Security Delivery Practitioner

Security Delivery Practitioner

Posted Today by Ntrinsic Consulting

Negotiable
Undetermined
Remote
United Kingdom

Summary: The Security Delivery Practitioner role involves enhancing clients' detection capabilities by translating threat insights into actionable security outcomes. The position requires close collaboration with analysts and intelligence teams to align detection strategies with client needs in a fast-evolving security environment. Candidates must hold SC clearance and be prepared to engage in hypothesis-driven threat hunts and maintain detection content throughout its lifecycle.

Key Responsibilities:

  • Conduct hypothesis-driven threat hunts based on client telemetry, threat intelligence, and observed anomalies.
  • Actively engage with the wider SOC, threat intelligence, and tooling teams to refine detection strategies.
  • Design and implement detection logic aligned to specific threat scenarios, using industry frameworks such as MITRE ATT&CK.
  • Document and present findings in a clear and actionable format for both internal teams and clients.
  • Share insights, findings, and improvements with team members through documentation, workshops, or informal sessions.
  • Maintain detection content throughout its lifecycle — from development and testing to deployment and tuning.
  • Use available data sources and tools to identify suspicious or malicious activity that may bypass existing detections.
  • Assist in updating runbooks, SOPs, and detection playbooks to reflect changes in tools, threats, or client requirements.
  • Work with client Lead Analysts to ensure content relevance and effectiveness in detecting threats across various environments.
  • Support cross-team initiatives and help drive a culture of continuous improvement and innovation.
  • Participate in the review and validation of detection content prior to deployment.
  • Support efforts to maintain consistency, accuracy, and quality in all delivered content.

Key Skills:

  • SC Clearance.
  • Experience in threat hunting and detection strategies.
  • Familiarity with industry frameworks such as MITRE ATT&CK.
  • Strong documentation and presentation skills.
  • Ability to collaborate effectively with cross-functional teams.
  • Knowledge of security tools and data sources.
  • Experience in maintaining detection content and runbooks.
  • Strong analytical and problem-solving skills.

Salary (Rate): undetermined

City: undetermined

Country: United Kingdom

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Role: Security Delivery Practitioner (SC Cleared)

Location: Remote

Day Rate: Up to £625.14 | PAYE

Start/End Dates: 12/1/2025 - 3/31/2026

Must be SC Cleared

As part of the SOC Content Team, you’ll help enhance our clients’ detection capabilities by translating threat insights into effective security outcomes. You’ll work closely with analysts and intelligence teams to ensure detection approaches align with client needs, while contributing to a collaborative, fast-evolving security environment.

Responsibilities:

  • Conduct hypothesis-driven threat hunts based on client telemetry, threat intelligence, and observed anomalies.
  • Actively engage with the wider SOC, threat intelligence, and tooling teams to refine detection strategies.
  • Design and implement detection logic aligned to specific threat scenarios, using industry frameworks such as MITRE ATT&CK.
  • Document and present findings in a clear and actionable format for both internal teams and clients.
  • Share insights, findings, and improvements with team members through documentation, workshops, or informal sessions.
  • Maintain detection content throughout its lifecycle — from development and testing to deployment and tuning.
  • Use available data sources and tools to identify suspicious or malicious activity that may bypass existing detections.
  • Assist in updating runbooks, SOPs, and detection playbooks to reflect changes in tools, threats, or client requirements.
  • Work with client Lead Analysts to ensure content relevance and effectiveness in detecting threats across various environments.
  • Support cross-team initiatives and help drive a culture of continuous improvement and innovation.
  • Participate in the review and validation of detection content prior to deployment.
  • Support efforts to maintain consistency, accuracy, and quality in all delivered content.
  • Support cross-team initiatives and help drive a culture of continuous improvement and innovation.