Senior SIEM Threat Hunter & Detection Analyst in Wokingham

Senior SIEM Threat Hunter & Detection Analyst in Wokingham

Wokingham Full-Time 60000 - 80000 £ / year (est.) No working from home possible
Adecco

At a Glance

  • Tasks: Hunt for cyber threats and analyse adversary behaviour using advanced SIEM tools.
  • Company: Leading cybersecurity firm focused on proactive threat detection.
  • Benefits: Competitive salary, excellent training, and comprehensive benefits package.
  • Other info: Opportunity to collaborate with red and purple teams for enhanced learning.
  • Why this job: Join a dynamic team and make a real impact in cyber defence.
  • Qualifications: Five years of experience in threat hunting and strong SIEM skills required.

The predicted salary is between 60000 - 80000 £ per year.

Location: Wokingham, Berkshire (On-site)

Salary: Competitive (dependent on experience) + excellent benefits & training

Security Clearance: Ideally SC Cleared or eligible for SC

Role Overview

As a SIEM Analyst Cyber Threat Detection, you will play a hands‑on role within an advanced cyber defence function, focused on proactive threat hunting, adversary behaviour analysis, and high‑fidelity threat detection across enterprise environments. This role goes beyond reactive alert handling. You will actively hunt for malicious activity using telemetry, SIEM data, and threat intelligence, develop hypotheses based on MITRE ATT&CK Tactics, Techniques, and Procedures (TTPs), and support incident management and response activities when threats are identified.

We are open to experienced SOC Analysts where threat hunting, investigations, and proactive detection have formed a significant part of their role, and who are looking to further develop in a more hunting‑led environment. This position is well suited to analysts who enjoy thinking like an attacker, have worked alongside or supported red team or purple team activities, and want to deepen their expertise in threat detection and detection engineering.

Skills & Experience We're Seeking

  • Experience in threat hunting, cyber threat detection, SOC, blue team, or cyber defence environments, with ideally around five years hands‑on experience.
  • Strong hands‑on experience using SIEM platforms, including:
    • Microsoft Sentinel (KQL)
    • Splunk (SPL)
    • Elastic Security/Kibana (KQL, ESQL)
  • Practical and operational understanding of MITRE ATT&CK, attacker techniques, and adversary tradecraft; experience working with Indicators of Compromise (IOCs) and threat intelligence feeds; solid experience across the security event life cycle, including detection, investigation, and incident management;
  • Hands‑on experience with EDR/XDR technologies such as Microsoft Defender, CrowdStrike, SentinelOne, or Carbon Black;
  • Strong knowledge of networking fundamentals (TCP/IP, DNS, HTTP/S, Firewalls, VPNs, Proxy technologies);
  • Experience analysing telemetry from Windows, Linux, identity, endpoint, and network sources;
  • Strong analytical mindset with the ability to clearly communicate findings, impact, and risk.

Key Responsibilities

  • Conduct proactive threat hunting activities across log, endpoint, and network telemetry to identify suspicious, stealthy, or previously unknown threats.
  • Develop and execute hunt hypotheses aligned to MITRE ATT&CK TTPs, adversary behaviours, and emerging threat intelligence.
  • Write, refine, and optimise SIEM queries using KQL, SPL, Elastic/ESQL, and Kibana Query Language.
  • Perform IOC analysis, enrichment, and validation, integrating internal and external threat intelligence sources.
  • Lead investigations from initial detection through scoping, root cause analysis, and impact assessment.
  • Support incident management and incident response activities, including containment, remediation, escalation, and lessons learned.
  • Collaborate closely with SOC teams, incident responders, red teams, and purple teams to validate detections and improve defensive coverage.
  • Contribute to detection logic improvements, use‑case development, and continuous enhancement of hunting methodologies.
  • Produce clear investigation write‑ups, timelines, and recommendations for technical and non‑technical stakeholders.

