Vulnerability & Threat Analyst (Cheltenham, UK)
Vulnerability & Threat Analyst (Cheltenham, UK)

Vulnerability & Threat Analyst (Cheltenham, UK)

Cheltenham Full-Time 45000 - 55000 £ / year (est.) No home office possible
V

At a Glance

  • Tasks: Analyse threat intelligence data to identify vulnerabilities and active exploits.
  • Company: VulnCheck, a leader in vulnerability intelligence with a supportive culture.
  • Benefits: Unlimited PTO, 401k match, comprehensive healthcare, and remote flexibility.
  • Other info: Opportunities for professional development and career advancement.
  • Why this job: Join a fast-growing team making a real impact in cybersecurity.
  • Qualifications: Experience with threat analysis, scripting, and understanding of IOCs.

The predicted salary is between 45000 - 55000 £ per year.

Location: Cheltenham, UK

Team: Research

Employment Type: Full-Time, Remote

About VulnCheck

VulnCheck is transforming vulnerability intelligence by helping security teams act faster and with more confidence. Our platform delivers early, high-quality exploit intelligence, deep asset correlation, and contextual insights to help organizations stay ahead of emerging threats.

About the Role

Are you a security researcher who enjoys analyzing large volumes of threat intelligence data to identify and validate exploited vulnerabilities, active exploits, threat actors, malicious infrastructure, and indicators of compromise (IOCs)? We are expanding our Threat Intelligence team and are looking for a detail-oriented analyst to join VulnCheck.

What You’ll Do

  • Analyze diverse threat intelligence sources to identify and confirm:
  • Exploited vulnerabilities (KEVs)
  • Exploits and proof-of-concepts (PoCs)
  • Threat actors, Botnets and Ransomware campaigns
  • Malicious hosts, domains and infrastructure
  • Indicators of compromise (IOCs)
  • Validate the accuracy and credibility of sources and findings
  • Assess evidence of real-world exploitation
  • Maintain structured, high-quality intelligence outputs
  • What You’ll Bring

    • Ability to evaluate exploit PoCs; familiarity with scripting languages
    • Experience with OSINT tools and resources
    • Understanding of IOCs and how to identify them
    • Ability to assess the credibility and validity of intelligence sources
    • Strong understanding of CVEs, including:
    • CVE assignment and validation
    • Familiarity with CPE and scoring methodologies
  • Experience working with structured data formats (e.g., JSON)
  • High attention to detail and analytical rigor
  • Familiarity with end-of-life (EOL) software data
  • Experience with developer/security tooling (e.g., VS Code and extensions)
  • Familiarity with package ecosystems (NPM, NuGet, PyPI)
  • Preferred Qualifications

    • Python scripting skills preferred
    • Experience with prompt engineering is a plus

    IMPORTANT NOTE: This position may involve access to technology subject to U.S. export control regulations. Employment is contingent upon the company's ability to authorize access under applicable export control, sanctions, and any other applicable legal or contractual requirements. The company does not guarantee and is under no obligation to seek such authorization if it would be necessary.

    What We Offer

    We believe people do their best work when they feel supported, trusted, and valued. VulnCheck offers benefits designed to meet a wide range of needs and lifestyles:

    • Unlimited PTO
    • 401k plan with company match
    • Comprehensive healthcare coverage
    • Generous paid parental leave
    • Remote friendly environment with flexibility
    • Expense reimbursement for Cell Phone & Internet
    • Ongoing professional development, coaching, and learning resources
    • Opportunities for career advancement within a fast-growing team

    Why Join Us

    Built on over two decades of cybersecurity experience, our team of experts understands the intricacies of vulnerabilities, their exploitation in the wild, and how to leverage this data to build more effective cybersecurity products that produce better outcomes for organizations. VulnCheck gives organizations a tactical advantage by providing best-in-class exploit & vulnerability intelligence information. We have a sense of duty to protect the critical infrastructure we rely on including medical devices, power grids and telecommunication networks. We were founded in 2021 in Lexington, Massachusetts. VulnCheck has a transparent, collaborative, and supportive culture - we are looking for people who have a growth mindset, are curious and innovative. Our team is smart, but humble, hardworking, and supportive.

