats, security technologies, and Palo Alto Networks capabilities.Produce security reports, incident analysis, and recommendations for senior stakeholders. Technologies: SupportSecurity More:
We are seeking an experienced Senior Security Engineer (G7) to support the continued development and improvement of Security Operations capabilities within our large public sector organisation. This is a hybrid national role, working two days per week from your nearest government hub, with locations including London, Birmingham, Leeds, Manchester, Liverpool, Sheffield, Nottingham, Newcastle upon Tyne, and Cardiff. The contract length is 12 months, inside IR35, with a day rate of £700. This role offers the opportunity to strengthen our cyber resilience, improve our ability to detect and respond to cyber threats, and contribute to critical services and strategic security objectives. Current valid SC clearance is a strict requirement, and candidates without it cannot be considered.
last updated 29 week of 2026