DemandTrendPermanent Blue Team Jobs in England

1 to 25 of 28 DemandTrendPermanent Blue Team Jobs in England

Red Team Senior Operator (Cyber Resilience)

London, United Kingdom
Hybrid / WFH Options
Starling Bank
may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to … Technology, we're asking that you attend the office a minimum of 1 day per week. Here at Starling we are growing, and our first line Technology Risk (ITRM) Team is looking for an experienced, and talented Red Team Senior Operator to join our Cyber Resilience team to join our efforts in proactively identifying vulnerabilities within our … digital infrastructure to ensure continuous improvement in Starling's resilience. Reporting to the Technology Risk Adversarial & Cyber Resilience Testing Director, you will have responsibility for designing and executing red team operations and cyber resilience testing against Starling Bank. Operations will emulate real threat actors and target cutting edge technology in Starling Bank's platform as well as ranging across More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Red Team Operator (Cyber Resilience)

London, United Kingdom
Hybrid / WFH Options
Starling Bank
may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together! The way to thrive and shine within Starling is to be a self-driven individual and be able to … Technology, we're asking that you attend the office a minimum of 1 day per week. Here at Starling we are growing, and our first line Technology Risk (ITRM) Team is looking for an experienced, and talented Red Team Senior Operator to join our Cyber Resilience team to join our efforts in proactively identifying vulnerabilities within our … digital infrastructure to ensure continuous improvement in Starling's resilience. Reporting to the Technology Risk Adversarial & Cyber Resilience Testing Director, you will have responsibility for designing and executing red team operations and cyber resilience testing against Starling Bank. Operations will emulate real threat actors and target cutting edge technology in Starling Bank's platform as well as ranging across More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Red Team Lead

London, United Kingdom
WeAreTechWomen
Job Description Senior Red Team Lead Location: UK Flexible Accenture is a leading global professional services company, providing a broad range of services in strategy and consulting, interactive, technology and operations, with digital capabilities across all of these services. With our thought leadership and culture of innovation, we apply industry expertise, diverse skill sets and next-generation technology to … impact we have with our clients and with the communities in which we work and live. It is personal to all of us." - Julie Sweet, Accenture CEO In our team you will: Gain exposure to diverse industries and advanced security architectures, as you lead sophisticated simulated cyber-attacks against our globally renowned clients, employing the very latest threat actor … latest tools and methodologies. Contribute to enhancing the cybersecurity resilience of some of the world's largest organisations, leaving a lasting impact on their security. As a Senior Red Team Lead you will: Lead and execute Red Team/Purple Team/Simulated Attack engagements. Manage the safe, compliant, and effective technical delivery of testing for regulatory More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

IT Security Engineer

London, United Kingdom
Edify
our software-and it turns out that people love working here too. We've been recognized as a "Best Company to Work For," and we're proud of our team for receiving awards for workplace effectiveness and flexibility. What You'll Do As our Security Engineer, you'll be responsible for managing our security posture as well as keeping …/HIPS configuration, log monitoring, and audit compliance (SOC II). You will ensure that our software application is both manually and automatically pentested for security vulnerabilities (both Red Team and Blue Team exercises), and be a decision-maker in all things security management-able to "pull the plug" on a feature, application, or other business … Need to Get the Job Done 3+ years experience performing penetration testing (against web applications) Experience securing cloud-based infrastructures and solutions Previous experience working on an information security team Advanced knowledge of common security vulnerabilities (OWASP) and best practices Familiarity with SOC II controls and how to review them Experience in other technical roles (SysAdmin, Helpdesk, etc.) Strong More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

24/7 SOC Analyst

Derby, Derbyshire, United Kingdom
Hybrid / WFH Options
risual Limited
the role Node4 have an exciting opportunity within our Security Operations Center (SOC) for an individual looking to progress their career in cybersecurity. As a member of our Security Team you're responsible for securing both Node4 and our customers against attacks, compromises and breaches. Internally you will work as part of the corporate services department, collaborating with other … teams such as network specialists and infrastructure engineers to mature and maintain our internal security posture. Externally you will work closely with our account-managers and pre-sales team to deliver managed security services to customers and provide a consistently high-quality standard of service. We are looking for a passionate, driven individual who is keen to learn more … and Azure Experience using and developing playbooks for SOC processes and incident response Strong understanding of IT & networking fundamentals (eg TCP, DNS, TLS) Able to work effectively in a team as well as confident working independently and taking accountability for tasks/projects. Robust time/project management skills to prioritise and organise multiple ongoing tasks. Understanding of Windows More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

