Senior Strategic CyberThreat Intelligence Analyst About us We are SecAlliance, part of CSIS Security Group and the Allurity family of cybersecurity companies Together, we form one of Europe's most trusted networks of cybersecurity experts. At SecAlliance, we deliver world-class cyber and conventional intelligence solutions across the UK and Europe. Our clients include … operational experience as a CTI analyst who is familiar with the process of researching, writing and editing CTI reporting for a broad range of audiences. Experience mapping and tracking threat actor campaigns, and/or deploying structured analytical techniques would be highly advantageous. Your responsibilities Collecting and processing cyberthreat intelligence relevant to our client base. … improve the quality and timeliness of our intelligence outputs, and the smooth running of the organisation. Our Requirements The ability to write accessible, accurate and informative cyberthreat intelligence reports. The ability to confidently present spoken intelligence briefings. Excellent critical thinking skills. The ability to write accurate, insightful and 'actionable' assessments. Excellent knowledge of intelligence processes and More ❯
Edinburgh, Midlothian, Scotland, United Kingdom Hybrid/Remote Options
Inspire People
the heart of the global economy! The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a CyberThreat and Vulnerability Manager to protect DIT and the wider UK government from cyberthreats in a fast paced and exciting role, responsible for the Vulnerability Management and … Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Salford, Birmingham, Cardiff, Darlington, Edinburgh or Belfast. As the CyberThreat and Vulnerability Manager you will be helping to protect DBT and the wider UK government from cyberthreats in a fast paced and exciting role. Reporting to the Head of Cyber Security Operations, the CyberThreat and Vulnerability Manager will manage and be responsible for the Threat and More ❯
Birmingham, West Midlands, United Kingdom Hybrid/Remote Options
Inspire People
a team at the heart of the global economy! The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a Threat and Vulnerability Manager to protect DIT and the wider UK government from cyberthreats in a fast paced and exciting role, responsible for the Vulnerability Management and … Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Salford, Birmingham, Cardiff, Darlington, Edinburgh or Belfast. As the CyberThreat and Vulnerability Manager you will be helping to protect DBT and the wider UK government from cyberthreats in a fast paced and exciting role. Reporting to the Head of Cyber Security Operations, the CyberThreat and Vulnerability Manager will manage and be responsible for the Threat and More ❯
Darlington, County Durham, England, United Kingdom Hybrid/Remote Options
Inspire People
a team at the heart of the global economy! The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a Threat and Vulnerability Manager to protect DIT and the wider UK government from cyberthreats in a fast paced and exciting role, responsible for the Vulnerability Management and … Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Salford, Birmingham, Cardiff, Darlington, Edinburgh or Belfast. As the CyberThreat and Vulnerability Manager you will be helping to protect DBT and the wider UK government from cyberthreats in a fast paced and exciting role.? Reporting to the Head of Cyber Security Operations, the CyberThreat and Vulnerability Manager will manage and be responsible for the Threat and More ❯
Cardiff, South Glamorgan, Wales, United Kingdom Hybrid/Remote Options
Inspire People
a team at the heart of the global economy! The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a Threat and Vulnerability Manager to protect DIT and the wider UK government from cyberthreats in a fast paced and exciting role, responsible for the Vulnerability Management and … Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Salford, Birmingham, Cardiff, Darlington, Edinburgh or Belfast. As the CyberThreat and Vulnerability Manager you will be helping to protect DBT and the wider UK government from cyberthreats in a fast paced and exciting role. Reporting to the Head of Cyber Security Operations, the CyberThreat and Vulnerability Manager will manage and be responsible for the Threat and More ❯
London, South East, England, United Kingdom Hybrid/Remote Options
Inspire People
a team at the heart of the global economy! The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a Threat and Vulnerability Manager to protect DIT and the wider UK government from cyberthreats in a fast paced and exciting role, responsible for the Vulnerability Management and … Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview. Flexible, hybrid working from London, Salford, Birmingham, Cardiff, Darlington, Edinburgh or Belfast. As the CyberThreat and Vulnerability Manager you will be helping to protect DBT and the wider UK government from cyberthreats in a fast paced and exciting role.? Reporting to the Head of Cyber Security Operations, the CyberThreat and Vulnerability Manager will manage and be responsible for the Threat and More ❯
