26 to 50 of 60 Malware Analysis Jobs in the UK

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£65,000
would be great if you had: Detection engineering or threat-informed defence experience. MITRE ATT&CK framework knowledge. Python, PowerShell or Bash scripting skills. Malware analysis or reverse engineering exposure. CREST, Blue Team Level 1 or similar cyber security certifications. If you are interested in this role ...

Threat Intelligence Analyst

Location
City of Westminster, England, United Kingdom
solutions, such as DarkIQ or equivalent Strong analytical skills with the ability to identify patterns and draw meaningful conclusions from complex datasets Knowledge of malware analysis, phishing investigations, and infrastructure security principles Experience with scripting and automation using PowerShell, Python, or similar technologies Excellent communication skills, with ...

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
would be great if you had: Detection engineering or threat-informed defence experience. MITRE ATT&CK framework knowledge. Python, PowerShell or Bash scripting skills. Malware analysis or reverse engineering exposure. CREST, Blue Team Level 1 or similar cyber security certifications. If you are interested in this role ...

Threat Intelligence Production Lead

Location
Greater London, England, United Kingdom
with frameworks such asCBEST, TIBER-EU, or STAR-FS Experience improving team processes or tooling Understandingof how geopolitical events influence cyber threats Exposure to malwareanalysis, network analysis, host intrusion analysis, log analysis, vulnerability research, digitalforensicsorrelated disciplines Locations London Cheltenham Additional Information Equal Employment Opportunity Statement All employment ...

Sr. Manager, Data Science (Remote, GBR)

Hiring Organisation
CrowdStrike
Location
United Kingdom, UK
Employment Type
Full-time
enhance threat detection and responseCommunicate complex technical concepts and ML insights to stakeholders across the organizationGuide the development of advanced models for malware detection, behavioral threat analysis, and AI-driven security automationDrive research initiatives that result in publications, blog posts, patents, and other contributions … enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes. Bonus Points: Deep expertise in cybersecurity, including experience in threat intelligence, malware analysis, or security operationsExperience with agentic AI systems, LLMs, or autonomous security automationTrack record of working with very large, sparse, high-dimensional datasets ...

Lead Threat Intelligence Analyst

Hiring Organisation
MasterCard
Location
London, UK
Employment Type
Full-time
threat landscape, including common threat actors, campaigns, and attack methodologies. A strong understanding of key threat intelligence terminology, concepts, and analytical approaches. Experience in analysis of dark and deep web ecosystems, including forums, leak sites, and threat actor communities. To be adaptable and eager to learn new technologies, tools … Security Operations Centre (SOC) environment. Exposure to threat hunting activities and familiarity with investigative techniques. A good understanding or hands-on experience with malware analysis and related tools. Corporate Security ResponsibilityAll activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization ...

Information Security Analyst - SecOps Response

Location
Southampton, England, United Kingdom
cloud, endpoint, network) to identify root cause and determine next steps for containment, eradication and recovery Plan and participate in Tabletop Exercises Document notes, analysis findings, containment steps, and cause for each security incident Work together with other teams in the organisation to analyse, contain, eradicate and recover from … scripting languages (e.g. Python, Go, Bash) Experience with container security Experience conducting proactive threat huntings, defining hypotheses, and developing hunting methodologies Understanding of malware analysis techniques It would be great if you have one or more of the following qualifications, but it’s not essential: GIAC Certified Forensic ...

Cyber Incident Response Lead

Location
Greater London, England, United Kingdom
processes and technologies Incident response frameworks and methodologies Threat detection and threat intelligence Endpoint, network, and cloud security monitoring tools Digital forensics and malware analysis principles SIEM and security analytics platforms Why Join Us? Be part of one of the most important low-carbon energy projects ...

Information Security Analyst

Location
Farnborough, England, United Kingdom
technical teams, management and operational stakeholders. DUTIES & RESPONSIBILITIES Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis Recommend improvement and tuning opportunities with alerting Implement components of a multi-layered defense to protect information system resources and data, both on-premises … Cloud Experience with either AWS, Azure, or GCP. REQUIRED SKILLS Knowledge MITRE ATT&CK, and Kill Chain Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols ...

