Cyber Threat Intelligence Analyst
| Company: | Government Recruitment Service |
|---|---|
| Salary: | £41,750 to £44,250 a year |
| Hours: | Full-time |
| Location: | Salford |
| Job type: | Permanent |
| Posting date: | 25 Sept 2026 |
| Closing date: | 1 Oct 2026 |
Summary
The Home Office works to build a safe, fair and prosperous UK. We achieve this through our work on counter-terrorism, policing, crime, drugs policy, immigration and passports.
Home Office Digital designs, builds and develops services for the rest of the department and for government. Every year our systems support up to 3 million visa applications, checks on 100 million border crossings, up to 8 million passport applications and deliver 140 million police checks on people, vehicles and property.
The Home Office Cyber Security Operations Centre (CSOC) operates 24/7/365 to safeguard the department from cyber threats. The CSOC’s Threat Intelligence team is a core function and is responsible for collecting, analysing, exploiting, and disseminating intelligence to stakeholders to inform decision making and mitigate risks.
As a Cyber Threat Intelligence Analyst, you’ll use your skills and expertise to assist in meeting emerging threats and implement complex solutions. Additionally, you’ll help in the development of the Home Office cyber risk response, focussing on process improvement. You will also support the response to security incidents, communicating with other organisational business areas to ensure an effective response and mitigate against future incidents.
You will be joining an expert team of cyber professionals, committed to reducing the exposure to cyber-attack of new and existing digital systems. You’ll be aided in your role by a diverse and supportive organisational culture, and a commitment to further your continuous development.
The Cyber Threat Intelligence Analyst supports the development of intelligence requirements by capturing stakeholder needs to guide individual and team collection efforts to ensure the timely delivery of threat intelligence that supports CSOC detection and Home Office protective measures. This also includes disseminating intelligence across HMG and operational partners where appropriate.
Key responsibilities
- Assisting in carrying out threat intelligence activities in line with team procedures and the organisation’s response policies and processes.
- Helping provide security advice and guidance on control implementation to inform mitigation strategies, escalating where appropriate.
- Helping to conduct intelligence and incident response exercises (e.g. red teaming, threat hunting, table tops and analytical exercises) by supporting design and implementation.
- Communicating investigation results, supporting improvement and development of responses to new threats. Assisting in post-incident review activities to improve monitoring, detection, and response.
- Supporting in identifying and classifying security threats to networks, systems and applications based on threat actor capabilities and motivations. Assisting stakeholders in the understanding of threats through a structured approach and the creation of relevant products.
- Continuously monitoring the cyber threat landscape to identify trends, emerging threats, and vulnerabilities, using appropriate tooling and processes.
- Supporting the triaging and prioritising of vulnerabilities using threat intelligence, supporting implementation of mitigating measures, assisting to provide standardised products on ways to improve control mechanisms and mitigate risk - including producing CVE advisories / enrichment products.
- Continuously seeking to identify service and process improvements increasing your knowledge of industry best practices, good judgment and problem-solving skills to execute security operations and investigations.
An employee may be required to carry out other duties within the scope of the grade and within the limits of their skill, competence and training.
Working Pattern
Where business needs allow, some roles may be suitable for a combination of office and home-based working. This is a non-contractual arrangement where all employees will be expected to spend a minimum of 60% of their working time in an office.
Due to the business requirements of this role, it is only available on a full-time basis. However, compressed hours are available.
Travel
Occasional travel may be required to other work locations within the UK according to business needs and may include overnight stays. All related costs will be reimbursed in line with Home Office policy.
Proud member of the Disability Confident employer scheme
About Disability Confident
Related jobs
Senior Response Manager - Home Office Cyber Security Threat Intelligence
£49,850 to £49,850 per year
Government Recruitment Service
Salford
PermanentFull timeSecurity Consultant (Supply Chain)
£48,987 to £59,000 per year
Lloyds Banking Group
Manchester, Greater Manchester
HybridPermanentFull timeHead of Cyber Defence Centre
£126,253 to £148,850 per year
Lloyds Banking Group
Manchester, Greater Manchester
HybridPermanentFull time