176 to 200 of 490 Threat Intelligence Jobs in the UK

Senior Cyber Threat Intelligence Analyst - Hybrid UK

Location
Portsmouth, England, United Kingdom
Babcock International in the United Kingdom is seeking a Senior Cyber Threat Intelligence Analyst to identify, analyse and report threats that could impact people, information, systems and customers. You will transform complex data into actionable intelligence to support proactive cyber defence, incident response, vulnerability management and risk ...

Hybrid Cyber Threat Intelligence Analyst

Location
Greater London, England, United Kingdom
Vanguard Group in London is seeking an experienced Cyber Threat Intelligence Analyst to collect, analyze, and disseminate threats across internal teams. You will monitor threat activity, identify new TTPs, and produce actionable reports and IOCs for stakeholders. Candidates should have SOC experience, knowledge of MITRE ...

AI & Automation Engineering, Global Security (Vice President)

Location
Greater London, England, United Kingdom
with testing, monitoring, alerting, error handling and rollback. Deliver automation supporting security operations, including alert triage and enrichment, case summarisation, evidence collection, detection tuning, threat intelligence synthesis, and repetitive investigative workflows. Partner with pillar leads to deliver AI and automation capability across the wider security domains, including access … event triage, and vulnerability prioritisation and contextualisation. Develop LLM and agent-based workflows integrated with SIEM, EDR, SOAR, IGA, PAM, CSPM, DLP, ticketing and threat intelligence platforms via supported APIs. Set the global AI Security and automation roadmap in partnership with the Head of Cyber Operations and pillar ...

Embedded Security Education & Awareness Programme Consultant

Hiring Organisation
Control Risks
Location
London, UK
Employment Type
Full-time
leadership dashboards, and escalate non-compliance. Conference & Travel Security. Produce location-specific security briefings and short-form audio content for major conferences, drawing on threat intelligence inputs and distributing through our events coordination channels. New Hire Security Onboarding. Deliver monthly live onboarding sessions, create interactive exercises and follow … assessments, maintain on-demand recordings, and manage automated follow-up communications. Threat Briefings. Coordinate quarterly security briefings for high-profile researchers and secure recurring slots at leadership forums to deliver concise threat updates. Internal Security Portal. Maintain and expand the clients security resource hub with a library ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside … Experience investigating security incidents across cloud and on-premise environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication ...

Cyber Risk & Threat Intelligence Consultant

Location
City Of London, England, United Kingdom
London Market insurer to join its cyber team in a hybrid role based in City of London. The position offers exposure to cyber risk, threat intelligence, and cyber insurance at scale. You will work with senior risk stakeholders on threat landscape monitoring, risk appetite, incident scenario modelling … market intelligence, while developing reports and training materials for diverse audiences. #J-18808-Ljbffr ...

Senior Security Researcher - AI & Cybersecurity

Location
Cambridge, England, United Kingdom
contact details are readily available on our website). Keywords: Senior Security Researcher/Cybersecurity Researcher/Security Researcher/AI Security Researcher/Threat Researcher/Security Engineer/Cyber Security Engineer/Security Analyst/SOC Analyst/Threat Intelligence Analyst/AI Security Engineer … Specialist/Generative AI/Agentic AI/Network Security/Linux/Kubernetes/Cloud Security/Endpoint Security/Security Tools/Threat Intelligence/Prompt Injection/Adversarial AI/CCNA/Linux Essentials/SOC/Machine Learning/Artificial Intelligence/Computer ...

Senior Security Researcher - AI & Cybersecurity

Hiring Organisation
RedTech Recruitment Ltd
Location
Cambridge, Cambridgeshire, East Anglia, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
contact details are readily available on our website). Keywords: Senior Security Researcher/Cybersecurity Researcher/Security Researcher/AI Security Researcher/Threat Researcher/Security Engineer/Cyber Security Engineer/Security Analyst/SOC Analyst/Threat Intelligence Analyst/AI Security Engineer … Specialist/Generative AI/Agentic AI/Network Security/Linux/Kubernetes/Cloud Security/Endpoint Security/Security Tools/Threat Intelligence/Prompt Injection/Adversarial AI/CCNA/Linux Essentials/SOC/Machine Learning/Artificial Intelligence/Computer ...

Head of Security Operations & Engineering - Flutter Functions, Hybrid

Location
Greater London, England, United Kingdom
Overview: The Head of Security Operations and Engineering is responsible for protecting the organization through the design, build, and operation of scalable, resilient, and intelligence‐driven security capabilities. This role leads the teams that detect, respond to, and prevent security threats while also engineering the platforms, tools, and automation … strategy and execution, the role ensures that security operations are not only effective in responding to incidents, but continuously improving through engineering excellence, threat intelligence, and data‐driven decision‐making. It combines real‐time defense (e.g., monitoring, detection, incident response) with long‐term capability building (e.g., tooling, automation ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
identify gaps Design and implement SOAR automations, integrations and response workflows Develop and document customer incident response playbooks aligned to detection outputs Translate threat intelligence and operational learnings into improved detections and automations Deliver detection as code pipelines, including structured use case development and versioning approaches Produce clear … support detection use cases Network Detection and Response technologies such as Vectra AI, Corelight or similar Cloud security and telemetry, particularly within Azure environments Threat intelligence integration and enrichment to support detection and response Development of customer playbooks and response workflows aligned to SOC operations General awareness ...