SOC and Vulnerability Analyst

Greater Bristol Area, United Kingdom
Logiq
irregularities and alerts which may indicate incidents, breaches and events. Investigation of alerts and incidents to ascertain the criticality and prioritisation of security incidents and vulnerabilities. Collaborate with other team members to further investigate incidents and propose responses and solutions. Report any new knowledge gained about existing cyber threats or vulnerabilities within their network so that future incidents can … to emerging threats and vulnerabilities in company IT systems. Review configuration dashboards, identifying deployment issues and misconfigurations that may lead to vulnerabilities to Logiq platforms. Collaborate with other InfoSec team members to ensure that the client has the correct procedures in place to continue to operate safely and securely. Conduct the daily and weekly checks to identify vulnerabilities, providing … this maturity where appropriate. Familiar with the following tools: Microsoft Sentinel Qualys VMDR Tenable VM MITRE ATT&CK Framework Desirable Certifications, Qualifications Experience: Computer Security Security Blue Team 1 or higher CompTIA Cyber Security Analyst SC-200 Microsoft Security Operations Analyst One of: CREST Registered Penetration Tester, CREST Certified Infrastructure Tester, Cyber Scheme Team Member (CSTM More ❯
Posted:

SOC and Vulnerability Analyst

bath, south west england, united kingdom
Logiq
irregularities and alerts which may indicate incidents, breaches and events. Investigation of alerts and incidents to ascertain the criticality and prioritisation of security incidents and vulnerabilities. Collaborate with other team members to further investigate incidents and propose responses and solutions. Report any new knowledge gained about existing cyber threats or vulnerabilities within their network so that future incidents can … to emerging threats and vulnerabilities in company IT systems. Review configuration dashboards, identifying deployment issues and misconfigurations that may lead to vulnerabilities to Logiq platforms. Collaborate with other InfoSec team members to ensure that the client has the correct procedures in place to continue to operate safely and securely. Conduct the daily and weekly checks to identify vulnerabilities, providing … this maturity where appropriate. Familiar with the following tools: Microsoft Sentinel Qualys VMDR Tenable VM MITRE ATT&CK Framework Desirable Certifications, Qualifications Experience: Computer Security Security Blue Team 1 or higher CompTIA Cyber Security Analyst SC-200 Microsoft Security Operations Analyst One of: CREST Registered Penetration Tester, CREST Certified Infrastructure Tester, Cyber Scheme Team Member (CSTM More ❯
Posted:

SOC and Vulnerability Analyst

bradley stoke, south west england, united kingdom
Logiq
irregularities and alerts which may indicate incidents, breaches and events. Investigation of alerts and incidents to ascertain the criticality and prioritisation of security incidents and vulnerabilities. Collaborate with other team members to further investigate incidents and propose responses and solutions. Report any new knowledge gained about existing cyber threats or vulnerabilities within their network so that future incidents can … to emerging threats and vulnerabilities in company IT systems. Review configuration dashboards, identifying deployment issues and misconfigurations that may lead to vulnerabilities to Logiq platforms. Collaborate with other InfoSec team members to ensure that the client has the correct procedures in place to continue to operate safely and securely. Conduct the daily and weekly checks to identify vulnerabilities, providing … this maturity where appropriate. Familiar with the following tools: Microsoft Sentinel Qualys VMDR Tenable VM MITRE ATT&CK Framework Desirable Certifications, Qualifications Experience: Computer Security Security Blue Team 1 or higher CompTIA Cyber Security Analyst SC-200 Microsoft Security Operations Analyst One of: CREST Registered Penetration Tester, CREST Certified Infrastructure Tester, Cyber Scheme Team Member (CSTM More ❯
Posted:

Assistant Vice President, Penetration Tester

London, United Kingdom
Hybrid / WFH Options
MUFG Securities EMEA plc
the IT strategy, architecture solutions, and service delivery are firmly aligned to business requirements and long-term strategy of the group. Technology comprises the following functions: Architecture and Development team - which is responsible for the provision of shared services including architecture, middleware, new systems development, quality assurance and release management. Middle, Risk and Back Office Team - which is … used by these areas including the main trading system, Murex. Front Office Solutions - which provides a business-oriented focus to all technological developments that affect the trading floor. Infrastructure team - which supports the operation of all production services, voice and data networks, other voice systems and desktop systems. Programme Office and Purchasing - which is responsible for definition, prioritisation and … bank and the securities business, subject to the same remit and level of authority, and irrespective of the entity which employs you. Develop and maintain governance structure of red team operations and train, and mentor other members of the Red Team. Develop and execute penetration testing plans, including network, web application, and social engineering assessments. Collaborate with SOC team More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Operations Centre Shift Lead

Hemel Hempstead, Hertfordshire, South East, United Kingdom
Walsh Employment
analysis and reverse engineering Active DV Clearance Scripting or programming with Python , Perl , Bash , PowerShell , or C++ Recognised certifications such as CREST Practitioner Intrusion Analyst or Blue Team Level 1 Familiarity with additional SIEM technologies, especially QRadar Role & Responsibilities As a SOC Shift Lead , you will ensure the smooth operation and continual enhancement of SOC processes and … personnel. You will play a pivotal role in protecting client systems and guiding the team through sophisticated cyber defence challenges. Your responsibilities will include: Monitoring, triaging, and investigating alerts across host and network security systems Performing deep analysis of traffic, logs, and system events to identify threats and vulnerabilities Providing line management to SOC Analysts developing capability and supporting … career progression Enhancing team knowledge across SOC tooling , detection methodologies , and threat triage Analysing and optimising detection rules and use cases based on Mitre Att&ck Maintaining detailed and up-to-date incident documentation , findings, and mitigation strategies Acting as a representative of the SOC in key meetings and internal stakeholder engagements Working shifts from the on-site Security More ❯
Employment Type: Permanent
Posted:

VP - Digital Forensics & Incident Response (DFIR) Manager

London, United Kingdom
Hybrid / WFH Options
Nicoll Curtin Technology
threat intelligence capabilities. Support and mature security monitoring use cases (SIEM, packet inspection, IOCs). Coordinate cross-functional security incident response with SOC, Threat Intelligence, and Red/Blue teams. Engage with technical and business teams on cyber risk reduction strategies. Contribute to vulnerability management and remediation plans. Required Skills & Experience Proven experience managing DFIR or cyber incident More ❯
Employment Type: Permanent
Salary: GBP 90,000 Annual
Posted:

Cloud Security Lead

London, United Kingdom
Tokio Marine HCC
Officer (BISO) for TMHCC International, the Cloud Security Lead is part of the BISO function established within in the CIO organisation of the International division. You'll join the team as someone who is passionate about Cloud Security and Cyber Risk management. The Cloud Security Lead is responsible for maintaining secure cloud architectures, policies, and practices to protect critical … to explain complex security issues to non-technical stakeholders. Knowledge of Zero Trust architecture and security frameworks (e.g., MITRE ATT&CK). Experience in red/blue team exercises. Familiarity with cloud-native security tools and infrastructure-as-code (e.g., Azure Policy, ARM/Bicep, Terraform). Experience of the Specialty and Lloyd's/Companies market … of Companies offers a competitive salary and employee benefit package. We are a successful, dynamic organization experiencing rapid growth and are seeking energetic and confident individuals to join our team of professionals. The Tokio Marine HCC Group of companies is an equal opportunity employer. Please visit for more information about our companies. The Tokio Marine HCC Group of companies More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Defense Manager

Keynsham, Somerset, United Kingdom
VC Evidensia UK
to take the lead in defending a global veterinary business from evolving cyber threats? As our Cyber Defense Manager, you'll head up the Cyber Defence "Blue Team," driving operational excellence and strategic resilience across a complex, distributed digital landscape. Your leadership will directly support the secure delivery of veterinary care and innovation worldwide-protecting the systems … cybersecurity in a business that values innovation and resilience. Collaborative Culture: Work with passionate teams across IT, digital, and operations in a mission-driven environment. Ready to lead a team that defends what matters most? Apply now and help us build a safer, smarter future for global animal health. What We Offer: At IVC Evidensia we recognise that our … long-term health conditions and would be happy to discuss any reasonable adjustments needed during the recruitment process. Any questions before applying? Speak to Jake Nicholls from our recruitment team who would be happy to help you with any questions you have before applying for this role. More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

SOC Shift Lead - Systems Integrator

England, United Kingdom
Hamilton Barnes Associates Limited
the SOC in partner and stakeholder meetings. Contribute to SOC process improvement, skills development, and knowledge sharing. Skills/Must Have: Strong experience working in a SOC environment. Proven team leadership or people management experience. Expertise in Microsoft Sentinel and Splunk. Familiarity with the MITRE ATT&CK framework. Sound understanding of network protocols (TCP/IP, HTTP, SMTP, etc. … enterprise infrastructure. Desirable skills: Skills in malware analysis or reverse engineering. Experience with scripting or programming (Python, PowerShell, Bash, etc.). Relevant SOC certifications (e.g., CREST, Blue Team Level 1). Exposure to additional SIEM tools such as QRadar. Shift Pattern: 2 Days, 2 Nights, 4 Off Benefits: 25 days annual leave (plus option to purchase more More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Penetration Tester - Systems Integrator

