176 to 200 of 312 Threat Detection Jobs in England

PRINCIPAL SECURITY ENGINEER - UP TO £900 (OUTSIDE IR35) CONTRACT

Hiring Organisation
Secure Recruitment Ltd
Location
North London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £900 per day
Target Architecture & Migration Approach for DDoS Protection. Establish Appropriate Controls for Both Volumetric & Application-Layer DDoS Attacks Own Engineering & Operational Maturity of ExtraHop Network Detection & Response Capability Lead Design & Implementation of Illumio Micro-Segmentation Capability Develop Workload Labelling, Application Dependency Mapping & Segmentation Models Security Automation & Security-as-Code -core … Imperva , ExtraHop and/or Illumio is Highly Desirable. Essential Technical Experience will include Web Application Firewalls & Application Security Controls; DDoS Protection & Mitigation; Network Detection & Response; Network & Workload Micro-Segmentation; Network Security Architecture; Enterprise Networking & TCP/IP; Security Monitoring & Telemetry; Infrastructure & Security Automation; APIs & Scripting; Infrastructure as Code ...

Account Executive

Location
City Of London, England, United Kingdom
confidence. Securonix was built to close that gap. Our mission is to enable security teams to decide and act faster across the entire threat lifecycle. The Securonix Unified Defense SIEM is the industry’s first platform powered by agentic AI and designed with a human-in-the-loop philosophy. … unifies detection, investigation, and response in a single system. Advanced UEBA delivers deep behavioral insight across users, entities, and data. Native threat intelligence continuously enriches detections and investigations with real-world context. AI reinforces every layer of the platform while keeping accountability with the security team. Built cloud ...

GreyMatter Specialist

Location
Harrow, England, United Kingdom
ReliaQuest, we do things differently. We do not limit your professional growth with outdated job titles and responsibilities. Why be just a “Security Analyst”, “Detection Developer”, or “Security Engineer” when you can be all three? As a GreyMatter Specialist, you will do all of that and more. This role … uniquely designed to combine skills of threat detection, engineering, and incident response. On our team, we give you the opportunity to make an impact starting from day one. In this role, you’ll develop a diverse skill set which normally takes years to learn—all within your first ...

Security Platform Engineer, UK Security Operations

Location
Greater London, England, United Kingdom
ability to obtain, a Developed Vetting (DV) UK security clearance. Preferred qualifications: Certifications in Security (e.g., GSEC, CISSP, CISM, OSCP). Experience with Kubernetes threat detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline … emphasis on Kubernetes-based environments. You will be at the intersection of security and engineering, developing scalable tooling, automating security controls, and enabling robust detection and response capabilities across our cloud infrastructure. In this role, you will require deep technical expertise in cloud environments, Kubernetes security, and platform automation. ...

Senior Security Engineer

Location
Gateshead, England, United Kingdom
beheer van specifieke security-oplossingen. Je bent de kartrekker voor onder andere het opzetten van ons nieuwe SOC, Microsoft Sentinel (SIEM) voor actieve threat detection en het beheren van Microsoft Defender for Cloud voor vulnerability management. Je analyseert en volgt security-incidenten op, en bent de drijvende kracht … incidenten snel en effectief te mitigeren; Continu verbeteren van onze monitoring- en responsprocessen; Rapporteren van bevindingen en adviseren over structurele verbeteringen in securitymaatregelen; Proactief threat hunting: analyseren van logs en gedragsdata om ongewenste activiteiten op te sporen. Wat neem jij mee? Met jouw gedrevenheid en unieke vaardigheden maak ...

Security Platform Engineer, UK Security Operations

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP).Develop and implement security monitoring and logging strategies. Investigate and analyse security incidents, including identifying root causes, determining … ability to obtain, a Developed Vetting (DV) UK security clearance. Preferred qualifications: Certifications in Security (e.g., GSEC, CISSP, CISM, OSCP).Experience with Kubernetes threat detection and anomaly detection. Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. Experience in detection engineering, logging pipeline development ...

Cyber Threat Intelligence Technical Lead

Location
City Of London, England, United Kingdom
internal use): 11. The Team The Cyber Defense team is at the forefront of protecting S&P Global's critical assets through advanced threat intelligence and proactive security measures. We operate as a collaborative, high-performing unit that values technical excellence, continuous learning, and innovative approaches to emerging cyber … team culture emphasizes knowledge sharing, mentorship, and the pursuit of industry-leading security practices. Responsibilities and Impact Own and lead the end-to-end Threat Intelligence Platform, driving its strategic design, delivery, and ongoing development to maximize value and adoption across the global cyber defense organization. Build and maintain ...

