26 to 50 of 715 Incident Response Jobs in London

Senior Consultant | Cybersecurity - Incident Response

Location
Greater London, England, United Kingdom
Senior Consultant | Cybersecurity - Incident ResponseSkip to main contentWe use cookies to provide website functionality, to analyze our traffic, to personalize content and to enable social media functionality. For further information, please see our Cookie Policy. To enhance your experience, we use an AI assistant, Olivia, to help you explore … roles and learn more about FTI Consulting. For access to Olivia, please accept or decline.#Senior Consultant | Cybersecurity - Incident Response page is loaded## Senior Consultant | Cybersecurity - Incident ResponseApplyremote type: Hybridlocations: London, United Kingdomtime type: Full timeposted on: Posted Todayjob requisition id: JR2520U-TEE**Who We Are**FTI Consulting ...

Head of Information Security

Location
Greater London, England, United Kingdom
growth and innovation. You'll define and lead our security strategy, establish governance and compliance frameworks, strengthen cloud and third-party security, and drive incident response and resilience planning across the organisation. Responsibilities As our security leader, you will bring a hands-on, builder mindset to establish … DPAs, transfer mechanisms, and data classification standards across the business. Audit Readiness: Keep the organization continuously prepared for external compliance audits and regulatory assessments. Incident Response & Business Resilience Incident Command: Own the incident response plan, acting as incident commander during crises and managing executive ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
London, UK
Employment Type
Full-time
Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity. Key ResponsibilitiesCloud Security Assessment & Advisory: Assess … Azure IaaS and Google Cloud environments, including infrastructure. Provide recommendations based on industry best practices and emerging security threats. The ability to provide Cyber Incident Responders subject matter expertise in Cloud security when required. Defender & Security Monitoring Advisory: Evaluate and optimise the use of Azure Defender and other security ...

IT Security Analyst

Hiring Organisation
Withersworldwide
Location
London, UK
Employment Type
Full-time
across the firm's global technology estate. The successful candidate should have practical experience working with modern enterprise security platforms covering endpoint detection and response, extended detection and response, cloud security, threat monitoring, behavioural analytics and vulnerability management, and be comfortable engaging with IT teams, senior stakeholders … pragmatic, service-focused approach is essential. Areas of focus and responsibilitiesMonitor, triage and investigate security alerts across the firm's security monitoring and response platforms, including suspicious activity, root cause analysis and proportionate remediation. Support incident response activities, including containment, eradication, recovery, evidence preservation and clear documentation ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
join a high-performing cyber security operations team supporting critical, secure infrastructure in a 24/7 environment. This is an opportunity to lead incident response activities, mentor analysts, and play a key role in protecting complex enterprise environments from evolving cyber threats. What You'll Be Doing … Lead the investigation and response to medium and high-severity security incidents. Act as the escalation point for complex cyber security events and threat activity. Conduct root cause analysis and produce detailed incident reports. Coordinate containment, eradication and recovery activities with technical teams. Correlate data across SIEM ...

SOC Analyst

Hiring Organisation
Reed
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
protecting a large-scale, international technology environment. This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid … cyber security alerts, incidents and threats Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response Prioritise and manage security incidents based on business risk and impact Conduct proactive threat hunting across endpoint, network, identity and cloud environments Develop ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
security threats across complex client environments. You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your technical … take ownership of more complex security alerts and incidents, including: Investigating and analysing escalated security alerts from Tier 1 analysts Conducting detailed incident investigations to determine scope, impact and root cause Monitoring and analysing activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity ...

Security Operations Engineer

Hiring Organisation
CloudBees
Location
London, UK
Employment Type
Full-time
engineer the systems that make Security Operations smarter, faster and more scalable. You'll work across Detection Engineering, Security Automation, Threat Hunting and Incident Response, building detection logic, automating repetitive workflows and partnering closely with Product Engineering to improve security telemetry across the CloudBees platform. Whether … SaaS and application environments. Own the full detection lifecycle from hypothesis through deployment and continuous tuning. Create high-fidelity detections using operational threat intelligence, incident learnings and purple team findings. Measure and improve detection coverage using the MITRE ATT&CK framework. Continuously reduce false positives while improving visibility into ...

