25 of 25 Threat Analysis Jobs in London

Senior SOC Analyst

Location
Greater London, England, United Kingdom
programme within a global enterprise environment. This role is ideal for a senior, hands‐on Security Operations professional who combines strong incident investigation and threat analysis skills with experience in detection engineering, operational process development, and stakeholder engagement. Working as a key bridge between regional and global Security … expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm . Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE ATT&CK . Identify detection gaps, duplicate content and optimisation opportunities through detection engineering, threat hunting, and alert tuning activities. ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
Greater London, England, United Kingdom
Summary: Senior Cyber Threat Intelligence (CTI) Analyst UK (9:00 AM – 18:00 PM GMT) Live Nation Entertainment – Cyber Security Operations, Cyber Security THE TEAM Live Nation is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to drive hands‐on intelligence analysis and research across our global … environment. This role sits within the Detection and Response Engineering, CTI, and Threat Hunting team. The team focuses on identifying emerging threats, conducting in-depth analysis of malicious activity, and enhancing the organization’s security posture, detection, and incident response capabilities. THE ROLE This is a hands ...

SOC Team Lead

Location
Greater London, England, United Kingdom
Drive performance and operational excellence across Shared Service’s Cyber Services function Act as a technical escalation point and line manager Support threat analysis, incident response, and security assurance activities Foster a proactive culture of cyber hygiene and continuous improvement Collaborate across departments to strengthen Shared Service … threats and investigative escalations Ensure complex or unresolved cybersecurity issues are escalated appropriately Line manage Cyber Analysts, set objectives, and support development plans Share threat intelligence and cyber knowledge with junior colleagues Provide training and coaching on cyber operations tooling and security practices Contribute to root cause analysis ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will act as a cyber security subject matter expert, helping … strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond to cyber security incidents across cloud, endpoint, and network environments. Analyse ...

Security Operations Analyst

Hiring Organisation
Matchtech
Location
London, UK
Employment Type
Full-time
Umbrella) | Inside IR35 ð Remote with occasional client site visits ð Active SC Clearance Required ð Contract until March 2027Security Operations Analyst | Cyber Threat Intelligence | Threat ModellingWe are looking for an experienced Security Operations Analyst to join a long-term cybersecurity programme supporting critical enterprise and government-facing … environments. This is an excellent opportunity for a security professional with expertise in Cybersecurity Operations, Cyber Threat Intelligence, and Threat Modelling to play a key role in identifying, assessing, and mitigating cyber risks while enhancing the overall security posture of complex organisations. Working alongside Security Architects, Threat ...

Information Security Analyst - SecOps Detection

Location
Greater London, England, United Kingdom
attend the office a minimum of 1 day per week. About the role We’re seeking a passionate and skilled Detection Engineer and Threat Hunter to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. Reporting to the Information Security … proactively identify and defend against potential threats to the bank. You will achieve this by developing, tuning, and maintaining detection rules, conducting intelligence-driven threat hunts, and participating in collaborative defence improvement activities like Purple Teaming to identify and mitigate risks before they impact the bank. What ...

Principal Product Cybersecurity Assurance

Location
Greater London, England, United Kingdom
team to take it even further. About the Role We are seeking a Principal Product Cybersecurity Assurance Engineer with deep expertise in product security, threat modelling, and risk assurance for highly regulated electromechanical systems. In this role, you will lead the delivery of product cybersecurity across Humanoid's HMND … inference pipeline and cloud-to-robot communication architecture. Own and maintain key security artefacts for audit-ready cybersecurity documentation including Security Management Plans, Threat Analysis and Risk Assessment (TARA) reports, Risk Assessments, and Remediation Action Plans across both platforms. Security Assurance & Certification Drive security assurance through the full ...

Senior SOC Analyst

Hiring Organisation
Anson Mccade
Location
London, United Kingdom
Employment Type
Permanent
Salary
£50,000
base salary Additional 25% shift premium Permanent position Exposure to complex incidents within a modern, security-sensitive environment Opportunity to develop incident response and threat analysis expertise Onsite London role operating across a 28-day shift pattern Company benefits package Excellent skill up and career progression opportunities What … need Experience within a SOC, incident response or threat analysis role Experience investigating security alerts and escalated incidents Understanding of attack vectors, root-cause analysis and incident handling Ability to correlate events across different security and technology data sources Ability to produce clear investigation findings and incident ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Hiring Organisation
JP Morgan Chase
Location
London, UK
Employment Type
Full-time
Seize the opportunity to enhance cybersecurity, utilizing your expertise in threat analysis and incident response to protect vital data and systems. As a Security Operations Senior Associate in the Cybersecurity and Tech Controls line of business, you will play a critical role in safeguarding the organization's digital … response to threats, vulnerabilities, and incidents to ensure the integrity, confidentiality, and availability of sensitive data and systemsConduct in-depth security investigations, including log analysis, network trace review, and other data sources to identify root causes, assess impact, and gather evidence for response and mitigation actionsTriage and remediation ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared ...

