CyberThreat Intelligence & Vulnerability Lead £65,000 GBP 10% bonus + £7,000 DV Clearance Bonus (once obtained) Hybrid WORKING Location: Manchester, North West - United Kingdom Type: Permanent CyberThreat Intelligence & Vulnerability Lead Location: Leeds, UK (100% office-based) Salary: up to £65,000 + 10% bonus + £7,000 DV clearance bonus once … the future of cyber defence in a role that demands technical excellence, strategic thinking, and strong leadership. What You'll Be Doing As the CyberThreat Intelligence & Vulnerability Lead, you will: Oversee the detection, triage, and reporting of cyberthreats and vulnerabilities. Deliver high-quality intelligence and vulnerability reports on time, every time. … Select and monitor key threat actors posing the greatest risk. Develop and refine Priority Intelligence Requirements (PIRs) and collection plans. Ensure all processes are documented, reviewed, and continuously improved. Provide expert analysis, context, and forward-looking threat assessments. Drive the maturity of threat intelligence and vulnerability functions. Lead and mentor a high-performing team, ensuring consistent delivery More ❯
Manchester Area, United Kingdom Hybrid / WFH Options
NCC Group
global Cyber Security and Risk Mitigation business... https://www.nccgroup.com/uk/The Opportunity You will be acting as a team leader within the Strategic Threat Intelligence team, reporting to the Strategic Threat Intelligence Manager. As a senior member in this team, you will have some limited line management responsibilities but will be expected … to be heavily involved in the training and mentoring of other Threat intelligence team members, as well as supporting the overall growth of the Strategic Threat Intelligence team. You will be expected to have strong consultancy skills and experience in delivering large/complex pieces of client facing work where you will need to be able to manage … multiple internal and external stakeholders. Key Accountabilities Support the development and growth of our Strategic Threat Intelligence capabilities in line with our overall Threat Intelligence and Corporate Strategy Support and lead the delivery of Regulator-driven Threat Intelligence Engagements (CBEST, TIBER, CORIE, iCAST, AASE) Deliver services from our Threat Intelligence portfolio: Online Exposure Assessments, VIP Assessments More ❯
Manchester, North West, United Kingdom Hybrid / WFH Options
IBEX RECRUITMENT LTD
Threat and Incident Response Lead Analyst Permanent or Contract | Hybrid 12 Days in Office (North West) Threat and Incident Response Lead Analyst is needed for a growing Cyber team who are looking to strengthen its cyber defence capabilities with the hire of a Threat and Incident Response Lead Analyst . This is a … pivotal, hands-on role in a growing cyber team. Youll lead threat intelligence and incident response efforts, shape defensive strategy and play a critical role in ensuring the organisation stays ahead of evolving threats. What Youll Be Doing: Lead all aspects of Threat Intelligence and Incident Response Perform gap analysis across tooling, processes and detection capabilities … Implement and embed modern IR and threat detection best practices Develop and maintain incident response playbooks and threat hunting strategies Stay informed on emerging threats, TTPs, and adversarial behaviours Tune detection rules and improve response workflows Work with tools such as Microsoft Sentinel, Defender, Splunk, or similar What Were Looking For: Proven experience in hands-on incident response More ❯
South Central Ambulance Service NHS Foundation Trust
Job summary An exciting opportunity has arisen within the Digital Senior Leadership team at South Central Ambulance Service for a Head of Cyber Security (HCOS). We are looking for an enthusiastic, highly motivated, and flexible individual with excellent leadership, technical, interpersonal, communication and organisational skills to lead the Cyber Security Team responsible for safeguarding the … Trust's information, physical assets and cyber infrastructure. Strong stakeholder relationships are vital to this role, both within the trust and with external partners. With a proven track record in management and leadership, you will provide guidance, direction and mentorship to the team and help to develop junior members of staff in their careers. Alongside these responsibilities, it … Trusts expert on cyber security protection, detection, response, and recovery. The role will be responsible for the Trust's pro-active strategic approach to cyberthreat management and will lead the strategic planning of current and future digital security solutions, researching and reviewing industry best practice and upcoming changes to technology. The post holder will More ❯
