251 to 275 of 487 Threat Intelligence Jobs in the UK

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

SOC Team Lead

Location
Greater London, England, United Kingdom
Drive performance and operational excellence across Shared Service’s Cyber Services function Act as a technical escalation point and line manager Support threat analysis, incident response, and security assurance activities Foster a proactive culture of cyber hygiene and continuous improvement Collaborate across departments to strengthen Shared Service's security … threats and investigative escalations Ensure complex or unresolved cybersecurity issues are escalated appropriately Line manage Cyber Analysts, set objectives, and support development plans Share threat intelligence and cyber knowledge with junior colleagues Provide training and coaching on cyber operations tooling and security practices Contribute to root cause analysis ...

Cyber Incident Response Lead

Location
Greater London, England, United Kingdom
operate effectively within high-pressure and time-critical situations. Strong understanding of: Security Operations Centre (SOC) processes and technologies Incident response frameworks and methodologies Threat detection and threat intelligence Endpoint, network, and cloud security monitoring tools Digital forensics and malware analysis principles SIEM and security analytics platforms ...

Lead Threat Response Operations Analyst

Location
United Kingdom
meet the diverse needs of our colleagues. Our Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on‐premises, cloud, and hybrid environments. As a Lead Threat Response Operations Analyst within Pfizer … response to security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat ...

Cyber Security Analyst - up to 70,000 + Bonus + Benefits

Hiring Organisation
Appcast
Location
London, UK
function, playing a key role in strengthening cyber resilience and protecting critical enterprise systems. This is a hands-on operational security role focused on threat detection, incident response and continuous improvement of security monitoring capabilities. The position of Cyber Security Analyst is suited to an experienced security professional … Providers Maintain and enhance SecOps processes and documentation to enable knowledge sharing Investigate security events, perform vulnerability analysis and support remediation activities Analyse cyber threat intelligence and translate insights into actionable detection improvements Process indicators of compromise and indicators of attack to enhance detection rules Conduct proactive threat ...

Security Architect (Contractor) Cyber Security Consultant

Location
United Kingdom
remediation guidance and action plans for identified vulnerabilities. Identifying security risks arising from proposed solution architectures and defining proportionate mitigations and countermeasures. Reviewing cyber threat intelligence and emerging attack trends to inform security design decisions and architecture roadmaps. Delivering threat modelling, security risk assessments and analysis … multi-cloud environments including AWS and other cloud platforms. Knowledge of event-driven and microservices-based architectures using native cloud technologies. Demonstrable experience conducting threat modelling, security risk assessments and security analysis. Experience working with controls testing teams and validating control effectiveness. Experience planning and supporting IT Health Checks ...

Proofpoint SME - Hybrid in Wokingham - 6 Month Initial Contract - Inside IR35

Hiring Organisation
Hamilton Barnes
Location
Wokingham, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Daily
design, implementation, administration, and optimisation of Proofpoint email security solutions within a large enterprise environment. The position covers the full Proofpoint suite, spanning email threat protection, DLP, and email authentication, ensuring robust defence against phishing, malware, and advanced email-based threats. SC clearance eligibility is preferred. Key Responsibilities Serve … solutions including Proofpoint Email Protection, TAP, TRAP, Email Fraud Defense, and Information Protection/DLP. Manage email security policies, spam filtering, malware protection, and threat detection rules, monitoring and responding to email-based security incidents. Configure and maintain email authentication protocols including SPF, DKIM, and DMARC, conducting threat ...

Security Engineer (Site Reliability Engineering) - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
scalable, and resilient. Splunk Engineering & Security Monitoring Develop and maintain security monitoring capabilities using Splunk. Create dashboards, alerts, reports, and use cases to enhance threat detection and security visibility. Support log ingestion, optimisation, data onboarding, and security analytics. Collaborate with SOC and Threat Intelligence teams to improve ...

