51 to 75 of 312 Threat Detection Jobs in England

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Location
Greater London, England, United Kingdom
Seize the opportunity to enhance cybersecurity, utilizing your expertise in threat analysis and incident response to protect vital data and systems. As a Security Operations Senior Associate in the Cybersecurity and Tech Controls line of business, you will play a critical role in safeguarding the organization's digital assets … cybersecurity posture and help maintain the integrity, confidentiality, and availability of sensitive data and systems. Job responsibilities Monitor and analyze security infrastructure, contributing to detection and response to threats, vulnerabilities, and incidents to ensure the integrity, confidentiality, and availability of sensitive data and systems Conduct in-depth security investigations ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Location
City Of London, England, United Kingdom
Seize the opportunity to enhance cybersecurity, utilizing your expertise in threat analysis and incident response to protect vital data and systems. As a Security Operations Senior Associate in the Cybersecurity and Tech Controls line of business, you will play a critical role in safeguarding the organization's digital assets … cybersecurity posture and help maintain the integrity, confidentiality, and availability of sensitive data and systems. Job responsibilities Monitor and analyze security infrastructure, contributing to detection and response to threats, vulnerabilities, and incidents to ensure the integrity, confidentiality, and availability of sensitive data and systems Conduct in-depth security investigations ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
decision-making challenges. Working with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops, and solution ...

Cyber Security Analyst

Hiring Organisation
Radius Payment Solutions
Location
Chester, Cheshire, United Kingdom
Salary
£ 70 K
Cheshire.As a Cyber Security Analyst, you will play a key role in protecting systems, networks, and data against cyber threats. You will participate in threat detection and incident response efforts, support the development of security policies and controls, and work closely with stakeholders to ensure compliance and security … integrated throughout the Software Development Lifecycle (SDLC).Create, maintain and review cyber security policies, standards, procedures and technical documentation.Monitor security events and alerts, conducting threat detection, investigation and incident response activities to minimise business impact.Perform vulnerability management activities, including vulnerability identification, risk assessment, remediation tracking and reporting.Conduct threat ...

Cyber Security Analyst

Location
Crewe, England, United Kingdom
Cyber Security Analyst, you will play a key role in protecting systems, networks, and data against cyber threats. You will participate in threat detection and incident response efforts, support the development of security policies and controls, and work closely with stakeholders to ensure compliance and security best practice … Software Development Lifecycle (SDLC). Create, maintain and review cyber security policies, standards, procedures and technical documentation. Monitor security events and alerts, conducting threat detection, investigation and incident response activities to minimise business impact. Perform vulnerability management activities, including vulnerability identification, risk assessment, remediation tracking and reporting. Conduct ...

Security Operations Engineer

Location
Hessle, England, United Kingdom
effective remediation solutions Monitor and configure security tools - global EDR/XDR policies, blocklists, and automated containment rules including SIEM, EDR and respond to threat detection alerts. Maintain and enhance security monitoring capabilities through effective integrations and optimisation of security tooling, ensure effective data collection and eliminate visibility … secure day-to-day operations. Skills, Qualifications, And Experience Previous hands-on experience in cybersecurity operations or security engineering roles. Experience of security monitoring, threat detection, incident response, and threat hunting methodologies. Strong working knowledge of endpoint security, identity and access management, authentication controls, privileged access management ...

Threat Detection Engineer

Location
City Of London, England, United Kingdom
Cybersecurity Threat Detection team seeks a skilled professional to design, tune, and maintain detection content across SIEM, EDR, and NDR platforms, aligned with MITRE ATT&CK. You will hunt threats, validate log health, and collaborate with threat intelligence and incident response to stay ahead of adversaries. ...

Cyber Security & Infrastructure Engineer

Hiring Organisation
Adria Solutions
Location
Newcastle-upon-Tyne, Tyne and Wear, North East, United Kingdom
Employment Type
Permanent
Salary
£50,000
role in protecting their systems, networks and data. This is a hands-on position offering the opportunity to work across cyber security, infrastructure, cloud, threat detection and incident response within a small, technically capable IT team. The Role As Cyber Security & Infrastructure Engineer, you will be responsible … security, resilience and operational performance. Key Responsibilities Monitor security alerts, investigate potential incidents and lead incident response activities Conduct forensic investigations and contribute to threat detection and intelligence activities Develop and refine security monitoring, detection rules and use cases Carry out vulnerability scanning and support remediation ...

Cyber Intelligence Director

Location
Greater London, England, United Kingdom
data while advancing your career. Experience a supportive culture where your contributions matter. As a Cyber Intelligence Direct at JPMorganChase within the EMEA Threat Intelligence team, you will identify and analyze external cyber threats to protect our firm’s interests. You will collaborate with teams in North America … APAC, prioritizing intelligence streams and allocating resources for maximum impact. Your role enables secure business initiatives and strengthens our threat detection and response capabilities. You will help shape policies and frameworks that drive our cybersecurity strategy. We foster a collaborative and innovative environment where your leadership will make ...