Security engineer, detection and response (UK) Writer London, UK

Location
Greater London, England, United Kingdom
journey to create a better future of work with AI. About the role Join WRITER's security team as a staff detection and response engineer and help protect the AI infrastructure that's transforming how the world works. You'll build sophisticated detection systems that identify attacks targeting … platform, training data, and model deployments while creating automated response capabilities that scale with our explosive growth. This isn't just traditional security work – you're defending cutting-edge AI/AGI systems against adversaries who are evolving their tactics as fast as AI itself advances. This role combines ...

Staff Security Engineer London, UK

Location
Greater London, England, United Kingdom
Operations team, you will help Ripple detect, investigate, and respond to security threats across our environment. You’ll work across detection and data engineering, incident response, and security automation — building the tooling and detection logic that lets the team scale. You’ll operate independently on sophisticated investigations … Design, build, and tune detections across our security stack (Google Security Operations) to improve our ability to identify and mitigate threats. Lead incident response for the most complex and high-severity investigations, from initial triage through root cause and remediation. Build and maintain security automation workflows (e.g. ...

Associate Consultant, Digital Forensics, Incident Response

Location
Greater London, England, United Kingdom
Responsibilities Provide technical expertise and consultative solutions in Digital Forensics, Incident Response, Cyber Security and eDiscovery Serve law firms, Fortune 500 multinationals and government/law-enforcement clients Preserve digital data and conduct forensic analysis of digital evidence Prepare reporting for regional and international Discovery & Data Insights teams … Collaborate with Cyber Response, Crisis Management and Investigations teams Support experienced professionals in investigating data breaches and security incidents Collect and preserve digital data using industry-standard tools and techniques Assist with forensic analysis and cyber security services Support Investigation teams across all regions Deliver high-quality client deliverables ...

Senior Security Specialist

Hiring Organisation
Reonomy
Location
London, UK
Employment Type
Full-time
security operations, expanding our offensive security capabilities, and improving how we detect and respond to emerging threats. Working across security engineering, threat intelligence, incident response, and cloud security, you will identify opportunities to improve detection, automate processes, mature security technologies, and strengthen our overall security posture. This … Security Operations and technology teams to drive continuous improvement. Work across the full spectrum of modern cybersecurity. From security engineering and cloud security to incident response, threat intelligence, automation, and offensive security, this role offers technical breadth. You will solve complex security challenges, improve detection and response ...

Cyber Security Engineer

Hiring Organisation
Foresters Financial
Location
Bromley, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
environment and you will have on-going opportunities to develop your technical skills and grow within cyber security What you will do: Security Monitoring & Incident Response Actively monitor alerts and telemetry across endpoints, identities, email, and cloud services using Rapid7 SIEM, Microsoft Defender, and Sophos AV. Investigate suspected … malware infections, phishing campaigns, identity compromise, and unauthorised access attempts. Perform triage, root cause analysis, containment, and remediation of security incidents. Lead or support incident response activities in line with internal policies and procedures. Escalate significant incidents appropriately and provide clear, timely updates to stakeholders. Threat Detection & Prevention ...

Senior Remediation Advisor, Mandiant STS

Hiring Organisation
Google
Location
London, UK
Employment Type
Full-time
cybersecurity incidents and recovery, providing advanced technical advice and support across a range of technologies to enable them to confidently navigate complex environments. Lead incident response and remediation workstreams, effectively managing projects, coordinating resources, and meticulously tracking progress to ensure successful client outcomes, while orchestrating and managing critical … minimizes organizational risk and reduces the impact of security breaches, by utilizing the latest industry standards and combining experience and knowledge gained from Mandiant Incident Response, Intelligence and Managed Defense practices, you will be able to help clients contain security events, harden their environments, and transform their security ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, UK
Employment Type
Full-time
team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying … monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, United Kingdom
Employment Type
Permanent
team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying … monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation ...

