Threat Intelligence Analyst

2 weeks ago


Bristol, United Kingdom 55 Exec Search Full time

Threat Intelligence Analyst

Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.

You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst, you will play a pivotal role within the SOC Team.

As a Threat Intelligence Analyst, you'll become a master at crafting cutting-edge detection and response solutions, leveraging advanced technologies like Kusto Query Language (KQL), Lucene, YARA, Sigma, Azure Logic Apps, and more

You'll lead the charge in planning and managing the development, testing, and implementation of cutting-edge rules and analytics for SIEM and SOAR platforms.

Your day-to-day will be dynamic and collaborative, working closely with SOC Operations Teams to fine-tune existing security use cases and create innovative detection content. You'll be orchestrating each release, overseeing all aspects of design, development, testing, and implementation.

Additionally, you'll be the key driver and main point of contact the revolutionary zero-trust protection product. This role includes full ownership and management, ensuring its optimal performance, implementing enhancements, handling customer requests, and serving as the primary escalation contact. Naturally our client will provide you with all training whilst on the job

No two days are the same in the SOC, responsibilities include but not limited to:

  • Lead the development, testing, and deployment of innovative and updated content across the monitored estate in collaboration with Operations teams.
  • Transform playbooks from the Ops teams into effective, deployable solutions.
  • Ensure existing detection content remains cutting-edge and relevant.
  • Evaluate the impact of new and updated rules and analytics to inform future development.
  • Oversee the implementation and maintenance of AppGuard policies.
  • Review and approve essential documentation for releases or changes, including design, deployment, configuration, and administration guides.
  • Expertise in SIEM/SOAR tools (Microsoft Sentinel and ELK) and other technologies, such as SOAR, Threat Intelligence, and traffic analysis tools, to detect intrusions and recommend enhancements to SOC operations.
  • Analyse security data to uncover patterns and trends.
  • Research emerging threats and vulnerabilities to stay ahead of the curve.
  • Develop and produce Use Case Rules, turning CTI information into actionable Use Cases.
  • Maintain an organized and up-to-date Use Case Library.
  • Keep comprehensive documentation to support all activities.

Required skills/experience of Cyber Threat Investigator:

  • Must be eligible to obtain UK Government Security Clearance
  • Commercial experience working with SIEMS ideally MS Sentinel
  • Experience with Microsoft Sentinel and KQL mandatory
  • Experience with LogRhythm, ELK stack (Elastic Search, Logstash, Kibana) would be desirable
  • Knowledge of Network Security
  • Excellent communication and stakeholder management skills
  • Ability to manage sensitive and confidential information

Client Key Facts:

  • Exceptionally flexible regarding remote and hybrid work arrangements which means more freedom for your personal life.
  • Paid on-call if and when required
  • Access to industry events, fostering a stimulating technical and social environment.
  • Fantastic career progression opportunities.


  • Bristol, United Kingdom NCC Group Full time

    As a Threat Intelligence analyst – OSINT, you will play a key role in our threat intelligence team.Together with colleagues spanning almost all time zones you will help to make our clients safer and more secure against cyber threats by helping them understand the motivations of relevant actors, identifying their targets and how they operate. The Global...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol,, South West England, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol, United Kingdom Orbis Full time

    **Location: Greater Bristol Area, United Kingdom**: **Salary: Competitive Salary**: **Permanent**: **Threat Intelligence Lead** Do you want to join a fast-paced company with a cloud security product with industry recognition and awards? Would you like to do research that has a positive impact on the security community? Are you unhappy with your WFH...


  • Bristol, Bristol, United Kingdom Leonardo SpA Full time

    About the RoleWe are seeking a highly skilled Senior Cyber Security Event Analyst to join our ARCHANGEL Protective Monitoring (ProMon) Team at Leonardo SpA. As a key member of our team, you will be responsible for analyzing network, application, and system events to identify potentially abnormal system behaviors and raise them as incidents for...


  • Bristol, Bristol, United Kingdom Leonardo SpA Full time

    About the RoleWe are seeking a highly skilled Senior Cyber Security Event Analyst to join our ARCHANGEL Protective Monitoring (ProMon) Team at Leonardo SpA. As a key member of our team, you will be responsible for analyzing network, application, and system events to identify potentially abnormal system behaviors and raise them as incidents for...

  • Cyber Threat Analyst

    4 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...

  • Cyber Threat Analyst

    3 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator,...

  • Cyber Threat Analyst

    3 weeks ago


    Bristol, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...

  • Cyber Threat Analyst

    3 weeks ago


    Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...

  • Cyber Threat Analyst

    3 weeks ago


    Greater Bristol Area, United Kingdom 55 Exec Search Full time

    Cyber Threat Investigator Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Cyber Threat Investigator to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Cyber Threat Investigator, you...


  • Bristol, Bristol, United Kingdom Marks Sattin (UK) Ltd Full time

    Job DescriptionMarks Sattin (UK) Ltd is partnering with a well-established business in Bristol to recruit a Business Intelligence Analyst on a 9-month fixed-term contract. This role will provide critical support to the finance function, playing a key role in their digital transformation initiative.This position offers a competitive salary between £35,000...


  • Bristol, United Kingdom Outsource UK Limited Full time

    About the RoleWe are seeking a highly skilled Business Intelligence Analyst to join our team at Outsource UK Limited. As a Business Intelligence Analyst, you will play a key role in helping us drive business growth and improvement through data-driven insights.Key ResponsibilitiesDevelop and maintain complex reports and dashboards using PowerBI or similar...


  • Bristol, Bristol, United Kingdom Marks Sattin (UK) Ltd Full time

    **Marks Sattin (UK) Ltd** is partnering with a well-established business in Bristol to recruit a Business Intelligence Analyst on a 9-month fixed-term contract. This role will provide critical support to the finance function, playing a key part in their digital transformation initiative.The successful candidate will be responsible for analyzing and...


  • Bristol, Bristol, United Kingdom Rise Technical Recruitment Limited Full time

    About the Role:Rise Technical Recruitment Limited is seeking a highly skilled Business Intelligence Analyst to join our team. As a key member of our data team, you will play a crucial part in driving business growth and improvement through data-driven insights.Key Responsibilities:Analyzing complex data sets to identify trends and opportunities for...


  • Bristol, Bristol, United Kingdom Leonardo UK Ltd Full time

    About the RoleWe are seeking a highly skilled Cyber Security Senior Analyst to join our ARCHANGEL Protective Monitoring (ProMon) Team at Leonardo UK Ltd.Key ResponsibilitiesAnalyse network, application, and system events to identify any potentially abnormal system behaviours and raise them as incidents for investigation.Perform and lead proactive analysis...


  • Bristol, Bristol, United Kingdom Leonardo UK Ltd Full time

    About the RoleWe are seeking a highly skilled Cyber Security Senior Analyst to join our ARCHANGEL Protective Monitoring (ProMon) Team at Leonardo UK Ltd.Key ResponsibilitiesAnalyse network, application, and system events to identify any potentially abnormal system behaviours and raise them as incidents for investigation.Perform and lead proactive analysis...