1 to 25 of 55 Threat Detection Jobs in the UK excluding London

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

Security Analyst

Hiring Organisation
FryerMiles
Location
Reading, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £50,000 per annum
Service Provider (MSP) to recruit a Security Analyst based in Reading. The successful candidate will play a key role in security operations, incident response, threat detection and automation, helping to protect customer environments while continuously improving security platforms and processes. Key Responsibilities Manage the full security incident lifecycle … from investigation through to resolution. Monitor, investigate and respond to security events across cloud, identity and endpoint environments. Design, implement and optimise SIEM detection rules to improve threat detection and reduce false positives. Develop and maintain security automation using SOAR platforms, Logic Apps, Python and APIs. Conduct ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
South East, United Kingdom
Employment Type
Permanent
+ 15k Bonus | Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating … security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation ...

Network Security Manager

Hiring Organisation
Pearson Whiffin IT & Digital
Location
Dartford, Kent, South East, United Kingdom
Employment Type
Permanent
Salary
£95,000
response activities, ensuring effective containment, eradication, recovery, and lessons learned. Develop, maintain, and test cyber incident response plans, procedures, and playbooks. Oversee security monitoring, threat detection, threat intelligence, and vulnerability management activities. Provide enterprise-wide oversight of network security technologies, controls, and architectures. Ensure the effective management … optimisation of firewalls, network access controls, intrusion detection/prevention systems, secure remote access solutions, and related security platforms. Lead investigations into security breaches, suspicious activity, and emerging threats. Drive continuous improvement across security operations processes, tooling, and capabilities. Produce security reporting, metrics, and risk-based recommendations for senior ...

Cyber Security Engineer

Hiring Organisation
Picture More
Location
Leeds, West Yorkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum
technical, hands-on role where you’ll play a key part in protecting critical systems and data, while driving improvements across security operations, threat detection and incident response. You’ll work with technologies including Microsoft Sentinel, Security Copilot and Azure, collaborating with internal IT teams and an outsourced … ahead of emerging threats, including AI and automated attack methods. We’re looking for someone with: Experience in Cyber Security Operations, Incident Response or Threat Detection Strong hands-on experience with Microsoft Sentinel (SIEM) Experience with Microsoft Security Copilot or similar AI-assisted security tools Azure cloud security ...

Talent Acquisition Partner

Hiring Organisation
Jobleads-UK
Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Security Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands‐on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements in detection … improvement of incident response playbooks and operational runbooks, validating them through real incidents and simulations. Support the optimisation and tuning of security monitoring and detection capabilities, including SIEM and endpoint tooling, to improve signal quality and reduce false positives. Support the execution of the end‐to‐end vulnerability management ...

Security Operations Technical Lead

Hiring Organisation
AJ BELL BUSINESS SOLUTIONS LIMITED
Location
Salford, Greater Manchester, North West, United Kingdom
Employment Type
Permanent
operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands-on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements in detection … improvement of incident response playbooks and operational runbooks, validating them through real incidents and simulations. Support the optimisation and tuning of security monitoring and detection capabilities, including SIEM and endpoint tooling, to improve signal quality and reduce false positives. Support the execution of the end-to-end vulnerability management ...

SOC Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Birmingham, England, United Kingdom
This role reports to Head of SOC Operations. This hands‐on position serves as the senior technical authority for SOC operations, driving excellence in threat detection, incident response, and security operations across a diverse multi-client portfolio. You will combine deep technical proficiency with strong consulting skills … will leverage your combined experience in leadership and security operations to enable the smooth delivery of our award‐winning defensive monitoring service, supporting proactive detection and response for clients across the globe. You will be expected to contribute, hands on, technically where and when needed, including deep dive investigations ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
most critical organisations. This is your opportunity to work at the frontline of cyber defence, investigating real-world threats, shaping detection capabilities, and helping drive the evolution of a mature and high-performing SOC. You'll be joining a collaborative team of cyber specialists who are passionate about defending … organisations from evolving threats. You'll have the opportunity to influence SOC strategy, enhance detection capabilities, develop your expertise, and work with cutting-edge security technologies in a fast-paced operational environment. Ready to make an impact? Join us and help protect systems that matter. Apply today and take ...

SOC Senior Analyst

Hiring Organisation
DXC
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
available throughout the hiring process. This is an opportunity to play a key role in protecting critical customer environments, leading complex investigations, driving proactive threat hunting activities, and helping shape the future of our security monitoring services. Were looking for someone who enjoys solving difficult security challenges, mentoring others … leading the investigation and response to sophisticated cyber threats and incidents. Youll work closely with internal security teams, customers, and stakeholders to continuously evolve detection capabilities, improve operational maturity, and ensure DXC continues to deliver a world-class security monitoring service. This role operates on a Monday to Friday ...

