×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Threat Specialist

Job in City Of London, Central London, Greater London, England, UK
Listing for: McCabe & Barton
Full Time position
Listed on 2026-03-04
Job specializations:
  • IT/Tech
    Cybersecurity, Security Manager
Salary/Wage Range or Industry Benchmark: 60000 - 80000 GBP Yearly GBP 60000.00 80000.00 YEAR
Job Description & How to Apply Below
Location: City Of London

We are partnering with a leading trading company to hire a Cyber Threat Specialist to join their Threat Detection & Response Team in London.

This is a permanent role focused on building a modern and effective defensive cyber security capability across a critical business environment.

The Role

As a Cyber Threat Specialist, you will lead and deliver defensive security across enterprise and cloud platforms. Your responsibilities will include:

  • Designing, implementing, and validating high-fidelity detection and response rules
  • Testing detection content against recognised frameworks and optimising rules continuously
  • Leading investigations across endpoints, identity, email, SaaS, and cloud workloads
  • Performing forensic analysis and malware investigations
  • Participating in on-call and escalation support
  • Leading proactive threat hunting exercises aligned to threat models
  • Translating threat intelligence (ISACs, OSINT) into practical detections and control improvements
  • Identifying gaps in monitoring and enhancing detection capabilities
  • Supporting deployment and automation of security tooling (SIEM, SOAR, EDR, DLP, WAF, email security)
  • Developing automation using Python, Bash, or Power Shell
  • Acting as an escalation point for junior analysts and helping guide them
About You
  • Minimum 3–5 years’ hands-on experience in at least two of: detection engineering, incident response, security engineering, threat hunting, or threat intelligence
  • Strong experience with security tooling (SIEM, SOAR, EDR, DLP)
  • Understanding of MITRE ATT&CK, cyber kill chain, and attacker tradecraft
  • Experience investigating complex security incidents across applications and infrastructure
  • Familiarity with offensive tools (Kali, Cobalt Strike, Metasploit) from a defensive perspective
  • Strong knowledge of networking fundamentals (TCP/IP, DNS, HTTPS, firewalls, proxies)
  • Experience across Windows, Linux/Unix, and cloud environments
  • Scripting capability (Python, Bash, Power Shell)
  • Exposure to CI/CD and cloud platforms (Azure preferred)
  • Must have a Git Hub account demonstrating relevant projects or tooling development
  • Relevant certifications: OSCP, Cloud CRTO, or equivalent highly desirable (CISSP not required)
#J-18808-Ljbffr
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary