201 to 225 of 475 Permanent Threat Intelligence Jobs

Security Operations Engineer Central Business Operations & Other Oxford, England, United Kingdom

Location
Oxford, England, United Kingdom
innovatorsto tackle humanity’s greatest challenges in four transformative areas: Health, Medical Science & Generative Biology Food Security & Sustainable Agriculture Climate Change & Managing CO2 Artificial Intelligence & Robotics This is ambitious work - work that demands curiosity, courage, and a relentless drive to make a difference. At EIT, you’ll join … incidents, supporting containment, eradication, and recovery. Produce clear incident documentation, including reports and root‐cause analysis. Develop and refine detection rules, automation workflows, and threat‐based use cases. Apply threat intelligence to improve detection coverage in complex research environments. Support vulnerability scanning, prioritisation, and remediation tracking. Collaborate ...

IT SOC Engineer

Location
United Kingdom
event sources, assess, prioritise, elevate and manage security alerts. Perform analysis of security, network, database and application logs, correlate events and activities to create threat scenarios in order to get ahead of threat actors and reduce exposure. Help the imminent threat/zero-day response function across … environment. Translate threat intelligence into actionable security across tools such as firewalls, IPS and malware detection across multiple security vendor platforms. Support the tracking and resolution of security incidents on occasion, and collaborate with other teams for resolution and suggest areas for improvement. Must have experience building custom ...

IT SOC Engineer

Hiring Organisation
Nationwide Platforms
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent
event sources, assess, prioritise, escalate and manage security alerts. Perform analysis of security, network, database and application logs, correlate events and activities to create threat scenarios in order to get ahead of threat actors and reduce exposure. Help the imminent threat/zero-day response function across … environment. Translate threat intelligence into actionable security across tools such as firewalls, IPS and malware detection across multiple security vendor platforms. Support the tracking and resolution of security incidents on occasion, and collaborate with other teams for resolution and suggest areas for improvement. Must have experience building custom ...

Security Operations Manager

Location
Belfast City District, Northern Ireland, United Kingdom
identifying gaps across people, processes and technology and translating these into practical improvements. Advise on the evolution and optimisation of SIEM, SOAR, EDR and threat‐detection tooling to improve visibility, reduce noise and strengthen detection and response capabilities. Develop and maintain incident playbooks, standard operating procedures, automated response workflows … used for enrichment, triage and response orchestration. Endpoint Detection and Response (EDR/XDR) platforms, such as Microsoft Defender for Endpoint and CrowdStrike Falcon. Threat intelligence, detection engineering, investigation and incident response technologies. Cloud security monitoring across Microsoft Azure, AWS and GCP environments. What you can expect Work ...

Senior Global Security Operations Centre Analyst

Location
United Kingdom
identity, and network technologies, you'll play a critical role in strengthening our cyber defences while helping shape the future of security operations through threat hunting, automation, AI-assisted workflows, and continuous improvement. If you're passionate about cyber security, enjoy solving complexchallenges, and want to make a real … full lifecycle, coordinating containment, remediation, recovery and post-incident reviews while balancing cyber risk and business priorities.* Proactively hunt for threats and partner with Threat Intelligence and Detection Engineering teams to identify emerging risks, improve detections and strengthen security visibility.* Develop and enhance detection rules, analytics, use cases ...

Senior Global Security Operations Centre Analyst

Hiring Organisation
Centrica - CHP
Location
Windsor, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
identity, and network technologies, you'll play a critical role in strengthening our cyber defences while helping shape the future of security operations through threat hunting, automation, AI-assisted workflows, and continuous improvement. If you're passionate about cyber security, enjoy solving complex challenges, and want to make … full lifecycle, coordinating containment, remediation, recovery and post-incident reviews while balancing cyber risk and business priorities. Proactively hunt for threats and partner with Threat Intelligence and Detection Engineering teams to identify emerging risks, improve detections and strengthen security visibility. Develop and enhance detection rules, analytics, use cases ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
providers. Investigate and respond to security incidents, coordinating containment, eradication, and recovery activities. Support vulnerability management activities, including remediation tracking and reporting. Assist with threat intelligence gathering and analysis. Governance, Risk & Compliance Support the maintenance and continual improvement of the Information Security Management System (ISMS). Conduct security … client assurance reviews. Ensure security policies, standards, and procedures are reviewed and updated. AI Security & Governance Support the secure adoption and use of Artificial Intelligence (AI) technologies across the organisation. Conduct security and privacy risk assessments for AI platforms, tools, and third‐party AI service providers. Evaluate AI solutions ...