Security Certifications (Highly Beneficial)

  • SANS/GIAC certifications, including but not limited to:
    • GCIH – Incident Handler
    • GCIA – Intrusion Analyst
    • GCED – Enterprise Defender
    • GCTI – Cyber Threat Intelligence
    • GMON – Continuous Monitoring
    • GDAT – Defending Advanced Threats
    • GCAT – Advanced Threat Intelligence
    • OSCP or equivalent offensive security qualifications
  • Crest certifications, such as:
    • Crest Practitioner Intrusion Analyst (CPIA)
    • Crest Registered Intrusion Analyst (CRIA)
    • Crest Certified Threat Intelligence Analyst (CCTIA)
    • Crest Certified Blue Team Professional (CCBTP)
  • Microsoft SC-200 or related detection and response certifications
  • Other recognised cyber security or threat intelligence credentials

Senior SIEM Threat Hunter & Detection Analyst in Wokingham employer: Adecco

As a leading employer in the cyber security sector, we offer a dynamic work environment in Wokingham, Berkshire, where innovation and collaboration thrive. Our commitment to employee growth is evident through extensive training opportunities and support for professional certifications, ensuring that our team members are always at the forefront of industry advancements. With a strong focus on proactive threat detection and a culture that encourages thinking like an attacker, we provide a meaningful and rewarding career path for those passionate about making a difference in cyber defence.

Adecco

Contact Details:

Adecco Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior SIEM Threat Hunter & Detection Analyst in Wokingham

Tip Number 1

Get your networking game on! Reach out to professionals in the cyber security field, especially those who are already working as SIEM Analysts or in threat detection roles. LinkedIn is a great place to start; connect with them, ask questions, and maybe even request an informational chat.

Tip Number 2

Show off your skills! Prepare a portfolio that highlights your experience with SIEM platforms like Microsoft Sentinel or Splunk. Include examples of threat hunting activities you've conducted, and be ready to discuss your thought process during interviews.

Tip Number 3

Practice makes perfect! Brush up on your knowledge of MITRE ATT&CK and be prepared to discuss how you’ve applied it in real-world scenarios. Consider doing mock interviews with friends or using online platforms to get comfortable with common interview questions.

Tip Number 4

Don’t forget to apply through our website! We’re always on the lookout for passionate individuals who want to dive into the world of cyber threat detection. Your next big opportunity could be just a click away!

We think you need these skills to ace Senior SIEM Threat Hunter & Detection Analyst in Wokingham

Threat Hunting
Cyber Threat Detection
SIEM Platforms
Microsoft Sentinel (KQL)
Splunk (SPL)
Elastic Security/Kibana (KQL, ESQL)
MITRE ATT&CK

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the role of a Senior SIEM Threat Hunter & Detection Analyst. Highlight your experience with SIEM platforms and threat hunting, and don’t forget to mention any relevant certifications you have!

Show Off Your Skills:In your application, be sure to showcase your hands-on experience with tools like Microsoft Sentinel or Splunk. We want to see how you've used these in real-world scenarios, so give us some juicy examples!

Be Clear and Concise:When writing your application, keep it clear and to the point. Use bullet points for your skills and experiences to make it easy for us to see why you’re a great fit for the role.

Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and we can’t wait to see your application come through!

How to prepare for a job interview at Adecco

Know Your SIEM Tools Inside Out

Make sure you’re well-versed in the SIEM platforms mentioned in the job description, like Microsoft Sentinel and Splunk. Brush up on your KQL and SPL skills, and be ready to discuss how you've used these tools in past roles.

Master MITRE ATT&CK Framework

Familiarise yourself with the MITRE ATT&CK tactics, techniques, and procedures. Be prepared to share specific examples of how you've applied this knowledge in threat hunting or incident response scenarios.

Showcase Your Analytical Skills

During the interview, highlight your analytical mindset by discussing how you approach threat detection and investigation. Use real-life examples to illustrate your thought process and how you communicate findings to both technical and non-technical stakeholders.

Prepare for Scenario-Based Questions

Expect scenario-based questions that test your problem-solving abilities. Think about potential threats you might encounter and how you would respond. Practising these scenarios can help you articulate your thought process clearly during the interview.