51 to 75 of 289 Threat Intelligence Jobs in London

Cyber Threat Intelligence Principal

Location
Greater London, England, United Kingdom
Work with cyber threat analysts, economists, data scientists, actuaries, and risk modelers to develop insights, scores, and features for cyber risk analytics products serving the reinsurance industry Own CyberCube's point of view on technology risk, including threat actor capabilities and trends, security hygiene standards and mitigations … event-family library for cyber catastrophe modeling, including emerging AI-driven scenarios Own the assumptions register and expert-judgment governance Present CyberCube methodology, threat landscape, and emerging risk trends to clients and prospects Engage stakeholders as a key thought leader on technology risk Collaborate cross-functionally with engineering, product ...

Lead Threat Detection Engineer

Location
Greater London, England, United Kingdom
Lead Threat Detection Engineer| London | Up to £120k + Bonus I'm working with a leading global fintech on a senior hire into a newly established security function. This is a hands-on role for someone who wants to go beyond responding to alerts and take real ownership … threat detection and intelligence is built, automated and improved across a large-scale, multi-cloud environment. You’ll be joining at a point where the core security tooling is already in place, but there’s significant scope to define what best-in-class looks like. What ...

Cyber Security Engineer (Threat Detection & Automation)

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
/070202Job Type: PermanentSalary: 60,000 - 80,000 Location: Westminster, Central LondonSector: ITPosted: 2026-03-23An exciting opportunity has arisen for a Threat Detection Engineer to join a well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare.As … Threat Detection Engineer, you will be responsible for developing and enhancing threat detection capabilities within a modern cloud-first setting.This role offers hybrid/remote working options, a salary range of 60,000 - 80,000 and benefits.You will be responsible for:Designing and implementing threat-led detection ...

Cyber Operations & 3rd Party Security Manager

Hiring Organisation
Arbuthnot Latham
Location
London, United Kingdom
Salary
£ 80 K
service-led banking powered by modern technology.Job PurposeThe Cyber Operations & 3rd-Party Security Manager is responsible for the Bank's cyber security operations, threat detection, incident response, vulnerability management and 3rd-party cyber risk management capabilities. The role ensures that cyber threats, vulnerabilities, supplier risks and security events … Bank's cyber security operations capability, including oversight of security monitoring and detection services.Manage relationships with Managed Detection and Response (MDR), SOC and threat intelligence providers.Ensure security events are triaged, investigated, escalated and resolved in accordance with policy and procedure.Coordinate the operational response to cyber security incidents ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare.We’re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you’ll focus on building high-impact detection … SIEM rulesCollaborative: Work closely with internal teams and an outsourced SOC partnerMission-focused: Protect critical healthcare data that supports precision medicineKey ResponsibilitiesDesign and develop threat-led detections using threat intelligence and threat-hunting outputsCreate novel analytic techniques for incident detectionCollaborate with an MSP SOC to maintain ...

Senior Vulnerability Management Engineer

Location
Greater London, England, United Kingdom
VMDR/Tenable Security Centre/Rapid7 InsightVM to ensure full coverage. Perform risk-based vulnerability prioritisation: correlate CVSS scores with asset criticality, exposure, threat intelligence (EPSS, CISA KEV), and business context. Translate vulnerability findings into actionable remediation tasks for patch management teams across EUC, Data Center, Networks … automated ticket creation and asset correlation. Automate vulnerability reporting and remediation tracking using Python, REST APIs (Qualys/Tenable API), or ServiceNow workflows. Conduct threat-informed vulnerability analysis: monitor NVD, CISA KEV, vendor security advisories, and threat intelligence feeds to identify exploitable CVEs requiring emergency response. Lead ...

iSOC Engineer

Location
Greater London, England, United Kingdom
Bonus (10%) + Share Options + UK Benefits iProov is looking for an iSOC Engineer - a specialised role that will combine data analytics and threat intelligence methods and will include daily monitoring coverage of internally raised alerts and active threat hunting of novel attack methodologies. … validated and confirmed imagery alerts to designated incident response team Fine-tune alerting rules to identify false positives and remove false negatives. Collect global threat intelligence and internal threats then take actions based on analysis and recommendation. Proactively research and conduct threat hunting for novel biometric attacks ...

Cyber Security Consultant

Location
Greater London, England, United Kingdom
Marine Holdings, offering unique Group‐level exposure within a global insurance organisation. Key responsibilities include: Monitoring cyber threats and the wider cybersecurity landscape, maintaining threat intelligence sources and supporting cyber risk analysis activities. Leading the gathering, analysis and production of cyber market intelligence, including authorship … monthly cyber digest report. Contributing to horizon scanning publications, technical papers, cyber market intelligence reports and ad hoc risk analysis. Supporting the development and delivery of cyber technical training through the Tokio Marine Cyber Academy. Assisting with the development and maintenance of realistic disaster scenarios, single points of failure ...

