1 to 25 of 81 MITRE ATT&CK Jobs in the UK excluding London

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, United Kingdom
delivered in a consistent and scalable way. Working directly with customers, you will define detection strategies, design use cases aligned to MITRE ATT&CK, and guide improvements in visibility, coverage and response maturity. You will work closely with platform onboarding and engineering teams, supplementing them … rulesets across SIEM and XDR platformsDevelop and tune detection logic using KQL or equivalent query languagesDesign detection use cases aligned to MITRE ATT&CK and real-world attack techniquesMap customer log sources to detection use cases to assess coverage and identify gapsDesign and implement SOAR ...

Senior Detection and Response Engineer

Location
Cambridge, England, United Kingdom
improve security telemetry, alert enrichment, investigation workflows and response times. Conduct threat hunting using adversary behaviours, TTPs and frameworks such as MITRE ATT&CK, incorporating findings into security controls and detections. Create and continuously improve incident runbooks, playbooks and detection processes based on findings from … ability to write and develop queries for complex investigations. Understanding of adversary tactics, techniques and procedures (TTPs), offensive security concepts and MITRE ATT&CK principles. Practical knowledge of cloud environments and security controls, with the ability to apply detection and incident response practices across hybrid ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
SIEM and XDR platforms Develop and tune detection logic using KQL or equivalent query languages Design detection use cases aligned to MITRE ATT&CK and real-world attack techniques Map customer log sources to detection use cases to assess coverage and identify gaps Design … consultant Lead workshops covering detection engineering, use case design and SOC maturity Guide customers on improving detection coverage and aligning to MITRE ATT&CK Clearly explain detection strategies, gaps and recommendations to both technical and non-technical stakeholders Work closely with platform onboarding and engineering ...

Senior Security Engineering Consultant

Hiring Organisation
Matchtech
Location
Basingstoke, United Kingdom
rulesets across SIEM and XDR platformsDevelop and tune detection logic using KQL or equivalent query languagesDesign detection use cases aligned to MITRE ATT&CK and real-world attack techniquesMap customer log sources to detection use cases to assess coverage and identify gapsDesign and implement SOAR … trusted technical consultantLead workshops covering detection engineering, use case design and SOC maturityGuide customers on improving detection coverage and aligning to MITRE ATT&CKClearly explain detection strategies, gaps and recommendations to both technical and non-technical stakeholdersWork closely with platform onboarding and engineering teams to ensure smooth ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations, and engaging with … customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops ...

Senior SOC Engineer

Location
Glasgow, Lanarkshire, United Kingdom
with threat intelligence teams to enhance detection logic. Threat Modelling & Use Case Development Lead threat modelling exercises using frameworks such as MITRE ATT&CK, STRIDE, and Cyber Kill Chain. Translate threat models into actionable detection use cases and SIEM rules. Prioritise detection engineering based … Python or PowerShell for automation. Deep understanding of threat detection, incident response, and the cyber kill chain. Familiarity with frameworks including MITRE ATT&CK, NIST, and CIS. Strong communication, analytical, and presentation skills. Solid understanding of network traffic flows, vulnerability management, and penetration testing principles. ...

Security Engineer

Hiring Organisation
NTT DATA
Location
Birmingham, United Kingdom
help define corrective actions to reduce future risks. Threat Modelling & Use Case Development Perform threat modeling using industry frameworks such as MITRE ATT&CK, STRIDE, or the Cyber Kill Chain.Design actionable SIEM use cases, detection rules, and workflows aligned with risk prioritization.Evaluate use-case effectiveness … scripting (e.g., Python, PowerShell) to automate tasks and build SOC efficiencies.Deep familiarity with cyber threat detection techniques related to frameworks like MITRE ATT&CK and vulnerability management.Experience managing ITIL processes, including Incident, Problem, and Change Management. Certifications Required CISSP, GIAC, SC-200, Splunk Power User ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
will be responsible for producing an executive summary‐style report, which will include a timeline of key events mapped to the MITRE ATT&CK framework. This comprehensive report will serve as a valuable resource for stakeholders, highlighting the steps taken to combat the cybersecurity incident … circumstances``` Occasionally willing to begin work early and/or stay late when warranted for customer engagements Strong grasp of the MITRE ATT&CK framework Enjoy mentoring and assisting in the development of junior analysts A team‐player attitude with a willingness to share knowledge ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
will be responsible for producing an executive summary-style report, which will include a timeline of key events mapped to the MITRE ATT&CK framework. This comprehensive report will serve as a valuable resource for stakeholders, highlighting the steps taken to combat the cybersecurity incident … circumstances Occasionally willing to begin work early and/or stay late when warranted for customer engagements Strong grasp of the MITRE ATT&CK framework Enjoy mentoring and assisting in the development of junior analysts A team-player attitude with a willingness to share knowledge ...

DIG - Level 1 SOC Cyber Analyst

Location
Hereford, England, United Kingdom
escalation playbooks; suggest improvements based on recurring issues or inefficiencies. Threat Awareness: Maintain awareness of current cyber threats, attacker techniques (MITRE ATT&CK), and industry trends relevant to the organisations threat landscape. About You: Previous experience in a SOC, IT Operations, or security support role. … systems. Working knowledge of SIEM platforms (e.g. Microsoft sentinel, Splunk, Elastic, QRadar). Awareness of security frameworks and methodologies (NIST CSF, MITRE ATT&CK, ISO27001). #J-18808-Ljbffr ...

