Birmingham, Staffordshire, United Kingdom Hybrid / WFH Options
BT Group
Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: SIEM Application Engineer Function: Cyber Security Unit: Networks Location: Snowhill, Birmingham, United Kingdom Salary: Competitive with Great Benefits The new Network SIEM is essential to BT's network security, meeting TSA requirements and improving our CAF level. Your role as a … play a critical role in designing, developing, and maintaining our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. This role is hybrid (3 days in office) and can be based in one of the following offices: Birmingham, Manchester, Ipswich (Ipswich … you'll be doing SIEM Solution Development: Collaborate with security analysts and architects to design and implement SIEM solutions using Elasticsearch. Optimize SIEM rules, alerts, and dashboards for efficient threat detection. Collaborate effectively with others to drive forward key security objectives Presentation and documentation writing (to both technical and business audiences) Query Optimization and Performance Tuning: Write efficient Elasticsearch More ❯
all over the world. This role will be to join our detection engineering team, where you will focus on one of our detection capabilities. You will use our latest ThreatIntelligence and your own creativity to write and maintain detection logic for our customers. Previous experience with detection engineering is not a prerequisite. We're looking for a … innovative solutions. From our Red Team of hackers, our Blue Team of defense specialists, highly skilled developers to trusted security consultants and more: We do this for organizations where cyber security is highly important. That is why we continuously develop our individual skills and knowledge. We are critical thinkers, naturally security paranoid and thrive on development. We are part More ❯
a leading creator of cybersecurity technologies, providing highly effective solutions for securing organizations worldwide. From our origins in digital forensics and incident response, we've evolved into a global threatintelligence powerhouse, recognized for our ability to identify, investigate, and prevent cyberattacks. Our mission is to fight cybercrime and make the digital world safer for everyone. We are … for you. The role: As a Product Marketing Manager at Group-IB, you will be a key player in driving the market success of the following cutting-edge products: ThreatIntelligence, Digital Risk Protection, and Attack Surface Management. You'll translate complex technical capabilities into compelling customer-centric value propositions, enabling our sales teams and engaging our target … sales support. Qualifications: Must-Have Qualifications 3+ years of experience in product marketing, ideally within the cybersecurity industry or a related B2B technology sector. Familiarity with concepts related to threatintelligence, digital risk protection, attack surface management, or broader cybersecurity domains. Exceptional written and verbal communication skills, with a proven ability to craft compelling narratives and present complex More ❯
London, England, United Kingdom Hybrid / WFH Options
Sophos
leading endpoint, network, email, and cloud security that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs … worldwide, defending more than 600,000 organizations worldwide from phishing, ransomware, data theft, other every day and state-sponsored cybercrimes. The solutions are powered by historical and real-time threatintelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at www.sophos.com. Role … leading endpoint, network, email, and cloud security that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs More ❯
London, England, United Kingdom Hybrid / WFH Options
Sophos
adversaries, ransomware, phishing, malware, and more. Sophos’ services and products connect through the Sophos Central management console and are powered by Sophos X-Ops, the company’s cross-domain threatintelligence unit. Sophos X-Ops intelligence optimizes the entire Sophos Adaptive Cybersecurity Ecosystem, which includes a centralized data lake that leverages a rich set of open APIs … security solutions. Customers can also manage their cybersecurity directly with Sophos’ security operations platform or use a hybrid approach by supplementing their in-house teams with Sophos’ services, including threat hunting and remediation. Sophos sells through reseller partners and managed service providers (MSPs) worldwide. Sophos is headquartered in Oxford, U.K. More information is available at www.sophos.com . Role Summary More ❯
Oxford, England, United Kingdom Hybrid / WFH Options
Sophos Group
leading endpoint, network, email, and cloud security that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs … worldwide, defending more than 600,000 organizations worldwide from phishing, ransomware, data theft, other every day and state-sponsored cybercrimes. The solutions are powered by historical and real-time threatintelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at www.sophos.com. Role More ❯
London, England, United Kingdom Hybrid / WFH Options
Hunter Bond
