126 to 150 of 416 Threat Intelligence Jobs in England

SOC and Incident Response Lead

Location
Greater London, England, United Kingdom
experienced SOC and Incident Response Lead at ASOS, you will provide hands‐on technical leadership across security monitoring, detection, engineering, incident response, and threat‐led investigations. You will lead the SOC and Incident Response team, ensure security incidents are investigated and resolved effectively, and maintain a strong operating relationship … complex security incidents. Own and improve the SOC detection lifecycle, including reviewing detection coverage, tuning noisy or low‐value alerts, creating new detections from threat intelligence and incident learnings, and mapping coverage against relevant attack techniques and critical business assets. Establish and maintain incident response processes, procedures ...

Senior SOC Engineer

Hiring Organisation
Appcast
Location
Basingstoke, Hampshire, UK
directly with SIEM/XDR platforms and custom tooling, you’ll have access to dedicated SOC infrastructure: lab environments for malware analysis, detection testing, threat intel development, and proof of concepts.You’ll be part of a high-performing team that values hands-on expertise, technical leadership, and continuous growth. … culture is built by engineers who’ve progressed through roles in security operations, threat intelligence, and engineering. You’ll benefit from cyber ranges, training labs, and the freedom to shape your development path.As part of a leading MSSP, you'll gain exposure to a wide range of industries ...

Lead Technical Engineer

Hiring Organisation
Anson Mccade
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£790 per day
previous clients. Strong hands-on experience designing, building, and operating SOC technology, including at least two of: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence . Proven delivery record in SIEM onboarding and configuring applications for high data-ingest rates (Cloud and/or On-Prem). Technical … privilege, encryption). Networking: OSI and TCP/IP models, IP addressing, subnetting, routing protocols, LAN/WAN configurations, ACLs, and VLANs. Cybersecurity Fundamentals: Threat mitigation, risk assessment, vulnerability management, threat intelligence, and TTPs (Tactics, Techniques, and Procedures). Systems Administration: Endpoint security/EDR, user access ...

AI Security Consultant

Location
Greater London, England, United Kingdom
introduced by AI systems that can reason, retrieve data, call tools and take action. You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing … risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight. Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions. Advise on secure patterns ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
introduced by AI systems that can reason, retrieve data, call tools and take action. You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing … risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight. Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions. Advise on secure patterns ...

SOC Automation Engineer

Location
Pocklington, England, United Kingdom
engineering and service delivery teams to understand operational requirements and deliver automation solutions. Build and maintain integrations with security technologies including SIEM, SOAR, EDR, threat intelligence and cloud platforms. Leverage APIs and external data sources to enhance security workflows and processes. Explore and implement AI-enhanced automation capabilities … Python, JavaScript or similar scripting and development languages. Good understanding of REST APIs and systems integration. Experience working within a Security Operations, Incident Response, Threat Engineering or Security Engineering environment. Understanding of modern security technologies including SIEM, SOAR, EDR, IAM, threat intelligence and vulnerability management solutions. Knowledge ...

Cyber Security Manager

Hiring Organisation
SAAB
Location
Fareham, Hampshire, UK
Employment Type
Full-time
develop and lead the Saab UK Cyber Security Strategy. As part of the Saab UK Cyber defence cell the role will be responsible for threat intelligence identification. Working closely with Security and IT develop resilience in the Saab UK Supply chain and provide the necessary GRC expertise … cyber security policies aligned with defence and wider government standards. Act as the Saab UK representative on the Global Cyber Council. Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process. Manage incident response and coordinate with other company parties. Lead on the compliance of Cyber controls ...

Head of Cyber Defence

Hiring Organisation
Appcast
Location
London, UK
cyber security leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives.Key ResponsibilitiesLead and manage the Cyber Defence function, overseeing security … operations, threat intelligence, vulnerability management, and incident response capabilities.Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats.Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents.Oversee threat intelligence programmes, identifying emerging risks and implementing ...

Head of Cyber Defence

Hiring Organisation
IDEX Consulting
Location
London, UK
Employment Type
Full-time
cyber security leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives. Key ResponsibilitiesLead and manage the Cyber Defence function, overseeing … security operations, threat intelligence, vulnerability management, and incident response capabilities. Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats. Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents. Oversee threat intelligence programmes, identifying ...

