Threat Hunting Specialist

Snowhill, Birmingham, United Kingdom

Applications have closed

BT Group

From Ultra Fast Full Fibre broadband to TV & Mobile, BT helps UK families, communities & companies reach their potential. Find more BT products here.

View all jobs at BT Group

Why this job matters

BT Group is one of the most critical of all UK Critical National Infrastructure. 
Our job is simple -  defend it from Cyber Attack. 
Your role at BT is pivotal in helping us achieve this. You will have access to an unparalleled level of data and security tooling to help us achieve our goal of being the world’s most trusted connector of people, devices and machine by 2030. 

This role follows hybrid working ( 3 days in office) & can be based in any of the following: Birmingham/Manchester/London/Bristol/Sheffield. Eligbility for SC Clearance is also advantageous

What you’ll be doing

  • Conduct proactive threat hunting activities to identify and mitigate potential security threats. Aligning with the MITRE ATT&CK Framework to put at the core of threat hunting activities. 
  • Analyse and interpret security data from various sources, including logs, network traffic, and endpoint data.
  • Develop and implement advanced threat detection techniques and tools.
  • Collaborate with the incident response team to investigate and respond to security incidents.
  • Create and maintain detailed documentation of threat hunting activities and findings.
  • Stay up-to-date with the latest threat intelligence and cybersecurity trends.
  • Provide recommendations for improving security posture and threat detection capabilities.
  • Lead an intelligence-led vulnerability management process.
  • Domain knowledge to fill the role of CTI SME within wide range of Security engagements.
  • Leading collaboration activities with internal teams across the organisation in order to provide further internal understanding of potential adversaries and attack vectors.
  • Delivery of verbal presentations and threat briefs, in-person and virtually, to internal and external stakeholders at all seniority levels
  • Relationship management within the wider Information Security community. Representation of BT in a wide range of fore, to ensure impactful collaboration across the Telco and National Security communities including direct engagement with NCSC and the NCA.
  • Ownership of Vendor relationships - ensuring effective integration and usage of vendor platforms, in order to drive best value and effect for BT.

 

Skills & Experience Required for the Role

Must Have

  • Proven experience in threat hunting, incident response, or a similar role.
  • Holds current relevant professional qualifications in Threat Hunting and/or Information Security (Relevant certifications (e.g., CEH, GCIH, GCFA) are a plus– or willing to work towards
  • Strong knowledge of cybersecurity principles, threat landscapes, and attack vectors.
  • Experience with Crowdstrike and Microsoft Defender hunting methodologies
  • Familiarity with the MITRE ATT&CK framework.
  • Knowledge of security tools and technologies such as SIEM, EDR, and IDS/IPS.
  • Excellent analytical and problem-solving skills.
  • Strong oral and written communication skills
  • Proactive Team Player
  • Demonstrable experience of operational delivery in a fast-paced security environment
  • Knowledge and understanding of current security threats, threat models, frameworks and common mitigations
  • People skills, with an ability to communicate effectively 

Nice to Have

  • Experience of intelligence-led vulnerability management processes.
  • Experience with scripting and automation (e.g., Python, PowerShell).
  • Experience within another Telecommunications/CNI environment
  • Good written reporting skills
  • Management/Leadership experience 
  • Network analysis skills

Security Skills 

  • Threat Hunting
  • Intrusion Detection and Analysis
  • Threat Detection Engineering
  • Data Analysis
  • Threat Intelligence, Assessment, and Threat Modelling
  • Technical Reporting
  • Reporting
  • Security Assessment 
  • Incident Management
  • Stakeholder Management 
  • Customer Relationship Management 
  • Escalation Management 

Benefits

At BT, we entertain, educate, and empower millions of people every single day. We’re a brand built on connecting people – whether that’s friends, family, businesses, or communities. Working here, you’ll receive an attractive salary and a range of competitive benefits, but – more than that – you’ll be joining an ambitious organisation with a culture of togetherness, collaboration, and inclusivity, that takes a genuine and proactive interest in your progress and development.

  • Competitive salary
  • 10% on target bonus
  • BT Pension scheme, minimum 5% Employee contribution, BT contribution 10%
  • 25 days annual leave (not including bank holidays), increasing with service
  • Huge range of flexible benefits including cycle to work, healthcare, season ticket loan
  • World-class training and development opportunities
  • Option to join BT Shares Saving schemes.
  • Discounted broadband, mobile and TV packages
  • Access to 100’s of retail discounts including the BT shop
     

About us

BT is part of BT Group, along with EE, Openreach, and Plusnet.

Millions of people rely on us every day to help them live their lives, power their businesses, and keep their public services running. We connect friends to family, clients to colleagues, people to possibilities. We keep the wheels of business spinning, and the emergency services responding. 

We value diversity and celebrate difference. ‘We embed diversity and inclusion into everything that we do. It’s fundamental to our purpose: we connect for good.’

We all stick to the same values: Personal, Simple, and Brilliant. From day one, you’ll get stuck in to tough challenges, pitch in with ideas, make things happen. But you won’t be alone: we’ll be there with help and support, learning and development.  

This is your chance to make a real difference to the world: to be part of the digital transformation of countless lives and businesses. Grab it.

 

A FEW POINTS TO NOTE:

Although these roles are listed as full-time, if you’re a job share partnership, work reduced hours, or any other way of working flexibly, please still get in touch.

We will also offer reasonable adjustments for the selection process if required, so please do not hesitate to inform us.

DON'T MEET EVERY SINGLE REQUIREMENT?

Studies have shown that women and people who are disabled, LGBTQ+, neurodiverse or from ethnic minority backgrounds are less likely to apply for jobs unless they meet every single qualification and criteria. We're committed to building a diverse, inclusive, and authentic workplace where everyone can be their best, so if you're excited about this role but your past experience doesn't align perfectly with every requirement on the Job Description, please apply anyway - you may just be the right candidate for this or other roles in our wider team.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  3  0
Category: Threat Intel Jobs

Tags: Automation CEH Clearance CrowdStrike EDR GCFA GCIH IDS Incident response Intrusion detection IPS MITRE ATT&CK PowerShell Python Scripting Security assessment SIEM Threat detection Threat intelligence Vulnerability management

Perks/benefits: Career development Competitive pay Flex hours Salary bonus Team events

Region: Europe
Country: United Kingdom

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.