North London, London, United Kingdom Hybrid/Remote Options
Secure Recruitment Ltd
SENIOR THREAT INTELLIGENCE ANALYST Fully Remote Up to £100,000 + Excellent Staff Bens + Share Scheme SECURE has Strategically Partnered with a Multi-Award-Winning, Software-Based Organisation at the Forefront of Pre-Emptive Exposure Management. As a market leader backed by significant Venture Funding, they combine proactive Threat Intelligence, Real Attacker Telemetry & Automated Red Teaming to … Actionable Insights that Protect Fortune 500 Companies & Critical Infrastructure Providers, helping them outrun Real-World Threats in Real-Time. Role Overview: We're looking to speak with ambitious Senior Threat Intelligence Analyst to Expand Offensive Security Capabilities around Honeypot Data Analysis. You'll Design & Deploy Detections for N-Day & 0-Day Exploits using a Global Network, Develop CTI Platforms … for Real-Time Threat Analysis, Drive Rapid Reaction Efforts & Author Threat Intelligence Reports. Ideally based in the UK, you don't need to tick every box - if you're motivated to make an impact, read on. Skills & Experience of Threat Intelligence Analyst will include Proven Experience with Cyber Security Platforms & Threat Intelligence Solutions, with More ❯
Farnborough, Hampshire, South East, United Kingdom Hybrid/Remote Options
Leidos Innovations UK Limited
of stakeholders to ensure, the Leidos CSOC, a Defensive Cyber Security capability, can support a customers Cyber Resilience, protecting them with a 24 x 7 Threat Detection and Response service, mitigating their risk of Cyber Attack. The successful candidate will be able to demonstrate experience from a CSOC background or be able to … lead to a Cyber Security Incident. Inspection and correlation of logs from multiple sources to identify repeating patterns and Indicators of Compromise (IOC). Continuously scan the Threat Horizon to report and classify Threats according to impact which could potentially damage a clients network or solution. Engage with various security communities to review and share knowledge on … or displays aptitude to learn how to work with a SIEM. Experience and knowledge of SIEM tools, Cyber Security Incident Response, Vulnerability Management and CyberThreat Intelligence. Experience of investigating Cyber Security incidents and supporting root cause analysis or can demonstrate transferable skills and acumen to learn and excel at it. Understanding of More ❯
Bristol, Avon, South West, United Kingdom Hybrid/Remote Options
ITS Recruitment
Cyber SecOps and Threat Intelligence Specialist, Law Firm, Bristol We are seeking a Cyber Security and Threat Intelligence Specialist to join an expanding team in this 3,000 user international Law Firm, strengthening its ability to detect, respond to, and prevent cyber threats. Location: Bristol Reports to: Head of Cyber Security Hybrid Role: 3-4 days work from home The Role Play a key role in maturing incident response and threat intelligence functions Evolve and mature the firm's capability for detecting and responding to cyber incidents Help develop strategies and roadmaps for cyber security technology Assist in the research, selection and deployment … use by the firm Provide a point of technical authority and governance for the effective use of technical security controls across the firm Act as an escalation point for threat hunting and security incidents Investigate alerts from Azure/Defender, IT monitoring systems, and 3rd-party SOC, helping to ensure critical assets remain secure Manage supplier relationships, report on More ❯
Houston, Texas, United States Hybrid/Remote Options
K.L. McKinney
Key Responsibilities: Threat Intelligence Collection & Analysis Gather and analyze threat intelligence from open sources (OSINT), dark web, threat feeds, and industry reports. Identify Indicators of Compromise (IOCs) and Tactics, Techniques, and Procedures (TTPs) used by threat actors. Track Advanced Persistent Threats (APTs) and emerging cyberthreats relevant to the organization. Threat Detection & Response … incident responders, and security engineers to enhance cyber defenses. Provide real-time intelligence during security incidents to assist in rapid response. Develop YARA rules, Sigma rules, and threat hunting queries to detect malicious activity. Malware Analysis & Forensics Analyze malware samples, phishing campaigns, and exploit techniques used in attacks. Reverse-engineer malware to extract IOCs and behavioral patterns. … Contribute to the development of security detections, playbooks, and automated threat response. Threat Intelligence Reporting & Communication Create intelligence reports, dashboards, and risk assessments for stakeholders. Provide threat briefings and recommendations to security teams and leadership. Maintain documentation of threat actor profiles, attack campaigns, and evolving threats. Security Strategy & Continuous Improvement Improve threat intelligence sharing and More ❯