Cyber Response & Recovery - Senior Manager

Hiring Organisation
KPMG
Location
London, UK
Employment Type
Full-time
managing resources and defining objectives at each stage of the incident response process; scoping and triage, containment, evidence preservation and extraction, eradication, recovery, forensic analysis and investigation. A broad understanding of the cyber security threat landscape. Strong technical background in computers and networks, and programming skills. Significant and proven … programmer will be able to transfer skillsets across languages. Technical proficiency in at least one of these areas: network security/traffic/log analysis; Linux and/or Mac/Unix operating system forensics; Linux/Unix disk forensics (ext2/3/4, HFS+, and/ ...

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
KPMG
Location
London, UK
Employment Type
Full-time
managing resources and defining objectives at each stage of the incident response process; scoping and triage, containment, evidence preservation and extraction, eradication, recovery, forensic analysis and investigation. Fluent German speaker and ability to draft reports in German. A broad understanding of the cyber security threat landscape. Strong technical background … programmer will be able to transfer skillsets across languages. Technical proficiency in at least one of these areas: network security/traffic/log analysis; Linux and/or Mac/Unix operating system forensics; Linux/Unix disk forensics (ext2/3/4, HFS+, and/ ...

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
managing resources and defining objectives at each stage of the incident response process; scoping and triage, containment, evidence preservation and extraction, eradication, recovery, forensic analysis and investigation. Fluent German speaker and ability to draft reports in German. A broad understanding of the cyber security threat landscape. Strong technical background … programmer will be able to transfer skillsets across languages. Technical proficiency in at least one of these areas: network security/traffic/log analysis; Linux and/or Mac/Unix operating system forensics; Linux/Unix disk forensics (ext2/3/4, HFS+, and/ ...

Lead Threat Response Operations Analyst

Location
United Kingdom
security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat Detection, Digital … Microsoft Defender for Endpoint or VMware Carbon Black, to investigate malicious activity, analyse endpoint telemetry and support incident containment and remediation. Experience using security analysis and investigation tools such as Wireshark, Snort, Splunk, Kali Linux, SIFT Workstation, REMnux and Volatility or comparable commercial and open‐source technologies, including tools ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
South East, United Kingdom
Employment Type
Permanent
security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat Detection, Digital … Falcon, Microsoft Defender for Endpoint or VMware Carbon Black, to investigate malicious activity, analyse endpoint telemetry and support incidentcontainment and remediation. Experience using security analysis and investigation tools such as Wireshark, Snort, Splunk, Kali Linux, SIFT Workstation, REMnux and Volatility or comparable commercial and open-source technologies, including tools ...

Lead Threat Response Operations Analyst

Location
London, United Kingdom
security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat Detection, Digital … Falcon, Microsoft Defender for Endpoint or VMware Carbon Black, to investigate malicious activity, analyse endpoint telemetry and support incidentcontainment and remediation. Experience using security analysis and investigation tools such as Wireshark, Snort, Splunk, Kali Linux, SIFT Workstation, REMnux and Volatility or comparable commercial and open-source technologies, including tools ...

Lead Threat Response Operations Analyst

Location
Stone Cross, England, United Kingdom
security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat Detection, Digital … Microsoft Defender for Endpoint or VMware Carbon Black, to investigate malicious activity, analyse endpoint telemetry and support incident containment and remediation. Experience using security analysis and investigation tools such as Wireshark, Snort, Splunk, Kali Linux, SIFT Workstation, REMnux and Volatility or comparable commercial and open-source technologies, including tools ...

Blockchain Cyber Intelligence Vice President

Location
Greater London, England, United Kingdom
contribute to the development of strategies for security investigation, threat mitigation, and incident response Produce actionable threat intelligence products including IOC development, exploit analysis reports, and threat actor tracking to inform detection engineering and security operations Collaborate with cross-functional teams to ensure a coordinated approach to blockchain … intelligence or operations, with a focus on threat detection, incident response, and security infrastructure management Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, threat intelligence production, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools ...

