Threat Intelligence Analyst - SC Cleared

Sanderson Recruitment Plc
London, UK
13 days ago
Apply on www.careerboard.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience required
1 year minimum
Compensation
£141,700.0 - £153,400.0
Working hours
Regular working hours

Tech stack

CompTIA Security+ Cyber Security Intelligence Analysis IP Addressing Intrusion Detection and Prevention Online Databases Open Source Intelligence Security Information and Event Management Mitre Att&ck Cyber Threat Analysis SC Clearance Cybercrime
+1 more
Splunk

Job description

We are seeking three Threat Intelligence Analysts to join a specialist consultancy supporting the delivery of cyber security services across a range of government projects and digital transformation programmes.

This is an exciting opportunity to work within a complex and evolving threat landscape, supporting the protection of critical public services and highly sensitive environments. As a Threat Intelligence Analyst, you will be responsible for identifying, analysing, and communicating cyber threats that may impact clients, systems, and services.

Working closely with Security Operations, Incident Response, Engineering, and wider Cyber Security teams, you will help build situational awareness, deliver actionable intelligence, and strengthen detection and response capabilities across multiple government-focused engagements. Key Responsibilities

Threat Monitoring & Intelligence Analysis

  • Monitor and assess a wide range of intelligence sources, including OSINT, commercial intelligence platforms, security telemetry, online databases, and intelligence feeds.
  • Identify, analyse, and prioritise actionable cyber threats relevant to client environments.
  • Maintain awareness of emerging threat actors, campaigns, vulnerabilities, and attack techniques.
  • Develop intelligence-led insights to support proactive cyber defence activities.

Research & Reporting

  • Conduct in-depth research into cyber threats, threat actors, vulnerabilities, and industry trends.
  • Produce high-quality intelligence reports, threat assessments, executive summaries, and technical briefings.
  • Deliver actionable intelligence products to both technical and non-technical stakeholders.
  • Communicate complex cyber threats in a clear and accessible manner.

Threat Hunting & Indicators of Compromise

  • Analyse Indicators of Compromise (IoCs), including malicious IP addresses, domains, file hashes, and malware indicators.
  • Support the identification of threat actor behaviours, tactics, techniques, and procedures (TTPs).
  • Develop recommendations to strengthen defensive controls and improve detection capabilities.
  • Contribute to proactive threat hunting and intelligence-led investigations.

Incident Response Support

  • Support cyber incident investigations throughout the intelligence life cycle.
  • Work closely with Incident Response and Security Operations teams to enrich investigations with threat intelligence.
  • Assist with incident containment, remediation activities, and post-incident analysis.

Threat Modelling & Intelligence Frameworks

  • Apply recognised threat intelligence methodologies including:
  • MITRE ATT&CK
  • Cyber Kill Chain
  • Pyramid of Pain
  • Diamond Model
  • Identify intelligence gaps and opportunities to improve threat detection and response capabilities.

Strategic Threat Intelligence

  • Contribute to tactical, operational, and strategic intelligence activities.
  • Support the development and maturity of threat intelligence capabilities.
  • Provide proactive threat warnings and situational awareness to stakeholders.
  • Support the protection of critical systems, services, and infrastructure through intelligence-led decision making.

Requirements

  • Minimum one year’s experience in Cyber Security or a related discipline.
  • Strong understanding of:
  • Cyber Threat Intelligence principles
  • Threat Actor Analysis
  • Intelligence Collection and Dissemination Processes
  • Cyber Security Operations
  • Experience using threat intelligence and analysis platforms such as:
  • Recorded Future
  • OpenCTI
  • Cribl
  • Splunk
  • Other intelligence and SIEM technologies
  • Knowledge of threat intelligence frameworks including:
  • MITRE ATT&CK
  • Cyber Kill Chain
  • Pyramid of Pain
  • Diamond Model
  • Strong analytical, investigative, and problem-solving skills.
  • Ability to identify, assess, and prioritise actionable intelligence.
  • Excellent communication and stakeholder engagement skills.
  • Active SC Clearance.

Preferred Certifications

The following certifications would be advantageous but are not essential:

  • GIAC Cyber Threat Intelligence (GCTI)
  • CISSP
  • CEH
  • GIAC Certifications
  • CompTIA Security+
  • Crest Certifications
  • SANS Cyber Security Certifications

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:44 min

Coordinating security mitigations with the CISA clearinghouse

Adrian Mouat Adrian Mouat · World Congress 2026 Europe

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

Videos

See all

Related articles

See all