1 to 25 of 76 Threat Detection Jobs in the South East

Senior Cyber Threat Detection and Response Analyst

Location
Portsmouth, England, United Kingdom
Title: Senior Cyber Threat Detection and Response Analyst Location: Any of our main UK locations+ Hybrid Working Arrangements Compensation: Competitive + Benefits Role Type: Full time/Permanent Role ID: SF75113 At Babcock we’re working to create a safe and secure world, together, and if you join … play your part as a Senior Cyber Threat Detection and Response Analyst at any of our main UK locations. The role As a Senior Cyber Threat Detection and Response Analyst, you’ll be a technical leader within our Cyber Security Operations capability, driving advanced threat ...

Senior Threat Detection & Response Lead (Hybrid UK)

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Detection and Response Analyst to lead advanced threat detection, cyber defence, incident response and proactive threat hunting across our UK locations with hybrid working. You will work with specialist teams, influence security strategy and protect critical business … operations. This senior role requires extensive experience in cyber security operations, incident response and threat detection, with strong knowledge of SIEM/EDR and MITRE #J-18808-Ljbffr ...

Security analyst - Sector security

Location
Oxford, England, United Kingdom
About the Team Join the team protecting the UK's world-leading education and research sector from an ever-evolving cyber threat landscape. Jisc's Security Operations Centre (SOC) plays a critical role in safeguarding the Janet Network, the UK's National Research and Education Network, which connects more … than 20 million users across universities, colleges and research organisations. Combining cutting-edge security technologies, threat intelligence and specialist expertise, we provide 24/7 protection, rapid incident response and advanced threat detection to help our members stay secure and resilient. Security Centre brings together Cyber Security ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
World Class Defence Organisation is currently looking to recruit a Cyber Threat Operations Specialist subcontractor on an initial 12 month contract.You do not need to hold any current security clearance in order to apply. However, SC security clearance will be required prior to starting the position , with DV clearance … background working as a Cyber Security Engineer, SOC Engineer, SOC Analyst, Senior SOC Analyst, Cyber Security Analyst, Security Operations Engineer, SIEM Engineer, SIEM Analyst, Threat Detection Engineer, Security Infrastructure Engineer would be well suited to this position. Rate: £85.00 per hour Location: Stevenage Hybrid/Remote working: Onsite ...

Senior Security Researcher - (AI & Detection Engineering)

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £90,000 per annum
Security Researcher (AI & Detection Engineering) Location: London (Hybrid) Salary: £70,000-£90,000 + bonus + benefits We're partnering with one of the UK's most innovative cyber security organisations as they expand their research capabilities at the intersection of AI, Security Research and Detection Engineering. … help explore how emerging AI technologies can be leveraged to improve threat detection, automate security workflows and influence the next generation of security products. Security Researcher - Responsibilities Research emerging threats, attacker techniques and security trends Investigate how AI can enhance detection and security outcomes Develop prototypes, tooling ...

Senior Cyber Threat Detection & Response Lead (Hybrid UK)

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Detection and Response Analyst to lead security investigations and drive the organisation's cyber defence strategy. The role supports hybrid UK-based locations and focuses on advanced threat detection, incident response and proactive threat hunting. You will … work with teams across the company to analyse telemetry, strengthen detection capabilities and continuously improve security operations while developing your own expertise within a #J-18808-Ljbffr ...

Senior Cyber Threat Detection & Response Lead - Hybrid UK

Location
Portsmouth, England, United Kingdom
Babcock International in the United Kingdom is seeking a Senior Cyber Threat Detection and Response Analyst to join our Cyber Security Operations capability. You will lead advanced threat detection, incident response, and proactive threat hunting across main UK locations with hybrid working arrangements. The role ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Managed Service Lead (Security) - on-site Hampshire

Hiring Organisation
Hackajob Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
technology advancements, and defence digital transformation programmes. This includes driving the adoption of Zero Trust Architecture, improving network segmentation, and implementing advanced monitoring and threat detection capabilities at ingress and egress points. The role also engages with architects, risk authorities, and accrediting bodies to ensure services align with … defence teams, risk authorities, accrediting bodies, suppliers, and customer stakeholders. Support the adoption of Zero Trust principles, enhanced network segmentation, and advanced monitoring and threat detection capabilities. Provide operational reporting, risk management, service assurance, and governance oversight to senior stakeholders. What You'll Bring Significant experience leading cyber ...

Cyber Threat Operations Specialist

Hiring Organisation
Morson Edge
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract
opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting DEX meet the challenges and demands of countering the Cyber Threat. The successful applicant will drive a proactive ethos … ever-changing cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational ...

Lead Security Operations Center Analyst (f/m/d)

Location
Reading, England, United Kingdom
whilst performing hands on analysis of security events, forensic evidence collection, and root cause analysis. You will also drive the development and enhancement of detection capabilities across SIEM, EDR, and other monitoring technologies, while continuously improving SOC processes, procedures, workflows, automation, and playbooks to increase operational effectiveness and maturity. … will actively engage in threat hunting, leveraging your deep understanding of application code, infrastructure and hosting architectures (cloud and on premises), the software development lifecycle (SDLC), and CI/CD pipeline solutions to identify risks that span traditional and cloud native environments. You will collaborate closely with Security Engineering ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Deception Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception … Copilot. The role exists to detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
South East, United Kingdom
Employment Type
Permanent
ROLE SUMMARY Our Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on-premises, cloud, and hybrid environments. As a Lead Threat Response Operations Analyst within Pfizers Global Cyber Defense organization … response to security incidents on a global scale, and provide technical guidance to analysts and partner teams. You will bring deep expertise in cyber threat analysis, incident response, malware investigations and adversary tradecraft, with the ability to operate confidently across complex business and technical environments. Working alongside Threat ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
decision-making challenges. Working with UX designers to ensure intuitive interfaces that match SOC analyst mental models and workflow patterns. Providing technical consultation on threat detection logic, MITRE ATT&CK mapping, and security operations best practices. Supporting go-to-market activities by creating technical content, conducting product demonstrations … engaging with prospective customers. Mentoring and educating internal teams on SOC operations, threat landscapes, and analyst workflows. Ensuring product features align with industry frameworks (MITRE ATT&CK, NIST, ISO 27001) and SOC maturity models. Act as a trusted SOC and cyber defence expert in customer meetings, workshops, and solution ...

