1 to 25 of 55 Permanent Threat Detection Jobs in the UK excluding London

Cyber Threat Detection Engineer £100k

Hiring Organisation
Circle Group
Location
Cheltenham, Gloucestershire, South West, United Kingdom
Employment Type
Permanent, Work From Home
Cyber Threat Detection Engineer Location: UK (fully remote - work from anywhere worldwide) Salary: Up to £100,000 + benefits About the role We're looking for a hands-on Cyber Threat Detection Engineer to build high-fidelity detections based on real-world attacker behaviour. … work with global telemetry, honeypots, and deception systems to identify exploitation, develop detection pipelines, and convert threat intelligence into actionable insights. Key responsibilities Own design and operation of detection logic for live attacker activity, including zero-day and N-day exploitation Build and maintain pipelines that ingest ...

Cyber Threat Intelligence Analyst

Hiring Organisation
Euro Projects Recruitment
Location
Edinburgh, Midlothian, Scotland, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
Cyber Threat Intelligence Analyst Salary £50,000 - £60,000 - Hybrid - WFH Euro Projects Recruitment is working with a leading Microsoft Partner in Scotland to recruit a permanent Cyber Threat Intelligence Analyst . This is a genuine Cyber Threat Intelligence Analyst role with a strong focus on proactive … threat hunting, intelligence-led investigations and client engagement. The successful Cyber Threat Intelligence Analyst will work closely with SOC analysts, incident responders and engineering teams, using the Microsoft security stack to identify, analyse and mitigate cyber threats. The Role Cyber Threat Intelligence Analyst As a Cyber Threat ...

Threat Detection Engineer

Hiring Organisation
Addition
Location
Farnborough, Hampshire, England, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £65,000 per annum
Threat Detection Engineer A specialist technology organisation operating in highly secure environments is expanding its cyber capability and looking to strengthen its detection function. This role sits at the heart of identifying, stopping, and staying ahead of modern threats. Role Overview: Location: Farnborough/Hybrid (3 days … week on site) Package: £55,000- £65,000pa & Benefits Industry: Defence & National Security What You’ll Be Doing: Designing and building high-quality detection rules and use cases across SIEM and EDR platforms Continuously tuning alerts to reduce noise and improve signal quality Monitoring and investigating security alerts ...

Senior Threat Detection Specialist

Hiring Organisation
QBE Management Services (UK) Limited
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Primary Details Time Type: Full time Worker Type: Employee Senior Threat Detection Specialist Location: London or Remote Type: Permanent, full time Hybrid role, happy to talk flexible working The Opportunity As we focus on transformation across the organisation, we’re also investing in our cyber security capabilities … keep our people, data, and customers safe. That’s why we’re building a new Detection Engineering function—and we’re looking for a talented and driven Threat Detection Senior Specialist to help us lead the way. In this key role, you’ll support the GSOC Manager ...

Lead Identity Specialist

Hiring Organisation
TESTQ Technologies
Location
Sheffield, UK
Trust security principles Provide consultinglevel guidance on IAM adoption migration from legacy platforms and application onboarding Define integrate and drive proactive use of Identity threat detection capability for threat detection and identitybased risk management Partner with security leadership to ensure compliance with audit regulatory and governance … Identity Protection Conditional Access PIM CIEM and Governance Strong experience with hybrid identity onprem Active Directory AD FS Azure AD Connect Proficiency with Identity threat detection tools and integration with broader security ecosystems Deep understanding of authentication protocols SAML OAuth OpenID Connect Kerberos LDAP Familiarity with ...

Specialist

Hiring Organisation
Net2Source (N2S)
Location
Sheffield, England, United Kingdom
Trust security principles Provide consultinglevel guidance on IAM adoption migration from legacy platforms and application onboarding Define integrate and drive proactive use of Identity threat detection capability for threat detection and identitybased risk management Partner with security leadership to ensure compliance with audit regulatory and governance … Identity Protection Conditional Access PIM CIEM and Governance Strong experience with hybrid identity onprem Active Directory AD FS Azure AD Connect Proficiency with Identity threat detection tools and integration with broader security ecosystems Deep understanding of authentication protocols SAML OAuth OpenID Connect Kerberos LDAP Familiarity with ...