Cyber Intelligence Director

Location
Greater London, England, United Kingdom
while advancing your career. Experience a supportive culture where your contributions matter. As a Cyber Intelligence Director (Executive Director) at JPMorganChase within the EMEA Threat Intelligence team, you will identify and analyze external cyber threats to protect our firm’s interests. You will collaborate with teams in North America … APAC, prioritizing intelligence streams and allocating resources for maximum impact. Your role enables secure business initiatives and strengthens our threat detection and response capabilities. You will help shape policies and frameworks that drive our cybersecurity strategy. We foster a collaborative and innovative environment where your leadership will make ...

Embedded Cyber Detection and Response Deputy Team Lead

Hiring Organisation
Control Risks
Location
London, UK
Employment Type
Full-time
DescriptionThe Cyber Detection and Response Deputy Team Lead serves as the operational second-in-command of the Cyber Detection and Response Team (DART), bridging the gap between hands-on cyber operations and team leadership. The role supports the Team Lead in the ongoing development, maturation, and delivery … client's detection and response capabilities, while providing technical leadership and operational oversight across day-to-day security operations. This position remains actively involved in threat detection, incident response, threat hunting, and detection engineering activities while also assuming supervisory and coordination responsibilities. The Deputy Team ...

SOC Lead

Location
Farnborough, England, United Kingdom
Consolidated SOC functions, managing a team, and ensuring the delivery of high-quality SOC services including 1st-3rd line Security monitoring and alert analysis, threat detection, incident management and response, and where required threat hunting services. Your work may include: Run the day to day operations … Define, develop and improve the Consolidated SOC Operating Procedures KPIs, SLAs to meet customers requirements provide and appropriate reporting for executive leadership. Collaborate with threat intelligence, risk management, and compliance teams. Ensure 24/7 operational readiness and effective incident response capabilities for the Consolidated SOC Manage the technical ...

Interim Cyber Security Officer

Location
Greater London, England, United Kingdom
CrowdStrike and Splunk platforms. The successful candidate will ensure the effective integration, configuration, and operational use of security tools to enhance threat detection, incident response, and overall security maturity. Additionally, the role involves providing technical leadership, mentoring, and knowledge transfer to bolster internal cyber capabilities during a period … point for high‐severity security incidents, facilitating rapid investigation, containment, and remediation using EDR and SIEM tools. Develop and implement SOAR workflows to automate detection, response, and security operations processes. Conduct proactive threat hunting using SIEM/EDR data and MITRE ATT&CK‐aligned techniques. Support vulnerability assessment ...

Head of Information Security

Location
Greater London, England, United Kingdom
incident response activities, ensuring effective preparedness, response, recovery and post-incident review processes Oversee relationships with outsourced security service providers, including SIEM and Managed Detection and Response partners Ensure security monitoring, threat detection and response capabilities remain effective and aligned to business risk Drive continual improvements … Drive effective risk treatment plans and track progress against agreed remediation activities Provide regular reporting and insights to senior leadership and governance forums Lead threat identification and modelling activities including formal workshops Vulnerability Management & Security Assurance Own Bravura's vulnerability management programme and drive continuous improvement in security posture ...

Senior Security Operations Engineer (SOC Engineer L3)

Location
Royal Leamington Spa, England, United Kingdom
Senior Security Operations Engineer (SOC Engineer L3) to join their security function. This is a highly technical role focused on SOC engineering, detection engineering, SIEM/SOAR, security automation and AI-driven security operations . You’ll design and improve security monitoring, detection, response and automation capabilities across … large enterprise environment, with a particular focus on AI and agentic technologies . Key Responsibilities Design and optimise security monitoring, SIEM and detection capabilities . Onboard and manage security logs, including ingestion, parsing, normalisation and enrichment . Develop and tune detection rules, correlation searches and threat detection ...

Head of Cyber Defence

Hiring Organisation
IDEX Consulting
Location
London, UK
Employment Type
Full-time
cyber security leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives. Key ResponsibilitiesLead and manage the Cyber Defence function … overseeing security operations, threat intelligence, vulnerability management, and incident response capabilities. Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats. Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents. Oversee threat intelligence programmes, identifying ...

