1 to 25 of 99 Remote/Hybrid Threat Detection Jobs in the UK

Engineer, Threat Detection - 5

Hiring Organisation
Tide Platform
Location
United Kingdom, UK
Employment Type
Full-time
Gurugram, New Delhi, Berlin, Paris and LuxembourgABOUT THE ROLE:The Tide Security Engineering team is made up of three core areas: Product Security, Identity, Threat Detection & ResponseProduct Security consists of application and cloud security experts. Their mission is to protect the products we build, covering everything from secure … design reviews to threat modelling and penetration testing, ensuring security is embedded from the ground up. Threat Detection & Response (this role!) focuses on protecting the company by building a robust detection and automation platform. We're proactive in our defence, constantly hacking ourselves to improve ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will act as a cyber security subject … matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond to cyber security incidents across cloud ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
shaping the future of fintech – and we're just getting started. The roleYou will own and evolve the company's threat detection and threat-hunting capability. This role defines what "good" looks like for detection and increasingly engineers it directly as capability shifts into Cyber Security. … This is not an alert-triage role. You are here to understand attacker behaviour, convert it into high-fidelity detection logic, and raise the security baseline for the entire organisation. You will partner closely with Security Operations, GRC and Engineering—setting standards, direction, and expectations—while progressively taking ownership ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
World Class Defence Organisation is currently looking to recruit a Cyber Threat Operations Specialist subcontractor on an initial 12 month contract.You do not need to hold any current security clearance in order to apply. However, SC security clearance will be required prior to starting the position , with DV clearance … background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote working: Onsite ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£85.00 per hour
World Class Defence Organisation is currently looking to recruit a Cyber Threat Operations Specialist subcontractor on an initial 12 month contract. You do not need to hold any current security clearance in order to apply. However, SC security clearance will be required prior to starting the position , with … background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote working: Onsite ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
Umbrella) | Inside IR35 Remote with occasional client site visits Active SC Clearance Required Contract until March 2027 Security Operations Analyst | Cyber Threat Intelligence | Threat Modelling We are looking for an experienced Security Operations Analyst to join a long-term cybersecurity programme supporting critical enterprise and government-facing environments. … This is an excellent opportunity for a security professional with expertise in Cybersecurity Operations, Cyber Threat Intelligence, and Threat Modelling to play a key role in identifying, assessing, and mitigating cyber risks while enhancing the overall security posture of complex organisations. Working alongside Security Architects, Threat Intelligence ...

Senior Security Researcher - (AI & Detection Engineering)

Hiring Organisation
Salt
Location
London, United Kingdom
Employment Type
Permanent
Salary
£90,000
Security Researcher (AI & Detection Engineering) Location: London (Hybrid) Salary: £70,000-£90,000 + bonus + benefits We're partnering with one of the UK's most innovative cyber security organisations as they expand their research capabilities at the intersection of AI, Security Research and Detection Engineering. … help explore how emerging AI technologies can be leveraged to improve threat detection, automate security workflows and influence the next generation of security products. Security Researcher - Responsibilities Research emerging threats, attacker techniques and security trends Investigate how AI can enhance detection and security outcomes Develop prototypes, tooling ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
St James, Bristol, UK
Employment Type
Full-time
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

SOC Analyst

Hiring Organisation
Reed
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
role in protecting a large-scale, international technology environment. This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work … within a hybrid Security Operations model alongside an MSSP, helping to strengthen detection capabilities, improve threat visibility and drive continuous security improvement across cloud and on-premises environments. Your role: Investigate, triage and respond to cyber security alerts, incidents and threats Act as the key operational contact ...

Security Consultant

Location
Greater London, England, United Kingdom
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use‐case tuning, and post‐incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client‐facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Birmingham, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Manchester, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Edinburgh, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Newcastle upon Tyne, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Cyber Security Engineer / SOC Analyst

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£92.11 per hour
background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £92.11 per hour Location: Stevenage Hybrid/Remote working: Onsite … utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat Detection Analyst key responsibilities are: Accountable ...

Security Engineer

Location
Greater London, England, United Kingdom
passionate individual who enjoys building defences against today's cyber threats, targeting infrastructure, data, and employees. You should be able to analyze the current threat environment and Intigriti’s security posture, then design and implement controls in line with our risk appetite. This position requires strategic thinking, technical expertise … controls leveraging security tools, including EDR, SIEM, phishing simulation, and compliance solutions, among others. In addition, you will own and continuously improve Intigriti’s threat detection capabilities. This includes running day-to-day Security Operations Centre (SOC) activities, expanding log coverage, and building high-quality detections ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
decision-making challenges. Working with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops, and solution ...

Platform Professional Services Sr. Consultant (Remote, ESP)

Hiring Organisation
CrowdStrike
Location
United Kingdom, UK
Employment Type
Full-time
future of cybersecurity starts with you. About the Role: CrowdStrike Services is seeking a Platform Professional Services Sr. Consultant specialised in AI for Detection and Response who would be responsible for the planning, deployment, implementation, and operational support of the CrowdStrike platform's AI capabilities. This role will focus … specifically on leveraging Falcon's Artificial Intelligence (AI) and Machine Learning (ML) technologies to enhance threat detection, automate response workflows, and maximise security outcomes for customers. The Platform Professional Services Senior Consultant will have responsibility for all aspects of the deployment from the initial customer engagement, planning, installation ...

SIEM Security Engineer

Location
Birmingham, England, United Kingdom
maintaining the ingestion of our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. The role is hybrid (3 days in office) & based in Birmingham What you’ll be doing … scope of data ingestion. Support the configuration of Elasticsearch pipelines for data ingestion from various sources, primarily from Kafka Enhance data enrichment by integrating threat intelligence feeds and contextual information. Ingest data from various networking equipment, servers, firewalls and security appliances across multiple vendors. SIEM Solution Development Collaborate with ...

Security Operations Engineering Manager

Location
City Of London, England, United Kingdom
cyber incident response capability, strengthen our security operations and contribute to the resilience of our cloud-first banking platform against an evolving cyber threat landscape. What’s the Opportunity? This is an exciting opportunity to join our Information Security team in a role that combines hands-on cyber security … expertise with strategic oversight across incident response, threat detection, cloud security and technical assurance. Working across cloud and on-premise environments, you’ll identify and investigate emerging threats, assess technologies and architectures from a security perspective, and continually improve our defensive capabilities. You’ll work closely with technology ...

Cloud Security Engineer - Manchester - National Security West

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£95,000
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...

Cloud Security Engineer - Leeds - National Security West

Hiring Organisation
Hackajob Ltd
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£95,000
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...

Cloud Security Engineer - London - National Security West

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£95,000
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...