Cyber Threat Analyst

3 weeks ago


Bristol, United Kingdom 55 Exec Search Full time

Cyber Threat Investigator


Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.


You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you will play a pivotal role within the SOC Team.


As a Cyber Threat Investigator, you'll become a master at crafting cutting-edge detection and response solutions, leveraging advanced technologies like Kusto Query Language (KQL), Lucene, YARA, Sigma, Azure Logic Apps, and more


You'll lead the charge in planning and managing the development, testing, and implementation of cutting-edge rules and analytics for SIEM and SOAR platforms.


Your day-to-day will be dynamic and collaborative, working closely with SOC Operations Teams to fine-tune existing security use cases and create innovative detection content. You'll be orchestrating each release, overseeing all aspects of design, development, testing, and implementation.


Additionally, you'll be the key driver and main point of contact the revolutionary zero-trust protection product. This role includes full ownership and management, ensuring its optimal performance, implementing enhancements, handling customer requests, and serving as the primary escalation contact. Naturally our client will provide you with all training whilst on the job


No two days are the same in the SOC, responsibilities include but not limited to:

  • Lead the development, testing, and deployment of innovative and updated content across the monitored estate in collaboration with Operations teams.
  • Transform playbooks from the Ops teams into effective, deployable solutions.
  • Ensure existing detection content remains cutting-edge and relevant.
  • Evaluate the impact of new and updated rules and analytics to inform future development.
  • Oversee the implementation and maintenance of AppGuard policies.
  • Review and approve essential documentation for releases or changes, including design, deployment, configuration, and administration guides.
  • Expertise in SIEM/SOAR tools (Microsoft Sentinel and ELK) and other technologies, such as SOAR, Threat Intelligence, and traffic analysis tools, to detect intrusions and recommend enhancements to SOC operations.
  • Analyse security data to uncover patterns and trends.
  • Research emerging threats and vulnerabilities to stay ahead of the curve.
  • Develop and produce Use Case Rules, turning CTI information into actionable Use Cases.
  • Maintain an organized and up-to-date Use Case Library.
  • Keep comprehensive documentation to support all activities.


Required skills/experience of Cyber Threat Investigator:

  • Must be eligible to obtain UK Government Security Clearance
  • Commercial experience working with SIEMS ideally MS Sentinel
  • Experience with Microsoft Sentinel, LogRhythm, ELK stack (Elastic Search, Logstash, Kibana) would be desirable
  • Knowledge of Network Security
  • Excellent communication and stakeholder management skills
  • Ability to manage sensitive and confidential information


Client Key Facts:

  • Exceptionally flexible regarding remote and hybrid work arrangements which means more freedom for your personal life.
  • Paid on-call if and when required
  • Access to industry events, fostering a stimulating technical and social environment.
  • Fantastic career progression opportunities.

  • Cyber Threat Analyst

    2 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator,...

  • Cyber Threat Analyst

    3 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...

  • Cyber Threat Analyst

    2 weeks ago


    Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...

  • Cyber Threat Analyst

    2 weeks ago


    Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence Analyst Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol, United Kingdom NCC Group Full time

    As a Threat Intelligence analyst – OSINT, you will play a key role in our threat intelligence team.Together with colleagues spanning almost all time zones you will help to make our clients safer and more secure against cyber threats by helping them understand the motivations of relevant actors, identifying their targets and how they operate. The Global...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol,, South West England, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol, United Kingdom Aviva Full time

    Cyber Incident Response and Threat Hunting Lead - Salary Circa £85,000 This is a great role for someone with the passion and energy to drive capability development within a Threat Hunting team (adversary emulation, automation etc); working with both internal project teams and external suppliers for Cyber Incident Response\Threat Hunting services. A bit...


  • Bristol, Bristol, United Kingdom Anson McCade Full time £50,000

    About the RoleAnson McCade seeks a talented Cyber Security Monitoring Analyst to support the cyber defence capabilities of its multi-national Information Management function.Key ResponsibilitiesSupport the development and implementation of cyber defence strategies and tacticsConduct thorough vulnerability assessments and penetration testing to identify...


  • Bristol, United Kingdom Ministry of Housing, Communities and Local Government Full time

    Job summaryHere at the Ministry of Housing, Communities & Local Government (MHCLG), .�Whether it's through the homes we live in, the work of our local councils, or the communities we�re all part of, our work is at the top of the political agenda. We have ambitious and far-reaching outcomes to achieve this year and, if you�re thinking of joining us,...


  • Bristol, Bristol, United Kingdom Cabinet Office Full time

    Job SummaryThe Cabinet Office is the corporate headquarters for government, supporting the Prime Minister and ensuring the effective running of government. As a key player in the government's digital transformation, we are seeking a skilled Cyber Security Vulnerability Analyst to join our team.Job DescriptionThis role is part of the Cyber Defence team,...


  • Bristol, Bristol, United Kingdom Sanderson Recruitment Full time

    Job OverviewWe are seeking a highly skilled Cyber Security Analyst to join our Planning, Architecture & Security services team at Sanderson Recruitment.This is a fantastic opportunity for an experienced professional to be at the forefront of our company's security strategy, ensuring the integrity and confidentiality of our systems and data.The successful...


  • Bristol, United Kingdom Cabinet Office Full time

    Job summaryThe Cabinet Office supports the Prime Minister and ensures the effective running of government. It is also the corporate headquarters for government, in partnership with HM Treasury, and takes the lead in certain critical policy areas.We are the Cabinet Office�s Cyber and Information Security function. Our mission is to secure the Cabinet...


  • Bristol, Bristol, United Kingdom myGwork Full time

    Job OpportunityMyGwork is seeking a talented Cyber Security Analyst to join our team.About the Role:Assess and analyze vulnerabilities within our cyber security infrastructure.Collaborate with cross-functional teams to enhance security measures and provide recommendations for risk mitigation.Key Responsibilities:Conduct thorough vulnerability assessments to...

  • Lead Risk Analyst

    3 weeks ago


    Bristol, Bristol, United Kingdom Adecco Full time £70,000 - £85,000

    Lead Risk Analyst - Hybrid Role Are you a seasoned Lead Risk Analyst seeking a rewarding position within the cyber reinsurance sector? Our client, a prominent player in this domain, is on the lookout for a skilled professional to become a vital member of their innovative team. In this pivotal role, you will contribute significantly to the advancement of our...


  • Bristol, United Kingdom Cabinet Office Full time

    Job summaryThe Cabinet Office supports the Prime Minister and ensures the effective running of government. It is also the corporate headquarters for government, in partnership with HM Treasury, and takes the lead in certain critical policy areas.We are the Cabinet Office�s Cyber and Information Security function. Our mission is to secure the department�s...