126 to 150 of 307 Threat Detection Jobs in England

Manager - Cyber Security Specialist

Location
West of England, England, United Kingdom
NIST, NCSC and Cyber Essentials Plus. Risk Management & Compliance Identify, assess, and manage cyber security risks across systems and suppliers. Support risk assessments, threat modelling, and vulnerability management. Ensure compliance with UK GDPR, data protection regulations, and organisational policies. Cloud & Technology Security Hands-on Azure cloud security experience, including … security controls. Design and run SIEM/SOAR use-cases in Microsoft Sentinel (data connectors, analytics rules, workbooks, automation playbooks) to support SOC operations, threat detection, and incident response. Support DevSecOps practices and secure software development. Governance & Awareness Develop and maintain security policies, standards, and procedures. Provide guidance ...

MDR Threat Analyst I: Threat Detection & Response

Location
Oxford, England, United Kingdom
Sophos is seeking an MDR Threat Analyst to join our security operations team. You will work with enterprise systems, log analysis and endpoint collection tools to investigate, identify and neutralize cyber threats. You will contribute to a team delivering best-in-class monitoring, detection and response services. ...

Security Detection & Response Specialist

Location
Chester, England, United Kingdom
Description: Job Title: Security Detection & Response Specialist Corporate Title: Up to Assistant Vice President Location: Chester Company Overview : At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth … rolling North Wales hills and the banks of the serene River Dee. Role Description: We are seeking a motivated and analytically driven Security Detection & Response Analyst (SDR) to join the GIS Monitoring and Triage team. This role supports cybersecurity operations across threat detection, investigation, response, and continuous ...

AI-Driven Security Researcher (Detection & Prototyping)

Location
Greater London, England, United Kingdom
Salt in London is seeking a Security Researcher to explore AI-driven detection and threat research. You will develop tooling in Python and collaborate with product teams to translate research into security features. The role focuses on AI-enabled threat detection, security workflows, and advancing ...

Senior SOC Analyst

Location
Southampton, England, United Kingdom
role in monitoring, investigating and responding to cyber security incidents across critical client environments. You will analyse alerts, investigate complex threats, improve detection capabilities and contribute to the ongoing maturity of the SOC. You will also: Monitor and investigate security events across enterprise environments Perform incident response activities … support remediation efforts Analyse network traffic, endpoint activity and system logs Improve detection rules using MITRE ATT and CK techniques Produce technical and customer facing reports Support threat intelligence activities and mentor junior analysts where required Senior SOC Analyst Essential Skills Previous experience within a Security Operations Centre ...

Microsoft Security Engineer

Location
Basildon, England, United Kingdom
excellent opportunity for a security professional with strong Microsoft security expertise to work across enterprise Azure environments, helping to improve security posture, strengthen detection capabilities and deliver scalable security solutions. You will play a key role in designing, implementing and optimising Microsoft security technologies including Microsoft Sentinel, Defender … Responsibilities Design, implement and optimise Microsoft Sentinel environments, including onboarding, configuration and continuous improvement Develop and tune Sentinel analytics rules using KQL, improving detection coverage and reducing false positives Support security monitoring, threat detection and incident investigation across enterprise environments Configure and enhance Microsoft Defender XDR capabilities ...

Proofpoint SME- SC Cleared or SC Eligible

Location
Normanton on Trent, England, United Kingdom
design, implementation, administration, and optimization of Proofpoint security solutions within a large enterprise environment. The ideal candidate will possess deep expertise in email security, threat protection, data loss prevention (DLP), and email authentication technologies, ensuring robust protection against phishing, malware, and other cyber threats. Your Key Responsibilities: Serve … platform and related email security technologies. Design, deploy, configure, and maintain Proofpoint solutions, including: Proofpoint Email Protection (PEP) Proofpoint Targeted Attack Protection (TAP) Proofpoint Threat Response Auto-Pull (TRAP) Proofpoint Email Fraud Defense (EFD) Proofpoint Information Protection/DLP Manage email security policies, spam filtering, malware protection, and threat ...

SOC Team Lead

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance … operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service ...

