Job DescriptionRole: Threat Hunting & Detection AnalystLocation: Cheltenham (hybrid- 1x a month office attendance)Position: Specialist / Senior AnalystPlease Note: Any offer of employment is subject to satisfactory BPSS and SC security clearance which requires 5 years continuous UK address history (typically including no periods of 30 consecutive days or more spent outside of the UK) and declaration of being a British passport holder with no dual nationalism at the point of application. Note: The above information relates to a specific client requirement.
About the team:As a member of the SOC Content Team, you will be responsible for contributing to the creation, deployment, and tuning of threat detection content and delivery of proactive threat hunting. You will work in close partnership with client Lead Analysts, threat intelligence teams, and other SOC functions to help ensure that detection strategies are tailored to each client’s threat profile and security objectives.
This role offers a balance of technical hands-on work, collaboration, and knowledge sharing, with a strong emphasis on continual learning and process improvement.
Career Level & ExperienceWe recognise that strong cyber security professionals may come from a variety of backgrounds and may not have experience across every area listed in this role profile.
We are open to considering candidates atdifferent stagesof their careers, from developing practitioners through to experienced specialists. Candidates with strengths in
Threat Hunting,
Detection Engineering,
SOC Operations, or
Security Monitoring & Incident Responseare encouraged to apply.
You do not need to meet every requirement listed below. If you have strong experience in one or more of these areas and are keen to develop yourexpertiseacross the wider detection and threat hunting lifecycle, wewouldwelcome your application. The level and responsibilities of the role will be aligned to your skills, experience, and potential.
QualificationKey Responsibilities:Threat Detection Use Case Development- Design and implement detection logic aligned to specific threat scenarios using frameworks such as MITRE ATT&CK.
- Develop, test, deploy, and tune detection content throughout its lifecycle.
- Work closely with Client Lead Analysts to ensure detection contentremainsrelevant and effective for client environments.
Proactive Threat Hunting- Conduct hypothesis-driven threat hunts using client telemetry, threat intelligence, and observed anomalies.
- Analyse available data sources toidentifysuspicious or malicious activity that may evade existing detections.
- Document and present findings in a clear, actionable format for both internal teams and clients.
Content QA and Maintenance- Review andvalidatedetection content prior to deployment.
- Maintain and update runbooks, SOPs, and detection playbooks to reflect evolving threats, tooling, and client requirements.
- Support quality assurance activities to ensure consistency, accuracy, and effectiveness of delivered content.
Collaboration & Knowledge Sharing- Collaborate with SOC, Threat Intelligence, and Engineering teams to enhance detection strategies.
- Share findings, insights, and best practices through documentation, workshops, and knowledge-sharing sessions.
- Contribute to continuous improvement initiatives across the wider security operations function.
Skills & Experience:- Experience with SIEM platforms such as Microsoft Sentinel, Splunk etc
- Previousexperience working in a SOC, Threat Hunting, Detection Engineering, or Cyber Security Operations environment.
- Experience developing, testing, and tuning threat detection use cases.
- Good understanding of the MITRE ATT&CK framework and common threat actor tactics, techniques, and procedures (TTPs).
- Experience conducting proactive threat hunting and analysing security telemetry.
- Strong analytical, investigation, and communication skills.
- Ability to collaborate effectively with SOC analysts, threat intelligence teams, and other security stakeholders.
- Experience in EDR tooling such as CrowdStrike & Microsoft Defender-desirable.
Why Accenture?You'll work on complex and innovative cybersecurity projects, leveraging the latest technologies alongside a global network of experts. We provide access to industry-leading training, professional development, and opportunities to build a rewarding long-term career.
What’s in it for youAt Accenture in addition to a competitive basic salary, you will also have an extensive benefits package which includes 25 days’ vacation per year, private medical insurance and 3 extra days leave per year for charitable work of your choice!
Flexibility and mobility are required to deliver this role as there may be requirements to spend time onsite with our clients and partners to enable delivery of the first-class services we are known for.
We believe in inclusion and diversity and supporting the whole person. Our core values comprise of Stewardship, Best People, Client Value Creation, One Global Network, Respect for the Individual and Integrity. Year after year, Accenture is recognized worldwide not just for business performance but for inclusion and diversity too.
“Across the globe, one thing is universally true of the people of Accenture: We care deeply about what we do and the impact we have with our clients and with the communities in which we work and live. It is personal to all of us.” -Julie Sweet, Accenture CEO
Accenture reserves the right to close the role should a suitable applicant be found. RROOTS #LI-EU.
LocationsCheltenham
Additional InformationEqual Employment Opportunity Statement All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.
Accenture is committed to providing veteran employment opportunities to our service men and women.
Please read Accenture’s Recruiting and Hiring Statement for more information on how we process your data during the Recruiting and Hiring process.
About AccentureWe work with one shared purpose: to deliver on the promise of technology and human ingenuity. Every day, more than 775,000 of us help our stakeholders continuously reinvent. Together, we drive positive change and deliver value to our clients, partners, shareholders, communities, and each other.
We believe that delivering value requires innovation, and innovation thrives in an inclusive and diverse environment. We actively foster a workplace free from bias, where everyone feels a sense of belonging and is respected and empowered to do their best work.
At Accenture, we see well-being holistically, supporting our people’s physical, mental, and financial health. We also provide opportunities to keep skills relevant through certifications, learning, and diverse work experiences. We’re proud to be consistently recognized as one of the World’s Best Workplaces™.
Join Accenture to work at the heart of change. Visit us at www.accenture.com .