Threat Detection Jobs in England

76 to 100 of 135 Threat Detection Jobs in England

Principal / Lead Consultant - SOC Tools Engineering

London Area, United Kingdom
RiverSafe
the technical lead on engagements focused on SOC tools architecture, deployment and integration. Design, implement and optimise tools such as SIEM, SOAR, EDR, NDR, threat intelligence platforms and case management systems. Lead client workshops to assess current-state SOC tooling and recommend improvements or transformation roadmaps. Oversee end-to … and validation. Integrate SOC tooling with cloud platforms (AWS, Azure, GCP), log sources and other enterprise systems. Establish automation and orchestration pipelines to improve detection, response and remediation workflows. Skills 8+ years in Cyber Security, with 5+ years in SOC or security engineering roles. Deep expertise in security technologies … CrowdStrike, SentinelOne, Darktrace, Vectra etc. Strong experience in scripting (e.g. Python, PowerShell) and automation/integration of SOC tools. Familiarity with MITRE ATT&CK, threat detection engineering and response workflows. Demonstrated client-facing experience in a consulting or pre-sales engineering capacity. Strong communication skills for both technical More ❯
Posted:

Principal / Lead Consultant - SOC Tools Engineering

london, south east england, united kingdom
RiverSafe
the technical lead on engagements focused on SOC tools architecture, deployment and integration. Design, implement and optimise tools such as SIEM, SOAR, EDR, NDR, threat intelligence platforms and case management systems. Lead client workshops to assess current-state SOC tooling and recommend improvements or transformation roadmaps. Oversee end-to … and validation. Integrate SOC tooling with cloud platforms (AWS, Azure, GCP), log sources and other enterprise systems. Establish automation and orchestration pipelines to improve detection, response and remediation workflows. Skills 8+ years in Cyber Security, with 5+ years in SOC or security engineering roles. Deep expertise in security technologies … CrowdStrike, SentinelOne, Darktrace, Vectra etc. Strong experience in scripting (e.g. Python, PowerShell) and automation/integration of SOC tools. Familiarity with MITRE ATT&CK, threat detection engineering and response workflows. Demonstrated client-facing experience in a consulting or pre-sales engineering capacity. Strong communication skills for both technical More ❯
Posted:

Senior Cyber Security Engineer

Welwyn Garden City, England, United Kingdom
Hybrid / WFH Options
PayPoint plc
to provide technical guidance and mentorship to the existing team members. You'll help keep our systems safe by setting up security alerts, improving threat detection, and automating incident response. Managing logs and ensuring our most important assets are protected will be part of your daily tasks. You More ❯
Posted:

Senior Cyber Security Engineer

welwyn garden city, east anglia, united kingdom
Hybrid / WFH Options
PayPoint plc
to provide technical guidance and mentorship to the existing team members. You'll help keep our systems safe by setting up security alerts, improving threat detection, and automating incident response. Managing logs and ensuring our most important assets are protected will be part of your daily tasks. You More ❯
Posted:

IT Security Engineer

London Area, United Kingdom
Hybrid / WFH Options
Premier Group
Hampshire Up to £70,000 An opportunity to join a market leading business in their infrastructure team working to support and continuously improve technical threat identification, mitigation, and response measures, both physical and cloud-based. Key Responsibilities: Secure infrastructure across multiple UK and international offices, as well as Microsoft … security controls and measures to mitigate risks. Automate security tasks, implement tools (e.g., Microsoft Defender, Nessus), and provide training where needed. Enhance and maintain threat detection and response processes, including the use of Sentinel SIEM and collaboration with an outsourced Security Operations Centre. Perform proactive threat hunting … Strong experience securing infrastructure in both physical and cloud environments (DevOps, Microsoft Cloud). Proficiency in security tooling, including SIEM platforms (e.g., Sentinel), and threat hunting. Experience with IP networks, WAN technologies, virtual servers, and endpoint security. Ability to manage multiple workstreams while ensuring quality and prioritisation. Strong communication More ❯
Posted:

IT Security Engineer

london, south east england, united kingdom
Hybrid / WFH Options
Premier Group
Hampshire Up to £70,000 An opportunity to join a market leading business in their infrastructure team working to support and continuously improve technical threat identification, mitigation, and response measures, both physical and cloud-based. Key Responsibilities: Secure infrastructure across multiple UK and international offices, as well as Microsoft … security controls and measures to mitigate risks. Automate security tasks, implement tools (e.g., Microsoft Defender, Nessus), and provide training where needed. Enhance and maintain threat detection and response processes, including the use of Sentinel SIEM and collaboration with an outsourced Security Operations Centre. Perform proactive threat hunting … Strong experience securing infrastructure in both physical and cloud environments (DevOps, Microsoft Cloud). Proficiency in security tooling, including SIEM platforms (e.g., Sentinel), and threat hunting. Experience with IP networks, WAN technologies, virtual servers, and endpoint security. Ability to manage multiple workstreams while ensuring quality and prioritisation. Strong communication More ❯
Posted:

Security Detection Engineer, AWS Security

London, United Kingdom
Amazon
Security Detection Engineer, AWS Security Job ID: Amazon Web Services Development Center Germany GmbH Come and build innovative services that protect our cloud from Internet-scale security threats! As a Security Engineer on our team, you'll help build and manage services that detect and automate the mitigation of … highlighted at re:Invent, re:Inforce, and the AWS Security Blog: Key job responsibilities Research, identify, and prioritize security problems detectable via automation. Develop detection prototypes to improve detection capabilities. Identify opportunities to prevent security issues at scale. A day in the life You will balance emergent security … support flexibility and work-life harmony to enable success both at work and at home. Basic Qualifications 3+ years of experience in security investigations, detection engineering, threat hunting, or incident response in large organizations. Understanding of TTPs used by threat actors. Knowledge of host and network telemetry More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Customer Success Manager - Bilingual Spanish and Portuguese

Oxford, Oxfordshire, United Kingdom
Hybrid / WFH Options
Sophos Group
that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure-play Managed Detection and Response (MDR) provider, supporting more than 28,000 organizations. In addition to MDR and other services, Sophos' complete portfolio includes industry-leading endpoint … cloud security that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through … organizations from phishing, ransomware, data theft, and other everyday and state-sponsored cybercrimes. The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Analyst

Farnborough, midlands, United Kingdom
Ubique Systems
Erskine/Farnborough (Complete Remote is fine) Job Description Summary - The Tier 2 Cyber Security Analyst is a mid-Tier position within the Cyber Threat Analysis Centre (CTAC), responsible for advancing the initial work conducted by Tier 1 Analysts and providing more in-depth analysis of potential threats to … Analyst works closely with senior and junior analysts to ensure a seamless SOC operation and acts as a bridge between foundational and advanced threat detection and response functions. Experience Required Understands advanced networking concepts, including IP addressing, basic network protocols, and how traffic flows within a network. Advanced More ❯
Posted:

Cyber Security Analyst

Farnborough, England, United Kingdom
Ubique Systems
Erskine/Farnborough (Complete Remote is fine) Job Description Summary - The Tier 2 Cyber Security Analyst is a mid-Tier position within the Cyber Threat Analysis Centre (CTAC), responsible for advancing the initial work conducted by Tier 1 Analysts and providing more in-depth analysis of potential threats to … Analyst works closely with senior and junior analysts to ensure a seamless SOC operation and acts as a bridge between foundational and advanced threat detection and response functions. Experience Required Understands advanced networking concepts, including IP addressing, basic network protocols, and how traffic flows within a network. Advanced More ❯
Posted:

Head of Security | Technology Team

London Area, United Kingdom
Concordium
security strategy for our blockchain network, infrastructure, and applications. Protocol & Network Security: Oversee and enhance security for consensus mechanisms, cryptographic algorithms, and network integrity. Threat Detection & Incident Response: Design and implement real-time monitoring, detection, and response frameworks to mitigate security threats and vulnerabilities. Smart Contract Security More ❯
Posted:

