Threat Intelligence & Incident Response Analyst

dssmith

Greater London

On-site

GBP 65,000 - 90,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

DS Smith is seeking a skilled Threat Intelligence Analyst to join its Information Security team. You will monitor threats, analyse intelligence, and support incident response to protect operations, data and infrastructure.

Working with SOC, Incident Response, and IT teams, you will leverage Sentinel/Defender and DarkIQ to generate actionable insights and drive proactive security measures across the manufacturing and logistics landscape.

Qualifications

  • Experience in threat intelligence, incident response, or security operations.
  • Hands-on experience managing security incidents through the full incident response lifecycle.
  • Strong understanding of threats, actor behaviour, attack methods and intel frameworks (MITRE ATT&CK, Diamond Model, Cyber Kill Chain).
  • Advanced knowledge of Microsoft Sentinel, Microsoft Defender, and KQL for threat hunting and investigation.
  • Experience with threat intel platforms and dark web monitoring (e.g. DarkIQ).

Responsibilities

  • Monitor the global threat landscape for emerging cyber threats, vulnerabilities and actor activity relevant to DS Smith and the manufacturing sector.
  • Analyse intelligence from OSINT, commercial feeds, industry sharing platforms and dark web monitoring tools.
  • Correlate external intelligence with internal security events using Microsoft Sentinel and Defender.
  • Develop and maintain advanced KQL queries to support threat hunting, detection engineering and incident investigation.
  • Produce actionable threat reports, actor profiles and IoCs for executive briefings.
  • Support and participate in incident response activities from triage through containment and recovery.
  • Collaborate with SOC, security architects and tech stakeholders to strengthen detection and response capabilities.
  • Contribute to threat models, risk assessments, playbooks and operation processes.

Skills

Threat intelligence
Incident response
Security operations
Microsoft Sentinel
Microsoft Defender
KQL
Dark web monitoring
Scripting
PowerShell
Python

Tools

DarkIQ

Job description

DS Smith is seeking a skilled Threat Intelligence Analyst to join its Information Security team. You will monitor threats, analyse intelligence, and support incident response to protect operations, data and infrastructure.

Working with SOC, Incident Response, and IT teams, you will leverage Sentinel/Defender and DarkIQ to generate actionable insights and drive proactive security measures across the manufacturing and logistics landscape.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Analyst - Detection & Incident Response
Threat Intelligence Analyst - Detection & Incident Response

DS Smith • City of Westminster

On-site
GBP 60,000 - 95,000
Threat Intelligence & Incident Response Specialist
Threat Intelligence & Incident Response Specialist

DS Smith Europe • City of Westminster

On-site
GBP 60,000 - 85,000
Threat Intelligence Analyst
Threat Intelligence Analyst

dssmith • Greater London

On-site
GBP 65,000 - 90,000
Threat Intelligence Analyst
Threat Intelligence Analyst

DS Smith Europe • City of Westminster

On-site
GBP 60,000 - 85,000
Threat Intelligence Analyst
Threat Intelligence Analyst

DS Smith • City of Westminster

On-site
GBP 60,000 - 95,000
Threat Intelligence Analyst
Threat Intelligence Analyst

Jobtailor • Greater London

On-site
GBP 65,000 - 90,000
Threat Intelligence Analyst: Hunt, Detect, and Respond
Threat Intelligence Analyst: Hunt, Detect, and Respond

Jobtailor • Greater London

On-site
GBP 65,000 - 90,000
Senior DFIR Incident Responder — Lead & Automate Security
Senior DFIR Incident Responder — Lead & Automate Security

Tesco Technology • Welwyn Garden City

Hybrid
GBP 70,000 - 110,000
Annual bonus up to 20% of base salary
Holiday 25 days + personal day
Private medical insurance
+2
Cloud Security SOC Analyst | Incident Response & SIEM
Cloud Security SOC Analyst | Incident Response & SIEM

TRIA • Dunfermline

Hybrid
GBP 50,000 - 54,000
Salary £50,000-£54,000
Hybrid work 2 days in office
Pension scheme
+1
Senior Threat Intelligence Analyst — App Security Focus
Senior Threat Intelligence Analyst — App Security Focus

Sept 2017 Branding • City Of London

On-site
GBP 65,000 - 90,000