effective escalation and incident response Review and approve relevant process artefacts and operational documentation that underpin Detection and Response Engineering activities Design, code and operationalise detection rules based on threat models and intelligence Be the escalation point for Detection and Response decision making. Why Lloyds Banking Group Like the modern Britain we serve, we're evolving. Investing billions in … on our journey and you will too. What you'll need Proven experience in a cyber defence context with demonstrable success in leading technical teams Knowledge of threat detection lifecycle, attacker behaviour and Tactics, Techniques and Procedures (TTPs) An understanding of advanced cyber defence concepts such as Continuous Detection/Continuous Response and CyberThreat Intelligence, and how to apply them Strong leadership and mentoring capabilities with the ability to foster a high-performance, inclusive team culture Effective workforce and performance management with proficiency in project planning and execution. Strong communication and interpersonal skills. Familiarity with governance, compliance, and operational excellence in security functions. Knowledge of threat detection lifecycle, attacker More ❯
Salford, Greater Manchester, North West, United Kingdom Hybrid / WFH Options
Inspire People
the heart of the global economy! The Department for Business and Trade ('DBT') and Inspire People are partnering together to bring you an exciting opportunity for a Lead Cyber Security Engineer you will play a vital role in safeguarding the department's digital estate, supporting the UK's economic resilience and global competitiveness. You'll lead the design … also be at the forefront of the Security Operations Centre (SOC), overseeing the identification, collection, and analysis of security event data to generate high-fidelity, actionable alerts for cyber analysts. Working closely with the SOC Manager, you'll ensure that security tooling and data pipelines are current, effective, and tailored to reduce alert fatigue. You'll create bespoke … incident response Deputising for the SOC manager as a when required. Reviewing incident documentation ensuring that appropriate lessons learned are captured and implemented. Maintaining and integrating CyberThreat Intelligence services to enhance the Departments capabilities to detect threats. Mentor junior engineers and contribute to the development of the security profession. Skills and experience It is essential that More ❯
West Midlands, United Kingdom Hybrid / WFH Options
La Fosse Associates Limited
currently working with a household-name organisation that plays a vital role in all of our lives. They're going through an exciting transformation period -building out their cyber security capabilities from the ground up. They're now looking for an experienced Cyber Incident Response Lead to help shape the function, drive best practices, and make … Management skills, with the confidence to work across technical and non-technical teams. Familiarity with ITIL and Service Management framework. A good understanding of the current CyberThreat Landscape, including common threat actors, attack vectors, and response strategies. What's on offer: Salary up to £70,000, depending on experience Hybrid working, Annual bonus Strong pension More ❯
Loughton, Essex, South East, United Kingdom Hybrid / WFH Options
Profile 29
software delivery lifecycle. A key part of this position will also involve mentoring an internal engineer, developing structured security policies, and managing Sentinel, Defender and SOAR solutions for automated threat response. Additionally, the role requires liaising with third-party support partners to coordinate security solutions, manage incidents, and enhance overall cybersecurity posture. Responsibilities Infrastructure Security: Architect and secure Azure … and optimize Azure DevOps pipelines with security embedded at every stage. Cloud Security Implementation: Leverage Azure Security Centre, Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability … cyber threats. Incident Response: Formulating and documenting a solid process utilising a 3rd party support partner Security Monitoring & Logging: Develop SIEM solutions, logging strategies, and real-time threat intelligence. Monitor, audit, and improve infrastructure security posture using automated tooling. Policy & Procedures: Define and enforce security policies, incident response strategies, and structured action plans for proactive risk mitigation. More ❯
Hybrid WORKING Location: Glasgow, Scotland - United Kingdom Type: Permanent A leading global security services provider is seeking an experienced Security Operations Service Delivery Manager to join its dynamic cyber security team. With thousands of security experts worldwide and deep partnerships with top-tier security technology vendors, the organisation helps clients secure their operations and navigate complex cyber … include: Minimum of 10 years' experience providing technical support and advisory services within a Security Operations Centre. Deep understanding of security incident management , SOC operations, and cyberthreat response. At least 5 years' experience delivering vulnerability management services. Proven expertise in managing IDS and IPS technologies. Strong crisis leadership skills with the ability to manage high-pressure More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
Anson McCade
is rapidly expanding its Security Operations Centre. Known for innovation and a commitment to excellence, this company invests heavily in technology and talent to stay ahead of evolving cyber threats. Their inclusive culture values collaboration, continuous learning, and professional growth. The role: As a SOC Technical Security Service Delivery Manager, you will be at the heart of security More ❯
Loughton, Essex, England, United Kingdom Hybrid / WFH Options
Profile 29
software delivery lifecycle. A key part of this position will also involve mentoring an internal engineer, developing structured security policies, and managing Sentinel, Defender and SOAR solutions for automated threat response. Additionally, the role requires liaising with third-party support partners to coordinate security solutions, manage incidents, and enhance overall cybersecurity posture. Responsibilities Infrastructure Security: Architect and secure Azure … and optimize Azure DevOps pipelines with security embedded at every stage. Cloud Security Implementation: Leverage Azure Security Centre, Microsoft Defender for Cloud, and Microsoft Sentinel for advanced security monitoring. Threat Detection & SOAR Automation: Oversee Security Orchestration, Automation, and Response (SOAR) solutions including SOC Prime. Network & Application Security: Manage Web Application Firewalls (WAF) and Intrusion Prevention Systems (IPS). Vulnerability … cyber threats. Incident Response: Formulating and documenting a solid process utilising a 3rd party support partner Security Monitoring & Logging: Develop SIEM solutions, logging strategies, and real-time threat intelligence. Monitor, audit, and improve infrastructure security posture using automated tooling. Policy & Procedures: Define and enforce security policies, incident response strategies, and structured action plans for proactive risk mitigation. More ❯
Warwick, Warwickshire, West Midlands, United Kingdom Hybrid / WFH Options
La Fosse
I'm working with a well-known, household-name organisation that plays a vital role in all of our lives. They're building out their cyber capabilities from the ground up and are currently looking for an experienced Cyber incident response lead to help shape and mature their security functions. Useful experience includes : Incident & Problem Management Stakeholder Management ITIL & Service Management Understanding of the CyberThreat Landscape Package information: Salary: Up to £70,000 Hybrid working Bonus Strong pension If this sounds of interest apply now ! or smail your CV directly to . More ❯
West Midlands, United Kingdom Hybrid / WFH Options
La Fosse Associates Limited
I'm working with a well-known, household-name organisation that plays a vital role in all of our lives. They're building out their cyber capabilities from the ground up and are currently looking for an experienced Cyber incident response lead to help shape and mature their security functions. Useful experience includes: Incident & Problem Management Stakeholder Management ITIL & Service Management Understanding of the CyberThreat Landscape Package information: Salary: Up to £70,000 Hybrid working Bonus Strong pension If this sounds of interest apply now ! or smail your CV directly to (see below) . More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Nominet
authoritative DNS. Ensure that our DNS product stack is engineered in line with strategy Ensure software is secure by design and fit for distribution in high cyberthreat environments. Project Delivery: Deliver DNS product work in line with the strategy, ensuring they are completed on time, within budget, and to the highest standards of quality. Manage risks More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Reed Technology
Cyber Security Engineer (SecOps) Location: Central Bristol Job Type: Permanent, Hybrid (2-3 days in-office) Salary: Competitive (£60,000-£65,000) + Bonus + Benefits We're recruiting for a SecOps Engineer to join a high-performing Information Security & Resilience team within a well-established FTSE 100 company. Based in Bristol, this hybrid role offers exciting variety … student experience improvements-all while helping safeguard digital assets and security posture. You'll work collaboratively across technical and business teams to monitor, analyse, and respond to evolving cyberthreats, lead forensic investigations, and support wider resilience initiatives. Key Responsibilities: Design, implement, and manage secure network architectures Perform vulnerability assessments , penetration testing , and remediation strategy delivery Lead and … Familiarity with secure networking protocols (VPNs, TCP/IP, etc.) and malware analysis Understanding of industry frameworks: ISO27001, Cyber Essentials, NIST800-53 Experience working on security operations, threat management, and incident resolution Excellent communication skills, with ability to translate technical risk to non-technical stakeholders Relevant certifications are desirable (e.g. CEH, CCSP, Security+, AWS or Azure certifications More ❯
Barrow-in-furness, Cumbria, United Kingdom Hybrid / WFH Options
Experis IT
of delivering security services within organisations? Would you relish putting these skills into practice by taking on a role within us to protect us and our clients from cyberthreats? We are seeking a Vulnerability Management Lead with proven experience to join our cybersecurity team. Technical Skills Provide remediation recommendations; Monitor remediation activities; Report on the progress of More ❯
Barrow-In-Furness, Cumbria, North West, United Kingdom Hybrid / WFH Options
Experis
