Threat Intelligence Analyst
Cloud People · Birmingham, England, United Kingdom
قدّم وتابع مع أبلاي إيدجThreat Analyst💰 £35,000 plus large company benefits📍 Hybrid - Birmingham, three days a week on siteCompany & roleThis role sits with a large, well established IT services provider that runs a busy managed security practice, delivering SOC and managed detection and response across public and private sector customers. They have invested heavily in their security operations centre and are building out the threat and vulnerability side of the service, which is where this role comes in.This is a strong next step for a SOC analyst who wants to move into threat and vulnerability work properly. The focus is exposure, working with vulnerability data, working out what is genuinely high risk based on what is being exploited in the wild, and helping customers understand what to fix first.You will sit alongside experienced analysts, get hands on with the tooling, and build real depth over time. You are not expected to arrive as a seasoned specialist. You are expected to have a solid SOC grounding and the appetite to grow into it.Day to day you will work with vulnerability data from Tenable and telemetry from Microsoft Defender, using threat context to separate the noise from the risks that actually matter.Eligibility for UK Security Clearance is required.Why This Role Stands OutA genuine route out of pure SOC monitoring and into threat and vulnerability work, with the support to actually make the moveReal depth in vulnerability and exposure management, learning to prioritise what matters using live threat context rather than just chasing CVSS scoresHands on exposure to a strong tooling stack including Tenable and the full Microsoft Defender suiteYou will learn from experienced analysts rather than being thrown in alone, with proper support built into the roleThe backing of a large, stable business that has invested heavily in its security operations centreClear scope to develop, the person who held this remit before progressed into engineering, so there is a visible pathKey ResponsibilitiesWork with vulnerability data from Tenable to identify and prioritise high risk exposure across customer environmentsUse threat context, active campaigns and exploitation in the wild, to judge which vulnerabilities genuinely matter and in what orderWork with CVEs and CVSS scoring, tracking new disclosures and exploitation trends and translating them into clear prioritiesUse Microsoft Defender telemetry across endpoint, identity, cloud and Office to spot emerging patterns and support investigationsMap threats, TTPs and campaigns to frameworks such as MITRE ATT&CKWork closely with the wider SOC to feed findings into triage, detections and remediation, and build towards producing threat and vulnerability briefings for customersIdeal ExperienceExperience working in a SOC, with a good understanding of the current threat landscapeExposure to vulnerability and threat tooling, ideally Tenable and Microsoft Defender or similarSolid working knowledge of CVEs, CVSS, MITRE ATT&CK and the common types of threats and data breachesGenuinely keen to move into threat and vulnerability work and develop into itA clear communicator who can explain technical detail in a way that makes sense to othersEligibility for UK Security Clearance is essentialIf you are a SOC analyst ready to move into threat and vulnerability work, and you want to build real depth in exposure and prioritisation somewhere that has invested properly in its security operations, this is well worth a look.