1 to 25 of 109 Threat Detection Jobs in the UK

Senior Security Engineer

Hiring Organisation
Intec Select Ltd
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 700 Daily
term. You must have active SC clearance. You will play a key role in implementing, configuring, and managing Palo Alto Networks XSIAM to improve threat detection, incident response, security monitoring, and operational resilience. This is an excellent opportunity for a senior security professional to support a major cyber … Minimum Cyber Security Standard. Key Responsibilities: Implement and manage Palo Alto Networks XSIAM security platform Configure security policies, rules, and monitoring capabilities Improve threat detection, response, and security automation Investigate security alerts and support incident response activities Integrate security tools and enhance operational workflows Provide technical guidance ...

Senior Security Engineer

Hiring Organisation
Intec Select Ltd
Location
London, Canary Wharf, United Kingdom
Employment Type
Contract
Contract Rate
£700/day
term. You must have active SC clearance. You will play a key role in implementing, configuring, and managing Palo Alto Networks XSIAM to improve threat detection, incident response, security monitoring, and operational resilience. This is an excellent opportunity for a senior security professional to support a major cyber … Minimum Cyber Security Standard. Key Responsibilities: Implement and manage Palo Alto Networks XSIAM security platform Configure security policies, rules, and monitoring capabilities Improve threat detection, response, and security automation Investigate security alerts and support incident response activities Integrate security tools and enhance operational workflows Provide technical guidance ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP 500 - 550 Daily
delivery, optimisation, and ongoing development of a large-scale Microsoft security environment. The successful candidate will play a key role in enhancing security monitoring, threat detection, automation, and SIEM capabilities, whilst helping drive security improvements across cloud and hybrid platforms. This role is ideally suited to a hands … Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy platforms into ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
Remote work, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550/day
delivery, optimisation, and ongoing development of a large-scale Microsoft security environment. The successful candidate will play a key role in enhancing security monitoring, threat detection, automation, and SIEM capabilities, whilst helping drive security improvements across cloud and hybrid platforms. This role is ideally suited to a hands … Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy platforms into ...

Sr. Backend Engineer, Cloud - Threat Detection / Incident Response (Hybrid, London)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
helping organizations defend themselves from sophisticated cyberattacks? We'd love to meet you.We are seeking a Senior Software Engineer, Cloud to join our Threat Detection and Incident Response (TDIR) team, helping revolutionize security management with our AI-native Falcon Next-Gen SIEM platform – enabling customers to detect, investigate … design, architect, and develop world-class case management and investigation capabilities in Go, empowering security analysts to be more effective at incident response, threat hunting, and collaborative investigations. You'll build intelligent workflows that connect detections, evidence, and response actions into cohesive cases. Leveraging advanced correlation, contextual enrichment ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

Senior Cyber Security Engineer

Hiring Organisation
NTT Global Data Centers EMEA UK ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent
critical in improving, developing and maintaining IT/OT vulnerability management programs and processes. This role performs and leads important tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response … analysis. Designs and executes advanced vulnerability assessments using both automated and manual techniques; collaborates with stakeholders to prioritize remediation based on business risk and threat intelligence. Oversees continuous monitoring of threat intelligence feeds and security alerts, proactively identifying emerging risks and recommending strategic countermeasures. Interprets and synthesizes threat ...

Senior Security Platform Engineer

Hiring Organisation
NTT Global Data Centers
Location
EC4N, Cordwainer, Greater London, United Kingdom
Employment Type
Permanent
critical in improving, developing and maintaining IT/OT vulnerability management programs and processes. This role performs and leads important tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response … analysis. • Designs and executes advanced vulnerability assessments using both automated and manual techniques; collaborates with stakeholders to prioritize remediation based on business risk and threat intelligence. • Oversees continuous monitoring of threat intelligence feeds and security alerts, proactively identifying emerging risks and recommending strategic countermeasures. • Interprets and synthesizes threat ...

