26 to 50 of 140 MITRE ATT&CK Jobs in the UK

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
proactive threat hunting based on attacker behaviour, not vendor alertsTranslating threat intelligence and incident learnings into durable, reusable detectionsMapping detections to MITRE ATT&CK and real-world attack pathsReducing alert fatigue through logic refinement, correlation, and contextual enrichmentAdvising and supporting during high-severity security incidents … plane, SaaS)Familiarity with threat intelligence platforms and frameworks such as PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud. Additional InformationBring all of you to workWe create the conditions for high performers to thrive, through real ownership, fewer ...

Senior Cyber Detection and Response Engineer

Location
Greater London, England, United Kingdom
build and continuously improve detection content, managed as code and version-controlled, mapping coverage to adversary tactics and techniques using the MITRE ATT&CK framework and prioritising the techniques most relevant to a financial services SaaS provider. Telemetry and visibility – maintain a clear view … detections. Working knowledge of cloud security and native cloud telemetry sources (AWS and/or Azure). Practical use of the MITRE ATT&CK framework to structure detection coverage and gap analysis. Hands-on experience building and operating SOAR playbooks and response automation, orchestrating across ...

SecOps Engineer

Hiring Organisation
OCS Group
Location
London, UK
Employment Type
Full-time
Detection engineering and tuningBuild, test and maintain high-quality detections across our SIEM, XDR and email security platforms, mapped to the MITRE ATT&CK frameworkContinuously tune existing detections to reduce false positives and improve fidelity, using a data-driven approachIdentify gaps in detection coverage proactively … Python, PowerShell or KQL, with a working understanding of APIs and integration patternsPractical understanding of common attack techniques mapped to MITRE ATT&CK, and how they manifest in telemetryA proactive mindset: the candidate must be able to point to specific examples where they have identified ...

Lead Security Operations Engineer

Location
Greater London, England, United Kingdom
Define and deliver Pleo's SecOps roadmap for detection, response, and investigation capabilities Build a structured roadmap based on MITRE ATT&CK, NIST, and CIS benchmarks Lead security investigations and digital forensics through incident response Design, tune, and scale SIEM and standardized logging pipelines Strengthen … Modeling Compliance Risk Management Soft Skills Mentoring Collaboration Leadership Industry Keywords Fintech Payments Fraud Trust & Safety Regulated Environments Tools & Technologies SIEM MITRE ATT&CK NIST CIS Benchmarks AI Automation #J-18808-Ljbffr ...

Senior Operational Technology (OT) Security Consultant

Location
United Kingdom
architectures, key components, and common IT/OT protocols. Certifications – Cybersecurity & Infrastructure Security Agency (CISA) Industrial Control Systems (ICS) Training, AttackIQ – MITRE ATT&CK, SANS Global Industrial Cyber Security Professional (GICSP), Certified Information Systems Security Professional (CISSP). Standards, frameworks, and regulatory experience including … Directive, ISA/IEC 62443 Series/ISO 27000 Series, MITRE ATT&CK, NIST Cyber Security Framework (CSF), NCSC CAF, Office for Nuclear Regulation (ONR) Security Assessment Principles, Technical Assessment Guides, and supplementary guidance. Our Culture: Our values stand on a foundation of safety, integrity ...

Senior Operational Technology (OT) Security Consultant

Hiring Organisation
Amentum
Location
Burghfield Common, Berkshire, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
architectures, key components, and common IT/OT protocols. Certifications - Cybersecurity & Infrastructure Security Agency (CISA) Industrial Control Systems (ICS) Training, AttackIQ - MITRE ATT&CK, SANS Global Industrial Cyber Security Professional (GICSP), Certified Information Systems Security Professional (CISSP). Standards, frameworks, and regulatory experience including … Directive, ISA/IEC 62443 Series/ISO 27000 Series, MITRE ATT&CK, NIST Cyber Security Framework (CSF), NCSC CAF, Office for Nuclear Regulation (ONR) Security Assessment Principles, Technical Assessment Guides, and supplementary guidance. Our Culture: Our values stand on a foundation of safety, integrity ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
Willis Towers Watson
Location
London, UK
Employment Type
Full-time
hunting at scaleDetection-as-code, CI/CD of detection content, and security content managementStrong knowledge of adversary tradecraft and frameworks: MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chainExperience leveraging Agentic AI, Microsoft Security Copilot ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
St James, Bristol, UK
Employment Type
Full-time
scale Detection-as-code, CI/CD of detection content, and security content management Strong knowledge of adversary tradecraft and frameworks: MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chain Experience leveraging Agentic AI, Microsoft Security Copilot ...

3rd Line Security Analyst

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing … understanding of Azure, AWS and hybrid infrastructure security, with strong knowledge of networking, operating systems and attacker techniques. Practical understanding of MITRE ATT&CK, Cyber Kill Chain, NIST and SANS incident response frameworks. Experience working within regulated and audited environments, including ISO 27001 and Cyber ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. … environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks ...