Head of Security | Technology Team

london, south east england, United Kingdom
Concordium
security strategy for our blockchain network, infrastructure, and applications. Protocol & Network Security: Oversee and enhance security for consensus mechanisms, cryptographic algorithms, and network integrity. Threat Detection & Incident Response: Design and implement real-time monitoring, detection, and response frameworks to mitigate security threats and vulnerabilities. Smart Contract Security More ❯
Posted:

Information Security Engineer - Development and Automation

London, United Kingdom
UnitedHealth Group
with a focus on development and automation in one or more of the following areas: Incident Response Email Security Data Protection/Governance Cybersecurity threat detection, monitoring, and reporting Cyber Intelligence and Threat Hunting Vulnerability Management Experience in Google Security Operations. Experience analyzing attack vectors, current threats More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cyber Security Engineer

Walsall, West Midlands, United Kingdom
HomeServe
cloud environments. A proactive mindset, with a drive to identify, own, and solve security challenges end-to-end. Strong technical skills across areas like threat detection, vulnerability management, identity and access control, and incident response. Familiarity with a range of security tools and platformssuch as SIEM, EDR, firewalls More ❯
Employment Type: Permanent
Salary: £65,000
Posted:

Senior Joint Professional Services - Technical Support Engineer

London, United Kingdom
OPSWAT
Transparency in Cybersecurity: OPSWAT's Approach to File Security & Threat Detection Senior Joint Professional Services - Technical Support Engineer Protecting the World's Critical Infrastructure OPSWAT, a global leader in IT, OT, and ICS critical infrastructure cybersecurity, delivers an end-to-end platform that gives public and private sector More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Solutions Architect (Network & Security)

London Area, United Kingdom
boxxe
you’ll be doing 🎯 Delivering high-quality pre-sales on network and security solutions such as next-generation firewalls, SD-WAN, network access control, threat detection and prevention Attending customer meetings to gather business and technical requirements before producing solution proposals Collaborating with Professional Services teams and third More ❯
Posted:

Solutions Architect (Network & Security)

london, south east england, united kingdom
boxxe
you’ll be doing 🎯 Delivering high-quality pre-sales on network and security solutions such as next-generation firewalls, SD-WAN, network access control, threat detection and prevention Attending customer meetings to gather business and technical requirements before producing solution proposals Collaborating with Professional Services teams and third More ❯
Posted:

Senior Product Security Engineer

London, United Kingdom
Qube Research & Technologies Limited
secure software development lifecycle (SDLC) with a focus on secure coding practices in languages like Python, C++, Rust, Go and Kotlin/Java. Conduct threat modeling, vulnerability assessments and security code reviews across different platforms, ensuring security is embedded at every stage of the development lifecycle. Provide mentorship, guidance … s standards. Integration of security scanning tools (SAST, DAST, etc.) into CI/CD pipelines and runtime environments to ensure continuous security monitoring and threat detection across Alibaba Cloud, AWS, Azure, and on-prem systems. Proactively identify security risks and develop strategies for risk mitigation in a fast … experience with one or more cloud platforms such as AWS, Microsoft Azure and Alibaba Cloud used in a hybrid environment. In-depth knowledge of threat modeling, risk assessment and development of mitigation strategies for large-scale, complex systems in a fast-paced environment. Experience integrating security scanning tools into More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

NMC Cyber Incident Management Lead

Skelmersdale, Lancashire, North West, United Kingdom
Hybrid / WFH Options
Police Digital Services
of Police Digital Service and provides visibility and control of information risks for policing. It supports the 24x7x365 nature of police operations, providing a threat detection and response capability for digital services before, during and after cyber-attacks, enabling stakeholders to understand and proactively manage risk across the More ❯
Employment Type: Permanent, Work From Home
Posted:

NMC Cyber Incident Management Lead

preston, lancashire, north west england, united kingdom
Hybrid / WFH Options
Police Digital Services
of Police Digital Service and provides visibility and control of information risks for policing. It supports the 24x7x365 nature of police operations, providing a threat detection and response capability for digital services before, during and after cyber-attacks, enabling stakeholders to understand and proactively manage risk across the More ❯
Posted:

Cyber Security Engineer

birmingham, midlands, United Kingdom
Insight Global
engineering pipelines. Utilize big data technologies (Databricks, Spark). Develop custom security applications, APIs, AI/ML models, and advanced analytic technologies. Experience with threat detection in Azure Sentinel, Databricks, MPP Databases (Snowflake), or Splunk. Expertise in network, endpoint, and cloud security, cryptography, malware analysis, vulnerability assessment, anomaly …/intrusion detection, incident response, and offensive security. Proficiency in AI/ML security and automation. Experience with data science and analytics in Databricks, Synapse Analytics, and large-scale data warehouses (Snowflake, Redshift, Presto). Proficiency in data visualization tools (Databricks, PowerBI) and the Python data science ecosystem (Jupyter More ❯
Posted:

Cyber Security Engineer

sheffield, south yorkshire, yorkshire and the humber, United Kingdom
Insight Global
engineering pipelines. Utilize big data technologies (Databricks, Spark). Develop custom security applications, APIs, AI/ML models, and advanced analytic technologies. Experience with threat detection in Azure Sentinel, Databricks, MPP Databases (Snowflake), or Splunk. Expertise in network, endpoint, and cloud security, cryptography, malware analysis, vulnerability assessment, anomaly …/intrusion detection, incident response, and offensive security. Proficiency in AI/ML security and automation. Experience with data science and analytics in Databricks, Synapse Analytics, and large-scale data warehouses (Snowflake, Redshift, Presto). Proficiency in data visualization tools (Databricks, PowerBI) and the Python data science ecosystem (Jupyter More ❯
Posted:

Senior Security Engineer - London

London, United Kingdom
Hyperexponential Ltd
the highest standards of security excellence. Key Responsibilities: Improve and implement DevSecOps processes Implement security controls in multi-account environments Implement compliance, vulnerability, and threat detection/prevention policies across cloud environments Fine-tune and automate threat policies for workload, container, and cloud products Provide expert guidance More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Cloud Security Engineer

York, Yorkshire, United Kingdom
Darkshield Technologies Ltd
and implement cloud security architectures across AWS, Azure, or Google Cloud. Develop and enforce cloud security controls , including IAM policies, encryption, and network security. Threat Monitoring & Incident Response Monitor cloud environments for security threats, vulnerabilities, and misconfigurations . Lead incident response efforts related to cloud security breaches and misconfigurations. … Implement SIEM and security monitoring tools for real-time threat detection. Cloud Security Assessments & Compliance Conduct cloud security assessments, penetration testing, and risk analysis . Ensure compliance with ISO 27001, NIST, CIS Benchmarks, GDPR , and other security standards. Collaborate with DevOps teams to integrate security into CI/CD More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:

Security Engineer, AWS Managed Services

Manchester, Lancashire, United Kingdom
Amazon
suspicious activity, and reporting issues so they can be adequately handled. You will work alongside our security engineers and partner teams to perform daily threat detection and incident response, using the full capability of AWS technologies and services to detect and mitigate cyber threats at a massive scale … enjoy learning about the most up-to-date new technologies and procedures to protect information systems and data. AMS Security provides 24/7 threat monitoring, investigation, and response across for customer's AWS environments. AMS enhances existing security capabilities by supporting security monitoring for all native AWS services … languages such as Python. PREFERRED QUALIFICATIONS - Knowledge of common system security vulnerabilities and remediation techniques. - Understanding of the tools, tactics, and techniques used by threat actors during security events. - Familiarity/experience with AWS services and security concepts. Posted: November 21, 2024 (Updated about 10 hours ago) Posted: December More ❯
Employment Type: Permanent
Salary: GBP Annual
Posted:
Threat Detection
England
10th Percentile
£46,500
25th Percentile
£52,500
Median
£72,500
75th Percentile
£92,500
90th Percentile
£119,500