1 to 25 of 50 Remote/Hybrid Threat Detection Jobs in England

Threat Hunting & Detection Engineering Analyst

Hiring Organisation
Anson Mccade
Location
Cheltenham, Gloucestershire, South West, United Kingdom
Employment Type
Permanent
Salary
£60,000
Threat Hunting & Detection Engineering Analyst Location: UK (Hybrid) Salary: Competitive + Excellent Benefits Threat Hunting & Detection Engineering Analyst A leading global technology consultancy is looking to hire a Threat Hunting & Detection Engineering Analyst to join its growing Cyber Security practice. This is an exciting … opportunity to work at the forefront of cyber defence, helping enterprise clients improve their detection capabilities through advanced threat hunting, detection engineering and SOC content development. Working alongside Threat Intelligence teams, Security Operations Centres and client stakeholders, you'll play a key role in strengthening organisations ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
Westminster, City of Westminster, Greater London, United Kingdom
Employment Type
Permanent
Salary
£60000 - £80000/annum
well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We’re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you’ll focus on building high … impact detection capabilities , shaping how security protects sensitive genomic and AI-driven data at scale. This role offers hybrid/remote working options, a salary range of £60,000 - £80,000 and benefits. Why This Role is Exciting High autonomy : Lead projects from idea to deployment Innovation-driven : Develop ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources Ltd
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £80,000 per annum
well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We’re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you’ll focus on building high … impact detection capabilities , shaping how security protects sensitive genomic and AI-driven data at scale. This role offers hybrid/remote working options, a salary range of £60,000 - £80,000 and benefits. Why This Role is Exciting High autonomy : Lead projects from idea to deployment Innovation-driven : Develop ...

Cyber Security Engineer/Specialist

Hiring Organisation
Exalto Consulting
Location
Surrey, United Kingdom
Employment Type
Permanent
Salary
£70000 - £80000/annum Up to 80k (+ benefits)
career within a stable organisation, we'd love to hear from you. The Role This is an enterprise Cyber Security position focused on proactive threat mitigation, security improvement and risk reduction rather than purely operational support. You'll be responsible for strengthening the organisation's security posture through threat assessment, vulnerability management, incident response and continuous security improvement initiatives. Key responsibilities include: Enterprise Threat Management Identify, assess and mitigate cyber threats across enterprise infrastructure and business systems Conduct proactive threat assessments and vulnerability analysis Develop and implement security controls and remediation strategies Monitor emerging threats ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
Umbrella) | Inside IR35 Remote with occasional client site visits Active SC Clearance Required Contract until March 2027 Security Operations Analyst | Cyber Threat Intelligence | Threat Modelling We are looking for an experienced Security Operations Analyst to join a long-term cybersecurity programme supporting critical enterprise and government-facing environments. … This is an excellent opportunity for a security professional with expertise in Cybersecurity Operations, Cyber Threat Intelligence, and Threat Modelling to play a key role in identifying, assessing, and mitigating cyber risks while enhancing the overall security posture of complex organisations. Working alongside Security Architects, Threat Intelligence ...

Security Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use‐case tuning, and post‐incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client‐facing ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
passionate individual who enjoys building defences against today's cyber threats, targeting infrastructure, data, and employees. You should be able to analyze the current threat environment and Intigriti’s security posture, then design and implement controls in line with our risk appetite. This position requires strategic thinking, technical expertise … controls leveraging security tools, including EDR, SIEM, phishing simulation, and compliance solutions, among others. In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections ...