Senior SOC Analyst - Global Detection & Response

Location
Greater London, England, United Kingdom
Analyst in London to support a global security transformation. The role is 4 days onsite with 1 day remote, requiring hands-on incident investigation, threat analysis, and threat hunting across SIEMs, EDR/XDR, and cloud environments. You will develop SOPs and playbooks, lead detection engineering ...

WAF Engineer

Hiring Organisation
Willis Towers Watson
Location
London, UK
Employment Type
Full-time
services within the WTW environment in a Tier 3 capacity. The role is London based with a hybrid work style. The Role: Perform analysis and tuning of WAF policies to minimise false positives and false negatives while maintaining an appropriate security posture. Design, implement, maintain and optimise WAF policies … rule exclusions, rate-limiting policies and bot protection controls. Support transition of WAF policies from Detection mode to Prevention/Block mode through structured analysis, tuning, testing and stakeholder engagement. Analyse attack patterns, logs and telemetry to identify emerging threats and implement effective mitigations. Work closely with application owners ...

Cyber Security Consultant

Hiring Organisation
Radius Consultancy
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
primarily focused on security assurance, governance, and incident response leadership, the successful candidate will possess sufficient technical capability to support investigations, security monitoring activities, threat analysis, vulnerability management, and major cyber incidents when required. ...

Staff Product Security Engineer

Location
Greater London, England, United Kingdom
products. Responsibilities: Owns the development and maturation of security features for Anduril’s products Authors and maintains security documentation including System Security Plans, Threat Analysis and Risk Assessments, and compliance evidence Collaborates and builds solutions with engineering teams to meet and exceed industry-standard security goals Collaborates with … implementations, integrations, and processes Integrates and matures Product Securitys suite of tooling thought Anduril’s products. Conducts security assessments including architecture review, source code analysis, configuration auditing, and adversarial testing Requirements: Proficient with one or more programming languages (e.g. C/C++, Golang, Rust, Python) Experience assessing security ...

Global Security – Red Team Operator - X-Force Red

Location
Greater London, England, United Kingdom
background to breach security systems and identify weaknesses to improve enterprise information security. Your expertise will help evaluate system security configurations, perform root cause analysis, and contribute to the design and implementation of countermeasures. Your primary responsibilities will include: Evaluate System Security: Evaluate system security configurations to identify vulnerabilities … weaknesses, and perform root cause analysis to determine the cause of security breaches. Conduct Penetration Testing: Attempt to hack into networks to access information without authorization, and document findings to produce reports detailing the effectiveness of security systems. Design Countermeasures: Contribute to the design, development, and implementation of countermeasures ...

Senior Crypto Threat Analyst - Terrorism

Location
Greater London, England, United Kingdom
with high autonomy and minimal oversight Are highly curious and driven to uncover hidden patterns and connections others overlook Bring deep experience in intelligence analysis and managing uncertainty Are an experienced OSINT researcher comfortable navigating multiple languages and jurisdictions Have proven expertise or a strong interest in counter-terrorism … briefing or producing rigorous, evidence-led reports Work effectively with global teams and stakeholders at all levels Our ideal candidate has: Experience in intelligence, threat analysis, financial crime, OSINT or related investigative fields, including work on illicit or terrorist financing Experience in a senior or highly autonomous role ...

Global Security - Red Team Operator - X-Force Red

Location
City of Westminster, England, United Kingdom
background to breach security systems and identify weaknesses to improve enterprise information security. Your expertise will help evaluate system security configurations, perform root cause analysis, and contribute to the design and implementation of countermeasures. Your primary responsibilities will include: Evaluate System Security: Evaluate system security configurations to identify vulnerabilities … weaknesses, and perform root cause analysis to determine the cause of security breaches. Conduct Penetration Testing: Attempt to hack into networks to access information without authorization, and document findings to produce reports detailing the effectiveness of security systems. Design Countermeasures: Contribute to the design, development, and implementation of countermeasures ...

