1 to 25 of 35 MITRE ATT&CK Jobs in the South East

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
delivered in a consistent and scalable way. Working directly with customers, you will define detection strategies, design use cases aligned to MITRE ATT&CK, and guide improvements in visibility, coverage and response maturity. You will work closely with platform onboarding and engineering teams, supplementing them … rulesets across SIEM and XDR platformsDevelop and tune detection logic using KQL or equivalent query languagesDesign detection use cases aligned to MITRE ATT&CK and real-world attack techniquesMap customer log sources to detection use cases to assess coverage and identify gapsDesign and implement SOAR ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
SIEM and XDR platforms Develop and tune detection logic using KQL or equivalent query languages Design detection use cases aligned to MITRE ATT&CK and real-world attack techniques Map customer log sources to detection use cases to assess coverage and identify gaps Design … consultant Lead workshops covering detection engineering, use case design and SOC maturity Guide customers on improving detection coverage and aligning to MITRE ATT&CK Clearly explain detection strategies, gaps and recommendations to both technical and non-technical stakeholders Work closely with platform onboarding and engineering ...

Senior Security Engineering Consultant

Hiring Organisation
Matchtech
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
rulesets across SIEM and XDR platformsDevelop and tune detection logic using KQL or equivalent query languagesDesign detection use cases aligned to MITRE ATT&CK and real-world attack techniquesMap customer log sources to detection use cases to assess coverage and identify gapsDesign and implement SOAR … trusted technical consultantLead workshops covering detection engineering, use case design and SOC maturityGuide customers on improving detection coverage and aligning to MITRE ATT&CKClearly explain detection strategies, gaps and recommendations to both technical and non-technical stakeholdersWork closely with platform onboarding and engineering teams to ensure smooth ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations, and engaging with … customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
will be responsible for producing an executive summary‐style report, which will include a timeline of key events mapped to the MITRE ATT&CK framework. This comprehensive report will serve as a valuable resource for stakeholders, highlighting the steps taken to combat the cybersecurity incident … circumstances``` Occasionally willing to begin work early and/or stay late when warranted for customer engagements Strong grasp of the MITRE ATT&CK framework Enjoy mentoring and assisting in the development of junior analysts A team‐player attitude with a willingness to share knowledge ...

SecOps Engineering Lead

Location
Abingdon, England, United Kingdom
Cloud and Entra ID Protection. Own detection engineering: write and tune KQL analytics rules and hunting queries, map coverage to MITRE ATT&CK, track false‐positive rates, and retire rules that no longer earn their place. Automate response with automation rules and Logic Apps playbooks … rules and Logic Apps playbooks. Strong KQL and detection engineering: you can write, tune and defend an analytics rule mapped to MITRE ATT&CK, and explain why it fires and why it does not. Incident response on a cloud platform: triage, containment, evidence collection ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
will be responsible for producing an executive summary-style report, which will include a timeline of key events mapped to the MITRE ATT&CK framework. This comprehensive report will serve as a valuable resource for stakeholders, highlighting the steps taken to combat the cybersecurity incident … circumstances Occasionally willing to begin work early and/or stay late when warranted for customer engagements Strong grasp of the MITRE ATT&CK framework Enjoy mentoring and assisting in the development of junior analysts A team-player attitude with a willingness to share knowledge ...

2nd/3rd Line Security Analyst - Reading

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum
sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python, Logic Apps, APIs … security incidents from triage through to closure Hands-on experience writing and tuning SIEM detection logic, with a solid understanding of MITRE ATT&CK and KQL (or equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands-on SOAR platform configuration Working ...

SIEM Content Developer

Hiring Organisation
Fuel Recruitment
Location
Reading, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 450 Daily
within ArcSight and Google SecOps. Create and maintain use cases, dashboards, reports and threat detection content. Develop behavioural detections aligned to MITRE ATT&CK and threat intelligence. Onboard, parse and normalise log sources to improve visibility and detection coverage. Work closely with SOC teams … SecOps detection rules using YARA-L. Strong understanding of security monitoring, threat detection and SOC operations. Experience mapping detections to the MITRE ATT&CK framework. Experience integrating and analysing security logs from multiple sources. Knowledge of SIEM content life cycle management and detection optimisation. ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What … Bring: Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs ...