Senior Cyber Security Engineer

Location
Reading, England, United Kingdom
design, implementation, and ongoing effectiveness of security capabilities across IT and OT environments. You will engineer and maintain the technical capabilities that enable early threat detection, rapid and consistent response, and sustained cyber risk reduction , while translating cyber risk, regulatory, and business demands into practical, measurable, and operationally … implement and maintain security controls to meet business, compliance, and risk mitigation requirements, ensuring controls are effective, measurable, and operationally sustainable. Implement and maintain detection and response capabilities through SIEM integration with security controls and IT systems, with a focus on reducing time-to-detect and time-to-remediate ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Hiring Organisation
Starling Bank
Location
London, UK
Employment Type
Full-time
demonstrate continuous compliance with stringent standards such as PCI DSS and 3DSDrive security infrastructure deployments across our growing environmentsPerform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actionsLead incident … implementation (CKA, CKS qualifications are a plus)Experience with Infrastructure as Code and infrastructure provisioning tools, particularly TerraformExperience configuring GCP-native security posture and threat management with Security Command CenterExperience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact AnalysisExperience with key and secret management ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Hiring Organisation
Starling Bank
Location
London, UK
Employment Type
Full-time
demonstrate continuous compliance with stringent standards such as PCI DSS and 3DSDrive security infrastructure deployments across our growing environmentsPerform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actionsLead incident … implementation (CKA, CKS qualifications are a plus)Experience with Infrastructure as Code and infrastructure provisioning tools, particularly TerraformExperience configuring GCP-native security posture and threat management with Security Command CenterExperience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact AnalysisExperience with key and secret management ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions … qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management ...

Senior Cloud Security Engineer (GCP) - Engine by Starling

Location
City Of London, England, United Kingdom
continuous compliance with stringent standards such as PCI DSS and 3DS Drive security infrastructure deployments across our growing environments Perform regular security assessments, audits, threat modelling and architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions … qualifications are a plus) Experience with Infrastructure as Code and infrastructure provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with key and secret management ...

24 x 7 Security Analyst

Location
Birmingham, England, United Kingdom
detect and respond to a multitude of threats of differing capability and sophistication. You will use SIEM, EDR, Network Monitoring, bespoke tooling and Threat Intelligence solutions to triage suspicious events, provide context and an assessment of risk/threat to customers to enable efficient response and continuously monitor … also get involved in projects that enhance the capability of our services and ensure we are providing cutting‐edge detection & response services to our clients. This includes threat hunting, supporting the implementation of new cutting‐edge technology, malware analysis, recommending detections and getting involved in strategic cross‐team ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
Cheltenham, Gloucestershire, United Kingdom
Salary
£ 70 K
resolving complex investigations using data from multiple security technologies and information sources.Correlating security alerts and events, executing advanced queries, and applying behavioural and anomaly-detection techniques.Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency.Identifying opportunities … guidelines in alignment with industry best practices and evolving AI capabilities.Recommending adjustments to security tools and processes to reduce false positives and improve detection quality.Examining and correlating log data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments.Working with SOAR platforms, SIEM technologies, MCP solutions, threat ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
Walsall, West Midlands (County), United Kingdom
Salary
£ 70 K
resolving complex investigations using data from multiple security technologies and information sources.Correlating security alerts and events, executing advanced queries, and applying behavioural and anomaly-detection techniques.Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency.Identifying opportunities … guidelines in alignment with industry best practices and evolving AI capabilities.Recommending adjustments to security tools and processes to reduce false positives and improve detection quality.Examining and correlating log data across endpoints, databases, applications, identity systems, networks, mobile platforms, and cloud environments.Working with SOAR platforms, SIEM technologies, MCP solutions, threat ...

Senior Cyber Security Engineer – SIEM & Threat Detection

Location
Greater London, England, United Kingdom
Engineer to join our Proactive Security team, focusing on building security tech stacks to mitigate threats with offensive and preventive measures. You will develop threat models, manage SIEM systems, and implement detection use cases while collaborating with incident response to protect information assets in a hybrid UK workplace. ...

Cyber Security Engineer

Location
Cumnor, England, United Kingdom
supply chain security risk management. Lead audit engagements and regulatory inspections related to cybersecurity. 3. Security Operations & Incident Response Oversee security operations including SOC, threat detection, and vulnerability management. Develop and maintain incident response and crisis management plans. Lead response to major security incidents and coordinate with regulators … Technical Expertise Security frameworks: ISO 27001, NIST CSF, COBIT Cloud security (AWS, Azure, GCP) Identity & Access Management (IAM) SIEM, SOAR, EDR/XDR platforms Threat intelligence and vulnerability management Data protection technologies Secure SDLC and DevSecOps practices Strategic thinker with strong commercial awareness Excellent communication and stakeholder management skills ...

