51 to 75 of 136 Cyber Threat Intelligence Jobs in the UK excluding London

Detection Engineer (Cybersecurity)

Location
Glasgow, Scotland, United Kingdom
seeking someone to join the global Threat Hunt and Cyber Detection (THCD) team as a Detection Engineer. The THCD mission is to seek out attacks against the Morgan Stanley network, to engineer detection strategies, and to reduce risk to Morgan Stanley assets. As a new Threat Hunt … will be tasked with developing and maintaining detections, triage cases and alerts and enhance our bespoke tools used to defend Morgan Stanley Network. The Cyber, Data, Risk and Resilience (CDRR) division provides first-line defences for information and cyber security, fraud, resilience, response and recovery, and technology risk ...

Head of AppSec

Hiring Organisation
Hackajob Ltd
Location
Sheffield, South Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
influential matrixed leadership role, you will bridge the gap between engineering velocity and rigorous financial-grade security. Success requires seamless cross-functional orchestration across Cyber, CTO (Chief Technology Officer), CIO (Chief Information Officers in Global Businesses), and the CRO (Chief Risk Officer) organizations to embed security into … learn, and think enterprise grade and demonstrates ambition in problem solving. Matrixed Collaboration & Stakeholder Management Cross-Functional Orchestration: Act as the central nexus between Cyber (threat intelligence and architecture), CTO/CIO (engineering, platform, and infrastructure delivery), and CRO (regulatory compliance and operational risk). Influence Without ...

Lead Technical Engineer

Hiring Organisation
Anson Mccade
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£790 per day
previous clients. Strong hands-on experience designing, building, and operating SOC technology, including at least two of: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence . Proven delivery record in SIEM onboarding and configuring applications for high data-ingest rates (Cloud and/or On-Prem). Technical … privilege, encryption). Networking: OSI and TCP/IP models, IP addressing, subnetting, routing protocols, LAN/WAN configurations, ACLs, and VLANs. Cybersecurity Fundamentals: Threat mitigation, risk assessment, vulnerability management, threat intelligence, and TTPs (Tactics, Techniques, and Procedures). Systems Administration: Endpoint security/EDR, user access ...

SIEM Security Engineer

Location
Birmingham, England, United Kingdom
Description Job Title: SIEM Security Engineer Req ID: 62443 Job Function: Cyber Security Posting Start Date: 03/09/2026 Posting End Date: 01/10/2026 Division: Networks Job Location: GBR-Birmingham-Three Snowhill Advertised Salary: Competitive with Great Benefits Job Req ID: 62443 Posting Date … maintaining the ingestion of our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. The role is hybrid (3 days in office) & based in Birmingham What you’ll be doing Data ...

Advisory PSIRT Engineer

Location
Farnborough, England, United Kingdom
compliance, vulnerability reporting readiness, and regulatory response activities. Key Responsibilities Vulnerability Assessment & Triage: Evaluate product security vulnerabilities, exploits, and incidents from external researchers, threat intelligence, public disclosures, and internal testing to determine severity, risk, and business impact. PSIRT Case Management: Manage the end-to-end lifecycle of vulnerability … customers. Cross-Functional Communication: Manage internal and customer-facing messaging to ensure accurate, consistent, and timely communication regarding critical vulnerabilities and product security issues. Cyber Resilience Act (CRA) Compliance: Assist with CRA reporting requirements by identifying actively exploited vulnerabilities or severe incidents, preparing regulatory reports, and participating in readiness ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
excellent opportunity for someone early in their SOC career, or for an individual with a strong infrastructure and networking background looking to transition into cyber security operations. You will be working across a diverse set of customer environments as part of our Security Operations Centre, focusing on investigation, understanding …/XSIAM to understand what has happened, how activity progressed and what actions need to be taken. You will be supported through structured training, cyber ranges, hands‐on exposure to modern SOC technologies and real investigation experience to help you grow quickly. You will join a modern, continuously evolving ...

Incident Response Analyst

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent
overview: We have a new opportunity for an Incident Response Analyst to join our Security and Resilience function in AXA UK. Youll respond to Cyber Security incidents performing forensic investigations and providing cyber threat intelligence services. Key responsibilities: Acting as an escalation point … Performing in-depth analysis of security events utilising a range of security tools Supporting the wider team in process improvement, detection content tuning, and threat analysis Working with a range of Security and Risk colleagues to ensure all identified risks are identified and managed appropriately Work arrangements ...

Lead Technical Engineer (SOC)

Hiring Organisation
Stott & May Professional Search Limited
Location
Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £800 per day
criteria, completion of planned work, and rollback plans. Review and approve design, deployment, configuration, and administration documentation. Act as a generalist technical SME across cyber monitoring technologies and security tools. Key skills & experience 5-8 years of relevant experience in technical engineering, SOC deployment, or security infrastructure. Proven experience … designing, building, and deploying SOC solutions for previous clients. Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong experience deploying and configuring applications in cloud and/or on-premises environments, particularly for high data ingest rates. Proven experience leading or conducting SIEM ...