Senior Security Operations Centre Analyst

Location
Farnborough, England, United Kingdom
Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What … Bring: Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing … understanding of Azure, AWS and hybrid infrastructure security, with strong knowledge of networking, operating systems and attacker techniques. Practical understanding of MITRE ATT&CK, Cyber Kill Chain, NIST and SANS incident response frameworks. Experience working within regulated and audited environments, including ISO 27001 and Cyber ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
HTTP, SMB, LDAP. Operational knowledge of Windows, macOS and Linux. Ability to read and interpret logs from multiple sources. Awareness of MITRE ATT&CK and differentiating legitimate admin activity vs suspicious behaviour. Experience with Microsoft Sentinel, Google SecOps or other SIEM platforms. Experience with Defender ...

Senior SOC Analyst

Hiring Organisation
Network IT
Location
Hanslope, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 75 Hourly
activities during major cyber security incidents. Experience contributing to the development of monitoring use cases and detection improvements. Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. ...

Lead SOC Analyst - DV Cleared

Hiring Organisation
Network IT
Location
Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 80 Hourly
activities during major cyber security incidents. Experience contributing to the development of monitoring use cases and detection improvements. Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. ...

Lead SOC Analyst - DV Cleared

Hiring Organisation
Network IT
Location
Buckinghamshire, Milton Keynes, United Kingdom
Employment Type
Temporary
Salary
£80/hour
activities during major cyber security incidents. Experience contributing to the development of monitoring use cases and detection improvements. Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. ...

Threat Analyst 2

Location
Oxford, England, United Kingdom
standard business days including weekends and holidays - our MDR service is 24x7x365 (Hours are standard business hours) Desirable Knowledge of MITRE ATT&CK framework Experience with SQL query construction Experience with OSQuery Programming and scripting skills - proficient knowledge of PowerShell Experience with enterprise information security ...

Senior Cyber Threat Detection and Response Analyst

Location
Portsmouth, England, United Kingdom
solutions. Experience analysing logs, alerts, security telemetry and security incident data. Strong understanding of attacker tactics, techniques and procedures, including the MITRE ATT&CK framework. Qualifications for the Senior Cyber Threat Detection and Response Analyst Essential: Relevant cyber security experience supported by industry-recognised cyber ...

Security Engineering Consultant (Detection Engineering / Microsoft Sentinel)

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £85,000 per annum
Build and tune detection rulesets in KQL (or equivalent) across SIEM and XDR platforms Design use cases aligned to MITRE ATT&CK and assess coverage against customer log sources Develop SOAR automations, integrations and incident response playbooks Deliver detection as code pipelines with structured versioning ...

Senior Cyber Threat Intelligence Analyst

Location
Portsmouth, England, United Kingdom
within Cyber Security Operations, Threat Intelligence or Incident Response environments. Strong understanding of the Threat Intelligence Lifecycle, Cyber Kill Chain and MITRE ATT&CK Framework. Experience analysing security events, threat intelligence data and cyber threat trends. Strong research, analytical and critical thinking skills. Experience producing ...

Lead SOC Analysts/Shift Leads (DV Cleared)

Hiring Organisation
Certes Computing Ltd
Location
Milton Keynes, Buckinghamshire, UK
Employment Type
Full-time
/7 operational environment. Professional certifications such as Microsoft SC-200, GIAC GCIH, GCIA, CompTIA CySA+ or equivalent. Any knowledge of MITRE ATT&CK or equivalent is desirable. If this role is of interest, please email your CV to: (see below) Certes Computing ...

3rd Line Security Analyst - Hybrid - Reading Sentinel Defender XDR CrowdStrike

Hiring Organisation
Global Technology Solutions Ltd
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£60,000
Advanced KQL; PowerShell and/or Python automation. Entra ID, Conditional Access, Intune and Microsoft 365 security. Cloud and networking knowledge; MITRE ATT&CK, NIST and SANS frameworks. CISSP desirable. Benefits 25 days holiday, holiday trading, volunteer day, pension, life assurance, employee assistance, mentoring ...

Information Security Analyst

Location
Farnborough, England, United Kingdom
Entra, etc. In depth experience securing a hybrid infrastructure Strong Cloud Experience with either AWS, Azure, or GCP. REQUIRED SKILLS Knowledge MITRE ATT&CK, and Kill Chain Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods Expert IPv4 Networking fundamental skills ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
rotation Desired: Hands-on experience with EDR, SIEM, and forensic collection tools Familiarity with OSQuery, SQL, or KQL Knowledge of MITRE ATT&CK and incident response frameworks Industry certifications such as GCIH, GCED, CompTIA Security+, or equivalent Experience contributing to playbooks, detection tuning, or service ...