UK cyber consultancy with SOC operations, penetration testing, and threat intelligence
CND is a 20-year-old UK-based cyber security consultancy built on a foundation of Security Operations Centre design and operation. Their tech stack reflects dual operational modes: SIEM-heavy (Elasticsearch, Splunk, LogRhythm, ArcSight) for threat detection and response, paired with infrastructure-as-code tooling (Terraform, Ansible, AWS/Azure/GCP) for secure deployment. Current hiring is security-dominant (8 roles) with a strong engineering push (7 roles), suggesting they're scaling both threat operations and product development—likely tied to their Radar threat-intelligence platform and expanding consultancy delivery.
CND operates a cyber security consultancy across UK public and private sector clients, with three core business lines: security consulting (penetration testing, architecture, compliance), Security Operations Centre services (24/7 monitoring and incident response), and a specialist cyber recruitment division that leverages their technical depth to source hard-to-find security talent. The company is 11–50 people based in Corsham, Wiltshire, and has been serving government and military networks since 2004. Their proprietary Radar platform delivers near-real-time threat intelligence tailored to classified network environments.
Radar was built for government and military networks in the early 2000s to provide near real-time visibility on emerging cyber threats. It was designed to meet the demands of highly classified environments.
CND's stack includes Elasticsearch, Splunk, LogRhythm, and ArcSight for SIEM and threat detection; AWS, Azure, and GCP for infrastructure; Terraform and Ansible for infrastructure-as-code; and Nessus for vulnerability assessment.
Other companies in the same industry, closest in size