• Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
  • Sign in
  • Sign up
  • Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

10 jobs found

Email me jobs like this
Refine Search
Current Search
senior cyber threat intelligence analyst
Claranet Limited
SOC Shift Lead
Claranet Limited Leeds, Yorkshire
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Aug 10, 2026
Full time
Position Summary As a SOC Shift Lead, you build on your solid experience as a SOC Analyst by supervising and guiding a team of SOC Analysts during your assigned shift. You ensure quality and consistency across all alerts and incidents handled by the team while serving as the primary point of escalation. In this role, you support team development, drive process improvements, and maintain clear, customer-centric communication with all stakeholders. You also lead quality assurance efforts and ensure that service-level agreements (SLAs) are met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination - You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams (including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation - You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions to facilitate effective triage, investigation, and escalation in line with operational standards Quality Assurance and Documentation - You conduct regular quality assurance (QA) of tickets to ensure SOC procedures and documentation standards are met, providing clear, constructive feedback to team members to improve technical skills and workflow consistency Collaboration and Mentorship - You mentor SOC Analysts in your team by offering regular, constructive feedback on triage processes and best practices. You encourage targeted training initiatives, including relevant certifications, to support career progression within the SOC Service Improvement - You contribute to ongoing service improvement through participation in supporting threat hunting activity led by Senior SOC Analysts, rule tuning, and process refinement initiatives. You assist in monthly reporting and post-incident reviews to drive improvements that reflect our commitment to transparent and reliable performance Required Qualifications & Experience You may be required to hold or obtain UK Non-Police Personnel Vetting (NPPV) and/or a Security Check (SC) clearance as part of this role Willingness to work towards or obtain intermediate cybersecurity certifications (e.g. SBT BTL2, CREST Registered Intrusion Analyst) Proficiency with SIEM platforms, endpoint security tools, and ticketing systems, with an ability to make clear, data-driven decisions under pressure Critical Competencies - Technical Fit Operating Systems - Possess detailed knowledge of Windows and Linux system architectures, with a clear understanding of how event logs (e.g., Windows Event Viewer, Syslog) reflect system security posture Networking and Protocols - Have a comprehensive understanding of TCP/IP, DNS, DCHP, VPNs, SSL/TLS, and network forensics concepts to validate network-based alerts and anomalies Cybersecurity Frameworks - Deeply understand and be able to articulate the elements of the MITRE ATT&CK framework, and Cyber Kill Chain; know how adversary tactics and techniques translate into observable indicators SIEM and Security Tools - Know the theoretical underpinnings of SIEM operations, including alert correlation, the design of automated detection rules, and the interpretation of aggregated security data Incident Triage - Understand the principles behind effective triage, including the rationale for using standardised playbooks and the criteria for escalating incidents without undertaking complex forensic analysis Threat Intelligence Integration - Be knowledgeable about the role and structure of threat intelligence - how feeds are sourced, what constitutes actionable information, and how malware indicators are defined Scripting and Automation - Understand the concepts behind using scripting for automating regular data extraction and log analysis, and the benefits such tools being to maintaining consistency in alert handling Benefits At Claranet, we go the extra mile with our people-because we believe in building a workplace where everyone feels valued and supported. What makes us unique is Team Claranet , our internal community that supports causes close to our employees' hearts. We offer paid charity leave, support local charities across our offices, and host annual fundraising events, all backed by a dedicated committee. We're proud founding members of TC4RE (Technology Community for Racial Equality) working collectively to build a more diverse and inclusive tech industry. About Claranet Founded at the beginning of the dot com bubble in 1996, our CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP) in the UK to being one of the leading business modernisation experts, who deliver solutions across 11+ countries. Equal Opportunities Statement Diversity, equity and inclusion are at the heart of what we value as an organisation. Claranet is an equal opportunities employer and all qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, age, disability or any other status protected by law. Our recruitment team are happy to support any reasonable adjustments that are needed within the recruitment process. Ready to take the next step in your career with Claranet? Click 'apply' - we can't wait to meet you! To view full job description please visit our careers page
Reed Technology
Senior SOC Engineer
Reed Technology Basingstoke, Hampshire
Senior SOC Engineer - Hybrid Join a leading cyber security services organisation as a Senior SOC Engineer , taking ownership of the technology, automation, and engineering capabilities that support a modern Security Operations Centre (SOC). The Role You'll design, deploy, and enhance core SOC platforms including SIEM, XDR, SOAR, automation, and security tooling , driving improvements in threat detection, response, and operational efficiency. Working closely with operational teams, you'll support customer onboarding, develop automated workflows, and help shape the future direction of SOC engineering. Key Responsibilities Design, deploy and optimise SIEM, XDR and SOAR platforms. Build security automation, integrations, and response workflows. Develop log parsing, data normalisation and telemetry solutions. Lead technical onboarding and implementation projects. Act as an escalation point for complex security engineering issues. Mentor SOC analysts and engineers. Improve detection, response and operational processes through automation. Maintain engineering documentation, standards and best practices. Skills & Experience 3-5+ years' experience within a SOC or cyber security engineering environment. Strong experience with SIEM, SOAR and EDR/XDR technologies. Scripting and automation expertise (Python, Go, APIs). Experience with cloud platforms such as Azure, AWS or GCP. Knowledge of vulnerability management and threat intelligence integrations. Strong communication, analytical and problem-solving skills. Eligibility for UK security clearance desirable. What's on Offer 2 Days in the Office Per Month Exposure to a wide range of security environments and technologies. Opportunity to influence SOC strategy and engineering direction. Dedicated training, development, and lab environments. Competitive salary and comprehensive benefits package. Ideal for an experienced SOC Engineer looking to step into a senior, technically focused role with significant ownership, automation responsibilities, and career progression opportunities.
Jul 31, 2026
Full time
Senior SOC Engineer - Hybrid Join a leading cyber security services organisation as a Senior SOC Engineer , taking ownership of the technology, automation, and engineering capabilities that support a modern Security Operations Centre (SOC). The Role You'll design, deploy, and enhance core SOC platforms including SIEM, XDR, SOAR, automation, and security tooling , driving improvements in threat detection, response, and operational efficiency. Working closely with operational teams, you'll support customer onboarding, develop automated workflows, and help shape the future direction of SOC engineering. Key Responsibilities Design, deploy and optimise SIEM, XDR and SOAR platforms. Build security automation, integrations, and response workflows. Develop log parsing, data normalisation and telemetry solutions. Lead technical onboarding and implementation projects. Act as an escalation point for complex security engineering issues. Mentor SOC analysts and engineers. Improve detection, response and operational processes through automation. Maintain engineering documentation, standards and best practices. Skills & Experience 3-5+ years' experience within a SOC or cyber security engineering environment. Strong experience with SIEM, SOAR and EDR/XDR technologies. Scripting and automation expertise (Python, Go, APIs). Experience with cloud platforms such as Azure, AWS or GCP. Knowledge of vulnerability management and threat intelligence integrations. Strong communication, analytical and problem-solving skills. Eligibility for UK security clearance desirable. What's on Offer 2 Days in the Office Per Month Exposure to a wide range of security environments and technologies. Opportunity to influence SOC strategy and engineering direction. Dedicated training, development, and lab environments. Competitive salary and comprehensive benefits package. Ideal for an experienced SOC Engineer looking to step into a senior, technically focused role with significant ownership, automation responsibilities, and career progression opportunities.