Security Analyst

Hiring Organisation
FryerMiles
Location
Reading, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £50,000 per annum
Service Provider (MSP) to recruit a Security Analyst based in Reading. The successful candidate will play a key role in security operations, incident response, threat detection and automation, helping to protect customer environments while continuously improving security platforms and processes. Key Responsibilities Manage the full security incident lifecycle … from investigation through to resolution. Monitor, investigate and respond to security events across cloud, identity and endpoint environments. Design, implement and optimise SIEM detection rules to improve threat detection and reduce false positives. Develop and maintain security automation using SOAR platforms, Logic Apps, Python and APIs. Conduct ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
+ 15k Bonus Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating … security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
South East, United Kingdom
Employment Type
Permanent
+ 15k Bonus | Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating … security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation ...

Embedded Cyber Detection and Response Deputy Team Lead

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cyber Detection and Response Deputy Team Lead serves as the operational second-in-command of the Cyber Detection and Response Team (DART), bridging the gap between hands-on cyber operations and team leadership. The role supports the Team Lead in the ongoing development, maturation, and delivery … client's detection and response capabilities, while providing technical leadership and operational oversight across day-to-day security operations. This position remains actively involved in threat detection, incident response, threat hunting, and detection engineering activities while also assuming supervisory and coordination responsibilities. The Deputy Team ...

Head of Cyber Defence

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
strategy, governance, and operational execution of all defensive security capabilities. Reporting directly to the Chief Information Security Officer (CISO), the role provides leadership across threat detection, incident response, vulnerability management, application security, cloud and platform security, and identity security. The organisation operates a Managed Security Service Provider (MSSP … cyber defense operating model across Enterprise and Tech Ops BAU, ensuring consistent protection and response. Develop and maintain a cohesive defense architecture across detection, response, identity, cloud, and application security. Ensure alignment between internal teams, Tech Ops, and third-party providers (MSSP, platform teams). Drive continuous improvement ...

Head of Cyber Defence

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
cyber security leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives. Key Responsibilities Lead and manage the Cyber Defence … function, overseeing security operations, threat intelligence, vulnerability management, and incident response capabilities. Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats. Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents. Oversee threat intelligence programmes ...

Network Security Manager

Hiring Organisation
Pearson Whiffin IT & Digital
Location
Dartford, Kent, South East, United Kingdom
Employment Type
Permanent
Salary
£95,000
response activities, ensuring effective containment, eradication, recovery, and lessons learned. Develop, maintain, and test cyber incident response plans, procedures, and playbooks. Oversee security monitoring, threat detection, threat intelligence, and vulnerability management activities. Provide enterprise-wide oversight of network security technologies, controls, and architectures. Ensure the effective management … optimisation of firewalls, network access controls, intrusion detection/prevention systems, secure remote access solutions, and related security platforms. Lead investigations into security breaches, suspicious activity, and emerging threats. Drive continuous improvement across security operations processes, tooling, and capabilities. Produce security reporting, metrics, and risk-based recommendations for senior ...

SOC Engineer

Hiring Organisation
Invitise Ltd
Location
City of London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £450 per day
primarily remote role with occasional on-site visits to London. You will be working within a security operations function, supporting the monitoring, detection and response to security threats across the organisation's estate. You will bring solid hands-on experience across SIEM and log management tooling, working independently … experience in the following: Hands-on experience with Splunk in a SOC environment Cribl experience for log management and data pipeline optimisation Security monitoring, threat detection and incident response Working within a security operations centre at a mid-senior level SC clearance held or ability to pass Interested ...

