51 to 75 of 118 Threat Detection Jobs in London

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity and emerging threats Supporting incident response and containment activities Performing threat hunting activities to proactively identify potential security risks Escalating significant or complex incidents where appropriate Working closely with Tier 1 and Tier 3 analysts … incident responders and other technical teams Tuning and improving detection rules and use cases to reduce false positives and improve threat detection Analysing logs and security events from endpoints, networks, cloud environments and other infrastructure Producing clear investigation reports and documenting incidents, findings and recommendations Maintaining awareness ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports … support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience Essential Microsoft Entra ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions … qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions … qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management ...

Staff Cloud Security Engineer, GCP

Location
Greater London, England, United Kingdom
automate GCP technical controls for continuous compliance with PCI DSS and 3DS Drive security infrastructure deployments across growing environments Perform security assessments, audits, threat modelling and architecture design reviews Identify and triage risks and vulnerabilities, recommend improvements and design corrective controls Lead incident response, including investigation and remediation … networking best practices and RBAC implementation Experience with Infrastructure as Code and provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with Cloud KMS, Cloud External ...

Senior Cyber Threat & Vulnerability Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
leading Financial Services client in the City of London is looking for a Senior Cyber Threat & Vulnerability Manager to lead its cyber threat, vulnerability, penetration testing and exposure management capabilities. This is a senior, hands-on role within the CISO function, focused on identifying and responding to emerging … business. The role offers a base of circa £110,000 + excellent benefits with very flexible working. Key Responsibilities Lead the end-to-end Threat, Vulnerability and Exposure Management function. Drive the prioritisation and remediation of high and critical vulnerabilities, including zero-day and actively exploited threats. Own penetration ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
high/low-level architecture designs • Working directly with senior client and government stakeholders • Designing and integrating security technologies including SIEM, SOAR, EDR, Threat Intelligence and Vulnerability Management • Assessing existing SOC capabilities and developing security maturity • Designing scalable, resilient on-prem and cloud security architectures • Supporting accreditation, security requirements … Strong experience in SOC architecture and security operations • Hands-on architectural experience across at least two of SIEM, SOAR, EDR, Vulnerability Management or Threat Intelligence • Strong understanding of security operations, threat detection and incident response • Experience designing both on-prem and cloud security architectures • Understanding of security ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches. You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture … building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements. Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack ...

Senior Security Architect - SecOps and Vulnerability Management

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
International Consumer, you will proactively partner with technology and business colleagues to identify and address security issues. You will embed security culture, lead threat modeling, and drive architecture reviews to ensure our products are secure by design. Your role will be pivotal in managing emerging risks, influencing product strategy … serving as the subject matter expert for the SecOps and Vulnerability Management strategy as well as embedding detection and response capabilities on a modern technology stack. You will collaborate globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities: Design, scale ...

Senior Information Security Analyst, UK

Location
Greater London, England, United Kingdom
effectiveness across the environment.This role is responsible for monitoring and responding to security alerts, performing assigned operational tasks, and optimizing security tooling to improve detection quality and reduce false positives. The position operates within a centralized global security function and collaborates across regions to ensure consistent handling of security … technologies including Microsoft Defender, Zscaler, SIEM platforms (e.g. Google SecOps), and identity platforms (e.g. Azure/Entra, Okta).Hands on experience in incident response, threat detection, and vulnerability management within an enterprise environment.* Strong ability to analyze, prioritize, and respond to security alerts and vulnerabilities within the context ...

Senior Threat Detection & Response Engineer

Location
Greater London, England, United Kingdom
Pirum Systems Ltd. is seeking a Senior Cyber Detection and Response Engineer in London, UK. You will lead Pirum's detection and response capability, enabling machine-speed detection, investigation and containment across AWS, on-premises, workforce IT and endpoints. You will set direction for detection engineering … report to the CISO. The role is hands-on and requires operating independently in a lean team, with a focus on detection as an engineering discipline and clear communication to #J-18808-Ljbffr ...

Senior Solutions Engineer

Location
Greater London, England, United Kingdom
customers Hands on knowledge of Security related products, technologies, and sources such as IDS/IPS, SIEM/Log Management, Network/Endpoint Security, Threat Detection, Incident Response, MSSP/MDR, Threat Feeds, CASB, etc Experience with open source collections (Telegraf, FluentBit, FluentD, Open Telemetry, etc.) (preferred ...

PRINCIPAL SECURITY ENGINEER - UP TO £900 (OUTSIDE IR35) CONTRACT

Hiring Organisation
Secure Recruitment Ltd
Location
North London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £900 per day
Target Architecture & Migration Approach for DDoS Protection. Establish Appropriate Controls for Both Volumetric & Application-Layer DDoS Attacks Own Engineering & Operational Maturity of ExtraHop Network Detection & Response Capability Lead Design & Implementation of Illumio Micro-Segmentation Capability Develop Workload Labelling, Application Dependency Mapping & Segmentation Models Security Automation & Security-as-Code -core … Imperva , ExtraHop and/or Illumio is Highly Desirable. Essential Technical Experience will include Web Application Firewalls & Application Security Controls; DDoS Protection & Mitigation; Network Detection & Response; Network & Workload Micro-Segmentation; Network Security Architecture; Enterprise Networking & TCP/IP; Security Monitoring & Telemetry; Infrastructure & Security Automation; APIs & Scripting; Infrastructure as Code ...