Prime Personnel UK
Senior IT Security Analyst
Prime Personnel UK
Senior IT Security Analyst required to act as a senior technical contributor within a global cyber security team, owning selected cyber security domains end-to-end and driving practical improvements to reduce cyber risk. The role combines analyst and engineering responsibilities across security tools, vulnerability and exposure management, web and email security, incident response, and threat-informed remediation. The role works closely with infrastructure, cloud, application, identity and business teams to identify security issues, prioritise actions based on real-world attacker behaviour, and deliver measurable improvements to the organisation cyber defence posture. Owned or materially contributed to one or more cyber security domains, such as endpoint security, vulnerability management, identity security, network security, incident response or Microsoft 365 / Azure security. Used CrowdStrike or equivalent EDR tooling to investigate detections, support incident response and improve endpoint security controls. Used Zscaler ZIA/ZPA or equivalent secure web gateway, private access, zero trust or network access security technologies. Performed vulnerability assessment, exposure analysis or remediation prioritisation across enterprise technology environments. Applied threat intelligence, MITRE ATT&CK or exploitation-based evidence to prioritise mitigations. Supported or led cyber security investigations and incident response activities. Collaborated with infrastructure, cloud, application, identity and business teams to deliver security improvements. Used scripting, queries, automation or data analysis to improve security outcomes. Strong hands-on experience administering, tuning and operationalising CrowdStrike Falcon , including endpoint protection, EDR investigations, detection analysis and response workflows. Strong hands-on experience administering and supporting Zscaler ZIA and ZPA , including policy design, access control, traffic analysis and security troubleshooting. Practical experience leading or supporting vulnerability and exposure management programmes , including vulnerability analysis, risk-based prioritisation, remediation tracking and validation of control effectiveness. Strong knowledge of real-world attacker tactics, techniques and procedures (TTPs) and the ability to translate threat intelligence, attack paths and exploitation trends into actionable security improvements. Experience conducting security investigations and incident response activities, including alert triage, root cause analysis, containment, remediation and lessons learned. This is a hybrid role working 3 days a week in the London office and 2 days remotely.
Jul 31, 2026
Full time
Senior IT Security Analyst required to act as a senior technical contributor within a global cyber security team, owning selected cyber security domains end-to-end and driving practical improvements to reduce cyber risk. The role combines analyst and engineering responsibilities across security tools, vulnerability and exposure management, web and email security, incident response, and threat-informed remediation. The role works closely with infrastructure, cloud, application, identity and business teams to identify security issues, prioritise actions based on real-world attacker behaviour, and deliver measurable improvements to the organisation cyber defence posture. Owned or materially contributed to one or more cyber security domains, such as endpoint security, vulnerability management, identity security, network security, incident response or Microsoft 365 / Azure security. Used CrowdStrike or equivalent EDR tooling to investigate detections, support incident response and improve endpoint security controls. Used Zscaler ZIA/ZPA or equivalent secure web gateway, private access, zero trust or network access security technologies. Performed vulnerability assessment, exposure analysis or remediation prioritisation across enterprise technology environments. Applied threat intelligence, MITRE ATT&CK or exploitation-based evidence to prioritise mitigations. Supported or led cyber security investigations and incident response activities. Collaborated with infrastructure, cloud, application, identity and business teams to deliver security improvements. Used scripting, queries, automation or data analysis to improve security outcomes. Strong hands-on experience administering, tuning and operationalising CrowdStrike Falcon , including endpoint protection, EDR investigations, detection analysis and response workflows. Strong hands-on experience administering and supporting Zscaler ZIA and ZPA , including policy design, access control, traffic analysis and security troubleshooting. Practical experience leading or supporting vulnerability and exposure management programmes , including vulnerability analysis, risk-based prioritisation, remediation tracking and validation of control effectiveness. Strong knowledge of real-world attacker tactics, techniques and procedures (TTPs) and the ability to translate threat intelligence, attack paths and exploitation trends into actionable security improvements. Experience conducting security investigations and incident response activities, including alert triage, root cause analysis, containment, remediation and lessons learned. This is a hybrid role working 3 days a week in the London office and 2 days remotely.
MSSP Sales Director - US or Europe (London/Amsterdam)
King River Capital Group
About The Role You will own a defined portfolio of top-tier global MSSPs (excluding GSI/Big 4 relationships). These are security specialist firms operating at scale - running 24 7 SOCs, delivering managed threat intelligence, and integrating platform grade tooling into their service stack. This is not a transactional sales role. It is a strategic ecosystem play - and you will build it from first principles. Also, this is an Individual Contributor role. What You'll Do At Cyble MSSP Ecosystem Strategy Map and prioritise the top 100 global MSSPs by region, security maturity, and GTM fit - identifying those actively building or scaling CTI, DRPS, ASM, and CSPM led managed services. Define a structured, tiered MSSP engagement playbook covering acquisition, activation, ramp, and expansion - with clear milestones for each stage. Maintain deep competitive intelligence on MSSP buying behaviour, vendor preferences, and integration strategies across US, Europe, and beyond. Identify white space across the MSSP landscape where Cyble can displace incumbents or expand adjacent to existing relationships. Partnership Development & Structuring Own the full MSSP partner lifecycle - executive introduction, solution scoping, commercial structuring, legal execution, technical onboarding, and co sell activation. Design scalable partnership models: co sell, white label/OEM, embedded API integration, resell, and managed services enablement frameworks. Work directly with MSSP SOC leads, security practice heads, and CTO level stakeholders to architect integrations that embed Cyble capabilities into live delivery workflows. Drive co branded joint offerings, shared GTM materials, and partner specific use case packaging for CTI as a Service, DRPS, EASM, CSPM, and MDR augmentation. Revenue Ownership & Pipeline Own MSSP sourced ARR targets - accountable for pipeline creation, deal progression, and revenue conversion across your portfolio. Develop multi year strategic account plans for named MSSP partners with expansion paths tied to customer seat growth, additional modules, and geographic scale. Drive Cyble's footprint within MSSP customer bases through joint GTM initiatives, shared pipeline, and influenced revenue programmes. Build commercial structures that work for both Cyble and MSSP economics - including tiered pricing, consumption based licensing, and usage aligned models. Executive Engagement & Market Presence Build and sustain C level relationships with MSSP alliance leaders, CEOs, CISOs, SOC heads, and service delivery executives. Represent Cyble at Tier 1 global cybersecurity events, MSSP focused forums, RSA, GSX, Black Hat, and regional partner summits. Act as the authoritative Cyble voice in MSSP conversations - articulating platform value across threat intelligence, dark web, digital risk, and surface management domains. Cross Functional Alignment Work closely with Product, Threat Intelligence, Engineering, and Marketing to feed MSSP requirements into roadmap and enablement priorities. Collaborate with internal sales teams to ensure clean handoffs, account coverage clarity, and alignment on named MSSP accounts. Provide structured quarterly reporting on MSSP ecosystem health, partner performance, and market intelligence to senior leadership. What You'll Need Ideal Candidate Profile: You have spent your career at the intersection of cybersecurity and strategic partnerships - building programmes, not just managing accounts. You understand how MSSPs buy, what makes integrations stick, and how to construct commercial relationships that