26 to 50 of 151 MITRE ATT&CK Jobs in the UK

Senior Cyber Detection and Response Engineer

Location
Greater London, England, United Kingdom
build and continuously improve detection content, managed as code and version-controlled, mapping coverage to adversary tactics and techniques using the MITRE ATT&CK framework and prioritising the techniques most relevant to a financial services SaaS provider. Telemetry and visibility – maintain a clear view … detections. Working knowledge of cloud security and native cloud telemetry sources (AWS and/or Azure). Practical use of the MITRE ATT&CK framework to structure detection coverage and gap analysis. Hands-on experience building and operating SOAR playbooks and response automation, orchestrating across ...

SecOps Engineer

Hiring Organisation
OCS Group
Location
London, UK
Employment Type
Full-time
Detection engineering and tuningBuild, test and maintain high-quality detections across our SIEM, XDR and email security platforms, mapped to the MITRE ATT&CK frameworkContinuously tune existing detections to reduce false positives and improve fidelity, using a data-driven approachIdentify gaps in detection coverage proactively … Python, PowerShell or KQL, with a working understanding of APIs and integration patternsPractical understanding of common attack techniques mapped to MITRE ATT&CK, and how they manifest in telemetryA proactive mindset: the candidate must be able to point to specific examples where they have identified ...

Lead Security Operations Engineer

Location
Greater London, England, United Kingdom
Define and deliver Pleo's SecOps roadmap for detection, response, and investigation capabilities Build a structured roadmap based on MITRE ATT&CK, NIST, and CIS benchmarks Lead security investigations and digital forensics through incident response Design, tune, and scale SIEM and standardized logging pipelines Strengthen … Modeling Compliance Risk Management Soft Skills Mentoring Collaboration Leadership Industry Keywords Fintech Payments Fraud Trust & Safety Regulated Environments Tools & Technologies SIEM MITRE ATT&CK NIST CIS Benchmarks AI Automation #J-18808-Ljbffr ...

Senior Operational Technology (OT) Security Consultant

Location
United Kingdom
architectures, key components, and common IT/OT protocols. Certifications – Cybersecurity & Infrastructure Security Agency (CISA) Industrial Control Systems (ICS) Training, AttackIQ – MITRE ATT&CK, SANS Global Industrial Cyber Security Professional (GICSP), Certified Information Systems Security Professional (CISSP). Standards, frameworks, and regulatory experience including … Directive, ISA/IEC 62443 Series/ISO 27000 Series, MITRE ATT&CK, NIST Cyber Security Framework (CSF), NCSC CAF, Office for Nuclear Regulation (ONR) Security Assessment Principles, Technical Assessment Guides, and supplementary guidance. Our Culture: Our values stand on a foundation of safety, integrity ...

Senior Operational Technology (OT) Security Consultant

Hiring Organisation
Amentum
Location
Burghfield Common, Berkshire, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
architectures, key components, and common IT/OT protocols. Certifications - Cybersecurity & Infrastructure Security Agency (CISA) Industrial Control Systems (ICS) Training, AttackIQ - MITRE ATT&CK, SANS Global Industrial Cyber Security Professional (GICSP), Certified Information Systems Security Professional (CISSP). Standards, frameworks, and regulatory experience including … Directive, ISA/IEC 62443 Series/ISO 27000 Series, MITRE ATT&CK, NIST Cyber Security Framework (CSF), NCSC CAF, Office for Nuclear Regulation (ONR) Security Assessment Principles, Technical Assessment Guides, and supplementary guidance. Our Culture: Our values stand on a foundation of safety, integrity ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
Willis Towers Watson
Location
London, UK
Employment Type
Full-time
hunting at scaleDetection-as-code, CI/CD of detection content, and security content managementStrong knowledge of adversary tradecraft and frameworks: MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chainExperience leveraging Agentic AI, Microsoft Security Copilot ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
St James, Bristol, UK
Employment Type
Full-time
scale Detection-as-code, CI/CD of detection content, and security content management Strong knowledge of adversary tradecraft and frameworks: MITRE ATT&CK, MITRE Engage, MITRE D3FEND, and the cyber kill chain Experience leveraging Agentic AI, Microsoft Security Copilot ...

3rd Line Security Analyst

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing … understanding of Azure, AWS and hybrid infrastructure security, with strong knowledge of networking, operating systems and attacker techniques. Practical understanding of MITRE ATT&CK, Cyber Kill Chain, NIST and SANS incident response frameworks. Experience working within regulated and audited environments, including ISO 27001 and Cyber ...

Cyber Security Analyst

Hiring Organisation
XACT PLACEMENTS LIMITED
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing … understanding of Azure, AWS and hybrid infrastructure security, with strong knowledge of networking, operating systems and attacker techniques. Practical understanding of MITRE ATT&CK, Cyber Kill Chain, NIST and SANS incident response frameworks. Experience working within regulated and audited environments, including ISO 27001 and Cyber ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. Investigate threats using frameworks such as MITRE ATT&CK. Work closely with internal IT, engineering and security teams, alongside external security providers. Maintain and improve security playbooks, procedures, documentation and response processes. … environments . Knowledge of Windows environments, with working knowledge of Linux/Unix. Understanding of threat intelligence, IOCs, TTPs and the MITRE ATT&CK framework . Experience improving detection logic, alert quality and security controls. Strong stakeholder communication and incident management skills. Knowledge of frameworks ...