MDR Team Lead

Hiring Organisation
Jobleads-UK
Location
Oxford, England, United Kingdom
Role Summary Sophos is seeking an experienced MDR Manager to support its Managed Detection and Response customers. The successful candidate will lead MDR analysts and day-to-day operations, ensuring operational quality, timely incident handling, effective customer communication, consistent reporting, and continuous service improvement. As part of the Managed … Detection and Response team, you will help deliver best-in-class monitoring, detection, and response services that proactively defend customer environments. You will guide investigations, review quality, coach analysts, manage escalations, and use operational insights to improve team performance, investigation consistency, and customer outcomes. What you will ...

SOC Analyst

Hiring Organisation
Specialist Computer Holdings Plc
Location
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£500 per day
Analyst - £500/day via Umbrella Short Term Contract - Hemel Hempstead (Onsite) - SCC Flex Contract We're looking for an experienced SOC Analyst/Detection Engineer to support the delivery of a prioritised detection engineering backlog across AWS, Azure, Microsoft 365, Defender XDR, Dynatrace, and ServiceNow environments. Your … responsibilities as the SOC Analyst: Designing, developing, testing, and deploying detection use cases aligned to MITRE ATT&CK. Creating and optimising detection rules, alerts, and correlation logic across multiple security platforms. Developing detections for credential compromise, privilege escalation, persistence, lateral movement, and data exfiltration. Performing validation, tuning ...

Boundary Managed Service Lead

Hiring Organisation
Jobleads-UK
Location
Farnborough, England, United Kingdom
Manage boundary security SLAs, ensuring 100% compliance with availability, performance and security targets Lead boundary security operations team, ensuring round-the-clock monitoring and threat detection Manage boundary service P&L and resource allocation across multiple customer accounts Establish and maintain boundary service quality standards and operational procedures … Boundary Architecture & Security Design and implement boundary security architectures including firewalls, intrusion detection/prevention and DDoS protection Architect boundary security solutions aligned with MOD security requirements and defence standards Design boundary traffic inspection, content filtering and advanced threat protection Lead boundary security assessments and vulnerability remediation Implement ...

IT Cyber Security Analyst

Hiring Organisation
Rise Technical Recruitment
Location
Scunthorpe, Lincolnshire, United Kingdom
Employment Type
Permanent
Salary
£45000 - £55000/annum Holiday, Pension, Healthcare
+ Life Assurance + Health Cash Plan + EAP + Sick Pay Are you a cyber security professional looking to take ownership of patching, threat detection, and incident response in a large-scale enterprise environment while playing a key role in strengthening security maturity? This is a fantastic … will take ownership of patching across the IT estate, coordinate remediation on critical systems, and support vulnerability management processes. You will also contribute to threat hunting activities and help continuously enhance detection and response capabilities. The ideal candidate will have hands-on cyber security experience, strong knowledge across ...

L2 Security Analyst

Hiring Organisation
Salt Search
Location
Brighton, East Sussex, England, United Kingdom
Employment Type
Temporary
Salary
£220 per day
looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting-edge AI-powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across … third-party platforms into the security ecosystem. Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams. Validate AI-assisted detection, investigation and automated response workflows. Design and execute testing scenarios, attack simulations and operational readiness exercises. Identify integration issues, deployment risks and workflow improvements. Troubleshoot ...

IT Security Analyst

Hiring Organisation
Proactive Appointments
Location
West Drayton, Middlesex, England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £60,000 per annum
security incidents in collaboration with the wider IT team. Assisting with incident response, investigation, containment and recovery activities. Developing and improving cyber security monitoring, detection and alerting capabilities. Monitoring internal and external threat landscapes and reporting emerging risks. Researching and recommending new security technologies, trends and best practices. … broad range of security technologies, tools and controls. Good understanding of ISO27001 and/or other recognised Information Security frameworks. Experience in risk assessment, threat detection, vulnerability management and incident response. Strong analytical and problem-solving skills with the ability to perform under pressure. Excellent communication skills with ...

IT Security Manager

Hiring Organisation
IT Talent Solutions
Location
Godalming, Surrey, United Kingdom
Employment Type
Permanent
Salary
£55000 - £72000/annum + Bens
enterprise IT environments Knowledge of identity & access management (IAM, MFA, RBAC, PAM) Experience with risk management and ISO 27001 compliance Understanding of incident response, threat detection, and DevSecOps practices Excellent communication skills with the ability to translate technical risk into business terms Desirable Certifications such as CISSP, CISM ...