Delivery Lead (SME for Cyber Essentials)

Location
Reading, England, United Kingdom
Cyber Threat Intelligence (CTI) Delivery Lead Reading/Havant (Hybrid) | 6 Months | Up to £700 per day We are looking for an experienced Cyber Delivery Lead with strong expertise in Cyber Threat Intelligence (CTI), SIEM, Logging & Monitoring and Security Operations to support a major cyber security and resilience … programme. Key Responsibilities Lead the delivery of cyber security initiatives across CTI, Monitoring, Detection and Security Operations. Provide cyber security subject matter expertise to support the implementation of key controls across endpoint security, vulnerability management, secure configuration, access management and device compliance. Manage project plans, RAID logs, budgets, milestones ...

Delivery Lead (SME for Cyber Essentials)

Location
Havant, England, United Kingdom
Cyber Threat Intelligence (CTI) Delivery Lead Reading/Havant (Hybrid) | 6 Months | Up to £700 per day We are looking for an experienced Cyber Delivery Lead with strong expertise in Cyber Threat Intelligence (CTI), SIEM, Logging & Monitoring and Security Operations to support a major cyber security and resilience … programme. Key Responsibilities Lead the delivery of cyber security initiatives across CTI, Monitoring, Detection and Security Operations. Provide cyber security subject matter expertise to support the implementation of key controls across endpoint security, vulnerability management, secure configuration, access management and device compliance. Manage project plans, RAID logs, budgets, milestones ...

Senior Cyber Threat Detection & Response Lead (Hybrid UK)

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Detection and Response Analyst to lead cyber security investigations and drive proactive threat hunting within a hybrid UK-based position. You will work across Threat Intelligence, Security Assurance, and IT Operations to strengthen cyber resilience while shaping ...

Campus - Full Time - Information Security Engineer - 2027 (UK - Burgess Hill)

Hiring Organisation
American Express
Location
Burgess Hill, UK
Employment Type
Full-time
threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making. Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation. Support security control implementation and monitoring approaches … networking, or technology risk. Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts. Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts. Exposure to security tools, platforms, or operational processes ...

Campus - Full Time - Information Security Engineer - 2027 (UK - Burgess Hill)

Hiring Organisation
American Express
Location
Brighton, East Sussex, UK
Employment Type
Full-time
threats, security technologies, AI-enabled security risks, and control approaches to support team knowledge and decision-making. Use AI-enabled cybersecurity tools to support threat detection, alert triage, analysis, documentation, and investigation activities while validating outputs before escalation or implementation. Support security control implementation and monitoring approaches … networking, or technology risk. Awareness of security standards, regulatory compliance, data privacy, data protection, security governance, and risk management concepts. Familiarity with security monitoring, threat detection, vulnerability management, incident response, endpoint protection, network security, or identity and access management concepts. Exposure to security tools, platforms, or operational processes ...

SIEM Engineer

Location
Reading, England, United Kingdom
comprehensive security telemetry. Develop custom parsers and data transformations to normalise and enrich ingested data, and design and optimise KQL queries to support effective threat detection, monitoring and security investigations. Key skills and responsibilities, Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security telemetry. Develop custom … parsers, data transformations and KQL queries for threat detection and investigation. Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements. Develop Logic Apps and SOAR workflows to automate security response. Implement CI/CD pipelines using Azure DevOps/ ...

Cyber Security Engineer

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£92.11 per hour, Benefits Overtime Rate
utilising a wide variety of security platforms including but not limited to; SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the in-scope UK networks. The SOC Threat Detection Analyst key responsibilities are: Accountable ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Compliance Enablement Technical Program Manager

Location
Oxford, England, United Kingdom
organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real-time threat intelligence with frontline human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers … industry‐leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next‐gen SIEM. Together with expert advisory services, these capabilities help organizations proactively ...

Senior SOC Analyst: Threat Detection & Incident Response

Location
Farnborough, England, United Kingdom
seeking a Senior Security Operations Centre (SOC) Analyst to join our Cyber Security team in the UK. You will play a frontline role in threat detection, incident response and the evolution of a mature SOC, with exposure to cutting-edge security technologies in a fast-paced environment. Based ...

Cloud Architect

Location
Basingstoke, England, United Kingdom
cloud-hosting platform used across a major public-sector programme. This is a senior, hands-on architecture role covering cloud integration, identity security, DevSecOps, threat monitoring and technical assurance. The Role You will provide architecture leadership across the AWS platform, helping onboard new applications and ensuring that security, integration … into Terraform and CI/CD pipelines. Design security monitoring using services such as AWS Security Lake, CloudWatch and Microsoft Defender for Cloud. Support threat detection through centralised logging, tailored alerts and anomaly monitoring. Share knowledge and provide technical guidance to engineering teams. Requirements: Strong AWS cloud ...