IP, VPNs, and firewalls. Your expertise in incident response and threat intelligence analysis is essential, as is your familiarity with the MitreAtt&ck framework and advanced threat detection techniques. Strong analytical and problem-solving skills are indispensable, as is the ability to offer mentorship … platforms (Microsoft Sentinel, Splunk) Leading incident response and fortifying detection and containment strategies Tuning and maintaining detection rules, leveraging frameworks like MitreAtt&ck Collaborating with colleagues to enhance the Security Operations Centre's capabilities Staying abreast of cyber threat developments and contributing to best More ❯
IP, VPNs, and firewalls. Your expertise in incident response and threat intelligence analysis is essential, as is your familiarity with the MitreAtt&ck framework and advanced threat detection techniques. Strong analytical and problem-solving skills are indispensable, as is the ability to offer mentorship … platforms (Microsoft Sentinel, Splunk) Leading incident response and fortifying detection and containment strategies Tuning and maintaining detection rules, leveraging frameworks like MitreAtt&ck Collaborating with colleagues to enhance the Security Operations Centre's capabilities Staying abreast of cyber threat developments and contributing to best More ❯
protocols and infrastructure (e.g. TCP/IP , VPNs , firewalls ). Skilled in incident response and threat intelligence analysis . Familiarity with MitreAtt&ck framework and advanced threat detection techniques. Excellent analytical and problem-solving capabilities. Able to provide mentorship and leadership within a SOC … . Leading incident response and driving improvements in detection and containment strategies. Tuning and maintaining detection rules, using threat frameworks like MitreAtt&ck . Collaborating with colleagues to enhance the overall capability and resilience of the Security Operations Centre . Staying abreast of cyber More ❯
Gosport, Hampshire, South East, United Kingdom Hybrid / WFH Options
Walsh Employment
of network protocols and infrastructure (e.g. TCP/IP , VPNs , firewalls ) Skilled in incident response and threat intelligence analysis Familiarity with MitreAtt&ck framework and advanced threat detection techniques Excellent analytical and problem-solving capabilities Able to provide mentorship and leadership within a SOC … Splunk ) Leading incident response and driving improvements in detection and containment strategies Tuning and maintaining detection rules, using threat frameworks like MitreAtt&ck Collaborating with colleagues to enhance the overall capability and resilience of the Security Operations Centre Staying abreast of cyber threat developments More ❯
of network protocols and infrastructure (e.g. TCP/IP , VPNs , firewalls ) Skilled in incident response and threat intelligence analysis Familiarity with MitreAtt&ck framework and advanced threat detection techniques Excellent analytical and problem-solving capabilities Able to provide mentorship and leadership within a SOC … Splunk ) Leading incident response and driving improvements in detection and containment strategies Tuning and maintaining detection rules, using threat frameworks like MitreAtt&ck Collaborating with colleagues to enhance the overall capability and resilience of the Security Operations Centre Staying abreast of cyber threat developments More ❯
Gosport, Hampshire, South East, United Kingdom Hybrid / WFH Options
Walsh Employment
of network protocols and infrastructure (e.g. TCP/IP , VPNs , firewalls ) Skilled in incident response and threat intelligence analysis Familiarity with MitreAtt&ck framework and advanced threat detection techniques Excellent analytical and problem-solving capabilities Able to provide mentorship and leadership within a SOC … Splunk ) Leading incident response and driving improvements in detection and containment strategies Tuning and maintaining detection rules, using threat frameworks like MitreAtt&ck Collaborating with colleagues to enhance the overall capability and resilience of the Security Operations Centre Staying abreast of cyber threat developments More ❯
incidents using groundbreaking tools like Microsoft Sentinel and Splunk. Leading incident response. Fine-tuning detection rules and strategies with frameworks like MitreAtt&ck to stay ahead of new threats. Craft the future of our Security Operations Centre, ensuring we remain adaptable to new challenges. … applications (TCP/IP, VPNs, firewalls, etc.). Problem-solving skills to assess complex threats and deliver actionable insights. Experience with MitreATT&CK, incident response, and threat intelligence. It would be great if you had: Cyber Security certifications like CRT or OSCP. Hands-on More ❯
Employment Type: Permanent
Salary: 25 days holidays, 6% Contributory pension, 4 x life Insurance
Splunk) Leading incident response and driving improvements in detection and containment strategies Tuning and maintaining detection rules, using threat frameworks like MitreAtt&ck Collaborating with colleagues to enhance the overall capability and resilience of the Security Operations Centre Staying abreast of cyber threat developments … of network protocols and infrastructure (eg TCP/IP, VPNs, Firewalls) Skilled in incident response and threat intelligence analysis Familiarity with MitreAtt&ck framework and advanced threat detection techniques Excellent analytical and problem-solving capabilities The ability to provide mentorship and leadership within a More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Walsh Employment
