Threat Intelligence Analyst

2 weeks ago


Greater Bristol Area, United Kingdom 55 Exec Search Full time

Threat Intelligence Analyst


Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.


You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst, you will play a pivotal role within the SOC Team.


As a Threat Intelligence Analyst, you'll become a master at crafting cutting-edge detection and response solutions, leveraging advanced technologies like Kusto Query Language (KQL), Lucene, YARA, Sigma, Azure Logic Apps, and more


You'll lead the charge in planning and managing the development, testing, and implementation of cutting-edge rules and analytics for SIEM and SOAR platforms.


Your day-to-day will be dynamic and collaborative, working closely with SOC Operations Teams to fine-tune existing security use cases and create innovative detection content. You'll be orchestrating each release, overseeing all aspects of design, development, testing, and implementation.


Additionally, you'll be the key driver and main point of contact the revolutionary zero-trust protection product. This role includes full ownership and management, ensuring its optimal performance, implementing enhancements, handling customer requests, and serving as the primary escalation contact. Naturally our client will provide you with all training whilst on the job


No two days are the same in the SOC, responsibilities include but not limited to:

  • Lead the development, testing, and deployment of innovative and updated content across the monitored estate in collaboration with Operations teams.
  • Transform playbooks from the Ops teams into effective, deployable solutions.
  • Ensure existing detection content remains cutting-edge and relevant.
  • Evaluate the impact of new and updated rules and analytics to inform future development.
  • Oversee the implementation and maintenance of AppGuard policies.
  • Review and approve essential documentation for releases or changes, including design, deployment, configuration, and administration guides.
  • Expertise in SIEM/SOAR tools (Microsoft Sentinel and ELK) and other technologies, such as SOAR, Threat Intelligence, and traffic analysis tools, to detect intrusions and recommend enhancements to SOC operations.
  • Analyse security data to uncover patterns and trends.
  • Research emerging threats and vulnerabilities to stay ahead of the curve.
  • Develop and produce Use Case Rules, turning CTI information into actionable Use Cases.
  • Maintain an organized and up-to-date Use Case Library.
  • Keep comprehensive documentation to support all activities.


Required skills/experience of Cyber Threat Investigator:

  • Must be eligible to obtain UK Government Security Clearance
  • Commercial experience working with SIEMS ideally MS Sentinel
  • Experience with Microsoft Sentinel and KQL mandatory
  • Experience with LogRhythm, ELK stack (Elastic Search, Logstash, Kibana) would be desirable
  • Knowledge of Network Security
  • Excellent communication and stakeholder management skills
  • Ability to manage sensitive and confidential information


Client Key Facts:

  • Exceptionally flexible regarding remote and hybrid work arrangements which means more freedom for your personal life.
  • Paid on-call if and when required
  • Access to industry events, fostering a stimulating technical and social environment.
  • Fantastic career progression opportunities.


  • City of London, Greater London, United Kingdom VIQU Limited Full time

    Threat Intelligence Analyst – 3-month contract – Remote My customer is seeking a highly skilled Threat Intelligence Analyst to play a pivotal role in identifying, researching, and assessing cyber and non-cyber threats to their business. The role of the Threat Intelligence Analyst is to assist the business in identifying and analyzing various cyber...


  • Bristol, United Kingdom NCC Group Full time

    As a Threat Intelligence analyst – OSINT, you will play a key role in our threat intelligence team.Together with colleagues spanning almost all time zones you will help to make our clients safer and more secure against cyber threats by helping them understand the motivations of relevant actors, identifying their targets and how they operate. The Global...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence Analyst Our client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team. You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol,, South West England, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • Bristol, United Kingdom 55 Exec Search Full time

    Threat Intelligence AnalystOur client is a pure-play cyber security consulting firm, due to a recent M&A and continued growth they are looking for a technical and driven Threat Intelligence Analyst to join the growing team.You will collaborate closely with the SOC analysts, ensuring clients’ security posture is enhanced. As a Threat Intelligence Analyst,...


  • London Area, United Kingdom Bonhill Partners Full time

    Bonhill Partners are working with a global Investment Bank to assist with their Cyber Security Function expansion, this will be an initial 12 month contract (inside IR35) with a view to extend or convert to permanent. Role: Threat Intelligence Analyst Rate: TBC Work pattern: 5 days in office, London Bank Area Requirements: Experience working in a...


  • London Area, United Kingdom Bonhill Partners Full time

    Bonhill Partners are working with a global Investment Bank to assist with their Cyber Security Function expansion, this will be an initial 12 month contract (inside IR35) with a view to extend or convert to permanent.Role: Threat Intelligence AnalystRate: TBCWork pattern: 5 days in office, London Bank Area Requirements:Experience working in a Cyber/Threat...