Senior Cyber Security Network Engineer

Location
Greater London, England, United Kingdom
hardening for Windows, Linux, and network devices,including vulnerability remediation. Hands-on experience with cyber security operations and technologies,including security monitoring, logging, alerting, threat detection, incident investigation, EDR, anti-malware/antivirus platforms, vulnerability management,encryption, cryptographic controls, and threat intelligence tools. Proven ability to automate ...

Cyber Security Analyst - Enterprise Markets

Location
Glasgow, Scotland, United Kingdom
incidents, analyze threats, and contribute to strengthening the security posture of our customers. If you have a strong understanding of cybersecurity principles, networking, and threat detection, and you thrive in a fast-paced, collaborative environment, this role is an excellent opportunity to grow your career in cyber security. What … bring Experience in cybersecurity principles, attack detection, incident response, and security frameworks. Understanding of networking fundamentals, including TCP/IP, VPNs, firewalls, and threat intelligence models. Strong analytical and problem-solving skills, with the ability to make sound decisions under pressure. Demonstrable experience in conveying complex security concepts ...

IT Security Specialist - 4197

Location
Greater London, England, United Kingdom
Overview CLS helps clients navigate the changing FX marketplace – reducing risk and creating efficiencies. Our extensive network and deep market intelligence enable CLS specialists to lead the development of standardized solutions to real market problems. Our innovative, forward-looking products make the trading process faster, easier, safer and more … equipped with appropriate industry best of breed tools and solutions Operational Operate and maintain CLS Security controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, Network Protection, etc. Review and help refine CLS Security procedures to ensure compliance with cyber resilience requirements Be responsible when ...

Cyber Risk Manager

Location
Greater London, England, United Kingdom
cyber risk register, ensuring risks are clearly documented, appropriately owned and kept audit ready. Develop and maintain the cyber risk taxonomy, including risk categories, threat sources and impact domains aligned to critical business functions. Define and maintain risk scoring methodologies, appetite thresholds and escalation criteria in collaboration with senior … risk management across the organisation. Collaborate with Security Operations, Digital and wider business teams to understand emerging threats and assess their potential impact. Support threat modelling, business impact assessments and wider cyber resilience activities. Promote a proactive and risk-informed culture across the organisation. Knowledge & Skills: Thorough understanding ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches. You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture … building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements. Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies. Understand threat modelling, attack paths ...

Proofpoint SME- SC Cleared or SC Eligible

Location
Normanton on Trent, England, United Kingdom
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: Serve … platform and related email security technologies. Design, deploy, configure, and maintain Proofpoint solutions, including: Proofpoint Email Protection (PEP) Proofpoint Targeted Attack Protection (TAP) Proofpoint Threat Response Auto-Pull (TRAP) Proofpoint Email Fraud Defense (EFD) Proofpoint Information Protection/DLP Manage email security policies, spam filtering, malware protection, and threat ...

Senior SOC Analyst

Location
Southampton, England, United Kingdom
Analyse network traffic, endpoint activity and system logs Improve detection rules using MITRE ATT and CK techniques Produce technical and customer facing reports Support threat intelligence activities and mentor junior analysts where required Senior SOC Analyst Essential Skills Previous experience within a Security Operations Centre Strong experience with … PowerShell or other scripting experience would be advantageous Key Skills SOC Analyst, Senior SOC Analyst, Security Operations Centre, Microsoft Sentinel, Splunk, SIEM, Incident Response, Threat Detection, Cyber Security, MITRE ATT and CK, Blue Team, NSD #J-18808-Ljbffr ...