drive durable revenue. Experience 12-18+ years in cybersecurity enterprise sales, MSSP alliances, or strategic partnerships - with at least 5 years in a partner led or channel leadership capacity. Demonstrable track record of building and scaling MSSP co sell or managed security platform partnerships across US and/or European markets. Deep familiarity with MSSP commercial models - resell, OEM, white label, co delivery - and the internal economics that drive partner decisions. Hands on experience negotiating and structuring complex, multi year partnership agreements with security focused service providers. Proven success operating as a senior IC: high autonomy, high accountability, minimal reliance on organisational infrastructure. Why This Role? Build it your way - You inherit no playbook. The global MSSP ecosystem is yours to map, prioritise, and activate. Real revenue ownership - Full ARR accountability, not influenced attribution. Your number, your call. Executive visibility - Direct line to Cyble senior leadership. Your MSSP strategy shapes global GTM decisions. Product that wins - AI native, analyst grade intelligence platform that MSSPs actively seek. Your job is to structure the relationship and scale the revenue. Why Cyble? Competitive base salary, OTE, and equity participation Work alongside a globally recognised threat intelligence platform with proven enterprise and government traction Collaborate with a leadership team that has deep cybersecurity operator experience and a genuine partner first conviction About Cyble Cyble is an AI native cybersecurity company delivering best in class threat intelligence, dark web monitoring, and attack surface management to enterprises and governments worldwide. Backed by leading investors and recognised by Gartner (Challenger -Gartner MQ), Forrester, and Frost, Cyble operates across North America, EMEA, and APAC through a partner first go to market motion. Cyble is an equal opportunity employer. We welcome applicants of all backgrounds, identities, and experiences. To learn more visit:
Jul 29, 2026
Full time
About The Role You will own a defined portfolio of top-tier global MSSPs (excluding GSI/Big 4 relationships). These are security specialist firms operating at scale - running 24 7 SOCs, delivering managed threat intelligence, and integrating platform grade tooling into their service stack. This is not a transactional sales role. It is a strategic ecosystem play - and you will build it from first principles. Also, this is an Individual Contributor role. What You'll Do At Cyble MSSP Ecosystem Strategy Map and prioritise the top 100 global MSSPs by region, security maturity, and GTM fit - identifying those actively building or scaling CTI, DRPS, ASM, and CSPM led managed services. Define a structured, tiered MSSP engagement playbook covering acquisition, activation, ramp, and expansion - with clear milestones for each stage. Maintain deep competitive intelligence on MSSP buying behaviour, vendor preferences, and integration strategies across US, Europe, and beyond. Identify white space across the MSSP landscape where Cyble can displace incumbents or expand adjacent to existing relationships. Partnership Development & Structuring Own the full MSSP partner lifecycle - executive introduction, solution scoping, commercial structuring, legal execution, technical onboarding, and co sell activation. Design scalable partnership models: co sell, white label/OEM, embedded API integration, resell, and managed services enablement frameworks. Work directly with MSSP SOC leads, security practice heads, and CTO level stakeholders to architect integrations that embed Cyble capabilities into live delivery workflows. Drive co branded joint offerings, shared GTM materials, and partner specific use case packaging for CTI as a Service, DRPS, EASM, CSPM, and MDR augmentation. Revenue Ownership & Pipeline Own MSSP sourced ARR targets - accountable for pipeline creation, deal progression, and revenue conversion across your portfolio. Develop multi year strategic account plans for named MSSP partners with expansion paths tied to customer seat growth, additional modules, and geographic scale. Drive Cyble's footprint within MSSP customer bases through joint GTM initiatives, shared pipeline, and influenced revenue programmes. Build commercial structures that work for both Cyble and MSSP economics - including tiered pricing, consumption based licensing, and usage aligned models. Executive Engagement & Market Presence Build and sustain C level relationships with MSSP alliance leaders, CEOs, CISOs, SOC heads, and service delivery executives. Represent Cyble at Tier 1 global cybersecurity events, MSSP focused forums, RSA, GSX, Black Hat, and regional partner summits. Act as the authoritative Cyble voice in MSSP conversations - articulating platform value across threat intelligence, dark web, digital risk, and surface management domains. Cross Functional Alignment Work closely with Product, Threat Intelligence, Engineering, and Marketing to feed MSSP requirements into roadmap and enablement priorities. Collaborate with internal sales teams to ensure clean handoffs, account coverage clarity, and alignment on named MSSP accounts. Provide structured quarterly reporting on MSSP ecosystem health, partner performance, and market intelligence to senior leadership. What You'll Need Ideal Candidate Profile: You have spent your career at the intersection of cybersecurity and strategic partnerships - building programmes, not just managing accounts. You understand how MSSPs buy, what makes integrations stick, and how to construct commercial relationships that drive durable revenue. Experience 12-18+ years in cybersecurity enterprise sales, MSSP alliances, or strategic partnerships - with at least 5 years in a partner led or channel leadership capacity. Demonstrable track record of building and scaling MSSP co sell or managed security platform partnerships across US and/or European markets. Deep familiarity with MSSP commercial models - resell, OEM, white label, co delivery - and the internal economics that drive partner decisions. Hands on experience negotiating and structuring complex, multi year partnership agreements with security focused service providers. Proven success operating as a senior IC: high autonomy, high accountability, minimal reliance on organisational infrastructure. Why This Role? Build it your way - You inherit no playbook. The global MSSP ecosystem is yours to map, prioritise, and activate. Real revenue ownership - Full ARR accountability, not influenced attribution. Your number, your call. Executive visibility - Direct line to Cyble senior leadership. Your MSSP strategy shapes global GTM decisions. Product that wins - AI native, analyst grade intelligence platform that MSSPs actively seek. Your job is to structure the relationship and scale the revenue. Why Cyble? Competitive base salary, OTE, and equity participation Work alongside a globally recognised threat intelligence platform with proven enterprise and government traction Collaborate with a leadership team that has deep cybersecurity operator experience and a genuine partner first conviction About Cyble Cyble is an AI native cybersecurity company delivering best in class threat intelligence, dark web monitoring, and attack surface management to enterprises and governments worldwide. Backed by leading investors and recognised by Gartner (Challenger -Gartner MQ), Forrester, and Frost, Cyble operates across North America, EMEA, and APAC through a partner first go to market motion. Cyble is an equal opportunity employer. We welcome applicants of all backgrounds, identities, and experiences. To learn more visit:
Intelligence Analyst Bracknell + 3 more Posted 20 hours ago
Dexcom Inc. Bracknell, Berkshire
