About this role
Salary: £33,000 - 71,000 per year
Requirements: Proven ability to plan and execute complex, multi-phase operations.Scenario-driven adversary simulation.Threat intelligence analysis and assessment.Exploitation of a wide range of technologies, including infrastructure, web application and cloud platforms: Microsoft Entra, Active Directory, M365, macOS, Kubernetes, CI/CD, AWS, Azure.Post-exploitation, persistence and lateral movement, including tactical analysis of attack paths leading to high-value targets.Conducting engagement activities in line with operational security best practice and within a range of threat actor capabilities and tradecraft.Deep understanding of security technologies found in end-user and server operating systems and supporting infrastructure, including relevant architectural and operational patterns of at-scale deployment and administration of complex legacy and modern enterprise environments.Experience using, developing and deploying tools in support of red teaming activities, including attack infrastructure, C2 frameworks and infrastructure-as-code technologies.Strong communication skills with the ability to clearly explain complex technical issues related to vulnerabilities and risk to diverse audiences, including senior stakeholders, in support of vulnerability management, threat mitigation, and risk-based decision-making.Participation in GCASE / GBEST / CBEST / TIBER engagements. Responsibilities: We design and execute threat intelligence-based full-spectrum cyber-attack simulations, including long-term campaign planning, persistence, and post-exploitation operations against the organisation.We adopt a red team approach, discovering high-impact weaknesses across the organisations most important technology estates and business areas, and validating whether the overarching cyber security apparatus is working effectively.We communicate technical findings in clear risk and impact-focused terms to senior stakeholders, enabling effective understanding and support for strategic decision-making.We develop and implement tools and methodologies to augment and automate team offensive and analytical capability.We mentor junior Red Team members to improve their skills and capabilities, along with wider knowledge transfer to other security and non-security teams to help build a culture of cyber security in the department. Technologies: AWSActive DirectoryAzureCI/CDCloudSupportKubernetesmacOSSecurityWeb More:
We are a large Government Department seeking a Cyber Security Analyst – Threat Intelligence SME for a 12-month hybrid contract in London at £740 per day, inside IR35. The role supports strategic security decision-making through safe, simulated cyber-attack exercises against our technology estates. We encourage minorities, women, LGBTQ+ candidates, and individuals with disabilities to apply, and interviews will take place this and next week.
last updated 36 week of 2026