151 to 175 of 411 Threat Intelligence Jobs

Cyber Security Specialist (Operational)

Hiring Organisation
NICE – The National Institute for Health and Care Excellence
Location
Manchester, M1 3BN, United Kingdom
Salary
£57528.00 to £64750.00
manage and maintain security tooling and infrastructure across on premise and cloud environments, embedding secure by design principles o Carry out routine vulnerability assessments, threat analysis and horizon scanning to identify and mitigate emerging risks o Serve as a technical escalation point for complex security issues, contributing expert analysis … Please see job description attached for full list of responsibilities. Person Specification Knowledge Desirable Knowledge of Microsoft Defender, Sentinel, including Kusto Query Language (KQL), threat hunting, analytics rule development, security monitoring, incident investigation and automation capabilities. Education/Qualifications Essential Holds highly developed specialist knowledge and expertise acquired through ...

Cyber Security Analyst

Hiring Organisation
The Portfolio Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£50000 - £55000/annum
following established playbooks and incident response processes. Manage email security operations across Mimecast and Abnormal, including releases, journal pulls, and reported-phishing investigations. Monitor threat feeds and threat intelligence, applying relevant findings to the environment. Maintain and tune detections, correlation rules, and Cortex XSOAR playbooks to reduce … management across Windows and macOS (Intune, Jamf). Strong knowledge of cloud environments, including Microsoft Azure, AWS, and Microsoft 365. Understanding of layered security, threat hunting, and incident response. Qualifications A degree in a computer-related subject, or equivalent experience in cyber security. Holding, or actively working towards, relevant ...

Chief Information Security Officer

Location
Greater London, England, United Kingdom
London headquarters. In this role, you will balance strategic vision with operational execution. You will safeguard our vast infrastructure against an evolving global threat landscape while enabling business growth and digital innovation. Crucially, you will spearhead the governance and responsible adoption of Artificial Intelligence (AI) across our editorial … executive dashboards to maintain board-level visibility of our risk posture. Security Operations & Cyber Resilience: SecOps Management: Oversee day-to-day security operations, threat management, threat intelligence, and cyber resilience capabilities across our high-traffic digital platforms. Crisis Leadership: Lead crisis management and executive-level incident response ...

Threat Intelligence Lead — Hybrid, Threat Hunts & Insights

Location
Bracknell, England, United Kingdom
John Lewis Partnership is seeking a Senior Information Security Analyst to join the Threat Defence team in Bracknell. You will identify, understand and report on cyber threats, coordinate with vulnerability management, and deliver intelligence insights to partners and stakeholders. You will design and run Threat Hunts, analyse ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
help protect systems that matter. Apply today and take your cyber security career to the next level. If you're passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need … support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What You'll Bring: Proven experience working ...

Senior Security Operations Centre Analyst

Location
Farnborough, England, United Kingdom
enhance detection capabilities, develop your expertise, and work with cutting-edge security technologies in a fast-paced operational environment. If you’re passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need … support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What You'll Bring: Proven experience working ...

Cyber Security Engineer - Assistant Vice President

Location
Greater London, England, United Kingdom
Vice President Seeking security engineer to join our Proactive Security team, this role will focus on the development of security technology stack to ensure threat mitigation is in place through offensive and preventive measures. Duties and Responsibilities Develop and maintain threat models for Mizuho information assets and services. … tooling integration and orchestration. Develop and implementation of SOAR capabilities that aligns with existing technology stack. Experience with KMS systems and methodologies. Identity based threat detection and prevention. Privileged Access and Session Management SIEM Management: Design, implement, and maintain of workspaces, including data connectors, Logic App, Function App, analytics ...

Detection Engineer (Cybersecurity)

Location
Glasgow, Scotland, United Kingdom
seeking someone to join the global Threat Hunt and Cyber Detection (THCD) team as a Detection Engineer. The THCD mission is to seek out attacks against the Morgan Stanley network, to engineer detection strategies, and to reduce risk to Morgan Stanley assets. As a new Threat Hunt team … communities in more than 40 countries around the world. What you’ll do in the role: Contribute expertise in the following areas: threat hunting, threat intelligence, data analysis, risk management, governance to a global team. Evaluate threats and countermeasures along with architecture to understand impact to enhance ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

SOC Team Lead

Location
Greater London, England, United Kingdom
Drive performance and operational excellence across Shared Service’s Cyber Services function Act as a technical escalation point and line manager Support threat analysis, incident response, and security assurance activities Foster a proactive culture of cyber hygiene and continuous improvement Collaborate across departments to strengthen Shared Service's security … threats and investigative escalations Ensure complex or unresolved cybersecurity issues are escalated appropriately Line manage Cyber Analysts, set objectives, and support development plans Share threat intelligence and cyber knowledge with junior colleagues Provide training and coaching on cyber operations tooling and security practices Contribute to root cause analysis ...

