226 to 250 of 478 Permanent Threat Intelligence Jobs

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection … rules and use cases Produce detailed investigation and incident reports Collaborate with cyber threat intelligence and incident response teams Support continuous improvement of SOC processes and procedures SOC Analyst - Required Skills and Experience Active DV clearance Experience working within a SOC environment (Level 2 or Level 3 preferred ...

Cyber Security Architect & Engineering Lead

Location
Greater London, England, United Kingdom
Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation. Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies. Act as the technical lead for AI security, helping to establish practical … incidents, working with internal teams, external SOC providers and specialist partners. Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation. Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

Cyber Security Lead

Location
Greater London, England, United Kingdom
Azure, Entra ID, Defender XDR, Sentinel and Purview Building modern security controls around Zero Trust, secure-by-design and automation Leading architecture reviews and threat modelling for major projects and new technologies Taking a lead role in the secure adoption of Microsoft 365 Copilot, AI agents and custom … engineering and incident response Supporting complex and high‐severity security incidents alongside internal teams and external SOC partners Strengthening vulnerability and exposure management using threat intelligence, exploitability and business risk Automating security processes using Python, PowerShell, Logic Apps, Azure Functions and APIs Supporting technical controls and evidence ...

SIEM Security Engineer

Location
Birmingham, England, United Kingdom
maintaining the ingestion of our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. The role is hybrid (3 days in office) & based in Birmingham What you’ll be doing Data … scope of data ingestion. Support the configuration of Elasticsearch pipelines for data ingestion from various sources, primarily from Kafka Enhance data enrichment by integrating threat intelligence feeds and contextual information. Ingest data from various networking equipment, servers, firewalls and security appliances across multiple vendors. SIEM Solution Development Collaborate ...

Cyber Security Manager (Public Sector & Defence)

Hiring Organisation
Searchability NS&D
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £95,000 per annum
frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls Experience with threat ...

Senior Cyber Security Analyst

Location
Corsham, England, United Kingdom
Strong experience within a SOC or cyber security operations environment Proven ability to investigate and analyse complex security incidents Experience with SIEM platforms, threat intelligence, and security tooling Strong stakeholder and client communication skills Ability to mentor and develop junior team members Proactive approach to problem‐solving ...

Cloud Platform Security Engineer Software engineering London

Location
Greater London, England, United Kingdom
Sentinel, SentinelOne, Netskope, Flashpoint, Wiz or similar tooling. Strong Microsoft Sentinel expertise: KQL, detection rules, workbooks, and logging pipelines. Working knowledge of DLP and threat intelligence monitoring. Experience applying AI/ML to security workflows – automated triage, behavioural analytics, or LLM‐assisted investigation. Understanding of AI security risks ...

Lead SOC Analyst

Hiring Organisation
Hays Specialist Recruitment Limited
Location
Milton Keynes, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
£77.00 per hour
analysis, monitoring technologies and security event investigation. Experience investigating complex cyber events and determining appropriate escalation routes. Knowledge of cyberattack techniques, indicators of compromise, threat intelligence and defensive monitoring. Experience in incident investigation and response, intrusion detection, forensics, protective security and secure operations. Ability to make timely decisions ...

Cyber Security Architect & Engineering Lead

Hiring Organisation
Moore Kingston Smith
Location
London, United Kingdom
Salary
£ 70 K
integration platforms.Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation.Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies.Act as the technical lead for AI security, helping to establish practical controls … security incidents, working with internal teams, external SOC providers and specialist partners.Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation.Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory or contractual ...

IT Security Analyst

Location
Manchester, England, United Kingdom
remediation Manage vulnerability scanning, penetration testing follow-ups, and patching coordination Support and review access and access control policies, including privileged access controls. Monitor Threat Intelligence to ensure threats to Xeinadin devices and systems are mitigated in a timely manner. Technical Security Controls Implement, support and manage security ...

SOC Analyst Level 1

Hiring Organisation
NTT DATA
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 70 K
will contribute to post‐incident reviews by sharing findings and identifying opportunities to improve detection, response, or operational processes. You will also apply threat intelligence provided by the SOC to support alert analysis and investigations. Operational discipline is essential. You will follow defined SOC procedures, documentation standards ...

Threat Analyst 1

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

Cyber Security Architect & Engineering Lead

Hiring Organisation
Moore Kingston Smith
Location
London, UK
Employment Type
Full-time
Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation. Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies. Act as the technical lead for AI security, helping to establish practical … incidents, working with internal teams, external SOC providers and specialist partners. Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation. Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory ...

Information Security Assistant Manager

Hiring Organisation
Superb People
Location
London, United Kingdom
Employment Type
Permanent
Salary
GBP 60,000 - 70,000 Annual
governance, operational resilience and third-party risk management. Sufficient technical cyber security knowledge to engage with and challenge Security Operations teams on incidents, vulnerabilities, threat intelligence, cloud security and security controls. Experience producing management reports. Strong stakeholder management skills with the confidence to challenge constructively and influence decisions. … Technical Knowledge Expected Security Operations (SOC), SIEM and incident response. Vulnerability management and threat intelligence. Identity & Access Management (IAM) and privileged access controls. Data protection and DLP controls. Cloud security, particularly AWS. Security monitoring, detection and response processes. Security architecture and control design principles. ...

