Detection Engineer & Threat Hunter - Hybrid Security Ops

Starling

Southampton

Hybrid

GBP 65,000 - 90,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Private Medical Insurance with Vitalty
Cycle to Work
Life Insurance 4x salary
Pension scheme
Genrous holiday plan

Job summary

Starling Bank is seeking an Information Security Analyst in Southampton to join the SecOps Detection team. You will develop, tune, and maintain detection rules, perform intelligence-driven threat hunts, and contribute to collaborative defence improvements to protect customers and assets.

You will work in a hybrid setup, collaborating with the team across AWS, GCP, Azure, SaaS and endpoints, and participate in proactive detection and incident response activities with a focus on strong analytics

Qualifications

  • 3+ years in a technical security role such as detection engineering, threat hunting, incident response, or threat intelligence.
  • Experience analysing attacker behaviour and applying MITRE ATT&CK to prioritize detective controls.
  • Hands-on SIEM experience (Splunk, Google SecOps, Elastic, Sentinel) for rule/query creation and analytics.

Responsibilities

  • Design, build, test, and maintain high-fidelity detection rules and analytics in our SIEM and other security platforms.
  • Formulate hypotheses and hunt for undetected attacker TTPs across cloud, SaaS, and endpoints.
  • Collaborate in Purple Team exercises to test and improve detection logic and response.
  • Act as SME during security incidents, providing deep technical analysis and remediation aid.
  • Integrate and operationalise threat intelligence to inform detection strategies and hunting projects.
  • Work with Security Operations and other stakeholders to uplift Starling's security posture.
  • Maintain clear documentation for detection rules, hunting playbooks, and processes.

Skills

Threat hunting
Threat analysis
Incident response
Communication
Self-starter

Tools

Splunk
Elastic

Job description

Starling Bank is seeking an Information Security Analyst in Southampton to join the SecOps Detection team. You will develop, tune, and maintain detection rules, perform intelligence-driven threat hunts, and contribute to collaborative defence improvements to protect customers and assets.

You will work in a hybrid setup, collaborating with the team across AWS, GCP, Azure, SaaS and endpoints, and participate in proactive detection and incident response activities with a focus on strong analytics

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection Engineer & Threat Hunter — SecOps
Detection Engineer & Threat Hunter — SecOps

Starling • Manchester

Hybrid
GBP 70,000 - 110,000
Annual leave 25 days
Private Medical Insurance
Pension scheme
+2
Detection Engineer & Threat Hunter – SIEM & Cloud Security
Detection Engineer & Threat Hunter – SIEM & Cloud Security

Starling • Cardiff

Hybrid
GBP 70,000 - 110,000
Private Medical Insurance
Life Insurance
Pension scheme
+3
Threat Hunter & Detection Engineer | Hybrid Role | Cloud & SIEM
Threat Hunter & Detection Engineer | Hybrid Role | Cloud & SIEM

Starling • Greater London

Hybrid
GBP 80,000 - 120,000
25 days holiday
Birthday day off
Pension scheme
+8
Information Security Analyst - Secops Detection
Information Security Analyst - Secops Detection

Starling • Southampton

On-site
GBP 65,000 - 90,000
Private Medical Insurance with Vitalty
Cycle to Work
Life Insurance 4x salary
+2
Information Security Analyst - SecOps Detection
Information Security Analyst - SecOps Detection

Starling • Greater London

On-site
GBP 80,000 - 120,000
25 days holiday
Birthday day off
Pension scheme
+8
Information Security Analyst - SecOps Detection
Information Security Analyst - SecOps Detection

Starling • Manchester

Hybrid
GBP 70,000 - 110,000
Annual leave 25 days
Private Medical Insurance
Pension scheme
+2
Information Security Analyst - SecOps Detection
Information Security Analyst - SecOps Detection

Starling • Cardiff

On-site
GBP 70,000 - 110,000
Private Medical Insurance
Life Insurance
Pension scheme
+3
Hybrid InfoSec Incident Response Analyst | Cloud Forensics
Hybrid InfoSec Incident Response Analyst | Cloud Forensics

JOBS247 INC LTD • Southampton

Hybrid
GBP 60,000 - 90,000
25 days holiday
Company enhanced pension
Buy/sell up to five extra days off
Senior Threat Operations & Blue Team Analyst (Hybrid London)
Senior Threat Operations & Blue Team Analyst (Hybrid London)

Harrington Starr • Greater London

Hybrid
GBP 65,000 - 90,000
Senior Penetration Tester - Hybrid & Impactful Security
Senior Penetration Tester - Hybrid & Impactful Security

Starling • Southampton

Hybrid
GBP 65,000 - 90,000
25 days holiday
Birthday day off
Hybrid working