Lead Identity Specialist

Hiring Organisation
Net2Source (N2S)
Location
Sheffield, England, United Kingdom
Protection Conditional Access PIM CIEM and Governance Strong experience with hybrid identity on-Prem Active Directory AD FS Azure AD Connect Proficiency with Identity threat detection tools and integration with broader security ecosystems Deep understanding of authentication protocols SAML OAuth OpenID Connect Kerberos LDAP Familiarity with … security principles Provide consulting level guidance on IAM adoption migration from legacy platforms and application onboarding Define integrate and drive proactive use of Identity threat detection capability for threat detection and identity-based risk management Partner with security leadership to ensure compliance with audit regulatory ...

Cyber Threat Detection Engineer £100k

Location
Cheltenham, Gloucestershire, United Kingdom
Cyber Threat Detection Engineer Location: UK (fully remote - work from anywhere worldwide) Salary: Up to £100,000 + benefits About the role We're looking for a hands-on Cyber Threat Detection Engineer to build high-fidelity detections based on real-world attacker behaviour. … work with global telemetry, honeypots, and deception systems to identify exploitation, develop detection pipelines, and co... ...

Cyber Threat Detection Engineer £100k

Hiring Organisation
Circle Group
Location
Cheltenham, Gloucestershire, UK
Employment Type
Full-time
Cyber Threat Detection Engineer If you are interested in applying for this job, please make sure you meet the following requirements as listed below. Location: UK (fully remote - work from anywhere worldwide) Salary: Up to £100,000 + benefits About the role We're looking for a hands … Cyber Threat Detection Engineer to build high-fidelity detections based on real-world attacker behaviour. You'll work with global telemetry, xxuwjjq honeypots, and deception systems to identify exploitation, develop detection pipelines, and co... ...

Cyber Threat Detection Engineer £100k

Hiring Organisation
Circle Group
Location
Cheltenham, Gloucestershire, United Kingdom
Employment Type
Permanent
Salary
GBP 100,000 Annual
Cyber Threat Detection Engineer Location: UK (fully remote - work from anywhere worldwide) Salary: Up to £100,000 + benefits About the role We're looking for a hands-on Cyber Threat Detection Engineer to build high-fidelity detections based on real-world attacker behaviour click apply ...

Security Operations Centre / SOC Team Lead

Hiring Organisation
Hays Technology
Location
Edinburgh, City of Edinburgh, United Kingdom
Employment Type
Permanent
Salary
£58252 - £68586/annum 28.97% pension and more
their internal Security Operations Centre. This role will have you leading a team of analysts and working alongside security engineers to develop and automate threat detection and response playbooks, as well as security architects and the wider IT function. The ideal candidate will have the technical expertise … management, coaching, and development of SOC analysts and engineers. Lead the configuration, tuning, and maintenance of core SOC capabilities including log aggregation, alerting, correlation, threat detection, and response tooling. Define, track, and report SOC performance metrics and KPIs, ensuring operational efficiency and alignment with organisation objectives. Manage ...

Detection & Threat Hunt Analyst - Cheltenham

Hiring Organisation
Accenture
Location
Cheltenham, Gloucestershire, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Role: Detection & Threat Hunt Analyst Location: Cheltenham Position: Specialist or Associate Manager Please Note: Any offer of employment is subject to satisfactory BPSS and SC security clearance which requires 5 years continuous UK address history (typically including no periods of 30 consecutive days or more spent outside … will serve as a senior technical point of escalation (T3), mentor junior analysts, drive service improvements, and ensure the consistent delivery of high-quality threat detection and response services to our clients. You will also act as a technical SME, directly engaging with clients, delivering reporting and supporting ...