Cloud Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
respond to incidents, and build the security foundations that enable teams to move quickly with confidence. The team owns critical cloud security capabilities including detection engineering, cloud security monitoring, incident response, cloud security controls, and the security tooling that protects Fin's production environments. The team is responsible … operated. As Fin continues to expand its capabilities and adoption, you'll help define how cloud security evolves alongside increasingly sophisticated systems and threat models. We're taking an AI-first approach to security, investing in areas such as AI-assisted detection engineering, automated investigations, continuous monitoring ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

SOC Subject Matter Expert (UK)

Hiring Organisation
Jobleads-UK
Location
Horsham, England, United Kingdom
decision-making challenges. Working with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops, and solution ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
South East, United Kingdom
Employment Type
Permanent
+ 15k Bonus | Hybrid UK A growing cyber security consultancy is seeking a Senior Cyber Consultant to help organisations enhance their Security Operations and threat detection capabilities. This is a client-facing role focused on designing and delivering SIEM, XDR and SOAR solutions, developing detection content, automating … security processes, and improving SOC effectiveness. You will lead detection engineering initiatives, create use cases aligned to MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation ...

Director, ProdSecOps

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Sports. It is a program leadership role responsible for embedding security into how products are designed, built, and shipped — and for owning the full threat detection and incident response pipeline end-to-end. The Director sets direction for a global team spanning secure development lifecycle, security architecture, threat … time zones. Set team objectives aligned to functional and company-level OKRs. Own delivery against them. Product Security Drive shift-left security — embed threat modelling, secure design review, and SDL practices into the development lifecycle. Own the security architecture direction, including zero trust principles and secure design patterns. ...

IT / Network Security Engineer

Hiring Organisation
Tank Recruitment
Location
Oxfordshire, United Kingdom
Employment Type
Permanent
Salary
£45000 - £55000/annum
defending core infrastructure, enterprise networks, and critical data against modern cyber threats. Working closely with the Head of IT Security, you will oversee threat detection, manage security appliances, enforce compliance frameworks, and ensure that robust defensive postures are embedded across the technology stack. Key Responsibilities Security Operations: Oversee … network telemetry for suspicious activities, execute rapid threat detection and response, tune perimeter defenses (firewalls and virtual private networks), and direct proactive patch management cycles. Compliance & Audits: Drive internal control testing and maintain alignment with structured information security standards such as ISO 27001, supporting both internal evaluations ...

Senior Incident Response Consultant, Rapid Response

Hiring Organisation
Jobleads-UK
Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

SOC Engineer

Hiring Organisation
Invitise Ltd
Location
City of London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £450 per day
primarily remote role with occasional on-site visits to London. You will be working within a security operations function, supporting the monitoring, detection and response to security threats across the organisation's estate. You will bring solid hands-on experience across SIEM and log management tooling, working independently … experience in the following: Hands-on experience with Splunk in a SOC environment Cribl experience for log management and data pipeline optimisation Security monitoring, threat detection and incident response Working within a security operations centre at a mid-senior level SC clearance held or ability to pass Interested ...

Sr. Software Engineer, Backend/Cloud (Hybrid, London)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
CrowdStrike offers flexibility and autonomy while encouraging responsible AI adoption, experimentation, and innovation. We are seeking a Senior Software Engineer, Cloud to join our Threat Detection and Incident Response (TDIR) team and help revolutionize security management with our AI-native Falcon Next-Gen SIEM platform, enabling customers … last for current scale and the future. Lead system design and architecture decisions, including design reviews and RFC processes. Develop Go-based microservices supporting threat detection, case management, and incident response workflows, alongside RESTful APIs powering customer-facing capabilities. Take end-to-end ownership of technical initiatives, individually ...

Security Engineer - SOC & Threat Detection Leader (Hybrid)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
will run SOC operations, expand log coverage, and build high‐quality detections using MITRE ATT&CK and D3FEND. You will lead incident response, threat detection, and security training, while promoting a security‐minded culture and ensuring compliance with industry standards. #J-18808-Ljbffr ...