Cyber Security Engineer I

Location
Greater London, England, United Kingdom
response capabilities for AI-related threats and misuse scenarios. Identify opportunities to use AI to enhance cyber security operations, such as alert triage, threat analysis, playbook automation, knowledge retrieval, and workflow optimisation. Stay current on evolving risks, attack techniques, regulations, and industry practices related to AI security … systems, including prompt injection, data exfiltration, insecure model access, supply chain risks, model poisoning, and sensitive data exposure. Experience conducting architecture reviews, threat modelling, and security assessments for complex technical solutions. Ability to translate technical risk into clear, practical guidance for both engineering and non-technical stakeholders. Strong collaboration ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£85,000
Investigating and responding to medium and high-severity security incidents Supporting incident containment, remediation and recovery Mentoring, teaching and upskilling junior SOC Analysts Supporting threat hunting, detection improvement and incident response activities What were looking for 6+ years experience across SOC, Incident Response or Threat Analysis Previous … experience leading SOC teams and mentoring/developing junior analysts Strong security incident investigation and response experience Experience across areas such as threat hunting and incident response Good knowledge of SIEM/EDR tooling no specific SIEM platform is required Ability to confidently take ownership of escalations ...

SOC Shift Lead

Location
Hillingdon, West London, United Kingdom
Investigating and responding to medium and high-severity security incidents Supporting incident containment, remediation and recovery Mentoring, teaching and upskilling junior SOC Analysts Supporting threat hunting, detection improvement and incident response activities What were looking for 6+ years experience across SOC, Incident Response or Threat Analysis Previous … experience leading SOC teams and mentoring/developing junior analysts Strong security incident investigation and response experience Experience across areas such as threat hunting and incident response Good knowledge of SIEM/EDR tooling no specific SIEM platform is required Ability to confidently take ownership of escalations ...

security engineer in cloud security

Location
Greater London, England, United Kingdom
nearly 30,000 global businesses. Задачи Design and implement secure cloud architectures across AWS environments Build and maintain protective and detective controls for cloud threat visibility Develop detection engineering capabilities to identify attacker behaviour and reduce detection and response times Lead cloud security investigations and incident response with engineering … operating production AWS environments Deep understanding of cloud security principles, modern attack techniques, and security best practices Experience building or operating detection, monitoring, or threat detection capabilities Hands-on experience investigating security incidents, leading technical investigations, and driving remediation efforts Experience implementing security controls across cloud platforms and production ...

Automotive Cyber Security Lead

Location
Greater London, England, United Kingdom
Management System) UNECE R156 (Software Update Management System) ISO 26262 (Functional Safety) Conduct or support penetration testing, vulnerability assessments, architecture reviews, risk assessments, and Threat Analysis and Risk Assessments (TARA) for automotive clients. Provide expert interpretation of cyber security requirements for vehicle manufacturers, suppliers, technology providers, and mobility … networks, connected vehicle platforms, and safety‐critical environments. Practical experience conducting or supporting penetration testing and security assessment activities. Experience performing secure architecture reviews, threat modelling, TARA activities, and risk assessments within automotive or transportation environments. Familiarity with automotive development lifecycles, software delivery processes, and regulatory compliance requirements. Domain ...

SOC Cyber Operations Lead - Incident Response & SIEM Excellence

Location
Greater London, England, United Kingdom
drive performance across Shared Service's Cyber Services. You will act as a technical escalation point and line manager, guiding teams through incident response, threat analysis, and security assurance activities. You will foster a proactive culture of cyber hygiene, collaborate across departments, and oversee reporting on security metrics ...

Engineering Lead, Cyber Engineering

Location
Greater London, England, United Kingdom
adversary tactics, techniques, and procedures (TTPs). Proven experience in architecting and scaling cloud‐based solutions to support intensive data processing and real‐time threat analysis. Written clean, maintainable, and testable code, with proficiency in Python and Go, with a strong emphasis on building scalable, maintainable code. Architected complex ...

Interim Cyber Security Officer

Location
Greater London, England, United Kingdom
CrowdStrike and Splunk platforms. The successful candidate will ensure the effective integration, configuration, and operational use of security tools to enhance threat detection, incident response, and overall security maturity. Additionally, the role involves providing technical leadership, mentoring, and knowledge transfer to bolster internal cyber capabilities during a period … investigation, containment, and remediation using EDR and SIEM tools. Develop and implement SOAR workflows to automate detection, response, and security operations processes. Conduct proactive threat hunting using SIEM/EDR data and MITRE ATT&CK‐aligned techniques. Support vulnerability assessment and security scanning activities using relevant tools. Provide input ...