1 to 25 of 109 Threat Detection Jobs in the UK excluding London

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
World Class Defence Organisation is currently looking to recruit a Cyber Threat Operations Specialist subcontractor on an initial 12 month contract.You do not need to hold any current security clearance in order to apply. However, SC security clearance will be required prior to starting the position , with DV clearance … background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote working: Onsite ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£85.00 per hour
World Class Defence Organisation is currently looking to recruit a Cyber Threat Operations Specialist subcontractor on an initial 12 month contract. You do not need to hold any current security clearance in order to apply. However, SC security clearance will be required prior to starting the position , with … background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote working: Onsite ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
St James, Bristol, UK
Employment Type
Full-time
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

Security Consultant

Hiring Organisation
Version 1
Location
Birmingham, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Manchester, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Edinburgh, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Version 1
Location
Newcastle upon Tyne, UK
Employment Type
Full-time
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Security Consultant

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Cyber Security Engineer

Hiring Organisation
Carbon 60
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Contract
Contract Rate
£680 - £700/day
Cyber Security Engineer to join a growing Cyber Security Operations function. This is a fantastic opportunity to work on large-scale security tooling, detection capabilities and SOC technologies within a complex, highly secure environment. You'll play a key role in enhancing security visibility, improving detection capabilities … ongoing evolution of cyber defence tooling. What You'll Be Doing Supporting and improving SOC security tooling and capabilities Managing and optimising SIEM and threat detection platforms Developing and enhancing automation and security playbooks Supporting tool integrations, data onboarding and log ingestion Investigating security events and improving detection ...

Cyber Threat Detection & Response Apprentice

Hiring Organisation
QA
Location
Oswestry, Shropshire, United Kingdom
Employment Type
Full-Time
Salary
£20,000 per annum
fascinated by cyber threats, digital investigations and how organisations protect themselves from cyber attacks? We’re looking for an ambitious Cyber Threat Detection & Response Apprentice to join our growing team and begin an exciting career in one of the fastest-growing areas of technology. This is an opportunity … more than 100 specialists help businesses stay connected, secure and future-ready through innovative technology solutions. What you’ll be doing: As a Cyber Threat Detection & Response Apprentice at SNO, you’ll work alongside experienced professionals to strengthen our cyber defence capabilities. Your responsibilities will include: Assisting ...

Cyber Security Engineer / SOC Analyst

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£92.11 per hour
background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £92.11 per hour Location: Stevenage Hybrid/Remote working: Onsite … utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat Detection Analyst key responsibilities are: Accountable ...

SIEM Detection Engineer - SC Cleared

Hiring Organisation
Sanderson Recruitment Plc
Location
Reading, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 625 - 675 Daily
Lead integration of log sources into Microsoft Sentinel to ensure complete and reliable security telemetry. . Design and optimise KQL queries to support effective threat detection and investigation. . Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases. . Develop … data normalisation logic. . Strong knowledge of KQL (Kusto Query Language), advanced query development and optimisation. . Experience designing, building and tuning analytic rules, detection logic and threat use cases. . Experience developing Logic Apps, Playbooks and SOAR automation workflows. . Experience implementing CI/CD pipelines using ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

Cloud Security Engineer

Hiring Organisation
Kainos
Location
Belfast, UK
Employment Type
Full-time
security best practices and implementing controls for Cloud Security and governance. Implementation of automated security tooling to validate security requirements and identify potential issues. Threat Detection & Incident ResponseDefine threat detection and incident response processes and playbooks for cloud environments. Collaborate with the SOC to operationalise detection ...

Cloud Security Engineer

Hiring Organisation
Hackajob Ltd
Location
Belfast, County Antrim, Northern Ireland, United Kingdom
Employment Type
Permanent
Salary
£70,000
security best practices and implementing controls for Cloud Security and governance. Implementation of automated security tooling to validate security requirements and identify potential issues. Threat Detection & Incident Response Define threat detection and incident response processes and playbooks for cloud environments. Collaborate with the SOC to operationalise … detection rules and incident handling. Compliance & Audit Support GRC in meeting evidence and compliance requirements for ISO27001, NCSC Cloud Security Principles, and SOC2. Reviewing the outputs from security tools and security practices. You will filter and prioritise these into security stories that can be understood and actioned ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
decision-making challenges. Working with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops, and solution ...

SIEM Security Engineer

Location
Birmingham, England, United Kingdom
maintaining the ingestion of our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. The role is hybrid (3 days in office) & based in Birmingham What you’ll be doing … scope of data ingestion. Support the configuration of Elasticsearch pipelines for data ingestion from various sources, primarily from Kafka Enhance data enrichment by integrating threat intelligence feeds and contextual information. Ingest data from various networking equipment, servers, firewalls and security appliances across multiple vendors. SIEM Solution Development Collaborate with ...

Cyber Security & Infrastructure Engineer

Hiring Organisation
Adria Solutions
Location
Newcastle-upon-Tyne, Tyne and Wear, North East, United Kingdom
Employment Type
Permanent
Salary
£50,000
role in protecting their systems, networks and data. This is a hands-on position offering the opportunity to work across cyber security, infrastructure, cloud, threat detection and incident response within a small, technically capable IT team. The Role As Cyber Security & Infrastructure Engineer, you will be responsible … security, resilience and operational performance. Key Responsibilities Monitor security alerts, investigate potential incidents and lead incident response activities Conduct forensic investigations and contribute to threat detection and intelligence activities Develop and refine security monitoring, detection rules and use cases Carry out vulnerability scanning and support remediation ...

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
events using IBM QRadar SIEM Investigate and respond to security incidents across various platforms Manage the full incident lifecycle, from identification to resolution Conduct threat detection and analysis, along with threat hunting activities Perform detailed log analysis across multiple security platforms Produce incident reports and post-incident … insider threats If you are a SOC Analyst with a strong background in security operations and a keen eye for incident response and threat detection, our client wants to hear from you. This is a fantastic opportunity to contribute to a critical project within the Defence & Security sector. ...

Cloud Security Engineer - Manchester - National Security West

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£95,000
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...

Cloud Security Engineer - Leeds - National Security West

Hiring Organisation
Hackajob Ltd
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£95,000
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...

Cloud Security Engineer - London - National Security West

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£95,000
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...

Cloud Security Engineer – Gloucester- National Security West

Hiring Organisation
BAE Systems
Location
City and Borough of Leeds, United Kingdom
Employment Type
Full Time
date with the latest releases and best practices. Experience with AWS security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel … such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security best practices across engineering and development teams. Supporting incident response investigations, threat hunting activities and security improvement initiatives. Developing reusable implementation patterns, standards and automation to improve consistency and security across projects. Managing software configuration, source ...

Security Consultant

Location
Newcastle upon Tyne, England, United Kingdom
gaps, and define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions … monitoring patterns, and guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing ...

Cyber Security Engineer

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£92.11 per hour
utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat Detection Analyst key responsibilities are: Accountable ...