London, United Kingdom
Hybrid / WFH Options
Hamilton Barnes Associates Limited
high-impact reports with clear technical findings and business-aligned remediation advice. Work closely with client cybersecurity teams to prioritize and track vulnerability remediation, contributing to blue team effectiveness. Conduct ongoing research and contribute to thought leadership in threat-informed testing methodologies. Required Skills: 5+ years of professional experience in penetration testing, with a strong emphasis on … London-Based Hybrid/Remote Options Available Benefits: Work in a high-impact role where your expertise directly influences the resilience of major organisations. Join a collaborative, technically elite team focused on cutting-edge offensive techniques and driving genuine security improvements. Salary: Up to £90,000 Per Annum (Basic More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Chief Information Security Officer

London, United Kingdom
Fuse Energy, LLC
to Fuse's risk profile. Directly contribute to architecture reviews, threat modelling sessions, and key design decisions across product and platform teams. Build and mentor a high-performing security team, including hiring, coaching, and managing performance. Develop KPIs and reporting structures to measure and communicate security posture to leadership and the board. Advise the executive team on security … management. Excellent leadership, communication, and stakeholder skills. Bachelor's or advanced degree in Computer Science, Information Security, or related field. Bonus: Experience with CTFs, red/blue team exercises, or offensive security. Competitive salary and a stock options sign-on bonus Biannual bonus scheme Fully expensed tech to match your needs! Paid annual leave Breakfast and dinner More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Lead

Cheshire, United Kingdom
Matchtech Group Plc
oil & gas, energy, utilities, or manufacturing sectors. Hands-on experience with OT security tools (e.g., Claroty, Dragos). Participation in cyber incident simulations or red/blue team exercises. More ❯
Employment Type: Permanent
Salary: £75000 - £90000/annum
Posted:

Senior Cyber Security Analyst

London, United Kingdom
Barclay Simpson
activities. The successful candidate will be a hands-on, technically skilled security professional with experience across a broad range of cybersecurity disciplines (red/purple and blue team), this experience will enable you to successfully help shape, implement, and maintain effective security controls and infrastructure across the firm. This is a hybrid role (3 days in office More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Testing Lead

Keynsham, Somerset, United Kingdom
VC Evidensia UK
to expose weaknesses, validate controls, and drive real-world resilience across our systems. What You'll Do This is a hands-on leadership role within our Cyber Defence Red Team, focused on simulating real-world attack techniques to identify and close security gaps before they're exploited. Key responsibilities include: Security Testing Strategy: Design and execute end-to-end … advanced adversarial simulations. Vulnerability Identification: Perform External Attack Surface Management (EASM) and threat hunting to uncover systemic weaknesses. Risk Reporting: Analyse and communicate findings to the Blue Team and Compliance, driving remediation efforts. Collaboration & Mentorship: Work closely with IT and development teams to resolve issues and mentor internal testers. Third-Party Oversight: Manage external testing providers and … work will help protect the systems that support veterinary care across continents. Cutting-Edge Challenges: Tackle real-world threats in a complex, distributed business environment. Collaborative Culture: Join a team that values innovation, transparency, and continuous learning. Ready to lead the charge in proactive cyber defense? Apply now and help us stay one step ahead in securing global animal More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

SOC Shift Lead

Hemel Hempstead, Hertfordshire, South East, United Kingdom
Sopra Steria Limited
Our Cyber team look after some complicated and compelling areas within Aero, Defence and Security. If you want to lead from the front, gain experience working with multiple clients, and always have access to the latest technologies, then join the team who are on the cusp of continued growth and known as leaders in their field. Our new … position of SOC Shift Lead will direct a team of SOC Analysts, conduct monitoring and triage of alerts associated with host and network security events for our clients critical infrastructure and support the SOC through both delivery of client work and adding skills and ideas to this already diverse team. This role is based on site Hemel Hempstead and … security incidents on critical client infrastructure. In depth analysis of network traffic, logs, and system events to identify potential security threats and vulnerabilities. Line Management. Maintain, improve and develop team knowledge of SOC tools, security operations and triage. Analyse and improve detection rules and use cases in line with Mitre Att&ck and threat-informed defence. Maintain and update More ❯
Employment Type: Permanent
Salary: 25 days holidays, 6% Contributory pension, 4 x life Insurance
Posted:

