1 to 25 of 68 Threat Detection Jobs in the South East

Senior Cyber Threat Detection and Response Analyst

Location
Portsmouth, England, United Kingdom
Title: Senior Cyber Threat Detection and Response Analyst Location: Any of our main UK locations+ Hybrid Working Arrangements Compensation: Competitive + Benefits Role Type: Full time/Permanent Role ID: SF75113 At Babcock we’re working to create a safe and secure world, together, and if you join … play your part as a Senior Cyber Threat Detection and Response Analyst at any of our main UK locations. The role As a Senior Cyber Threat Detection and Response Analyst, you’ll be a technical leader within our Cyber Security Operations capability, driving advanced threat ...

Senior Threat Detection & Response Lead (Hybrid UK)

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Detection and Response Analyst to lead advanced threat detection, cyber defence, incident response and proactive threat hunting across our UK locations with hybrid working. You will work with specialist teams, influence security strategy and protect critical business … operations. This senior role requires extensive experience in cyber security operations, incident response and threat detection, with strong knowledge of SIEM/EDR and MITRE #J-18808-Ljbffr ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
World Class Defence Organisation is currently looking to recruit a Cyber Threat Operations Specialist subcontractor on an initial 12 month contract.You do not need to hold any current security clearance in order to apply. However, SC security clearance will be required prior to starting the position , with DV clearance … background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote working: Onsite ...

Security Data Scientist

Hiring Organisation
Vbeyond
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
data science and machine learning to cyber security problems. The role will focus on developing security analytics and Security Knowledge Graph capabilities to improve threat detection, risk prioritisation and security decision-making. Key Responsibilities Develop machine learning and statistical models for threat detection, anomaly detection and security risk analytics. Design features and analytical methods using security telemetry, threat intelligence and enterprise data. Build and use Security Knowledge Graphs to connect entities, events, vulnerabilities and attack paths. Evaluate model accuracy, bias, explainability, robustness and operational effectiveness. Partner with security analysts and engineers to productionise ...

Senior Security Researcher

Hiring Organisation
Salt
Location
South East England, UK
Security Researcher (AI & Detection Engineering) Location: London (Hybrid) Below, you will find a complete breakdown of everything required of potential candidates, as well as how to apply Good luck. Salary: £70,000-£90,000 + bonus + benefits We're partnering with one of the UK's most innovative … cyber security organisations as they expand their research capabilities at the intersection of AI, Security Research and Detection Engineering. You'll help explore how emerging AI technologies can be leveraged to improve threat detection, automate security workflows and influence the next generation of security products. Security Researcher ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Managed Service Lead (Security) - on-site Hampshire

Hiring Organisation
Hackajob Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
technology advancements, and defence digital transformation programmes. This includes driving the adoption of Zero Trust Architecture, improving network segmentation, and implementing advanced monitoring and threat detection capabilities at ingress and egress points. The role also engages with architects, risk authorities, and accrediting bodies to ensure services align with … defence teams, risk authorities, accrediting bodies, suppliers, and customer stakeholders. Support the adoption of Zero Trust principles, enhanced network segmentation, and advanced monitoring and threat detection capabilities. Provide operational reporting, risk management, service assurance, and governance oversight to senior stakeholders. What You'll Bring Significant experience leading cyber ...

Cyber Threat Operations Specialist

Hiring Organisation
Morson Edge
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract
opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting DEX meet the challenges and demands of countering the Cyber Threat. The successful applicant will drive a proactive ethos … ever-changing cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational ...

Threat Analyst 2

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies - including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

SIEM Content Developer

Hiring Organisation
Fuel Recruitment
Location
Reading, Berkshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 450 Daily
ArcSight and Google SecOps (Chronicle) to design, build and optimise security detections across a large enterprise security environment. Key Responsibilities Develop, test and tune detection rules and correlation logic within ArcSight and Google SecOps. Create and maintain use cases, dashboards, reports and threat detection content. Develop behavioural … detections aligned to MITRE ATT&CK and threat intelligence. Onboard, parse and normalise log sources to improve visibility and detection coverage. Work closely with SOC teams to improve alert fidelity, reduce false positives and close detection gaps. Develop automation and response workflows within the SIEM ecosystem. Required ...

Security Engineer (Threat Response), Sophos Security Team (IDR)

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies - including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
decision-making challenges. Working with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops, and solution ...

SOC Lead

Location
Farnborough, England, United Kingdom
Consolidated SOC functions, managing a team, and ensuring the delivery of high-quality SOC services including 1st-3rd line Security monitoring and alert analysis, threat detection, incident management and response, and where required threat hunting services. Your work may include: Run the day to day operations … Define, develop and improve the Consolidated SOC Operating Procedures KPIs, SLAs to meet customers requirements provide and appropriate reporting for executive leadership. Collaborate with threat intelligence, risk management, and compliance teams. Ensure 24/7 operational readiness and effective incident response capabilities for the Consolidated SOC Manage the technical ...

