Tactical CyberThreat Intelligence Analyst (Analyst I) About the role Location: Office (London) or Home based Duration: Permanent, Full time The primary role of the Tactical CyberThreat Intelligence Analyst is to support the production of accurate, high quality and timely intelligence products. This … will include support to management, peers and members of staff and clients, both in-house and clients. Tactical CyberThreat Intelligence Analysts will: Create Open Source summaries concerning cyberthreat incidents Create and update threat actor profiles detailing salient information about cyberthreat actors. Assist in the production of strategic reporting concerning technical themes of interest (malware, IOCs, actor TTPs/campaigns and other developments which have the potential to impact the cyberthreat landscape). Respond to Requests for Intelligence (RFIs) from clients. Contribute to More ❯
We are seeking a Threat Analyst to join our rapidly growing Information Security team. This is a unique opportunity for an aspiring and motivated professional to be at the forefront of our cyber defence strategy, protecting our brand from existing and emerging threats. You will combine the … expertise of a Threat Hunter and CyberThreat Intelligence Analyst, and will work alongside our Senior Threat Analyst to build our threat intelligence and hunting capabilities from the ground up. You'll have a major input on what new tooling and services we use … opportunity to join a dynamic security team, reporting to the Head of Cyber Defence, and lead the development of advanced CTI and threat hunting strategies, seamlessly integrating into our security processes and driving continuous improvements. What you'll be doing In this role, your key responsibilities will More ❯
CyberThreat Intelligence (CTI) Manager 📍 Location: Hybrid – London 💼 Type: Permanent A high-impact greenfield role with a global aviation and travel leader, this is an opportunity to shape the CTI capability from the ground up. We’re supporting a well-established organisation in their search for a … CyberThreat Intelligence Manager to define and lead threat intel strategy across a complex, multi-entity environment. 🔧 The Role: As CTI Manager, you’ll be responsible for: Designing and building a greenfield CTI function to support proactive threat detection and strategic decision-making Developing a … threat intelligence strategy aligned with business risks and SOC priorities Collaborating with a newly selected MSSP to integrate threat feeds, TTPs, and IOCs into detection and response workflows Defining intelligence requirements, deliverables, and reporting outputs across OpCos and leadership teams Supporting SOC and CIRT operations through contextualised intelligence More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Adeptis Group
CyberThreat Intelligence (CTI) Manager 📍 Location: Hybrid – London 💼 Type: Permanent A high-impact greenfield role with a global aviation and travel leader, this is an opportunity to shape the CTI capability from the ground up. We’re supporting a well-established organisation in their search for a … CyberThreat Intelligence Manager to define and lead threat intel strategy across a complex, multi-entity environment. 🔧 The Role: As CTI Manager, you’ll be responsible for: Designing and building a greenfield CTI function to support proactive threat detection and strategic decision-making Developing a … threat intelligence strategy aligned with business risks and SOC priorities Collaborating with a newly selected MSSP to integrate threat feeds, TTPs, and IOCs into detection and response workflows Defining intelligence requirements, deliverables, and reporting outputs across OpCos and leadership teams Supporting SOC and CIRT operations through contextualised intelligence More ❯
CyberThreat Intelligence (CTI) Manager 📍 Location: Hybrid – London 💼 Type: Permanent A high-impact greenfield role with a global aviation and travel leader, this is an opportunity to shape the CTI capability from the ground up. We’re supporting a well-established organisation in their search for a … CyberThreat Intelligence Manager to define and lead threat intel strategy across a complex, multi-entity environment. 🔧 The Role: As CTI Manager, you’ll be responsible for: Designing and building a greenfield CTI function to support proactive threat detection and strategic decision-making Developing a … threat intelligence strategy aligned with business risks and SOC priorities Collaborating with a newly selected MSSP to integrate threat feeds, TTPs, and IOCs into detection and response workflows Defining intelligence requirements, deliverables, and reporting outputs across OpCos and leadership teams Supporting SOC and CIRT operations through contextualised intelligence More ❯
flexible/hybrid working) Salary: £50,000 - £65,000 Exciting opportunity to join a leading global Insurtech organisation as a key member of the Threat Intelligence and Proactive Services capabilities. This role sits within the Cyber Insights & Analytics function, part of the Cyber Underwriting division … underwriters to deliver the proactive cybersecurity services, engage with internal and external stakeholders, and help insureds and stakeholders navigate the evolving cyberthreat landscape. Responsibilities will include: Deliver Cybersecurity Services: You will help deliver our proactive services such as cyber tabletop exercises, security awareness and … training sessions, development of cyber policies and procedures, and threat report briefings. Threat Intelligence Reporting: You will transform complex threat intelligence data into actionable insights by crafting detailed, quarterly reports that spotlight industry trends and emerging risks. Your analysis will empower policyholders with the knowledge More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Ashdown Group
Incident Response Manager (CyberThreat) - Global financial services company - Full time permanent role - Salary up to £100,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyberthreat division. This is a fantastic opportunity to join a large cyber and information security team that lead the way in technology and tooling in a 24/7 global environment. Duties will include: - Managing a team of CyberThreat Analysts that … requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous team management experience - Good understanding of incident response frameworks and methodologies (ICERF) - Good understanding of threats, vulnerabilities and processes More ❯
Security Incident Response Manager (CyberThreat) - Global financial services company - Full time permanent role - Salary up to £100,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyberthreat division. This is a fantastic opportunity to join a large cyber and information security team that lead the way in technology and tooling in a 24/7 global environment. Duties will include: - Managing a team of CyberThreat Analysts that … requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous team management experience - Good understanding of incident response frameworks and methodologies (ICERF) - Good understanding of threats, vulnerabilities and processes More ❯
London, Broad Street, United Kingdom Hybrid / WFH Options
Ashdown Group
Security Incident Response Manager (CyberThreat) - Global financial services company - Full time permanent role - Salary up to £100,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyberthreat division. This is a fantastic opportunity to join a large cyber and information security team that lead the way in technology and tooling in a 24/7 global environment. Duties will include: - Managing a team of CyberThreat Analysts that … requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous team management experience - Good understanding of incident response frameworks and methodologies (ICERF) - Good understanding of threats, vulnerabilities and processes More ❯
for establishing and maturing the group's overall cyber security posture, ensuring it effectively mitigates risks in the face of the evolving threat landscape. This involves developing a comprehensive cyber security capability framework, assessing the maturity of individual train operating companies (TOCs) against this framework … oversee implementation of tailored uplift programmes. Develop core cyber capabilities: Including robust cyber incident management (with executive reporting) and comprehensive threat intelligence/vulnerability management programs as key priorities. Group Cyber Services & Technology: Develop, promote and implement shared cyber services and … developing and implementing cyber security strategies, frameworks (including maturity models), and risk management methodologies in complex organisations. Accredited in ISO27001 or similar. Threat Landscape & Incident Response: Deep understanding of modern cyberthreats and attack vectors, coupled with proven experience in developing and managing effective incident More ❯
We now have an exciting opportunity for a Director to join our Digital Risks (Cyber Security) team in London. This senior role aims to support the growth of Digital Risks in EMEA, focusing on cyber security and digital risk management programs, including IT/OT security … compliance requirements such as NIST800-53, ISO27001, NIST CSF, NIS 2, DORA. Applying expertise in emerging technologies like AI, IoT, cloud solutions, and advanced threat detection systems. Advising on their application, assessing suitability, and determining optimal implementation timing and approach. Managing large-scale programmatic engagements, stakeholder engagement, scoping, resource … cyber risk management and technology resilience. Managing key client relationships supported by account, sales, and marketing plans. Positioning our cyberthreat intelligence, assurance, and incident response practices. Providing energetic consulting leadership in KSA, promoting Control Risks as a cyber and technology risk advisor More ❯
ll be instrumental in ensuring they are compliant with their information security accreditations and our data, systems, and networks are protected from evolving cyber threats. Nesta are a Charity and an innovation agency for social good. They design, test and scale new solutions to society's biggest problems … a week on site in London. As the Group Information Security Analyst/Officer, you will: Lead and maintain security accreditations: Successfully manage Cyber Essentials, Cyber Essentials Plus, and ISO 27001 certifications. Deliver comprehensive training: Develop and deliver engaging training on ISO 27001, cybersecurity awareness, AI … strong security posture. ISMS management: Coordinate the improvement and maintenance of the Information Security Management System (ISMS) in line with ISO 27001 and Cyber Essentials. Experience Required: Information Security Management: Extensive experience in implementing and maintaining ISMS and achieving ISO 27001 certification. Proven track record managing security accreditations More ❯
We are sourcing Senior Cyber Security Engineer for our client who is a Global Leader within their field. These positions are for the UK division working remotely, except for the occasional client visit. Candidates must be located and authorised to work in the UK without any visa requirements … solutions that not only meet compliance with regulations and industry standards but also exceed expectations. Oversee incident response, vulnerability management, and cyberthreat hunting. Execute security solutions applying cutting-edge technologies like firewalls, intrusion detection and prevention systems, antivirus software, and vulnerability scanners. Proactively recommending system tuning … and tuning Enterprise level SIEM tools. Extensive operations experience (minimum of 3+ years). Extensive knowledge of Security including types and methods of cyber-attack and underlying network protocols. Extensive experience escalating incidents to, and in driving incident resolution with, technology vendors and stakeholders. Demonstrable experience in supporting More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Saepio Information Security
OTE – £45k in year 1) Hours: Full Time - (Mon – Fri, 9am – 6pm) Reporting To: Internal Sales Manager Who are Saepio? The world of cyber security is fast paced and exciting, so why not join our journey and be part … of a fun and successful company with a real community atmosphere whilst helping beat the cyber criminals!? As the cyberthreat landscape continues to evolve, Saepio is growing rapidly to meet the increasing demand for top-notch cybersecurity solutions. To support our growth, we are More ❯
Role Title: Senior Security Engineer - Security Operations Location: London or Sheffield (Hybrid) About the role: RMG Cyber Security Operations is dedicated to safeguarding our information assets and managing security incidents through robust detection, analysis, and response strategies. We are seeking a Senior Security Engineer to enhance our team … a wide range of security technologies, including SIEM solutions, DLP solutions, firewall solutions, cloud security centers, IPS (Intrusion Prevention Systems), CTI (CyberThreat Intelligence) solutions, and vulnerability scanners. Proxy solutions like Zscaler are essential. At least one professional certification; CISSP, CISM, CCSP. What we offer you More ❯
PowerShell, etc.). Understanding of data classification and dataset protection. Proven experience configuring SIEM technologies for data ingestion, baselining, and parsing to support cyber incident response. Knowledge of designing and deploying SIEM and other cybersecurity technologies. Experience working with technical stakeholders … to achieve goals. Understanding of computer forensics, malware unpacking, memory imaging, and extraction. Proven experience using industry-standard IT technologies for cyberthreat detection and response, focusing on SIEM. Ability to independently develop plans and reports before escalation. Additional Skills (Preferred) Experience designing and operating advanced security More ❯
City of London, Greater London, UK Hybrid / WFH Options
Net Talent
Package 🕒 Type: Full-Time | Permanent Are you ready to take on a hands-on role protecting business-critical systems and data from evolving cyberthreats? We’re seeking a technically skilled Information Security Specialist to join our team and lead the implementation and operation of essential security controls More ❯
Essential Skills and Experience Strong communication and cross-functional collaboration skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyberthreats, vulnerabilities, and incident response Experience with hybrid (on-prem/cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO More ❯
Essential Skills and Experience Strong communication and cross-functional collaboration skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyberthreats, vulnerabilities, and incident response Experience with hybrid (on-prem/cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Intec Select
Essential Skills and Experience Strong communication and cross-functional collaboration skills Proven ability to manage multiple priorities and deliver results Deep knowledge of cyberthreats, vulnerabilities, and incident response Experience with hybrid (on-prem/cloud) environments and SIEM tools Understanding of security standards (PCI DSS, NIST, ISO More ❯
teamwork. Proficiency in English; additional languages (Spanish, German) are a plus. Additional advantageous experience: Experience with metadata, anonymization software like TOR. Knowledge of cyberthreats such as malware, ransomware, botnets. What you'll get in return: Flexible working hours. Option to buy or sell holiday days and carry More ❯
risk-related data and trends. Working knowledge of antifraud solutions/risk systems/device fingerprinting and CRM/case management tools. Knowledge about cyberthreats (e.g., malware, ransomware, botnets, exploit rootkits). Knowledge of machine learning model validation, swap population review, deployment. Any of the below will be an advantage More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Defence
the maturity of security operations. This role is aligned to a national programme improving the government's ability to detect and respond to cyberthreats across multiple portfolios. You'll work alongside the SIEM Product Owner and CSOC teams to define and deliver architectural and engineering enhancements using … Architecture , particularly in CSOC environments Demonstrated experience leading end-to-end SIEM improvement initiatives Proven ability to define and implement change within complex cyber environments Excellent documentation, communication, and stakeholder engagement skills Solid AWS infrastructure knowledge (EC2, S3, SQS, etc.) Desirable Skills & Experience Experience with SIEM convergence from More ❯
Build OT-specific detection and response capabilities, including custom playbooks. Technology Implementation Oversee global deployment of SIEM (e.g., Splunk, Graylog, Wazuh), SOAR, EDR, and Threat Intel platforms. Vendor & Team Management Act as the primary contact for the outsourced SOC provider; manage SLAs and vendor performance. Build and mentor internal … Technical expertise with SIEM, SOAR, EDR, and OT protocols Familiar with SCADA/ICS environments and MITRE ATT&CK framework. Skilled in incident response, threat hunting, SLA management, and executive communication. Preferred Qualifications Degree in Computer Science, InfoSec, or related field. Certifications: CISSP, CISM, GIAC (e.g., GCFA, GNFA), or … OT certs (e.g., GICSP, ISA/IEC 62443). Familiarity with cloud security tools, IT/OT integration, and threat modeling. More ❯
Build OT-specific detection and response capabilities, including custom playbooks. Technology Implementation Oversee global deployment of SIEM (e.g., Splunk, Graylog, Wazuh), SOAR, EDR, and Threat Intel platforms. Vendor & Team Management Act as the primary contact for the outsourced SOC provider; manage SLAs and vendor performance. Build and mentor internal … Technical expertise with SIEM, SOAR, EDR, and OT protocols Familiar with SCADA/ICS environments and MITRE ATT&CK framework. Skilled in incident response, threat hunting, SLA management, and executive communication. Preferred Qualifications Degree in Computer Science, InfoSec, or related field. Certifications: CISSP, CISM, GIAC (e.g., GCFA, GNFA), or … OT certs (e.g., GICSP, ISA/IEC 62443). Familiarity with cloud security tools, IT/OT integration, and threat modeling. More ❯