51 to 75 of 195 Threat Detection Jobs in London

Embedded Cyber Detection and Response Deputy Team Lead

Hiring Organisation
Control Risks
Location
London, United Kingdom
Salary
£ 80 K
DescriptionThe Cyber Detection and Response Deputy Team Lead serves as the operational second-in-command of the Cyber Detection and Response Team (DART), bridging the gap between hands-on cyber operations and team leadership. The role supports the Team Lead in the ongoing development, maturation, and delivery … client's detection and response capabilities, while providing technical leadership and operational oversight across day-to-day security operations.This position remains actively involved in threat detection, incident response, threat hunting, and detection engineering activities while also assuming supervisory and coordination responsibilities. The Deputy Team Lead ...

Interim Cyber Security Officer

Location
Greater London, England, United Kingdom
CrowdStrike and Splunk platforms. The successful candidate will ensure the effective integration, configuration, and operational use of security tools to enhance threat detection, incident response, and overall security maturity. Additionally, the role involves providing technical leadership, mentoring, and knowledge transfer to bolster internal cyber capabilities during a period … point for high‐severity security incidents, facilitating rapid investigation, containment, and remediation using EDR and SIEM tools. Develop and implement SOAR workflows to automate detection, response, and security operations processes. Conduct proactive threat hunting using SIEM/EDR data and MITRE ATT&CK‐aligned techniques. Support vulnerability assessment ...

Head of Cyber Defence

Hiring Organisation
IDEX Consulting
Location
London, United Kingdom
Salary
£ 100 K
cyber security leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives.Key ResponsibilitiesLead and manage the Cyber Defence function, overseeing … security operations, threat intelligence, vulnerability management, and incident response capabilities.Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats.Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents.Oversee threat intelligence programmes, identifying emerging risks and implementing ...

Senior Response Engineer - Cloudflare Managed Defense Center (CMDC)

Location
Greater London, England, United Kingdom
ranked among the World’s Most Innovative Companies by Fast Company. Available Locations: London, United Kingdom About The Department Cloudforce One is Cloudflare's threat operations and research team, responsible for identifying and disrupting cyber threats ranging from sophisticated cyber criminal activity to nation-state sponsored advanced persistent threats … . Cloudforce One works in close partnership with external organizations and internal Cloudflare teams, continuously developing operational tradecraft and expanding ever-growing sources of threat intelligence to enable expedited threat hunting and remediation. Members of Cloudforce One are at the helm of leveraging an incredibly vast and varied ...

Senior Cloud Security Engineer, GCP

Location
Greater London, England, United Kingdom
automate GCP technical controls for continuous compliance with PCI DSS and 3DS Drive security infrastructure deployments across growing environments Perform security assessments, audits, threat modelling and architecture design reviews Identify and triage risks and vulnerabilities, and design corrective security controls Lead incident response, including investigation and remediation of security … preferable Networking best practices and RBAC implementation Experience with Infrastructure as Code and provisioning tools, particularly Terraform Experience configuring GCP-native security posture and threat management with Security Command Center Experience securing the software supply chain with Binary Authorization, Artifact Registry and Artifact Analysis Experience with Cloud KMS, Cloud ...

Cybersecurity Incident Response Lead

Hiring Organisation
Creative Artists Agency
Location
London, United Kingdom
Salary
£ 80 K
Charlotte, Jacksonville, and Atlanta, among other locations globally. For more information, please visit . OVERVIEW Executive level position reporting to the Director of Cyber Threat Management & Incident Response, this is a hands-on senior security position working within the Information Security group and with the internal IT department. This … ensure consistent, measurable end to end triage and closure of security related events. The successful candidate will work to assess, develop, and deploy detection capabilities and processes ensuring enterprise systems and data are protected, serving as the Incident Response Lead for European and Pacific regions of the organisation. ...

