> Markdown version of [/jobs/ext/2992928-senior-information-security-officer](https://www.wearedevelopers.com/jobs/ext/2992928-senior-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Security Officer - **Company:** University College London Hospitals NHS Foundation Trust - **Location:** London, UK - **Experience:** Expert - **Salary:** £56,431.0 - £66,437.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Intrusion Detection and Prevention, Security Information and Event Management, Software Vulnerability Management, Cyber Threat Analysis, Cybercrime - **Published:** September 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=cfd49497f0713bc6 ## About the Role As the ideal candidate you will have a mix of the following skills and experience: * Significant experience in cyber threat intelligence, threat hunting, detection engineering, SOC operations, incident response support or related operational security work. * Strong knowledge of intelligence requirements, threat modelling, intelligence cycles, analytical methods and the production of actionable intelligence. * Strong knowledge of threat hunting and detection engineering methods, including hunt planning, telemetry analysis, detection coverage, custom detections and false-positive management. * Experience using relevant security tooling and platforms, such as SIEM, TIP, SOAR, CTEM, intelligence collection platforms, reporting platforms and related monitoring or investigation tools. * Experience using threat intelligence, hunt findings, incident findings or other operational evidence to improve detections, reporting, playbooks, tooling or controls. * The ability to analyse complex or incomplete threat information and support timely, data-led decisions. * Experience coordinating intelligence, hunting or detection engineering activity across analysts, technical teams, suppliers and stakeholders. * Strong written and verbal communication skills, with the ability to explain threats, detection gaps, hunt findings and recommended actions to technical and non-technical audiences. * The ability to organise and prioritise multiple activities, maintain accurate documentation, and ensure actions are clearly assigned, tracked and completed. * Experience providing day-to-day leadership, coaching, knowledge sharing or technical direction to colleagues. ## Description Within ISD, this post is in the Information Security Group, which leads on all aspects of security at UCL. The role sits within Security Operations, which is responsible for security monitoring, incident response, vulnerability management and threat intelligence. Working under the direction of the Cyber Threat Management Lead, you will lead day-to-day threat intelligence, threat hunting and detection engineering activity. You will help maintain UCL's intelligence requirements and threat model, produce actionable intelligence, plan and conduct threat hunts, and identify opportunities to improve detection coverage against priority threats. You will work closely with analysts, technical teams, service providers and stakeholders across UCL to turn intelligence, hunt findings and incident evidence into practical improvements to detections, playbooks, tooling and security controls. You will also provide coaching and direction to colleagues, communicate complex threat information clearly, and support evidence-based decisions about UCL's defensive posture. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Average Salary in London](https://www.wearedevelopers.com/magazine/280-average-salary-in-london)