Cyber Manager

Hiring Organisation
Malloy Aeronautics Ltd
Location
Maidenhead, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
appropriately flowed down to suppliers, partners, and third-party service providers. 4. Operational Cyber Security Management Oversee operational security activities across multiple entities, including: Threat detection and monitoring Incident response and remediation Vulnerability identification and patch management Endpoint protection and hardening Network and boundary defence IDS/… research). Demonstrable experience managing cyber security in high-assurance and classified system environments. Strong experience across security operations, incident response, vulnerability management, and threat detection. Technical knowledge of: Identity management and access controls PKI and cryptographic services SIEM platforms and log analytics Firewalls, boundary protection, and secure networking ...

Cyber Security Lead

Hiring Organisation
Rebel Recruitment
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent
Cyber Security Operations Manager to lead our in-house Security Operations capability while remaining deeply involved in the day-to-day technical aspects of detection, response and continuous improvement. This role is ideal for someone moving from a Senior SOC Analyst, Senior Security Engineer or SOC Team Lead position … small SOC team while remaining an active technical contributor. Investigating and responding to security incidents across enterprise, cloud and operational technology environments. Improving detection capabilities, automation and SOC processes to stay ahead of emerging threats. Working closely with vulnerability management, incident response and governance teams to strengthen the organisation ...

Cyber Security Analyst

Hiring Organisation
Hays Technology
Location
Driffield, East Riding of Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£40000 - £45000/annum Up to £45,000
with industry standards and regulations. What this role involves: Develop, monitorand mature the SIEM solution. Support ongoing development and monitoring of IDS/IPS, detection and response solutionsand other threat detection systems. Analyseincidents and coordinate appropriate responses, including containment and escalation. Perform vulnerability scanning and assistwith remediation … What I'm looking for: Experience in a cybersecurity or infrastructure security role. Experience of commonplace SIEM and vulnerability management tools Strong knowledge of detection and response solutions, such as EDR, XDRand MDR. Solid understanding of common attack vectors, security principlesand risk-based thinking. Effective communication skills, with ...

SOC Cyber Security Analyst

Hiring Organisation
Contracts Consultancy Ltd
Location
SN13, Hudswell, Wiltshire, Corsham, United Kingdom
Employment Type
Contract
environment. Analyse security incidents to determine scope, impact, and priority, ensuring appropriate escalation and response. Manage end-to-end incident response activities from detection through to resolution. Support the development and enhancement of SIEM use cases, detection rules, analytics, and playbooks. Conduct real-time analysis of logs … policy violations. Work closely with technical teams to support containment and remediation of security incidents. Support continuous improvement of SOC processes, tooling, and detection capability. Contribute to security reporting, documentation, and operational procedures. Requirements: Proven experience working as a SOC Analyst (Tier 2/3) within enterprise or critical ...

Head of Cyber, Band 8b

Hiring Organisation
Gloucestershire Hospitals NHS Foundation Trust
Location
Gloucester, GL1 2EL, United Kingdom
Salary
£66582.00 to £77368.00
full participation in the regional "Defend as One" model. The role combines governance, assurance and hands-on leadership of proactive and preventative tactics, threat intelligence, incident response, vulnerability management, strategy and cultural change to build cyber resilience across the Integrated Care System (ICS). Main duties … managing and improving cyber resilience within large, complex or multi-organisation environments. They will possess deep technical and governance expertise across areas such as threat detection, vulnerability management and incident response, with the ability to translate complex technical risk into clear, articulate, actionable information for senior executives ...

Security Engineer

Hiring Organisation
Erin Associates
Location
Altrincham, Cheshire, North West, United Kingdom
Employment Type
Permanent
Salary
£55,000
assessments and remediation tracking Support implementation of security controls across cloud and on-prem environments Contribute to security policies, standards, and procedures Assist with threat detection engineering and rule tuning Required Skills & Experience Strong understanding of core security technologies (NGFW, WAF, EDR, SIEM) Experience in a SOC, security … ISC2 certifications Experience with cloud platforms such as Amazon Web Services, Microsoft Azure, or Google Cloud Scripting experience (PowerShell, Python, or Bash) Exposure to threat hunting or SIEM rule development What's On Offer Salary up to £55,000 depending on experience Opportunity to work with modern security tools ...

Cyber Security Engineer

Hiring Organisation
Erin Associates
Location
Altrincham, Cheshire, North West, United Kingdom
Employment Type
Permanent
Salary
£55,000
assessments and remediation tracking Support implementation of security controls across cloud and on-prem environments Contribute to security policies, standards, and procedures Assist with threat detection engineering and rule tuning Required Skills & Experience Strong understanding of core security technologies (NGFW, WAF, EDR, SIEM) Experience in a SOC, security … ISC2 certifications Experience with cloud platforms such as Amazon Web Services, Microsoft Azure, or Google Cloud Scripting experience (PowerShell, Python, or Bash) Exposure to threat hunting or SIEM rule development What's On Offer Salary up to £55,000 depending on experience Opportunity to work with modern security tools ...