freehire launches on Product Hunt on 26 August.

Follow →

Senior Cyber Security Analyst - Cyber Threat Intelligence

Summary

Senior Cyber Security Analyst focused on Cyber Threat Intelligence, analyzing threats to Social Security Scotland’s digital services and sensitive data.

We are seeking an experienced and motivated Senior Cyber Security Analyst specialising in Cyber Threat Intelligence (CTI) to join the Digital Risk & Security branch within Digital Delivery & Change. This role plays a key part in identifying, analysing, and communicating cyber threats that could impact Social Security Scotland’s digital services, systems, and sensitive information.

As a senior member of the Security Operations function, you will support the delivery and continuous improvement of the organisation’s Cyber Threat Intelligence capability. You will work closely with security teams, technical specialists, and stakeholders to gather, assess, and share actionable threat intelligence that helps strengthen defensive measures, reduce cyber risk, and support informed decision-making across a cloud-first environment.

You will contribute to the operational delivery and development of key Cyber Threat Intelligence services, including:

  • Threat Intelligence Collection and Analysis
  • Threat Hunting and Threat Detection Support
  • Threat Actor and Campaign Tracking
  • Open-Source and Commercial Intelligence Monitoring
  • Indicators of Compromise (IoC) Management
  • Vulnerability and Threat Correlation
  • Strategic, Operational and Tactical Intelligence Reporting
  • Threat Intelligence Sharing and Collaboration
  • Emerging Threat and Risk Assessment
  • Intelligence Support for Incident Response and Security Operations

The role requires strong analytical, investigative, and problem-solving skills, with experience of threat intelligence methodologies, cyber threat landscapes, and industry-recognised frameworks such as MITRE ATT&CK. You will be responsible for assessing complex information from multiple intelligence sources, identifying patterns, and producing timely, actionable intelligence to support risk-based decision-making. The successful candidate will be confident working both independently and collaboratively, applying professional judgement to develop evidence-based assessments, recommendations, and decisions within their area of responsibility. You will take ownership of investigations and intelligence activities, demonstrating the initiative and confidence to act on findings where appropriate, while recognising when matters require escalation. You will also contribute to the continuous improvement of intelligence-led security practices and help ensure the organisation maintains an effective understanding of evolving cyber threats.

If you are passionate about cyber threat intelligence and want to play a key role in protecting critical public services and citizen data, we would welcome your application.

Cyber Security Analysts are responsible for protecting the confidentiality, integrity, and availability of information and information systems used by government and Partners Across Government.

  • Explains the purpose of and provides advice and guidance on the application and operation of elementary physical, procedural and technical security controls.
  • Performs security risk, vulnerability assessments, and business impact analysis for medium complexity information systems.
  • Investigates suspected attacks and manages security incidents including use of forensics where appropriate.
  • Maintains security administration processes and checks that all requests for support are dealt with according to agreed procedures.
  • Specifies requirements for environment, data, resources and tools. Interprets, executes and documents complex test scripts using agreed methods and standards.

Responsibilities

  • Gather, analyse and share cyber threat intelligence from a range of sources to identify cyber threats, vulnerabilities and emerging risks affecting the organisation.
  • Produce and deliver cyber threat reports, briefings and risk assessments for technical teams, senior leaders and key stakeholders, providing clear recommendations to improve cyber resilience.
  • Provide advice and guidance on cyber security controls, helping teams understand and apply security best practice.
  • Communicate cyber security risks and issues clearly to managers, stakeholders and colleagues across the organisation.
  • Investigate security incidents and breaches, using forensic techniques where appropriate, and support the implementation of corrective actions.
  • Carry out security risk assessments, vulnerability assessments and business impact analyses to help identify and manage cyber risks.
  • Develop security test cases based on identified risks, threats and common vulnerabilities.
  • Keep up to date with the latest cyber security threats, attack methods and industry developments.
  • Provide specialist cyber security advice and support, applying expertise to complex security challenges and projects.

Success Profiles

We use an assessment framework called ‘Success Profiles’ which lists the elements we test and provides detailed descriptions of each. Find out more about the framework here.

For this post, the following Success Profile elements will be assessed:

Experience:

  1. Experience of delivering or reviewing cyber security risk assessments for enterprise IT systems using recognised methodologies, incorporating threat intelligence from a range of sources to assess emerging threats, vulnerabilities and organisational risk.

  2. Experience of conducting and developing security investigations, threat hunting activities or vulnerability assessments across enterprise environments, selecting and applying appropriate tools, techniques and methodologies to identify vulnerabilities, malicious activity and indicators of compromise.

Behaviours:

  • Seeing the Bigger Picture - Level 3

  • Communicating and Influencing - Level 3

You can find out more about Success Profiles Behaviours here.

Technical / Professional Skills:

This role is aligned to Senior Cyber Security Analyst within the Government Digital and Data Profession.

These skills will be tested during the Technical Assessment if you are successful at sift stage. They will not be assessed at application stage.Please review the following to understand the skill expectations [Cyber security: operations - gov.scot]( security analyst senior).

How to Apply

Apply online, you must provide a CV and Supporting Statement (of no more than 750 words) which provides evidence of how you meet the Experience and Behaviours listed in the Success Profiles above.