Principal Cyber Incident Response Investigator Fully UK Remote DV Clearance or eligibility essential £80,000 + OT and On-Call earning £100,000+ Excellent opportunity for a candidate with Incident Response experience, DV Clearance or the ability to obtain it, and extensive experience with forensic tools to join a business offering an entirely remote working position, the chance … across the UK and EU, and opportunities to work with a wide range of clients! This company are often the last line of defence for businesses dealing with cyber-attacks. They offer a range of services including a fully managed solution, the software only, and emergency support during an attack. In this role you will help coach companies … through cyber attacks as they happen with a view to securing the most valuable data and systems to avoid large-scale issues. When not dealing with imminent threats to businesses you’ll work with clients to improve their cyber security maturity and carry out coaching and training with key stakeholders within your client. This is a More ❯
of the Global Information Security Group (GISG), the Information Security Services (ISS) team which includes the Global Security Operations Center (GSOC) helps defend KPMG and its clients from cyber attacks, through timely detection, investigation and remediation of potential threats. Role summary The Cyber Security Incident Response Manager plays a pivotal role in identifying, investigating, and managing … cyber and data handling incidents within … KPMG’s Global Information Security Services (ISS) function. ISS delivers and oversees critical cybersecurity capabilities—including Security Monitoring & Response (SMR), Vulnerability Assessment & Secure Development (VASD), and CyberThreat Intelligence (CTI)—across Global, Global Functions, and the broader KPMG network of member firms. This position offers an exciting opportunity to join a progressive and innovation-driven security team More ❯
SOC Incident Response & Threat Hunting Manager Fully Remote (UK-based) | Up to £85,000 + 10–15% Bonus + £6k Car Allowance + Excellent Benefits (Occasional travel to Warrington, approx. once per quarter) Our client is expanding their virtual Security Operations Centre (vSOC) and looking for an experienced SOC Incident Response & Threat Hunting Manager to lead and develop … a hands-on leadership role, ideal for someone who’s equally comfortable managing people and tackling complex security incidents directly. You’ll guide analysts through live investigations, lead advanced threat hunting operations, and help shape the strategy for the CyberThreat Intelligence (CTI) capability. The focus is on leadership through technical excellence — combining deep expertise in … DFIR, threat hunting, and detection engineering with a proactive approach to strengthening security posture across diverse customer environments. The Role Lead and mentor Tier 3 SOC and Incident Response Analysts. Act as the technical lead on high-severity security incidents from initial detection through to post-incident review. Design and execute advanced threat hunting exercises, integrating intelligence from More ❯
Stevenage, Hertfordshire, South East, United Kingdom Hybrid/Remote Options
MBDA
Join MBDA's cutting-edge cyber security team and help protect some of the most advanced defence technologies in the world. As a Cyber Security Engineer, you'll be at the forefront of innovation-enhancing the visibility, automation, and efficiency of our Security Operations Centre (SOC). This role is perfect for someone who thrives on … are available for paternity leave, neonatal leave and fertility testing and treatments Facilities : Fantastic site facilities including subsidised meals, free car parking and much more... The opportunity: The Cyber Security Engineer plays a vital role in maintaining and optimising SOC tools and environments to ensure peak performance and visibility across MBDA's networks. You'll focus on Splunk … the Cyber Security Capability Manager, you'll collaborate closely with engineers, analysts, and other security stakeholders to meet the ever-evolving challenges of the cyberthreat landscape. Key responsibilities include; Act as the subject matter expert (SME) for Splunk across all cyber security and observability use cases. Lead SOC automation initiatives using scripting More ❯
Stevenage, Hertfordshire, England, United Kingdom Hybrid/Remote Options
MBDA
Stevenage Join MBDA's cutting-edge cyber security team and help protect some of the most advanced defence technologies in the world. As a Cyber Security Engineer, you'll be at the forefront of innovation—enhancing the visibility, automation, and efficiency of our Security Operations Centre (SOC). This role is perfect for someone who thrives … are available for paternity leave, neonatal leave and fertility testing and treatments Facilities : Fantastic site facilities including subsidised meals, free car parking and much more... The opportunity: The Cyber Security Engineer plays a vital role in maintaining and optimising SOC tools and environments to ensure peak performance and visibility across MBDA's networks. You'll focus on Splunk … the Cyber Security Capability Manager, you'll collaborate closely with engineers, analysts, and other security stakeholders to meet the ever-evolving challenges of the cyberthreat landscape. Key responsibilities include; Act as the subject matter expert (SME) for Splunk across all cyber security and observability use cases. Lead SOC automation initiatives using scripting More ❯
