Latest Threat Intelligence Analyst Jobs

CrowdStrike logo

Sr. Intelligence Analyst, Recon+ , GBR)

This role involves delivering high-value, actionable threat intelligence and digital risk monitoring to protect customers from advanced cyber threats. The analyst will conduct dark web research, deliver tailored intelligence briefings, respond to ad hoc customer requests, and guide clients through findings from Falcon Counter Adversary Recon. The position emphasizes customer partnership, technical analysis, and cross-team collaboration to enhance threat detection and response.

Remote Permanent

SOC Automation Engineer

This role involves designing, building, and maintaining automation workflows across SIEM, EDR, and SOAR platforms—primarily Palo Alto XSOAR—to enhance SOC efficiency and incident response. The engineer will integrate security tools, optimise automation lifecycle management, and collaborate with SOC analysts and engineering teams to reduce manual effort. Responsibilities also include contributing to threat modelling, pre-sales support, and ensuring secure, scalable automation in multi-tenant environments.

Claranet Ls11Az, United Kingdom

Senior Incident Response Consultant, Rapid Response

Leads high-pressure incident response engagements for organizations affected by cyberattacks, directing forensic investigations and coordinating with customer teams. Produces detailed reports mapped to MITRE ATT&CK, focusing on ransomware and business email compromise (BEC) incidents. Operates in a rapid-response environment with a rotating weekend-heavy schedule to support global customers.

Sophos United Kingdom
Remote Permanent
CrowdStrike logo

Sr. Analyst, Falcon Complete , GBR)

Conduct real-time monitoring, analysis, and incident response for enterprise clients using advanced threat detection tools and AI-driven platforms. Perform malware analysis, forensic investigations, and remote remediation across Windows, Mac, and Linux environments. Develop security processes, mentor junior analysts, and contribute to thought leadership through technical communication and public speaking.

CrowdStrike United Kingdom
Remote Permanent

Senior Threat Behavior Researcher (UK)

This role involves conducting in-depth behavioral analysis of Windows-based threats and developing real-time protection rules to detect and block malicious activities, including hands-on keyboard attacks, malware payloads, and APTs. The researcher will create behavioral and cleanup rules, improve sandbox detection by identifying evasion techniques, and produce technical reports. Collaboration with cross-functional teams and mentoring junior researchers are also key responsibilities, all within a remote-first, globally distributed security team.

Sophos United Kingdom
Remote Permanent

Security Operations Centre Manager

Leads the Cyber Security Operations Centre (CSOC) in detecting, responding to, and remediating cyber threats in real time. Develops and refines incident response plans, security monitoring strategies, and cyber resilience capabilities in alignment with government and regulatory standards. Works closely with senior stakeholders and external agencies to ensure robust cyber readiness and strategic investment in security tooling, governance, and staffing.

First Military Recruitment United Kingdom
Remote Contract Clearance Required

Cyber Security Vulnerability Manager

Leads and develops the vulnerability management function across NHS Wales, overseeing scanning, assessment, and remediation of cyber risks in a complex digital environment. Provides expert guidance, develops security policies, and manages technical teams and stakeholders to strengthen cyber resilience. Focuses on continuous improvement, strategic planning, and fostering a collaborative security culture within public health services.

Digital Health and Care Wales Cardiff, South Glamorgan, CF10 2AF, United Kingdom £50,129 – £57,365 pa

Microsoft AI Engineer / Azure Artificial Intelligence Engineer

Design and implement security controls for AI and large language model systems on Microsoft Azure. Perform threat modelling, risk analysis, and lead red teaming exercises to identify vulnerabilities in AI platforms. Work within a growing AI risk management and governance team, focusing on securing cloud-based AI solutions and distributed systems.

Huxley Associates London, City And County Of the City Of London, United Kingdom £50,000 – £90,000 pa
Hybrid Permanent
Darktrace logo

Product Manager - NDR

This role involves shaping the direction of Darktrace's Network Detection and Response (NDR) product by aligning customer needs with technical development. The Product Manager will work closely with R&D, Product Marketing, and Go-To-Market teams to prioritise features, test functionality, and ensure effective product communication and positioning. The position requires a strong understanding of cybersecurity, particularly in network security and NDR use cases.

Darktrace Cambridge, CB2 3BJ, United Kingdom
Hybrid Permanent
Darktrace logo

Product Manager - NDR

This role involves shaping the direction of Darktrace's Network Detection and Response (NDR) product by bridging customer needs, technology, and market dynamics. The Product Manager will work closely with R&D, marketing, and go-to-market teams to prioritise features, guide product evolution, and ensure effective internal and external communication. It requires deep engagement with cybersecurity technology and a collaborative approach to drive product success in complex enterprise environments.

Darktrace London, UB8 1LQ, United Kingdom
Hybrid Permanent
Amazon logo

Software Dev Engineer, Amazon Security Automation

This role involves designing and building AI/ML-driven security automation systems to proactively detect, analyze, and respond to threats at scale within Amazon’s vast digital ecosystem. You'll collaborate with security engineers and scientists to develop intelligent, autonomous tools integrated into Amazon’s security infrastructure. The work focuses on advancing automated detection and response capabilities across offensive and defensive security domains using cutting-edge technologies.

Amazon London, United Kingdom
On-site Permanent

AI Security Researcher

Conducts advanced research into AI and machine learning security threats, developing prototypes and tools to defend critical national systems. Focuses on vulnerability analysis, reverse engineering, and emerging AI risks in high-stakes environments. Works collaboratively to translate research into actionable defences and customer deliverables.

Forward Role Hampshire, United Kingdom £65,000 – £85,000 pa
Hybrid Permanent Clearance Required

Business Automation Manager

Lead and hands-on build business automation initiatives across sales, finance, marketing, and customer success functions using AI and workflow tools. Identify inefficiencies, design intelligent automations, and mentor a small team while delivering measurable productivity gains. Work at the intersection of operations, data, and AI to transform how the business operates with a focus on practical, high-impact solutions.

Red Sift London, W1F 8GR, United Kingdom
On-site Permanent

SOC Manager

Lead and manage a security operations team with a strategic focus on incident management, threat intelligence, and security monitoring. Oversee relationships with external vendors and MSSPs while leveraging cloud security expertise across AWS and Azure. Ensure effective deployment of cybersecurity tools and processes within a remote-working environment.

Gold Group London, United Kingdom

SOC Manager (SC)

This role involves leading and managing a Security Operations Centre (SOC) for a UK government client, with responsibilities including security monitoring, threat intelligence, incident management, and coordination with external security partners. The position supports a central government project and requires strong leadership in deploying SOC resources and managing vendor relationships. It offers full remote working with a flexible schedule, contributing to improved work-life balance.

NonStop Consulting Exeter, Devon, United Kingdom
Remote