151 to 175 of 289 Threat Intelligence Jobs in London

Cyber Incident Response Lead

Location
Greater London, England, United Kingdom
operate effectively within high-pressure and time-critical situations. Strong understanding of: Security Operations Centre (SOC) processes and technologies Incident response frameworks and methodologies Threat detection and threat intelligence Endpoint, network, and cloud security monitoring tools Digital forensics and malware analysis principles SIEM and security analytics platforms ...

Cyber Security Analyst - up to 70,000 + Bonus + Benefits

Hiring Organisation
Involved Solutions
Location
London, United Kingdom
Salary
£ 60 K
function, playing a key role in strengthening cyber resilience and protecting critical enterprise systems. This is a hands-on operational security role focused on threat detection, incident response and continuous improvement of security monitoring capabilities. The position of Cyber Security Analyst is suited to an experienced security professional … Providers Maintain and enhance SecOps processes and documentation to enable knowledge sharing Investigate security events, perform vulnerability analysis and support remediation activities Analyse cyber threat intelligence and translate insights into actionable detection improvements Process indicators of compromise and indicators of attack to enhance detection rules Conduct proactive threat ...

Senior Manager/Manager, Cyber Security Manager - Cyber Consultancy - Defence & Security GPS

Hiring Organisation
Deloitte
Location
London, United Kingdom
Salary
£ 120 K
working within Defensive Cyber Operations with an in-depth knowledge of at least one specialisation (security monitoring, network operations, Incident Response/Management, Threat Intelligence, Vulnerability Management or Cyber Operations).Experience working in or with Government organisations, including the handling of assets subject to the Government Security Classification … Policy.Experience of threat and risk modelling.Strong understanding of network security, encryption, authentication, and access control mechanisms.Experience with security technologies such as firewalls, intrusion detection/prevention systems, security information and event management (SIEM) systems, and vulnerability assessment tools, and their configuration options.Familiarity with cloud security principles and best practices ...

Security Engineer (Site Reliability Engineering) - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
scalable, and resilient. Splunk Engineering & Security Monitoring Develop and maintain security monitoring capabilities using Splunk. Create dashboards, alerts, reports, and use cases to enhance threat detection and security visibility. Support log ingestion, optimisation, data onboarding, and security analytics. Collaborate with SOC and Threat Intelligence teams to improve ...

GRC Consultant

Location
Greater London, England, United Kingdom
other NCSC guidelines Good knowledge of networking (switching, routing, firewalls) In-depth knowledge of modern security concepts, common attack vectors, malware, security analytics and threat intelligence. A good understanding of security testing and vulnerability management is important (including pen testing/ITHC, CVSS/CVE) Experience working with security ...

GRC Consultant

Hiring Organisation
The Nippon Telegraph And Telephone Corporation (NTT)
Location
London, United Kingdom
Salary
£ 70 K
other NCSC guidelinesGood knowledge of networking (switching, routing, firewalls)In-depth knowledge of modern security concepts, common attack vectors, malware, security analytics and threat intelligence.A good understanding of security testing and vulnerability management is important (including pen testing/ITHC, CVSS/CVE)Experience working with security standards such ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security … client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation. Conduct security and privacy risk assessments for AI platforms, tools, and third‐party AI service providers. Evaluate AI solutions ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security … client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation. Conduct security and privacy risk assessments for AI platforms, tools, and third-party AI service providers. Evaluate AI solutions ...

IT Security Specialist - 4197

Location
Greater London, England, United Kingdom
Overview CLS helps clients navigate the changing FX marketplace – reducing risk and creating efficiencies. Our extensive network and deep market intelligence enable CLS specialists to lead the development of standardized solutions to real market problems. Our innovative, forward-looking products make the trading process faster, easier, safer and more … equipped with appropriate industry best of breed tools and solutions Operational Operate and maintain CLS Security controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, Network Protection, etc. Review and help refine CLS Security procedures to ensure compliance with cyber resilience requirements Be responsible when ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches. You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture … building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements. Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack paths ...

Senior SOC Analyst - DV Clearance

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £100,000 per annum
Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection … rules and use cases Produce detailed investigation and incident reports Collaborate with cyber threat intelligence and incident response teams Support continuous improvement of SOC processes and procedures SOC Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred ...

Senior Cyber Threat & Vulnerability Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
leading Financial Services client in the City of London is looking for a Senior Cyber Threat & Vulnerability Manager to lead its cyber threat, vulnerability, penetration testing and exposure management capabilities. This is a senior, hands-on role within the CISO function, focused on identifying and responding to emerging … business. The role offers a base of circa £110,000 + excellent benefits with very flexible working. Key Responsibilities Lead the end-to-end Threat, Vulnerability and Exposure Management function. Drive the prioritisation and remediation of high and critical vulnerabilities, including zero-day and actively exploited threats. Own penetration ...

Security Team Lead

Location
Greater London, England, United Kingdom
practices Lead real-time response to security incidents Oversee SIEM/SOAR integration, alerting, and playbooks Conduct investigations using log analysis, forensic techniques, and threat intelligence Client-Facing Security Services Provide advisory and managed security support to a portfolio of insurance clients Deliver security reviews, maturity assessments … experience across Azure and Microsoft security stack Scripting/automation capability (PowerShell, Python, Bash) Strong grounding in MITRE ATT&CK, OWASP, and modern threat vectors (Background in insurance, financial services, or regulated environments is highly beneficial). If you are looking for: End-to-end ownership of InfoSec across ...

