This role has closed. Similar open roles are below.
Posted on:May 5, 2026
Closed on:September 2, 2026

Vulnerability & Threat Analyst (Cheltenham, UK) at VulnCheck

VulnCheck is hiring a Vulnerability & Threat Analyst (Cheltenham, UK) in Cheltenham, UK. On-site.

About VulnCheck

VulnCheck is a cybersecurity company that provides exploit and vulnerability intelligence to help organizations prioritize and respond to vulnerabilities before attacks occur. Its platform offers early access to vulnerability information, exploit proof-of-concepts, packet captures, and Suricata signatures, as well as data from globally deployed internet sensors to reveal signs of exploitation. It also provides a service that identifies internet-exposed hosts for a given CVE. VulnCheck's intelligence is used by security teams, enterprises, government agencies, and other cybersecurity vendors, and is designed to integrate with data lakes, ETL pipelines, automation, and AI and LLM workflows.

Vulnerability & Threat Analyst (Cheltenham, UK) job description

Vulnerability & Threat Intelligence Analyst

Location: Cheltenham, UK
Team: Research
Employment Type: Full-Time, Remote

About VulnCheck

VulnCheck is transforming vulnerability intelligence by helping security teams act faster and with more confidence. Our platform delivers early, high-quality exploit intelligence, deep asset correlation, and contextual insights to help organizations stay ahead of emerging threats.

About the Role

Are you a security researcher who enjoys analyzing large volumes of threat intelligence data to identify and validate exploited vulnerabilities, active exploits, threat actors, malicious infrastructure, and indicators of compromise (IOCs)?

We are expanding our Threat Intelligence team and are looking for a detail-oriented analyst to join VulnCheck.

What You’ll Do

  • Analyze diverse threat intelligence sources to identify and confirm:
    • Exploited vulnerabilities (KEVs)
    • Exploits and proof-of-concepts (PoCs)
    • Threat actors, Botnets and Ransomware campaigns
    • Malicious hosts, domains and infrastructure
    • Indicators of compromise (IOCs)
  • Validate the accuracy and credibility of sources and findings
  • Assess evidence of real-world exploitation
  • Maintain structured, high-quality intelligence outputs

What You’ll Bring

  • Ability to evaluate exploit PoCs; familiarity with scripting languages
  • Experience with OSINT tools and resources
  • Understanding of IOCs and how to identify them
  • Ability to assess the credibility and validity of intelligence sources
  • Strong understanding of CVEs, including:
    • CVE assignment and validation
    • Familiarity with CPE and scoring methodologies
  • Experience working with structured data formats (e.g., JSON)
  • High attention to detail and analytical rigor
  • Familiarity with end-of-life (EOL) software data
  • Experience with developer/security tooling (e.g., VS Code and extensions)
  • Familiarity with package ecosystems (NPM, NuGet, PyPI)

Preferred Qualifications

  • Python scripting skills preferred
  • Experience with prompt engineering is a plus

IMPORTANT NOTE: This position may involve access to technology subject to U.S. export control regulations. Employment is contingent upon the company's ability to authorize access under applicable export control, sanctions, and any other applicable legal or contractual requirements. The company does not guarantee and is under no obligation to seek such authorization if it would be necessary.

What We Offer

We believe people do their best work when they feel supported, trusted, and valued. VulnCheck offers benefits designed to meet a wide range of needs and lifestyles:

Benefits and Perks

  • Unlimited PTO
  • 401k plan with company match
  • Comprehensive healthcare coverage
  • Generous paid parental leave
  • Remote friendly environment with flexibility
  • Expense reimbursement for Cell Phone & Internet
  • Ongoing professional development, coaching, and learning resources
  • Opportunities for career advancement within a fast-growing team

Why Join Us

Built on over two decades of cybersecurity experience, our team of experts understands the intricacies of vulnerabilities, their exploitation in the wild, and how to leverage this data to build more effective cybersecurity products that produce better outcomes for organizations.

VulnCheck gives organizations a tactical advantage by providing best-in-class exploit & vulnerability intelligence information. We have a sense of duty to protect the critical infrastructure we rely on including medical devices, power grids and telecommunication networks. We were founded in 2021 in Lexington, Massachusetts.

VulnCheck has a transparent, collaborative, and supportive culture - we are looking for people who have a growth mindset, are curious and innovative. Our team is smart, but humble, hardworking, and supportive.

VulnCheck is proud to be an Equal Employer Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. VulnCheck is committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities. *Even if your experience doesn’t perfectly align with the job description, we encourage you to apply—we value potential just as much as a perfect resume.

Apply now

Applications go straight to VulnCheck. We never sit between you and the employer.

Applications closed
Get new startup jobs by email
Pick what you want to hear about. The first email confirms your alert, then we only write when something new matches. You can unsubscribe from any email.
1 of 15 categories
How often

Similar hardware & science jobs

All hardware & science jobs →