Artificial Intelligence (AI) tools can be used to support your application, but all statements and examples provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, and presented as your own) applications will be withdrawn and internal candidates may be subject to disciplinary action.

Please see our candidate guidance for more information on acceptable and unacceptable uses of AI in recruitment

Should a large number of applications be received, an initial sift may be conducted using the CV and Supporting Statement on the first Experience criteria. Candidates who pass the initial sift will have their applications fully assessed.

There may be a telephone interview prior to the final interview stage.

Candidates who are successful at sift stage will be invited to attend an Interview and Technical Assessment. The interview will further assess the Experience and Behaviours listed in the job advert and the Technical Assessment will evaluate the Technical Skills relevant to the role.

Full details of the interview and assessment process will be shared with shortlisted candidates once the sift has been completed.

We aim to provide feedback on request. However, if we receive a large number of applications it may not be possible for us to provide specific feedback on your application. We will provide feedback on request to candidates who attend an interview/assessment.

Information Sessions

We are holding a candidate information session to provide you with information about the application and interview process as well as further information on the role and team.

The session will be held on Monday 17th August at 12 – 1pm

We will be talking about:

  • The Senior Cyber Security Analyst role and Digital Risk & Security team
  • About Social Security Scotland
  • Our recruitment process
  • Q&A with the hiring manager

Please join us using the link below:

Join the meeting

Expected Timeline (subject to change)

Sift - w/c 24th August

Interview – w/c 7th September

Location - In Person in either Dundee or Glasgow

Reserve List

In the event that there are more successful candidates than posts available, a reserve list will be kept for up to 12 months.

About Us

Social Security Scotland is an Executive Agency of the Scottish Government. Our benefits help people from all walks of life in Scotland. We offer rewarding careers and employ people across Scotland in a wide range of professions and roles. We are committed to recruiting a diverse workforce that is representative of the clients we serve. Find more about us here.

We offer a supportive and inclusive working environment along with a wide range of employee benefits. Find out more about what we offer.

As part of the UK Civil Service, we uphold the Civil Service Nationality Rules.

GDD Pay Supplement

This post is part of the Government Digital and Data (GDD) profession and currently attracts a £4,000 annual GDD pay supplement, which is paid monthly - pay supplements are reviewed regularly.

Working Pattern

Our standard hours are 35 hours per week and we offer a range of flexible working options, depending on the needs of the role. We embrace a hybrid working style where all colleagues will spend time in either our Glasgow or Dundee offices. There is an expectation of a minimum 2 days per week in your assigned location, which will be either Glasgow or Dundee. If you have specific questions about the role you are applying for, please contact us.

Security checks

Successful candidates must complete the Baseline Personnel Security Standard (BPSS), before they can be appointed. BPSS is comprised of four main pre-employment checks – Identity, Right to work, Employment History and a Criminal Record check (unspent convictions).

You can find out more about BPSS on the UK Government website, or read about the different levels of security checks in our Candidate Guide.

This post requires the successful candidate to clear additional National Security Vetting clearance (Security Check) before a start date can be offered. Further information regarding National Security Vetting clearance can be found here - United Kingdom Security Vetting: Applicant - GOV.UK

Equality Statement

Social Security Scotland are committed to equality and inclusion, and we aim to recruit a diverse workforce that reflects the population of our nation.

Social Security Scotland are a Disability Confident Employer. We will consider and implement any reasonable adjustments you may require throughout the recruitment process and during the course of your employment, should you be successful in securing a post. If you feel you may require assistance with any part of our recruitment process, please contact us at [email protected].

Find out more about our commitment to diversity and how we offer and support recruitment adjustments for anyone who needs them.

Right to Work in the UK

Social Security Scotland is an approved sponsor under the UK Visa and Immigration (UKVI) Skilled Worker route. Please note that UK immigration guidance, including skill and salary thresholds and eligible occupations, is reviewed regularly and subject to change. If you require visa sponsorship, you should check the latest criteria to confirm whether this role meets current requirements before applying. You can find further advice on Gov.UK - Skilled Worker visa: Overview - GOV.UK

Further Information

Social Security Scotland’s recruitment processes are underpinned by the recruitment principles of the Civil Service Commissioner, which outline that selection for appointment be made on merit on the basis of fair and open competition - Recruitment - Civil Service Commission

If you feel at any time your application has not been treated in accordance with the values in the Civil Service Code and/or if you feel the recruitment has been conducted in such a way that conflicts with the Civil Service Commissioner’s Recruitment Principles, you can make a complaint, by contacting Social Security Scotland at [email protected] in the first instance. If you are not satisfied with the response you receive you can contact the Civil Service Commissioner.

The successful candidate will be expected to remain in post for a minimum of 3 years unless successful in gaining promotion to a higher Band or Grade.

Find out more about our organisation, what we offer staff members and how to apply on our Careers Website.

Read our Candidate Guide for further information on our recruitment and application processes.

If you experience any difficulties accessing our website or completing the online application form, please contact the Resourcing Team via [email protected].

Apply before 23:55 on Thursday 20th August 2026

Contact Name - Resourcing Team

Contact email – [email protected]

See also