Senior Microsoft Identity Security Specialist

Location
Greater London, England, United Kingdom
including ownership, least privilege, credential management, monitoring and lifecycle governance. Ensure high-impact access, policy and remediation decisions retain appropriate human review and approval. Threat Detection and Continuous Improvement Support detection and remediation of identity threats including credential compromise, privilege escalation, token theft and suspicious authentication activity. … Collaborate with security operations teams to improve identity threat visibility, triage and response. Contribute to technical designs, standards, documentation, operational procedures and control-effectiveness reporting. Provide technical guidance and subject matter expertise relating to Microsoft identity technologies. Qualifications What you'll bring: Required Skills and Experience: Demonstrable recent, hands ...

Technical Account Manager

Location
Manchester, England, United Kingdom
pentest cadence, IR retainer, EASM, DLP, tabletops, etc) - surfacing risk credibly and identifying where NCC services can close the gap. Maintain and refresh the threat overview as the customer's environment and threat landscape evolve. Skills, Knowledge and Expertise Proven experience in cybersecurity, IT operations, or managed security … customer-facing technical role (e.g. TAM, Security Consultant) Experience engaging senior stakeholders (CISO, Head of IT/Security) Strong understanding of SOC operations, threat detection, and incident response Ability to understand end-to-end customer environments (cloud, infrastructure, security stack) Experience with security tools (e.g. SIEM, EDR, SOAR ...

OpenAI Engineer (Cyber Security)

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Understanding of Responsible AI, security, governance and risk management principles. Excellent stakeholder engagement and communication skills. Desirable Experience AI solutions within cyber security or threat detection environments. Experience with Microsoft Sentinel, Splunk, QRadar or other SIEM platforms. SOAR platforms and security automation tooling. Cloud platforms including Azure ...

24 x 7 Security Analyst

Hiring Organisation
LRQA
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 70 K
detect and respond to a multitude of threats of differing capability and sophistication. You will use SIEM, EDR, Network Monitoring, bespoke tooling and Threat Intelligence solutions to triage suspicious events, provide context and an assessment of risk/threat to customers to enable efficient response and continuously monitor … also get involved in projects that enhance the capability of our services and ensure we are providing cutting-edge detection & response services to our clients. This includes threat hunting, supporting the implementation of new cutting-edge technology, malware analysis, recommending detections and getting involved in strategic cross-team ...

Security & Network Engineer - 12 months Fixed term

Location
Maidenhead, England, United Kingdom
Create runbooks, decision trees, and architectural standards that allow teams to move fast while staying secure Infrastructure Security Implementation: Implement and manage firewalls, intrusion detection/prevention, DDoS mitigation, and threat monitoring across network layers Establish secure supply chain practices for infrastructure: vendor management, procurement policy, and third … network engineering, infrastructure architecture, or systems engineering roles Proven hands-on with enterprise network security: firewall architecture (Palo Alto, Fortinet, Cisco ASA), network segmentation, threat detection, compliance Strong understanding of DevSecOps principles and how to embed security into CI/CD and infrastructure-as-code workflows Proven experience ...

Security Operations Specialist ( L3 )

Hiring Organisation
Michael Page
Location
Liverpool, Merseyside, United Kingdom
Employment Type
Contract
Contract Rate
£60000 - £65000/annum healthcare
This position focuses on security monitoring, incident investigation, threat analysis, and operational security improvement. The successful candidate will act as a subject matter expert for cyber security operations, supporting both proactive and reactive security activities while helping to enhance the organisation's overall security maturity. This … Profile Previous experience working within a Security Operations Centre (SOC) or equivalent cyber security environment. Demonstrated experience in security operations, cyber defence, incident response, threat detection, or a related security discipline. Strong understanding of cyber attack techniques, threat actor methodologies, and appropriate mitigation strategies. Experience investigating security ...

Lead SOC Architect

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
high/low-level architecture designs • Working directly with senior client and government stakeholders • Designing and integrating security technologies including SIEM, SOAR, EDR, Threat Intelligence and Vulnerability Management • Assessing existing SOC capabilities and developing security maturity • Designing scalable, resilient on-prem and cloud security architectures • Supporting accreditation, security requirements … Strong experience in SOC architecture and security operations • Hands-on architectural experience across at least two of SIEM, SOAR, EDR, Vulnerability Management or Threat Intelligence • Strong understanding of security operations, threat detection and incident response • Experience designing both on-prem and cloud security architectures • Understanding of security ...