  • London Area, United Kingdom Bonhill Partners Full time

    Bonhill Partners are working with a global Investment Bank to assist with their Cyber Security Function expansion, this will be an initial 12 month contract (inside IR35) with a view to extend or convert to permanent.Role: Threat Intelligence AnalystRate: TBCWork pattern: 5 days in office, London Bank Area Requirements:Experience working in a Cyber/Threat...


  • London Area, United Kingdom Harrington Starr Full time

    Harrington Starr is seeking a seasoned professional to join our team as a Cyber Threat Intelligence and Resilience Senior Analyst. This role will be part of a growing cyber resilience team, working across London and the US.Key Responsibilities:Scenario Testing and Exercising: Manage the delivery of exercising and scenario testing within the region and...


  • London Area, United Kingdom Harrington Starr Full time

    Harrington Starr is seeking a seasoned professional to join our team as a Cyber Threat Intelligence and Resilience Senior Analyst. This role will be part of a growing cyber resilience team, working across London and the US.Key Responsibilities:Scenario Testing and Exercising: Manage the delivery of exercising and scenario testing within the region and...


  • London Area, United Kingdom 55 Exec Search Full time

    About the RoleWe are seeking a highly skilled Cyber Threat Intelligence Analyst to join our team at 55 Exec Search. As a Threat Intelligence Analyst, you will play a pivotal role in enhancing our clients' security posture by collaborating closely with our SOC analysts.Key Responsibilities:Develop and implement cutting-edge rules and analytics for SIEM and...


  • London Area, United Kingdom Locke and McCloud Full time

    Threat Intelligence Manager – A Key Role in CybersecurityLocke & McCloud is seeking an experienced Threat Intelligence professional to join our team. As a Threat Intelligence Manager, you will play a crucial role in helping our clients stay ahead of emerging threats and protect their information systems and assets.Main Responsibilities:Gathering and...


  • London Area, United Kingdom Locke and McCloud Full time

    Threat Intelligence Manager – A Key Role in CybersecurityLocke & McCloud is seeking an experienced Threat Intelligence professional to join our team. As a Threat Intelligence Manager, you will play a crucial role in helping our clients stay ahead of emerging threats and protect their information systems and assets.Main Responsibilities:Gathering and...

  • Intelligence Analyst

    3 weeks ago


    London Area, United Kingdom trg.recruitment Full time

    Job Title: Intelligence Analyst - Entry Level (contract)Contract Length: 12 monthsDay Rate: NegotiableLocation: London AreaIndustry: EnergyInterview: 2 stagesOur client is looking to bring on an Entry-Level Intelligence Analyst to join their Security Threat Intelligence team. In this role, you will analyse tactical threats to their operating assets, working...

  • Intelligence Analyst

    3 weeks ago


    London Area, United Kingdom trg.recruitment Full time

    Job Title: Intelligence Analyst - Entry Level (contract)Contract Length: 12 monthsDay Rate: NegotiableLocation: London AreaIndustry: EnergyInterview: 2 stagesOur client is looking to bring on an Entry-Level Intelligence Analyst to join their Security Threat Intelligence team. In this role, you will analyse tactical threats to their operating assets, working...


  • London Area, United Kingdom trg.recruitment Full time

    Job Title: Intelligence Analyst - Entry Level (contract ) Contract Length: 12 months Day Rate: Negotiable Location: London Area Industry: Energy Interview: 2 stages Our client is looking to bring on an Entry-Level Intelligence Analyst to join their Security Threat Intelligence team. In this role, you will analyse tactical threats to their operating...


  • London Area, United Kingdom Harrington Starr Full time

    Job Advertisement: Cyber Resilience SpecialistDepartment OverviewThe Security and Operations department is dedicated to managing security risks in line with business objectives to protect the organization’s people, information, and assets.Role OverviewThis new role in the Cyber Resilience Team provides an opportunity to lead the development of strategies...


  • London Area, United Kingdom Harrington Starr Full time

    Job Advertisement: Cyber Resilience SpecialistDepartment OverviewThe Security and Operations department is dedicated to managing security risks in line with business objectives to protect the organization’s people, information, and assets.Role OverviewThis new role in the Cyber Resilience Team provides an opportunity to lead the development of strategies...


  • London Area, United Kingdom Harrington Starr Full time

    Job Advertisement: Cyber Resilience Specialist Department Overview The Security and Operations department is dedicated to managing security risks in line with business objectives to protect the organization’s people, information, and assets. Role Overview This new role in the Cyber Resilience Team provides an opportunity to lead the development of...