24 of 24 MITRE ATT&CK Jobs in the South East

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
delivered in a consistent and scalable way. Working directly with customers, you will define detection strategies, design use cases aligned to MITRE ATT&CK, and guide improvements in visibility, coverage and response maturity. You will work closely with platform onboarding and engineering teams, supplementing them … rulesets across SIEM and XDR platformsDevelop and tune detection logic using KQL or equivalent query languagesDesign detection use cases aligned to MITRE ATT&CK and real-world attack techniquesMap customer log sources to detection use cases to assess coverage and identify gapsDesign and implement SOAR ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations, and engaging with … customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops ...

Threat Intelligence Lead

Hiring Organisation
Everywhen, part of the Ardonagh Group
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
organisation in key external intelligence-sharing forums, including FS-ISAC, the NCSC’s CiSP and relevant industry partnerships. Use the MITRE ATT&CK framework to identify and analyse attacker tactics, techniques and procedures and strengthen our detection capabilities. Develop the Proactive Threat Hunting Initiative, using … their strong technical expertise with the ability to develop our CTI capability and turn complex intelligence into clear, actionable business insights. MITRE ATT&CK training/certification is essential . Experience developing Priority Intelligence Requirements (PIRs). Strong experience working closely with SOC, Incident Response ...

Senior Security Operations Centre Analyst

Hiring Organisation
Sopra Steria
Location
Aldershot, Hampshire, United Kingdom
Salary
£ 55 K
vulnerabilities.Lead and support incident response activities, providing expert guidance on containment, eradication and recovery.Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques.Support threat intelligence activities and contribute to the continuous improvement of SOC operations.What You'll Bring: Proven experience … working within a Security Operations Centre.Hands-on experience with Microsoft Sentinel and Splunk.Strong understanding of MITRE ATT&CK.It would be great if you had:Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP).Firewalls, VPNs, enterprise antivirus and security technologies.Security incident investigation ...

SOC Engineer Detection

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
rules using KQL. Translate threat intelligence, attacker behaviours and operational requirements into measurable detection use cases. Map detection content to the MITRE ATT&CK framework and help identify gaps in detection coverage. Validate required log sources, schemas and field mappings before developing detection logic. Test … detection engineering principles, false-positive reduction and the detection content lifecycle. Experience developing threat-informed use cases and mapping detections to MITRE ATT&CK tactics and techniques. Ability to assess log source suitability, data quality, parsing and field availability for detection requirements. Experience with ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
will be responsible for producing an executive summary-style report, which will include a timeline of key events mapped to the MITRE ATT&CK framework. This comprehensive report will serve as a valuable resource for stakeholders, highlighting the steps taken to combat the cybersecurity incident … circumstances Occasionally willing to begin work early and/or stay late when warranted for customer engagements Strong grasp of the MITRE ATT&CK framework Enjoy mentoring and assisting in the development of junior analysts A team-player attitude with a willingness to share knowledge ...

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£65,000
Analyse network traffic, endpoint activity, logs and alerts to uncover malicious behaviour. Drive continuous improvement of detection capabilities aligned to the MITRE ATT&CK framework. Enhance SOC processes, tooling, playbooks and operational effectiveness. Mentor and develop analysts, helping build the next generation of cyber security … mentoring analysts in an operational security environment. It would be great if you had: Detection engineering or threat-informed defence experience. MITRE ATT&CK framework knowledge. Python, PowerShell or Bash scripting skills. Malware analysis or reverse engineering exposure. CREST, Blue Team Level 1 or similar ...

Senior Detection Engineer (Consultancy)

Hiring Organisation
Fazer Recruitment
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £90,000 per annum
without losing coverage Mapping customer log sources against use cases to identify and close coverage gaps Designing use cases aligned to MITRE ATT&CK Building SOAR automations and automated response workflows Writing incident response playbooks for customers Owning the detection-as-code approach — pipelines, version … Azure Logic Apps, Cortex XSOAR or similar Scripting in Python or PowerShell, and comfort working with APIs Use case design against MITRE ATT&CK Working knowledge of XDR/EDR platforms and Azure telemetry sources Some exposure to NDR tooling such as Vectra ...

