1 to 25 of 46 Permanent Threat Analysis Jobs in the UK

Senior SOC Analyst

Location
Greater London, England, United Kingdom
programme within a global enterprise environment. This role is ideal for a senior, hands‐on Security Operations professional who combines strong incident investigation and threat analysis skills with experience in detection engineering, operational process development, and stakeholder engagement. Working as a key bridge between regional and global Security … expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm . Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE ATT&CK . Identify detection gaps, duplicate content and optimisation opportunities through detection engineering, threat hunting, and alert tuning activities. ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
Greater London, England, United Kingdom
Summary: Senior Cyber Threat Intelligence (CTI) Analyst UK (9:00 AM – 18:00 PM GMT) Live Nation Entertainment – Cyber Security Operations, Cyber Security THE TEAM Live Nation is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to drive hands‐on intelligence analysis and research across our global … environment. This role sits within the Detection and Response Engineering, CTI, and Threat Hunting team. The team focuses on identifying emerging threats, conducting in-depth analysis of malicious activity, and enhancing the organization’s security posture, detection, and incident response capabilities. THE ROLE This is a hands ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
United Kingdom
Summary:Senior Cyber Threat Intelligence (CTI) AnalystUK (9:00 AM – 18:00 PM GMT)Live Nation Entertainment – Cyber Security Operations, Cyber SecurityTHE TEAMLive Nation is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to drive hands-on intelligence analysis and research across our global environment. This role … sits within the Detection and Response Engineering, CTI, and Threat Hunting team. The team focuses on identifying emerging threats, conducting in-depth analysis of malicious activity, and enhancing the organization’s security posture, detection, and incident response capabilities.THE ROLEThis is a hands-on senior individual contributor role ...

SOC Team Lead

Location
Greater London, England, United Kingdom
Drive performance and operational excellence across Shared Service’s Cyber Services function Act as a technical escalation point and line manager Support threat analysis, incident response, and security assurance activities Foster a proactive culture of cyber hygiene and continuous improvement Collaborate across departments to strengthen Shared Service … threats and investigative escalations Ensure complex or unresolved cybersecurity issues are escalated appropriately Line manage Cyber Analysts, set objectives, and support development plans Share threat intelligence and cyber knowledge with junior colleagues Provide training and coaching on cyber operations tooling and security practices Contribute to root cause analysis ...

Security Operations Analyst

Hiring Organisation
Matchtech
Location
London, UK
Employment Type
Full-time
Umbrella) | Inside IR35 ð Remote with occasional client site visits ð Active SC Clearance Required ð Contract until March 2027Security Operations Analyst | Cyber Threat Intelligence | Threat ModellingWe are looking for an experienced Security Operations Analyst to join a long-term cybersecurity programme supporting critical enterprise and government-facing … environments. This is an excellent opportunity for a security professional with expertise in Cybersecurity Operations, Cyber Threat Intelligence, and Threat Modelling to play a key role in identifying, assessing, and mitigating cyber risks while enhancing the overall security posture of complex organisations. Working alongside Security Architects, Threat ...

T2 SOC Analyst

Hiring Organisation
Oscar Associates (UK) Limited
Location
Stoke-On-Trent, Staffordshire, West Midlands, United Kingdom
Employment Type
Permanent
Salary
£50,000
great opportunity for someone who has moved beyond purely monitoring and alert triage and wants to take genuine ownership of security incidents, investigations, threat analysis and detection improvement. The role supports a 24/7 SOC environment protecting highly sensitive UK environments, so you'll be working … more complex security events. You'll be involved across areas including: Investigating and responding to medium and high-severity security incidents Performing detailed analysis of alerts, logs and suspicious activity Working with SIEM, EDR and wider security tooling Escalating and coordinating containment and remediation activity Acting as a technical ...

Threat Research Engineer

Hiring Organisation
HP
Location
City of Bristol, United Kingdom
Employment Type
Full Time
inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Threat Research Engineer Description - Threat Research Engineer Security Lab, HP Labs, Bristol, UK We have an exciting opportunity to join the HP security team … external stakeholders on cyber threats, and help influence HP's security research and innovation strategy. Our HP Security Lab is recruiting an experienced Threat Research Engineer to focus on researching, analysing, explaining, and reporting emerging threats affecting modern endpoints, from OS-level malware, to hardware and firmware attacks. ...

Information Security Analyst - SecOps Detection

Location
Cardiff, Wales, United Kingdom
attend the office a minimum of 1 day per week. About the role We’re seeking a passionate and skilled Detection Engineer and Threat Hunter to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. Reporting to the Information Security … proactively identify and defend against potential threats to the bank. You will achieve this by developing, tuning, and maintaining detection rules, conducting intelligence-driven threat hunts, and participating in collaborative defence improvement activities like Purple Teaming to identify and mitigate risks before they impact the bank. What ...