of delivering security services within organisations? Would you relish putting these skills into practice by taking on a role within us to protect us and our clients from cyberthreats? We are seeking a Vulnerability Management Lead with proven experience to join our cybersecurity team. Technical Skills Provide remediation recommendations; Monitor remediation activities; Report on the progress of More ❯
Exceptional Benefits VIQU have partnered with a global retail leader headquartered in Dubai, who are looking for a strategic Senior Security Operations Manager to lead and build their cyber security function. This is a high-impact, greenfield role where you’ll define and deliver the cyber operations strategy, manage third-party vendors (including a SOC), and … develop an internal team to support a fast-scaling, digitally driven business. With a large global workforce and an ambitious technology agenda, cyber security sits at the core of their future growth. Key Responsibilities of the Senior Security Operations Manager: Own and define the cyber security operations strategy across the business, aligned to wider Group objectives … the SOC providers Build and embed incident response plans, playbooks, and operational standards for the function Drive maturity across SIEM, SOAR and security tooling, ensuring alignment with the latest threat landscape Provide cyber security leadership across new and existing technology programmes Lead response to major incidents, and provide guidance to executive leadership Define KPIs, SLAs and manage More ❯
Manchester, Lancashire, England, United Kingdom Hybrid / WFH Options
VIQU Limited
Exceptional Benefits VIQU have partnered with a global retail leader headquartered in Dubai, who are looking for a strategic Senior Security Operations Manager to lead and build their cyber security function. This is a high-impact, greenfield role where you’ll define and deliver the cyber operations strategy, manage third-party vendors (including a SOC), and … develop an internal team to support a fast-scaling, digitally driven business. With a large global workforce and an ambitious technology agenda, cyber security sits at the core of their future growth. Key Responsibilities of the Senior Security Operations Manager: Own and define the cyber security operations strategy across the business, aligned to wider Group objectives … the SOC providers Build and embed incident response plans, playbooks, and operational standards for the function Drive maturity across SIEM, SOAR and security tooling, ensuring alignment with the latest threat landscape Provide cyber security leadership across new and existing technology programmes Lead response to major incidents, and provide guidance to executive leadership Define KPIs, SLAs and manage More ❯
Liverpool, Lancashire, United Kingdom Hybrid / WFH Options
Techwaka
Senior Cyber Security Engineer opportunity working within an established fintech firm in Liverpool Attractive benefits package Up to £60,000 per annum depending on experience Full Time - Permanent role - Hybrid working available Sector: Finance Benefits Competitive Salary - £55,000 - £60,000 per annum Generous Annual Leave Paid Sick days Company Pension A comprehensive in-house training Continued training … and development Friendly and supportive working culture About the Role: Lead on technical cyber security initiatives within the Security Operations team Ensure the implementation of robust security controls and best practices Provide specialist security support to IT teams, including infrastructure, development, and database teams Work with stakeholders to maintain compliance with industry standards such as ISO27001, Cyber Essentials Plus, PCI/DSS Stay ahead of cyberthreats, maintaining and improving security monitoring and risk management processes Support vulnerability management, penetration testing, and incident response Requirements for this role: 3+ years' experience in a senior cyber security role Strong knowledge of security frameworks (NIST, NCSC, CIS, MITRE ATT&CK) Hands-on experience More ❯
Ashford, Kent, United Kingdom Hybrid / WFH Options
MAF Australia
charity work? In this role, you'll be responsible for implementing and managing security infrastructure, responding to threats, and ensuring compliance across systems. You'll work with various cyber security solutions while driving security best practices and incident response. If you have experience in cybersecurity tools, governance, and access management-and want to use your skills to support … ll lead the implementation and management of SIEM systems, Fortinet security tools, and endpoint detection & response (EDR) while conducting vulnerability assessments and penetration testing to stay ahead of cyber threats. You'll enhance identity and access management (IAM) by maintaining Active Directory, Entra ID, MFA, and Zero Trust security principles. Your expertise in network security, VPNs, SD-WAN … Demonstrated experience with SIEM implementation and management Strong background in network security and infrastructure protection Experience with IDS/IPS systems and security monitoring tools Proven incident response and threat hunting experience Programming/scripting skills for security automation Microsoft 365 Security Administration certification Cloud security certifications (Azure Security Engineer, AWS Security) Fortinet NSE certification (Level 7 or More ❯
