101 to 125 of 448 Threat Intelligence Jobs

SOC and Incident Response Lead

Location
City Of London, England, United Kingdom
experienced SOC and Incident Response Lead at ASOS, you will provide hands-on technical leadership across security monitoring, detection, engineering, incident response, and threat-led investigations. You will lead the SOC and Incident Response team, ensure security incidents are investigated and resolved effectively, and maintain a strong operating relationship … complex security incidents. Own and improve the SOC detection lifecycle, including reviewing detection coverage, tuning noisy or low-value alerts, creating new detections from threat intelligence and incident learnings, and mapping coverage against relevant attack techniques and critical business assets. Establish and maintain incident response processes, procedures ...

Biometric SOC Analyst

Location
Greater London, England, United Kingdom
would also depend on your ability to adhere to the UK Security Clearance check criteria. iProov is looking for a biometric incident responder and threat analyst. This specialised role will combine data analytics and threat intelligence methods and will include daily monitoring coverage of internally raised alerts … active threat hunting of novel attack methodologies. We are looking for someone with experience in incident triage, an interest in biometrics and expanding their skill set. How you can make an impact Monitor biometric imagery from production traffic to detect patterns of fraudulent behaviour. Escalate validated and confirmed imagery ...

Lead Technical Engineer

Hiring Organisation
Anson Mccade
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£790 per day
previous clients. Strong hands-on experience designing, building, and operating SOC technology, including at least two of: SIEM, SOAR, EDR, Vulnerability Management, or Threat Intelligence . Proven delivery record in SIEM onboarding and configuring applications for high data-ingest rates (Cloud and/or On-Prem). Technical … privilege, encryption). Networking: OSI and TCP/IP models, IP addressing, subnetting, routing protocols, LAN/WAN configurations, ACLs, and VLANs. Cybersecurity Fundamentals: Threat mitigation, risk assessment, vulnerability management, threat intelligence, and TTPs (Tactics, Techniques, and Procedures). Systems Administration: Endpoint security/EDR, user access ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
London, United Kingdom
Salary
£ 70 K
risks introduced by AI systems that can reason, retrieve data, call tools and take action.You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing … risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight.Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions.Advise on secure patterns for AI application development ...

AI Security Consultant

Location
City of Westminster, England, United Kingdom
introduced by AI systems that can reason, retrieve data, call tools and take action. You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing … risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight. Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions. Advise on secure patterns ...

Senior Cyber Threat Intelligence Strategist

Location
United Kingdom
Labs is seeking a Senior Cyber Threat Intelligence Analyst to conduct time-sensitive blockchain analysis and investigations, collaborating with blockchain intelligence experts, engineers, and data scientists to deliver high-confidence analytical support. You will produce finished intelligence, lead complex investigations, and connect technical findings to financial ...

Chief Information Security Office (CISO)

Hiring Organisation
Weyerhaeuser
Location
Seattle, Washington, United States
Employment Type
Permanent
Salary
USD Annual
cyber risk, emerging threats, and security-related business impacts. Translate technical security requirements into actionable business-focused plans across the enterprise. Monitor industry trends, threat intelligence, and emerging technologies to inform strategic direction. Risk Management, Governance and Compliance Drive the development and enforcement of enterprise-wide cybersecurity policies … Experience leading cybersecurity in a manufacturing environment including national and/or global distributed manufacturing field operation facilities is strongly preferred. Experience with Artificial Intelligence (AI) is strongly preferred Expert level skills with identity and access management, cloud security, vulnerability management, security operations and regulatory compliance required Excellent written ...

Security Consultant

Location
Greater London, England, United Kingdom
Creating and optimising detection logic using KQL and other query languages. Developing detection use cases aligned with the MITRE ATT&CK framework and current threat techniques. Assessing customer telemetry and identifying opportunities to improve visibility and detection coverage. Building SOAR automations, integrations and response workflows to reduce manual effort. … Developing incident response playbooks that support effective Security Operations Centre (SOC) processes. Applying threat intelligence to continuously improve detections and response capabilities. Promoting a Detection-as-Code approach, ensuring detection content is scalable, version controlled and repeatable. Producing clear technical documentation, detection strategies and coverage assessments for customers. ...