Cyber Security Engineer

Location
Cumnor, England, United Kingdom
supply chain security risk management. Lead audit engagements and regulatory inspections related to cybersecurity. 3. Security Operations & Incident Response Oversee security operations including SOC, threat detection, and vulnerability management. Develop and maintain incident response and crisis management plans. Lead response to major security incidents and coordinate with regulators … Technical Expertise Security frameworks: ISO 27001, NIST CSF, COBIT Cloud security (AWS, Azure, GCP) Identity & Access Management (IAM) SIEM, SOAR, EDR/XDR platforms Threat intelligence and vulnerability management Data protection technologies Secure SDLC and DevSecOps practices Strategic thinker with strong commercial awareness Excellent communication and stakeholder management ...

GRC Consultant

Location
Greater London, England, United Kingdom
other NCSC guidelines Good knowledge of networking (switching, routing, firewalls) In-depth knowledge of modern security concepts, common attack vectors, malware, security analytics and threat intelligence. A good understanding of security testing and vulnerability management is important (including pen testing/ITHC, CVSS/CVE) Experience working with security ...

Senior Security Operations Analyst

Location
Leeds, England, United Kingdom
compromise, and policy violations correlating network, cloud, endpoint, and log‐based activity to identify attacks, unauthorised use, and suspicious activity Participate in continuous threat hunting activities, leveraging threat intelligence, and proactive analysis to identify suspicious activity, emerging threats, and attack trends. Collaborate with stakeholders to investigate … years in Security Operations/SOC or Incident Response, including in a 24×7 or global environment Proven experience across incident response, alert triage, threat hunting, data loss prevention, and operational risk analysis Previous experience acting as incident lead or commander during high‐severity security events preferred Ability ...

Security Operations Engineer Central Business Operations & Other Oxford, England, United Kingdom

Location
Oxford, England, United Kingdom
innovatorsto tackle humanity’s greatest challenges in four transformative areas: Health, Medical Science & Generative Biology Food Security & Sustainable Agriculture Climate Change & Managing CO2 Artificial Intelligence & Robotics This is ambitious work - work that demands curiosity, courage, and a relentless drive to make a difference. At EIT, you’ll join … incidents, supporting containment, eradication, and recovery. Produce clear incident documentation, including reports and root‐cause analysis. Develop and refine detection rules, automation workflows, and threat‐based use cases. Apply threat intelligence to improve detection coverage in complex research environments. Support vulnerability scanning, prioritisation, and remediation tracking. Collaborate ...

IT SOC Engineer

Hiring Organisation
Nationwide Platforms
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent
event sources, assess, prioritise, escalate and manage security alerts. Perform analysis of security, network, database and application logs, correlate events and activities to create threat scenarios in order to get ahead of threat actors and reduce exposure. Help the imminent threat/zero-day response function across … environment. Translate threat intelligence into actionable security across tools such as firewalls, IPS and malware detection across multiple security vendor platforms. Support the tracking and resolution of security incidents on occasion, and collaborate with other teams for resolution and suggest areas for improvement. Must have experience building custom ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security … client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation. Conduct security and privacy risk assessments for AI platforms, tools, and third‐party AI service providers. Evaluate AI solutions ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security … client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation. Conduct security and privacy risk assessments for AI platforms, tools, and third-party AI service providers. Evaluate AI solutions ...

IT Security Specialist - 4197

Location
Greater London, England, United Kingdom
Overview CLS helps clients navigate the changing FX marketplace – reducing risk and creating efficiencies. Our extensive network and deep market intelligence enable CLS specialists to lead the development of standardized solutions to real market problems. Our innovative, forward-looking products make the trading process faster, easier, safer and more … equipped with appropriate industry best of breed tools and solutions Operational Operate and maintain CLS Security controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, Network Protection, etc. Review and help refine CLS Security procedures to ensure compliance with cyber resilience requirements Be responsible when ...

Cyber Security Analyst - Vulnerability Management

Hiring Organisation
Appcast
Location
London, UK
risks from false positives and low-impact findings.Assess vulnerabilities using CVSS, exploitability, asset criticality, exposure and business impact.Monitor emerging vulnerabilities, zero-days and relevant threat intelligence.Work closely with infrastructure, cloud, application, DevOps and IT operations teams to coordinate remediation.Track vulnerabilities through to resolution, ensuring remediation is completed within agreed …/or AWS vulnerability management.Experience with container, Kubernetes or DevSecOps security.Knowledge of application security and common web application vulnerabilities.Experience using SIEM, EDR and threat intelligence alongside vulnerability data.Knowledge of NIST, CIS, ISO 27001 or Cyber Essentials.Relevant security certifications such as CISSP, CISM, GIAC, OSCP or similar.The Ideal Candidate ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches. You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture … building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements. Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack paths ...

