At a Glance
- Tasks: Lead threat detection and analysis to protect critical national infrastructure from cyber threats.
- Company: Join a mission-driven Cyber Operations team at the forefront of cybersecurity.
- Benefits: Competitive salary, professional development, and the chance to make a real impact.
- Why this job: Play a key role in safeguarding national security while developing your leadership skills.
- Qualifications: Experience in a Security Operations Centre and strong leadership abilities required.
- Other info: Dynamic environment with opportunities for continuous improvement and career growth.
The predicted salary is between 36000 - 60000 £ per year.
Location: Preston
Security Clearance: SC or eligibility to obtain (higher clearance advantageous)
We are seeking a Lead Threat Detection Analyst to join a high-performing Cyber Operations function responsible for protecting critical national and defence infrastructure from sophisticated cyber threats. This is a hands-on leadership role combining technical threat detection expertise with operational oversight. You will lead triage and detection activities, mentor analysts, and continuously improve people, process and technology across the security operations capability. You will play a key role in identifying, analysing and mitigating threats before they impact mission-critical systems and the individuals who rely on them.
What you’ll be doing:
- Lead delivery of core triage and protective monitoring across multiple networks and services
- Oversee and contribute to the analysis, investigation and escalation of security incidents
- Coordinate closely with Cyber Operations and Incident Response teams to contain and mitigate threats
- Develop and enhance detection use cases, tooling and operational processes
- Provide subject matter expertise on threat analysis and detection engineering
- Drive continuous improvement across people, processes and technology
- Support operational leadership and deputise for the Threat Detection Manager when required
- Advise on requirements, scope and improvement opportunities to strengthen operational resilience
Skills and experience:
Essential:
- Experience working within a Security Operations Centre (SOC) or similar cyber defence environment
- Demonstrable leadership or team management within an operational setting
- Strong knowledge of industry frameworks such as MITRE ATT&CK, D3FEND or ENGAGE
- Proficiency with SIEM platforms and security analytics tooling
- Strong analytical mindset with an innovative approach to problem-solving
Desirable:
- Industry certifications such as OSDA, GIAC or equivalent
- Experience in defence, government or highly regulated environments
- Security clearance or previous clearance
About the team: The Cyber Operations team protects critical systems and sensitive environments from advanced threat actors. Covering Threat Intelligence, Detection, Incident Response and Active Defence, the team operates at the forefront of cyber security, safeguarding the technology and services that support national security and those who serve. This is an opportunity to work on meaningful, high-impact challenges within a mission-driven environment where your expertise directly contributes to national resilience.
For a confidential discussion, please get in touch with your CV.
Threat Intelligence Analyst in Preston employer: LHH
Contact Detail:
LHH Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Threat Intelligence Analyst in Preston
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cyber security field. Attend industry events, join online forums, and don’t be shy about reaching out on LinkedIn. You never know who might have the inside scoop on job openings!
✨Tip Number 2
Show off your skills! Create a portfolio or a personal blog where you can share your insights on threat detection and analysis. This not only showcases your expertise but also demonstrates your passion for the field. Plus, it’s a great conversation starter during interviews!
✨Tip Number 3
Practice makes perfect! Prepare for interviews by doing mock sessions with friends or mentors. Focus on articulating your experience in SOC environments and your knowledge of frameworks like MITRE ATT&CK. The more comfortable you are, the better you'll perform when it counts!
✨Tip Number 4
Don’t forget to apply through our website! We’ve got some fantastic opportunities waiting for you. Tailor your application to highlight your leadership skills and technical expertise, and make sure to follow up after applying. It shows initiative and keeps you on their radar!
We think you need these skills to ace Threat Intelligence Analyst in Preston
Some tips for your application 🫡
Tailor Your CV: Make sure your CV reflects the skills and experiences mentioned in the job description. Highlight your experience in Security Operations Centres and any leadership roles you've held. We want to see how you fit into our Cyber Operations team!
Showcase Your Technical Skills: Don’t forget to mention your proficiency with SIEM platforms and any relevant industry frameworks like MITRE ATT&CK. We’re looking for someone who can hit the ground running, so let us know what tools you’re comfortable with!
Be Clear and Concise: When writing your application, keep it straightforward. Use bullet points where possible to make it easy for us to read. We appreciate clarity, especially when it comes to your achievements and contributions in previous roles.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Plus, we love seeing applications come through our own channels!
How to prepare for a job interview at LHH
✨Know Your Threat Landscape
Before the interview, brush up on the latest trends in cyber threats and how they relate to the role. Familiarise yourself with frameworks like MITRE ATT&CK and D3FEND, as these will likely come up in conversation. Showing that you understand the current threat landscape will impress your interviewers.
✨Demonstrate Leadership Skills
Since this role involves leading a team, be prepared to discuss your leadership style and experiences. Think of specific examples where you've successfully mentored others or improved processes. This will help illustrate your capability to lead within a high-performing Cyber Operations function.
✨Showcase Your Technical Expertise
Be ready to dive into technical discussions about SIEM platforms and security analytics tooling. Prepare to explain how you've used these tools in past roles to detect and mitigate threats. This will demonstrate your hands-on experience and technical proficiency, which are crucial for the position.
✨Ask Insightful Questions
Prepare thoughtful questions about the team's current challenges and future goals. This shows your genuine interest in the role and helps you gauge if the company culture aligns with your values. Asking about their approach to continuous improvement can also highlight your proactive mindset.