Cyber Threat Analyst

3 weeks ago


Greater Bristol Area, United Kingdom 55 Exec Search Full time

Cyber Threat Investigator


Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.


You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you will play a pivotal role within the SOC Team.


As a Cyber Threat Investigator, you'll become a master at crafting cutting-edge detection and response solutions, leveraging advanced technologies like Kusto Query Language (KQL), Lucene, YARA, Sigma, Azure Logic Apps, and more


You'll lead the charge in planning and managing the development, testing, and implementation of cutting-edge rules and analytics for SIEM and SOAR platforms.


Your day-to-day will be dynamic and collaborative, working closely with SOC Operations Teams to fine-tune existing security use cases and create innovative detection content. You'll be orchestrating each release, overseeing all aspects of design, development, testing, and implementation.


Additionally, you'll be the key driver and main point of contact the revolutionary zero-trust protection product. This role includes full ownership and management, ensuring its optimal performance, implementing enhancements, handling customer requests, and serving as the primary escalation contact. Naturally our client will provide you with all training whilst on the job


No two days are the same in the SOC, responsibilities include but not limited to:

  • Lead the development, testing, and deployment of innovative and updated content across the monitored estate in collaboration with Operations teams.
  • Transform playbooks from the Ops teams into effective, deployable solutions.
  • Ensure existing detection content remains cutting-edge and relevant.
  • Evaluate the impact of new and updated rules and analytics to inform future development.
  • Oversee the implementation and maintenance of AppGuard policies.
  • Review and approve essential documentation for releases or changes, including design, deployment, configuration, and administration guides.
  • Expertise in SIEM/SOAR tools (Microsoft Sentinel and ELK) and other technologies, such as SOAR, Threat Intelligence, and traffic analysis tools, to detect intrusions and recommend enhancements to SOC operations.
  • Analyse security data to uncover patterns and trends.
  • Research emerging threats and vulnerabilities to stay ahead of the curve.
  • Develop and produce Use Case Rules, turning CTI information into actionable Use Cases.
  • Maintain an organized and up-to-date Use Case Library.
  • Keep comprehensive documentation to support all activities.


Required skills/experience of Cyber Threat Investigator:

  • Must be eligible to obtain UK Government Security Clearance
  • Commercial experience working with SIEMS ideally MS Sentinel
  • Experience with Microsoft Sentinel, LogRhythm, ELK stack (Elastic Search, Logstash, Kibana) would be desirable
  • Knowledge of Network Security
  • Excellent communication and stakeholder management skills
  • Ability to manage sensitive and confidential information


Client Key Facts:

  • Exceptionally flexible regarding remote and hybrid work arrangements which means more freedom for your personal life.
  • Paid on-call if and when required
  • Access to industry events, fostering a stimulating technical and social environment.
  • Fantastic career progression opportunities.


  • London Area, United Kingdom Understanding Recruitment NFP Full time

    Cyber Security Analyst RoleAbout the RoleWe are seeking an experienced Cyber Security Analyst to join our team at Understanding Recruitment NFP. As a Cyber Security Analyst, you will play a critical role in protecting our systems and data from cyber threats.Key ResponsibilitiesMonitor and analyze network systems and threats to identify potential security...


  • London Area, United Kingdom Understanding Recruitment NFP Full time

    Cyber Security Analyst RoleAbout the RoleWe are seeking an experienced Cyber Security Analyst to join our team at Understanding Recruitment NFP. As a Cyber Security Analyst, you will play a critical role in protecting our systems and data from cyber threats.Key ResponsibilitiesMonitor and analyze network systems and threats to identify potential security...


  • London Area, United Kingdom 55 Exec Search Full time

    Cyber Threat Analyst Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst, you...

  • Cyber Threat Analyst

    4 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...

  • Cyber Threat Analyst

    3 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator,...

  • Cyber Threat Analyst

    4 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...


  • City of London, Greater London, United Kingdom VIQU Limited Full time

    Threat Intelligence Analyst – 3-month contract – Remote My customer is seeking a highly skilled Threat Intelligence Analyst to play a pivotal role in identifying, researching, and assessing cyber and non-cyber threats to their business. The role of the Threat Intelligence Analyst is to assist the business in identifying and analyzing various cyber...


  • London Area, United Kingdom Harrington Starr Full time

    Harrington Starr is seeking a seasoned professional to join our team as a Cyber Threat Intelligence and Resilience Senior Analyst. This role will be part of a growing cyber resilience team, working across London and the US.Key Responsibilities:Scenario Testing and Exercising: Manage the delivery of exercising and scenario testing within the region and...


  • London Area, United Kingdom Harrington Starr Full time

    Harrington Starr is seeking a seasoned professional to join our team as a Cyber Threat Intelligence and Resilience Senior Analyst. This role will be part of a growing cyber resilience team, working across London and the US.Key Responsibilities:Scenario Testing and Exercising: Manage the delivery of exercising and scenario testing within the region and...


  • Bristol, Bristol, United Kingdom Leonardo SpA Full time

    About the RoleWe are seeking a highly skilled Senior Cyber Security Event Analyst to join our ARCHANGEL Protective Monitoring (ProMon) Team at Leonardo SpA. As a key member of our team, you will be responsible for analyzing network, application, and system events to identify potentially abnormal system behaviors and raise them as incidents for...


  • Bristol, Bristol, United Kingdom Leonardo SpA Full time

    About the RoleWe are seeking a highly skilled Senior Cyber Security Event Analyst to join our ARCHANGEL Protective Monitoring (ProMon) Team at Leonardo SpA. As a key member of our team, you will be responsible for analyzing network, application, and system events to identify potentially abnormal system behaviors and raise them as incidents for...


  • London Area, United Kingdom Bonhill Partners Full time

    Bonhill Partners are working with a global Investment Bank to assist with their Cyber Security Function expansion, this will be an initial 12 month contract (inside IR35) with a view to extend or convert to permanent.Role: Threat Intelligence AnalystRate: TBCWork pattern: 5 days in office, London Bank Area Requirements:Experience working in a Cyber/Threat...


  • London Area, United Kingdom Bonhill Partners Full time

    Bonhill Partners are working with a global Investment Bank to assist with their Cyber Security Function expansion, this will be an initial 12 month contract (inside IR35) with a view to extend or convert to permanent.Role: Threat Intelligence AnalystRate: TBCWork pattern: 5 days in office, London Bank Area Requirements:Experience working in a Cyber/Threat...


  • London Area, United Kingdom Bonhill Partners Full time

    Bonhill Partners are working with a global Investment Bank to assist with their Cyber Security Function expansion, this will be an initial 12 month contract (inside IR35) with a view to extend or convert to permanent. Role: Threat Intelligence Analyst Rate: TBC Work pattern: 5 days in office, London Bank Area Requirements: Experience working in a...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence Analyst Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol, United Kingdom NCC Group Full time

    As a Threat Intelligence analyst – OSINT, you will play a key role in our threat intelligence team.Together with colleagues spanning almost all time zones you will help to make our clients safer and more secure against cyber threats by helping them understand the motivations of relevant actors, identifying their targets and how they operate. The Global...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol,, South West England, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • London Area, United Kingdom 55 Exec Search Full time

    Cyber Threat Detection Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Detection Engineer to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...