Senior SOC Analyst - DV Clearance

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £100,000 per annum
Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection … rules and use cases Produce detailed investigation and incident reports Collaborate with cyber threat intelligence and incident response teams Support continuous improvement of SOC processes and procedures SOC Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred ...

Senior Cyber Threat & Vulnerability Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
leading Financial Services client in the City of London is looking for a Senior Cyber Threat & Vulnerability Manager to lead its cyber threat, vulnerability, penetration testing and exposure management capabilities. This is a senior, hands-on role within the CISO function, focused on identifying and responding to emerging … business. The role offers a base of circa £110,000 + excellent benefits with very flexible working. Key Responsibilities Lead the end-to-end Threat, Vulnerability and Exposure Management function. Drive the prioritisation and remediation of high and critical vulnerabilities, including zero-day and actively exploited threats. Own penetration ...

Proofpoint SME- SC Cleared or SC Eligible

Location
Normanton on Trent, England, United Kingdom
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: Serve … platform and related email security technologies. Design, deploy, configure, and maintain Proofpoint solutions, including: Proofpoint Email Protection (PEP) Proofpoint Targeted Attack Protection (TAP) Proofpoint Threat Response Auto-Pull (TRAP) Proofpoint Email Fraud Defense (EFD) Proofpoint Information Protection/DLP Manage email security policies, spam filtering, malware protection, and threat ...

Proofpoint SME- SC Cleared or SC Eligible

Hiring Organisation
Vallum Associates
Location
Wokingham, England, United Kingdom
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: • Serve … email security technologies. • Design, deploy, configure, and maintain Proofpoint solutions, including: o Proofpoint Email Protection (PEP) o Proofpoint Targeted Attack Protection (TAP) o Proofpoint Threat Response Auto-Pull (TRAP) o Proofpoint Email Fraud Defense (EFD) o Proofpoint Information Protection/DLP • Manage email security policies, spam filtering, malware protection ...

Security Team Lead

Location
Greater London, England, United Kingdom
practices Lead real-time response to security incidents Oversee SIEM/SOAR integration, alerting, and playbooks Conduct investigations using log analysis, forensic techniques, and threat intelligence Client-Facing Security Services Provide advisory and managed security support to a portfolio of insurance clients Deliver security reviews, maturity assessments … experience across Azure and Microsoft security stack Scripting/automation capability (PowerShell, Python, Bash) Strong grounding in MITRE ATT&CK, OWASP, and modern threat vectors (Background in insurance, financial services, or regulated environments is highly beneficial). If you are looking for: End-to-end ownership of InfoSec across ...

Senior SOC Analyst

Hiring Organisation
Searchability NS&D
Location
Farnborough, England, United Kingdom
Analyse network traffic, endpoint activity and system logs Improve detection rules using MITRE ATT and CK techniques Produce technical and customer facing reports Support threat intelligence activities and mentor junior analysts where required Senior SOC Analyst Essential Skills Previous experience within a Security Operations Centre Strong experience with … client in conjunction with this vacancy only. Key Skills SOC Analyst, Senior SOC Analyst, Security Operations Centre, Microsoft Sentinel, Splunk, SIEM, Incident Response, Threat Detection, Cyber Security, MITRE ATT and CK, Blue Team ...

Threat Disruption Analyst — Global Threat Intelligence & Enforcement

Location
Greater London, England, United Kingdom
SpaceXAI is seeking a Threat Disruption specialist to identify and counter highly motivated adversaries. You will perform first-principles investigations into threat surfaces, design large-scale enforcement operations, and clearly communicate outcomes to leadership and product teams. This role requires rapid handling of urgent incidents, collaboration with operations ...