226 to 250 of 712 Incident Response Jobs in London

AIML Software Engineer, AI for Science

Location
Greater London, England, United Kingdom
cycle. Own the reliability of what you build, set up CI/CD and release processes, automated testing, monitoring and alerting, and lead the response when things break, so the systems scientists rely on stay dependable. Build and operate the model‐serving infrastructure that exposes our models in production … management in cloud environments. Experience running production services at scale, including defining and working to service‐level objectives (SLOs/SLIs). Experience with incident response and post‐incident review, and with building the observability that supports it. Infrastructure‐as‐code (e.g. Terraform) for provisioning and maintaining ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
insecure configurations before deployment. Own security scanning in CI/CD pipelines and promote a shift‐left approach to cloud security across engineering teams. Incident Response & On‐Call: Participate in the on‐call rotation for security incidents, including triage, containment, and escalation for after‐hours events. Lead investigation … Willingness and ability to participate in an on‐call rotation, including after‐hours response. Ability to produce clear, comprehensive, and well‐structured documentation (e.g. incident reports, architecture reviews, runbooks, and security standards) and to communicate complex technical issues effectively to non‐technical stakeholders. Our Hybrid Work Philosophy Great work ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
into SIEM platforms such as Microsoft Sentinel to improve threat detection and monitoring capabilities. Develop automated controls and workflows to enhance governance, compliance, and incident response processes. Skills and Experience Essential Microsoft Entra ID/Identity Governance: Extensive experience administering Microsoft Entra ID, including Conditional Access, Identity Protection ...

DevOps Engineer

Location
Greater London, England, United Kingdom
make coding agents effective against our stack Improve observability and alerting so that system health is visible and actionable without manual investigation Participate in incident response and post-incident review, treating failures as systemic issues rather than individual ones What We Need Kubernetes & Cloud: Hands-on experience … other basis protected by law. Due to a high volume of candidates, Invisible may use automated decision-maker technologies to filter candidates based on response to our application questions and other provided information. Our use of automated decision-making enables us to be efficient by providing a manageable list ...

Databricks Platform Engineer

Location
Greater London, England, United Kingdom
Data Scientists and Data Support MLflow, model serving and feature store usage for predictive modelling and GenAI work Monitor jobs, clusters and warehouses; lead incident response and post-incident reviews QA own work and that of others What Success Looks Like in the Role A secure, reliable ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
Willis Towers Watson
Location
London, UK
Employment Type
Full-time
Engineer, working within the Global Information and Cyber Security Defence (ICSD) function, is the technical leader for enterprise cyber deception and unified detection and response across the Microsoft security ecosystem. The role focuses on building, operating, and continuously evolving an enterprise-grade Insider Risk Management (IRM) and deception programme … detect adversaries earlier in the kill chain by deceiving attackers into engaging with high-fidelity traps, while delivering unified detection, automated investigation, and response across endpoint, identity, email, and cloud workloads. It combines deep deception engineering expertise with hands-on Defender XDR mastery and the use of Agentic ...

Banking Job - Mandarin speaking Information Security Manager (Banking) - rj

Hiring Organisation
People First Recruitment
Location
London, UK
Employment Type
Full-time
Coordinate periodic security reviews and internal control assessments. Cyber Security and Security MonitoringOversee cyber security measures including vulnerability management, access control, security monitoring and incident detection. Ensure regular vulnerability assessments, security reviews and penetration testing are conducted. Incident ManagementEstablish and maintain procedures for managing information security incidents. Coordinate … investigation, response and reporting of cyber security incidents. Operational ResilienceSupport the Branch's operational resilience framework from an information security perspective. Participate in disaster recovery planning, cyber security exercises and resilience testing. Third-Party and Outsourcing RiskAssess information security risks associated with third-party service providers and outsourcing arrangements. ...

Cyber Security Lead

Hiring Organisation
Chambers and Partners
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
vulnerability scanners, and data encryption solutions. Manage vulnerability management programs, including regular scanning, penetration testing, and remediation of identified weaknesses. Lead and manage security incident response, including detection, analysis, containment, eradication, recovery, and post-incident review. Develop and maintain robust disaster recovery and business continuity plans related … NIST, Cyber Essentials), and best practices. Hands-on experience with security technologies such as firewalls, SIEM, IDS/IPS, vulnerability scanners, endpoint detection and response (EDR), and identity management solutions. Experience with cloud security (e.g., Azure Security). Proven experience in managing security incidents and conducting incident response. ...

