Shape the Future of AIJoin one of the UK's fastest-growing companies and become a Professional Development Expert in Artificial Intelligence.

View Roles

Cyber Threat Intelligence Analyst

Canary Wharf
2 days ago
Create job alert

Cyber Threat Intelligence Analyst

London, Docklands

£80,000 - £90,000 per annum + annual discretionary bonus

On behalf of key Spencer Rose client who are a market leading financial services organisation, I am seeking an experienced Cyber Threat Intelligence Analyst to join their global threat management team. The position will report to the Head of Cyber Threat Intelligence and will proactively identify, investigate, and mitigate advanced cyber threats across the organisation’s network and systems. Leveraging a deep understanding of the latest attack techniques, threat actor tactics, and security tools, you will help safeguard our infrastructure and ensure the resilience of our networks.

The organisation offer hybrid working with a non-negotiable 2 days a week in their London office, therefore only applicants that live within the Southeast of the UK will be considered.

Responsibilities:

  • Collects, processes, and disseminates cyber threat intelligence from varying sources, including open-source reports, information sharing partners, and vendor reports to create actionable results for internal stakeholders

  • Assist in identifying and mitigating sophisticated cyber threats, leveraging a variety of tools, techniques, and data sources

  • Collaborate with Senior Threat Hunter to research, document, and develop Use Cases and Hypotheses for proactive hunting in cyber security tools including SIEM, EDR, and IDS/IPS (extract TTPs and behaviours from research to apply to logging and tool queries/hunts and detections)

  • Research, document and develop threat detections based on behavioural attributes of actors, malware operators, and general threats

  • Coordinate and produce strategic, operational, and tactical intelligence products for business units, technical teams, and executive stakeholders

  • Provide situational awareness on current threat landscape and maintain knowledge of adversary activities including geopolitical implications and TTPs to brief varying teams

  • Assess emerging threats against our operational environment and work in partnership with our security teams for detection, mitigation, and remediation efforts

  • Perform trend and correlation of cyber intelligence for recommendation-based countermeasures

  • Support and engage in incident response investigations

  • Perform basic network security analysis in support of intrusion detection operations, including the development and enrichment of indicators used to enhance network security posture

  • Produce reports for both executive and technical stakeholders and be able to brief all stakeholders.

    Experience / Skills required:

  • 3+ years of direct cyber threat intelligence experience

  • 4+ years of progressive experience in information security (cyber security) field, preferable in Threat Intelligence, Security Operations or Incident Response roles

  • Understanding of intelligence lifecycle and risk management

  • Knowledge of fundamentals of threat actors’ TTPs

  • Familiarity with MITRE ATT&CK framework and mapping

  • Experience with threat intelligence platforms and analysing indicators of compromise, TTPs, and adversary behaviour

  • Knowledge of TCP/IP, network protocols, and deep packet inspection

  • Excellent interpersonal and relationship management skills

  • Individual contributor whilst also contributing to a small team

  • Self-motivated with ability to work with minimal supervision

    Qualifications/Certifications:

  • Bachelor’s Degree in Cybersecurity studies, Computer Science, Intelligence Studies, International Relations, or related discipline

  • Security certification such as SANS GIAC (or equivalent) ideally GCTI, GOSI, or working towards certification (or equivalent)

  • Experience with threat intelligence and SOC/CIRT interaction

  • Splunk experience is highly preferred

  • Basic scripting or automation knowledge, especially Python experience is highly preferred

  • Experience with automating CTI use cases, especially in a Threat Intelligence Platform

  • Experience with SIEM, EDR solutions, network monitoring tools, and other cyber security tools

  • Experience with threat intelligence vendors

  • Ability to work on-site at least twice a week in London and/or participate in local intelligence sharing groups

Related Jobs

View all jobs

Cyber Threat Intelligence Analyst

Cyber Threat Intelligence Analyst

Cyber Threat Intelligence Analyst

Cyber Threat Intelligence Analyst

Cyber Threat Intelligence Analyst

Cyber Threat Intelligence Analyst

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Automate Your Cyber Security Jobs Search: Using ChatGPT, RSS & Alerts to Save Hours Each Week

Cyber roles drop across consultancies, MSSPs, hyperscalers, banks, gov & start-ups every day—often buried in ATS portals or duplicated across boards. The fix is simple: put discovery on autopilot with keyword-rich alerts, RSS feeds & a reusable ChatGPT workflow that triages listings, ranks fit, & tailors your CV in minutes. This copy-paste playbook is built for www.cybersecurityjobs.tech readers. It’s UK-centric, practical, & designed to save you hours each week. What You’ll Have Working In 30 Minutes A role & keyword map spanning SecOps/Detection, DFIR, AppSec, Cloud Security, GRC, Red Team, Threat Intel, IAM/PAM, OT/ICS & Vulnerability Management. Shareable Boolean search strings for Google & job boards to cut noise fast. Always-on alerts & RSS feeds delivering fresh roles to your inbox/reader. A ChatGPT “Cyber Job Scout” prompt that deduplicates, scores fit & outputs tailored actions. A simple pipeline tracker so deadlines & follow-ups never slip.

10 Cyber Security Recruitment Agencies in the UK You Should Know (2025 Job‑Seeker Guide)

UK cyber security hiring remains resilient in 2025, driven by nation-state threats, cloud security investments, and NCSC regulatory pressures. Lightcast reports +42 % YoY growth in UK roles mentioning “SOC”, “cyber risk”, “offensive security” or “GRC”. Yet despite 30,000 active cyber professionals, monthly live vacancies remain in the 2,500–2,900 range. The result: strong demand across public and private sector. We reviewed 50 + consultancies and included only those that: Are registered in the UK (Companies House) Operate a dedicated Cyber Security / InfoSec / Risk & Compliance desk Posted at least 5 UK cyber security roles between March and June 2025 This guide includes 2025 salary ranges, key skills, interview prep tips, and a verified recruiter directory.

Cyber Security Jobs Skills Radar 2026: Emerging Frameworks, Tools & Certifications to Learn Now

Cyber threats are evolving—and so must the people defending against them. As ransomware, AI-enhanced phishing, and supply chain attacks grow more advanced, UK employers are urgently hiring cyber security professionals with the right mix of strategic and hands-on skills. Welcome to the Cyber Security Jobs Skills Radar 2026, your go-to guide for the most in-demand tools, frameworks, certifications, and technologies shaping the UK's cyber workforce. Whether you're a SOC analyst, penetration tester, or cloud security architect, this annual radar is designed to help you stay ahead of the market.