Threat Analyst

Cloud People
Birmingham, UK
17 days ago
Apply on www.adzuna.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£35,000.0
Working hours
Regular working hours

Tech stack

Cyber Security Mitre Att&ck SC Clearance Information Technology

Job description

This role sits with a large, well established IT services provider that runs a busy managed security practice, delivering SOC and managed detection and response across public and private sector customers. They have invested heavily in their security operations centre and are building out the threat and vulnerability side of the service, which is where this role comes in.

This is a strong next step for a SOC analyst who wants to move into threat and vulnerability work properly. The focus is exposure, working with vulnerability data, working out what is genuinely high risk based on what is being exploited in the wild, and helping customers understand what to fix first.

You will sit alongside experienced analysts, get hands on with the tooling, and build real depth over time. You are not expected to arrive as a seasoned specialist. You are expected to have a solid SOC grounding and the appetite to grow into it.

Day to day you will work with vulnerability data from Tenable and telemetry from Microsoft Defender, using threat context to separate the noise from the risks that actually matter. Eligibility for UK Security Clearance is required.

Why This Role Stands Out

  • A genuine route out of pure SOC monitoring and into threat and vulnerability work, with the support to actually make the move
  • Real depth in vulnerability and exposure management, learning to prioritise what matters using live threat context rather than just chasing CVSS scores
  • Hands on exposure to a strong tooling stack including Tenable and the full Microsoft Defender suite
  • You will learn from experienced analysts rather than being thrown in alone, with proper support built into the role
  • The backing of a large, stable business that has invested heavily in its security operations centre
  • Clear scope to develop, the person who held this remit before progressed into engineering, so there is a visible path, * Work with vulnerability data from Tenable to identify and prioritise high risk exposure across customer environments
  • Use threat context, active campaigns and exploitation in the wild, to judge which vulnerabilities genuinely matter and in what order
  • Work with CVEs and CVSS scoring, tracking new disclosures and exploitation trends and translating them into clear priorities
  • Use Microsoft Defender telemetry across endpoint, identity, cloud and Office to spot emerging patterns and support investigations
  • Map threats, TTPs and campaigns to frameworks such as MITRE ATT&CK
  • Work closely with the wider SOC to feed findings into triage, detections and remediation, and build towards producing threat and vulnerability briefings for customers

Requirements

  • Experience working in a SOC, with a good understanding of the current threat landscape
  • Exposure to vulnerability and threat tooling, ideally Tenable and Microsoft Defender or similar
  • Solid working knowledge of CVEs, CVSS, MITRE ATT&CK and the common types of threats and data breaches
  • Genuinely keen to move into threat and vulnerability work and develop into it
  • A clear communicator who can explain technical detail in a way that makes sense to others
  • Eligibility for UK Security Clearance is essential

If you are a SOC analyst ready to move into threat and vulnerability work, and you want to build real depth in exposure and prioritisation somewhere that has invested properly in its security operations, this is well worth a look.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all