2nd / 3rd Line Security Analyst

Hiring Organisation
XACT PLACEMENTS LIMITED
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£60,000
sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python, Logic Apps, APIs … security incidents from triage through to closure Hands-on experience writing and tuning SIEM detection logic, with a solid understanding of MITRE ATT&CK and KQL (or equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands-on SOAR platform configuration Working ...

Senior Operational Technology (OT) Security Consultant

Hiring Organisation
Amentum
Location
Burghfield Common, Berkshire, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
architectures, key components, and common IT/OT protocols. Certifications - Cybersecurity & Infrastructure Security Agency (CISA) Industrial Control Systems (ICS) Training, AttackIQ - MITRE ATT&CK, SANS Global Industrial Cyber Security Professional (GICSP), Certified Information Systems Security Professional (CISSP). Standards, frameworks, and regulatory experience including … Directive, ISA/IEC 62443 Series/ISO 27000 Series, MITRE ATT&CK, NIST Cyber Security Framework (CSF), NCSC CAF, Office for Nuclear Regulation (ONR) Security Assessment Principles, Technical Assessment Guides, and supplementary guidance. Our Culture: Our values stand on a foundation of safety, integrity ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What … Bring: Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs ...

3rd Line Security Analyst

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing … understanding of Azure, AWS and hybrid infrastructure security, with strong knowledge of networking, operating systems and attacker techniques. Practical understanding of MITRE ATT&CK, Cyber Kill Chain, NIST and SANS incident response frameworks. Experience working within regulated and audited environments, including ISO 27001 and Cyber ...

Senior SOC Analyst

Hiring Organisation
Fynity
Location
Aldershot, Hampshire, United Kingdom
Salary
£ 60 K
logsSupporting live incident response, containment and escalationThreat hunting and identifying suspicious or malicious activityImproving detection rules, use cases and playbooksWorking with MITRE ATT&CK and attacker TTPsProducing clear incident reports and communicating findingsContributing to the continued improvement of SOC capabilityWhat I’m Looking ForYou … within a SOC or Security Operations environmentHands-on SIEM experience – Sentinel, Splunk, Elastic or similarGood incident investigation and response experienceUnderstanding of MITRE ATT&CKExperience analysing endpoint, network and log dataGood networking knowledge including TCP/IP, DNS and HTTPExposure to EDR, firewalls, IDS/IPS and wider ...

Senior SOC Analyst

Hiring Organisation
Fynity
Location
Milton Keynes, Buckinghamshire, United Kingdom
Salary
£ 60 K
logsSupporting live incident response, containment and escalationThreat hunting and identifying suspicious or malicious activityImproving detection rules, use cases and playbooksWorking with MITRE ATT&CK and attacker TTPsProducing clear incident reports and communicating findingsContributing to the continued improvement of SOC capabilityWhat I’m Looking ForYou … within a SOC or Security Operations environmentHands-on SIEM experience – Sentinel, Splunk, Elastic or similarGood incident investigation and response experienceUnderstanding of MITRE ATT&CKExperience analysing endpoint, network and log dataGood networking knowledge including TCP/IP, DNS and HTTPExposure to EDR, firewalls, IDS/IPS and wider ...

Microsoft Security & Purview Consultant

Hiring Organisation
Tenth Revolution Group
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
capabilities. Key Responsibilities Review and optimise Microsoft Defender alerting, monitoring, and detection coverage. Conduct gap analysis against security best practices and MITRE ATT&CK. Design and implement Microsoft Purview DLP policies across M365 workloads. Develop sensitivity labels, classification frameworks, and information protection controls. Deliver GDPR-aligned retention … Labels, Auto-Labelling, and Data Classification. Retention Labels, Retention Policies, and Data Lifecycle Management. Detection engineering, alert tuning, incident management, and MITRE ATT&CK mapping. Microsoft 365 Security & Compliance architecture. Strong understanding of GDPR and data governance principles. Experience delivering security and compliance projects ...