Production Engineer

Location
City Of London, England, United Kingdom
order routing, trade flow, and post-trade issuesLead the 'follow the sun' support model coordination, working closely with global teams in APAC and USDrive incident management practices, trend identification, and post-mortem analysis. Collaborate with development teams to influence platform improvements based on support insightsOccasional weekend work will … hoursPositive approach to the day-to-day, with the resilience to handle high-pressure production incidentsDesiredExperience with Site Reliability Engineering (SRE) practices, including monitoring, incident response, and post-mortem analysisProven experience applying AI or machine-learning models to optimise workflows, identify patterns, and drive intelligent automation solutionsHands ...

Head Of Infrastructure and Cloud - Internal Applicants Only

Location
Greater London, England, United Kingdom
performance, and disaster recovery, aligned to operational resilience requirements for banking services. Lead Network Operations and Infrastructure Operations (NOC), ensuring 24/7 monitoring, incident response, and proactive service management with continuous improvement of MTTR and service stability. Define, implement, and continuously mature infrastructure governance and compliance frameworks … operational resilience. Strong understanding of DevOps principles, CI/CD pipelines, automation, and modern software delivery practices Experience leading 24x7 operational support functions, major incident management and service improvement initiatives. Strong understanding of information security, cyber risk and cloud security best practices. Experience operating within financial services regulatory frameworks ...

CLOUD SECURITY ARCHITECT

Location
Greater London, England, United Kingdom
onboarding, including SSPM tooling and SaaS security reviews Architect secure identity solutions, including centralised and federated authentication models across complex, cross‐domain environments Support incident response planning and business continuity activities, ensuring cloud‐hosted services meet resilience and recovery objectives Contribute to FinOps activities from a cybersecurity cost ...

Senior DevOps Engineer

Location
Greater London, England, United Kingdom
site and multi-tenant deployment models where required. Implement observability, monitoring, alerting, SLOs and operational health practices for production and customer-facing systems. Lead incident response, post-incident reviews and continuous improvement of platform reliability and operational maturity. Embed security, safety, compliance, auditability and traceability requirements into ...

Senior Infrastructure Operations Engineer, Sovereign Operations, Wiltshire

Location
Greater London, England, United Kingdom
maintenance and updates to roll out new features and keep the platform secure. Participate in a 24/7, on-call rotation for incident response escalation within response and on-site Service Level Agreements (SLA). Provide technical implementation support in customer environments, including guidance on implementation ...

Wiz Security Engineer

Hiring Organisation
VIQU IT
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 450 - 550 Daily
Cloud Hardening: Design secure baselines for Kubernetes and cloud-native resources. Vulnerability Management: Prioritize and remediate software supply chain risks from development to production. Incident Response: Scale detection and response solutions to triage alerts and stop malicious activity. Experience: 5 to 7+ years in cloud security engineering ...

Wiz Security Engineer

Hiring Organisation
VIQU IT
Location
London, South Kensington, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
Cloud Hardening: Design secure baselines for Kubernetes and cloud-native resources. Vulnerability Management: Prioritize and remediate software supply chain risks from development to production. Incident Response: Scale detection and response solutions to triage alerts and stop malicious activity. Experience: 5 to 7+ years in cloud security engineering ...

Security Engineer - Security Operations

Hiring Organisation
Perk
Location
London, UK
Employment Type
Full-time
possess strong technical expertise in security operations, this is an exciting opportunity to make a significant impact. What you'll do: Enhance threat detection & response by designing, implementing, and optimizing security tools, detection mechanisms, and secure configurations to identify and mitigate cybersecurity threats. Develop and optimize detection rules, signatures … achieve security and compliance objectives across multiple cloud technologies (e.g. AWS GuardDuty/Security Hub/Inspector, GCP Security Command Center).Enhance threat hunting, incident response, and security operations through continuous improvement in detection, analysis, and automation. What you'll need: You hold a degree (University/University ...

Site Reliability Engineer - Service Assurance Systems

Location
Greater London, England, United Kingdom
Docker, and support the operation of services hosted on AWS cloud infrastructure. Write and maintain operational scripts (primarily Python) to automate routine tasks, support incident investigations and improve team efficiency. Collaborate with software developers to identify recurring operational issues and feed findings back into the development process to improve … application resilience. Maintain clear and up-to-date operational documentation including runbooks, deployment guides and incident post-mortems. Provide written and verbal progress updates on open incidents, deployments and operational improvements to the SAS group and wider stakeholders. Support on-call and out-of-hours incident response ...