SOC Manager

Hiring Organisation
Fox Morris Group Ltd
Location
E8, Hackney Central, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£700 - £850/day ASAP
This is an excellent opportunity for a strategic cyber security leader to take ownership of a mature Security Operations Centre, driving continuous improvement, enhancing threat detection capabilities and leading a high-performing security team. About the Role As the SOC Manager, you will be responsible for leading … Security Operations Centre, ensuring effective security monitoring, incident response and threat intelligence capabilities while shaping the future direction of the SOC. Working closely with internal stakeholders, external vendors and managed security service providers (MSSPs), you will play a key role in strengthening the organisation's cyber resilience. Essential Experience ...

NMC Cyber Threat Intelligence Specialist

Hiring Organisation
Police Digital Services
Location
Wigan, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Join Police Digital Service an NMC Cyber Threat Intelligence Specialist. Permanent FT. Hybrid/Wigan. Starting salary £45,000 per annum. About Police Digital Service This is an opportunity to play your part and protect our company, our customers and our communities from cyber attack. Be part … National Management Centre provide visibility and control of information risks for Policing. It supports the 24x7x365 nature of the police operations, providing a threat detection and response capability for digital services before, during and after cyber attacks, enabling stakeholders to understand and proactively manage risk across the technology ...

SC Cleared Splunk SIEM Engineer

Hiring Organisation
Hays
Location
Knutsford, Cheshire, North West, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£500.0 - £638 per day + Up to £638 per day Inside IR35
experience with Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience … CISSP, GCIH, GCFA, Splunk Certified Architect, or Microsoft Sentinel Ninja. Extended Security Stack: Experience with EDR, UBA, CASB, CSPM, vulnerability assessment tools, and threat intelligence platforms. Infrastructure as Code: Experience with Chef, Ansible, Jenkins, GitLab CI/CD for automated security tool deployment and configuration management. Compliance & Governance: Knowledge ...

SIEM Security Engineer

Hiring Organisation
Jobleads-UK
Location
Birmingham, England, United Kingdom
maintaining the ingestion of our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. What you’ll be doing Data Ingestion and Enrichment Collaborate with Security analysts and application teams … scope of data ingestion. Support the configuration of Elasticsearch pipelines for data ingestion from various sources, primarily from Kafka Enhance data enrichment by integrating threat intelligence feeds and contextual information. SIEM Solution Development Collaborate with security analysts and architects to design and implement SIEM solutions using Elasticsearch. Optimize SIEM ...

Splunk SIEM Engineer

Hiring Organisation
Experis
Location
Knutsford, Cheshire, United Kingdom
Employment Type
Contract
experience with Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience … CISSP, GCIH, GCFA, Splunk Certified Architect, or Microsoft Sentinel Ninja. Extended Security Stack: Experience with EDR, UBA, CASB, CSPM, vulnerability assessment tools, and threat intelligence platforms. Infrastructure as Code: Experience with Chef, Ansible, Jenkins, GitLab CI/CD for automated security tool deployment and configuration management. Compliance & Governance: Knowledge ...

Senior Security Analyst

Hiring Organisation
Robert Half
Location
London, South East, England, United Kingdom
Employment Type
Temporary
Salary
Salary negotiable
Security Operations Centre (SOC) or enterprise security operations environment. Proven hands-on experience administering and optimising enterprise security technologies, including SIEM platforms, Endpoint Detection & Response (EDR), Secure Web Gateways, Email Security solutions, and Cloud Security platforms. Strong understanding of security operations, with experience in incident response, threat detection, investigation, and remediation. Solid knowledge of network security principles, including firewalls, intrusion detection and prevention systems (IDS/IPS), TCP/IP, routing, switching, and packet analysis. Experience identifying, assessing, and mitigating security risks through vulnerability management, security assessments, and penetration testing. Ability to investigate and troubleshoot complex ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports … support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience: Microsoft Entra ...

Mid-Level Cyber Security Analyst

Hiring Organisation
Nextech
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £55,000 per annum
excellent opportunity for someone with 2-4 years' hands-on security experience to take the next step in their career, working across threat detection, incident response, and security operations in a collaborative, fast-paced environment. Key Responsibilities Monitor security alerts and investigate potential threats using SIEM tooling Support ...