Information Security Analyst

Location
Greater London, England, United Kingdom
requirements for new systems and material changes. Work with suppliers and managed service providers to keep operational controls effective. Monitor & Respond Monitor security and threat detection systems, investigate alerts, and identify trends that need a response. Respond to security policy breaches and provide practical guidance on secure working ...

Account Executive

Location
City Of London, England, United Kingdom
confidence. Securonix was built to close that gap. Our mission is to enable security teams to decide and act faster across the entire threat lifecycle. The Securonix Unified Defense SIEM is the industry’s first platform powered by agentic AI and designed with a human-in-the-loop philosophy. … unifies detection, investigation, and response in a single system. Advanced UEBA delivers deep behavioral insight across users, entities, and data. Native threat intelligence continuously enriches detections and investigations with real-world context. AI reinforces every layer of the platform while keeping accountability with the security team. Built cloud ...

Penetration Tester - Cloud Security, Active Directory, APIs

Hiring Organisation
Hays Specialist Recruitment Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
remediate findings. Comfortable supporting incident response activities, including triage, investigation and containment. Experience using SIEM and security monitoring tools for alert analysis and threat detection. Strong communication skills with the ability to explain technical findings to technical and non-technical stakeholders. Nice to have: Immediately Available Experience with vulnerability ...

GreyMatter Specialist

Location
Harrow, England, United Kingdom
ReliaQuest, we do things differently. We do not limit your professional growth with outdated job titles and responsibilities. Why be just a “Security Analyst”, “Detection Developer”, or “Security Engineer” when you can be all three? As a GreyMatter Specialist, you will do all of that and more. This role … uniquely designed to combine skills of threat detection, engineering, and incident response. On our team, we give you the opportunity to make an impact starting from day one. In this role, you’ll develop a diverse skill set which normally takes years to learn—all within your first ...

Enterprise Security Architect

Location
City Of London, England, United Kingdom
into actionable design controls and implementation guidance. Evaluate emerging technologies, products, and platforms for alignment with enterprise security strategy. Conduct architecture risk assessments and threat modelling to identify potential exposures. Collaborate with infrastructure, application, and data teams to ensure secure solution design and integration. Document and maintain security architecture … across workforce, privileged, service, application and machine identities; identity governance, modern authentication, access lifecycle management, conditional access, PAM/PIM, federation, SSO, MFA, identity threat detection, and zero trust identity control design. AI & Blockchain Architecture: Secure architecture and governance for AI, machine learning, generative AI, agentic solutions, distributed ...

Cyber Security Manager

Location
Harrow, England, United Kingdom
Lead and develop the organisation's cyber security strategy and roadmap Manage cyber security operations, incident response and investigations Drive improvements across security monitoring, threat detection and vulnerability management Develop and implement security policies, standards and governance frameworks Ensure compliance with relevant regulations, security frameworks and industry best ...

SecOps Engineer

Hiring Organisation
Context Recruitment Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £75,000 per annum
risk and contributing to the continuous improvement of the company's overall security posture. Responsibilities: Monitor security tools including SIEM (QRadar) and respond to threat detection alerts Triage, analyse and prioritise security (via ServiceNow) Investigate root causes of security issues and design effective remediation solutions Oversee Patch Management ...

Head of Information Security

Hiring Organisation
Picture More
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
certification • Proven ownership of ISO 27001 certification and continuous improvement • Strong experience managing outsourced SOC and specialist security providers • Excellent understanding of incident response, threat detection, vulnerability management and remediation • Strong Microsoft/Azure, cloud, infrastructure and SaaS security knowledge • Experience providing security assurance across technology projects ...

Senior Data Scientist - (Privacy & Security Controls)

Location
Greater London, England, United Kingdom
ambitious collaboration between the public, charity and private sectors, designed to help people live healthier lives for longer through better prevention, earlier detection and improved treatment of diseases. We will speed up the discovery of new methods of early disease detection, and the evaluation of new diagnostic tools … evaluate the privacy, fidelity and utility trade‐offs of different approaches. Collaborate with our Information Security team on data‐driven security control assessment, threat detection and monitoring approaches, including identifying signals of risky behaviour, anomalous activity or misuse of data access environments, and cyber risk quantification. Build prototypes ...

Senior SOC Analyst — Threat Detection & Incident Response

Location
City Of London, England, United Kingdom
Morgan in London is looking for a Security Operations Senior Associate to strengthen threat analysis and incident response across our cybersecurity program. You will detect, assess, and respond to threats, coordinating with cross-functional teams to improve security controls and awareness. The role requires hands-on experience with SIEM ...

Cyber Security & Compliance Lead

Location
Greater London, England, United Kingdom
client security assessments, and regulatory reporting. Act as the firm’s senior escalation point for cyber incidents, overseeing response, investigation, and remediation activities. Oversee threat detection, vulnerability management, and security monitoring, working with internal teams and external providers (e.g. SOC services). Ensure effective identity and access management ...