the job poster from Hunter Bond Our leading Financial Services client is currently looking for a talented and motivated individual to be responsible for handling tactical level information and intelligence collection, analysis, and production, as well as the intake, triage, orchestration, and communication on incidents and events. The role supports threatintelligence and incident response activities, leveraged … jurisdictions globally. This is a long-term contract role for an established and still growing name in Financial Services. The following skills/experience are required: Previous experience in intelligence analysis, information security or cyber security. Relevant post-secondary education. Previously worked in Financial Services. Certificate in CISSP, ACFE, CBCP, ITIL, CRISC or CGRC is desirable. Salary: Up … to £75,000 + bonus + package Location: London (good work from home options available) If you are interested in this ThreatIntelligence position and meet the above requirements, please apply immediately. Seniority level Mid-Senior level Employment type Full-time Job function Information Technology, Project Management, and Engineering Industries Financial Services, Technology, Information and Media, and Banking More ❯
Salary: From £40,000 per annum negotiable depending on experience + fantastic benefits! Jisc grade: TCY3 (internal use only) Hours: 35 hours per week Contract: Permanent Reports into: Senior Threatintelligence engineer Location: Hybrid - A blend of working from home and your nominated hub office, we have hubs in London, Bristol, Manchester and Oxford. Specific patterns for working … the UK's research and education landscape? At Jisc, we operate Janet - the UK's ultra-fast, secure network dedicated to research and education. We're looking for a Threatintelligence engineer to help us protect this critical national asset. You'll be at the heart of our security operations, developing and maintaining the infrastructure that powers our … cutting-edge cybersecurity services. Your focus will be on enhancing and managing our: SIEM (Security Information and Event Management) systems SOAR (Security Orchestration, Automation, and Response) platforms ThreatIntelligence tools and integrations You'll work closely with our threatintelligence teams to design and implement smart, automated solutions that keep our defences sharp and responsive. Why More ❯
Manchester, Lancashire, United Kingdom Hybrid / WFH Options
Jisc
Salary: From £40,000 per annum negotiable depending on experience + fantastic benefits! Jisc grade: TCY3 (internal use only) Hours: 35 hours per week Contract: Permanent Reports into: Senior Threatintelligence engineer Location: Hybrid - A blend of working from home and your nominated hub office, we have hubs in London, Bristol, Manchester and Oxford. Specific patterns for working … the UK's research and education landscape? At Jisc, we operate Janet - the UK's ultra-fast, secure network dedicated to research and education. We're looking for a Threatintelligence engineer to help us protect this critical national asset. You'll be at the heart of our security operations, developing and maintaining the infrastructure that powers our … cutting-edge cybersecurity services. Your focus will be on enhancing and managing our: SIEM (Security Information and Event Management) systems SOAR (Security Orchestration, Automation, and Response) platforms ThreatIntelligence tools and integrations You'll work closely with our threatintelligence teams to design and implement smart, automated solutions that keep our defences sharp and responsive. Why More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Jisc
Salary: From £40,000 per annum negotiable depending on experience + fantastic benefits! Jisc grade: TCY3 (internal use only) Hours: 35 hours per week Contract: Permanent Reports into: Senior Threatintelligence engineer Location: Hybrid - A blend of working from home and your nominated hub office, we have hubs in London, Bristol, Manchester and Oxford. Specific patterns for working … the UK's research and education landscape? At Jisc, we operate Janet - the UK's ultra-fast, secure network dedicated to research and education. We're looking for a Threatintelligence engineer to help us protect this critical national asset. You'll be at the heart of our security operations, developing and maintaining the infrastructure that powers our … cutting-edge cybersecurity services. Your focus will be on enhancing and managing our: SIEM (Security Information and Event Management) systems SOAR (Security Orchestration, Automation, and Response) platforms ThreatIntelligence tools and integrations You'll work closely with our threatintelligence teams to design and implement smart, automated solutions that keep our defences sharp and responsive. Why More ❯
Oxford, Oxfordshire, United Kingdom Hybrid / WFH Options
Jisc
Salary: From £40,000 per annum negotiable depending on experience + fantastic benefits! Jisc grade: TCY3 (internal use only) Hours: 35 hours per week Contract: Permanent Reports into: Senior Threatintelligence engineer Location: Hybrid - A blend of working from home and your nominated hub office, we have hubs in London, Bristol, Manchester and Oxford. Specific patterns for working … the UK's research and education landscape? At Jisc, we operate Janet - the UK's ultra-fast, secure network dedicated to research and education. We're looking for a Threatintelligence engineer to help us protect this critical national asset. You'll be at the heart of our security operations, developing and maintaining the infrastructure that powers our … cutting-edge cybersecurity services. Your focus will be on enhancing and managing our: SIEM (Security Information and Event Management) systems SOAR (Security Orchestration, Automation, and Response) platforms ThreatIntelligence tools and integrations You'll work closely with our threatintelligence teams to design and implement smart, automated solutions that keep our defences sharp and responsive. Why More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Jisc