Senior SOC Analyst

Hiring Organisation
Fynity
Location
Aldershot, Hampshire, UK
Employment Type
Full-time
logsSupporting live incident response, containment and escalationThreat hunting and identifying suspicious or malicious activityImproving detection rules, use cases and playbooksWorking with MITRE ATT&CK and attacker TTPsProducing clear incident reports and communicating findingsContributing to the continued improvement of SOC capabilityWhat I'm Looking ForYou … within a SOC or Security Operations environmentHands-on SIEM experience – Sentinel, Splunk, Elastic or similarGood incident investigation and response experienceUnderstanding of MITRE ATT&CKExperience analysing endpoint, network and log dataGood networking knowledge including TCP/IP, DNS and to EDR, firewalls, IDS/IPS and wider security ...

Microsoft Security & Purview Consultant

Hiring Organisation
Tenth Revolution Group
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
capabilities. Key Responsibilities Review and optimise Microsoft Defender alerting, monitoring, and detection coverage. Conduct gap analysis against security best practices and MITRE ATT&CK. Design and implement Microsoft Purview DLP policies across M365 workloads. Develop sensitivity labels, classification frameworks, and information protection controls. Deliver GDPR-aligned retention … Labels, Auto-Labelling, and Data Classification. Retention Labels, Retention Policies, and Data Lifecycle Management. Detection engineering, alert tuning, incident management, and MITRE ATT&CK mapping. Microsoft 365 Security & Compliance architecture. Strong understanding of GDPR and data governance principles. Experience delivering security and compliance projects ...

Director, Cyber Defense

Hiring Organisation
Kyndryl
Location
London, UK
Employment Type
Full-time
intelligence-to-defense loop: convert prioritized adversary intelligence into detection requirements, control coverage decisions, and changes to the defensive architecture. Govern ATT&CK-aligned detection coverage on measured efficacy, and stand up continuous validation through adversary emulation and detection testing to prove that intelligence-driven defenses fire … quality to perform under pressure. Strong command of threat-informed defense: translating intelligence into detection coverage and architecture decisions, anchored in MITRE ATT&CK, with kill chain analysis as a supporting lens for mapping attacker progression. Working command of detection engineering practice: detection-as-code ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
exercises and risk assessments. Knowledge of threat actor tactics, techniques, and procedures (TTPs). Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability ...

Security Operations Analyst

Hiring Organisation
Matchtech
Location
London, UK
Employment Type
Full-time
Modelling exercises and risk assessments. Knowledge of threat actor tactics, techniques, and procedures (TTPs).Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability ...

Cyber Security Analyst

Hiring Organisation
Digital Waffle
Location
City of London, London, United Kingdom
security monitoring and investigations Good understanding of SIEM technologies, log analysis and threat detections Knowledge of security frameworks such as MITRE ATT&CK and the Cyber Kill Chain Experience investigating phishing, malware, endpoint, identity and network security incidents Familiarity with Windows, Linux, Active Directory ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
GCIA, GNFA, CISSP, CISM, or equivalent experience in incident response and security operations. Experience with threat hunting, purple teaming, and using MITRE ATT&CK to structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, UK
Employment Type
Full-time
GCIA, GNFA, CISSP, CISM, or equivalent experience in incident response and security operations. Experience with threat hunting, purple teaming, and using MITRE ATT&CK to structure detections, gaps analysis, and defensive improvements. Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender ...

SOC Analyst

Hiring Organisation
Reed
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
investigating security alerts using SIEM, EDR and security monitoring tools A strong understanding of Modern cyber threats, attacker techniques and the MITRE ATT&CK framework Experience analysing security events across endpoint, network, identity and cloud platforms Knowledge of incident response and risk-based incident prioritisation ...

Cyber Security Analyst - up to 70,000 + Bonus + Benefits

Hiring Organisation
Involved Solutions
Location
London, UK
Employment Type
Full-time
perimeter controls and operating systems Understanding of cloud security controls and container security Experience with EDR tooling and familiarity with the MITRE ATT&CK framework Experience with scripting or basic coding for automation Experience conducting investigations including eDiscovery Industry recognised security certifications such as CISSP ...

Senior SOC Analyst - DV Clearance

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £100,000 per annum
Understanding of network protocols, attack techniques, and cyber threat methodologies Experience investigating security incidents across Windows and Linux environments Knowledge of MITRE ATT&CK framework Familiarity with endpoint detection and response platforms We're hiring across multiple Cyber Security disciplines, if you are a specialist ...

Crowdstrike Technical Consulting Manager

Hiring Organisation
Accenture
Location
London, UK
Employment Type
Full-time
compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMPFamiliarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking)#LI-EUAbout AccentureAccenture is a leading global professional services company that helps the world's leading businesses, governments and other ...

Crowdstrike Technical Consulting Manager

Hiring Organisation
Accenture
Location
Holywood, Co. Down, UK
Employment Type
Full-time
compliance frameworks: NIST CSF, SOC 2, ISO 27001, DORA, HIPAA, or FedRAMP Familiarity with threat intelligence operationalization (CrowdStrike CAO/Intel, MITRE ATT&CK, adversary tracking) What's in it for youAt Accenture in addition to a competitive basic salary, you will also have ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
Understanding of network protocols, attack techniques, and cyber threat methodologies Experience investigating security incidents across Windows and Linux environments Knowledge of MITRE ATT&CK framework Familiarity with endpoint detection and response platforms *Rates depend on experience and client requirements #J-18808-Ljbffr ...

Threat Intelligence Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £594 per day
Security initiatives within complex environments. Understanding of Security Architecture Design and secure-by-design principles. Familiarity with cyber frameworks such as MITRE ATT&CK, NIST, or Cyber Kill Chain. Experience producing intelligence reports and presenting findings to stakeholders. Strong analytical and problem-solving abilities. Excellent ...