Enable job alerts via email!

Threat Hunter - National Security - Leeds

BAE

Gloucester

Hybrid

GBP 45,000 - 70,000

Full time

4 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in digital intelligence seeks a Threat Hunter to join their team. You will be responsible for intrusion analysis, incident response, and developing complex detection analytics. This role emphasizes collaboration with external teams and continuous improvement of security processes. Ideal candidates will have significant experience in security testing and threat hunting, along with strong analytical skills.

Qualifications

  • Experience in security testing practices and techniques.
  • Knowledge of Azure and AWS is desirable.
  • Knowledge of Windows Active Directory and networking fundamentals.

Responsibilities

  • Serve as point of escalation for intrusion analysis and incident response.
  • Mentor team members and enhance SOC processes.
  • Conduct technical interviews and evaluate candidates.

Skills

Intrusion Analysis
Forensics
Incident Response
Threat Hunting
Analytical Skills

Education

Threat Hunting or SOC Analyst Certifications

Tools

Microsoft Sentinel
KQL
Azure
AWS

Job description

BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, enabling governments, armed forces, and businesses to unlock digital advantages in demanding environments.

Job Title: Threat Hunter
Location:

Leeds - Flexible and hybrid working arrangements available. Please discuss options with your recruiter.

Grade:

GG10 - GG11

Job Description:
  • Serve as the point of escalation for intrusion analysis, forensics, and incident response queries.
  • Provide root cause analysis for complex, non-standard findings and anomaly detections.
  • Mentor team members and share knowledge via the SOC Knowledge Repository.
  • Build relationships with external SOCs and cybersecurity researchers to identify useful analytics and threat intelligence.
  • Develop complex KQL analytics and playbooks for detection in M365, Linux, and Windows environments.
  • Review open-source research on threats impacting cloud services and prioritize implementation.
  • Research vulnerabilities, produce proof-of-concept exploits, and emulate adversary TTPs for training and detection testing.
  • Review red team and pentest findings to improve detection rules.
  • Support forensic investigations and threat emulation to improve alert accuracy.
  • Identify gaps in SOC processes and demonstrate improvements through scenarios and exercises.
  • Perform complex threat hunting, automation, and analytic enrichment tasks.
  • Set vision and milestones for detection capabilities, influencing team efforts.
  • Adjust alert thresholds and suppressions based on signal-to-noise assessment and team risk appetite.
  • Define threat hunting initiatives based on real-world risks.
  • Architect detection programs to identify unusual behaviors and reduce dwell time.
  • Oversee operational practices to enhance quality and effectiveness.
  • Lead team exercises and influence requirements for engineering and analysis teams.
  • Conduct technical interviews and evaluate candidates.
Experience:
  • Experience in security testing practices and techniques.
  • Knowledge of Azure, AWS is desirable.
  • Familiarity with Windows Active Directory, Windows OS fundamentals, and networking fundamentals.
  • Experience with CICD, source control, and writing malware and anomaly detections.
  • Use of statistical methods for anomaly detection.
  • Practical expertise in Microsoft Sentinel/XDR and complex KQL analytics.
  • Strong knowledge of current security threats and threat prioritization skills.
  • Threat hunting or SOC analyst certifications preferred.

We support hybrid working, enabling flexible work locations and schedules to promote work-life balance and well-being.

Diversity and inclusion are core to our culture. We value employees from diverse backgrounds and perspectives, working together to achieve excellence.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Threat Hunter - National Security - Leeds

BAE Systems Applied Intelligence

Gloucester null

Hybrid

Hybrid

GBP 50,000 - 70,000

Full time

13 days ago

Threat Hunter - National Security - Leeds

Babcock

Gloucester null

Hybrid

Hybrid

GBP 60,000 - 90,000

Full time

17 days ago

Threat Hunter – National Security – Leeds

BAE Systems

Gloucester null

Hybrid

Hybrid

GBP 45,000 - 70,000

Full time

19 days ago

Project Developer

Hunter Philips Executive Search

null null

Remote

Remote

GBP 50,000 - 80,000

Full time

25 days ago