Information Security Analyst - SecOps Detection

Location
Manchester, England, United Kingdom
attend the office a minimum of 1 day per week. About the role We’re seeking a passionate and skilled Detection Engineer and Threat Hunter to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. Reporting to the Information Security … proactively identify and defend against potential threats to the bank. You will achieve this by developing, tuning, and maintaining detection rules, conducting intelligence-driven threat hunts, and participating in collaborative defence improvement activities like Purple Teaming to identify and mitigate risks before they impact the bank. What ...

Information Security Analyst - SecOps Detection

Location
Greater London, England, United Kingdom
attend the office a minimum of 1 day per week. About the role We’re seeking a passionate and skilled Detection Engineer and Threat Hunter to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. Reporting to the Information Security … proactively identify and defend against potential threats to the bank. You will achieve this by developing, tuning, and maintaining detection rules, conducting intelligence-driven threat hunts, and participating in collaborative defence improvement activities like Purple Teaming to identify and mitigate risks before they impact the bank. What ...

Principal Product Cybersecurity Assurance

Location
Greater London, England, United Kingdom
team to take it even further. About the Role We are seeking a Principal Product Cybersecurity Assurance Engineer with deep expertise in product security, threat modelling, and risk assurance for highly regulated electromechanical systems. In this role, you will lead the delivery of product cybersecurity across Humanoid's HMND … inference pipeline and cloud-to-robot communication architecture. Own and maintain key security artefacts for audit-ready cybersecurity documentation including Security Management Plans, Threat Analysis and Risk Assessment (TARA) reports, Risk Assessments, and Remediation Action Plans across both platforms. Security Assurance & Certification Drive security assurance through the full ...

Senior SOC Analyst

Hiring Organisation
Anson Mccade
Location
London, United Kingdom
Employment Type
Permanent
Salary
£50,000
base salary Additional 25% shift premium Permanent position Exposure to complex incidents within a modern, security-sensitive environment Opportunity to develop incident response and threat analysis expertise Onsite London role operating across a 28-day shift pattern Company benefits package Excellent skill up and career progression opportunities What … need Experience within a SOC, incident response or threat analysis role Experience investigating security alerts and escalated incidents Understanding of attack vectors, root-cause analysis and incident handling Ability to correlate events across different security and technology data sources Ability to produce clear investigation findings and incident ...

Automotive Cybersecurity Expert

Location
United Kingdom
coordinate cybersecurity activities in accordance with ISO/SAE 21434. Support item definition, cybersecurity planning, tailoring and interface-agreement activities. Conduct and review Threat Analysis and Risk Assessments, including asset identification, attack-path analysis, impact assessment and risk determination. Define cybersecurity goals, claims, concepts, requirements and risk … appropriate cybersecurity controls, including secure boot, authentication, encryption, key management, access control, secure diagnostics and secure communications. Support cybersecurity verification and validation, including vulnerability analysis, penetration testing, fuzz testing and requirements-based testing. Evaluate cybersecurity vulnerabilities and support incident response, remediation and coordinated vulnerability management activities. Produce and maintain ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Hiring Organisation
JP Morgan Chase
Location
London, UK
Employment Type
Full-time
Seize the opportunity to enhance cybersecurity, utilizing your expertise in threat analysis and incident response to protect vital data and systems. As a Security Operations Senior Associate in the Cybersecurity and Tech Controls line of business, you will play a critical role in safeguarding the organization's digital … response to threats, vulnerabilities, and incidents to ensure the integrity, confidentiality, and availability of sensitive data and systemsConduct in-depth security investigations, including log analysis, network trace review, and other data sources to identify root causes, assess impact, and gather evidence for response and mitigation actionsTriage and remediation ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared ...

NMC Cyber Incident Responder (Digital Forensics)

Location
United Kingdom
memory-based evidence, and support the collection and preservation of digital evidence to establish root cause, impact and attacker activity. Working closely with threat intelligence, detection engineering and force stakeholders, you will provide technically sound advice to support incident remediation and organisational decision-making. Key Responsibilities Incident Response & Investigation … Lead and support investigations into cyber security incidents affecting UK policing, including ransomware, malware outbreaks, unauthorised access, data compromise and insider threat investigations. Perform detailed forensic analysis of endpoints, servers, cloud environments and associated digital evidence to evaluate the scope, root cause and impact of incidents. Support incident ...