24/7 SOC Analyst

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 80 K
network protocols: DNS, HTTP, SMB, LDAP.Operational knowledge of Windows, macOS and Linux.Ability to read and interpret logs from multiple sources.Awareness of MITRE ATT&CK and differentiating legitimate admin activity vs suspicious behaviour.Desirable skills:Experience with Microsoft Sentinel, Google SecOps or other SIEM platforms.Experience with Defender ...

Cyber Technical Lead

Location
Maidenhead, England, United Kingdom
improve future incident response and detection strategies. Contribute to development of detection mechanisms for sophisticated adversarial techniques based on the MITRE ATT&CK framework. Purple Teaming and Advanced Testing Lead purple teaming exercises to integrate offensive and defensive strategies, driving measurable improvements in detection ...

Threat Response Technology and Capabilities Product Owner

Hiring Organisation
MasterCard
Location
Ringwood, Hampshire, United Kingdom
Salary
£ 60 K
Operations’ function.• Define and maintain the RESPOND capability taxonomy, mapped to NIST CSF (Respond/Recover), NIST SP 800-61r3, MITRE ATT&CK, and D3FEND.• Set roadmap and strategy for SOAR platforms (Splunk SOAR, Microsoft Sentinel SOAR/Logic Apps), case management, evidence collection ...

Security Platform Engineer

Hiring Organisation
Frontier Resourcing Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
automation skills (Python, Bash or similar). Experience configuring SIEM platforms. Understanding of security frameworks and threat frameworks such as MITRE ATT&CK . Desirable Experience with Microsoft Defender. Experience with additional SIEM or observability platforms. DevSecOps and CI/CD pipeline security experience. Security ...

Senior Detection Engineer

Location
Guildford, England, United Kingdom
developing detections and integrations within SIEM platforms (e.g., Splunk, Elastic, QRadar), use of Risk-based alerting Familiarity with cybersecurity frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST CSF). Experience with cloud security platforms (e.g., Wiz) and integrating their outputs into detection pipelines. Background ...

Security Engineer

Hiring Organisation
Inspire People
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
/CD principles within secure environments Strong written reporting and technical documentation skills Understanding of threat frameworks such as MITRE ATT&CK Desirable criteria Experience working within Defence, National Security or protectively marked environments Experience with Active Directory, Windows Services, Scheduled Tasks and IIS SIEM ...

Cybersecurity Controls Testing Assistant Manager

Hiring Organisation
Deloitte
Location
Reading, Berkshire, United Kingdom
Salary
£ 100 K
with tools such as ServiceNow, GRC platforms, or compliance testing tools.Nice to HaveFamiliarity with threat and control mapping frameworks such as MITRE ATT&CK Framework.Exposure to threat-informed or red-team-style control testing approaches.Experience with scripting or automation (e.g., PowerShell) to support testing efficiency.Connect ...

Product Technical Lead: Exercise and Training

Hiring Organisation
Thales
Location
Crawley, Sussex, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Purdue model OT resilience principles High-availability operations Critical infrastructure environments Cyber Security Skills: OT threat landscape awareness. Knowledge of: MITRE ATT&CK for ICS Adversary behaviours Industrial ransomware threats OT detection and monitoring concepts Incident response coordination. Risk communication and cyber awareness delivery. ...

Security Engineer

Hiring Organisation
Searchability NS&D
Location
Farnborough, England, United Kingdom
endpoint detection platforms Knowledge of identity and access management, directory services, or privileged access solutions Understanding of security frameworks such as MITRE ATT&CK Experience working in secure or regulated environments Strong problem-solving skills and ability to work at a detailed technical level Familiarity ...