1 to 25 of 90 Incident Response Jobs in the Thames Valley

Incident Response Specialist

Location
Wokingham, England, United Kingdom
## Incident Response SpecialistApply: Warwick, CV34 6DA: Wokingham, RG41 5BN: Full time: Posted Today: End Date: October 7, 2026 (6 days left to apply): JR100833**About the Role**Exciting opportunity to join the **Security Incident Response Team**, part of the Security function within DD&T. … effectively respond to **cyber** and **physical** security incidents;* Mitigating potential **security threats** by identifying lessons learned and translating these into business improvements;* Developing Incident Response **readiness plans** and processes;* **Exercising** and **testing** to ensure NESO is prepared to respond to the security threats we face. The Incident ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Senior Incident Response Lead — Rapid Response (Ransomware)

Location
Oxford, England, United Kingdom
Sophos is seeking an experienced Senior Incident Response Consultant to join our Incident Response (IR) team. You will lead incident response engagements for customers worldwide, guiding a team of consultants, conducting rapid responses, and delivering executive updates. You will have 5+ years ...

SecOps Engineering Lead

Location
Abingdon, England, United Kingdom
controls our Cyber Security Architect designs, and to lead security operations for our Azure-hosted, multi‐tenant SaaS platform: SOC engineering, detection and monitoring, incident response, and managing a team of three analysts. 60% of the role is engineering: putting Azure guardrails, SOC tooling, pipeline security tooling … platform hardening into production. The rest is running the SOC: keeping security observability controls healthy, improving detections, leading response, and developing the three analysts. You are expected to be a senior hands‐on practitioner in the team and the analysts' escalation point, so you are expected to troubleshoot ...

Digital Forensics & Incident Response Analyst

Location
Maidenhead, England, United Kingdom
innovation, knowledge sharing, continuous improvement, and operational excellence. About the Role Join Maersk's Cyber team and play a key role in a modern incident management and response function that combines digital forensics, threat hunting, detection engineering, and cyber security improvement initiatives. This role offers the opportunity … contribute to complex investigations, strengthen response capabilities, and help shape the future of cyber defence within a globally recognised organisation. Key Responsibilities Conduct digital forensic investigations across endpoint, cloud, and OT environments to support incident response and recovery activities. Perform threat hunting and behavioural analysis to proactively ...

Senior Global Security Operations Centre Analyst

Hiring Organisation
Centrica - CHP
Location
Windsor, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Senior Global Security Operations Centre Analyst, you'll be the key technical escalation point between our Security Analyst team and the Cyber Security Incident Response Team (CSIRT), leading complex investigations and supporting the response to significant security incidents. Working across cloud, endpoint, identity, and network technologies … site. Day to day - Lead complex cyber security investigations across Centrica, acting as the primary technical escalation point within the GSOC and supporting incident response before escalation to CSIRT where required. Investigate and respond to threats across cloud, endpoint, identity, email, network and Operational Technology (OT) environments, assessing ...

Digital Forensics & Incident Response Analyst

Location
Maidenhead, England, United Kingdom
# Digital Forensics & Incident Response Analyst*A.P. Moller - Maersk***Maidenhead, England**Hybrid · Mid · Full-time### The RoleThe analyst conducts digital forensic investigations across Windows, Linux, cloud, and operational technology environments, supporting the full incident response lifecycle from triage through to post-incident review. ...

Incident Response Lead – Cyber & Physical Security (Hybrid)

Location
Wokingham, England, United Kingdom
National Energy System Operator Limited is seeking an experienced Incident Response Specialist to join the Security Incident Response Team, working across cyber and physical security incident management. The role leads responses to high-priority incidents, triages events, and supports junior colleagues while coordinating with internal ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
take ownership of the engineering, administration, health and continuous improvement of the security platforms, detection content and automation that underpin threat monitoring, detection and incident response across my client's internal and managed customer environments. They will act as the final internal escalation point for complex and high … live incidents. Key Responsibilities Lead the end-to-end management of complex and high-severity security incidents, including investigation, containment, eradication, recovery and post-incident review. Conduct digital forensic investigations across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise ...