Blockchain Cyber Intelligence Vice President

Location
Greater London, England, United Kingdom
contribute to the development of strategies for security investigation, threat mitigation, and incident response Produce actionable threat intelligence products including IOC development, exploit analysis reports, and threat actor tracking to inform detection engineering and security operations Collaborate with cross-functional teams to ensure a coordinated approach to blockchain … intelligence or operations, with a focus on threat detection, incident response, and security infrastructure management Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, threat intelligence production, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools ...

Specialist Software Engineer (Python)

Location
Cambridge, England, United Kingdom
cloud platforms (AWS, Azure, or GCP) . Strong analytical and problem-solving skills. Ability to influence technical direction and work autonomously. Desirable Cybersecurity, malware analysis, threat detection, or security product experience. Statistical analysis, machine learning, or complex systems experience. Previous mentoring or technical leadership experience. Why Apply ...

Specialist Software Engineer (Python)

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
cloud platforms (AWS, Azure, or GCP) . Strong analytical and problem-solving skills. Ability to influence technical direction and work autonomously. Desirable Cybersecurity, malware analysis, threat detection, or security product experience. Statistical analysis, machine learning, or complex systems experience. Previous mentoring or technical leadership experience. Why Apply ...

Cyber Intelligence Director

Location
Greater London, England, United Kingdom
alignment of threat intelligence initiatives with organizational strategies Influences and implement policies, processes, and frameworks for threat intelligence Supports brand protection, fraud prevention, and malware analysis Collaborates with global cyber intelligence teams to drive prioritization of intelligence streams Allocates resources to maximize team impact Communicates complex cybersecurity concepts … Skills Expert level experience in cybersecurity, with a focus on threat intelligence, incident response, and risk management. Significant knowledge and experience in advanced intelligence analysis techniques, security research, and Open-Source Intelligence (OSINT) to proactively identify and assess potential risks. Knowledge of SIEM tools such as Splunk will ...

Cyber Intelligence Director

Location
Greater London, England, United Kingdom
alignment of threat intelligence initiatives with organizational strategies Influences and implement policies, processes, and frameworks for threat intelligence Supports brand protection, fraud prevention, and malware analysis Collaborates with global cyber intelligence teams to drive prioritization of intelligence streams Allocates resources to maximize team impact Communicates complex cybersecurity concepts … Skills Expert level experience in cybersecurity, with a focus on threat intelligence, incident response, and risk management. Significant knowledge and experience in advanced intelligence analysis techniques, security research, and Open-Source Intelligence (OSINT) to proactively identify and assess potential risks. Knowledge of SIEM tools such as Splunk will ...

Senior Digital Forensics and Incident Response (DFIR) Consultant

Location
City Of London, England, United Kingdom
images from affected systems. Perform Windows/Unix/Linux forensics and triage, and network forensics to assess compromise and investigations. Skilled in malware analysis tools and methodologies. Apply mitigation strategies and concepts to remediate identified threats. Analyze triage collections/artifacts for indicators of compromise (IoCs … from host systems and appliances to identify suspicious activities. Collect forensic disk and memory images from physical and virtual endpoints and servers. Perform forensic analysis of physical systems, virtual machines, and network data. Understanding of an incident lifecycle and cyber-kill-chain. Familiarity with exfiltration techniques used by threat ...

Blockchain Security Operations Vice President

Location
City Of London, England, United Kingdom
cybersecurity operations, with a focus on threat detection, incident response, and security infrastructure management Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques Advanced ...

Senior Defensive Content Engineer

Location
Greater London, England, United Kingdom
Mastery: Expert proficiency with defensive security tools (e.g., SIEM, EDR, Wireshark, Volatility, Autopsy, IDA) and core domains such as detection engineering, digital forensics, and malware analysis. Content Engineering Experience: Proven track record of designing content for Cyber Ranges, Capture The Flag (CTF) events, or interactive learning platforms. Systems & Infrastructure ...