standards and metrics are met Conducting current-state assessments and providing actionable insights for enhancement Key Skills: Proven experience in security operations, assessment, and compliance Hands-on knowledge of threat modelling and cyberthreat intelligence Strong stakeholder management and leadership within complex environments This is an excellent opportunity to work remotely on a high-impact public More ❯
Cyber Security Engineer - OT Aerospace (Aerospace System Security Engineer) Belcan is recruiting on a Permanent basis for an OT Cyber Security Engineer to work on UK Civil Aerospace projects. You will be supporting cyber-physical embedded systems related to engine controls software for airborne platforms, along with traceability of components used within a Gas … s site in Bristol. You will be required to complete a BPSS check with the potential to achieve UK Security Clearance. Suitable candidates with have a relevant degree, Cyber qualifications and experience working on Operational Technology - OT Cyber systems. Responsibilities: Examples of tasks. Determine the technology and processes required to meet product requirements for system security … against cyber threats. Support implementation of secure cyber resilient system (SCRS) for customer programs, including task planning, requirements implementation, risk assessments tools and methods, and associated product lifecycle deliverables. Review existing product designs and development plans for cyber security related work scope gaps and implementation to meet contract requirements. Develop, communicate, and ultimately drive More ❯
Warrington, England, United Kingdom Hybrid/Remote Options
Anson McCade
SOC Manager £75,000 - £85,000 + 15% bonus + £6k car allowance Warrington – Remote-first A leading global technology organisation is seeking a SOC Response & Threat Manager to lead their elite Tier 3 security team. As a SOC Response & Threat Manager, you will take ownership of complex security incidents, lead high-performing analysts, and shape the CyberThreat Intelligence capability. Working hands-on with cutting-edge tools, you'll orchestrate critical incidents while hunting sophisticated threat actors across enterprise environments. Key Experience: • Proven experience leading incident response operations and managing security analysts. • Deep expertise in digital forensics and incident response (DFIR). • Strong knowledge of threat hunting methodologies and adversary tactics. • Ability … 6k car allowance • Generous pension with double-matched contributions • 25 days holiday plus bank holidays • Private medical insurance and flexible benefits To hear more about the SOC Incident Response & Threat Hunting Manager opportunity, get in touch with Connor Smyth at Anson McCade on 020 7780 6706. More ❯
Portsmouth, England, United Kingdom Hybrid/Remote Options
Cloud People
and managed services to customers across enterprise, public sector and fast growing scale ups. Its Security Practice protects clients through a powerful mix of Managed Detection and Response (MDR), Threat Hunting, Vulnerability Management, Penetration Testing and Incident Response, supported by a world class Security Advisory function. As a Senior SOC Analyst, you will take a leading role in identifying … detection and response capabilities. This is an opportunity to make a genuine impact, with the freedom to innovate and the support to grow into roles such as SOC Lead, Threat Hunter, Security Engineer or Incident Responder. Why This Role Stands Out Join a $1B global IT and Cyber Defence provider that invests heavily in people and technology … remediation Providing technical guidance and mentoring to junior analysts within the SOC Developing and tuning detection use cases, correlation rules and playbooks in SIEM and EDR tools Conducting proactive threat hunting across diverse customer environments Working with engineering teams to enhance visibility, automation and telemetry Supporting incident response and coordinating remediation across teams Producing detailed incident reports and contributing More ❯
Banbury, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