Cyber Security Manager

Location
Slough, England, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Monitoring & Observability Engineer

Location
Reading, England, United Kingdom
operational responses that improve reliability and reduce downtime. What You'll Be Working On Monitor live systems, triage operational alerts and provide first-line incident response to maximise system availability. Develop and maintain dashboards that deliver clear visibility into system health, trends and operational performance. Analyse recurring incidents … tooling and operational processes. Define monitoring thresholds, alerting strategies and operational metrics that support reliable live quantum computing services. Produce documentation covering monitoring processes, incident response, escalation procedures and operational handovers. Contribute to automation and continuous improvement initiatives that reduce manual intervention and improve service reliability. What ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Threat Analyst 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies - including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Newport Pagnell, Buckinghamshire, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
cloud environment. This is not a traditional SOC role focused on alert handling . The position sits at the senior technical level and combines incident leadership, detection engineering, threat hunting and automation. You’ll have genuine ownership of security operations maturity rather than working in a ticket-driven environment. … senior technical point of escalation within the SOC, leading complex investigations and driving continuous improvement across tooling, detection capability and response processes. Typical responsibilities include: Leading complex security incidents end-to-end including investigation, containment, forensics and root cause analysis. Designing, tuning and improving detection across SIEM ...

Senior SOC Analyst

Hiring Organisation
Network IT
Location
Hanslope, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 75 Hourly
intelligence to determine the nature and severity of security events. Escalate indicators confirmed or suspected cyber security incidents to the Lead SOC Analyst or Incident Responder team in accordance with established operational procedures. Support Incident Responders by providing accurate analytical findings, supporting evidence, timelines and technical information throughout … incident investigations. Contribute to the continual improvement of monitoring capability by identifying opportunities to improve alert quality, investigation processes, monitoring coverage and detection effectiveness. Validate new monitoring content, detection rules and operational procedures before deployment into the live SOC environment. Assist in the onboarding of new systems, cloud services ...

Remote DevSecOps Engineer

Hiring Organisation
Mbr Partners, Inc
Location
Oxford, Oxfordshire, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Senior DFIR Analyst - Threat Hunting & Incident Response

Location
Maidenhead, England, United Kingdom
A.P. Moller - Maersk in Maidenhead, United Kingdom, is seeking an experienced Digital Forensics & Incident Response Analyst. You will investigate across Windows, Linux, cloud and OT, supporting triage through post-incident review in a hybrid, full-time role. The ideal candidate brings enterprise-scale DFIR experience, strong artefact ...

Security & Network Engineer - 12 months Fixed term

Hiring Organisation
Techtronic Industries - Europe HQ
Location
Maidenhead, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
/CD pipelines Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones) Manage incident response for critical infrastructure events; lead post-mortems and remediation Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security … configuration management (Ansible, etc.) Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable) Strong incident response and troubleshooting background; comfort operating in high-pressure environments Experience mentoring junior/mid-level engineers and building security culture within technical teams Desirable ...

Security & Network Engineer - 12 months Fixed term

Location
Maidenhead, England, United Kingdom
/CD pipelines Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones) Manage incident response for critical infrastructure events; lead post-mortems and remediation Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security … configuration management (Ansible, etc.) Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable) Strong incident response and troubleshooting background; comfort operating in high-pressure environments Experience mentoring junior/mid-level engineers and building security culture within technical teams Desirable ...

IT Systems Engineer

Location
Kidlington, England, United Kingdom
corporate IT environment Support vulnerability remediation, endpoint security and technical cyber security controls Take an active role in security monitoring, vulnerability management and incident response Support the development of internal security operations capability as the UK IT function matures Contribute to the design and implementation of secure … with endpoint security, vulnerability remediation and patch‐management tooling Good understanding of cloud platforms, particularly Microsoft Azure Experience with security monitoring, vulnerability management or incident response Familiarity with SIEM, EDR/XDR or SOC tooling Strong troubleshooting, documentation and communication skills Qualifications Relevant degree, technical qualification, apprenticeship ...

Remote Incident Responder II — MDR & Forensics Expert

Location
Oxford, England, United Kingdom
Sophos is seeking an intermediate-level Incident Response Analyst to support its MDR customers within the Critical Incident Response Team. You will perform advanced investigative, forensic, and containment activities during active cyber incidents, mentoring junior analysts and producing customer-facing findings. You will operate with moderate … autonomy, serve as the technical backbone of engagements, and contribute to post-incident reviews while maintaining thorough documentation and timelines. #J-18808-Ljbffr ...

Senior Cyber Responder

Location
Milton Keynes, England, United Kingdom
customers we serve. This role offers the opportunity to further develop skills and expertise through on-the-job training, gain exposure to advanced incident response activities, and undertake digital forensics across a wide range of devices. Responsibilities include using, developing and designing approaches and tools to investigate … systems and infrastructures across our network, including applications, servers and laptops. The role also involves conducting scheduled tests and checks to monitor compliance with incident response and recovery plans, and taking responsibility for the task management of an Associate Cyber Responder. Additional responsibilities include analysing security breaches ...