Cyber Security Consultant

Hiring Organisation
Searchability NS&D
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£520.00 - £570.00 per day
Cyber Security Consultant - Incident and Vulnerability Management, UK Up to £570 per day, dependent on experience 3-month contract (Inside IR35) Hybrid working, 1 to 2 days onsite in Preston, London or Birmingham Must hold active SC clearance ABOUT THE CLIENT Our client is a major organisation operating within … They are currently transitioning towards a multi-supplier service model and require an experienced Cyber Security Consultant to provide governance and coordination across security incident and vulnerability management. THE BENEFITS Hybrid working, approximately 1 to 2 days onsite Choice of Preston, London or Birmingham locations Opportunity to support ...

IT Operations and Security Lead

Location
Greater London, England, United Kingdom
cloud-first environment, including Azure AD, MFA, Conditional Access, SSO, and Privileged Access Management (PAM). Lead threat monitoring, detection, and response using cloud-native security solutions such as Microsoft Defender, Sentinel, and SIEM platforms. Ensure compliance with cloud security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2 … practices. Identity & Access Management (IAM): Expertise in Azure AD, MFA, Conditional Access, Single Sign-On (SSO), and Privileged Access Management (PAM). Threat Management & Incident Response: Ability to detect, respond to, and mitigate cyber threats using SIEM, endpoint security, and vulnerability management tools. Networking & Infrastructure Security: Understanding ...

Senior Cyber Security Engineer

Hiring Organisation
Addition
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£600.00 per day
processes using PowerShell or Python, APIs and shared automation libraries. Acting as a senior escalation point for identity and security-tooling incidents. Supporting major incident response activities when required. Producing clear technical designs, standards and operational runbooks. Contributing PAM and security-tooling expertise to service reviews and solution … scripting skills, applied to security-tooling automation and integration. Working knowledge of cloud platforms such as Azure, AWS or GCP. Experience supporting security operations, incident management and SOC environments. Strong documentation, reporting and stakeholder-communication skills. The ability to work across multiple client environments and manage competing technical priorities. ...

Cyber Security Officer

Hiring Organisation
Pinpoint Resourcing Limited
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
Responsibilities : Take ownership of the organisations security posture, helping to identify, assess and reduce cyber risk across systems, services and data Lead security monitoring, incident investigation and response activities, ensuring threats are identified and addressed effectively Drive vulnerability management and security improvement initiatives, working with technical teams … data protection, compliance and security assurance principles Experience assessing, prioritising and mitigating security risks within a business environment Familiarity with security monitoring, threat detection, incident response and vulnerability management activities Broad understanding of infrastructure, networks, identity management and application security concepts Ability to analyse complex information, identify root ...

Software Engineering Lead

Hiring Organisation
WTW
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Champion automated testing, observability, and production readiness across backend services Oversee database design, migrations, data integrity, and performance in partnership with platform teams Lead incident response, post-incident reviews, and continuous operational improvements Mentor engineers in PHP, Go, security, performance, and backend best practices Support high-risk … pragmatic approach to technical decision-making Expertise in automated testing, CI/CD, and safe release practices Strong understanding of observability, monitoring, and incident management Knowledge of security, compliance, and non-functional requirements in financial services Comfortable evolving both modern and legacy systems Hands-on leader who can contribute ...

Ticketing Systems Lead

Hiring Organisation
FBI &TMT
Location
South East London, London, United Kingdom
Employment Type
Permanent
Salary
£80,000
other passenger-facing devices that are critical to daily service delivery. You will lead a multi-disciplinary team responsible for ensuring high availability, rapid incident response, and seamless customer experience across all front office technology. Key Responsibilities Lead the end-to-end support and operation of front office … major incidents affecting ticketing systems, gates, validators, kiosks, and associated platforms , coordinating rapid resolution with engineering and field teams. Drive operational excellence across: Incident management Ticket prioritisation and queue management Root cause analysis (RCA) Service performance and uptime Work closely with field engineers, maintenance teams, and operational stakeholders ...

Lead DevSecOps Engineer

Hiring Organisation
CBSbutler Holdings Limited trading as CBSbutler
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£645/day inside ir35
aligned to MOD security requirements Coordinate DevSecOps engineers, developers, testers and infrastructure teams Create and maintain security processes, technical standards and operational runbooks Support incident response, patching, risk management and compliance activity Expereince required: You'll need strong hands-on experience across: AWS | Kubernetes/EKS | Terraform | GitHub ...

DevOps Engineer - SC Clear

Hiring Organisation
Hays Technology
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550/day £550 per day via UMB
patching and security updates. Create and maintain technical documentation and operational procedures. Collaborate with development teams to improve deployment processes and automation. Participate in incident response and on-call support activities. Work within established engineering standards, security controls and operational processes. Support a 24/7 operational environment ...