Threat Intelligence Analyst (Tech Against Terror...

Location
Greater London, England, United Kingdom
Role: Threat Intelligence Analyst Location: London, hybrid (2-3 days in office per week) Tech Against Terrorism is looking to recruit a Threat Intelligence Analyst to join our dynamic and mission driven team in London. If you have a background in OSINT, good understanding of online ...

Vulnerability Management Analyst

Location
Greater London, England, United Kingdom
activities, validating findings to eliminate false positives. Assess the severity, exploitability, business impact and likelihood of compromise of identified vulnerabilities. Conduct technical analysis using threat intelligence and exploitation data, prioritising vulnerabilities using a risk-based methodology. Monitor emerging vulnerabilities and security advisories, assessing applicability to the organisation … supporting rapid assessment of critical vulnerabilities. Analyse proof-of-concept exploits and active threat activity. Work closely with remediation teams to explain findings, risks and vulnerability remediation approaches. Partner with the Risk Management team to support risk-based prioritisation, risk acceptance, exception management and escalation of material vulnerabilities. Produce ...

Vulnerability Management Analyst

Hiring Organisation
RS Group
Location
Greater London, United Kingdom
Employment Type
Full Time
activities, validating findings to eliminate false positives. Assess the severity, exploitability, business impact and likelihood of compromise of identified vulnerabilities. Conduct technical analysis using threat intelligence and exploitation data, prioritising vulnerabilities using a risk-based methodology. Monitor emerging vulnerabilities and security advisories, assessing applicability to the organisation … supporting rapid assessment of critical vulnerabilities. Analyse proof-of-concept exploits and active threat activity. Work closely with remediation teams to explain findings, risks and vulnerability remediation approaches. Partner with the Risk Management team to support risk-based prioritisation, risk acceptance, exception management and escalation of material vulnerabilities. Produce ...

SOC Manager

Hiring Organisation
Invitise Ltd
Location
City of London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £850 per day
go. You'll manage the SOC team, own incident management, and make sure resources are deployed effectively. You'll also drive the security monitoring, threat intelligence and vendor relationships that keep the organisation protected. You will need proven experience in the following: SOC management, including leading and developing … team Strategic resource planning and deployment Incident management processes Delivering effective security monitoring capability Threat intelligence and assessment Operating cyber security tools and solutions Managing relationships with external vendors and MSSPs The following would be beneficial: Cloud security experience (AWS, Azure) ITIL Foundation or equivalent service management qualification ...

Consultant, Cybersecurity

Location
Greater London, England, United Kingdom
flags, validating sources, and making judgment calls about the completeness and accuracy of information (especially during M&A cyber due diligence).* Utilize threat intelligence to identify, contextualize and analyse emerging threats, vulnerabilities, and risks to clients.* Develop and innovate technologies and solutions that can be used … assess cybersecurity maturity and risks.* Conduct external exposure and threat intelligence assessments using a range of subscription and open-source databases and toolsets to identify the attack surface and threat profile of clients.* Maintain current knowledge of industry trends, threats, methodologies, and core technologies to assimilate client ...

Pre-Sales Solutions Consultant

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 per annum
solutions Deliver demonstrations, workshops and presentations across the security portfolio Represent and articulate the value of a market-leading Managed SOC, Managed VOC and Threat Intelligence service Support the full sales cycle — qualification, solution design, proposals, RFIs and RFPs Build sales enablement content and provide guidance to internal … operations, detection and response Working knowledge of Microsoft Defender and Microsoft Sentinel Familiarity with at least two of: SIEM, EDR/XDR, SOAR, threat intelligence, vulnerability management, exposure management or email security Confident presenter, comfortable engaging both technical and business stakeholders Strong written skills for proposals and technical ...

VP, Security Operations

Location
Greater London, England, United Kingdom
lead an incident bridge. You will run a global function and own Security Operations end to end: the SOC, incident response, detection engineering and threat intelligence, along with the people and platforms behind them. THE CHALLENGE: Own incident response. Preparation, triage, containment, eradication, and the post‐incident reviews … drive the coverage roadmap across our cloud estate and applications, and you know the difference between a thousand alerts and one good one. Make threat intelligence earn its keep. Build an intel capability that changes what we hunt for, what we detect, and what we brief to leadership. ...

Security Operations Manager

Hiring Organisation
SportRadar
Location
London, United Kingdom
Salary
£ 100 K
lead an incident bridge. You will run a global function and own Security Operations end to end: the SOC, incident response, detection engineering and threat intelligence, along with the people and platforms behind them. THE CHALLENGE:Own incident response. Preparation, triage, containment, eradication, and the post-incident reviews … drive the coverage roadmap across our cloud estate and applications, and you know the difference between a thousand alerts and one good one. Make threat intelligence earn its keep. Build an intel capability that changes what we hunt for, what we detect, and what we brief to leadership. ...