Lead SOAR Engineer

Hiring Organisation
Experian Ltd
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent
seeking a Lead SOAR Engineer to drive the evolution of our security automation strategy and guide junior level engineers. As a leader within the Threat Detection Engineering team, you will architect and oversee the development of intelligent SOAR solutions, integrating GenAI and Agentic Frameworks to enable adaptive, context … decision-making and response capabilities. Drive Agile CI/CD practices to ensure rapid, secure, and reliable delivery of automation features. Collaborate with SOC, threat detection, and engineering teams to identify automation opportunities and align with strategic security goals. Develop and maintain custom Python scripts and tools ...

SOC Operations Manager

Hiring Organisation
Sopra Steria
Location
Hemel Hempstead, Hertfordshire, England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £90,000 per annum
security threats for multiple customers.You will oversee and mentor a skilled team of analysts, fostering a culture of continuous learning, champion best practices in threat detection and incident management, and play a key role in safeguarding our organisation’s digital environment. Communications with key business partners … develop SOC analysts and incident responders. Provide technical direction, conduct performance reviews, and foster continuous improvement. Oversee full lifecycle of security incidents from detection to resolution. Ensure compliance with SLAs and escalation protocols. Maintain and enhance incident response plans and procedures. Direct threat intelligence collection and analysis. Manage ...

Product Manager

Hiring Organisation
Stratospherec Ltd
Location
Horsham, West Sussex, United Kingdom
Employment Type
Permanent
Salary
£60000 - £70000/annum Excellent benefits
decision-making challenges Work with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns Provide technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices Support go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers Mentor and educate internal teams on SOC operations, threat landscapes, and analyst workflows Ensure product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models Customer & Pre-Sales Enablement Act as a trusted SOC and cyber defence expert in customer ...

Cyber Security Specialist

Hiring Organisation
1TECH STAFFING LIMITED
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£55,000
GDPRcompliance Implement and manage security controls across Microsoft 365 and cloud environments Deploy and operate managed security tools (EDR, AV, email security, threat detection) Monitor vulnerabilities and investigate security incidents Produce clear security reports and client recommendations Deliver security awareness training and phishing simulations Work closely with internal … technical teams to improve overall security posture Essential Experience Background in cyber security within an MSP or multi-client environment Strong understanding of threat detection, incident response, and vulnerability management Hands-on experience securing Microsoft 365/Azure AD Knowledge of EDR, AV, email security, and network security ...

SOC Shift Leader

Hiring Organisation
MBDA UK
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Permanent
Salary
£70000/annum
Tier 2 analysts, providing live operational oversight, procedural assurance, and ongoing mentorship. This role ensures each analyst team is aligned with evolving cyber threat detection standards, works in sync with response and intelligence functions, and delivers consistent high-quality casework across shifts. This is a senior operational role … company that values innovation and diversity, this is the place to make an impact. In addition to Senior SOC Analyst responsibilities (alert triage, threat detection, ticket response, and tooling operation), the SOC Shift Lead will provide: Shift Continuity & QA Operational assurance and standard enforcement across all active shifts. ...

Security Operations Center Analyst

Hiring Organisation
TRIA
Location
Greater Bristol Area, United Kingdom
Analyst . This is a great opportunity to join a forward-thinking security operations team , where you’ll have hands-on ownership across threat detection, incident response, and overall security posture , alongside a competitive salary, strong benefits, and clear long-term development opportunities . The role offers flexible … detect suspicious activity. Investigate security incidents across endpoints, networks, and cloud environments; perform root-cause analysis, impact assessment and containment actions. Develop and maintain detection rules, use cases, threat-intelligence processes, and incident response playbooks. Automate detection and response workflows, using scripting tools (e.g. Python, PowerShell). ...

