This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re seeking a Preventative & Threat Engineer to proactively prevent, detect, and respond to security incidents across cloud and on-prem environments. You’ll work hands-on with SIEM and SOAR platforms, monitor threat intelligence feeds, and use frameworks like MITRE ATT&CK to understand attacker tactics, techniques, and procedures. From uncovering indicators of compromise to hypothesising new threats, you’ll transform intelligence into actionable defenses that protect critical systems and data. This is a highly technical, hands-on role where analysis, automation, and rapid response converge. You’ll examine large data sets for anomalies, develop scripts and tools in Python, deploy countermeasures under pressure, and optimise SOC operations across AWS, Azure, and GCP environments. Supporting incident response and resilience planning, you’ll ensure the organisation stays ahead of evolving cyber threats.
Job Responsibility:
Assists to proactively prevent, detect and respond to Cyber Security incidents to reduce risk
Assists with hypothesing new threats and indicators of compromise
Contributes to forming conclusions that may challenge conventional wisdom
Works with the Associate to Identify new and dynamic ways to protect the organisation against the evolving threat landscape
Supports the monitoring of threat intelligence feeds to identify a range of threats, including indicators of compromise and advanced persistent threats (APTs)
Supports the identification of the tactics, techniques and procedures (TTPs) of potential threats through the MITRE ATT&CK or similar frameworks
Understand and support the use of the Threat Hunting Maturity Model and Threat Hunt Process during investigations
Assists with conducting threat assessments to identify what threats are most likely to target this business, and how they would execute their attacks
Support the capture of attacker techniques, indicators of compromise and objectives, and use the captured information to improve defences through recommendations for the creation of detection logic
Provides support and cover to the Incident Response specialism where required
Participate in an on-call rota to provide after hours support for cyber security related incidents
Requirements:
Experience with SIEM and SOAR tools
An understanding of core security fundamentals and concepts
Can proactively identify and address security issues
Familiar with cloud security concepts and best practices, as well as the security features and capabilities of major cloud platforms such as AWS, Azure, and GCP
Familiar with security automation tools and techniques
Ability to analyse large data sets and identify anomalies
Ability to quickly create and deploy countermeasures under pressure
Ability to create complex scripts, develop tools, or automate processes in Python or other relevant command languages
What we offer:
Varied, stimulating and engaging work
A working culture that embraces inclusion and celebrates diversity
Hybrid and flexible working arrangements
An environment that places sustainability, equality and digital transformation at the heart of what we do
A workplace that prioritises employee wellbeing and provides a comprehensive suite of competitive benefits
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.