101 to 125 of 237 Threat Detection Jobs in the UK

Lead Information Security Operations Analyst

Hiring Organisation
MasterCard
Location
London, UK
Employment Type
Full-time
help people, businesses and governments realize their greatest potential. Title and SummaryLead Information Security Operations AnalystOverview This is an exciting position for a Lead Threat Intelligence Analyst to join Vocalink's dedicated Threat Intelligence function. You will be play an integral leading role in the Vocalink Threat … internal security teams to deliver actionable intelligence. You will support a diverse range of customers and contribute to key initiatives such as threat hunting, vulnerability management, and insider threat detection. Collaboration is at the heart of this position. You will work alongside Mastercard's global threat intelligence ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service ...

Senior SOC Analyst

Hiring Organisation
Searchability NS&D
Location
Farnborough, England, United Kingdom
role in monitoring, investigating and responding to cyber security incidents across critical client environments. You will analyse alerts, investigate complex threats, improve detection capabilities and contribute to the ongoing maturity of the SOC. You will also: Monitor and investigate security events across enterprise environments Perform incident response activities … support remediation efforts Analyse network traffic, endpoint activity and system logs Improve detection rules using MITRE ATT and CK techniques Produce technical and customer facing reports Support threat intelligence activities and mentor junior analysts where required Senior SOC Analyst Essential Skills Previous experience within a Security Operations Centre ...

Microsoft Security Engineer

Location
Basildon, England, United Kingdom
excellent opportunity for a security professional with strong Microsoft security expertise to work across enterprise Azure environments, helping to improve security posture, strengthen detection capabilities and deliver scalable security solutions. You will play a key role in designing, implementing and optimising Microsoft security technologies including Microsoft Sentinel, Defender … Responsibilities Design, implement and optimise Microsoft Sentinel environments, including onboarding, configuration and continuous improvement Develop and tune Sentinel analytics rules using KQL, improving detection coverage and reducing false positives Support security monitoring, threat detection and incident investigation across enterprise environments Configure and enhance Microsoft Defender XDR capabilities ...

Senior Python Engineer — Data & Detection

Location
Belfast City District, Northern Ireland, United Kingdom
About iVerify We are Experts in Mobile Threat Hunting. The first mobile threat hunting company to protect mobile devices like any other vulnerable corporate endpoint. The mobile security market has a problem. Simply put, current solutions fail to meet the sophistication of modern threats or the growing privacy … often dangerous work - but because enterprises and consumers deserve real protection from advanced mobile threats without sacrificing privacy. We are building the first mobile threat hunting company to harmonize security and privacy in the face of a new class of mobile threats. Supported by some of the most well ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity and emerging threats Supporting incident response and containment activities Performing threat hunting activities to proactively identify potential security risks Escalating significant or complex incidents where appropriate Working closely with Tier 1 and Tier 3 analysts … incident responders and other technical teams Tuning and improving detection rules and use cases to reduce false positives and improve threat detection Analysing logs and security events from endpoints, networks, cloud environments and other infrastructure Producing clear investigation reports and documenting incidents, findings and recommendations Maintaining awareness ...

Proofpoint Engineer - 6 Month Contract - Hybrid in Wokingham - Inside IR35

Hiring Organisation
Hamilton Barnes
Location
Wokingham, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Daily
role leads the design, implementation, administration, and optimisation of Proofpoint security solutions within a large enterprise environment, bringing deep expertise across email security, threat protection, DLP, and email authentication technologies to protect against phishing, malware, and advanced email-based threats. Key Responsibilities Serve as the engineer for the Proofpoint … platform, designing, deploying, configuring, and maintaining solutions including Proofpoint Email Protection (PEP), Targeted Attack Protection (TAP), Threat Response Auto-Pull (TRAP), Email Fraud Defense (EFD), and Information Protection/DLP Manage email security policies, spam filtering, malware protection, and threat detection rules, configuring and maintaining email authentication ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
London, UK
Employment Type
Full-time
complex investigations using data from multiple security technologies and information sources. Correlating security alerts and events, executing advanced queries, and applying behavioural and anomaly-detection techniques. Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency. … guidelines in alignment with industry best practices and evolving AI capabilities. Recommending adjustments to security tools and processes to reduce false positives and improve detection quality. Examining and correlating log data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments. Working with SOAR platforms, SIEM technologies ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
Walsall, West Midlands, UK
Employment Type
Full-time
complex investigations using data from multiple security technologies and information sources. Correlating security alerts and events, executing advanced queries, and applying behavioural and anomaly-detection techniques. Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency. … guidelines in alignment with industry best practices and evolving AI capabilities. Recommending adjustments to security tools and processes to reduce false positives and improve detection quality. Examining and correlating log data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments. Working with SOAR platforms, SIEM technologies ...