Security Operations Center Architect

Location
Guildford, England, United Kingdom
full lifecycle, from conceptualisation and design through to build, deployment and operation. Design and integrate security technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence . Assess existing SOC capabilities and recommend improvements to increase security maturity. Develop scalable, resilient and secure on-premise and cloud architectures … complex enterprise environments. Strong experience designing and deploying SOC solutions . Hands-on knowledge of at least two of: SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence . Strong understanding of SOC operating models, security processes, people and governance . Experience with cloud and on-premise security architecture . ...

Lead Cyber Security Risk Manager

Hiring Organisation
DVSA.GOV
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£44241/annum
Lead Cyber Security Risk Manager Location: Bristol, Swansea, Leeds, Nottingham, Newcastle, Oldham (Chadderton), Birmingham (Garretts Green) or Uxbridge. Salary : £44,241 per annum Vacancy Type: Permanent, Flexible working, Full-time, Job share, Part-time Closing Date: Sunday 11th October 2026 The Lead Cyber Security Risk Manager will lead … collaborating with various departments to protect sensitive data and systems. The ideal candidate will have deep knowledge of cybersecurity frameworks, risk assessment methodologies, and threat management, with the ability to communicate effectively with both technical and non-technical stakeholders. The position is critical to safeguarding the agency’s mission ...

Lead Cyber Security Risk Manager

Hiring Organisation
DVSA.GOV
Location
Birmingham, West Midlands (County), United Kingdom
Employment Type
Permanent
Salary
£44241/annum
Lead Cyber Security Risk Manager Location: Bristol, Swansea, Leeds, Nottingham, Newcastle, Oldham (Chadderton), Birmingham (Garretts Green) or Uxbridge. Salary : £44,241 per annum Vacancy Type: Permanent, Flexible working, Full-time, Job share, Part-time Closing Date: Sunday 11th October 2026 The Lead Cyber Security Risk Manager will lead … collaborating with various departments to protect sensitive data and systems. The ideal candidate will have deep knowledge of cybersecurity frameworks, risk assessment methodologies, and threat management, with the ability to communicate effectively with both technical and non-technical stakeholders. The position is critical to safeguarding the agency’s mission ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
Architect Location: Guildford Hybrid Salary: £80,000 £100,000 We are seeking an experienced Lead SOC Architect to join a leading organisation delivering complex cyber and security solutions across highly secure environments. Youll lead the architecture and delivery of Security Operations Centre (SOC) solutions , working directly with senior clients … process, technology, services and infrastructure . Develop CONOPS and high- and low-level designs. Work with technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence . Design on-premise and cloud security architectures . Conduct risk assessments and support vulnerability management. Research and evaluate new technologies ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
client, a leader in the cyber security sector, is currently seeking a Senior Security Engineering Consultant to join their team. This permanent role is a hands-on technical position within the Security Operations domain, focused on helping customers improve and automate their SOC functions, tooling, and detection capabilities. … identify gaps Design and implement SOAR automations, integrations and response workflows Develop and document customer incident response playbooks aligned to detection outputs Translate threat intelligence and operational learnings into improved detections and automations Deliver detection as code pipelines, including structured use case development and versioning approaches Produce clear ...

Cyber Incident Responder - OT Technology

Location
West Midlands, England, United Kingdom
Security Operations function, offering genuine ownership over strategy, tooling, governance and incident response for OT/IoT environments. You'll work cross-functionally with Threat Intelligence, Incident Response, Vulnerability Management, GRC and Security Architecture, as well as engineering and site teams, to embed proportionate, pragmatic security controls across … remote-access requirements Lead OT/IoT vulnerability identification, assessment, prioritisation and remediation Support incident preparation, investigation, containment, recovery and lessons-learned activities Translate threat intelligence into actionable detection, prevention and mitigation requirements Partner with IT, engineering, site leads, asset owners, suppliers and business stakeholders Assess new projects ...

Senior SOC Analyst

Location
Southampton, England, United Kingdom
onsite role, shift work (4 on, 4 off) SC clearance required, with eligibility for DV About the Client Our client is a well-established cyber security organisation delivering specialist security services across highly secure environments. Their Security Operations Centre plays a vital role in protecting critical infrastructure from evolving … cyber threats. Due to continued growth, they are looking to expand their SOC team with an experienced Senior SOC Analyst. The Benefits Shift allowance included within the package Opportunity to work on high profile national security programmes Ongoing training and professional development Support towards further cyber security certifications ...

Senior Cyber Security Analyst

Location
Leicester, England, United Kingdom
reducing technical debt and introducing a product operating model, we deliver resilient, user‐focused services that enable innovation across AI, automation, endpoint management and cyber security. Our mission is to provide secure, streamlined, future‐ready digital services that support excellence across the university. Senior Cyber Security Analyst … seeking a proactive Senior Cyber Security Analyst to help protect the university’s systems, services, data and cloud environments. You will lead the detection, investigation and response to cyber threats, strengthen security controls, manage cyber risks and support the secure delivery of digital services. Working across technical ...