Cyber Security Manager

Location
Greater London, England, United Kingdom
frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls Experience with threat … Manager, Cyber Security, Information Security, Security Architecture, Cyber Risk, NIST, ISO 27001, CIS, CAF, Defence, Government, Security Clearance, SC, DV, Incident Response, Vulnerability Management, Threat Intelligence, NSD #J-18808-Ljbffr ...

Cyber Security Manager

Location
Slough, England, United Kingdom
frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls Experience with threat … Manager, Cyber Security, Information Security, Security Architecture, Cyber Risk, NIST, ISO 27001, CIS, CAF, Defence, Government, Security Clearance, SC, DV, Incident Response, Vulnerability Management, Threat Intelligence, NSD #J-18808-Ljbffr ...

Cyber Security Manager

Hiring Organisation
Searchability NS&D
Location
City of London, London, United Kingdom
frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls Experience with threat … Manager, Cyber Security, Information Security, Security Architecture, Cyber Risk, NIST, ISO 27001, CIS, CAF, Defence, Government, Security Clearance, SC, DV, Incident Response, Vulnerability Management, Threat Intelligence ...

SOC Specialist - Incident Management, Security Monitoring, Public Sector SC Cleared, Remote, 850

Hiring Organisation
Appcast
Location
London, UK
prestigious public sector client. If you thrive in a dynamic environment, excel at managing teams, and possess a deep understanding of incident management and threat intelligence, this is your opportunity to make a tangible impact.As SOC Manager, you will define and lead the delivery of our Cyber Security … security. Strong understanding of incident management processes and security monitoring tools. Demonstrated ability to lead and manage high-performing security teams. Extensive experience delivering threat intelligence and assessment. Hands-on experience with cyber security solutions such as SIEM, IDS/IPS, antivirus, and endpoint detection tools. Experience managing ...

Cyber Security Consultant I Cyber Risk I Risk Assesment

Location
City Of London, England, United Kingdom
excellent opportunity for a cyber security professional who wants to move beyond purely technical security and develop their career across cyber risk, threat intelligence, cyber insurance and strategic risk management. The Role You’ll work closely with senior cyber risk stakeholders and contribute to a broad range … initiatives, including: Monitoring and analysing the evolving cyber threat landscape Leading the production of cyber and insurance market intelligence Supporting cyber risk strategy, appetite and guidelines Contributing to Realistic Disaster Scenarios (RDS) and risk modelling Supporting the development and delivery of cyber technical training Assessing and selecting technical ...

CTI Delivery Lead: Cyber Threat Intelligence & SIEM

Location
Reading, England, United Kingdom
Harvey Nash Group seeks a Cyber Threat Intelligence Delivery Lead for Reading/Havant on a hybrid basis for a 6-month programme. You will spearhead CTI initiatives, drive monitoring and security operations, and coordinate with SIEM tools to strengthen threat detection and resilience. The role requires ...

CTI Delivery Lead: Cyber Threat Intelligence & SIEM

Location
Havant, England, United Kingdom
Harvey Nash Group seeks a Cyber Threat Intelligence Delivery Lead for Reading/Havant on a hybrid basis for a 6-month programme. You will spearhead CTI initiatives, drive monitoring and security operations, and coordinate with SIEM tools to strengthen threat detection and resilience. The role requires ...

MEA Embedded Threat Intelligence Specialist

Location
Greater London, England, United Kingdom
Control Risks’ Embedded Consulting team is seeking a Regional Threat Intelligence Specialist to support a global tech client in producing reports and other threat-related products for the EMEA region. The role focuses on threat, vulnerability, and risk assessments, with on-ground analysis of local risks … site datacenter visits. The ideal candidate has 3-5 years in risk analysis or intelligence gathering, strong OSINT, and excellent report-writing skills. #J-18808-Ljbffr ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
managed SOC providers Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities Support vulnerability management, remediation tracking, and reporting Assist with threat intelligence gathering and analysis Maintain and improve the Information Security Management System (ISMS) Conduct security risk assessments and maintain risk registers Assist with … Security Experience ISO 27001 Understanding Microsoft Sentinel Proficiency Risk Management Methodologies Incident Response Coordination ATS Optimization Keywords Hard Skills Security Incident Investigation Vulnerability Management Threat Intelligence Analysis Security Risk Assessment Security Policy Development AI Governance Policies Security Metrics Production Third-Party Risk Management GDPR Knowledge Networking and Cloud ...