Proofpoint SME

Hiring Organisation
Infoplus Technologies UK Ltd
Location
Wokingham, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: Serve … platform and related email security technologies. Design, deploy, configure, and maintain Proofpoint solutions, including: Proofpoint Email Protection (PEP) Proofpoint Targeted Attack Protection (TAP) Proofpoint Threat Response Auto-Pull (TRAP) Proofpoint Email Fraud Defense (EFD) Proofpoint Information Protection/DLP Manage email security policies, spam filtering, malware protection, and threat ...

Proofpoint SME- SC Cleared or SC Eligible

Hiring Organisation
Vallum Associates
Location
Wokingham, England, United Kingdom
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: • Serve … email security technologies. • Design, deploy, configure, and maintain Proofpoint solutions, including: o Proofpoint Email Protection (PEP) o Proofpoint Targeted Attack Protection (TAP) o Proofpoint Threat Response Auto-Pull (TRAP) o Proofpoint Email Fraud Defense (EFD) o Proofpoint Information Protection/DLP • Manage email security policies, spam filtering, malware protection ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports … support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience: Microsoft Entra ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches. You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture … building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements. Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack ...

IT Cyber Security Analyst Tier 2

Hiring Organisation
Littlefish
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£35,000
complex cyber landscape. We're looking for an experienced Cyber Security Analyst Tier 2 to join our Cyber Security Operations Centre (CSOC), providing advanced threat detection, investigation and response services while acting as an escalation point for our Tier 1 analysts. As a Tier 2 Cyber Security Analyst … events, and helping to continuously improve our security operations capability. Key responsibilities include: Monitoring and investigating alerts generated by our SIEM platforms Performing advanced threat triage, analysis and response activities Supporting incident response investigations and root cause analysis Acting as an escalation point and mentor for Tier 1 analysts ...

Cyber Security Engineer

Hiring Organisation
Advania UK
Location
Manchester, UK
Employment Type
Full-time
dynamic team in Manchester as a Cyber Security Specialist, where you will be responsible for delivering a comprehensive range of security services. This includes detection and response services, vulnerability scanning, dark web monitoring, social engineering assessments, and detailed reporting. Your primary objective will be to maintain and enhance … scalable security tooling and integrations using DevOps practices (CI/CD, Infrastructure as Code).Contribute to the operationalization of AI-driven capabilities to enhance threat detection and response. Collaborate with internal and external stakeholders to resolve security incidents and ensure vulnerability compliance. Strive for customer satisfaction while continuously ...

Technical Account Manager

Location
Cheltenham, England, United Kingdom
pentest cadence, IR retainer, EASM, DLP, tabletops, etc) - surfacing risk credibly and identifying where NCC services can close the gap. Maintain and refresh the threat overview as the customer's environment and threat landscape evolve. Key Requirements Proven experience in cybersecurity, IT operations, or managed security services … customer-facing technical role (e.g. TAM, Security Consultant) Experience engaging senior stakeholders (CISO, Head of IT/Security) Strong understanding of SOC operations, threat detection, and incident response Ability to understand end-to-end customer environments (cloud, infrastructure, security stack) Experience with security tools (e.g. SIEM, EDR, SOAR ...

Cyber Security Engineer

Hiring Organisation
Foresters Financial
Location
Bromley, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
Lead or support incident response activities in line with internal policies and procedures. Escalate significant incidents appropriately and provide clear, timely updates to stakeholders. Threat Detection & Prevention Proactively identify emerging threats, vulnerabilities, and attack patterns affecting the organisation. Tune and optimise security tools to reduce false positives … improve detection accuracy. Implement, manage, and maintain endpoint protection and security policies. Support vulnerability management activities, including remediation planning and risk tracking. Security Operations & Continuous Improvement Maintain and enhance security monitoring rules, alerts, and dashboards. Contribute to the development and maintenance of security runbooks and incident response playbooks. Support ...