CERT Incident Responder

Hiring Organisation
MBDA UK
Location
Bolton, Greater Manchester, United Kingdom
Employment Type
Permanent
Salary
£50000 - £60000/annum
incident response (DFIR) readiness. While also advancing the organisation's Adversarial Exposure Validation (AEV)- including Red and Purple Team activities The role ensures detection, response, and control validation against real-world threat actor tactics, techniques, and procedures (TTPs). Salary : £50,000 - £60,000 depending on experience Dynamic … incident response (DFIR) readiness. While also advancing the organisation's Adversarial Exposure Validation (AEV)- including Red and Purple Team activities. The role ensures detection, response, and control validation against real-world threat actor tactics, techniques, and procedures (TTPs). This is a Next step role for an experienced ...

Cyber Security and Resilience Engineer

Hiring Organisation
Mentmore Recruitment
Location
Oxford, Oxfordshire, United Kingdom
Employment Type
Permanent
Salary
£65000 - £70000/annum
About the Role The Cyber Security and Resilience Engineer will support our Cyber Security Operations strategy with the management and optimisation of the clients Threat protection and detection tooling. This role's focus will be on ensuring there are robust security controls across web, email, endpoints and cloud … security posture by securing our cloud and enterprise environments by implementing best practices. In this role, you'll take ownership of managing and maintaining threat protection and detection tools, including web and email security solutions, EDR platforms, and cloud security technologies. You'll configure and monitor Microsoft Defender ...

NMC Cyber Security Detection Engineer

Hiring Organisation
Police Digital Services
Location
Skelmersdale, Lancashire, North West, United Kingdom
Employment Type
Permanent, Work From Home
Join Police Digital Service as NMC Cyber Security Detection Engineer x 2. Full time Permanent. Salary starting at £50,000 About Police Digital Service To protect people from harm in our rapidly changing world, police services must not only keep up with technology and business changes but develop capabilities … Police Digital Service and provides visibility and control of information risks for policing. It supports the 24x7x365 nature of police operations, providing a threat detection and response capability for digital services before, during and after cyber-attacks, enabling stakeholders to understand and proactively manage risk across the technology ...

Senior Security Engineer

Hiring Organisation
Eligo Recruitment
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 per annum
NIST benchmarks. Identity & Access Security: Define standards for Entra ID and Active Directory, overseeing requirements for Conditional Access, MFA, SSO, and PIM. Threat Detection & Incident Response: Own and operate the SIEM/SOAR stack, including Microsoft Sentinel and Defender XDR, to develop detection rules and support forensic ...

Senior Network Engineer

Hiring Organisation
Eligo Recruitment
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£85,000 per annum
NIST benchmarks. Identity & Access Security: Define standards for Entra ID and Active Directory, overseeing requirements for Conditional Access, MFA, SSO, and PIM. Threat Detection & Incident Response: Own and operate the SIEM/SOAR stack, including Microsoft Sentinel and Defender XDR, to develop detection rules and support forensic ...

Lead Cyber Security Engineer

Hiring Organisation
SThree
Location
Glasgow, Scotland, United Kingdom
Cyber Security Engineering Lead acts as the technical authority across all domains of cloud and endpoint security, taking full ownership of hardening, automation, and threat mitigation. The role is not managerial in the traditional sense it exists to drive technical capability, mentor through engineering leadership, and deliver resilient, scalable … Cloud, Purview DLP, Azure Firewall, and related services. Integrate security into DevOps pipelines, CI/CD, infrastructure-as-code, and container workflows. Automate threat detection and response using Microsoft Sentinel SOAR, custom playbooks, and telemetry pipelines. Platform Security Oversight Own and optimise endpoint security through Intune, ensuring device ...

Content Lead - Cheltenham

Hiring Organisation
Accenture
Location
Cheltenham, Gloucestershire, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
team As a member of the SOC Content Team, you will be responsible for contributing to the creation, deployment, and tuning of threat detection content and delivery of proactive threat hunting. You will work in close partnership with client Lead Analysts, threat intelligence teams, and other … functions to help ensure that detection strategies are tailored to each client’s threat profile and security objectives. This role offers a balance of technical hands-on work, collaboration, and knowledge sharing, with a strong emphasis on continual learning and process improvement. ...