Skip to main content
AfterDuty

Threat Intelligence Analyst - SC Cleared

Sanderson Government & Defence · London, Greater London

Salary
£545 – £590 a dayEstimated
Type
Contract
Posted
6 days ago

Overview

Your investigative analysis and threat assessment skills from policing transfer to cyber threat intelligence.

About this role

Threat Intelligence Analyst x3 Location: UK (Hybrid/Remote as required)

Security Clearance: Active SC Clearance Required

Contract Length: 6-18 Months

Rate: £545-£590 per day (Inside IR35)

Positions Available: 3

This is an exciting opportunity to work within a complex and evolving threat landscape, supporting the protection of critical public services and highly sensitive environments. As a Threat Intelligence Analyst, you will be responsible for identifying, analysing, and communicating cyber threats that may impact clients, systems, and services.

Working closely with Security Operations, Incident Response, Engineering, and wider Cyber Security teams, you will help build situational awareness, deliver actionable intelligence, and strengthen detection and response capabilities across multiple government-focused engagements.

Key ResponsibilitiesThreat Monitoring & Intelligence Analysis

  • Monitor and assess a wide range of intelligence sources, including OSINT, commercial intelligence platforms, security telemetry, online databases, and intelligence feeds.
  • Identify, analyse, and prioritise actionable cyber threats relevant to client environments.
  • Maintain awareness of emerging threat actors, campaigns, vulnerabilities, and attack techniques.
  • Develop intelligence-led insights to support proactive cyber defence activities.

Research & Reporting

  • Conduct in-depth research into cyber threats, threat actors, vulnerabilities, and industry trends.
  • Produce high-quality intelligence reports, threat assessments, executive summaries, and technical briefings.
  • Deliver actionable intelligence products to both technical and non-technical stakeholders.
  • Communicate complex cyber threats in a clear and accessible manner.

Threat Hunting & Indicators of Compromise

  • Analyse Indicators of Compromise (IoCs), including malicious IP addresses, domains, file hashes, and malware indicators.
  • Support the identification of threat actor behaviours, tactics, techniques, and procedures (TTPs).
  • Develop recommendations to strengthen defensive controls and improve detection capabilities.
  • Contribute to proactive threat hunting and intelligence-led investigations.

Incident Response Support

  • Support cyber incident investigations throughout the intelligence lifecycle.
  • Work closely with Incident Response and Security Operations teams to enrich investigations with threat intelligence.
  • Assist with incident containment, remediation activities, and post-incident analysis.

Threat Modelling & Intelligence Frameworks

  • Apply recognised threat intelligence methodologies including:
  • MITRE ATT&CK
  • Cyber Kill Chain
  • Pyramid of Pain
  • Diamond Model
  • Identify intelligence gaps and opportunities to improve threat detection and response capabilities.

Strategic Threat Intelligence

  • Contribute to tactical, operational, and strategic intelligence activities.
  • Support the development and maturity of threat intelligence capabilities.
  • Provide proactive threat warnings and situational awareness to stakeholders.
  • Support the protection of critical systems, services, and infrastructure through intelligence-led decision making.

Essential Skills & Experience

  • Minimum one year's experience in Cyber Security or a related discipline.
  • Strong understanding of:
  • Cyber Threat Intelligence principles
  • Threat Actor Analysis
  • Intelligence Collection and Dissemination Processes
  • Cyber Security Operations
  • Experience using threat intelligence and analysis platforms such as:
  • Recorded Future
  • OpenCTI
  • Cribl
  • Splunk
  • Other intelligence and SIEM technologies
  • Knowledge of threat intelligence frameworks including:
  • MITRE ATT&CK
  • Cyber Kill Chain
  • Pyramid of Pain
  • Diamond Model
  • Strong analytical, investigative, and problem-solving skills.
  • Ability to identify, assess, and prioritise actionable intelligence.
  • Excellent communication and stakeholder engagement skills.
  • Active SC Clearance.

Preferred Certifications The following certifications would be advantageous but are not essential:

  • GIAC Cyber Threat Intelligence (GCTI)
  • CISSP
  • CEH
  • GIAC Certifications
  • CompTIA Security+
  • CREST Certifications
  • SANS Cyber Security Certifications

Reasonable Adjustments

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason,**please let us know when you apply or talk to the recruiters directly so we can support you.*

About intelligence & analysis roles for ex-police

Intelligence analyst and researcher roles in corporates, consultancies and government. The National Intelligence Model, source evaluation and analytical products give ex-officers a running start.

See all intelligence & analysis jobs in London

Why this fits a police background

  • Police experience explicitly valued
  • Intelligence & OSINT
  • Incident command & response
  • Investigative casework
  • Risk & threat assessment

What intelligence & analysis roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Intelligence analyst£30,000–£45,000
Senior analyst£45,000–£60,000
Due-diligence / corporate intelligence specialist£50,000–£75,000
Threat-intelligence specialist (cyber)£55,000–£80,000
Full intelligence & analysis salary guide →

More intelligence & analysis jobs for ex-police

  • Intelligence Analyst

    CITY OF LONDON POLICE · London

    Contract

    Your analytical tradecraft and experience with the National Intelligence Model are directly applicable to this role.

    Posted 3 days ago

  • Full-time

    £57,402 – £60,573Estimated

    Your analytical and intelligence skills from the National Intelligence Model translate directly into turning data into actionable insight.

    Posted 6 days ago

  • This job uses your threat assessment and intelligence analysis skills from policing, including OSINT and risk evaluation.

    Posted 6 days ago

  • Adult Social Care Intelligence Analyst

    London Borough of Newham · London

    Full-time

    Your analytical skills from intelligence-led policing and data interpretation translate directly to this role.

    Posted 6 days ago