Senior Cyber Security Engineer (EDR)

Hiring Organisation
Sanderson Government and Defence
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
threat detection platforms. Create and optimise detection logic using technologies such as Splunk and endpoint security solutions. Map detections against the MITRE ATT&CK framework to ensure comprehensive threat coverage. Continuously improve detection quality by analysing alert fidelity, false positives, and operational effectiveness. Validate detections … following: Splunk and SPL YARA rule development EDR detection engineering SIEM content development and tuning Experience mapping detections to the MITRE ATT&CK framework. Strong understanding of modern security principles including Zero Trust, identity-first security, secrets management, and network segmentation. Desirable Experience Experience with ...

2nd/3rd Line Security Analyst - Reading

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum
sign-ins, malicious OAuth consent, mailbox access), including session/token revocation Design, build and test SIEM detection rules mapped to MITRE ATT&CK, and tune out false positives without blanket whitelisting Build automation for SOC processes - enrichment, ticketing, containment - using Python, Logic Apps, APIs … security incidents from triage through to closure Hands-on experience writing and tuning SIEM detection logic, with a solid understanding of MITRE ATT&CK and KQL (or equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands-on SOAR platform configuration Working ...

Threat Intelligence Analyst

Location
Birmingham, England, United Kingdom
endpoint, identity, cloud and Office to spot emerging patterns and support investigations Map threats, TTPs and campaigns to frameworks such as MITRE ATT&CK Work closely with the wider SOC to feed findings into triage, detections and remediation, and build towards producing threat and vulnerability … threat landscape Exposure to vulnerability and threat tooling, ideally Tenable and Microsoft Defender or similar Solid working knowledge of CVEs, CVSS, MITRE ATT&CK and the common types of threats and data breaches Genuinely keen to move into threat and vulnerability work and develop into ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What … Bring: Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs ...

Senior Security Operations Centre Analyst

Location
Farnborough, England, United Kingdom
Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence techniques. Support threat intelligence activities and contribute to the continuous improvement of SOC operations. What … Bring: Proven experience working within a Security Operations Centre. Hands-on experience with Microsoft Sentinel and Splunk. Strong understanding of MITRE ATT&CK. It would be great if you had: Networking protocols and infrastructure (TCP/IP, LAN/WAN, HTTP, SMTP, FTP, LDAP). Firewalls, VPNs ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra ID, Intune, Darktrace and supporting technologies, managing … understanding of Azure, AWS and hybrid infrastructure security, with strong knowledge of networking, operating systems and attacker techniques. Practical understanding of MITRE ATT&CK, Cyber Kill Chain, NIST and SANS incident response frameworks. Experience working within regulated and audited environments, including ISO 27001 and Cyber ...

Cyber Security Analyst

Hiring Organisation
Radius Payment Solutions
Location
Chester, United Kingdom
Teaming, Continuous Adversarial Testing and Vulnerability Disclosure Programmes.Understanding of Cyber Threat Intelligence, phishing, social engineering and insider risk management.Good understanding of MITRE ATT&CK and NIST Cybersecurity Frameworks.Strong analytical and problem-solving skills, with the ability to investigate technical security issues and recommend appropriate actions.Ability ...

Senior SOC Analyst

Location
Milton Keynes, Buckinghamshire, United Kingdom
activities during major cyber security incidents. Experience contributing to the development of monitoring use cases and detection improvements. Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. TPBN1_UKTJ ...

Senior SOC Analyst

Hiring Organisation
Network IT
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£75 per hour
activities during major cyber security incidents. Experience contributing to the development of monitoring use cases and detection improvements. Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. ...

Lead SOC Analyst - DV Cleared

Hiring Organisation
Network IT
Location
Buckinghamshire, South East, United Kingdom
Employment Type
Temporary
Salary
£80 per hour
activities during major cyber security incidents. Experience contributing to the development of monitoring use cases and detection improvements. Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. ...

Cyber Security & Infrastructure Engineer

Hiring Organisation
Adria Solutions
Location
Newcastle-upon-Tyne, Tyne and Wear, North East, United Kingdom
Employment Type
Permanent
Salary
£50,000
security principles, including OWASP Top 10, WAF and API security Experience with vulnerability management, patching and security remediation Knowledge of the MITRE ATT&CK Framework and common attack techniques Experience applying security standards such as NCSC guidance, CIS benchmarks or Microsoft Security Baselines Understanding ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
HTTP, SMB, LDAP. Operational knowledge of Windows, macOS and Linux. Ability to read and interpret logs from multiple sources. Awareness of MITRE ATT&CK and differentiating legitimate admin activity vs suspicious behaviour. Experience with Microsoft Sentinel, Google SecOps or other SIEM platforms. Experience with Defender ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
technologies A good understanding of incident response processes and methodologies Knowledge of common attack techniques, tactics and procedures, including the MITRE ATT&CK framework Experience analysing logs across endpoint, network, cloud or identity environments An understanding of threat intelligence and indicators of compromise Strong analytical ...

Microsoft Security Engineer

Location
Basildon, England, United Kingdom
security principles and cloud security architecture Experience with Microsoft Entra ID, Conditional Access and identity security Understanding of security frameworks including MITRE ATT&CK, NIST or ISO 27001 Experience with security automation and Infrastructure as Code technologies such as Terraform, Bicep or Azure DevOps Desirable ...