1 to 25 of 31 Remote/Hybrid Threat Detection Jobs in London

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
Westminster, City of Westminster, Greater London, United Kingdom
Employment Type
Permanent
Salary
£60000 - £80000/annum
well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We’re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you’ll focus on building high … impact detection capabilities , shaping how security protects sensitive genomic and AI-driven data at scale. This role offers hybrid/remote working options, a salary range of £60,000 - £80,000 and benefits. Why This Role is Exciting High autonomy : Lead projects from idea to deployment Innovation-driven : Develop ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources Ltd
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £80,000 per annum
well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We’re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position, you’ll focus on building high … impact detection capabilities , shaping how security protects sensitive genomic and AI-driven data at scale. This role offers hybrid/remote working options, a salary range of £60,000 - £80,000 and benefits. Why This Role is Exciting High autonomy : Lead projects from idea to deployment Innovation-driven : Develop ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
Umbrella) | Inside IR35 Remote with occasional client site visits Active SC Clearance Required Contract until March 2027 Security Operations Analyst | Cyber Threat Intelligence | Threat Modelling We are looking for an experienced Security Operations Analyst to join a long-term cybersecurity programme supporting critical enterprise and government-facing environments. … This is an excellent opportunity for a security professional with expertise in Cybersecurity Operations, Cyber Threat Intelligence, and Threat Modelling to play a key role in identifying, assessing, and mitigating cyber risks while enhancing the overall security posture of complex organisations. Working alongside Security Architects, Threat Intelligence ...

Security Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use‐case tuning, and post‐incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client‐facing ...

Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
passionate individual who enjoys building defences against today's cyber threats, targeting infrastructure, data, and employees. You should be able to analyze the current threat environment and Intigriti’s security posture, then design and implement controls in line with our risk appetite. This position requires strategic thinking, technical expertise … controls leveraging security tools, including EDR, SIEM, phishing simulation, and compliance solutions, among others. In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections ...

Cloud Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
respond to incidents, and build the security foundations that enable teams to move quickly with confidence. The team owns critical cloud security capabilities including detection engineering, cloud security monitoring, incident response, cloud security controls, and the security tooling that protects Fin's production environments. The team is responsible … operated. As Fin continues to expand its capabilities and adoption, you'll help define how cloud security evolves alongside increasingly sophisticated systems and threat models. We're taking an AI-first approach to security, investing in areas such as AI-assisted detection engineering, automated investigations, continuous monitoring ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

Director, ProdSecOps

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Sports. It is a program leadership role responsible for embedding security into how products are designed, built, and shipped — and for owning the full threat detection and incident response pipeline end-to-end. The Director sets direction for a global team spanning secure development lifecycle, security architecture, threat … time zones. Set team objectives aligned to functional and company-level OKRs. Own delivery against them. Product Security Drive shift-left security — embed threat modelling, secure design review, and SDL practices into the development lifecycle. Own the security architecture direction, including zero trust principles and secure design patterns. ...

SOC Engineer

Hiring Organisation
Invitise Ltd
Location
City of London, London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £450 per day
primarily remote role with occasional on-site visits to London. You will be working within a security operations function, supporting the monitoring, detection and response to security threats across the organisation's estate. You will bring solid hands-on experience across SIEM and log management tooling, working independently … experience in the following: Hands-on experience with Splunk in a SOC environment Cribl experience for log management and data pipeline optimisation Security monitoring, threat detection and incident response Working within a security operations centre at a mid-senior level SC clearance held or ability to pass Interested ...

Sr. Software Engineer, Backend/Cloud (Hybrid, London)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
CrowdStrike offers flexibility and autonomy while encouraging responsible AI adoption, experimentation, and innovation. We are seeking a Senior Software Engineer, Cloud to join our Threat Detection and Incident Response (TDIR) team and help revolutionize security management with our AI-native Falcon Next-Gen SIEM platform, enabling customers … last for current scale and the future. Lead system design and architecture decisions, including design reviews and RFC processes. Develop Go-based microservices supporting threat detection, case management, and incident response workflows, alongside RESTful APIs powering customer-facing capabilities. Take end-to-end ownership of technical initiatives, individually ...

Security Engineer - SOC & Threat Detection Leader (Hybrid)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
will run SOC operations, expand log coverage, and build high‐quality detections using MITRE ATT&CK and D3FEND. You will lead incident response, threat detection, and security training, while promoting a security‐minded culture and ensuring compliance with industry standards. #J-18808-Ljbffr ...

SOC Manager

Hiring Organisation
Fox Morris Group Ltd
Location
E8, Hackney Central, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£700 - £850/day ASAP
This is an excellent opportunity for a strategic cyber security leader to take ownership of a mature Security Operations Centre, driving continuous improvement, enhancing threat detection capabilities and leading a high-performing security team. About the Role As the SOC Manager, you will be responsible for leading … Security Operations Centre, ensuring effective security monitoring, incident response and threat intelligence capabilities while shaping the future direction of the SOC. Working closely with internal stakeholders, external vendors and managed security service providers (MSSPs), you will play a key role in strengthening the organisation's cyber resilience. Essential Experience ...

Senior Security Analyst

Hiring Organisation
Robert Half
Location
London, South East, England, United Kingdom
Employment Type
Temporary
Salary
Salary negotiable
Security Operations Centre (SOC) or enterprise security operations environment. Proven hands-on experience administering and optimising enterprise security technologies, including SIEM platforms, Endpoint Detection & Response (EDR), Secure Web Gateways, Email Security solutions, and Cloud Security platforms. Strong understanding of security operations, with experience in incident response, threat detection, investigation, and remediation. Solid knowledge of network security principles, including firewalls, intrusion detection and prevention systems (IDS/IPS), TCP/IP, routing, switching, and packet analysis. Experience identifying, assessing, and mitigating security risks through vulnerability management, security assessments, and penetration testing. Ability to investigate and troubleshoot complex ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
such as Wiz, Microsoft Defender, and ArmorCode. Prioritise and coordinate remediation efforts based on business impact, exploitability, and risk exposure. Conduct security assessments and threat modelling exercises for new projects and technologies. Ensure security controls align with SOC2, ISO27001, CIS Controls, and organisational risk management requirements. Produce reports … support Infrastructure as Code (IaC) solutions using Terraform and cloud-native tooling. Integrate security telemetry into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience: Microsoft Entra ...

Mid-Level Cyber Security Analyst

Hiring Organisation
Nextech
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £55,000 per annum
excellent opportunity for someone with 2-4 years' hands-on security experience to take the next step in their career, working across threat detection, incident response, and security operations in a collaborative, fast-paced environment. Key Responsibilities Monitor security alerts and investigate potential threats using SIEM tooling Support ...

Cyber Technical Delivery Manager

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
Identity & Access Management (IAM) Privileged Access Management (PAM) Security Operations (SOC) SIEM Platforms Cloud Security Vulnerability Management Data Protection and DLP Security Monitoring and Threat Detection Secure File Transfer and Encryption Programmes Coordinate technical teams to ensure successful implementation of security controls and technologies. Stakeholder Management Engage with ...

Information Security Manager with Network Engineering Skills

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
governance. Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. Demonstrated network engineering experience (e.g., routing, switching, firewalls, VPNs, secure network design). Relevant certifications such … Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc Network Detection and Response Network Encryption (Site to Site VPN’s) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host ...

SecOps Engineer

Hiring Organisation
Context
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£75,000
risk and contributing to the continuous improvement of the company's overall security posture. Responsibilities: Monitor security tools including SIEM (QRadar) and respond to threat detection alerts Triage, analyse and prioritise security (via ServiceNow) Investigate root causes of security issues and design effective remediation solutions Oversee Patch Management ...

Senior Data Scientist - (Privacy & Security Controls)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
ambitious collaboration between the public, charity and private sectors, designed to help people live healthier lives for longer through better prevention, earlier detection and improved treatment of diseases. We will speed up the discovery of new methods of early disease detection, and the evaluation of new diagnostic tools … evaluate the privacy, fidelity and utility trade-offs of different approaches. Collaborate with our Information Security team on data-driven security control assessment, threat detection and monitoring approaches, including identifying signals of risky behaviour, anomalous activity or misuse of data access environments, and cyber risk quantification. Build prototypes ...

Cyber Security Analyst

Hiring Organisation
GEM Partnership
Location
City of London, London, Lime Street, United Kingdom
Employment Type
Permanent
certification. Responsibilities: * Implement, manage and actively monitor security controls across email, web, endpoint and cloud environments. * Monitor and respond to security incidents using advanced threat detection tools. * Day-to-day administration of Netskope web filtering platform including website unblocks and policy updates. * Day-to-day administration of Mimecast ...

Senior Security Engineer

Hiring Organisation
Inspire People
Location
South Croydon, Surrey, England, United Kingdom
Employment Type
Full-Time
Salary
£48,400 - £59,300 per annum
from incidents, operational activity and service development. Identify and manage technical security risks, vulnerabilities and appropriate mitigations. Develop and maintain security monitoring, vulnerability and threat-detection tooling. Provide technical guidance, assurance and mentoring to operational teams, projects and colleagues. Essential skills Strong experience designing and implementing technical security … Entra. Extensive knowledge of security controls across Windows, Linux, mainframe, AWS or Azure environments. Strong analytical and problem-solving skills, including threat analysis and security incident response. Ability to manage priorities, communicate technical risks clearly and demonstrate leadership through coaching or mentoring. Desirable criteria Experience working across both cloud ...

IAM Architect (Entra ID)

Hiring Organisation
DGH Recruitment
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
governance initiatives, including machine-learning-based anomaly detection. - Integrate and optimise multi-factor authentication, biometrics, and mobile identity capabilities. - Drive adoption of identity threat detection and response (ITDR) solutions. - Develop and maintain IAM architecture covering identity lifecycle, governance, and privileged access. - Design secure authentication and authorisation patterns (OpenID ...

AI Engineer - Systems Integrator

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Familiarity with cloud environments such as GCP Knowledge of modern software development practices Experience working with open-source AI models Interest in cyber security, threat detection or security operations Location & Working Pattern London Hybrid (fortnightly office travel plus occasional customer and team events) Benefits Opportunity to work ...

Information Security Director

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
interpersonal skills enabling effective presentation of ideas, drive change, influence stakeholders and build relationships. In‐depth knowledge of security principles, technologies and best practices, threat detection and mitigation strategies. Proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques. Advantageous Skills and Experience Experience ...

SOC Analyst

Hiring Organisation
TSR Select
Location
City of London, London, United Kingdom
Microsoft Sentinel and Microsoft Defender XDR. Good understanding of the Microsoft Defender suite, including Defender for Endpoint. Knowledge of Microsoft 365 security from a threat detection and response perspective. Key Responsibilities Monitor, triage and respond to security alerts across managed customer environments. Investigate security events and perform first ...