Head of Cyber Security

Location
Greater London, England, United Kingdom
Security translates the IT and Cyber Security strategy into practical controls, measurable outcomes and clear reporting. This includes cyber governance, security operations, vulnerability management, incident readiness, third-party cyber risk, security awareness, policy ownership and cyber assurance across on-premises, cloud and supplier-hosted services. Responsibilities Cyber Security Strategy … SIEM, endpoint protection, identity controls, email security, cloud security, vulnerability tooling and managed security service providers. Improve detection coverage, alert quality, escalation paths and response times Cyber Incident Response: Own cyber incident response playbooks and readiness for realistic scenarios including ransomware, data loss, account compromise ...

Security Consultant

Location
Greater London, England, United Kingdom
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use‐case tuning, and post‐incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client‐facing deliverables including ...

Security Consultant

Hiring Organisation
Version 1
Location
London, UK
Employment Type
Full-time
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including ...

Security Consultant

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£85,000
incidents while leading, mentoring and developing SOC Analysts on shift. Youll act as a key escalation point for complex and high-severity incidents, supporting incident containment, remediation and recovery while providing leadership across the SOC. What youll be doing Leading the SOC team during your assigned shift and handling … escalations Investigating and responding to medium and high-severity security incidents Supporting incident containment, remediation and recovery Mentoring, teaching and upskilling junior SOC Analysts Supporting threat hunting, detection improvement and incident response activities What were looking for 6+ years experience across SOC, Incident Response ...

SOC Shift Lead

Location
Hillingdon, West London, United Kingdom
incidents while leading, mentoring and developing SOC Analysts on shift. Youll act as a key escalation point for complex and high-severity incidents, supporting incident containment, remediation and recovery while providing leadership across the SOC. What youll be doing Leading the SOC team during your assigned shift and handling … escalations Investigating and responding to medium and high-severity security incidents Supporting incident containment, remediation and recovery Mentoring, teaching and upskilling junior SOC Analysts Supporting threat hunting, detection improvement and incident response activities What were looking for 6+ years experience across SOC, Incident Response ...

SOC Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
eligible for UK Security Clearance This is an exciting opportunity to work within a 24/7 SOC, investigating sophisticated cyber threats, leading incident response activities, and helping protect critical infrastructure powering next-generation AI and high-performance computing platforms. What You'll Be Doing Investigate and analyse … escalated security incidents, identifying attack vectors, root causes and potential business impact. Correlate events across multiple security tools and data sources to build comprehensive incident timelines. Lead response activities for medium and high-severity security incidents. Support containment, eradication and recovery efforts in partnership with technical stakeholders. Produce ...

Senior Consultant | Cybersecurity - Incident Response

Hiring Organisation
FTI Consulting
Location
London, UK
Employment Type
Full-time
order to assimilate client needs and design appropriate technical solutions. Lead assessment of current threat identification techniques and development of new methodologies and frameworks. Incident analysis, combining sound analytical skills with advanced knowledge of cybersecurity, digital forensics and incident response. Assess client cybersecurity postures against industry standard best … producing creative solutions to challenging research problems. Strategic planning and resourcefulness Basic QualificationsBachelor's degree or equivalent experience. Experience conducting digital forensics or incident response or a similar role. Specialised experience in cyber incident response and cyber incident management. An understanding of frameworks and standards ...

Director, R&D, Email & Collaboration Threat Protection

Location
Greater London, England, United Kingdom
master them quickly. Our AI leadership extends beyond how we build to what we build. Our Mihra AI agent delivers 7x faster threat response for customers, and we’re recognized as "Agents of Change" in Human Risk Management. Engineers here work at the intersection of cutting‐edge AI tooling … succession planning for key leadership and senior technical roles. Drive Engineering Excellence: Set and maintain high standards across your squads: testing, observability, release governance, incident response, and secure development practices. Hold the organisation accountable for operational excellence on a zero‐downtime, globally distributed platform — including post‐incident ...