INFORMATION SECURITY CONSULTANT 1

London, United Kingdom
Reply, Inc
multi-cloud or hybrid (Azure/GCP/on-prem) environments. Container security and supply-chain SBOM tooling. Cloud incident response or red/blue/purple-team experience. Contributions to open-source security tools or AWS community forums. Reply provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Threat Hunter - National Security - Leeds

Leeds, Yorkshire, United Kingdom
Hybrid / WFH Options
BAE Systems (New)
Serve as the point of escalation for intrusion analysis, forensics, and incident response queries. Provide root cause analysis for complex, non-standard findings and anomalies without existing playbooks. Mentor team members and share knowledge proactively. Contribute to the SOC Knowledge Repository by creating and updating documentation independently. Build relationships externally with other SOCs and cybersecurity researchers to identify analytics … threats affecting cloud services and VMs, prioritizing and implementing relevant findings. Research vulnerabilities, produce proof-of-concept exploits, and emulate adversary TTPs for training and detection evaluation. Review red team and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes, data collection, and analysis, demonstrating … world risks. Architect detection programs to identify unusual behaviors, reduce dwell time, and optimize resource use. Oversee practices that enhance daily operations, including quality reviews. Lead operational strategy and team exercises, collaborating across functions. Contribute to team requirements, including engineering and continuous improvement. Design and conduct technical interviews, evaluating candidate responses. Experience Proven experience in security testing practices More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Penetration Tester

South East London, London, United Kingdom
COMPUTACENTER (UK) LIMITED
Life on the team Computacenter is growing our penetration testing capability and we are looking for an experienced penetration tester to support the delivery of vulnerability assessment and penetration testing services to Computacenter and our customers delivered services. As a highly skilled and motivated Penetration Tester, you will join our dynamic Cybersecurity team. In this role, you will be … own people and will look at individuals, you will be involved in so many business projects whilst working with passionate Cyber Security Professionals. If you are looking for a team that offers development and flexibility look no further and apply today What you'll do A highly skilled and motivated Penetration Tester to join our dynamic cybersecurity team. In … cloud security assessments, and social engineering simulations. Vulnerability identification and analysis: Research, identify, and exploit security vulnerabilities in a variety of systems and applications. Red/Purple/Blue Teaming: participate in exercises with the goal of increasing cyber resilience for both offensive and defensive. Reporting and documentation: Prepare detailed and professional penetration test reports, including executive summaries More ❯
Employment Type: Permanent
Posted:

Senior Penetration Tester

London, United Kingdom
Computacenter AG & Co. oHG
UK - Cardiff, UK - Edinburgh, UK - London, UK - Milton Keynes, UK - Mobile England, UK - Nottingham, UK - Reading Job-ID: 214652 Contract type: Standard Business Unit: Cyber Security Life on the team Computacenter is growing our penetration testing capability and we are looking for an experienced penetration tester to support the delivery of vulnerability assessment and penetration testing services to Computacenter … own people and will look at individuals, you will be involved in so many business projects whilst working with passionate Cyber Security Professionals. If you are looking for a team that offers development and flexibility look no further and apply today What you'll do A highly skilled and motivated Penetration Tester to join our dynamic cybersecurity team. In … cloud security assessments, and social engineering simulations. Vulnerability identification and analysis : Research, identify, and exploit security vulnerabilities in a variety of systems and applications. Red/Purple/Blue Teaming: participate in exercises with the goal of increasing cyber resilience for both offensive and defensive. Reporting and documentation: Prepare detailed and professional penetration test reports, including executive summaries More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Senior Penetration Tester

Manchester, Lancashire, United Kingdom
Computacenter AG & Co. oHG
UK - Cardiff, UK - Edinburgh, UK - London, UK - Milton Keynes, UK - Mobile England, UK - Nottingham, UK - Reading Job-ID: 214652 Contract type: Standard Business Unit: Cyber Security Life on the team Computacenter is growing our penetration testing capability and we are looking for an experienced penetration tester to support the delivery of vulnerability assessment and penetration testing services to Computacenter … own people and will look at individuals, you will be involved in so many business projects whilst working with passionate Cyber Security Professionals. If you are looking for a team that offers development and flexibility look no further and apply today What you'll do A highly skilled and motivated Penetration Tester to join our dynamic cybersecurity team. In … cloud security assessments, and social engineering simulations. Vulnerability identification and analysis : Research, identify, and exploit security vulnerabilities in a variety of systems and applications. Red/Purple/Blue Teaming: participate in exercises with the goal of increasing cyber resilience for both offensive and defensive. Reporting and documentation: Prepare detailed and professional penetration test reports, including executive summaries More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:
Blue Team
England
25th Percentile
£48,165
Median
£62,000
75th Percentile
£91,250
90th Percentile
£95,500