people management or line management experience Strong familiarity with SIEM platforms including Microsoft Sentinel and Splunk Knowledge and use of the MitreAtt&ck Framework for detection and threat analysis In-depth understanding of: Client-server applications and multi-tier web environments Relational databases , firewalls … Enhancing team knowledge across SOC tooling , detection methodologies , and threat triage Analysing and optimising detection rules and use cases based on MitreAtt&ck Maintaining detailed and up-to-date incident documentation , findings, and mitigation strategies Acting as a representative of the SOC in key More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Walsh Employment
people management or line management experience Strong familiarity with SIEM platforms including Microsoft Sentinel and Splunk Knowledge and use of the MitreAtt&ck Framework for detection and threat analysis In-depth understanding of: Client-server applications and multi-tier web environments Relational databases , firewalls … Enhancing team knowledge across SOC tooling , detection methodologies , and threat triage Analysing and optimising detection rules and use cases based on MitreAtt&ck Maintaining detailed and up-to-date incident documentation , findings, and mitigation strategies Acting as a representative of the SOC in key More ❯
a leadership role Strong hands-on knowledge of SIEM, EDR, SOAR, IDS/IPS, Firewalls, and cloud security Deep understanding of MITREATT&CK, NIST, ISO 27001, CIS frameworks Proven experience in incident response, threat intelligence, and multi-tenant SOCs Excellent leadership, communication, and client More ❯
of network protocols and infrastructure (e.g. TCP/IP, VPNs, firewalls) Skilled in incident response and threat intelligence analysis Familiar with MitreAtt&ck framework and advanced threat detection techniques Excellent analytical and problem-solving capabilities Able to provide mentorship and leadership within a SOC More ❯
expected outputs of security solutions from endpoint to gateway. Knowledge and understanding of frameworks such as the Cyber Kill Chain or MITREATT&CK matrix. Our recipe for leadership At Virgin Atlantic, our leaders empower teams to thrive through collaboration, innovation, and excellence. Explore our More ❯
vendor certification of administrator. Familiarity with different security attack vectors and means of protection. Knowledge of common attack frameworks such as MITREATT&CK, TTPs, and how they are mapped to detection rules. Familiarity with security monitoring, incident detection, and incident response best practices. Strong More ❯
CrowdStrike, SentinelOne, Darktrace, Vectra etc. Strong experience in scripting (e.g. Python, PowerShell) and automation/integration of SOC tools. Familiarity with MITREATT&CK, threat detection engineering and response workflows. Demonstrated client-facing experience in a consulting or pre-sales engineering capacity. Strong communication skills More ❯
Bracknell, Berkshire, United Kingdom Hybrid / WFH Options
ENGINEERINGUK
EDR tools, especially SentinelOne. Proven experience working in agile teams, following Scrum or Kanban methodologies. Knowledge of security frameworks such as MitreATT&CK and NIST. Desirable Skills: Experience with SIEM tools and detections, particularly Google Chronicle. Knowledge of network security principles, Zero Trust, and More ❯
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Sopra Steria Limited
What youll bring: Experience in Security Operations Centre. Demonstrable experience of Managing Microsoft Sentinel and Splunk implementations. Knowledge and experience with MitreAtt&ck Framework. Solid grasp of client-server applications, multi-tier web applications, relational databases, firewalls, VPNs, and enterprise AntiVirus products. Deep technical More ❯
Employment Type: Permanent
Salary: 25 days holidays, 6% Contributory pension, 4 x life Insurance
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
What you should bring to the role: Minimum of 3 years in a cyber threat intelligence environment Strong knowledge of the MITREATT&CK framework Experience researching threat actor TTPs and evaluating geopolitical, commercial, and environmental threat impacts Experience remediating cyber risks in complex and More ❯
or more major SIEM platforms (e.g. Splunk, Sentinel etc.) Deep understanding of log ingestion, parsing, normalisation and enrichment Strong grasp of MITREATT&CK framework, threat detection and alert logic Solid scripting/automation skills (e.g., Python, PowerShell, Bash) Experience with cloud logging and monitoring More ❯
CTI), preferably in financial services Proven ability to analyze, interpret, and report on cyber threats with business impact assessments. Familiarity with MITREATT&CK, threat actor TTPs, and threat modeling frameworks. Experience monitoring global threat landscapes and geopolitical risks. Excellent written and verbal communication skills More ❯
Maidenhead, Berkshire, United Kingdom Hybrid / WFH Options
Damco Spain SL
to improve future incident response and detection strategies. Contribute to development of detection mechanisms for sophisticated adversarial techniques based on the MITREATT&CK framework. Purple Teaming and Advanced Testing Support the planning and response of purple teaming activities. Develop scenarios and artifacts that mimic More ❯
an Intermediate level. Exposure to application security testing (source code review, threat modeling, security testing). Understanding of OWASP, CVSS, the MITREATT&CK framework, and the software development lifecycle (SLDC). What is it like to work here? Outstanding - you've probably already got More ❯
Kent, Broomfield, United Kingdom Hybrid / WFH Options
Tilt Recruitment
CD pipelines, and tools like Veracode, Trivy, and Checkov. Familiarity with standards such as CIS, NIST, GDPR, ISO and frameworks like MITREATT&CK. Strong programming/scripting skills (Python, Go, Groovy) with a clean, secure coding ethos. Ideal Candidate Profile: Expert in Azure cloud security services More ❯