Leeds, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
OpenSourced Ltd
a wide range of clients across sectors. As part of the expanding Incident Response team, the successful candidate will play a critical role in detecting, analysing, and mitigating cyber threats. This role requires strong analytical thinking, problem-solving abilities, and the agility to operate in a … fast-paced environment. Key Responsibilities: Conduct initial assessments of security incidents and contribute to incident management. Participate in live Incident Response operations, including digital forensic investigations. Perform security assessments, threat intelligence gathering, and OSINT analysis. Collaborate across departments to ensure a comprehensive approach to cybersecurity. Engage directly with clients to retrieve relevant logs and access infrastructure for forensic analysis. … Experienced in stakeholder management during high-pressure incidents. Strong communication skills and composure under pressure. Able to align incident response practices with industry standards and client expectations. Background in threat intelligence and proactive incident readiness. Self-starter with a collaborative mindset, committed to team success. Additional Info: This is a remote-first role, but occasional travel to client sites More ❯
Birmingham, West Midlands, West Midlands (County), United Kingdom Hybrid / WFH Options
ECS Resource Group Ltd
the risk register. To Be Considered for This Role, You Will Need: Cybersecurity Experience: Demonstrated experience in implementing and managing security controls across hybrid environments. Familiarity with endpoint protection, threat detection, and vulnerability management tools. Incident Response & Problem Solving: Ability to respond swiftly and effectively to security incidents. Skilled in structured analysis and incident remediation to ensure rapid recovery. … Threat Awareness & Risk Mitigation: Proficient in identifying vulnerabilities, assessing risks, and applying up-to-date security practices. Ability to defend against evolving cyber threats. Infrastructure Awareness: Solid understanding of core infrastructure components including servers, networks, and storage systems. Experience in supporting and securing both on-premise and cloud-based environments. Skills & Tools, Familiarity with the following tools … is advantageous: Palo Alto, Microsoft Defender for Endpoint Tenable, Microsoft Sentinel, Zscaler, Tanium, Illumio Strong understanding of cybersecurity principles, including threat detection, firewalls, intrusion prevention systems, and encryption. Working knowledge of network protocols with the ability to interpret and troubleshoot connectivity and security issues across diverse environments. Awareness of data storage concepts (e.g., SAN, NAS) and secure data handling More ❯
Rogerstone, Gwent, United Kingdom Hybrid / WFH Options
Hays Technology
Cyber Continuity Specialist Permanent - 60k- 69k + strong benefits Location: Hybrid/Remote Your new company I am looking to recruit an experienced Cyber Continuity Specialist to join a leader in the utilities space. The company is currently embarked on a project to ensure compliance with CAF and are currently investing in and expanding their cyber … business continuity, disaster recovery and security resilience. You will liaise with different stakeholders and departments across the business and ensure that any company BC/DR plans have cyber security in mind and plans. Key parts of the role: Develop and maintain cyber continuity plans to ensure the availability and resilience of critical cyber assets and functions. Collaborate with IT, security, internal audit and business continuity teams to align business continuity efforts with the overall organisational resilience. Stay informed about emerging cyberthreats and vulnerabilities. Conduct Business Impact Analysis and define recovery time objectives (RTO) and recovery point objectives (RPO) for cyber-related processes and systems. Ensure business continuity More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
SNG (Sovereign Network Group)
across the South, West and East of England, including London, as well as aiming to create thousands of new affordable homes every year. We're seeking an experienced Cyber Security Analyst to help protect our organisation from cyberthreats and contribute to a safe, secure digital future for our customers, systems, and data. You'll be … based in our office in Wembley or Basingstoke , combining both office and home working. The Role: As a Cyber Security Analyst , you'll play a key role in maintaining and improving our cyber resilience. Working closely with our external Security Operations Centre (SOC) and internal teams, you'll monitor systems, respond to threats, remediate vulnerabilities, and … help manage incidents. You'll be part of a collaborative cyber security function that supports all areas of the business, ensuring our infrastructure, applications, and data remain secure and compliant with relevant frameworks and standards. Key Responsibilities Monitor and analyse security events and alerts using SIEM and other security tools Conduct triage of security incidents and escalate as More ❯