Information Security Assistant Manager

Hiring Organisation
Superb People
Location
Canary Wharf, Greater London, United Kingdom
Employment Type
Permanent
Salary
£60000/annum + BONUS
governance, operational resilience and third-party risk management. Sufficient technical cyber security knowledge to engage with and challenge Security Operations teams on incidents, vulnerabilities, threat intelligence, cloud security and security controls. Experience producing management reports. Strong stakeholder management skills with the confidence to challenge constructively and influence decisions. … Technical Knowledge Expected Security Operations (SOC), SIEM and incident response. Vulnerability management and threat intelligence. Identity & Access Management (IAM) and privileged access controls. Data protection and DLP controls. Cloud security, particularly AWS. Security monitoring, detection and response processes. Security architecture and control design principles. ...

Lead Detection & Response Engineer

Location
City of Edinburgh, Scotland, United Kingdom
responsibilities include: Leading investigations into security alerts, incidents and emerging threats, ensuring effective containment, eradication and recovery activities. Analysing security events, attacker behaviours and threat intelligence to identify risks and determine appropriate response actions. Conducting threat hunting, forensic investigations and proactive cyber defence activities to identify previously … resilience of one of the UK's largest organisations. What you'll need Strong experience within a Security Operations Centre, Cyber Defence, Incident Response, Threat Hunting or a related cyber security environment. Experience investigating and responding to cyber security incidents using enterprise security technologies and processes. Strong understanding ...

Senior Splunk Cybersecurity Engineer

Hiring Organisation
CYNET SYSTEMS
Location
Richmond, Virginia, United States
Employment Type
Permanent
Salary
USD Hourly
threats by leveraging Client Enterprise Security to monitor, detect, analyze, and respond to security events. The ideal candidate has strong expertise in log analysis, threat hunting, and writing Client queries to identify and contain malicious activity. Responsibilities: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous … security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats. Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK. Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across ...

Security Engineer, Incident Response

Hiring Organisation
Twilio
Location
United Kingdom
Salary
£ 70 K
skills and experiences that make work feel truly rewarding. Your career at Twilio is in your hands..Hiring and how we workWe use Artificial Intelligence (AI) to help make our hiring process efficient. That said, every hiring decision is made by real Twilions! Also, while we are a remote-first … valued member of a team of deeply technical Security Engineers to focus on creating bespoke and standard Security response processes, enhancing our capabilities for threat mitigation and incident response, and then automating as much as you possibly can (and more)! You will help us to grow our global, scaled ...

Cyber Defense Incident Responder - Associate Director

Location
Greater London, England, United Kingdom
improvement while driving lessons learned activities Demonstrated integrity and judgment within a professional environment Inquisitive approach to analysis and peer review Application of emotional intelligence and calm under pressure Ability to appropriately balance work/personal priorities Talent management of direct reports with empathy and patience, while developing them … Information Security Professional Information System Administration/Engineering 5+ years’ collective experience between the following roles: Security Operations Center (SOC) Analyst/Manager Cybersecurity Threat Intelligence Cybersecurity Detection Engineering Other relevant Cyber Defense functions Attack & Penetration Testing (Active Defense) eDiscovery or related role performing forensic functions 3+ years ...

Senior Cyber Security Analyst

Location
Leicester, England, United Kingdom
incidents. Identify, assess and mitigate threats and vulnerabilities. Manage and optimise security tools and controls, including EDR and vulnerability management platforms. Monitor the evolving threat landscape and recommend improvements. Provide cyber security guidance to projects, services and operational teams. Support risk management, assurance, audit and compliance activities. Develop … will bring: Experience in incident detection, investigation, response and recovery. Strong knowledge of security technologies, cloud platforms and security architecture. Experience in vulnerability management, threat intelligence and security improvement activities. The ability to assess and communicate cyber risk effectively. Strong analytical, problem‐solving and stakeholder engagement skills. Please ...

Manager, Security Automation

Location
Greater London, England, United Kingdom
Fusion Centre teams while driving process improvements, workflow optimisation, and service excellence. DevSecOps – Manage the infrastructure and engineering practices that underpin automation, forensics, and threat intelligence platforms, ensuring secure, resilient, and scalable operations with all configurations and content managed through Infrastructure-as-Code and DevOps principles. AI – Drive … Experience managing and supporting enterprise security platforms. Understanding of security operations processes, including alert triage, investigation, and incident response. Experience evaluating and implementing Artificial Intelligence (AI) capabilities within operational environments, including familiarity with Large Language Models (LLMs), Generative AI, AI agents, and Retrieval‐Augmented Generation (RAG) concepts. Strong knowledge ...

Senior Security Operations Analyst

Hiring Organisation
DGH Recruitment
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£90,000
compromise, and policy violations correlating network, cloud, endpoint, and log-based activity to identify attacks, unauthorised use, and suspicious activity. * Participate in continuous threat hunting activities, leveraging threat intelligence, and proactive analysis to identify suspicious activity, emerging threats, and attack trends. * Work with Detection and Automation team … 5+ years in Security Operations/SOC or Incident Response, including in a 247 or global environment. * Proven experience across incident response, alert triage, threat hunting, data loss prevention, and operational risk analysis. * Demonstrable experience with at least one major SIEM and EDR platform, additional hands on KQL/ ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Tewkesbury, Gloucestershire, South West, United Kingdom
Employment Type
Permanent, Work From Home
Significant experience designing, building or deploying Security Operations Centre solutions . Experience with at least two of the following: SIEM SOAR EDR Vulnerability Management Threat Intelligence Strong understanding of SOC operating models, including people, process, policy, services and technology . Good understanding of common cyber threats and appropriate ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
security alertsto identify and promptly respond to securityevents. Collaboratewith key stakeholders during investigations to gather further information and coordinate response actions. Derive value fromrelevant threat intelligence to drive proactive action. Influencethe strategic direction of our team by presenting insight into the security events, alerts and incidents we handle. ...