Cyber Security Manager

Location
Slough, England, United Kingdom
frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls Experience with threat … Manager, Cyber Security, Information Security, Security Architecture, Cyber Risk, NIST, ISO 27001, CIS, CAF, Defence, Government, Security Clearance, SC, DV, Incident Response, Vulnerability Management, Threat Intelligence, NSD #J-18808-Ljbffr ...

Cyber Threat Management Analyst, Specialist

Hiring Organisation
Hackajob Ltd
Location
London, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
client is a global investment management company. Job Title Cyber Threat Intelligence Analyst The Role The Cyber Threat Intelligence Center provides timely situational awareness, conducts deep analysis of threats and vulnerabilities, and extracts actionable information for relevant teams click apply for full job details ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
people who are technical at heart and understand what analysts need to succeed. Career development is a core focus, with clear pathways into Threat Intelligence, SOC Engineering, SOC Professional Services, senior SOC roles and Incident Response for those who want to specialise. You’ll be part … Senior and Lead Analysts with appropriate context. Review vulnerability management output and provide basic prioritisation insight. Hunt and improve Take part in directed threat hunting activities. Suggest improvements to detections, dashboards and runbooks. Support testing of new use cases and detection logic. Collaborate and communicate Provide clear written updates ...

CTI Delivery Lead: Cyber Threat Intelligence & SIEM

Location
Reading, England, United Kingdom
Harvey Nash Group seeks a Cyber Threat Intelligence Delivery Lead for Reading/Havant on a hybrid basis for a 6-month programme. You will spearhead CTI initiatives, drive monitoring and security operations, and coordinate with SIEM tools to strengthen threat detection and resilience. The role requires ...

CTI Delivery Lead: Cyber Threat Intelligence & SIEM

Location
Havant, England, United Kingdom
Harvey Nash Group seeks a Cyber Threat Intelligence Delivery Lead for Reading/Havant on a hybrid basis for a 6-month programme. You will spearhead CTI initiatives, drive monitoring and security operations, and coordinate with SIEM tools to strengthen threat detection and resilience. The role requires ...

MEA Embedded Threat Intelligence Specialist

Location
Greater London, England, United Kingdom
Control Risks’ Embedded Consulting team is seeking a Regional Threat Intelligence Specialist to support a global tech client in producing reports and other threat-related products for the EMEA region. The role focuses on threat, vulnerability, and risk assessments, with on-ground analysis of local risks … site datacenter visits. The ideal candidate has 3-5 years in risk analysis or intelligence gathering, strong OSINT, and excellent report-writing skills. #J-18808-Ljbffr ...

Senior Cyber Threat Intelligence Lead (Blockchain & AI)

Location
United Kingdom
Labs is seeking a Staff Cyber Threat Intelligence Analyst to conduct high-complexity investigations, support time-sensitive blockchain analysis, and shape analytical workflows. You will collaborate with blockchain intelligence experts, engineers, and data scientists to raise analytical quality and operational relevance across TRM’s cyber threat ...

Threat Analyst 2

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies - including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with ...

Advisory PSIRT Engineer

Location
Farnborough, England, United Kingdom
compliance, vulnerability reporting readiness, and regulatory response activities. Key Responsibilities Vulnerability Assessment & Triage: Evaluate product security vulnerabilities, exploits, and incidents from external researchers, threat intelligence, public disclosures, and internal testing to determine severity, risk, and business impact. PSIRT Case Management: Manage the end-to-end lifecycle of vulnerability … Compliance: Assist with CRA reporting requirements by identifying actively exploited vulnerabilities or severe incidents, preparing regulatory reports, and participating in readiness exercises. Threat Intelligence Monitoring: Monitor global vulnerability databases, threat feeds, and third-party notifications to proactively assess emerging risks impacting Lenovo products. Metrics & Continuous Improvement: Develop ...

Embedded Security Education & Awareness Programme Consultant

Location
Greater London, England, United Kingdom
tracking, build leadership dashboards, and escalat Conference & Travel Security. Produce location-specific security briefings and short-form audio content for major conferences, drawing on threat intelligence inputs and distributing through our events coordination channels. New Hire Security Onboarding. Deliver monthly live onboarding sessions, create interactive exercises and follow … assessments, maintain on-demand recordings, and manage automated follow-up communications. Threat Briefings. Coordinate quarterly security briefings for high-profile researchers and secure recurring slots at leadership forums to deliver concise threat updates. Internal Security Portal. Maintain and expand the clients security resource hub with a library ...

Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA

Hiring Organisation
GitLab
Location
United Kingdom
Salary
£ 70 K
SIEM use cases, alerting strategies, and telemetry pipelinesBuild and enhance automation and AI-assisted workflows to improve triage, investigation speed, and response consistencyPartner with Threat Intelligence to contextualize threats and improve detection coverageConduct root cause analysis (RCA) and lead post-incident reviews to drive continuous improvement and risk … GitLab in a security or engineering contextHands-on experience with SIEM, EDR, and/or detection engineeringExperience with cloud platforms (AWS & GCP)Familiarity with threat intelligence and adversary tactics (e.g., MITRE ATT&CK)Experience building or working with automation (e.g., Python, scripting, SOAR platforms)Interest or experience ...

Senior Cyber Threat Intelligence Analyst - Hybrid UK

Location
Portsmouth, England, United Kingdom
Babcock International in the United Kingdom is seeking a Senior Cyber Threat Intelligence Analyst to identify, analyse and report threats that could impact people, information, systems and customers. You will transform complex data into actionable intelligence to support proactive cyber defence, incident response, vulnerability management and risk ...

Cyber Risk & Threat Intelligence Consultant

Location
City Of London, England, United Kingdom
London Market insurer to join its cyber team in a hybrid role based in City of London. The position offers exposure to cyber risk, threat intelligence, and cyber insurance at scale. You will work with senior risk stakeholders on threat landscape monitoring, risk appetite, incident scenario modelling … market intelligence, while developing reports and training materials for diverse audiences. #J-18808-Ljbffr ...

Senior Security Researcher - AI & Cybersecurity

Hiring Organisation
RedTech Recruitment Ltd
Location
Cambridge, Cambridgeshire, East Anglia, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
contact details are readily available on our website). Keywords: Senior Security Researcher/Cybersecurity Researcher/Security Researcher/AI Security Researcher/Threat Researcher/Security Engineer/Cyber Security Engineer/Security Analyst/SOC Analyst/Threat Intelligence Analyst/AI Security Engineer … Specialist/Generative AI/Agentic AI/Network Security/Linux/Kubernetes/Cloud Security/Endpoint Security/Security Tools/Threat Intelligence/Prompt Injection/Adversarial AI/CCNA/Linux Essentials/SOC/Machine Learning/Artificial Intelligence/Computer ...

Head of Security Operations & Engineering - Flutter Functions, Hybrid

Location
Greater London, England, United Kingdom
Overview: The Head of Security Operations and Engineering is responsible for protecting the organization through the design, build, and operation of scalable, resilient, and intelligence‐driven security capabilities. This role leads the teams that detect, respond to, and prevent security threats while also engineering the platforms, tools, and automation … strategy and execution, the role ensures that security operations are not only effective in responding to incidents, but continuously improving through engineering excellence, threat intelligence, and data‐driven decision‐making. It combines real‐time defense (e.g., monitoring, detection, incident response) with long‐term capability building (e.g., tooling, automation ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
identify gaps Design and implement SOAR automations, integrations and response workflows Develop and document customer incident response playbooks aligned to detection outputs Translate threat intelligence and operational learnings into improved detections and automations Deliver detection as code pipelines, including structured use case development and versioning approaches Produce clear … support detection use cases Network Detection and Response technologies such as Vectra AI, Corelight or similar Cloud security and telemetry, particularly within Azure environments Threat intelligence integration and enrichment to support detection and response Development of customer playbooks and response workflows aligned to SOC operations General awareness ...

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
assess coverage and identify gapsDesign and implement SOAR automations, integrations and response workflowsDevelop and document customer incident response playbooks aligned to detection outputsTranslate threat intelligence and operational learnings into improved detections and automationsDeliver detection as code pipelines, including structured use case development and versioning approachesProduce clear technical … support detection use cases Network Detection and Response technologies such as Vectra AI, Corelight or similar Cloud security and telemetry, particularly within Azure environments Threat intelligence integration and enrichment to support detection and response Development of customer playbooks and response workflows aligned to SOC operations General awareness ...