Security Team Lead

Location
Greater London, England, United Kingdom
practices Lead real-time response to security incidents Oversee SIEM/SOAR integration, alerting, and playbooks Conduct investigations using log analysis, forensic techniques, and threat intelligence Client-Facing Security Services Provide advisory and managed security support to a portfolio of insurance clients Deliver security reviews, maturity assessments … experience across Azure and Microsoft security stack Scripting/automation capability (PowerShell, Python, Bash) Strong grounding in MITRE ATT&CK, OWASP, and modern threat vectors (Background in insurance, financial services, or regulated environments is highly beneficial). If you are looking for: End-to-end ownership of InfoSec across ...

Threat Disruption Analyst — Global Threat Intelligence & Enforcement

Location
Greater London, England, United Kingdom
SpaceXAI is seeking a Threat Disruption specialist to identify and counter highly motivated adversaries. You will perform first-principles investigations into threat surfaces, design large-scale enforcement operations, and clearly communicate outcomes to leadership and product teams. This role requires rapid handling of urgent incidents, collaboration with operations ...

Solution Architect

Location
Knutsford, England, United Kingdom
Architect required within Cards and Payments to provide coverage of architectural domains and meet project demand. You will be assigned projects- Resilience and Insider Threat and you will own these projects and you will work with Business Analysts to produce solution designs. The work will be varied, involving some … integration, cloud and on-premise, and associated security best practise, at enterprise-scale. Experience in one or more of the following domains: Physical Security Threat Intelligence Insider Threat Cyber Forensics Resilience Strong technical leadership and communication. Stakeholder management to CxO-level. Some other highly valued skills ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service ...

Senior SOC Analyst

Hiring Organisation
Hays Specialist Recruitment Limited
Location
Milton Keynes, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
£73.00 per hour
identified threats. Correlate information from multiple technical sources to establish attack timelines and identify affected systems. Analyse indicators of compromise, attacker techniques and threat intelligence. Escalate confirmed or suspected incidents to the Lead SOC Analyst or Incident Response team. Provide Incident Responders with accurate findings, evidence, timelines and technical … alerts using enterprise monitoring technologies. Good knowledge of SIEM platforms, security-monitoring tools and log-analysis techniques. Understanding of cyberattack methodologies, indicators of compromise, threat intelligence and common attacker techniques. Experience analysing data from multiple technical sources to investigate security events. Experience supporting cyber incident-response activities. Knowledge ...

Senior Ransomware Blockchain Intelligence Analyst

Location
United Kingdom
Labs Inc. is seeking a Blockchain Intelligence Analyst to conduct high-judgment investigations using on-chain data, OSINT, and threat intelligence to trace ransomware proceeds and identify threat actor infrastructure. You’ll generate actionable intelligence for investigations and partner with law enforcement and private sector ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next‐gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection … rules and use cases Produce detailed investigation and incident reports Collaborate with cyber threat intelligence and incident response teams Support continuous improvement of SOC processes and procedures SOC Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred ...

Cyber Security Architect & Engineering Lead

Location
Greater London, England, United Kingdom
Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation. Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies. Act as the technical lead for AI security, helping to establish practical … incidents, working with internal teams, external SOC providers and specialist partners. Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation. Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

Cyber Security Lead

Location
Greater London, England, United Kingdom
Azure, Entra ID, Defender XDR, Sentinel and Purview Building modern security controls around Zero Trust, secure-by-design and automation Leading architecture reviews and threat modelling for major projects and new technologies Taking a lead role in the secure adoption of Microsoft 365 Copilot, AI agents and custom … engineering and incident response Supporting complex and high‐severity security incidents alongside internal teams and external SOC partners Strengthening vulnerability and exposure management using threat intelligence, exploitability and business risk Automating security processes using Python, PowerShell, Logic Apps, Azure Functions and APIs Supporting technical controls and evidence ...