Delivery Lead (SME for Cyber Essentials)

Location
Reading, England, United Kingdom
Cyber Threat Intelligence (CTI) Delivery Lead Reading/Havant (Hybrid) | 6 Months | Up to £700 per day We are looking for an experienced Cyber Delivery Lead with strong expertise in Cyber Threat Intelligence (CTI), SIEM, Logging & Monitoring and Security Operations to support a major cyber security and resilience … programme. Key Responsibilities Lead the delivery of cyber security initiatives across CTI, Monitoring, Detection and Security Operations. Provide cyber security subject matter expertise to support the implementation of key controls across endpoint security, vulnerability management, secure configuration, access management and device compliance. Manage project plans, RAID logs, budgets, milestones ...

Delivery Lead (SME for Cyber Essentials)

Location
Havant, England, United Kingdom
Cyber Threat Intelligence (CTI) Delivery Lead Reading/Havant (Hybrid) | 6 Months | Up to £700 per day We are looking for an experienced Cyber Delivery Lead with strong expertise in Cyber Threat Intelligence (CTI), SIEM, Logging & Monitoring and Security Operations to support a major cyber security and resilience … programme. Key Responsibilities Lead the delivery of cyber security initiatives across CTI, Monitoring, Detection and Security Operations. Provide cyber security subject matter expertise to support the implementation of key controls across endpoint security, vulnerability management, secure configuration, access management and device compliance. Manage project plans, RAID logs, budgets, milestones ...

Campus - Full Time - Information Security Engineer - 2027 (UK - Burgess Hill)

Hiring Organisation
American Express
Location
Burgess Hill, UK
Employment Type
Full-time
threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making. Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation. Support security control implementation and monitoring approaches … networking, or technology risk. Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts. Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts. Exposure to security tools, platforms, or operational processes ...

Campus - Full Time - Information Security Engineer - 2027 (UK - Burgess Hill)

Hiring Organisation
American Express
Location
Brighton, East Sussex, UK
Employment Type
Full-time
threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making. Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation. Support security control implementation and monitoring approaches … networking, or technology risk. Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts. Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts. Exposure to security tools, platforms, or operational processes ...

SIEM Engineer

Location
Reading, England, United Kingdom
comprehensive security telemetry. Develop custom parsers and data transformations to normalise and enrich ingested data, and design and optimise KQL queries to support effective threat detection, monitoring and security investigations. Key skills and responsibilities, Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security telemetry. Develop custom … parsers, data transformations and KQL queries for threat detection and investigation. Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements. Develop Logic Apps and SOAR workflows to automate security response. Implement CI/CD pipelines using Azure DevOps/ ...

Cyber Security Engineer

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£92.11 per hour, Benefits Overtime Rate
utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat Detection Analyst key responsibilities are: Accountable ...

Manager, Corporate Sales Engineering

Location
Reading, England, United Kingdom
years of technical pre‐sales experience in cybersecurity 3+ years of people management experience, including remote teams Deep understanding of enterprise security architecture and threat landscape Proven track record of driving complex technical sales cycles Experience with security tools, malware analysis, and threat detection Strong executive presence … utilizing AI technologies to enhance decision‐making, streamline workflows and processes, improve efficiency and drive business outcomes Technical Knowledge: Advanced understanding of cyber security, threat detection, and incident response Familiarity with attack frameworks, exploitation techniques, and threat actors Knowledge of security tools, MITRE ATT&CK, and industry ...

Threat Analyst 1

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry‐leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next‐gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Cloud Architect

Location
High Wycombe, England, United Kingdom
cloud-hosting platform used across a major public-sector programme. This is a senior, hands-on architecture role covering cloud integration, identity security, DevSecOps, threat monitoring and technical assurance. The Role You will provide architecture leadership across the AWS platform, helping onboard new applications and ensuring that security, integration … into Terraform and CI/CD pipelines. Design security monitoring using services such as AWS Security Lake, CloudWatch and Microsoft Defender for Cloud. Support threat detection through centralised logging, tailored alerts and anomaly monitoring. Share knowledge and provide technical guidance to engineering teams. Requirements: Strong AWS cloud ...

Cloud Architect

Location
Basingstoke, England, United Kingdom
cloud-hosting platform used across a major public-sector programme. This is a senior, hands-on architecture role covering cloud integration, identity security, DevSecOps, threat monitoring and technical assurance. The Role You will provide architecture leadership across the AWS platform, helping onboard new applications and ensuring that security, integration … into Terraform and CI/CD pipelines. Design security monitoring using services such as AWS Security Lake, CloudWatch and Microsoft Defender for Cloud. Support threat detection through centralised logging, tailored alerts and anomaly monitoring. Share knowledge and provide technical guidance to engineering teams. Requirements: Strong AWS cloud ...