Principal Solutions Consultant

Hiring Organisation
ROCK
Location
United Kingdom
including Next Generation Firewalls, Zero Trust, Identity Management and Microsoft Security solutions (Defender, Entra, Purview). Understanding of SOC/SIEM concepts — log ingestion, threat detection, alert triage, and how managed detection & response (MDR) services fit into a client's security posture. Backup, resilience and disaster recovery ...

Cyber Security Lead

Hiring Organisation
Rebel Recruitment
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent
Cyber Security Operations Manager to lead our in-house Security Operations capability while remaining deeply involved in the day-to-day technical aspects of detection, response and continuous improvement. This role is ideal for someone moving from a Senior SOC Analyst, Senior Security Engineer or SOC Team Lead position … small SOC team while remaining an active technical contributor. Investigating and responding to security incidents across enterprise, cloud and operational technology environments. Improving detection capabilities, automation and SOC processes to stay ahead of emerging threats. Working closely with vulnerability management, incident response and governance teams to strengthen the organisation ...

Senior Cyber Threat & Vulnerability Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
leading Financial Services client in the City of London is looking for a Senior Cyber Threat & Vulnerability Manager to lead its cyber threat, vulnerability, penetration testing and exposure management capabilities. This is a senior, hands-on role within the CISO function, focused on identifying and responding to emerging … business. The role offers a base of circa £110,000 + excellent benefits with very flexible working. Key Responsibilities Lead the end-to-end Threat, Vulnerability and Exposure Management function. Drive the prioritisation and remediation of high and critical vulnerabilities, including zero-day and actively exploited threats. Own penetration ...

Senior Security Architect - SecOps and Vulnerability Management

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
International Consumer, you will proactively partner with technology and business colleagues to identify and address security issues. You will embed security culture, lead threat modeling, and drive architecture reviews to ensure our products are secure by design. Your role will be pivotal in managing emerging risks, influencing product strategy … serving as the subject matter expert for the SecOps and Vulnerability Management strategy as well as embedding detection and response capabilities on a modern technology stack. You will collaborate globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Job Responsibilities: Design, scale ...

SIEM Engineer- SC Cleared

Hiring Organisation
eTeam Workforce Limited
Location
Wokingham, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 559 Daily
/12/2026 Clearance: Active SC Role Description: SIEM Deployment & Management - Set up, configure, and maintain SIEM tools like ArcSight, Splunk, or QRadar. Threat Detection & Analysis - Monitor security logs, detect anomalies, and investigate potential threats. Incident Response - Work with security teams to analyze and mitigate security incidents. … Custom Rule Creation - Develop and fine-tune detection rules and alerts to identify malicious activities. Security Reporting - Generate reports on security events, trends, and system performance. Collaboration - Work with IT and security teams to improve overall cybersecurity posture. Required Skills & Qualifications Technical Expertise - Strong knowledge of SIEM platforms, network ...

Senior Threat Detection & Response Engineer

Location
Greater London, England, United Kingdom
Pirum Systems Ltd. is seeking a Senior Cyber Detection and Response Engineer in London, UK. You will lead Pirum's detection and response capability, enabling machine-speed detection, investigation and containment across AWS, on-premises, workforce IT and endpoints. You will set direction for detection engineering … report to the CISO. The role is hands-on and requires operating independently in a lean team, with a focus on detection as an engineering discipline and clear communication to #J-18808-Ljbffr ...

Cyber Security Engineer

Hiring Organisation
Nigel Wright Group
Location
Wallsend, Tyne and Wear, United Kingdom
Employment Type
Full-Time
Salary
£50,000 per annum
Lead security remediation activity on escalated MDR incidents, coordinating technical resolution and clear communication across the IT team and wider business. Develop and enhance threat detection rules and use cases in collaboration with internal stakeholders and third-party partners. Implement and maintain security controls across Microsoft 365, Azure ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
London, UK
Employment Type
Full-time
Monitoring Advisory: Evaluate and optimise the use of Azure Defender and other security monitoring tools in Azure and Google Cloud. Offer guidance on improving threat detection, monitoring, and response for cloud-based resources. Access Control & Conditional Access: Assess and improve Conditional Access policies and identity management strategies, enforcing ...