Intelligence AnalystBracknellFind out how well you match with this jobJob IDJR118216 The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health.We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us. Meet the team: At Dexcom, our Global Security team is redefining what it means to protect a mission-driven organization. We are more than a protective layer; we are embedded partners in innovation, culture, and care. We work shoulder-to-shoulder with teams across the company, utilizing secure-by-design principles, enabling innovation, safeguarding trust, and supporting the people who make life-changing technology possible.This role isn't just about security, it's about leadership, partnership, and impact. You'll join a team that's building a modern, proactive security program rooted in strategy, prevention, collaboration, and service. We work cross-functionally, think globally, and act locally. If you're energized by complexity, thrive in dynamic environments, and want to be part of a team that's as mission driven as the company it protects, come join us! Where you come in: You conduct travel risk assessments and threat assessments in support of executive protection operations, senior leader travel, and corporate events. You support insider threat investigations in coordination with HR, Legal, IT and other stakeholders. You research and investigate people of interest who may pose threats to executives, employees, or organizational assets. You produce clear, concise intelligence reports, executive briefings, and incident summaries for leadership. You leverage open-source, commercial, and other databases for intelligence collection, trend analysis, and risk forecasting. You collaborate with the global security operations center on real-time incident monitoring, alerts, and escalations. You monitor geopolitical, criminal, cyber, and reputational threats across global regions and integrate findings into actionable reporting. You provide intelligence support to Regional Security Managers in the Americas, EMEA, and APAC, tailoring analysis to regional risk profiles and operational needs. You maintain intelligence databases, case files, and records in accordance with legal, regulatory, and privacy requirements. You contribute to the continuous improvement of intelligence tradecraft, SOPs, and analytic methodologies. You support the organization's executive protection program, special events, and global operations by producing actionable intelligence and risk assessments. You are responsible for conducting travel, threat and location risk assessments, investigating people of interest, and supporting insider threat investigations led by key stakeholders. You collaborate closely with the global security operations center during real-time and ongoing incidents. You provide support to the Americas, EMEA, and APAC regional security managers, ensuring a coordinated global approach to threat monitoring and mitigation. What makes you successful: You bring 2-5 years of experience in intelligence analysis, protective intelligence, and threat investigations, 2 of which are in a corporate or government environment. You demonstrate hands-on experience conducting travel risk assessments, threat investigations, and protective intelligence. You possess strong analytical, writing, and briefing skills with the ability to distil complex information for executive audiences. You are familiar with intelligence platforms, investigative databases, social media and open-source monitoring tools. You are able to work effectively under pressure and manage multiple priorities with tight deadlines. You collaborate effectively, bringing strong interpersonal skills and the ability to work with cross-functional partners. You have experience supporting global or multinational operations. You hold professional certifications (e.g., CTIA, IFCP, or similar intelligence/security credentials) from an accredited organization. You actively engage with relevant intelligence and security communities (e.g., ASIS, ATAP) to stay current on best practices, emerging threats, and industry standards. What you'll get: A front row seat to life-changing CGM technology. Learn about our brave community. A full and comprehensive benefits program. Growth opportunities on a global scale. Access to career development through in-house learning programs and/or qualified tuition reimbursement. An exciting and innovative, industry-leading organization committed to our employees, customers, and the communities we serve. Travel: 0-5% Experience and Education Requirements: Typically requires a Bachelor's degree and a 2-5 years of related experience. Flex Workplace: Your primary location will be a home office. You will not have an assigned workstation and will work with your manager to determine office visit needs. You must live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Dexcom. Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions. Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications. Monthly base salary for this position is from €2,982.08 to €3,683.75 gross. Final offer will depend on your qualifications, competencies, and professional experience.
May 29, 2026
Full time
Intelligence AnalystBracknellFind out how well you match with this jobJob IDJR118216 The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health.We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us. Meet the team: At Dexcom, our Global Security team is redefining what it means to protect a mission-driven organization. We are more than a protective layer; we are embedded partners in innovation, culture, and care. We work shoulder-to-shoulder with teams across the company, utilizing secure-by-design principles, enabling innovation, safeguarding trust, and supporting the people who make life-changing technology possible.This role isn't just about security, it's about leadership, partnership, and impact. You'll join a team that's building a modern, proactive security program rooted in strategy, prevention, collaboration, and service. We work cross-functionally, think globally, and act locally. If you're energized by complexity, thrive in dynamic environments, and want to be part of a team that's as mission driven as the company it protects, come join us! Where you come in: You conduct travel risk assessments and threat assessments in support of executive protection operations, senior leader travel, and corporate events. You support insider threat investigations in coordination with HR, Legal, IT and other stakeholders. You research and investigate people of interest who may pose threats to executives, employees, or organizational assets. You produce clear, concise intelligence reports, executive briefings, and incident summaries for leadership. You leverage open-source, commercial, and other databases for intelligence collection, trend analysis, and risk forecasting. You collaborate with the global security operations center on real-time incident monitoring, alerts, and escalations. You monitor geopolitical, criminal, cyber, and reputational threats across global regions and integrate findings into actionable reporting. You provide intelligence support to Regional Security Managers in the Americas, EMEA, and APAC, tailoring analysis to regional risk profiles and operational needs. You maintain intelligence databases, case files, and records in accordance with legal, regulatory, and privacy requirements. You contribute to the continuous improvement of intelligence tradecraft, SOPs, and analytic methodologies. You support the organization's executive protection program, special events, and global operations by producing actionable intelligence and risk assessments. You are responsible for conducting travel, threat and location risk assessments, investigating people of interest, and supporting insider threat investigations led by key stakeholders. You collaborate closely with the global security operations center during real-time and ongoing incidents. You provide support to the Americas, EMEA, and APAC regional security managers, ensuring a coordinated global approach to threat monitoring and mitigation. What makes you successful: You bring 2-5 years of experience in intelligence analysis, protective intelligence, and threat investigations, 2 of which are in a corporate or government environment. You demonstrate hands-on experience conducting travel risk assessments, threat investigations, and protective intelligence. You possess strong analytical, writing, and briefing skills with the ability to distil complex information for executive audiences. You are familiar with intelligence platforms, investigative databases, social media and open-source monitoring tools. You are able to work effectively under pressure and manage multiple priorities with tight deadlines. You collaborate effectively, bringing strong interpersonal skills and the ability to work with cross-functional partners. You have experience supporting global or multinational operations. You hold professional certifications (e.g., CTIA, IFCP, or similar intelligence/security credentials) from an accredited organization. You actively engage with relevant intelligence and security communities (e.g., ASIS, ATAP) to stay current on best practices, emerging threats, and industry standards. What you'll get: A front row seat to life-changing CGM technology. Learn about our brave community. A full and comprehensive benefits program. Growth opportunities on a global scale. Access to career development through in-house learning programs and/or qualified tuition reimbursement. An exciting and innovative, industry-leading organization committed to our employees, customers, and the communities we serve. Travel: 0-5% Experience and Education Requirements: Typically requires a Bachelor's degree and a 2-5 years of related experience. Flex Workplace: Your primary location will be a home office. You will not have an assigned workstation and will work with your manager to determine office visit needs. You must live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Dexcom. Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions. Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications. Monthly base salary for this position is from €2,982.08 to €3,683.75 gross. Final offer will depend on your qualifications, competencies, and professional experience.