Analyst Crisis Operations

Location
Greater London, England, United Kingdom
everywhere. About Global Crisis Operations at Expedia Group Expedia Group's Global Crisis Operations function was built from the ground up to provide coordinated, intelligence-driven crisis response across EG's portfolio of brands, including Expedia, Hotels.com, Vrbo, and others. Our team spans Seattle, London, and Gurgaon, providing continuous … ensure EG can protect travelers and respond to disruption with speed, accuracy, and care. What You'll Do Crisis Monitoring and Assessment Monitor global threat intelligence feeds, meteorological data, geopolitical risk sources, and open-source information streams to identify emerging crisis events in real time. Assess severity, scope ...

Senior CTI Analyst - Threat Intelligence Lead (Remote)

Location
Greater London, England, United Kingdom
Live Nation Entertainment is seeking a Senior Cyber Threat Intelligence Analyst to drive hands-on threat research and intelligence across our global operations. You will analyze threat actors and campaigns, produce tactical and strategic intelligence, and collaborate with Detection Engineering, Incident Response, and Threat ...

Assistant Manager Information Security

Location
Greater London, England, United Kingdom
specialist technical teams that run day‐to‐day security monitoring, detection and remediation, rather than performing these activities hands‐on. Conduct and coordinate threat intelligence and vulnerability management interpreting relevant intelligence, tracking identified vulnerabilities against remediation SLAs, coordinating timely remediation with technology teams and external providers … keeping abreast of the evolving threat landscape. Support the maintenance and testing of incident response and crisis management procedures, contributing to the effective triage, coordination and post‐incident review of security and data protection events while minimising business disruption. Act as support for the bank's operational resilience ...

Threat Intelligence Analyst, Threat Disruption

Location
Greater London, England, United Kingdom
employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: Threat Disruption provides expert threat intelligence and conducts scaled operations against the adversaries attacking X. We investigate and disrupt threats across the following … these investigations, we conduct sweeps to disrupt immediate threats and provide recommendations to product, engineering, and policy teams to squash systemic vulnerabilities. Where appropriate, Threat Disruption also coordinates with law enforcement and other external parties to enhance detections and support prosecution of bad actors. Come help us defend ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, United Kingdom
Salary
£ 80 K
outside Technology.A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements.Key ResponsibilitiesOwn the incident response lifecycle (prepare, detect, analyse, contain, eradicate, recover), ensuring playbooks, tooling … strategy, and operational runbooks.Own the vulnerability management programme (on‐prem and cloud), including scanning coverage, prioritisation, remediation SLAs, exception handling, verification, and executive reporting.Drive threat management by operationalising threat intelligence (internal and external) into defensive priorities: detection use cases, hardening actions, control uplift and proactive hunting themes.Lead ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities Own the incident response lifecycle (prepare, detect, analyse, contain, eradicate, recover), ensuring … operational runbooks. Own the vulnerability management programme (on‐prem and cloud), including scanning coverage, prioritisation, remediation SLAs, exception handling, verification, and executive reporting. Drive threat management by operationalising threat intelligence (internal and external) into defensive priorities: detection use cases, hardening actions, control uplift and proactive hunting themes. ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities Own the incident response lifecycle (prepare, detect, analyse, contain, eradicate, recover), ensuring … operational runbooks. Own the vulnerability management programme (on‐prem and cloud), including scanning coverage, prioritisation, remediation SLAs, exception handling, verification, and executive reporting. Drive threat management by operationalising threat intelligence (internal and external) into defensive priorities: detection use cases, hardening actions, control uplift and proactive hunting themes. ...

Senior Consultant, Red Team, Offensive Security

Hiring Organisation
Kroll
Location
London, United Kingdom
Salary
£ 80 K
with a Senior Consultant/L3 Red Team Operator. Our expertise in red team operations, purple team engagements, assumed-breach testing, adversary emulation, and threat intelligence-led penetration testing is in high demand. Our collaborative ties to our forensic and incident response team, detection engineering team, threat intelligence team, and wider Cyber Risk practice enable us to deliver high-impact offensive security engagements for clients across a range of sectors.This role will be based in the UK.Apply now to join One team, One Kroll.What you’ll doAs a Senior Consultant, Red Team Operator, you will ...

Senior Cyber Analyst

Hiring Organisation
Methods Consulting
Location
London, United Kingdom
Salary
£ 100 K
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. Role SummaryThe Senior Cyber Analyst … senior technical lead within the Cyber Services function, responsible for complex cyber investigations, incident response, threat detection, and security platform optimisation. Acting as the highest technical escalation point within cyber operations, the role provides leadership, mentoring, and strategic direction to ensure customers maintain a strong and resilient security posture.RequirementsIncident ...