Microsoft Security & Purview Consultant

Hiring Organisation
Tenth Revolution Group
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
capabilities. Key Responsibilities Review and optimise Microsoft Defender alerting, monitoring, and detection coverage. Conduct gap analysis against security best practices and MITRE ATT&CK. Design and implement Microsoft Purview DLP policies across M365 workloads. Develop sensitivity labels, classification frameworks, and information protection controls. Deliver GDPR-aligned retention … Labels, Auto-Labelling, and Data Classification. Retention Labels, Retention Policies, and Data Lifecycle Management. Detection engineering, alert tuning, incident management, and MITRE ATT&CK mapping. Microsoft 365 Security & Compliance architecture. Strong understanding of GDPR and data governance principles. Experience delivering security and compliance projects ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
exercises and risk assessments. Knowledge of threat actor tactics, techniques, and procedures (TTPs). Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability ...

Security Operations Analyst

Hiring Organisation
Matchtech
Location
London, UK
Employment Type
Full-time
Modelling exercises and risk assessments. Knowledge of threat actor tactics, techniques, and procedures (TTPs).Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability ...

Cyber Security Analyst

Hiring Organisation
Digital Waffle
Location
City of London, London, United Kingdom
security monitoring and investigations Good understanding of SIEM technologies, log analysis and threat detections Knowledge of security frameworks such as MITRE ATT&CK and the Cyber Kill Chain Experience investigating phishing, malware, endpoint, identity and network security incidents Familiarity with Windows, Linux, Active Directory ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
GCIA, GNFA, CISSP, CISM, or equivalent experience in incident response and security operations. Experience with threat hunting, purple teaming, and using MITRE ATT&CK to structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender ...

SOC Analyst

Hiring Organisation
Reed
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
investigating security alerts using SIEM, EDR and security monitoring tools A strong understanding of Modern cyber threats, attacker techniques and the MITRE ATT&CK framework Experience analysing security events across endpoint, network, identity and cloud platforms Knowledge of incident response and risk-based incident prioritisation ...

Senior SOC Analyst - DV Clearance

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £100,000 per annum
Understanding of network protocols, attack techniques, and cyber threat methodologies Experience investigating security incidents across Windows and Linux environments Knowledge of MITRE ATT&CK framework Familiarity with endpoint detection and response platforms We're hiring across multiple Cyber Security disciplines, if you are a specialist ...

Crowdstrike Pre-Sales Senior Manager

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMPFamiliarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking)#LI-EUAbout AccentureAccenture is a leading global professional services company that helps the world's leading businesses, governments and other ...

Cyber Security Analyst

Hiring Organisation
Accenture
Location
City of London, London, United Kingdom
Splunk SIEM, to enable the detection of threats across diverse platforms (e.g. cloud, endpoints, and networks) · Use frameworks like MITRE ATT&CK to map detection rules and maximise threat coverage · Use analytical platforms to query high volume datasets to identify trends and spot unusual behaviours ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
Understanding of network protocols, attack techniques, and cyber threat methodologies Experience investigating security incidents across Windows and Linux environments Knowledge of MITRE ATT&CK framework Familiarity with endpoint detection and response platforms *Rates depend on experience and client requirements #J-18808-Ljbffr ...

Threat Intelligence Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £594 per day
Security initiatives within complex environments. Understanding of Security Architecture Design and secure-by-design principles. Familiarity with cyber frameworks such as MITRE ATT&CK, NIST, or Cyber Kill Chain. Experience producing intelligence reports and presenting findings to stakeholders. Strong analytical and problem-solving abilities. Excellent ...

Threat Intelligence Analyst

Hiring Organisation
Matchtech
Location
London, UK
Employment Type
Full-time
Security initiatives within complex environments. Understanding of Security Architecture Design and secure-by-design principles. Familiarity with cyber frameworks such as MITRE ATT&CK, NIST, or Cyber Kill Chain. Experience producing intelligence reports and presenting findings to stakeholders. Strong analytical and problem-solving abilities. Excellent ...

Cyber Security & Infrastructure Engineer

Hiring Organisation
Adria Solutions
Location
Newcastle-upon-Tyne, Tyne and Wear, North East, United Kingdom
Employment Type
Permanent
Salary
£50,000
security principles, including OWASP Top 10, WAF and API security Experience with vulnerability management, patching and security remediation Knowledge of the MITRE ATT&CK Framework and common attack techniques Experience applying security standards such as NCSC guidance, CIS benchmarks or Microsoft Security Baselines Understanding ...

Crowdstrike Technical Consultant

Location
Greater London, England, United Kingdom
compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMP Familiarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking) What’s in it for you At Accenture in addition to a competitive basic salary, you will also have ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
environments. Understand how threat actors exploit misconfigurations, identity weaknesses, vulnerable assets, exposed services, and weak security controls. Apply frameworks such as MITRE ATT&CK to help clients understand attack paths, prioritise exposures, and improve cyber defence maturity. Understand the business, privacy, security, and compliance challenges ...