Salary: From £40,000 per annum negotiable depending on experience + fantastic benefits! Jisc grade: TCY3 (internal use only) Hours: 35 hours per week Contract: Permanent Reports into: Senior Threatintelligence engineer Location: Hybrid - A blend of working from home and your nominated hub office, we have hubs in London, Bristol, Manchester and Oxford. Specific patterns for working … the UK's research and education landscape? At Jisc, we operate Janet – the UK’s ultra-fast, secure network dedicated to research and education. We're looking for a Threatintelligence engineer to help us protect this critical national asset. You’ll be at the heart of our security operations, developing and maintaining the infrastructure that powers our … cutting-edge cybersecurity services. Your focus will be on enhancing and managing our: SIEM (Security Information and Event Management) systems SOAR (Security Orchestration, Automation, and Response) platforms ThreatIntelligence tools and integrations You’ll work closely with our threatintelligence teams to design and implement smart, automated solutions that keep our defences sharp and responsive. Why More ❯
Bristol, England, United Kingdom Hybrid / WFH Options
Jisc
Salary: From £40,000 per annum negotiable depending on experience + fantastic benefits! Jisc grade: TCY3 (internal use only) Hours: 35 hours per week Contract: Permanent Reports into: Senior Threatintelligence engineer Location: Hybrid - A blend of working from home and your nominated hub office, we have hubs in London, Bristol, Manchester and Oxford. Specific patterns for working … the UK's research and education landscape? At Jisc, we operate Janet – the UK’s ultra-fast, secure network dedicated to research and education. We're looking for a Threatintelligence engineer to help us protect this critical national asset. You’ll be at the heart of our security operations, developing and maintaining the infrastructure that powers our … cutting-edge cybersecurity services. Your focus will be on enhancing and managing our: SIEM (Security Information and Event Management) systems SOAR (Security Orchestration, Automation, and Response) platforms ThreatIntelligence tools and integrations You’ll work closely with our threatintelligence teams to design and implement smart, automated solutions that keep our defences sharp and responsive. Why More ❯
Springfield, Virginia, United States Hybrid / WFH Options
Zachary Piper Solutions, LLC
Location: Hybrid, Springfield, VA Clearance: Active TS/SCI CI Poly Responsibilities include, but are not limited to: Support Cyber Operations Squadron (COS) activities to publish up-to-date cybersecurity tool signatures (e.g. anti-virus and host based security systems) Provide focused analysis, including reverse malware engineering, against intrusion, anomalies, malware, viruses to identify critical information about source, intended … security event and incident correlation using information gathered from a variety of sources within the enterprise Analyzes and assesses damage to the data/infrastructure as a result of cyber incidents Performs cyber incident trend analysis and reporting. Characterizes and performs analysis of network traffic and system data to identify anomalous activity and potential threats to resources. Provides … detection, identification, and reporting of possible cyber-attacks/intrusions, anomalous activities, and misuse activities Create and deploy threat-based signatures for operational intrusion detection capabilities. Create and implement detection rules from intelligence reporting Basic Qualifications: Bachelor's Degree or 4+ years of years of additional cyber experience in lieu of degree 5+ years of experience More ❯
London, England, United Kingdom Hybrid / WFH Options
RiverSafe
Principal Cyber Security Consultant - Hybrid Get AI-powered advice on this job and more exclusive features. The Principal Security Consultant is a senior leader specialising in designing, implementing, and managing advanced security solutions. With expertise in SOC engineering tools and one of the following areas: Cloud Security, Identity and Access Management (IAM), or Threat Modelling, this role focuses … and implement robust cloud security architectures across multi-cloud platforms (AWS, Azure, Google Cloud). Design and deploy IAM solutions to ensure strong authentication, authorization, and access controls. Lead threat modelling exercises to identify, assess, and mitigate risks in systems and applications. Lead the design, implementation, and optimization of SIEM solutions (e.g., Splunk, Sentinel). Integrate SIEM systems with … other security tools such as EDR, SOAR, and threatintelligence feeds. Skills and Qualifications Extensive experience in Cyber Security, including leadership roles. Background in SOC engineering tools and expertise in cloud security, IAM, or threat modelling. Proficiency with cloud platforms and native security tools (AWS, Azure, GCP). Hands-on experience designing and implementing enterprise SIEM More ❯
London, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
a senior leader specialising in designing, implementing and managing advanced security solutions. With expertise in SOC engineering tools and one of either Cloud Security, and Access Management (IAM) or Threat Modelling, this role focuses on enhancing the security posture of organisations. The consultant will lead strategic security initiatives, collaborate with clients or stakeholders to solve complex challenges, and deliver … and implement robust cloud security architectures across multi-cloud platforms (AWS, Azure, Google Cloud). Design and deploy IAM solutions to ensure robust authentication, authorisation and access controls. Lead threat modelling exercises to identify, assess and mitigate risks in systems and applications. Lead the design, implementation and optimisation of SIEM solutions (e.g. Splunk, Sentinel). Integrate SIEM systems with … other security tools like EDR, SOAR and threatintelligence feeds. Skills Extensive experience in Cyber Security, with a significant portion in a leadership role. A background in SOC engineering tools combined with expertise in either cloud security, & Access Management or threat modelling. Proficiency in cloud platforms and services (AWS, Azure, GCP) with deep knowledge of security More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
EDF (UK)
EDF (UK) Gloucester, England, United Kingdom Cyber Operations Specialist EDF (UK) Gloucester, England, United Kingdom 6 days ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. About The Role Gloucester Business Park, Gloucester - with flexibility of working from home, minimum 3 days a week in the office. About The Role … Park, Gloucester - with flexibility of working from home, minimum 3 days a week in the office. This is a fixed term contract until June 2026. Are you an experienced Cyber professional ready to take the next step in your career? Do you have a strong background in cyberthreatintelligence and training program development ? Are you … person who thrives in a dynamic environment where each day brings new challenges and opportunities to make an impact? If so, come and join us at EDF as a Cyber Operations Specialist! The Opportunity As a Cyber Operations Specialist, you'll support the CyberThreatIntelligence and Training, Communications, and Awareness functions. While expertise in More ❯
Chesterfield, England, United Kingdom Hybrid / WFH Options
Hays
Your new company Hays Technology are recruiting a Head of Cyber Security & Infrastructure to join an exciting and growing public sector organisation based nationally. You will be reporting to the Director of Technology. Your new role In your role, you will be overseeing the Cyber Security estate, adhering to the Cyber Assessment Framework, and continuously improving the … internal security posture, identifying and assessing any cyber security risks, in accordance with laws and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will be leading … the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of threatintelligence, threat detection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and ensure an More ❯
Derbyshire, England, United Kingdom Hybrid / WFH Options
Hays
Your new company Hays Technology are recruiting a Head of Cyber Security & Infrastructure to join an exciting and growing public sector organisation based nationally. You will be reporting to the Director of Technology. Your new role In your role, you will be overseeing the Cyber Security estate, adhering to the Cyber Assessment Framework, and continuously improving the … internal security posture, identifying and assessing any cyber security risks, in accordance with laws and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will be leading … the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of threatintelligence, threat detection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and ensure an More ❯
Leeds, West Yorkshire, Yorkshire, United Kingdom Hybrid / WFH Options
Hays
Your new company Hays Technology are recruiting a Head of Cyber Security & Infrastructure to join an exciting and growing public sector organisation based nationally. You will be reporting to the Director of Technology. Your new role In your role, you will be overseeing the Cyber Security estate, adhering to the Cyber Assessment Framework, and continuously improving the … internal security posture, identifying and assessing any cyber security risks, in accordance with laws and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will be leading … the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of threatintelligence, threat detection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and ensure an More ❯
London, England, United Kingdom Hybrid / WFH Options
ZipRecruiter
