1 to 25 of 42 Permanent Tradecraft Jobs in the UK

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
South East, United Kingdom
Employment Type
Permanent
provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat Detection, Digital Forensics, Security Engineering and other partner teams, you will ...

Senior Cyber Security Analyst

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
tabletop simulations Stay current with emerging threats and TTPs relevant to client environments Additional Responsibilities (Client Dependent): Proactive threat hunting and development of tradecraft Incident response and playbook creation Collection and interpretation of threat intelligence and emerging attacker TTPs Vulnerability scanning, reporting, and management Leadership opportunities in client environments, including ...

Cyber Security Engineer - Threat Detection

Location
City Of London, England, United Kingdom
read the logs, form a conclusion, and communicate it clearly Familiarity with the MITRE ATT&CK framework and the ability to reason about adversary tradecraft rather than only indicators Solid understanding of operating system internals, networking, and authentication as they appear in security telemetry University degree in Engineering ...

Cyber Threat Intelligence Analyst (GSOC)

Hiring Organisation
London Stock Exchange Group
Location
London, UK
Employment Type
Full-time
intent, capability, targeting and TTPs. Produce clear, concise and actionable intelligence products for technical, operational and senior consumers. Apply structured analytical techniques and intelligence tradecraft to develop evidence-based assessments, clearly presenting analytic confidence, assumptions and intelligence gaps. Work across all stages of the intelligence lifecycle to understand consumer intelligence ...

Senior Response Engineer - Cloudflare Managed Defense Center (CMDC)

Location
Greater London, England, United Kingdom
nation-state sponsored advanced persistent threats (APTs). Cloudforce One works in close partnership with external organizations and internal Cloudflare teams, continuously developing operational tradecraft and expanding ever-growing sources of threat intelligence to enable expedited threat hunting and remediation. Members of Cloudforce One are at the helm of leveraging ...

Lead Security Analyst

Location
United Kingdom
narrative for your engagement, drive the detection backlog, and build the capability of the analysts around you. That means pairing on complex investigations, setting tradecraft standards, and making sure the team’s detection content is version‐controlled, peer‐reviewed, and continuously improved—not left to age in a SIEM. ...

Senior Security Engineer, Detection and Response

Location
Greater London, England, United Kingdom
frameworks or building custom detection pipelines Familiarity with containerized environments (Docker, Kubernetes, ECS/EKS) Experience with threat intelligence, threat hunting, forensics, or attacker tradecraft frameworks such as MITRE ATT&CK Job Benefits: Health (medical, vision, dental), life, and disability insurance* Equity stock options Retirement plans Paid public holidays ...

Senior Security Engineer, Detection and Response

Hiring Organisation
HackerOne
Location
London, UK
Employment Type
Full-time
code frameworks or building custom detection pipelinesFamiliarity with containerized environments (Docker, Kubernetes, ECS/EKS)Experience with threat intelligence, threat hunting, forensics, or attacker tradecraft frameworks such as MITRE ATT&CKJob Benefits: Health (medical, vision, dental), life, and disability insurance*Equity stock optionsRetirement plansPaid public holidays and unlimited PTOPaid maternity ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
Greater London, England, United Kingdom
data, OSINT, vendor intelligence, dark web research, internal telemetry, and partner reporting into clear, actionable intelligence. Conduct technical research on malicious infrastructure, tooling, and tradecraft used by threat actors, including infrastructure pivoting, malware and phishing kit triage, and campaign attribution analysis. Surface detection opportunities from technical research and partner with … Brief technical, business, and senior leadership stakeholders on cyber threats, trends, potential business impact, and recommended actions. Mentor and guide other analysts through influence, tradecraft coaching, intelligence writing, and analytical review. Help mature CTI processes, tools, reporting standards, and intelligence outputs while remaining closely engaged in hands‐on analysis. Support ...

Application Security Coordinator

Location
City Of London, England, United Kingdom
institutions and government partners Experience Senior-to-mid level experience in cyber intelligence analysis required (3 - 5 years' work experience) Deep knowledge of analytical tradecraft, intelligence analysis, writing techniques and methodologies, critical thinking skills, and open source intelligence gathering techniques Strong interpersonal skills and team focused Subject matter expertise ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
detection capability into Cyber Security ownershipWhat we're looking forProven experience in detection engineering, threat hunting, or advanced SOC rolesDeep understanding of modern attacker tradecraft and intrusion techniques across the attack lifecycleHands-on experience buidling detection logic in modern SIEM platforms (e.g Sentinel)Proficienty with scripting and programmaining (e.g. Python ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
United Kingdom
threat data, OSINT, vendor intelligence, dark web research, internal telemetry, and partner reporting into clear, actionable intelligence.Conduct technical research on malicious infrastructure, tooling, and tradecraft used by threat actors, including infrastructure pivoting, malware and phishing kit triage, and campaign attribution analysis.Surface detection opportunities from technical research and partner with Detection … decision-making.Brief technical, business, and senior leadership stakeholders on cyber threats, trends, potential business impact, and recommended actions.Mentor and guide other analysts through influence, tradecraft coaching, intelligence writing, and analytical review.Help mature CTI processes, tools, reporting standards, and intelligence outputs while remaining closely engaged in hands-on analysis.Support the development ...

