Data Protection & InsiderThreat Specialist Location: Hybrid/UK-based Department: Cyber Security Salary: Competitive + Benefits Head Resourcing is delighted to be working with a financial services client who are looking for a Data Protection & InsiderThreat Specialist to join the team. This … role focuses on the delivery and continuous improvement of data loss prevention (DLP) and insiderthreat controls across on-premise and cloud environments. You’ll be part of a collaborative and innovative environment, where technical curiosity is encouraged and every team member is empowered to contribute to … strategic outcomes. Key Responsibilities Design and implement DLP and insiderthreat policies to safeguard sensitive data. Develop roadmaps and integration plans to enhance security controls. Collaborate with both technical and business stakeholders to ensure data protection requirements are well understood and implemented effectively. Contribute to strategic planning More ❯
and malware triage in support of incident response investigations. Identify, analyze, and assess potential insiderthreats through behavioral analytics, log review, and threat intelligence. Maintain and improve SOC processes and procedures, staying current with the latest security trends and technologies. Assist in developing strategies to handle security … incidents and coordinate responses to insider threats. Support the development and implementation of use cases, detection rules, and playbooks. Perform threat hunting activities to proactively identify threats within the environment. Continuously review and refine insider risk policies to ensure they are effective and up to … Cyber Incident Response Plan. Develop comprehensive and accurate reports and presentations for both technical and executive audiences. Stay up to date with relevant vulnerabilities, threat actors, indicators of compromise (IOCs) tactics, techniques, and procedures (TTPs), and trends, identifying actionable areas of interest and threats. Requirements and Qualifications At least More ❯
and malware triage in support of incident response investigations. Identify, analyze, and assess potential insiderthreats through behavioral analytics, log review, and threat intelligence. Maintain and improve SOC processes and procedures, staying current with the latest security trends and technologies. Assist in developing strategies to handle security … incidents and coordinate responses to insider threats. Support the development and implementation of use cases, detection rules, and playbooks. Perform threat hunting activities to proactively identify threats within the environment. Continuously review and refine insider risk policies to ensure they are effective and up to … Cyber Incident Response Plan. Develop comprehensive and accurate reports and presentations for both technical and executive audiences. Stay up to date with relevant vulnerabilities, threat actors, indicators of compromise (IOCs) tactics, techniques, and procedures (TTPs), and trends, identifying actionable areas of interest and threats. Requirements and Qualifications At least More ❯
Content - maintain the availability of the underlying infrastructure, develop new alerts, field parsers, models and automated playbooks, and integrate new log sources where appropriate. Threat Intelligence & Threat Hunting - provide, develop and integrate external threat intelligence data into the team's detection capabilities; perform proactive threat hunts … team's detection capabilities, develop scenario-based training, and organise purple team exercises, both in-house and with third-party providers. InsiderThreat - maintain and develop the Data Loss Prevention policies in line with the company's data classification requirements, and implement exceptions for business-approved procedures … where required. Improve the detection and response capabilities of the remaining security controls with a focus on insider threats. Escalation Analyst - support analysts during incident response and take the lead in more complex investigations; validate true positive security incidents, ensuring all playbook actions have been completed reliably with More ❯
guiding investigations, and helping shape the future of our security strategy. If you’re passionate about cyber security and thrive in a fast-paced, threat-driven environment, we want to hear from you. 🔐 What You’ll Be Doing Monitor & Detect: Identify and respond to security alerts from SIEM, IDS …/IPS, EDR, and other tools. Incident Response: Investigate threats and escalate incidents, ensuring rapid containment and resolution. Threat Hunting: Proactively search for hidden threats and conduct forensic investigations. Lead & Mentor: Manage SOC analysts and support their technical and professional growth. Tool Optimisation: Oversee and fine-tune security platforms … stay ahead of emerging threats, tactics, and techniques. External Engagement: Work with partners to strengthen the defensive posture and maintain compliance. InsiderThreat Management: Lead investigations and support sensitive case handling. 🛠 What You Bring to the Role Must-Have Experience: Strong background in cyber security, protective monitoring More ❯
Symantec, Forcepoint, or similar). Familiarity with data classification, data handling standards, and regulatory requirements (e.g., NYDFS, GDPR). Knowledge of insiderthreat detection and user behavior analytics (UBA). Exposure to security incident and event management (SIEM) tools. Core Values Love what you do: We show More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insiderthreats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk management team with data requests to support cyber risk management tasks. More ❯