Cyber Security Engineer

Hiring Organisation
Picture More
Location
Leeds, West Yorkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum
technical, hands-on role where you’ll play a key part in protecting critical systems and data, while driving improvements across security operations, threat detection and incident response. You’ll work with technologies including Microsoft Sentinel, Security Copilot and Azure, collaborating with internal IT teams and an outsourced … ahead of emerging threats, including AI and automated attack methods. We’re looking for someone with: Experience in Cyber Security Operations, Incident Response or Threat Detection Strong hands-on experience with Microsoft Sentinel (SIEM) Experience with Microsoft Security Copilot or similar AI-assisted security tools Azure cloud security ...

XSIAM Consultant

Hiring Organisation
83zero
Location
United Kingdom
Networks security technologies and solid experience across XDR and SIEM environments. This role sits within the Security Operations function and is focused on improving threat detection, automation, visibility, and response using XSIAM. *For this role, you must be eligible for SC Clearance* Key Responsibilities Implement and configure Palo … Networks XSIAM to enhance SOC efficiency and visibility Design and manage security automation workflows within XSIAM Integrate and optimise XDR capabilities to support proactive threat detection and response Set up and maintain SIEM-style log ingestion, correlation rules, and enrichment pipelines Build custom dashboards and reports to provide ...

Senior Security Solutions Architect

Hiring Organisation
Jobleads-UK
Location
United Kingdom
senior technical stakeholders, shaping how customers and partners design, adopt, and scale solutions on the Qualys platform across asset and vulnerability management, patch management, threat detection and response, compliance, and cloud/application security.You will own the technical strategy for the partner ecosystem — driving technical enablement, joint solution … large enterprise environment.* Expert-level, hands-on command across multiple domains: asset management, vulnerability management, patching, policy/compliance, cloud security, application security, and threat detection/response.* Proven ability to architect complex, end-to-end security solutions spanning identification through remediation and recovery, independently and at executive ...

Senior Architect - Email & Collaboration Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
some of the most consequential challenges in enterprise security today: AI‐augmented threats, sprawling collaboration surfaces, multi‐cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades … optional or experimental are not the right fit for this role. The expectation is fluency and daily practice, not passing familiarity. ECS Domain Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations ...

Sr. Software Engineer, Cloud (Hybrid, London)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
CrowdStrike offers flexibility and autonomy while encouraging responsible AI adoption, experimentation, and innovation. We are seeking a Senior Software Engineer, Cloud to join our Threat Detection and Incident Response (TDIR) team and help revolutionize security management with our AI-native Falcon Next-Gen SIEM platform, enabling customers … last for current scale and the future. Lead system design and architecture decisions, including design reviews and RFC processes. Develop Go-based microservices supporting threat detection, case management, and incident response workflows, alongside RESTful APIs powering customer-facing capabilities. Take end-to-end ownership of technical initiatives, individually ...

Talent Acquisition Partner

Hiring Organisation
Jobleads-UK
Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Security Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands‐on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements in detection … improvement of incident response playbooks and operational runbooks, validating them through real incidents and simulations. Support the optimisation and tuning of security monitoring and detection capabilities, including SIEM and endpoint tooling, to improve signal quality and reduce false positives. Support the execution of the end‐to‐end vulnerability management ...

Security Operations Technical Lead

Hiring Organisation
AJ BELL BUSINESS SOLUTIONS LIMITED
Location
Salford, Greater Manchester, North West, United Kingdom
Employment Type
Permanent
operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands-on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements in detection … improvement of incident response playbooks and operational runbooks, validating them through real incidents and simulations. Support the optimisation and tuning of security monitoring and detection capabilities, including SIEM and endpoint tooling, to improve signal quality and reduce false positives. Support the execution of the end-to-end vulnerability management ...

Deputy Cyber Detection & Response Team Lead (24/7)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Control Risks' Cyber Detection and Response Deputy Team Lead role sits as the operational second-in-command of the DART, bridging hands-on cyber operations and team leadership. The role supports development and delivery of detection and response capabilities while providing technical leadership and oversight across daily security … operations. This position remains actively involved in threat detection, incident response, threat hunting, and detection engineering; acts as escalation point, leads #J-18808-Ljbffr ...