Network Security Engineer

Location
Knutsford, England, United Kingdom
security posture improvement, and operational efficiency. Security Operations & Risk Management Monitor and analyse browser security events, policy violations and suspicious user activity to support threat detection and incident response activities. Support investigations involving browser session activity, data protection events and secure application access controls. Monitor, analyse, and respond … network security incidents, vulnerabilities, and emerging threats. Support threat detection, containment, remediation, and post‐incident reviews. Ensure network security controls remain effective, compliant, and aligned with evolving cyber threats. Conduct security assessments, rule reviews, and network segmentation activities. Security Architecture & Standards Ensure network architectures comply with security standards ...

Cyber Security Engineer

Location
Beverley, England, United Kingdom
influencing best practice, this role offers real scope to make an impact. What you will be doing Monitor, develop and optimise SIEM and threat detection systems Investigate security incidents, coordinating response, containment and escalation Conduct vulnerability scanning and support remediation across the IT estate Work closely with infrastructure … aligned to business needs What we are looking for Proven experience in a cyber security or infrastructure security role Strong understanding of security principles, threat detection and risk-based thinking Experience with SIEM platforms, vulnerability management tools and detection response technologies such ...

AWS Cloud Security Engineer

Location
Metropolitan Borough of Solihull, England, United Kingdom
critical role in strengthening and maturing Reapit’s cloud security posture. Your work will span hands on security engineering, deep incident response, proactive threat detection, and collaboration with global teams. Security Engineering & Cloud Security Design, implement, and enhance secure Cloud infrastructure, services, and applications in collaboration with DevOps … outsourced SOC Lead and participate in global incident response activities, including investigation, containment, eradication, and recovery. Perform advanced log analysis, digital forensics, and threat validation using AWS native and third party tooling. Monitor AWS/Azure and application security alerts, responding quickly and decisively. Participate ...

Campus - Full Time - Information Security Engineer - 2027 (UK - Burgess Hill)

Hiring Organisation
American Express
Location
Burgess Hill, UK
Employment Type
Full-time
threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making. Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation. Support security control implementation and monitoring approaches … networking, or technology risk. Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts. Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts. Exposure to security tools, platforms, or operational processes ...

Campus - Full Time - Information Security Engineer - 2027 (UK - Burgess Hill)

Hiring Organisation
American Express
Location
Brighton, East Sussex, UK
Employment Type
Full-time
threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making. Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation. Support security control implementation and monitoring approaches … networking, or technology risk. Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts. Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts. Exposure to security tools, platforms, or operational processes ...

SIEM Engineer

Location
Reading, England, United Kingdom
comprehensive security telemetry. Develop custom parsers and data transformations to normalise and enrich ingested data, and design and optimise KQL queries to support effective threat detection, monitoring and security investigations. Key skills and responsibilities, Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security telemetry. Develop custom … parsers, data transformations and KQL queries for threat detection and investigation. Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements. Develop Logic Apps and SOAR workflows to automate security response. Implement CI/CD pipelines using Azure DevOps/ ...

Elasticsearch Consultant

Location
Greater London, England, United Kingdom
design, implement and maintain security monitoring solutions using the Elastic Stack. The successful candidate will be responsible for developing scalable log-management and threat-detection capabilities across complex cloud and containerised environments. Key Responsibilities Design, deploy and support Elastic SIEM solutions using Elasticsearch, Logstash and Kibana. Build … maintain log‐ingestion pipelines for infrastructure, applications, cloud platforms and security tools. Develop Kibana dashboards, alerts, detection rules and visualisations. Configure data parsing, enrichment, transformation and indexing within Logstash and Elasticsearch. Integrate Kafka to support reliable, high‐volume event streaming and log ingestion. Deploy and operate Elastic components within ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, UK
Employment Type
Full-time
leading cyber incidents operationally, technically and commercially from end-to-end. You will act as a senior technical subject matter expert across incident response, detection engineering, cloud security and vulnerability management, while also providing calm, structured leadership during high-pressure situations. The environment is heavily Microsoft-focused, with particular … secure-by-design principlesDetection engineering and automationThreat and vulnerability managementYou will work closely with global technology and cyber teams to continuously improve monitoring, detection, response and remediation capabilities across hybrid cloud and on-premise environments. Key ResponsibilitiesIncident Response & Major Incident ManagementLead the end-to-end management of cyber security ...

Blockchain Security Operations Vice President

Location
Greater London, England, United Kingdom
Embrace the challenge of securing institutional blockchain infrastructure at scale, driving operational excellence across on-chain monitoring operations, and implementing cutting-edge detection capabilities for smart contract and digital asset security. As a Blockchain Security Operations Vice President in Cybersecurity & Tech Controls, you will contribute significantly to safeguarding … environment and driving continuous improvement in the firm. Job responsibilities Execute and influence the design of comprehensive security strategies, policies, and procedures to enhance threat detection capabilities and protect the organization's digital assets, smart contracts, and blockchain infrastructure from cybersecurity threats Proactively monitor and analyze complex ...