> Markdown version of [/jobs/ext/2398750-threat-analyst](https://www.wearedevelopers.com/jobs/ext/2398750-threat-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Threat Analyst - **Company:** The Scc - **Location:** Birmingham, UK (Remote available) - **Contract:** Permanent contract - **Skills:** Cloud Computing, Cyber Security, Microsoft Office, Service Design, Service Development Studio, Security Information and Event Management, Mitre Att&ck, Cyber Threat Analysis, Cybercrime, Service Stack - **Published:** August 5, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=7efe97d25d609370 ## About the Role * Experience in researching and analysing threats within a SOC environment * Detail-oriented with strong analytical thinkingAble to translate threat intelligence into practical outcomes * Collaborative and team-focused * Committed to continuous learning in cyber security * Good understanding of cyber security principles and threat landscape shown through experience and certifications. * Experience of using vulnerability prioritisation and exploit intelligence within a security team * Experience working with and troubleshooting Tenable, Defender, or equivalent tooling * Knowledge of frameworks such as MITRE ATT&CK * Understanding and experience of threat intelligence lifecycle and structured analysis techniques * Experience producing reports, briefings, or customer-facing outputs ## Description Threat Intelligence & Analysis * Research and analyse emerging cyber threats, vulnerabilities, and threat actor activity relevant to SCC customers * Produce threat assessments and contextual intelligence on vulnerabilities, incidents, and campaigns * Lead development of strategic, operational, and tactical threat intelligence outputs (e.g. landscape reports, advisories, digests) * Map threats, TTPs, and campaigns to frameworks such as MITRE ATT&CK Customer-Facing Intelligence & Reporting * Produce and enhance customer-facing deliverables such as: o Strategic threat landscape reports o Threat briefings and advisories o Technology-specific risk summaries * Translate threat intelligence into business-relevant insights and recommendations * Support stakeholder engagement by explaining threats in both technical and non-technical terms Operational Integration with SOC * Work with other SOC and threat analysts to convert intelligence into: o Detection rules (SIEM / EDR) o Threat hunting hypotheses o Playbook improvements * Provide intelligence-driven input into alert triage and incident investigations * Support post-incident reviews with threat context and adversary insight Vulnerability & Exposure Intelligence * Analyse vulnerability data from Tenable and other scanning platforms to: o Identify high-risk vulnerabilities relevant to current threat activity o Prioritise remediation based on exploitability, exposure, and threat actor interest * Correlate vulnerability findings with: o Threat intelligence (active campaigns / exploitation in the wild) o Customer environments and technology stacks * Support development of: o Vulnerability threat advisories o Risk-based prioritisation models for customers * Work with SOC and engineering teams to ensure vulnerability intelligence informs: o Detection use cases o Threat hunting activities o Customer remediation guidance Defender & Endpoint Intelligence (MXDR Integration) * Leverage Microsoft Defender (Endpoint, Identity, Cloud, Office) telemetry to: o Identify emerging threat patterns and suspicious behaviours o Support investigations with enriched threat intelligence context * Correlate Defender alerts with known threat actor TTPs and campaigns * Lead on: o Identification of gaps in detection coverage o Development of intelligence-led improvements to Defender use cases * Be the SME for : o Exploitation techniques observed in real environments o Trends across customer estates Threat Monitoring & Tooling * Lead monitoring of: o Dark web sources o External attack surface exposure o Vulnerability disclosures and exploitation trends * Lead on evaluation and usage of threat intelligence platforms and tooling * Maintain tracking of relevant: o Indicators of Compromise (IOCs) o Vulnerabilities and CVEs o Threat actor campaigns Service Development & Improvement * Lead on development of SCC threat intelligence services and offerings * Lead on refining use cases, playbooks, and detection logic based on emerging threats * Support RFP responses, service design, and customer proposals for threat intelligence capabilities Collaboration & Knowledge Sharing * Work collaboratively with SOC, engineering, and solution teams * Share threat insights across the SOC to improve collective awareness and response capability * Maintain awareness of current and emerging threats affecting key sectors and customer environments * Will mentor other more junior Threat Analysts ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Introducing a Digital Service Catalog for speed and scale](https://www.wearedevelopers.com/videos/763-introducing-a-digital-service-catalog-for-speed-and-scale) - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Building high performance and scalable architectures for enterprises](https://www.wearedevelopers.com/videos/19-building-high-performance-and-scalable-architectures-for-enterprises) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)