    VulnCheck is proud to be an Equal Employer Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. VulnCheck is committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities.

    *Even if your experience doesn’t perfectly align with the job description, we encourage you to apply—we value potential just as much as a perfect resume.

    Vulnerability & Threat Analyst (Cheltenham, UK) employer: VulnCheck

    VulnCheck is an exceptional employer that prioritises a supportive and collaborative work culture, offering unlimited PTO, comprehensive healthcare, and a flexible remote environment. With a strong commitment to employee growth through ongoing professional development and career advancement opportunities, VulnCheck empowers its team members to thrive in the fast-evolving field of cybersecurity while making a meaningful impact on critical infrastructure.
    V

    Contact Detail:

    VulnCheck Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land Vulnerability & Threat Analyst (Cheltenham, UK)

    ✨Tip Number 1

    Network like a pro! Reach out to folks in the cybersecurity field, especially those working at VulnCheck. A friendly chat can open doors and give you insights that a job description just can't.

    ✨Tip Number 2

    Show off your skills! If you've got experience with threat intelligence or vulnerability analysis, make sure to highlight that in conversations. Share examples of how you've tackled similar challenges in the past.

    ✨Tip Number 3

    Stay updated on the latest trends in cybersecurity. Being able to discuss recent threats or vulnerabilities during interviews shows you're passionate and knowledgeable about the field.

    ✨Tip Number 4

    Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our team at VulnCheck.

    We think you need these skills to ace Vulnerability & Threat Analyst (Cheltenham, UK)

    Threat Intelligence Analysis
    Vulnerability Assessment
    Exploit Validation
    Scripting Languages
    OSINT Tools
    Indicators of Compromise (IOCs)
    CVE Understanding
    Structured Data Formats (e.g., JSON)
    Analytical Rigor
    Attention to Detail
    Developer/Security Tooling (e.g., VS Code)
    Package Ecosystems (NPM, NuGet, PyPI)
    Python Scripting
    Prompt Engineering

    Some tips for your application 🫡

    Tailor Your CV: Make sure your CV reflects the skills and experiences that match the role of a Vulnerability & Threat Analyst. Highlight any relevant experience with threat intelligence, scripting languages, and OSINT tools to catch our eye!

    Craft a Compelling Cover Letter: Use your cover letter to tell us why you're passionate about cybersecurity and how your background makes you a great fit for our team. Share specific examples of your analytical skills and attention to detail!

    Showcase Your Technical Skills: Don’t forget to mention your familiarity with CVEs, IOCs, and structured data formats like JSON. If you have Python scripting skills or experience with developer tooling, make sure to highlight those too!

    Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, we love seeing candidates who take that extra step!

    How to prepare for a job interview at VulnCheck

    ✨Know Your Threats

    Before the interview, dive deep into the latest trends in vulnerability and threat intelligence. Familiarise yourself with recent exploits, CVEs, and the tools used in the industry. This will not only show your passion but also your commitment to staying ahead of emerging threats.

    ✨Showcase Your Analytical Skills

    Prepare to discuss specific examples where you've analysed threat intelligence data. Be ready to explain your thought process and how you validated your findings. Use structured data formats like JSON in your examples to demonstrate your technical proficiency.

    ✨Ask Insightful Questions

    Interviews are a two-way street! Prepare thoughtful questions about VulnCheck's approach to threat intelligence and how they maintain the quality of their outputs. This shows your genuine interest in the role and helps you gauge if the company is the right fit for you.

    ✨Demonstrate Your Growth Mindset

    VulnCheck values curiosity and innovation. Share instances where you've learned from past experiences or adapted to new challenges. Highlight any ongoing professional development efforts, such as courses or certifications, to showcase your commitment to growth in the cybersecurity field.

    Vulnerability & Threat Analyst (Cheltenham, UK)
    VulnCheck
    Location: Cheltenham

    Land your dream job quicker with Premium

    You’re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    >