Cyber Security Operations Specialist

Hiring Organisation
Sanderson Recruitment
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550 per day
organisation is seeking a Cyber Security Operations Specialist to join its Security Operations team. This is a hands on role focused on incident response, threat detection, vulnerability management and continuous improvement across enterprise technology environments. You'll be expected to hit the ground running, managing security alerts, investigations, tickets … triage security alerts, tickets and operational queues. Lead or support incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop and optimise SIEM detections, alerting rules and response workflows. Improve the performance and effectiveness of security ...

Advanced Cyber Defense Practice Lead

Location
Linton, England, United Kingdom
delivery, including executive facilitation, structured problem solving, stakeholder alignment, and polished written and verbal communication, and applying MITRE ATT&CK, cyber kill chain concepts, threat intelligence, threat hunting, purple teaming, adversary emulation, deception, exposure management, or related threat-informed methodologies to improve detection and response Experience … Identity Statement As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right ...

Deputy General Manager - Cybersecurity - Products

Hiring Organisation
Tata Communications
Location
London, UK
Employment Type
Full-time
About the CompanyTata Communications Redefines Connectivity with Innovation and IntelligenceDriving the next level of intelligence powered by Cloud, Mobility, Internet of Things, Collaboration, Security, Media services and Network services, we at Tata Communications are envisaging a New World of CommunicationsJob InformationJob TitleCyber Security SME: Security Solution ArchitectLocation: United Kingdom … medium and large cybersecurity transformation programmes. Cyber Security DomainsThe candidate should have a broad understanding of enterprise cybersecurity technologies, including: Security OperationsSIEM, SOAR, UEBA, Threat Intelligence, Threat Hunting, Incident Response, XDR, MDRNetwork SecurityNext Generation Firewalls, WAF, SASE, DNS Security, DDoS, NDREndpoint & Identity SecurityEDR, Endpoint Protection ...

DevOps Engineer

Location
West of England, England, United Kingdom
which involves spending at least two days per week, or 40% of our time, at one of our office sites About this opportunity Our Threat Intelligence Engineering team builds and maintains the platforms, integrations and automationsthat help turn intelligence into action. We work across a range … security and intelligence tooling, connecting data sources, automating workflows and developing services that enable analysts and security teams to make better decisions, faster. As aDevOpsEngineer, you’ll play a key role in designing, building and supporting theCDCI Pipelines infrastructure andservices that underpin our threat intelligence capability. ...

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, UK
Employment Type
Full-time
assess coverage and identify gapsDesign and implement SOAR automations, integrations and response workflowsDevelop and document customer incident response playbooks aligned to detection outputsTranslate threat intelligence and operational learnings into improved detections and automationsDeliver detection as code pipelines, including structured use case development and versioning approachesProduce clear technical … support detection use cases Network Detection and Response technologies such as Vectra AI, Corelight or similar Cloud security and telemetry, particularly within Azure environments Threat intelligence integration and enrichment to support detection and response Development of customer playbooks and response workflows aligned to SOC operations General awareness ...

DevOps Engineer

Location
City of Edinburgh, Scotland, United Kingdom
development and maintenance of DevOps pipelines and associated technologies and tooling, gaining practical experience whilst working under the guidance of senior DevOps engineers Our Threat Intelligence Engineering team builds and maintains the platforms, integrations and automations that help turn intelligence into action. We work across a range … security and intelligence tooling, connecting data sources, automating workflows and developing services that enable analysts and security teams to make better decisions, faster As a DevOps Engineer, you’ll play a key role in designing, building and supporting the CDCI Pipelines infrastructure and services that underpin our threat ...

DevOps Engineer

Location
City of Edinburgh, Scotland, United Kingdom
which involves spending at least two days per week, or 40% of our time, at one of our office sites About this opportunity Our Threat Intelligence Engineering team builds and maintains the platforms, integrations and automations that help turn intelligence into action. We work across a range … security and intelligence tooling, connecting data sources, automating workflows and developing services that enable analysts and security teams to make better decisions, faster. As a DevOps Engineer, you'll play a key role in designing, building and supporting the CDCI Pipelines infrastructure and services that underpin our threat ...