Job Description Your new company Hays Technology are recruiting a Head of Cyber Security & Infrastructure to join an exciting and growing public sector organisation based nationally. You will be reporting to the Director of Technology. Your new role In your role, you will be overseeing the Cyber Security estate, adhering to the Cyber Assessment Framework, and continuously … improving the internal security posture, identifying and assessing any cyber security risks, in accordance with laws and regulations. You will be responsible for leveraging and optimising a number of tools including, MS Defender, Sentinel, Azure and the external SOC partner to enhance cyber resilience, conduct threat analysis, and proactive risk assessments to design effective controls. You will … be leading the Cyber Security operations function, by providing strategic direction and coordinating day-to-day delivery of threatintelligence, threat detection, incident response, vulnerability management, and ethical hacking capabilities. You will be leading a team of Infrastructure Engineers, ensuring strong data controls are in place, whilst working closely with key stakeholders to establishing responsibilities and More ❯
Location(s): UK, Europe & Africa: UK: Gloucester BAE Systems Digital Intelligence is home to 4,500 digital, cyber, and intelligence experts. We work across 10 countries to collect, connect, and analyze complex data, enabling governments, armed forces, and businesses to achieve digital advantages in demanding environments. Job Title: Threat Hunter Requisition ID: 121789 Location: Leeds - hybrid … members and share knowledge proactively. Contribute to the SOC Knowledge Repository by creating and updating documentation independently. Build relationships externally with other SOCs and cybersecurity researchers to identify analytics, threatintelligence, and tradecraft that benefit the Blue Team. Communicate funding and prioritization suggestions and lead implementation when needed. Develop complex, anomaly-based KQL analytics and playbooks for detection … vulnerabilities, produce proof-of-concept exploits, and emulate adversary TTPs for training and detection evaluation. Review red team and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes, data collection, and analysis, demonstrating the need for improvements through scenarios and red teaming. Perform complex threatMore ❯
Exeter, Devon, United Kingdom Hybrid / WFH Options
Met Office
The following content displays a map of the jobs location - Exeter We're looking for an exceptional Cyber Security Operations Manager to help us make a difference to our planet. As our Cyber Security Operations Manager, the job may be suitable for hybrid working, which is where an employee works part of the week in the office and … heart ofdecision-making We're bettertogether-understandingpartnerships and inclusivity make us greater We keep evolving - pushing boundaries to make tomorrow better for ourcustomers Your world of expertise As the Cyber Security Operations Manager within the Security Operations team of the Met Office's Cyber Security Department, will design, implement and continuously improve the department's Security Operations strategy … ensuring rapid detection,response and recovery from cyber threats and incidents. The role willlead a team of security professionals and embed security practices in line with best practice standards. You will be front and centre for the protection, detection, andresponse capabilities of the Met Office. Team Leadership and Development: Lead, manage and mentor a team of cyber security More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
BAE Systems Applied Intelligence
Select how often (in days) to receive an alert: Create Alert BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments. … Job Title: Threat Hunter Requisition ID: 121789 Location: Leeds - We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. Grade: GG10 - GG11 Job Description Point of escalation for intrusion analysis, forensics and Incident Response queries. Able to provide root cause analysis of complex, non-standard analytic findings … the SOC Knowledge Repository and associated systems, autonomously creating new knowledge and updating existing items. · Working outside the HMG community to build/develop relationships with external SOCs and cyber security researchers, identify analytics, tradecraft and threatintelligence that may benefit the Blue Team, including both communicating suggestions for funding/prioritisation to technical lead, and working More ❯
Gloucester, England, United Kingdom Hybrid / WFH Options
BAE Systems
Location(s): UK, Europe & Africa: UK: Gloucester BAE Systems Digital Intelligence is home to 4,500 digital, cyber, and intelligence experts. We work collaboratively across 10 countries to collect, connect, and understand complex data, enabling governments, armed forces, and commercial businesses to gain a digital advantage in demanding environments. Job Title: Threat Hunter Requisition ID … Contribute to the SOC Knowledge Repository, creating and updating content autonomously. Build relationships outside the HMG community with external SOCs and cybersecurity researchers to identify beneficial analytics, tradecraft, and threat intelligence. Develop complex KQL analytics and playbooks for detection rules against M365 environments and host-based analytics for Linux and Windows VMs. Review open-source research on threats impacting … of-concept exploits to demonstrate potential compromises. Emulate adversary TTPs for training and detection evaluation. Review red team and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes and data analysis, demonstrating the need for improvements through scenarios and red teaming. Perform non-routine and More ❯