Red Team Operations Manager

Hiring Organisation
G Research
Location
London, UK
Employment Type
Full-time
operations, ensuring they are well scoped, professionally executed and deliver value to the businessProviding technical leadership throughout operations, maintaining high standards of tradecraft, operational security and decision-makingCollaborating with teams across the organisation to maximise operational outcomes and organisational learningManaging, coaching and developing team members, fostering a culture of technical ...

Information Security Analyst

Location
Greater London, England, United Kingdom
Strong networking knowledge: can read a PCAP, spot beaconing in flow logs, and reason about lateral movement across VLANs and firewalls Knows attacker tradecraft (initial access, persistence, privilege escalation, exfiltration) and can map an investigation to it Comfortable scripting in Python or similar to automate enrichment, triage, and response Strong ...

Senior Security Research Engineer

Location
United Kingdom
communication, collaborative learning, and guided mentorship. What You Will Be Doing: Research emerging attacker techniques and turn them into shipped protections. Study real-world tradecraft across in-memory threats, injection, credential theft, ransomware, and kernel tampering, then design protections that hold up against an adversary actively trying to defeat them. ...

Red Team Operator Cyber Security

Hiring Organisation
Client Server
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
weeks. About you: You have strong experience in a similar Red Team/Offensive Security role and keep up to date with emerging adversary tradecraft, tooling and TTPs relevant to red team operations You have advanced problem solving and critical thinking skills You have a strong understanding of low level ...

Senior Response Engineer – Cloudflare Managed Defense Center (CMDC)

Location
Greater London, England, United Kingdom
nation-state sponsored advanced persistent threats (APTs). Cloudforce One works in close partnership with external organizations and internal Cloudflare teams, continuously developing operational tradecraft and expanding ever-growing sources of threat intelligence to enable expedited threat hunting and remediation. Members of Cloudforce One are at the helm of leveraging ...

Threat Research Engineer

Location
West of England, England, United Kingdom
identify and document relevant mitigation approaches through HP or industry solutions. Research public sources, vulnerability disclosures, technical reports, proof‐of‐concept material and attacker tradecraft to build evidence‐led assessments of threats of interest. Maintain awareness of the latest cyber threat landscape, emerging technologies, defensive endpoint security standards and state ...

Threat Research Engineer

Hiring Organisation
HP
Location
City of Bristol, United Kingdom
Employment Type
Full Time
identify and document relevant mitigation approaches through HP or industry solutions. Research public sources, vulnerability disclosures, technical reports, proof-of-concept material and attacker tradecraft to build evidence-led assessments of threats of interest. Maintain awareness of the latest cyber threat landscape, emerging technologies, defensive endpoint security standards and state ...

NMC Cyber Incident Responder (Digital Forensics)

Location
Wigan, England, United Kingdom
digital forensic investigations, endpoint and memory forensics, and log analysis using EDR telemetry and SIEM platforms. Strong knowledge of Windows internals, OS artefacts, attacker tradecraft and frameworks such as MITRE ATT&CK is expected. Experience with forensic best-practice evidence handling and incident response lifecycle methodologies is essential.### ...

Detection Engineer

Location
Guildford, England, United Kingdom
consuming APIs (REST, auth patterns, secrets handling) Experience building detection logic using endpoint and/or cloud telemetry, with a strong grasp of attacker tradecraft and common compromise chains Ability to design validation approaches and measure detection performance (precision/noise reduction) using data-driven methods Experience with security automation ...

Senior Security Analyst

Location
United Kingdom
clear about trade‐offs. At Senior level, the role is about more than your own output. You will help junior analysts develop their triage tradecraft, normalise pairing on incident response, contribute to shared detection standards across the practice, and model the kind of blameless, collaborative culture that makes a security … obligations; feed gaps back into risk governance. Mentor junior analysts and raise team standards — pair deliberately on complex investigations, review triage work, share adversary tradecraft with the team, and help create an environment where people feel safe raising concerns and learning from mistakes. Contribute to the practice beyond your immediate ...

London ROC Analyst — Real-Time Security & Incident Response

Location
Greater London, England, United Kingdom
seeking an Analyst to join the Regional Security Operations Center. This on-site role focuses on real-time monitoring, incident triage, and applying analytical tradecraft to maintain operational resilience across the region. You will work in a 24/7 ROC, using dashboards and SOPs to detect incidents, document actions ...

Analyst, Regional Security Operations Center at Deliveroo

Location
Greater London, England, United Kingdom
site role. In this role, you’ll serve as the frontline defense during emerging incidents, monitoring systems, executing SOPs, and applying analytical tradecraft to maintain operational resilience across the region. What You’ll Be Doing You’ll be joining the Regional Operations Center (ROC) team. The ROC operates ...

Data Engineer

Location
Greater London, England, United Kingdom
Laying the groundwork for a full data engineering function, aligned with strategic growth and evolving mission priorities You’ll work closely with the Technical Tradecraft Lead, collaborate with research teams, and engage with key integration partners and data providers. Why This Role Is Truly Appealing Build something from scratch ...