Threat Disruption Analyst — Global Threat Intelligence & Enforcement

Location
Greater London, England, United Kingdom
SpaceXAI is seeking a Threat Disruption specialist to identify and counter highly motivated adversaries. You will perform first-principles investigations into threat surfaces, design large-scale enforcement operations, and clearly communicate outcomes to leadership and product teams. This role requires rapid handling of urgent incidents, collaboration with operations ...

SOC Team Lead

Hiring Organisation
Methods Consulting
Location
London, United Kingdom
Salary
£ 100 K
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence across Shared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthen ...

Senior SecOps Specialist

Hiring Organisation
Teya Solutions
Location
London, United Kingdom
Salary
£ 80 K
Cloud, and Product teams to reduce risk and embed security effectively across the organisation.You operate across incident response, detection engineering, security tooling, vulnerability management, threat intelligence, telemetry, and automation - turning operational insight into stronger controls and better engineering outcomes.ResponsibilitiesSecurity Operations & Incident Response• Lead end-to-end investigation … measure retire).• Use version control and detection-as-code where possible.• Reduce false positives and improve detection quality and coverage.• Map detections to threat behaviours (e.g. MITRE ATT&CK).• Validate detections through testing, incidents, and simulations.Log & Telemetry Management• Onboard and maintain log sources across cloud, identity, endpoint ...

Threat Intelligence Analyst: Hunt, Detect, and Respond

Location
Greater London, England, United Kingdom
Jobtailor is seeking a Cyber Threat Analyst to monitor global threat landscapes, analyse intel from OSINT, dark web sources, and feeds, and support incident response for manufacturing and logistics sectors. You will develop KQL queries for threat hunting, produce actionable reports, and collaborate with SOC teams ...

Principal Cyber Security Operations Analyst

Location
Greater London, England, United Kingdom
exclusive discounts & savings To be successful in this role, you will bring significant experience across Cyber Security Operations, Incident Response, Digital Forensics and Threat Detection within a complex enterprise environment. You will be comfortable providing technical leadership, managing complex investigations and influencing stakeholders across both technical and non-technical … senior cyber security specialist, supporting the development of security operations capability while helping to protect Post Office against an evolving cyber threat landscape. In addition to this, the ideal candidate will: Demonstrate substantial experience within Cyber Security Operations, Incident Response, Digital Forensics or IT Security in a large, complex ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service ...

IT Security Operations & Assurance Analyst

Location
Greater London, England, United Kingdom
security alerts and incidents Acting as an escalation point for the firm's Managed Security Service Provider Reviewing and refining security detections to improve threat visibility and reduce false positives Monitoring threat intelligence sources and assessing emerging cyber risks Supporting vulnerability identification, prioritisation, remediation and reporting Identifying ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection … rules and use cases Produce detailed investigation and incident reports Collaborate with cyber threat intelligence and incident response teams Support continuous improvement of SOC processes and procedures SOC Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred ...

Cyber Security Architect & Engineering Lead

Location
Greater London, England, United Kingdom
Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation. Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies. Act as the technical lead for AI security, helping to establish practical … incidents, working with internal teams, external SOC providers and specialist partners. Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation. Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar
Location
London, United Kingdom
Salary
£ 80 K
causeMonitoring and analysing activity across SIEM, EDR and other security platformsIdentifying indicators of compromise, suspicious activity and emerging threatsSupporting incident response and containment activitiesPerforming threat hunting activities to proactively identify potential security risksEscalating significant or complex incidents where appropriateWorking closely with Tier 1 and Tier 3 analysts, incident responders … other technical teamsTuning and improving detection rules and use cases to reduce false positives and improve threat detectionAnalysing logs and security events from endpoints, networks, cloud environments and other infrastructureProducing clear investigation reports and documenting incidents, findings and recommendationsMaintaining awareness of the latest cyber threats, vulnerabilities and attacker techniquesContributing ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity and emerging threats Supporting incident response and containment activities Performing threat hunting activities to proactively identify potential security risks Escalating significant or complex incidents where appropriate Working closely with Tier 1 and Tier 3 analysts … incident responders and other technical teams Tuning and improving detection rules and use cases to reduce false positives and improve threat detection Analysing logs and security events from endpoints, networks, cloud environments and other infrastructure Producing clear investigation reports and documenting incidents, findings and recommendations Maintaining awareness ...

Cyber Security Lead

Location
Greater London, England, United Kingdom
Azure, Entra ID, Defender XDR, Sentinel and Purview Building modern security controls around Zero Trust, secure-by-design and automation Leading architecture reviews and threat modelling for major projects and new technologies Taking a lead role in the secure adoption of Microsoft 365 Copilot, AI agents and custom … engineering and incident response Supporting complex and high‐severity security incidents alongside internal teams and external SOC partners Strengthening vulnerability and exposure management using threat intelligence, exploitability and business risk Automating security processes using Python, PowerShell, Logic Apps, Azure Functions and APIs Supporting technical controls and evidence ...