Enterprise Security Architect

Location
City Of London, England, United Kingdom
into actionable design controls and implementation guidance. Evaluate emerging technologies, products, and platforms for alignment with enterprise security strategy. Conduct architecture risk assessments and threat modelling to identify potential exposures. Collaborate with infrastructure, application, and data teams to ensure secure solution design and integration. Document and maintain security architecture … across workforce, privileged, service, application and machine identities; identity governance, modern authentication, access lifecycle management, conditional access, PAM/PIM, federation, SSO, MFA, identity threat detection, and zero trust identity control design. AI & Blockchain Architecture: Secure architecture and governance for AI, machine learning, generative AI, agentic solutions, distributed ...

Senior Application Engineer (SIEM)

Hiring Organisation
Leonardo DRS
Location
Yeovil, Somerset, United Kingdom
Salary
£ 50 K
government and public sector services.What you will do as a Senior Application EngineerSupport, configure, and enhance security tooling platforms (e.g. SIEM, EDR) that underpin threat detection and responseDeliver engineering tasks within defined work packages, ensuring alignment with user needs, security requirements, and service-level objectives.Contribute to application architecture … vulnerability management tools (e.g. Splunk, Trellix, Tenable, or similar)SOAR platforms and automation of security response workflowsIntegration with monitoring, alerting, and incident response systemsThreat detection, analytics, and use case developmentExperience integrating with enterprise services (Active Directory, identity platforms)Exposure to DevOps/CI-CD practicesExperience working in secure ...

IT Security Engineer

Location
Marlow, England, United Kingdom
/IPS, and vulnerability management solutions. Identify security weaknesses and drive remediation activities. Support incident response and security investigations. Improve infrastructure logging, monitoring, and threat detection capabilities. Partner with global teams to strengthen security standards and best practices. Qualifications Position Requirements 3-5 years' experience in Security Engineering ...

Senior Detection Engineer - AI-Driven Cloud Security (Hybrid, UK)

Location
Guildford, England, United Kingdom
Electronic Arts in Guildford, UK seeks a Senior Detection Engineer to advance our detection engineering strategy within the Enterprise Security team. This role is essential to safeguarding EA's cloud and production environments and will directly impact our ability to detect, respond to, and prevent cyber threats … scale. As a senior individual contributor, you will mentor junior engineers, help define engineering direction, and lead the development of scalable threat detection solutions, #J-18808-Ljbffr ...

Senior Security Operations Engineer

Location
Bournemouth, England, United Kingdom
flexible working! Top 3 skills needed for this role: Highly experienced Cyber Security Operations expertise Advanced security incident response capability Proven security tooling and threat management knowledge What this role is all about: We're looking for a Senior Security Operations Engineer to play a leading role in Vitality … operational procedures and incident response playbooks Support penetration testing activities and coordinate the remediation of identified findings Contribute to the ongoing enhancement of monitoring, detection and response processes across the Security Operations function You will keep up to speed with emerging threats, vulnerabilities and industry developments to support continuous ...

SIEM Engineer (SC Cleared)

Hiring Organisation
Lorien
Location
Reading, Berkshire, UK
Employment Type
Full-time
reliable security telemetry Develop custom parsers and data transformations to normalise and enrich ingested data Design and optimise KQL queries to support effective threat detection and investigation Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases Develop Logic Apps ...

AMBG - Cloud Security & Exposure Management Architect

Hiring Organisation
Avanade
Location
London, United Kingdom
Salary
£ 70 K
exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches.You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture inputs … opportunities.Build trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements.• Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies.• Understand threat modelling, attack ...

Senior Data Scientist - (Privacy & Security Controls)

Location
Greater London, England, United Kingdom
ambitious collaboration between the public, charity and private sectors, designed to help people live healthier lives for longer through better prevention, earlier detection and improved treatment of diseases. We will speed up the discovery of new methods of early disease detection, and the evaluation of new diagnostic tools … evaluate the privacy, fidelity and utility trade‐offs of different approaches. Collaborate with our Information Security team on data‐driven security control assessment, threat detection and monitoring approaches, including identifying signals of risky behaviour, anomalous activity or misuse of data access environments, and cyber risk quantification. Build prototypes ...

Senior SOC Analyst — Threat Detection & Incident Response

Location
City Of London, England, United Kingdom
Morgan in London is looking for a Security Operations Senior Associate to strengthen threat analysis and incident response across our cybersecurity program. You will detect, assess, and respond to threats, coordinating with cross-functional teams to improve security controls and awareness. The role requires hands-on experience with SIEM ...

Head of International Security

Location
Greater London, England, United Kingdom
engineering controls. Track regional security metrics and accountability, and represent the international perspective in global prioritisation, audits, and roadmap reviews. Lead Regional Security Engineering & Threat Detection Own the regional execution of identity, fine-grained RBAC, secrets management, CI/CD hardening, encryption, logging, and infrastructure protection with … particular focus on cross-border data flows and in-region telemetry. Stand up high-fidelity detection and response capabilities that meet local time zone coverage, breach-notification timelines, and regulator expectations. Drive systemic risk reduction through platform-level controls, partnering with the global security engineering team rather than building ...

Head of Information Security

Hiring Organisation
MJA (London) Ltd
Location
EC2, Barbican, Greater London, United Kingdom
Employment Type
Permanent
regulated environment. Proven experience owning and improving ISO 27001 and security governance. Experience managing outsourced SOC and security partners. Strong knowledge of security operations, threat detection, incident response and vulnerability management. Good understanding of Microsoft/Azure, cloud security, SaaS assurance and security architecture. This is a senior ...

Cloud security engineer

Location
Cambridge, England, United Kingdom
This makes this a unique role where you will be able to utilize a broad skill set. Role Requirements Experience in cybersecurity matters (e.g., threat detection, malware intelligence, cloud security posture management, or identity and access management systems). Understanding of the following functions: TCP/IP stack ...

Information Security Operations Manager

Location
Greater London, England, United Kingdom
leadership. Tooling & Automation: Oversee the optimisation of our security stack. Work with the Engineer to automate repetitive tasks and with the Analyst to improve threat detection accuracy. Vulnerability Management: Oversee our global scanning programme. Prioritise remediation based on business impact - ensuring our systems and infrastructure remain resilient. Security ...

Head of Cyber Security

Location
Basingstoke, England, United Kingdom
acting as the executive point of escalation and ensuring effective coordination, decision‐making, and recovery. Operational Assurance: Oversee core security operations including vulnerability management, threat detection, security testing, and monitoring to maintain an effective and resilient control environment. Security Capability: Direct the investment, performance, and continuous improvement … security tooling and services to meet evolving business and threat requirements. 3. Governance, Compliance & Auditing Governance & Compliance: Ensure the organisation maintains effective security governance and compliance with applicable legal, regulatory, contractual, and industry requirements. Audit & Assurance: Lead internal and external assurance activity, oversee remediation of findings, and maintain productive ...

Security Platform Engineer

Location
Farnborough, England, United Kingdom
critical operations. Your work may include: Deploy, and maintain secure infrastructure within Kubernetes environments Administer and maintain Splunk for log aggregation, monitoring, alerting, and threat detection Operate and manage Nessus for vulnerability scanning, reporting, and remediation tracking Integrate security tools into CI/CD pipelines and cloud-native … Scripting or automation skills (e.g. Python, Bash, or similar) Understanding of security frameworks and best practices Knowledge of configuring SIEM tooling Basic understanding of threat frameworks, such as ATT&CK Experience with additional SIEM or observability platforms Experience with Microsoft Defender Experience with DevSecOps practices and pipeline security Certifications ...

Security Platform Engineer: Build Secure Infra & CI/CD

Location
Farnborough, England, United Kingdom
critical operations. Your work may include: Deploy, and maintain secure infrastructure within Kubernetes environments Administer and maintain Splunk for log aggregation, monitoring, alerting, and threat detection Operate and manage Nessus for vulnerability scanning, reporting, and remediation tracking Integrate security tools into CI/CD pipelines and cloud-native … Scripting or automation skills (e.g. Python, Bash, or similar) Understanding of security frameworks and best practices Knowledge of configuring SIEM tooling. Basic understanding of threat frameworks, such as ATT&CK. Experience with additional SIEM or observability platforms Experience with Microsoft Defender Experience with DevSecOps practices and pipeline security Certifications ...

Infrastructure & Access Management Architect

Location
Greater London, England, United Kingdom
adaptive access controls. Collaborate with the Senior Architect Information Security and lead the implementation of identity governance automation, leveraging machine learning for anomaly detection and remediation. Ensure seamless integration of multi-factor authentication (MFA) with biometric and mobile device capabilities to improve both security and user experience. Champion … adoption of identity threat detection and response (ITDR) solutions to proactively identify and mitigate identity-based attacks. Develop and maintain the firm’s IAM architecture, including identity lifecycle, access governance, and privileged access controls. Design secure authentication and authorization patterns (OpenID Connect, SAML, OAuth, Kerberos, LDAP ...

Security Consultant (Supply Chain)

Location
Manchester, England, United Kingdom
Consultant, you'll help shape how Lloyds Banking Group identifies, understands and responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you'll operate at the intersection of threat intelligence, incident response and supplier risk. You'll use data, tooling and insight … influence how security is designed, embedded and continuously improved. You'll play a key role in strengthening our approach to supply chain threat management-supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you'll operate within agile ways of working and explore ...