Remote Intelligence Analyst: Threat & Travel Risk Specialist
Dexcom Inc. Bracknell, Berkshire
Intelligence AnalystBracknellFind out how well you match with this jobJob IDJR118216 The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health.We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us. Meet the team: At Dexcom, our Global Security team is redefining what it means to protect a mission-driven organization. We are more than a protective layer; we are embedded partners in innovation, culture, and care. We work shoulder-to-shoulder with teams across the company, utilizing secure-by-design principles, enabling innovation, safeguarding trust, and supporting the people who make life-changing technology possible.This role isn't just about security, it's about leadership, partnership, and impact. You'll join a team that's building a modern, proactive security program rooted in strategy, prevention, collaboration, and service. We work cross-functionally, think globally, and act locally. If you're energized by complexity, thrive in dynamic environments, and want to be part of a team that's as mission driven as the company it protects, come join us! Where you come in: You conduct travel risk assessments and threat assessments in support of executive protection operations, senior leader travel, and corporate events. You support insider threat investigations in coordination with HR, Legal, IT and other stakeholders. You research and investigate people of interest who may pose threats to executives, employees, or organizational assets. You produce clear, concise intelligence reports, executive briefings, and incident summaries for leadership. You leverage open-source, commercial, and other databases for intelligence collection, trend analysis, and risk forecasting. You collaborate with the global security operations center on real-time incident monitoring, alerts, and escalations. You monitor geopolitical, criminal, cyber, and reputational threats across global regions and integrate findings into actionable reporting. You provide intelligence support to Regional Security Managers in the Americas, EMEA, and APAC, tailoring analysis to regional risk profiles and operational needs. You maintain intelligence databases, case files, and records in accordance with legal, regulatory, and privacy requirements. You contribute to the continuous improvement of intelligence tradecraft, SOPs, and analytic methodologies. You support the organization's executive protection program, special events, and global operations by producing actionable intelligence and risk assessments. You are responsible for conducting travel, threat and location risk assessments, investigating people of interest, and supporting insider threat investigations led by key stakeholders. You collaborate closely with the global security operations center during real-time and ongoing incidents. You provide support to the Americas, EMEA, and APAC regional security managers, ensuring a coordinated global approach to threat monitoring and mitigation. What makes you successful: You bring 2-5 years of experience in intelligence analysis, protective intelligence, and threat investigations, 2 of which are in a corporate or government environment. You demonstrate hands-on experience conducting travel risk assessments, threat investigations, and protective intelligence. You possess strong analytical, writing, and briefing skills with the ability to distil complex information for executive audiences. You are familiar with intelligence platforms, investigative databases, social media and open-source monitoring tools. You are able to work effectively under pressure and manage multiple priorities with tight deadlines. You collaborate effectively, bringing strong interpersonal skills and the ability to work with cross-functional partners. You have experience supporting global or multinational operations. You hold professional certifications (e.g., CTIA, IFCP, or similar intelligence/security credentials) from an accredited organization. You actively engage with relevant intelligence and security communities (e.g., ASIS, ATAP) to stay current on best practices, emerging threats, and industry standards. What you'll get: A front row seat to life-changing CGM technology. Learn about our brave community. A full and comprehensive benefits program. Growth opportunities on a global scale. Access to career development through in-house learning programs and/or qualified tuition reimbursement. An exciting and innovative, industry-leading organization committed to our employees, customers, and the communities we serve. Travel: 0-5% Experience and Education Requirements: Typically requires a Bachelor's degree and a 2-5 years of related experience. Flex Workplace: Your primary location will be a home office. You will not have an assigned workstation and will work with your manager to determine office visit needs. You must live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Dexcom. Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions. Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications. Monthly base salary for this position is from €2,982.08 to €3,683.75 gross. Final offer will depend on your qualifications, competencies, and professional experience.
May 29, 2026
Full time
Intelligence AnalystBracknellFind out how well you match with this jobJob IDJR118216 The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health.We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us. Meet the team: At Dexcom, our Global Security team is redefining what it means to protect a mission-driven organization. We are more than a protective layer; we are embedded partners in innovation, culture, and care. We work shoulder-to-shoulder with teams across the company, utilizing secure-by-design principles, enabling innovation, safeguarding trust, and supporting the people who make life-changing technology possible.This role isn't just about security, it's about leadership, partnership, and impact. You'll join a team that's building a modern, proactive security program rooted in strategy, prevention, collaboration, and service. We work cross-functionally, think globally, and act locally. If you're energized by complexity, thrive in dynamic environments, and want to be part of a team that's as mission driven as the company it protects, come join us! Where you come in: You conduct travel risk assessments and threat assessments in support of executive protection operations, senior leader travel, and corporate events. You support insider threat investigations in coordination with HR, Legal, IT and other stakeholders. You research and investigate people of interest who may pose threats to executives, employees, or organizational assets. You produce clear, concise intelligence reports, executive briefings, and incident summaries for leadership. You leverage open-source, commercial, and other databases for intelligence collection, trend analysis, and risk forecasting. You collaborate with the global security operations center on real-time incident monitoring, alerts, and escalations. You monitor geopolitical, criminal, cyber, and reputational threats across global regions and integrate findings into actionable reporting. You provide intelligence support to Regional Security Managers in the Americas, EMEA, and APAC, tailoring analysis to regional risk profiles and operational needs. You maintain intelligence databases, case files, and records in accordance with legal, regulatory, and privacy requirements. You contribute to the continuous improvement of intelligence tradecraft, SOPs, and analytic methodologies. You support the organization's executive protection program, special events, and global operations by producing actionable intelligence and risk assessments. You are responsible for conducting travel, threat and location risk assessments, investigating people of interest, and supporting insider threat investigations led by key stakeholders. You collaborate closely with the global security operations center during real-time and ongoing incidents. You provide support to the Americas, EMEA, and APAC regional security managers, ensuring a coordinated global approach to threat monitoring and mitigation. What makes you successful: You bring 2-5 years of experience in intelligence analysis, protective intelligence, and threat investigations, 2 of which are in a corporate or government environment. You demonstrate hands-on experience conducting travel risk assessments, threat investigations, and protective intelligence. You possess strong analytical, writing, and briefing skills with the ability to distil complex information for executive audiences. You are familiar with intelligence platforms, investigative databases, social media and open-source monitoring tools. You are able to work effectively under pressure and manage multiple priorities with tight deadlines. You collaborate effectively, bringing strong interpersonal skills and the ability to work with cross-functional partners. You have experience supporting global or multinational operations. You hold professional certifications (e.g., CTIA, IFCP, or similar intelligence/security credentials) from an accredited organization. You actively engage with relevant intelligence and security communities (e.g., ASIS, ATAP) to stay current on best practices, emerging threats, and industry standards. What you'll get: A front row seat to life-changing CGM technology. Learn about our brave community. A full and comprehensive benefits program. Growth opportunities on a global scale. Access to career development through in-house learning programs and/or qualified tuition reimbursement. An exciting and innovative, industry-leading organization committed to our employees, customers, and the communities we serve. Travel: 0-5% Experience and Education Requirements: Typically requires a Bachelor's degree and a 2-5 years of related experience. Flex Workplace: Your primary location will be a home office. You will not have an assigned workstation and will work with your manager to determine office visit needs. You must live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Dexcom. Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions. Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications. Monthly base salary for this position is from €2,982.08 to €3,683.75 gross. Final offer will depend on your qualifications, competencies, and professional experience.
Intec Select Limited
SOC Manager
Intec Select Limited Exeter, Devon
SOC Manager Exeter (Hybrid - 2 days onsite) Day Rate: £850 (Umbrella) / £616.61 (PAYE)SC Cleared An enterprise government backed organisation is seeking a SOC manager to provide day to day leadership of incidents and mangment of the SOC Analysts. This is a critical leadership role, responsible for protecting the organisation against real-time cyber threats, driving incident response, and ensuring resilience across a complex technology estate. Our client is offering a 6 month rolling contract, paying up to £850 PD Inside IR 35 to start ASAP to be based in Exeter 2 days per week.This is a high-impact opportunity to shape cyber strategy at an enterprise level, working closely with senior stakeholders and external agencies to strengthen security posture and response capability. You will play a key role in building and evolving the CSOC capability, operating within a highly visible and business-critical function, with regular engagement across senior leadership and external partners.To be successful, you will hold active SC clearance and bring proven experience working within Central Government, the Public Sector, or highly regulated scientific environments.Key Responsibilities Define and lead the Cyber Security Operations Centre (CSOC), ensuring effective detection, response, and remediation of cyber incidents Own and continuously improve the cyber incident response plan, ensuring readiness across the organisation Provide strategic cyber security advice to senior leadership on monitoring, logging, and threat response Establish a use-case driven monitoring and alerting capability to improve threat detection and response times Oversee threat intelligence, vulnerability management, and proactive risk mitigation across the estate Lead the analysis of network traffic and behaviours, identifying threats and communicating insights to the wider business Define and manage cyber security operations strategy, aligned to organisational risk appetite and government guidance Manage stakeholders and external agencies, including regulatory bodies where required Identify and plan cyber investment requirements across tooling, governance, and team capability Core Experience Required Proven experience leading a Security Operations Centre (SOC/CSOC) or cyber security operations function Strong background in incident response, threat detection, and cyber resilience Hands-on experience with SIEM, IDS/IPS, endpoint security, and monitoring tools Solid understanding of threat intelligence, vulnerability management, and remediation practices Knowledge of cyber frameworks and regulations including GDPR, NIS, and National Cyber Security Centre guidance Familiarity with frameworks such as MITRE ATT&CK and ITIL processes Experience operating within complex, regulated environments (e.g. public sector, financial services) Strong stakeholder management skills, with the ability to influence at senior level
May 20, 2026
Full time
SOC Manager Exeter (Hybrid - 2 days onsite) Day Rate: £850 (Umbrella) / £616.61 (PAYE)SC Cleared An enterprise government backed organisation is seeking a SOC manager to provide day to day leadership of incidents and mangment of the SOC Analysts. This is a critical leadership role, responsible for protecting the organisation against real-time cyber threats, driving incident response, and ensuring resilience across a complex technology estate. Our client is offering a 6 month rolling contract, paying up to £850 PD Inside IR 35 to start ASAP to be based in Exeter 2 days per week.This is a high-impact opportunity to shape cyber strategy at an enterprise level, working closely with senior stakeholders and external agencies to strengthen security posture and response capability. You will play a key role in building and evolving the CSOC capability, operating within a highly visible and business-critical function, with regular engagement across senior leadership and external partners.To be successful, you will hold active SC clearance and bring proven experience working within Central Government, the Public Sector, or highly regulated scientific environments.Key Responsibilities Define and lead the Cyber Security Operations Centre (CSOC), ensuring effective detection, response, and remediation of cyber incidents Own and continuously improve the cyber incident response plan, ensuring readiness across the organisation Provide strategic cyber security advice to senior leadership on monitoring, logging, and threat response Establish a use-case driven monitoring and alerting capability to improve threat detection and response times Oversee threat intelligence, vulnerability management, and proactive risk mitigation across the estate Lead the analysis of network traffic and behaviours, identifying threats and communicating insights to the wider business Define and manage cyber security operations strategy, aligned to organisational risk appetite and government guidance Manage stakeholders and external agencies, including regulatory bodies where required Identify and plan cyber investment requirements across tooling, governance, and team capability Core Experience Required Proven experience leading a Security Operations Centre (SOC/CSOC) or cyber security operations function Strong background in incident response, threat detection, and cyber resilience Hands-on experience with SIEM, IDS/IPS, endpoint security, and monitoring tools Solid understanding of threat intelligence, vulnerability management, and remediation practices Knowledge of cyber frameworks and regulations including GDPR, NIS, and National Cyber Security Centre guidance Familiarity with frameworks such as MITRE ATT&CK and ITIL processes Experience operating within complex, regulated environments (e.g. public sector, financial services) Strong stakeholder management skills, with the ability to influence at senior level
Advanced Resource Managers Limited
Senior Cyber Security Splunk SME
Advanced Resource Managers Limited
Senior Cyber Security Splunk SME Full Time Permanent Fully onsite - Moorgate, London EC2Y £80-92K basic + benefits (5% pension, 25 days hols, life insurance, medical cover) Are you an experienced Splunk SME looking for a new challenge? Do you have a strong background in Splunk, IAM and SOAR with a high-level understanding of wider Splunk ecosystem, along with Incident Management, Python and Powershell skills? Here at ARM, we are recruiting for a full time permanent Splunk SME for a global IT services and consultancy client of ours. Our client: They're a leading business with a global reach that empowers local teams, and they undertake hugely exciting work that is genuinely changing the world. Their advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects. They're a rapidly growing, people-first technology organisation and part of a $1B global service provider delivering end-to-end IT Outsourcing (ITO) and Cyber Defence services to clients across the UK and beyond. Within their Security Practice, they provide a range of services including Managed Detection and Response (MDR), Vulnerability Management, Penetration Testing, Incident Response, and consultancy led Security Advisory services. You'll be joining a team that values learning, celebrates innovation, and supports your career journey every step of the way. The Opportunity: We are looking for a skilled Splunk Specialist to deliver end-to-end Splunk engagements, helping clients build and enhance their security monitoring capabilities. You will lead the full project lifecycle, from requirements gathering and stakeholder engagement through to data onboarding, alert development, and dashboard creation, ensuring solutions are aligned to both business and security objectives. You will bring strong hands-on experience with Splunk Enterprise Security and a proven track record in delivering cybersecurity projects. This includes designing and implementing detection use cases, tuning alerts, and developing dashboards that provide clear, actionable insights for security operations teams. Experience with SOAR and UEBA technologies is advantageous but not essential. This role suits someone who enjoys working in a client-facing environment, solving complex challenges, and contributing to the ongoing evolution of modern Security Operations Centres. What You'll Be Doing: Design, build, and continuously enhance detection capabilities within Splunk across Linux and Windows environments, including log onboarding, normalisation, and enrichment Develop and maintain high-quality detection content such as correlation searches and risk-based alerting within Splunk Enterprise Security Write and optimise complex queries to support threat detection, proactive threat hunting, and anomaly identification Map detection logic to adversary behaviours using the MITRE ATT&CK Framework, ensuring effective coverage of tactics, techniques, and procedures Work with the wider Splunk ecosystem, including tools like TrackMe, and contribute to automation and orchestration initiatives (including exposure to SOAR where applicable) Leverage scripting languages such as Python and PowerShell to automate detection logic, enrich data, and integrate with security workflows Provide mentorship and technical guidance to junior engineers, particularly on Splunk backend activities such as data ingestion, parsing, indexing, and troubleshooting Collaborate closely with SOC analysts, incident responders, and global engineering teams to improve detection and response capabilities Apply strong analytical and problem-solving skills to translate threat intelligence into actionable detection use cases and continuously improve security operations What We're Looking For: Essential: Experience working on multiple projects with broad scope, ambiguity, and a high degree of difficulty Demonstrable proficiency across a wide range of IT and cybersecurity technologies Strong knowledge of key cybersecurity domains, including Identity and Access Management and Incident Management High-level analytical ability to solve unusual and complex problems Ability to maintain up-to-date working knowledge of cybersecurity principles and best practices Experience in senior stakeholder management and providing clear, relevant management reporting, professional communication - written and verbal. Eligibility to work in the UK. Desirable: Experience in technology projects such as cyber infrastructure implementation or replacement initiatives Understanding of global program structures, launch plans, timing, and ownership Ability to coach and mentor team members through knowledge transfer and constructive feedback Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission.
May 04, 2026
Full time
Senior Cyber Security Splunk SME Full Time Permanent Fully onsite - Moorgate, London EC2Y £80-92K basic + benefits (5% pension, 25 days hols, life insurance, medical cover) Are you an experienced Splunk SME looking for a new challenge? Do you have a strong background in Splunk, IAM and SOAR with a high-level understanding of wider Splunk ecosystem, along with Incident Management, Python and Powershell skills? Here at ARM, we are recruiting for a full time permanent Splunk SME for a global IT services and consultancy client of ours. Our client: They're a leading business with a global reach that empowers local teams, and they undertake hugely exciting work that is genuinely changing the world. Their advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects. They're a rapidly growing, people-first technology organisation and part of a $1B global service provider delivering end-to-end IT Outsourcing (ITO) and Cyber Defence services to clients across the UK and beyond. Within their Security Practice, they provide a range of services including Managed Detection and Response (MDR), Vulnerability Management, Penetration Testing, Incident Response, and consultancy led Security Advisory services. You'll be joining a team that values learning, celebrates innovation, and supports your career journey every step of the way. The Opportunity: We are looking for a skilled Splunk Specialist to deliver end-to-end Splunk engagements, helping clients build and enhance their security monitoring capabilities. You will lead the full project lifecycle, from requirements gathering and stakeholder engagement through to data onboarding, alert development, and dashboard creation, ensuring solutions are aligned to both business and security objectives. You will bring strong hands-on experience with Splunk Enterprise Security and a proven track record in delivering cybersecurity projects. This includes designing and implementing detection use cases, tuning alerts, and developing dashboards that provide clear, actionable insights for security operations teams. Experience with SOAR and UEBA technologies is advantageous but not essential. This role suits someone who enjoys working in a client-facing environment, solving complex challenges, and contributing to the ongoing evolution of modern Security Operations Centres. What You'll Be Doing: Design, build, and continuously enhance detection capabilities within Splunk across Linux and Windows environments, including log onboarding, normalisation, and enrichment Develop and maintain high-quality detection content such as correlation searches and risk-based alerting within Splunk Enterprise Security Write and optimise complex queries to support threat detection, proactive threat hunting, and anomaly identification Map detection logic to adversary behaviours using the MITRE ATT&CK Framework, ensuring effective coverage of tactics, techniques, and procedures Work with the wider Splunk ecosystem, including tools like TrackMe, and contribute to automation and orchestration initiatives (including exposure to SOAR where applicable) Leverage scripting languages such as Python and PowerShell to automate detection logic, enrich data, and integrate with security workflows Provide mentorship and technical guidance to junior engineers, particularly on Splunk backend activities such as data ingestion, parsing, indexing, and troubleshooting Collaborate closely with SOC analysts, incident responders, and global engineering teams to improve detection and response capabilities Apply strong analytical and problem-solving skills to translate threat intelligence into actionable detection use cases and continuously improve security operations What We're Looking For: Essential: Experience working on multiple projects with broad scope, ambiguity, and a high degree of difficulty Demonstrable proficiency across a wide range of IT and cybersecurity technologies Strong knowledge of key cybersecurity domains, including Identity and Access Management and Incident Management High-level analytical ability to solve unusual and complex problems Ability to maintain up-to-date working knowledge of cybersecurity principles and best practices Experience in senior stakeholder management and providing clear, relevant management reporting, professional communication - written and verbal. Eligibility to work in the UK. Desirable: Experience in technology projects such as cyber infrastructure implementation or replacement initiatives Understanding of global program structures, launch plans, timing, and ownership Ability to coach and mentor team members through knowledge transfer and constructive feedback Disclaimer: This vacancy is being advertised by either Advanced Resource Managers Limited, Advanced Resource Managers IT Limited or Advanced Resource Managers Engineering Limited ("ARM"). ARM is a specialist talent acquisition and management consultancy. We provide technical contingency recruitment and a portfolio of more complex resource solutions. Our specialist recruitment divisions cover the entire technical arena, including some of the most economically and strategically important industries in the UK and the world today. We will never send your CV without your permission.
Sopra Steria
SOC Analyst
Sopra Steria Farnborough, Hampshire
We're expanding our Security Operations Centre in Farnborough and looking for sharp, collaborative L2 SOC Analysts to protect enterprise-scale environments across the Defence sector. You'll investigate real threats, tune detections, and make measurable impact-using Microsoft Sentinel, Splunk, and MISP. Your work fuels national security. Your growth fuels our mission. Role based on site in our Farnborough office and is shift work. 2 x 6am to 6pm, 2 x 6pm to 6am, 4 days off. You do need to be eligible for DV Clearance for this role, and cannot start until your clearance is through. What you'll be doing: Monitor, analyse security alerts and events, conduct initial investigations, and determine the appropriate response. Raise complex incidents to Senior Analysts. Manage SOC Incident queues. Support the maintenance of monitored asset baselines of the customer environments. Prepare reports for managed clients to both technical and non-technical audiences, Collaborate on improving detection rules and use cases aligned with Mitre Att&ck and threat-informed defense. Participate in a team effort to guarantee that corporate data and technology platform components are shielded from known threats. Collaborate with team members to maintain and update security incident documentation, including incident reports, analysis findings, and recommended mitigation strategies. Aid the development and use of threat intelligence throughout the service. Ability to work shifts from our office in Farnborough. What you'll bring: Experience demonstrated in Security Operations Centre. Experience using Microsoft Sentinel and Splunk. Knowledge and experience with Mitre Att&ck Framework. Basic knowledge of client-server applications, multi-tier web applications, relational databases, firewalls, VPNs, and enterprise AntiVirus products. Understanding of networking principles including TCP/IP, WANs, LANs and commonly used Internet protocols such as SMTP, HTTP, FTP, POP, LDAP. Entry level cyber security certification (e.g. CompTIA Security+, CEH, CPSA). CREST Practitioner Intrusion Analyst/Blue Teams Level 1 or other SOC related certifications. Completed an academic module in cyber security or a related subject It would be great if you had: Programming and scripting such as Python, Perl, Bash, PowerShell, C++. CREST Practitioner Intrusion Analyst/Blue Teams Level 1 or other SOC related certifications. Experience with SIEM technologies, namely Sentinel and Splunk, with some experience with QRadar. If you are interested in this role but not sure if your skills and experience are exactly what we're looking for, please do apply, we'd love to hear from you! Employment Type: Permanent Location: Office based in Farnborough Security Clearance Level: Eligible for DV Clearance Internal Recruiter: Jane Salary: To £58K Depending on experience, plus on shift allowance. Benefits: 25 days annual leave with the choice to buy additional days, health cash plan, life assurance, pension. Loved reading about this job and want to know more about us? Sopra Steria's Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client's goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK's most complex safety- and security-critical markets.
May 03, 2026
Full time
We're expanding our Security Operations Centre in Farnborough and looking for sharp, collaborative L2 SOC Analysts to protect enterprise-scale environments across the Defence sector. You'll investigate real threats, tune detections, and make measurable impact-using Microsoft Sentinel, Splunk, and MISP. Your work fuels national security. Your growth fuels our mission. Role based on site in our Farnborough office and is shift work. 2 x 6am to 6pm, 2 x 6pm to 6am, 4 days off. You do need to be eligible for DV Clearance for this role, and cannot start until your clearance is through. What you'll be doing: Monitor, analyse security alerts and events, conduct initial investigations, and determine the appropriate response. Raise complex incidents to Senior Analysts. Manage SOC Incident queues. Support the maintenance of monitored asset baselines of the customer environments. Prepare reports for managed clients to both technical and non-technical audiences, Collaborate on improving detection rules and use cases aligned with Mitre Att&ck and threat-informed defense. Participate in a team effort to guarantee that corporate data and technology platform components are shielded from known threats. Collaborate with team members to maintain and update security incident documentation, including incident reports, analysis findings, and recommended mitigation strategies. Aid the development and use of threat intelligence throughout the service. Ability to work shifts from our office in Farnborough. What you'll bring: Experience demonstrated in Security Operations Centre. Experience using Microsoft Sentinel and Splunk. Knowledge and experience with Mitre Att&ck Framework. Basic knowledge of client-server applications, multi-tier web applications, relational databases, firewalls, VPNs, and enterprise AntiVirus products. Understanding of networking principles including TCP/IP, WANs, LANs and commonly used Internet protocols such as SMTP, HTTP, FTP, POP, LDAP. Entry level cyber security certification (e.g. CompTIA Security+, CEH, CPSA). CREST Practitioner Intrusion Analyst/Blue Teams Level 1 or other SOC related certifications. Completed an academic module in cyber security or a related subject It would be great if you had: Programming and scripting such as Python, Perl, Bash, PowerShell, C++. CREST Practitioner Intrusion Analyst/Blue Teams Level 1 or other SOC related certifications. Experience with SIEM technologies, namely Sentinel and Splunk, with some experience with QRadar. If you are interested in this role but not sure if your skills and experience are exactly what we're looking for, please do apply, we'd love to hear from you! Employment Type: Permanent Location: Office based in Farnborough Security Clearance Level: Eligible for DV Clearance Internal Recruiter: Jane Salary: To £58K Depending on experience, plus on shift allowance. Benefits: 25 days annual leave with the choice to buy additional days, health cash plan, life assurance, pension. Loved reading about this job and want to know more about us? Sopra Steria's Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client's goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK's most complex safety- and security-critical markets.
Adecco
Security Assurance Analyst
Adecco
Security Assurance Analyst (Contractor) Reports To: Head of Information and Cyber Security Department: Information Security Location: London (Hybrid - 2 days per week onsite) Contract Type: Contract (3 months) Organisation: Financial Services Compensation Scheme (FSCS) About the Role We are seeking a Security Assurance Analyst to support a strategic sourcing programme within our Information Security function. This is a short-term, delivery-focused contract role centred on evaluating Security Operations Centre (SOC) service performance, conducting structured comparisons across service pillars, and producing clear, evidence-based assessment outputs to support a provider transition. You will work within a small, professional security team and will be expected to operate independently, delivering high-quality analysis and documentation to tight timescales. Key Responsibilities Review and critically evaluate SOC performance reporting across core service pillars, assessing quality, completeness, and relevance Define what meaningful performance measurement looks like across: Managed Detection and Response (MDR) Vulnerability Management Cyber Threat Intelligence Continuous Improvement Conduct structured comparisons of SOC provider performance, identifying material differences across key service dimensions Produce comparative performance assessments at agreed intervals during the transition and dual-running period, including: Detailed technical analysis Clear executive summaries for senior stakeholders Collaborate with the Project Manager, Legal advisers, and internal stakeholders to ensure outputs align with contractual and operational requirements Skills, Knowledge & Experience Solid understanding of SOC service delivery, including MDR, Vulnerability Management, and Cyber Threat Intelligence Experience reviewing, interpreting, and critically assessing security performance data and management information Strong analytical skills, with the ability to identify trends, gaps, and meaningful insights Excellent written communication skills, with the ability to produce clear, structured documentation for both technical and non-technical audiences Comfortable working independently in a fast-paced environment with minimal supervision Desirable: Experience supporting vendor assessments, supplier evaluations, or security sourcing programmes Familiarity with SOC performance metrics, SLAs, and service reporting frameworks Key Deliverables Comparative SOC performance assessments produced at agreed intervals throughout the transition and dual-running period Each deliverable to include: A detailed technical assessment A concise executive summary suitable for senior stakeholders We use generative AI tools to support our candidate screening process. This helps us ensure a fair, consistent, and efficient experience for all applicants. Rest assured, all final decisions are made by our hiring team, and your application will be reviewed with care and attention. Adecco is an employment consultancy. We put expertise, energy, and passion into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents, skills, and unique experience in an all-encompassing environment that helps them thrive. Candidates will ideally show evidence of the above in their CV to be considered. Please be advised if you haven't heard from us within 48 hours then unfortunately your application has not been successful on this occasion, we may however keep your details on file for any suitable future vacancies and contact you accordingly. Pontoon is an employment consultancy and operates as an equal opportunity's employer. Please email me (url removed)
Apr 29, 2026
Contractor
Security Assurance Analyst (Contractor) Reports To: Head of Information and Cyber Security Department: Information Security Location: London (Hybrid - 2 days per week onsite) Contract Type: Contract (3 months) Organisation: Financial Services Compensation Scheme (FSCS) About the Role We are seeking a Security Assurance Analyst to support a strategic sourcing programme within our Information Security function. This is a short-term, delivery-focused contract role centred on evaluating Security Operations Centre (SOC) service performance, conducting structured comparisons across service pillars, and producing clear, evidence-based assessment outputs to support a provider transition. You will work within a small, professional security team and will be expected to operate independently, delivering high-quality analysis and documentation to tight timescales. Key Responsibilities Review and critically evaluate SOC performance reporting across core service pillars, assessing quality, completeness, and relevance Define what meaningful performance measurement looks like across: Managed Detection and Response (MDR) Vulnerability Management Cyber Threat Intelligence Continuous Improvement Conduct structured comparisons of SOC provider performance, identifying material differences across key service dimensions Produce comparative performance assessments at agreed intervals during the transition and dual-running period, including: Detailed technical analysis Clear executive summaries for senior stakeholders Collaborate with the Project Manager, Legal advisers, and internal stakeholders to ensure outputs align with contractual and operational requirements Skills, Knowledge & Experience Solid understanding of SOC service delivery, including MDR, Vulnerability Management, and Cyber Threat Intelligence Experience reviewing, interpreting, and critically assessing security performance data and management information Strong analytical skills, with the ability to identify trends, gaps, and meaningful insights Excellent written communication skills, with the ability to produce clear, structured documentation for both technical and non-technical audiences Comfortable working independently in a fast-paced environment with minimal supervision Desirable: Experience supporting vendor assessments, supplier evaluations, or security sourcing programmes Familiarity with SOC performance metrics, SLAs, and service reporting frameworks Key Deliverables Comparative SOC performance assessments produced at agreed intervals throughout the transition and dual-running period Each deliverable to include: A detailed technical assessment A concise executive summary suitable for senior stakeholders We use generative AI tools to support our candidate screening process. This helps us ensure a fair, consistent, and efficient experience for all applicants. Rest assured, all final decisions are made by our hiring team, and your application will be reviewed with care and attention. Adecco is an employment consultancy. We put expertise, energy, and passion into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents, skills, and unique experience in an all-encompassing environment that helps them thrive. Candidates will ideally show evidence of the above in their CV to be considered. Please be advised if you haven't heard from us within 48 hours then unfortunately your application has not been successful on this occasion, we may however keep your details on file for any suitable future vacancies and contact you accordingly. Pontoon is an employment consultancy and operates as an equal opportunity's employer. Please email me (url removed)

Modal Window

  • Home
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Google Plus
  • LinkedIn
Parent and Partner sites: IT Job Board | Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | Construction Job Board | Property jobs | myJobsnearme.com | Jobs near me
© 2008-2026 Jobsite Jobs | Designed by Web Design Agency