Cambridge, Cambridgeshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insiderthreats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk management team with data requests to support cyber risk management tasks. More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insiderthreats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk management team with data requests to support cyber risk management tasks. More ❯
Leeds, Yorkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insiderthreats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk management team with data requests to support cyber risk management tasks. More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
Assist Deloitte Global and Deloitte firms with data extraction for ISO and PCI audit requirements. Support eDiscovery teams by providing data relating to insiderthreats and legal matters. Build and maintain PowerBI dashboards. Support the cyber risk management team with data requests to support cyber risk management tasks. More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
Experian Ltd
Fusion Centre (CFC) uses modern technology and a team of elite security professionals to detect and investigate threats worldwide across cybersecurity, insiderthreat, and physical risk domains. We are looking for a dynamic Senior CFC Programme Manager to lead programmes that create relevant improvements in security maturity … position (with expectations of international travel) reporting to Cyber Fusion Center SVP Main Responsibilities:- Programme Leadership & Delivery Lead the execution of the CFC's Threat-Informed Defence strategy roadmap, ensuring agreement on organizational goals. Oversee the planning, prioritization, and delivery of projects, ensuring adherence to established processes and standards. … decisions and improve outcomes. Review and manage material changes to CFC processes, ensuring clarity, understanding and agreement. Collaboration Build relationships across cybersecurity domains, including threat intelligence, compliance, engineering, and incident response. Facilitate agreement and knowledge sharing across teams to support cohesive operations. Administrative & Evolving Responsibilities Provide administrative support for More ❯
possible and to prevent any downtime or impact to business operations. CyberClan investigates and assists clients with all types of security breaches, including insiderthreats, unauthorized access, and malicious code. Some breaches are publicly known, but many remain hidden. We analyze client data in a secure forensic lab More ❯
possible and to prevent any downtime or impact to business operations. CyberClan investigates and assists clients with all types of security breaches, including insiderthreats, unauthorized access, and malicious code. Some breaches are publicly known, but many remain hidden. We analyze client data in a secure forensic lab More ❯
committed to on-going self-development and education and possess strong technical acumen and customer service skills. Responsibilities Ensure data is protected from insiderthreats, cyber-attacks, and policy violations Onboard Customers to Varonis platforms and deliver on-going value and support Ensure Customer success through frequent proactive More ❯
be progressing your career at a global, hugely profitable, Investment Management firm. As a Cyber Defence Analyst you will take a proactive approach to threat hunting and security incident response. You'll play a key role in detection enhancements, improvements to standard operating procedures and will collaborate with internal … in Security Operations, CSIRT or similar role You have experience of building out functions of a Cyber Defence Team e.g. insider risk, threat intelligence, breach attack simulation You have a strong knowledge of SIEM and deep Splunk experience You have a good understanding of various security infrastructure More ❯
Security Engineer Investigator, Insider Trust The Insider Trust team is looking for a Security Engineer to investigate, build and improve internal tools and systems to identify malicious activities related to insider threats. Candidates are expected to analyze and monitor internal tools, hunt for insider … skills, working closely with engineering teams, Human Resources, and Legal teams. Responsibilities Develop understanding of problem space and provide technical direction during investigations and threat hunts Develop workflows and automations to streamline signals, hunts and investigative processes Perform analysis of logs from a variety of sources (e.g., individual host … through logging and automation Minimum Qualifications Bachelor's degree in Computer Science, Engineering, or equivalent experience 4+ years of experience in Detection & Response Engineering, Threat Intelligence or similar Security Engineering role Experience conducting technical security investigations (response, forensics, log analysis) Experience interpreting information from multiple sources and working with More ❯
of the Fortune 100 and many global companies are using our platform to overcome challenges such as SaaS application attacks, sensitive data exposure, insiderthreats, and so much more. We are pioneers in a new space, where solutions and best practices aren't yet defined. The problems our … customers are global enterprises who store and process their business-critical data in SaaS applications. We deliver frictionless security that combines our industry-leading threat research, expertise, and product depth, so that our customers are productive and cyber resilient. What We Value at AppOmni Our team is collaborative and More ❯