. Key purposes of this role include: Safeguarding Operations: Actively manage and enhance our security platforms (primarily SIEM, XDR and IDAM polices) to detect, prevent, and respond to cyberthreats across our IT and operational networks. Implementing and reviewing Security Controls: Serve as the subject matter expert for implementing technical security controls on applications, networks, and infrastructure to … with a wide range of internal teams, from IT colleagues to Train Engineers, to ensure security best practices are understood and integrated into their processes and systems. Key Accountabilities Threat and Vulnerability Management Develop incidence response and security measures for protection. Complete risk and exploitability assessments against vulnerabilities and live threats. Serve as a subject matter expert in vulnerability … infrastructure, cloud services, and cyber security. Proven continuous development in both technical and soft domains. Proficiency with security tools and technologies such as SIEM, DLP, network protection, threat detection, and endpoint protection. An understanding of network infrastructure such as VPNs, firewalls, switches, routers, LANs, Intrusion Detection, and vulnerability scanning. Understanding of IT and cyber security More ❯
Hook Norton, Oxfordshire, United Kingdom Hybrid/Remote Options
Chiltern Railways
. Key purposes of this role include: Safeguarding Operations: Actively manage and enhance our security platforms (primarily SIEM, XDR and IDAM polices) to detect, prevent, and respond to cyberthreats across our IT and operational networks. Implementing and reviewing Security Controls: Serve as the subject matter expert for implementing technical security controls on applications, networks, and infrastructure to … with a wide range of internal teams, from IT colleagues to Train Engineers, to ensure security best practices are understood and integrated into their processes and systems. Key Accountabilities Threat and Vulnerability Management Develop incidence response and security measures for protection. Complete risk and exploitability assessments against vulnerabilities and live threats. Serve as a subject matter expert in vulnerability … infrastructure, cloud services, and cyber security. Proven continuous development in both technical and soft domains. Proficiency with security tools and technologies such as SIEM, DLP, network protection, threat detection, and endpoint protection. An understanding of network infrastructure such as VPNs, firewalls, switches, routers, LANs, Intrusion Detection, and vulnerability scanning. Understanding of IT and cyber security More ❯
Do you want to be at the forefront of intelligence-driven cybersecurity? We at Centripetalare innovators of disruptive cybersecurity solutions. Our CleanINTERNET managed service operationalizes billions of threat indicators in real-time to prevent over 90% of known threats against enterprise networks. Our customers love us for reducing their cybersecurity risks and enabling their security operations to be more … proactive, focused and efficient. Intelligence Services is a group within Centripetal that analyzes cyberthreat intelligence to envision and create new technologies that power our managed service offerings. We focus on bold ideas around how to leverage data in cyber defense and pursue strategic initiatives that aim to paradigm-shift the cybersecurity landscape. Join us More ❯
chelmsford, east anglia, united kingdom Hybrid/Remote Options
Fusion Technology Solutions Ltd
remote working, we're proud to act as our clients' trusted guardians — empowering their teams to get the most from modern technology while defending them against ever-evolving cyber threats. With more organisations relying on us to keep them secure and productive, we're expanding our team and recruiting for multiple Level 1 and Level 2 IT Support More ❯
Chelmsford, England, United Kingdom Hybrid/Remote Options
Fusion Technology Solutions Ltd
remote working, we’re proud to act as our clients’ trusted guardians — empowering their teams to get the most from modern technology while defending them against ever-evolving cyber threats. With more organisations relying on us to keep them secure and productive, we’re expanding our team and recruiting for multiple Level 1 and Level 2 IT Support More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid/Remote Options
Experian Ltd
have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com. Internal Grade E Job Description As a Cyber Defence Analyst, you will join the Cyber Fusion Center, performing in-depth analysis, assessment, and response to security threats by following documented policies to meet Service Level … ensuring the handling of potential threats and plays a part in improving security operations. This is a home based role reporting to the Director of Security Operations for SecOps & Threat Detection. Please note that in this role, you will have an 8x5 Monday-Friday schedule, with flexibility to respond to after-hours pages for potentially major security incidents to … support incident response efforts and may include assignment to an on-call rotation for evenings, weekends, holidays. Summary of Primary Responsibilities As the Cyber Defence Analyst, you will: Contribute to daily security operations by overseeing response activities for security events and alerts associated with cyberthreats, intrusions, and compromises alongside a team of global security analysts More ❯