More jobs:
Cyber Threat Specialist
Job in
City Of London, Central London, Greater London, England, UK
Listed on 2026-03-04
Listing for:
McCabe & Barton
Full Time
position Listed on 2026-03-04
Job specializations:
-
IT/Tech
Cybersecurity, Security Manager
Job Description & How to Apply Below
We are partnering with a leading trading company to hire a Cyber Threat Specialist to join their Threat Detection & Response Team in London.
This is a permanent role focused on building a modern and effective defensive cyber security capability across a critical business environment.
The RoleAs a Cyber Threat Specialist, you will lead and deliver defensive security across enterprise and cloud platforms. Your responsibilities will include:
- Designing, implementing, and validating high-fidelity detection and response rules
- Testing detection content against recognised frameworks and optimising rules continuously
- Leading investigations across endpoints, identity, email, SaaS, and cloud workloads
- Performing forensic analysis and malware investigations
- Participating in on-call and escalation support
- Leading proactive threat hunting exercises aligned to threat models
- Translating threat intelligence (ISACs, OSINT) into practical detections and control improvements
- Identifying gaps in monitoring and enhancing detection capabilities
- Supporting deployment and automation of security tooling (SIEM, SOAR, EDR, DLP, WAF, email security)
- Developing automation using Python, Bash, or Power Shell
- Acting as an escalation point for junior analysts and helping guide them
- Minimum 3–5 years’ hands-on experience in at least two of: detection engineering, incident response, security engineering, threat hunting, or threat intelligence
- Strong experience with security tooling (SIEM, SOAR, EDR, DLP)
- Understanding of MITRE ATT&CK, cyber kill chain, and attacker tradecraft
- Experience investigating complex security incidents across applications and infrastructure
- Familiarity with offensive tools (Kali, Cobalt Strike, Metasploit) from a defensive perspective
- Strong knowledge of networking fundamentals (TCP/IP, DNS, HTTPS, firewalls, proxies)
- Experience across Windows, Linux/Unix, and cloud environments
- Scripting capability (Python, Bash, Power Shell)
- Exposure to CI/CD and cloud platforms (Azure preferred)
- Must have a Git Hub account demonstrating relevant projects or tooling development
- Relevant certifications: OSCP, Cloud CRTO, or equivalent highly desirable (CISSP not required)
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×