Threat Analyst

The Scc
Birmingham, UK
28 days ago
Apply on uk.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Cyber Security Microsoft Office Service Design Service Development Studio Security Information and Event Management Mitre Att&ck Cyber Threat Analysis Cybercrime Service Stack

Job description

Threat Intelligence & Analysis

  • Research and analyse emerging cyber threats, vulnerabilities, and threat actor activity relevant to SCC customers
  • Produce threat assessments and contextual intelligence on vulnerabilities, incidents, and campaigns
  • Lead development of strategic, operational, and tactical threat intelligence outputs (e.g. landscape reports, advisories, digests)
  • Map threats, TTPs, and campaigns to frameworks such as MITRE ATT&CK

Customer-Facing Intelligence & Reporting

  • Produce and enhance customer-facing deliverables such as:

o Strategic threat landscape reports o Threat briefings and advisories o Technology-specific risk summaries

  • Translate threat intelligence into business-relevant insights and recommendations
  • Support stakeholder engagement by explaining threats in both technical and non-technical terms

Operational Integration with SOC

  • Work with other SOC and threat analysts to convert intelligence into:

o Detection rules (SIEM / EDR) o Threat hunting hypotheses o Playbook improvements

  • Provide intelligence-driven input into alert triage and incident investigations
  • Support post-incident reviews with threat context and adversary insight

Vulnerability & Exposure Intelligence

  • Analyse vulnerability data from Tenable and other scanning platforms to:

o Identify high-risk vulnerabilities relevant to current threat activity o Prioritise remediation based on exploitability, exposure, and threat actor interest

  • Correlate vulnerability findings with:

o Threat intelligence (active campaigns / exploitation in the wild) o Customer environments and technology stacks

  • Support development of:

o Vulnerability threat advisories o Risk-based prioritisation models for customers

  • Work with SOC and engineering teams to ensure vulnerability intelligence informs:

o Detection use cases o Threat hunting activities o Customer remediation guidance Defender & Endpoint Intelligence (MXDR Integration)

  • Leverage Microsoft Defender (Endpoint, Identity, Cloud, Office) telemetry to:

o Identify emerging threat patterns and suspicious behaviours o Support investigations with enriched threat intelligence context

  • Correlate Defender alerts with known threat actor TTPs and campaigns
  • Lead on:

o Identification of gaps in detection coverage o Development of intelligence-led improvements to Defender use cases

  • Be the SME for :

o Exploitation techniques observed in real environments o Trends across customer estates Threat Monitoring & Tooling

  • Lead monitoring of:

o Dark web sources o External attack surface exposure o Vulnerability disclosures and exploitation trends

  • Lead on evaluation and usage of threat intelligence platforms and tooling
  • Maintain tracking of relevant:

o Indicators of Compromise (IOCs) o Vulnerabilities and CVEs o Threat actor campaigns Service Development & Improvement

  • Lead on development of SCC threat intelligence services and offerings
  • Lead on refining use cases, playbooks, and detection logic based on emerging threats
  • Support RFP responses, service design, and customer proposals for threat intelligence capabilities

Collaboration & Knowledge Sharing

  • Work collaboratively with SOC, engineering, and solution teams
  • Share threat insights across the SOC to improve collective awareness and response capability
  • Maintain awareness of current and emerging threats affecting key sectors and customer environments
  • Will mentor other more junior Threat Analysts

Requirements

  • Experience in researching and analysing threats within a SOC environment
  • Detail-oriented with strong analytical thinkingAble to translate threat intelligence into practical outcomes
  • Collaborative and team-focused
  • Committed to continuous learning in cyber security
  • Good understanding of cyber security principles and threat landscape shown through experience and certifications.
  • Experience of using vulnerability prioritisation and exploit intelligence within a security team
  • Experience working with and troubleshooting Tenable, Defender, or equivalent tooling
  • Knowledge of frameworks such as MITRE ATT&CK
  • Understanding and experience of threat intelligence lifecycle and structured analysis techniques
  • Experience producing reports, briefings, or customer-facing outputs

Benefits & conditions

Pulled from the full job description

  • Paid volunteer time, Salary Package: 35000 plus large company benefits, a broad flexible benefits scheme, and 2 paid-for volunteering days a year Hours: 9.00 am - 5.30 pm Monday - Friday Interview Process: 2-stage process

Why SCC?

  • An inclusive workplace
  • Excellent package: solid basic and company benefits
  • Hybrid working & core hours in line with role requirements
  • Career development and life-long learning opportunities
  • Opportunity to join Europe’s largest privately-owned IT Company

About the company

SCC is Europe’s largest privately-owned IT business, based out of the new Ā£7m HQ office in Birmingham and we help clients succeed through IT transformation and exceptional customer experiences. We are a business where innovation is greater as we combine unique ideas, people and disciplines. We are a global company that is passionate about IT and where we look to simplify the complex.

We are an equal opportunities employer

SCC is committed to providing equal opportunities and a proactive and inclusive approach to equality and diversity in employment. No applicant or employee will be treated less favourably than another on the grounds of a protected characteristic which are defined as sex, sexual orientation, age, disability, gender reassignment, trade union membership or non-membership, marriage and civil partnership, pregnancy and maternity, race and religion or belief. If you are selected for interview, and need any reasonable adjustments made for your interview, please let the SCC Talent Acquisition team know, at the point of scheduling. Diversity & Inclusion at SCC - https://www.scc.com/diversity-and-inclusion/ Sustainability at SCC - https://www.scc.com/sustainability-at-scc/ Life at SCC - https://www.linkedin.com/company/scc/life

You must create an Indeed account before continuing to the company website to apply

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on uk.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:32 min

Pairing with teams for continuous threat modeling

Nazneen Rupawalla Ā· World Congress 2022

3:47 min

Solving the knowledge deficit in large language models

Alejandro Saucedo Alejandro Saucedo +3 Ā· World Congress 2024

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber Ā· World Congress 2026 Europe

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa Ā· LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif Ā· LIVE

41 sec

Operating critical stack observability and service monitoring

Michael Cade Ā· LIVE

Videos

See all

Related articles

See all