Security Engineer, Detection and Response

Location
Greater London, England, United Kingdom
Design and implement detection strategies for AI-specific threats including prompt injection, model extraction, data poisoning, adversarial examples, and unauthorized access to training datasets or model weights Build automated response playbooks and orchestration workflows to contain threats and remediate compromised inference endpoints Lead security incident response coordination across Cloud … clusters and training infrastructure Analyze model outputs for signs of compromise and reproduce AI-specific vulnerabilities Identify visibility gaps in distributed training environments Build detection-as-code frameworks with version control and automated deployment Onboard telemetry from AI training infrastructure and inference endpoints Create dashboards tracking model security metrics ...

Elasticsearch Consultant

Hiring Organisation
Xcede
Location
London, United Kingdom
Employment Type
Contract
design, implement and maintain security monitoring solutions using the Elastic Stack. The successful candidate will be responsible for developing scalable log-management and threat-detection capabilities across complex cloud and containerised environments. Key Responsibilities Design, deploy and support Elastic SIEM solutions using Elasticsearch, Logstash and Kibana. Build … maintain log-ingestion pipelines for infrastructure, applications, cloud platforms and security tools. Develop Kibana dashboards, alerts, detection rules and visualisations. Configure data parsing, enrichment, transformation and indexing within Logstash and Elasticsearch. Integrate Kafka to support reliable, high-volume event streaming and log ingestion. Deploy and operate Elastic components within ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, UK
Employment Type
Full-time
leading cyber incidents operationally, technically and commercially from end-to-end. You will act as a senior technical subject matter expert across incident response, detection engineering, cloud security and vulnerability management, while also providing calm, structured leadership during high-pressure situations. The environment is heavily Microsoft-focused, with particular … secure-by-design principlesDetection engineering and automationThreat and vulnerability managementYou will work closely with global technology and cyber teams to continuously improve monitoring, detection, response and remediation capabilities across hybrid cloud and on-premise environments. Key ResponsibilitiesIncident Response & Major Incident ManagementLead the end-to-end management of cyber security ...

Blockchain Security Operations Vice President

Location
Greater London, England, United Kingdom
Embrace the challenge of securing institutional blockchain infrastructure at scale, driving operational excellence across on-chain monitoring operations, and implementing cutting-edge detection capabilities for smart contract and digital asset security. As a Blockchain Security Operations Vice President in Cybersecurity & Tech Controls, you will contribute significantly to safeguarding … environment and driving continuous improvement in the firm. Job responsibilities Execute and influence the design of comprehensive security strategies, policies, and procedures to enhance threat detection capabilities and protect the organization's digital assets, smart contracts, and blockchain infrastructure from cybersecurity threats Proactively monitor and analyze complex ...

Director, R&D, Email & Collaboration Threat Protection

Hiring Organisation
Mimecast
Location
London, United Kingdom
Salary
> £ 150 K
Director, R&D, Email & Collaboration Threat Protection About MimecastMimecast is a leading cybersecurity company that helps organizations protect their people, data, and communications from today's most sophisticated threats. With over 42,000 customers worldwide, we analyze more than 18 billion security events daily to stop attacks before they … both an organization's greatest asset and its most significant security vulnerability. Our platform addresses the human element of cybersecurity by combining advanced threat detection, awareness training, and Incydr risk management to reduce the likelihood and impact of human-caused security incidents.AI-First Engineering at MimecastMimecast ...

Director, R&D, Email & Collaboration Threat Protection

Location
Greater London, England, United Kingdom
Director, R&D, Email & Collaboration Threat Protection About Mimecast Mimecast is a leading cybersecurity company that helps organizations protect their people, data, and communications from today's most sophisticated threats. With over 42,000 customers worldwide, we analyze more than 18 billion security events daily to stop attacks before … both an organization's greatest asset and its most significant security vulnerability. Our platform addresses the human element of cybersecurity by combining advanced threat detection, awareness training, and Incydr risk management to reduce the likelihood and impact of human‐caused security incidents. AI-First Engineering at Mimecast Mimecast ...

Security Architect - Entra ID/MS/Azure

Hiring Organisation
Methods Consulting
Location
London, United Kingdom
Salary
£ 80 K
appropriately designed and secured.Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures.Establish appropriate requirements for security logging, monitoring, alerting, threat detection and incident response.Review technical architecture and solution designs, identifying security weaknesses, control gaps, dependencies and areas requiring further assurance.Assess migration strategies and cutover … security policies, information-security standards, data-protection obligations and relevant regulatory or assurance requirements.Maintain appropriate security architecture documentation, including HLDs, security principles, control matrices, threat models, risk assessments, exception records and architecture decision records.Provide clear security recommendations and risk-based advice to programme leadership and senior stakeholders.Support continuous improvement ...

Security Architect - Entra ID/MS/Azure

Location
Greater London, England, United Kingdom
secured. Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures . Establish appropriate requirements for security logging, monitoring, alerting, threat detection and incident response. Review technical architecture and solution designs, identifying security weaknesses, control gaps, dependencies and areas requiring further assurance. Assess migration strategies … policies, information-security standards, data-protection obligations and relevant regulatory or assurance requirements. Maintain appropriate security architecture documentation, including HLDs, security principles, control matrices, threat models, risk assessments, exception records and architecture decision records . Provide clear security recommendations and risk-based advice to programme leadership and senior stakeholders. ...

Senior Cyber Security Engineer & AVP — Threat Lead

Location
Greater London, England, United Kingdom
Mizuho EMEA is seeking a Cyber Security Engineer at the Assistant Vice President level to advance threat detection, threat hunting, and security automation within our Proactive Security team in London. The role emphasizes building and refining security tooling, SIEM/EDR configurations, and SOC collaboration. You will … develop threat models, implement SOAR capabilities, manage SIEM/EDR and cloud/infrastructure logs across Azure, AWS, and on-prem environments. #J-18808-Ljbffr ...

SOC and Incident Response Lead

Location
City Of London, England, United Kingdom
Description The Role As an experienced SOC and Incident Response Lead at ASOS, you will provide hands-on technical leadership across security monitoring, detection, engineering, incident response, and threat-led investigations. You will lead the SOC and Incident Response team, ensure security incidents are investigated and resolved effectively … operations, and ensuring the team has clear priorities, strong morale, and the capability to respond to complex security incidents. Own and improve the SOC detection lifecycle, including reviewing detection coverage, tuning noisy or low-value alerts, creating new detections from threat intelligence and incident learnings, and mapping ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, United Kingdom
Salary
£ 80 K
leading cyber incidents operationally, technically and commercially from end-to-end.You will act as a senior technical subject matter expert across incident response, detection engineering, cloud security and vulnerability management, while also providing calm, structured leadership during high-pressure situations.The environment is heavily Microsoft-focused, with particular emphasis … secure-by-design principlesDetection engineering and automationThreat and vulnerability managementYou will work closely with global technology and cyber teams to continuously improve monitoring, detection, response and remediation capabilities across hybrid cloud and on-premise environments.Key ResponsibilitiesIncident Response & Major Incident ManagementLead the end-to-end management of cyber security incidents ...

Security Architect (Entra ID/Microsoft Azure)

Location
Greater London, England, United Kingdom
designed and secured Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures Establish appropriate requirements for security logging, monitoring, alerting, threat detection and incident response Review technical architecture and solution designs, identifying security weaknesses, control gaps, dependencies and areas requiring further assurance Assess migration … policies, information-security standards, data-protection obligations and relevant regulatory or assurance requirements Maintain appropriate security architecture documentation, including HLDs, security principles, control matrices, threat models, risk assessments, exception records and architecture decision records Provide clear security recommendations and risk-based advice to programme leadership and senior stakeholders Support ...

