Rodeo
Get started

IBM

Cyber Security Consultant - Threat Management (UK Public Sector)

Manchester
Posted about 22 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Introduction

At IBM Consulting UK FutureNow, you’ll build a career at the forefront of hybrid cloud and AI, working with leading clients across the public and private sectors.

You’ll collaborate with top industry professionals, gain hands on experience with cutting edge technologies, and deliver solutions that create real business impact. From day one, you’ll work on meaningful, high profile programmes that stretch your skills and accelerate your growth.

We invest heavily in you—supporting continuous learning, in demand skills development, and long term career progression. You’ll thrive in a flexible, inclusive environment that values curiosity, encourages reinvention, and recognises what makes you unique.

We Offer

  • Tools and policies to support your work-life balance from flexible working approaches, sabbatical programs, paid paternity leave, maternity leave and an innovative maternity returners scheme
  • More traditional benefits, such as 25 days holiday (in addition to public holidays), private medical, dental & optical cover, online shopping discounts, an Employee Assistance Program, life assurance and a group pension plan through salary sacrifice

Your Role And Responsibilities

As a Senior Security Consultant – Threat Management, you will help clients strengthen and modernise their Security Operations, Detection & Response, and Threat Management capabilities across cloud, hybrid, and on-premise environments.

Working closely with client security teams, architects, and operational stakeholders, you will design and improve detection strategies, develop high-quality detection content, enhance SIEM/SOAR capabilities, and drive measurable security outcomes through threat-informed defence.

You will operate as a trusted technical consultant, combining hands-on expertise with strong stakeholder engagement to deliver client-facing advisory, engineering, and transformation engagements.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Key Responsibilities Include

  • Designing, implementing, and improving SIEM and security monitoring capabilities.
  • Developing and tuning detection content, analytics rules, and correlation logic.
  • Conducting threat hunting exercises aligned to MITRE ATT&CK and client threat profiles.
  • Supporting incident response, investigation, and post-incident improvement activities.
  • Delivering SOC maturity assessments, capability reviews, and uplift roadmaps.
  • Integrating and optimising telemetry across cloud, identity, endpoint, network, and application environments.
  • Designing and improving SOAR playbooks and automated response workflows.
  • Advising clients on detection engineering standards, operational processes, and security monitoring strategy.
  • Producing high-quality technical documentation, runbooks, operating procedures, and client deliverables.
  • Leading workshops and presenting findings to both technical and non-technical stakeholders.

Preferred Education

Bachelor's Degree

Required Technical And Professional Expertise

  • Demonstrable experience within Threat Management, Detection Engineering, Security Operations, Incident Response, or Threat Hunting environments.
  • Hands-on experience with one or more major SIEM platforms such as:
    • Microsoft Sentinel
    • Splunk
    • QRadar
    • Elastic
    • Chronicle
    • LogRhythm
  • Experience developing detection logic, analytics rules, use cases, and threat hunting content.
  • Strong understanding of MITRE ATT&CK and threat-informed defence principles.
  • Experience supporting or leading incident investigation and response activities.
  • Knowledge of cloud security monitoring across Azure, AWS, or GCP environments.
  • Experience working with EDR/XDR technologies and associated telemetry.
  • Proficiency in KQL, SPL, Python, PowerShell, or equivalent security-focused query/scripting languages.
  • Ability to communicate effectively with both technical and business stakeholders.
  • Experience operating within regulated environments such as public sector, financial services, healthcare, telecommunications, or critical national infrastructure.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personal Security Controls referred to as National Security Vetting (NVS) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV).

Preferred Technical And Professional Experience

  • Previous consulting or client-facing delivery experience.
  • Experience delivering SOC transformation, SOC uplift, or Security Operations improvement programmes.
  • Experience building, tuning, or optimising SOAR capabilities and automated response workflows.
  • Experience conducting threat-led assessments, purple team exercises, or threat modelling activities.
  • Experience with threat intelligence integration, enrichment pipelines, and intelligence-led detection development.
  • Exposure to cloud-native security services such as:
    • Microsoft Defender XDR
    • Microsoft Sentinel
    • AWS GuardDuty
    • AWS Security Hub
    • Google Security Operations
  • Experience designing SIEM onboarding strategies, data normalisation approaches, or detection engineering frameworks.
  • Understanding of detection-as-code, CI/CD pipelines, or modern security engineering practices.
  • Relevant industry certifications such as:
    • SC-200
    • AZ-500
    • GCIH
    • GCIA
    • GCDA
    • Splunk ES certifications
    • Microsoft Security certifications
  • Experience leading technical workshops, mentoring junior consultants, or shaping client security roadmaps.
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Threat Management
Detection Engineering
SIEM
SOAR
Incident Response
Threat Hunting
MITRE ATT&CK
KQL
SPL
Python
PowerShell
Cloud Security Monitoring
EDR/XDR
Stakeholder Engagement
Technical Documentation
SOC Maturity Assessments

Location

Manchester, England, United Kingdom

Sign up to applySee more jobs like this