DevOps Engineer

Hiring Organisation
Appcast
Location
Manchester, UK
which involves spending at least two days per week, or 40% of our time, at one of our office sites About this opportunity Our Threat Intelligence Engineering team builds and maintains the platforms, integrations and automations that help turn intelligence into action. We work across a range … security and intelligence tooling, connecting data sources, automating workflows and developing services that enable analysts and security teams to make better decisions, faster. As a DevOps Engineer, you'll play a key role in designing, building and supporting the CDCI Pipelines infrastructure and services that underpin our threat ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Guildford, Surrey, South East, United Kingdom
Employment Type
Permanent, Work From Home
process, technology, services and infrastructure . Develop CONOPS and high- and low-level designs. Work with technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence . Design on-premise and cloud security architectures . Conduct risk assessments and support vulnerability management. Research and evaluate new technologies … Experience You'll Need Strong experience in SOC/Security Architecture . Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management or Threat Intelligence . Strong knowledge of cloud and on-premise security architecture. Understanding of security best practices, risk and vulnerability management. Experience working with ...

Cyber Security Consultant

Hiring Organisation
CGI
Location
Manchester, United Kingdom
Employment Type
Full Time
contact the recruiter directly. Cyber Security Consultant Position Description At CGI, you'll help organisations strengthen their resilience against an evolving cyber threat landscape while delivering meaningful outcomes for some of the UK's most critical organisations. Working alongside one of the UK's largest cyber security consultancies … that strengthen resilience and support secure transformation. In this role, you'll assess security across business, technology and operational environments, using recognised frameworks and threat intelligence to help clients make informed decisions. You'll be trusted to take ownership of complex engagements, contribute innovative thinking to security challenges ...

Blockchain Threat Intelligence VP - Detect & Defend

Location
Greater London, England, United Kingdom
JPMorgan Chase & Co. seeks a Blockchain Intelligence Vice President to secure institutional blockchain infrastructure at scale, monitor on-chain activities, and implement detection capabilities for smart contracts and digital assets. You will lead threat intelligence, detection, incident response, and security operations, collaborating across teams to safeguard data ...

Lead Technical Engineer (SOC)

Hiring Organisation
Stott & May Professional Search Limited
Location
Surrey, South East, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £800 per day
infrastructure. Proven experience designing, building, and deploying SOC solutions for previous clients. Experience with at least two of SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence. Strong experience deploying and configuring applications in cloud and/or on-premises environments, particularly for high data ingest rates. Proven experience leading …/LDAP. Knowledge of cyber threats, risk assessment, vulnerability management, and security best practices. Good understanding of enterprise ICT services, Security Operations processes, and threat intelligence, threat actors, and TTPs. Current UK SC clearance. ...

Security Operations Center Architect

Location
Guildford, England, United Kingdom
full lifecycle, from conceptualisation and design through to build, deployment and operation. Design and integrate security technologies including SIEM, SOAR, EDR, Vulnerability Management and Threat Intelligence . Assess existing SOC capabilities and recommend improvements to increase security maturity. Develop scalable, resilient and secure on-premise and cloud architectures … complex enterprise environments. Strong experience designing and deploying SOC solutions . Hands-on knowledge of at least two of: SIEM, SOAR, EDR, Vulnerability Management, Threat Intelligence . Strong understanding of SOC operating models, security processes, people and governance . Experience with cloud and on-premise security architecture . ...

PPS Solutions Sr. Consultant (Remote, GBR)

Hiring Organisation
CrowdStrike
Location
United Kingdom, UK
Employment Type
Full-time
with customers to understand their security architecture, deployment requirements, and desired business outcomesDesign comprehensive deployment strategies for CrowdStrike Falcon platform implementations, including endpoint protection, threat intelligence, identity protection, and cloud security modulesDevelop detailed Statements of Work (SOWs) that accurately reflect technical scope, resource requirements, timelines, and success criteriaCreate … security consulting or managed security servicesFamiliarity with ITIL, project management methodologies, and services frameworksExperience with identity and access management, cloud workload protection, or threat intelligence platformsIndustry certifications such as CISSP, CCSP, CEH, or relevant cloud certificationsExperience in a high-growth SaaS environmentKnowledge of compliance frameworks (NIST ...

Cyber Incident Manager (CIM) - Welwyn Garden City, United Kingdom of Great Britain and Northern Ireland

Hiring Organisation
Tesco
Location
Welwyn Garden City, Hertfordshire, UK
Employment Type
Full-time
effective incident resolution, minimising operational disruption and customer impact. This role is critical to maintaining trust in Tesco's digital platforms by driving proactive, intelligence-led response and embedding continuous improvement across the cyber defence lifecycle. You will operate at the intersection of technology, business impact, and customer outcomes … coordination during incidents, providing clear, concise, and timely updates to technical and non-technical stakeholders, including senior leadership. Enable Automated Response: Leverage Applied Artificial Intelligence (AI) and automation to enhance incident triage, prioritisation, and decision-making at pace. Optimise Operational Tooling: Utilise platforms such as Zendesk and xMatters ...