OT Cybersecurity Consultant

Location
Greater London, England, United Kingdom
integration of security controls across converged IT and OT networks Work with stakeholders to improve operational resilience and cyber maturity Contribute to incident readiness, threat detection and monitoring initiatives where required Keep up to date with developments in OT cybersecurity, industrial technologies and emerging threats Communicate progress, risks … Build your knowledge of technologies including SCADA, PLCs, RTUs, DCS and industrial communications Develop experience with OT security technologies supporting asset visibility, monitoring and threat detection Access mentoring, knowledge sharing and professional development opportunities to support your career growth Expand your understanding of industry standards and frameworks including ...

Senior Solution Architect - Email & Collaboration Security

Hiring Organisation
Mimecast
Location
London, United Kingdom
Salary
> £ 150 K
some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait.This architecture is not greenfield. It carries two decades of accumulated … this role. The expectation is fluency and daily practice, not passing familiarity.The ECS DomainECS covers the following product and capability areas:Email threat detection and preventionEmail security efficacyCollaboration securityDMARC analyzerData platform and observabilityAnalysis and ResponseEnd user application integrationInternal operations enablementWhat You Will DoLead from Problem Space, Not Solution ...

Senior Solution Architect - Email & Collaboration Security

Location
Greater London, England, United Kingdom
some of the most consequential challenges in enterprise security today: AI-augmented threats, sprawling collaboration surfaces, multi-cloud delivery complexity, and the expectation that detection and response capabilities keep pace with a threat landscape that does not wait. This architecture is not greenfield. It carries two decades … this role. The expectation is fluency and daily practice, not passing familiarity. The ECS Domain ECS covers the following product and capability areas: Email threat detection and prevention Email security efficacy Collaboration security DMARC analyzer Data platform and observability Analysis and Response End user application integration Internal operations ...

Cybersecurity Consulting – EU Practice Lead

Hiring Organisation
Visa
Location
London, United Kingdom
Salary
£ 80 K
market, and P&L for Cybersecurity Consulting, helping clients across financial services, fintech, and merchant ecosystems strengthen their security posture in an evolving threat landscape. The ideal candidate combines deep cybersecurity domain expertise with proven consulting leadership and business ownership experience.Key Responsibilities:Build Practice Strategy:Define … complex cybersecurity engagements, ensuring high‐quality, outcome‐focused delivery.Provide expert guidance on areas such as cybersecurity strategy and operating model, risk assessment, security architecture, threat detection and response, incident response and recovery, and regulatory/security compliance.Evangelize Visa data, products and platforms into cybersecurity solutions where appropriate.Represent Visa ...

Threat Detection, IR & Engineering Specialist

Location
Harrow, England, United Kingdom
ReliaQuest is seeking a GreyMatter Specialist who combines threat detection, engineering, and incident response. In this unique role you will operate across multiple security domains and work directly with enterprise customers to resolve complex challenges from day one. You will develop a diverse skill set quickly through ...

Software Development Engineer - Security Automation, AWS Security Epoxy

Hiring Organisation
Amazon
Location
London, United Kingdom
Salary
£ 80 K
automation making that coverage possible. We are looking for a Software Development Engineer to support the building and operating of the platforms that onboard threat detection, remediate security risk, and accelerate security response across every AWS account.AWS Security, Epoxy builds a collection of automation platforms for AWS Security. … enable threat detection across a large fleet of AWS accounts (onboarding coverage, auditing it continuously, and making findings available to partner teams), we help partner teams remediate detected risks and respond to incidents automatically at scale, and we run the foundational services (communications, workflow orchestration, data enrichment ...

Lead Enterprise Architect

Location
Greater London, England, United Kingdom
designing the multi-year infrastructure roadmap, driving the End-of-Life (EOL) decommissioning and re-platforming pipeline, and providing technical governance for our Identity Threat Detection and Response (ITDR) remediation program. Combine deep infrastructure engineering with financial discipline, embedding FinOps frameworks across cloud and on-premise environments (ensure … Cost of Ownership) for EOL re-platforming options, and eliminate Legacy waste. Champion ITDR Remediation: Provide primary technical and architectural governance for the Identity Threat Detection and Response program. Harden hybrid identity environments across Active Directory and cloud IDPs (Entra ID). Guide & Influence Engineering Teams ...