Threat Detection Engineer

Additional Resources
Wc1A2Sl, WC1A 2SL, United Kingdom
3 weeks ago
£60,000 – £80,000 pa

Salary

£60,000 – £80,000 pa

Job Type
Permanent
Work Location
Hybrid
Seniority
Mid
Education
Degree
Posted
6 May 2026 (3 weeks ago)

Benefits

Hybrid / Remote Working Options Flexible Benefits Package Opportunity to Innovate and Make a Real Impact in Threat Detection Work in a Small, Fast-Paced, Highly Collaborative Team Contribute to Advancing Precision Healthcare Using Genomic Data and AI

Join a well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare.

We’re looking for aThreat Detection Engineer who thrives on innovation and technical ownership. This role isnot a traditional SOC position, you’ll focus onbuilding high-impact detection capabilities, shaping how security protects sensitive genomic and AI-driven data at scale.

This role offershybrid / remoteworking options, a salary range of £60,000 - £80,000 and benefits.

Why This Role is Exciting

  • High autonomy: Lead projects from idea to deployment
  • Innovation-driven: Develop cutting-edge detections beyond standard SIEM rules
  • Collaborative: Work closely with internal teams and an outsourced SOC partner
  • Mission-focused: Protect critical healthcare data that supports precision medicine

Key Responsibilities

  • Design and developthreat-led detections using threat intelligence and threat-hunting outputs
  • Createnovel analytic techniques for incident detection
  • Collaborate with an MSP SOC to maintain and tune the detection catalogue
  • Build automated reporting dashboards using Microsoft Sentinel workbooks
  • Support security initiatives including ISO 27001 activities and KQL-based tasks
  • Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems
  • Contribute to documentation of processes, tools, and detection logic

What You’ll Bring

Must-Have Skills & Experience:

  • Previously worked as a Threat Detection Engineer or in a similar role.
  • Strong proficiency inKQL and hands-on experience withMicrosoft Sentinel
  • Familiarity withMicrosoft Defender tools (Endpoint & O365)
  • Exposure toAzure cloud logging andKubernetes environments
  • Knowledge ofattacker TTPs andMITRE ATT&CK frameworks
  • Proactive, collaborative, and innovative mindset

Desirable / Nice-to-Have:

  • Experience withPython,Terraform, or CI/CD pipelines
  • Familiarity withMicrosoft Purview, Entra ID, DLP, or Insider Risk tools
  • Understanding ofISO 27001, Agile ways of working
  • Knowledge ofstatistics, data science, or AI/ML applied to cybersecurity
  • Relevant certifications (MS-500, AZ-500, SC-series, Security+, GSOC, CCSK)

Perks & Benefits

  • Hybrid / remote working options
  • Flexible benefits package
  • Opportunity to innovate and make areal impact in threat detection
  • Work in asmall, fast-paced, highly collaborative team
  • Contribute toadvancing precision healthcare using genomic data and AI

Ready to build next-generation threat detection and protect life-changing data Apply today!

Important Information: We endeavour to process your personal data in a fair and transparent manner. In applying for this role, Additional Resources will be acting in your best interest and may contact you in relation to the role, either by email, phone, or text message. For more information see our Privacy Policy on our website. It is important you are aware of your individual rights and the provisions the company has put in place to protect your data. If you would like further information on the policy or GDPR please contact us.

Additional Resources Ltd is an Employment Business and an Employment Agency as defined within The Conduct of Employment Agencies & Employment Businesses Regulations 2003.

Keywords:Cyber Threat Engineer, Detection & Response Engineer, SIEM Engineer, Security Detection Engineer,T hreat Hunting Engineer, Security Automation Engineer, SOC Engineer, Incident Response Engineer, Cloud Security Engineer, Network Security Engineer, Cybersecurity Analyst (Threat Focus), Threat Intelligence Analyst, Security Monitoring Engineer, Endpoint Security Engineer, Cyber Defense Engineer

Related Jobs

View all jobs

Threat Detection Engineer

Additional Resources London, United Kingdom
£60,000 – £80,000 pa Hybrid

Cyber Security Engineer

Erin Associates Altrincham, WA14 2DW, United Kingdom
£45,000 – £55,000 pa On-site

Cyber Security Engineer

Eligo Recruitment Se12Up, SE1 2UP, United Kingdom
£75,000 – £90,000 pa Hybrid

AI-Augmented Cyber Security Engineer

Eligo Recruitment Se12Up, SE1 2UP, United Kingdom
£75,000 – £90,000 pa Hybrid

Security Engineer

Erin Associates Altrincham, WA14 2DW, United Kingdom
£45,000 – £55,000 pa On-site

SOC Engineering Lead

FlexIT Talent Solutions Ltd United Kingdom
£70,000 – £75,000 pa Remote Clearance Required

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cloud Computing Jobs in the UK (2026 Guide)

Where to advertise cloud computing jobs UK in 2026: the specialist boards and channels that reach AWS, Azure, GCP and cloud-native engineering talent. The candidate pool is large relative to other deep tech disciplines but highly segmented — cloud architects, DevOps engineers, platform engineers, FinOps specialists and cloud security professionals each occupy distinct communities with different job search behaviours, certification profiles and salary expectations. General job boards reach a broad audience but struggle to differentiate between these disciplines, producing high application volumes but low candidate quality for specialist cloud roles. This guide, published by CloudComputingJobs.co.uk, covers where to advertise cloud computing roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cloud Computing Jobs UK 2026: What to Expect Over the Next 3 Years

Cloud Computing Jobs UK 2026: salaries, hiring trends and the AWS, Azure and GCP skills shaping UK cloud careers over the next three years. Cloud computing is the infrastructure layer on which the modern digital economy runs — and the jobs market that has grown around it is one of the largest, most sustained, and most structurally resilient in the entire technology sector. But the cloud computing jobs market of 2026 looks quite different from the one that existed three years ago, and the next three years will bring further change at a pace that rewards those who understand the direction of travel. The migration phase that defined cloud hiring for much of the previous decade is largely complete for enterprise organisations. The question for most UK businesses is no longer whether to move to the cloud but how to operate, optimise, and secure what they have already built there — and how to integrate the wave of AI capability that is now being delivered primarily through cloud infrastructure. That shift has profound implications for which cloud skills are in demand, which roles are growing, and which are beginning to plateau. At the same time, new architectural patterns — multi-cloud, cloud-native, serverless, and the growing integration of edge computing with centralised cloud infrastructure — are creating entirely new categories of specialist expertise that employers are actively competing to hire. The cloud computing jobs market of 2026 is not contracting. It is evolving, and evolving in ways that create significant opportunity for job seekers who are building the right skills. This article breaks down what the UK cloud computing jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.