incident response, compliance, and implementing innovative security technologies to strengthen the organisation's defenses. Essential functions of the job: SOC operations: perform incident triaging, threatdetection, and response activities. SIEM & EDR management: advance and configure SIEM and EDR systems to optimise threatdetection and response in … response: investigate and mitigate security incidents, applying root cause analysis and remediation. Security testing: conduct regular application and network security assessments to identify vulnerabilities. Threat intelligence: monitor the cybersecurity landscape for emerging threats and develop innovative defensive strategies. Development security: monitor version control systems, identify vulnerabilities, and collaborate with More ❯
by delivering security insights, enhancing incident response capabilities, and integrating a proprietary security platform into existing environments. You’ll be on the frontline of threatdetection and response, collaborating with IR teams and helping customers get the most out of the platform’s capabilities. If you’ve got … solid knowledge of the cyber ecosystem (think SIEM, EDR, SOAR, AD, firewalls, etc.) and a knack for digging into insider threat scenarios, read on. What you’ll be doing: Leading threatdetection and response projects with customer security teams Supporting the integration of a next-gen security More ❯
london, south east england, United Kingdom Hybrid / WFH Options
ZKM Consulting
by delivering security insights, enhancing incident response capabilities, and integrating a proprietary security platform into existing environments. You’ll be on the frontline of threatdetection and response, collaborating with IR teams and helping customers get the most out of the platform’s capabilities. If you’ve got … solid knowledge of the cyber ecosystem (think SIEM, EDR, SOAR, AD, firewalls, etc.) and a knack for digging into insider threat scenarios, read on. What you’ll be doing: Leading threatdetection and response projects with customer security teams Supporting the integration of a next-gen security More ❯
to come. About Us Our UK&I Advisory Practice is a leader in cyber security transformation, partnering with organizations to tackle the evolving digital threat landscape. We combine technical expertise with strategic business insight to deliver end-to-end cyber solutions that enable innovation and secure digital growth. Role … actionable strategies. Guide clients through compliance with DORA, NIS2, and UK regulatory frameworks. Design comprehensive cyber security architectures that integrate cloud, identity, data, and threat protection. Build actionable implementation roadmaps considering business objectives and constraints. Evaluate and integrate partner technologies (e.g., Microsoft, AWS, GCP) for optimal client outcomes. Deliver … business cases that communicate ROI and business enablement. Conduct maturity assessments using frameworks such as NIST CSF, ISO 27001, and industry-specific standards. Facilitate threat and risk workshops tailored to client environments. Showcase innovation through demos of emerging technologies like XDR, SASE, and SOAR. Practice Development Mentor consultants and More ❯
Greater London, England, United Kingdom Hybrid / WFH Options
Hunter Bond
global security posture. As a subject matter expert, you’ll lead initiatives across network, cloud, data, and system security guiding critical IT projects, running threat models for complex systems, and building automation to validate controls and resilience. You'll act as the escalation point for Security Operations, driving swift … assets. Manage and fine-tune security tools to ensure optimal performance and coverage. Provide expert-level, second-line support to Security Operations for complex threat scenarios. Conduct thorough threat modeling and risk assessments to uncover vulnerabilities and drive proactive defenses. Oversee the relationship with our Managed Detection & Response (MDR) partner to ensure top-tier threatdetection and response. Drive execution of the security roadmap, aligning with evolving business goals and threat landscapes. Partner with cross-functional teams to promote security best practices and embed security into daily operations. Requirements: 5+ years of hands More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Hunter Bond
global security posture. As a subject matter expert, you’ll lead initiatives across network, cloud, data, and system security guiding critical IT projects, running threat models for complex systems, and building automation to validate controls and resilience. You'll act as the escalation point for Security Operations, driving swift … assets. Manage and fine-tune security tools to ensure optimal performance and coverage. Provide expert-level, second-line support to Security Operations for complex threat scenarios. Conduct thorough threat modeling and risk assessments to uncover vulnerabilities and drive proactive defenses. Oversee the relationship with our Managed Detection & Response (MDR) partner to ensure top-tier threatdetection and response. Drive execution of the security roadmap, aligning with evolving business goals and threat landscapes. Partner with cross-functional teams to promote security best practices and embed security into daily operations. Requirements: 5+ years of hands More ❯
Manage risk proactively : identify and mitigate vulnerabilities across cloud environments and applications. Embed secure development : working with Engineering to integrate DevSecOps best practices. Enhance threatdetection and incident response : improving our ability to react quickly and effectively. Assess and secure third-party vendors : ensuring strong security across our More ❯
The Role: Own and execute the firm’s global cyber security strategy Lead and grow a small, globally distributed security team Oversee security operations , threatdetection, and incident response Ensure compliance with ISO 27001, NIST, GDPR and DORA Work with tech teams to embed secure software development practices More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Harrington Starr
The Role: Own and execute the firm’s global cyber security strategy Lead and grow a small, globally distributed security team Oversee security operations , threatdetection, and incident response Ensure compliance with ISO 27001, NIST, GDPR and DORA Work with tech teams to embed secure software development practices More ❯
Hampshire Up to £70,000 An opportunity to join a market leading business in their infrastructure team working to support and continuously improve technical threat identification, mitigation, and response measures, both physical and cloud-based. Key Responsibilities: Secure infrastructure across multiple UK and international offices, as well as Microsoft … security controls and measures to mitigate risks. Automate security tasks, implement tools (e.g., Microsoft Defender, Nessus), and provide training where needed. Enhance and maintain threatdetection and response processes, including the use of Sentinel SIEM and collaboration with an outsourced Security Operations Centre. Perform proactive threat hunting … Strong experience securing infrastructure in both physical and cloud environments (DevOps, Microsoft Cloud). Proficiency in security tooling, including SIEM platforms (e.g., Sentinel), and threat hunting. Experience with IP networks, WAN technologies, virtual servers, and endpoint security. Ability to manage multiple workstreams while ensuring quality and prioritisation. Strong communication More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Premier Group
Hampshire Up to £70,000 An opportunity to join a market leading business in their infrastructure team working to support and continuously improve technical threat identification, mitigation, and response measures, both physical and cloud-based. Key Responsibilities: Secure infrastructure across multiple UK and international offices, as well as Microsoft … security controls and measures to mitigate risks. Automate security tasks, implement tools (e.g., Microsoft Defender, Nessus), and provide training where needed. Enhance and maintain threatdetection and response processes, including the use of Sentinel SIEM and collaboration with an outsourced Security Operations Centre. Perform proactive threat hunting … Strong experience securing infrastructure in both physical and cloud environments (DevOps, Microsoft Cloud). Proficiency in security tooling, including SIEM platforms (e.g., Sentinel), and threat hunting. Experience with IP networks, WAN technologies, virtual servers, and endpoint security. Ability to manage multiple workstreams while ensuring quality and prioritisation. Strong communication More ❯
security initiatives and strategy • Implement a best practice IT Controls Framework • Act as the security SME across IT, overseeing security operations, incident management and threatdetection • Ensure robust third-party security, including commercial agreements • Implement security policies and standards • Manage cybersecurity risks and response to incidents • Implement plans More ❯
culture of security awareness, embedding security by design principles throughout the business. Security Operations and Incident Response: Own and manage critical security processes, including threatdetection and incident response, vulnerability and patch management, security advisory and consultancy, and security testing, including the scoping and organisation of external penetration … across multiple teams. You can influence people of all grades to deliver the right outcomes. Security Management. IT management (ITILv4). Continuous Monitoring/Threat Alerts. Managing security incidents and non-conformances. Experience with Data protection duties and GDPR. Desirable (CISM) certification or CISSP desirable to have. We are More ❯
degree in Information Security, Computer Science, or related field Additional Skills Strong hands-on network and security background Cisco networking Cisco firewalls (Firepower/ThreatDetection) Palo Alto firewalls SIEM experience (Logarithm desirable) Web proxy (Forcepoint desirable) Governance skills Policy writing/reviewing Reporting KPI monitoring Certifications like More ❯
support browser-based identity security Building scalable services to process and monitor identity signals in real time Collaborating with security experts to implement advanced threatdetection and prevention mechanisms Working on complex browser integrations and APIs Contributing to a high-performance, test-driven engineering culture Tech Stack Languages More ❯
london, south east england, United Kingdom Hybrid / WFH Options
Gold Group Ltd
support browser-based identity security Building scalable services to process and monitor identity signals in real time Collaborating with security experts to implement advanced threatdetection and prevention mechanisms Working on complex browser integrations and APIs Contributing to a high-performance, test-driven engineering culture Tech Stack Languages More ❯
London, England, United Kingdom Hybrid / WFH Options
MFK Recruitment
3rd line support for complex technical issues, ensuring timely resolution and minimal disruption to clients. Ensure robust cyber security measures are in place, including threatdetection, response, and mitigation. Collaborate with clients to understand their IT needs and provide tailored solutions. Document technical procedures, configurations, and project plans. More ❯
london, south east england, United Kingdom Hybrid / WFH Options
MFK Recruitment
3rd line support for complex technical issues, ensuring timely resolution and minimal disruption to clients. Ensure robust cyber security measures are in place, including threatdetection, response, and mitigation. Collaborate with clients to understand their IT needs and provide tailored solutions. Document technical procedures, configurations, and project plans. More ❯
in a fast-paced, evolving industry, this could be a great fit for you. The Company: Our client is a leading, innovative, UK-based ThreatDetection and Response provider, offering protection to government bodies, mid-market and enterprise clients worldwide. Last year they doubled their sales team and More ❯
Things (XIoT). The Claroty Platform integrates with customers' existing infrastructure to provide a full range of controls for visibility, exposure management, network protection, threatdetection, and secure access. Our solutions are deployed by over 1,000 organizations at thousands of sites across all seven continents. Claroty is More ❯
our fraud prevention strategy. Monitor and manage fraud rules and risk thresholds in real time. Work closely with fraud tool providers to ensure proactive threatdetection and mitigation. Stay up to date with emerging fraud trends and continuously evolve prevention tactics. Balance fraud prevention with user experience to More ❯
Central London, London, United Kingdom Hybrid / WFH Options
Halian Technology Limited
tools such as Microsoft Defender for Cloud, Defender for Endpoint, and Nessus. Collaborate with our outsourced SOC team to enhance Sentinel SIEM, runbooks, and threat detection. Lead investigations into security incidents and conduct proactive threat hunting. Manage endpoint security, patching, vulnerability scanning, and system hardening. Support audits and More ❯
CD) pipelines, ensuring rapid, secure, and reliable deployment of JavaScript applications. Develop and maintain automated security tools for static code analysis, penetration testing, and threat modelling. Implement real-time monitoring, alerting, and response strategies for security incidents. About You: Strong proficiency in Cloud Environment ideally in GCP services (Compute … like vulnerability scanning, encryption, authentication, and secrets management (Vault, Key Management Service). Experience with SIEM platforms (Splunk, Datadog, or equivalent) for monitoring and threat detection. You thrive when working as part of a team, are comfortable in a fast-paced environment, have excellent written and verbal English skills More ❯