Advisory PSIRT Engineer

Location
Farnborough, England, United Kingdom
compliance, vulnerability reporting readiness, and regulatory response activities. Key Responsibilities Vulnerability Assessment & Triage: Evaluate product security vulnerabilities, exploits, and incidents from external researchers, threat intelligence, public disclosures, and internal testing to determine severity, risk, and business impact. PSIRT Case Management: Manage the end-to-end lifecycle of vulnerability … Compliance: Assist with CRA reporting requirements by identifying actively exploited vulnerabilities or severe incidents, preparing regulatory reports, and participating in readiness exercises. Threat Intelligence Monitoring: Monitor global vulnerability databases, threat feeds, and third-party notifications to proactively assess emerging risks impacting Lenovo products. Metrics & Continuous Improvement: Develop ...

Embedded Security Education & Awareness Programme Consultant

Location
Greater London, England, United Kingdom
tracking, build leadership dashboards, and escalat Conference & Travel Security. Produce location-specific security briefings and short-form audio content for major conferences, drawing on threat intelligence inputs and distributing through our events coordination channels. New Hire Security Onboarding. Deliver monthly live onboarding sessions, create interactive exercises and follow … assessments, maintain on-demand recordings, and manage automated follow-up communications. Threat Briefings. Coordinate quarterly security briefings for high-profile researchers and secure recurring slots at leadership forums to deliver concise threat updates. Internal Security Portal. Maintain and expand the clients security resource hub with a library ...

Senior Cyber Threat Intelligence Analyst - Hybrid UK

Location
Portsmouth, England, United Kingdom
Babcock International in the United Kingdom is seeking a Senior Cyber Threat Intelligence Analyst to identify, analyse and report threats that could impact people, information, systems and customers. You will transform complex data into actionable intelligence to support proactive cyber defence, incident response, vulnerability management and risk ...

Hybrid Cyber Threat Intelligence Analyst

Location
Greater London, England, United Kingdom
Vanguard Group in London is seeking an experienced Cyber Threat Intelligence Analyst to collect, analyze, and disseminate threats across internal teams. You will monitor threat activity, identify new TTPs, and produce actionable reports and IOCs for stakeholders. Candidates should have SOC experience, knowledge of MITRE ...

AI & Automation Engineering, Global Security (Vice President)

Location
Greater London, England, United Kingdom
with testing, monitoring, alerting, error handling and rollback. Deliver automation supporting security operations, including alert triage and enrichment, case summarisation, evidence collection, detection tuning, threat intelligence synthesis, and repetitive investigative workflows. Partner with pillar leads to deliver AI and automation capability across the wider security domains, including access … event triage, and vulnerability prioritisation and contextualisation. Develop LLM and agent-based workflows integrated with SIEM, EDR, SOAR, IGA, PAM, CSPM, DLP, ticketing and threat intelligence platforms via supported APIs. Set the global AI Security and automation roadmap in partnership with the Head of Cyber Operations and pillar ...

Embedded Security Education & Awareness Programme Consultant

Hiring Organisation
Control Risks
Location
London, UK
Employment Type
Full-time
leadership dashboards, and escalate non-compliance. Conference & Travel Security. Produce location-specific security briefings and short-form audio content for major conferences, drawing on threat intelligence inputs and distributing through our events coordination channels. New Hire Security Onboarding. Deliver monthly live onboarding sessions, create interactive exercises and follow … assessments, maintain on-demand recordings, and manage automated follow-up communications. Threat Briefings. Coordinate quarterly security briefings for high-profile researchers and secure recurring slots at leadership forums to deliver concise threat updates. Internal Security Portal. Maintain and expand the clients security resource hub with a library ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside … Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication ...