Threat Intelligence Analyst - SC Cleared

Sanderson Government & Defence

Greater London

Hybrid

GBP 101,000 - 109,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Sanderson Government & Defence is seeking three Threat Intelligence Analysts to join a government-focused consultancy. You will identify and communicate cyber threats impacting clients, systems and services, working with SOC, IR, Engineering and Cyber Security teams to build situational awareness and intelligence-led defenses.

You will monitor diverse sources, produce actionable intelligence, and support proactive threat hunting and incident response across multiple engagements, leveraging MITRE

Qualifications

  • Minimum one year's experience in Cyber Security or a related discipline.
  • Strong understanding of Cyber Threat Intelligence principles and threat actor analysis.
  • Experience with threat intelligence platforms such as Recorded Future, OpenCTI or Splunk.
  • Knowledge of MITRE ATT&CK, Cyber Kill Chain, Pyramid of Pain and Diamond Model.
  • Active SC Clearance is required.

Responsibilities

  • Monitor and assess a wide range of intelligence sources to identify threats.
  • Produce high-quality intelligence products for technical and non-technical stakeholders.
  • Conduct threat hunting and analyse IoCs to strengthen detection and response.
  • Support incident investigations and enrich investigations with threat intelligence.
  • Apply frameworks like MITRE ATT&CK and Cyber Kill Chain to threat modelling.

Skills

Threat Intelligence
Cyber Security Operations
Incident Response
Data Analysis
Stakeholder Engagement
Active SC Clearance

Job description

Threat Intelligence Analyst x3

Location: UK (Hybrid/Remote as required)
Security Clearance: Active SC Clearance Required
Contract Length: 6-18 Months
Rate: £545-£590 per day (Inside IR35)
Positions Available: 3

About the Role

We are seeking three Threat Intelligence Analysts to join a specialist consultancy supporting the delivery of cyber security services across a range of government projects and digital transformation programmes.

This is an exciting opportunity to work within a complex and evolving threat landscape, supporting the protection of critical public services and highly sensitive environments. As a Threat Intelligence Analyst, you will be responsible for identifying, analysing, and communicating cyber threats that may impact clients, systems, and services.

Working closely with Security Operations, Incident Response, Engineering, and wider Cyber Security teams, you will help build situational awareness, deliver actionable intelligence, and strengthen detection and response capabilities across multiple government-focused engagements.

Key Responsibilities
Threat Monitoring & Intelligence Analysis
  • Monitor and assess a wide range of intelligence sources, including OSINT, commercial intelligence platforms, security telemetry, online databases, and intelligence feeds.
  • Identify, analyse, and prioritise actionable cyber threats relevant to client environments.
  • Maintain awareness of emerging threat actors, campaigns, vulnerabilities, and attack techniques.
  • Develop intelligence-led insights to support proactive cyber defence activities.
Research & Reporting
  • Conduct in-depth research into cyber threats, threat actors, vulnerabilities, and industry trends.
  • Produce high-quality intelligence reports, threat assessments, executive summaries, and technical briefings.
  • Deliver actionable intelligence products to both technical and non-technical stakeholders.
  • Communicate complex cyber threats in a clear and accessible manner.
Threat Hunting & Indicators of Compromise
  • Analyse Indicators of Compromise (IoCs), including malicious IP addresses, domains, file hashes, and malware indicators.
  • Support the identification of threat actor behaviours, tactics, techniques, and procedures (TTPs).
  • Develop recommendations to strengthen defensive controls and improve detection capabilities.
  • Contribute to proactive threat hunting and intelligence-led investigations.
Incident Response Support
  • Support cyber incident investigations throughout the intelligence lifecycle.
  • Work closely with Incident Response and Security Operations teams to enrich investigations with threat intelligence.
  • Assist with incident containment, remediation activities, and post-incident analysis.
Threat Modelling & Intelligence Frameworks
  • Apply recognised threat intelligence methodologies including:
    • MITRE ATT&CK
    • Cyber Kill Chain
    • Pyramid of Pain
    • Diamond Model
  • Identify intelligence gaps and opportunities to improve threat detection and response capabilities.
Strategic Threat Intelligence
  • Contribute to tactical, operational, and strategic intelligence activities.
  • Support the development and maturity of threat intelligence capabilities.
  • Provide proactive threat warnings and situational awareness to stakeholders.
  • Support the protection of critical systems, services, and infrastructure through intelligence-led decision making.
Essential Skills & Experience
  • Minimum one year's experience in Cyber Security or a related discipline.
  • Strong understanding of:
    • Cyber Threat Intelligence principles
    • Threat Actor Analysis
    • Intelligence Collection and Dissemination Processes
    • Cyber Security Operations
  • Experience using threat intelligence and analysis platforms such as:
    • Recorded Future
    • OpenCTI
    • Cribl
    • Splunk
    • Other intelligence and SIEM technologies
  • Knowledge of threat intelligence frameworks including:
    • MITRE ATT&CK
    • Cyber Kill Chain
    • Pyramid of Pain
    • Diamond Model
  • Strong analytical, investigative, and problem-solving skills.
  • Ability to identify, assess, and prioritise actionable intelligence.
  • Excellent communication and stakeholder engagement skills.
  • Active SC Clearance.
Preferred Certifications

The following certifications would be advantageous but are not essential:

  • GIAC Cyber Threat Intelligence (GCTI)
  • CISSP
  • CEH
  • GIAC Certifications
  • CompTIA Security+
  • CREST Certifications
  • SANS Cyber Security Certifications

Reasonable Adjustments:

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Specialist
Threat Intelligence Specialist

Accenture UK • Greater London

Hybrid
GBP 65,000 - 90,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Lloyds • West of England

On-site
GBP 65,000 - 90,000
Holiday allowance
Flexible working
Family leave
+6
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Lloyds Banking Group • West of England

Hybrid
GBP 49,000 - 54,000
15% pension contribution
Annual bonus (performance-related)
Share schemes including free shares
+4
SOC Analyst - SC Cleared
SOC Analyst - SC Cleared

Sanderson Government & Defence • Greater London

Hybrid
GBP 146,000 - 151,000
Threat Intelligence Production Lead
Threat Intelligence Production Lead

Accenture UK & Ireland • Greater London

Hybrid
GBP 90,000 - 130,000
Lead Security Analyst
Lead Security Analyst

Made Tech Limited • Bristol

On-site
GBP 65,000 - 80,000
30 days Holiday
Flexible Working Hours
Remote Working – part-time
+5
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

LLOYDS BANKING GROUP • Bristol

Hybrid
GBP 49,000 - 54,000
Hybrid working
Generous pension (up to 15%)
Annual performance bonus
+2
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

LLOYDS BANKING GROUP • City of Edinburgh

Hybrid
GBP 49,000 - 54,000
Pension up to 15%
Annual bonus
Share schemes
+3
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Lloyds Bank plc • Bristol

Hybrid
GBP 49,000 - 54,000
Flexible Working Options
Hybrid Working
Job Share
Senior Analyst - Tactical Intelligence
Senior Analyst - Tactical Intelligence

NCC Group • Greater London

On-site
GBP 70,000 - 110,000
Flexible Working
Generous Holiday Allowance
Medicash & Critical Illness Scheme
+1