Principal Security Design Consultant

Location
Greater London, England, United Kingdom
residency requirements across cloud, on-premises and third-party services. Develop detection and response architectures covering analytics rules, MITRE ATT&CK-aligned use cases, threat hunting, workbooks, watchlists, automation and SOAR playbooks. Design secure integrations with ITSM, CMDB, threat intelligence, vulnerability management, identity, network and incident response … migrating from third-party EDR, SIEM or outsourced SOC services, including platforms such as CrowdStrike. Strong understanding of SOC operations, detection engineering, incident response, threat hunting and managed security service operating models. Broad enterprise security architecture capability across Azure and Microsoft 365, identity, network, endpoint, data protection and hybrid ...

Security Engineer (Site Reliability Engineering) - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
scalable, and resilient. Splunk Engineering & Security Monitoring Develop and maintain security monitoring capabilities using Splunk. Create dashboards, alerts, reports, and use cases to enhance threat detection and security visibility. Support log ingestion, optimisation, data onboarding, and security analytics. Collaborate with SOC and Threat Intelligence teams to improve ...

Cyber Security Engineer

Location
Cumnor, England, United Kingdom
supply chain security risk management. Lead audit engagements and regulatory inspections related to cybersecurity. 3. Security Operations & Incident Response Oversee security operations including SOC, threat detection, and vulnerability management. Develop and maintain incident response and crisis management plans. Lead response to major security incidents and coordinate with regulators … Technical Expertise Security frameworks: ISO 27001, NIST CSF, COBIT Cloud security (AWS, Azure, GCP) Identity & Access Management (IAM) SIEM, SOAR, EDR/XDR platforms Threat intelligence and vulnerability management Data protection technologies Secure SDLC and DevSecOps practices Strategic thinker with strong commercial awareness Excellent communication and stakeholder management ...

GRC Consultant

Location
Greater London, England, United Kingdom
other NCSC guidelines Good knowledge of networking (switching, routing, firewalls) In-depth knowledge of modern security concepts, common attack vectors, malware, security analytics and threat intelligence. A good understanding of security testing and vulnerability management is important (including pen testing/ITHC, CVSS/CVE) Experience working with security ...

Senior Security Operations Analyst

Location
Leeds, England, United Kingdom
compromise, and policy violations correlating network, cloud, endpoint, and log‐based activity to identify attacks, unauthorised use, and suspicious activity Participate in continuous threat hunting activities, leveraging threat intelligence, and proactive analysis to identify suspicious activity, emerging threats, and attack trends. Collaborate with stakeholders to investigate … years in Security Operations/SOC or Incident Response, including in a 24×7 or global environment Proven experience across incident response, alert triage, threat hunting, data loss prevention, and operational risk analysis Previous experience acting as incident lead or commander during high‐severity security events preferred Ability ...

Security Operations Engineer Central Business Operations & Other Oxford, England, United Kingdom

Location
Oxford, England, United Kingdom
innovatorsto tackle humanity’s greatest challenges in four transformative areas: Health, Medical Science & Generative Biology Food Security & Sustainable Agriculture Climate Change & Managing CO2 Artificial Intelligence & Robotics This is ambitious work - work that demands curiosity, courage, and a relentless drive to make a difference. At EIT, you’ll join … incidents, supporting containment, eradication, and recovery. Produce clear incident documentation, including reports and root‐cause analysis. Develop and refine detection rules, automation workflows, and threat‐based use cases. Apply threat intelligence to improve detection coverage in complex research environments. Support vulnerability scanning, prioritisation, and remediation tracking. Collaborate ...

IT SOC Engineer

Location
United Kingdom
event sources, assess, prioritise, elevate and manage security alerts. Perform analysis of security, network, database and application logs, correlate events and activities to create threat scenarios in order to get ahead of threat actors and reduce exposure. Help the imminent threat/zero-day response function across … environment. Translate threat intelligence into actionable security across tools such as firewalls, IPS and malware detection across multiple security vendor platforms. Support the tracking and resolution of security incidents on occasion, and collaborate with other teams for resolution and suggest areas for improvement. Must have experience building custom ...

IT SOC Engineer

Hiring Organisation
Nationwide Platforms
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent
event sources, assess, prioritise, escalate and manage security alerts. Perform analysis of security, network, database and application logs, correlate events and activities to create threat scenarios in order to get ahead of threat actors and reduce exposure. Help the imminent threat/zero-day response function across … environment. Translate threat intelligence into actionable security across tools such as firewalls, IPS and malware detection across multiple security vendor platforms. Support the tracking and resolution of security incidents on occasion, and collaborate with other teams for resolution and suggest areas for improvement. Must have experience building custom ...

Security Operations Manager

Location
Belfast City District, Northern Ireland, United Kingdom
identifying gaps across people, processes and technology and translating these into practical improvements. Advise on the evolution and optimisation of SIEM, SOAR, EDR and threat‐detection tooling to improve visibility, reduce noise and strengthen detection and response capabilities. Develop and maintain incident playbooks, standard operating procedures, automated response workflows … used for enrichment, triage and response orchestration. Endpoint Detection and Response (EDR/XDR) platforms, such as Microsoft Defender for Endpoint and CrowdStrike Falcon. Threat intelligence, detection engineering, investigation and incident response technologies. Cloud security monitoring across Microsoft Azure, AWS and GCP environments. What you can expect Work ...

Senior Global Security Operations Centre Analyst

Location
United Kingdom
identity, and network technologies, you'll play a critical role in strengthening our cyber defences while helping shape the future of security operations through threat hunting, automation, AI-assisted workflows, and continuous improvement. If you're passionate about cyber security, enjoy solving complexchallenges, and want to make a real … full lifecycle, coordinating containment, remediation, recovery and post-incident reviews while balancing cyber risk and business priorities.* Proactively hunt for threats and partner with Threat Intelligence and Detection Engineering teams to identify emerging risks, improve detections and strengthen security visibility.* Develop and enhance detection rules, analytics, use cases ...

Senior Global Security Operations Centre Analyst

Hiring Organisation
Centrica - CHP
Location
Windsor, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
identity, and network technologies, you'll play a critical role in strengthening our cyber defences while helping shape the future of security operations through threat hunting, automation, AI-assisted workflows, and continuous improvement. If you're passionate about cyber security, enjoy solving complex challenges, and want to make … full lifecycle, coordinating containment, remediation, recovery and post-incident reviews while balancing cyber risk and business priorities. Proactively hunt for threats and partner with Threat Intelligence and Detection Engineering teams to identify emerging risks, improve detections and strengthen security visibility. Develop and enhance detection rules, analytics, use cases ...

SOC Analyst

Hiring Organisation
AMS CWS
Location
London, United Kingdom
Employment Type
Contract, Work From Home
protecting a diverse technology estate from evolving cyber threats. This is an excellent opportunity for a security professional who enjoys investigating complex security incidents, threat hunting, and working across cloud, endpoint, identity, network, and application environments. You'll take ownership of escalated investigations, support incident response activities, and help … security events using SIEM, EDR, cloud, identity, and network security tools. Determine the scope, severity, and business impact of security incidents. Conduct proactive threat hunting activities based on intelligence and emerging attack techniques. Coordinate containment, eradication, and recovery activities with technology and incident response teams. Improve detection effectiveness ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security … client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation. Conduct security and privacy risk assessments for AI platforms, tools, and third‐party AI service providers. Evaluate AI solutions ...

Cyber Security Analyst - Enterprise Markets

Location
Glasgow, Scotland, United Kingdom
incidents, analyze threats, and contribute to strengthening the security posture of our customers. If you have a strong understanding of cybersecurity principles, networking, and threat detection, and you thrive in a fast-paced, collaborative environment, this role is an excellent opportunity to grow your career in cyber security. What … bring Experience in cybersecurity principles, attack detection, incident response, and security frameworks. Understanding of networking fundamentals, including TCP/IP, VPNs, firewalls, and threat intelligence models. Strong analytical and problem-solving skills, with the ability to make sound decisions under pressure. Demonstrable experience in conveying complex security concepts ...

IT Security Specialist - 4197

Location
Greater London, England, United Kingdom
Overview CLS helps clients navigate the changing FX marketplace – reducing risk and creating efficiencies. Our extensive network and deep market intelligence enable CLS specialists to lead the development of standardized solutions to real market problems. Our innovative, forward-looking products make the trading process faster, easier, safer and more … equipped with appropriate industry best of breed tools and solutions Operational Operate and maintain CLS Security controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, Network Protection, etc. Review and help refine CLS Security procedures to ensure compliance with cyber resilience requirements Be responsible when ...