Solution Architect

Location
Salisbury, England, United Kingdom
prioritisation, remediation and reporting. Develop security solutions for offline and air-gapped environments, including controlled update, patch and signature distribution. Establish secure mechanisms for threat intelligence ingestion and data transfer within disconnected environments. Define and implement vulnerability scanning regimes and remediation processes. Advise on endpoint hardening, firewall rules … Endpoint hardening and security controls Experience working within offline/air-gapped environments. Strong understanding of: Secure patching and update models, AV signature management, Threat intelligence management, Controlled data transfer mechanisms and Vulnerability assessment and remediation Experience producing formal technical documentation, including High-Level Designs (HLDs), Low-Level ...

Security Architect

Hiring Organisation
Synergize Consulting Ltd
Location
Wiltshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Daily
prioritisation, remediation and reporting. Develop security solutions for offline and air-gapped environments, including controlled update, patch and signature distribution. Establish secure mechanisms for threat intelligence ingestion and data transfer within disconnected environments. Define and implement vulnerability scanning regimes and remediation processes. Advise on endpoint hardening, Firewall rules … Endpoint hardening and security controls Experience working within offline/air-gapped environments. Strong understanding of: Secure patching and update models, AV signature management, Threat intelligence management, Controlled data transfer mechanisms and Vulnerability assessment and remediation Experience producing formal technical documentation, including High-Level Designs (HLDs), Low-Level ...

Information Security Analyst

Location
Liverpool, England, United Kingdom
security awareness. You will work closely with our managed Security Operations Centre, internal technology teams and business stakeholders to identify, investigate and reduce cyber security risks across the Club. This hybrid role is based in Liverpool, with three days per week on‐site, and would suit an analyst … built a strong foundation in information security or cyber operations and is looking for a broader position with greater visibility, ownership and opportunity to influence security maturity across a complex and high‐profile organisation. What will you be doing? Support the management, investigation and coordination of security alerts, incidents ...

Cyber Incident Manager (CIM)

Location
Welwyn Garden City, England, United Kingdom
About the role As a Cyber Incident Manager at Tesco, you will lead the coordinated response to cyber incidents, protecting the integrity of the retail ecosystem that serves millions of customers every day. Acting as a central orchestrator, you will ensure swift, structured, and effective incident resolution, minimising … operational disruption and customer impact. This role is critical to maintaining trust in Tesco's digital platforms by driving proactive, intelligence-led response and embedding continuous improvement across the cyber defence lifecycle. You will operate at the intersection of technology, business impact, and customer outcomes, championing innovation ...

Cyber Security Analyst

Hiring Organisation
The Portfolio Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£50000 - £55000/annum
InfoSec Team and to act as a first point of escalation and support for our Junior and Graduate analysts. Reporting to the Associate Director - Cyber Security, you will work closely with other team members, IT colleagues, and the wider business to ensure a consistent approach to information and cyber … best practice, apply the principles of layered security, and serve as a trusted resource to the wider business on all matters of information and cyber security. This is a customer-facing role, so you will be a strong communicator, able to explain complex concepts clearly to both technical ...

Lead SOC Architect

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
Location(s):UK, Europe & Africa : UK : Guildford || UK, Europe & Africa : UK : Frimley BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces … you. Role Description BAE Systems have been contracted to undertake the design and build of a dedicated Security Operations Centre (SOC) to support the cyber defence of a major international defence programme. The information, systems and networks to be protected will be a mix of Microsoft Cloud services ...

Security Architect

Hiring Organisation
Hackajob Ltd
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
Location(s):UK, Europe & Africa : UK : Guildford || UK, Europe & Africa : UK : Frimley BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces … you. Role Description BAE Systems have been contracted to undertake the design and build of a dedicated Security Operations Centre (SOC) to support the cyber defence of a major international defence programme. The information, systems and networks to be protected will be a mix of Microsoft Cloud services ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
Defend Critical Infrastructure. Hunt Threats. Make a Real Impact. Cyber threats never stand stilland neither do we. We're looking for a Senior Security Operations Centre (SOC) Analyst to join our growing Cyber Security team and play a key role in protecting some of the UK's most … critical organisations. This is your opportunity to work at the frontline of cyber defence, investigating real-world threats, shaping detection capabilities, and helping drive the evolution of a mature and high-performing SOC. You'll be joining a collaborative team of cyber specialists who are passionate about defending ...

Threat Intelligence Lead — Hybrid, Threat Hunts & Insights

Location
Bracknell, England, United Kingdom
John Lewis Partnership is seeking a Senior Information Security Analyst to join the Threat Defence team in Bracknell. You will identify, understand and report on cyber threats, coordinate with vulnerability management, and deliver intelligence insights to partners and stakeholders. You will design and run Threat Hunts ...