NMC Cyber Incident Responder (Digital Forensics)

Hiring Organisation
Police Digital Services
Location
Wigan, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
memory-based evidence, and support the collection and preservation of digital evidence to establish root cause, impact and attacker activity. Working closely with threat intelligence, detection engineering and force stakeholders, you will provide technically sound advice to support incident remediation and organisational decision-making. Key Responsibilities Incident Response & Investigation … Lead and support investigations into cyber security incidents affecting UK policing, including ransomware, malware outbreaks, unauthorised access, data compromise and insider threat investigations. Perform detailed forensic analysis of endpoints, servers, cloud environments and associated digital evidence to evaluate the scope, root cause and impact of incidents. Support incident ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
Sandwich, Kent, South East, United Kingdom
ROLE SUMMARY Our Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on-premises, cloud, and hybrid environments. As a Lead Threat Response Operations Analyst within Pfizers Global Cyber Defense organization, you will … response to security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat ...

Proofpoint SME- SC Cleared or SC Eligible

Hiring Organisation
Vallum Associates
Location
Wokingham, England, United Kingdom
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: • Serve … email security technologies. • Design, deploy, configure, and maintain Proofpoint solutions, including: o Proofpoint Email Protection (PEP) o Proofpoint Targeted Attack Protection (TAP) o Proofpoint Threat Response Auto-Pull (TRAP) o Proofpoint Email Fraud Defense (EFD) o Proofpoint Information Protection/DLP • Manage email security policies, spam filtering, malware protection ...

Software Security Architect - CRA (m/f/d)

Location
Glasgow, Scotland, United Kingdom
standards and regulations, including the Cyber Resilience Act (CRA).**Your Responsibilities*** Specify, design, review, and evolve system software security architectures and implementations.* Conduct threat analysis, attack surface analysis, and security risk assessments for embedded systems and software platforms.* Define security requirements and establish traceability from security … product lifecycle.* Support secure development lifecycle (SDL) activities, including architecture reviews, security assessments, and security verification.* Analyze security vulnerabilities and defects, perform root cause analysis, and define appropriate mitigations and countermeasures.* Define and review security mechanisms such as secure boot, secure update, cryptographic services, key management, device identity ...

Senior SOC Analyst - Global Detection & Response

Location
Greater London, England, United Kingdom
Analyst in London to support a global security transformation. The role is 4 days onsite with 1 day remote, requiring hands-on incident investigation, threat analysis, and threat hunting across SIEMs, EDR/XDR, and cloud environments. You will develop SOPs and playbooks, lead detection engineering ...

WAF Engineer

Hiring Organisation
Willis Towers Watson
Location
London, UK
Employment Type
Full-time
services within the WTW environment in a Tier 3 capacity. The role is London based with a hybrid work style. The Role: Perform analysis and tuning of WAF policies to minimise false positives and false negatives while maintaining an appropriate security posture. Design, implement, maintain and optimise WAF policies … rule exclusions, rate-limiting policies and bot protection controls. Support transition of WAF policies from Detection mode to Prevention/Block mode through structured analysis, tuning, testing and stakeholder engagement. Analyse attack patterns, logs and telemetry to identify emerging threats and implement effective mitigations. Work closely with application owners ...

Cyber Security Consultant

Hiring Organisation
Radius Consultancy
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
primarily focused on security assurance, governance, and incident response leadership, the successful candidate will possess sufficient technical capability to support investigations, security monitoring activities, threat analysis, vulnerability management, and major cyber incidents when required. ...

Staff Product Security Engineer

Location
Greater London, England, United Kingdom
products. Responsibilities: Owns the development and maturation of security features for Anduril’s products Authors and maintains security documentation including System Security Plans, Threat Analysis and Risk Assessments, and compliance evidence Collaborates and builds solutions with engineering teams to meet and exceed industry-standard security goals Collaborates with … implementations, integrations, and processes Integrates and matures Product Securitys suite of tooling thought Anduril’s products. Conducts security assessments including architecture review, source code analysis, configuration auditing, and adversarial testing Requirements: Proficient with one or more programming languages (e.g. C/C++, Golang, Rust, Python) Experience assessing security ...

Senior / 3rd Line IT Engineer - Infrastructure & Cyber Security

Hiring Organisation
Recruitment Revolution
Location
Colchester, Essex, South East, United Kingdom
Employment Type
Permanent
across technologies such as CrowdStrike, Cisco, VMware vSphere, Windows Server, Mac/Windows, Jamf, Intune, Automox and VPNs. • Strong security monitoring, incident response and threat-analysis knowledge, including IOC investigation and remediation. • Experience or knowledge of security frameworks and compliance, ideally including Cyber Essentials and ISO 27001. ...