151 to 175 of 856 Incident Response Jobs in the UK excluding London

Security Analyst | Cyber Security | Hybrid

Hiring Organisation
Cyber Talent Limited
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
security awareness and phishing simulation programmes. Maintain ISO 27001 , Cyber Essentials , and Cyber Essentials Plus compliance. Produce security metrics , dashboards , and executive reporting. Lead incident response and continuous security improvement. Conduct third-party security assessments and vendor assurance . Requirements 4+ years' experience in a cyber security … skills across complex IT environments. Proactive approach to security , with a focus on continuous improvement and best practice . Experience leading or supporting security incident response and remediation . Strong reporting , analysis , and security metrics capabilities. Excellent communication , stakeholder engagement , and documentation skills. Benefits Excellent salary Pension Private ...

Security Engineer

Hiring Organisation
Reed
Location
Redhill, Surrey, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £52,500 per annum, Inc benefits
customer-facing network environments. This is an excellent opportunity for a cybersecurity professional who enjoys working across network security, threat management, vulnerability assessment and incident response within a technically challenging environment. The Role As a Security Engineer, you'll play a key role in maintaining, improving and protecting … development of security policies, procedures and standards Providing cybersecurity guidance to engineering and IT teams Maintaining SIEM, IDS and IPS technologies Contributing to incident response and security management processes Producing technical documentation and security reports Supporting continuous improvement of network and information security controls About ...

Product Security Engineer

Location
Manchester, England, United Kingdom
real control rather than a manifest scan, build-pipeline isolation, third-party risk as runtime telemetry. When the next big supply-chain incident lands, we should know within hours whether it touches us. Detect, respond, contain Runtime detection that catches what actually happens, not what a vendor template guesses … might. Incident response codified as automation: containment, rotation, isolation, evidence capture. Forensics tooling that works on our stack. Adversary emulation against our real attack surface. The metric is mean-time-tocontain, not control coverage. Secure the agentic development surface Our engineers ship with AI agents in the loop ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
Surbiton, Surrey, St. Mark's, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£490 - £495/day £495pd, Outside IR35
deployment, testing, go-live and ongoing operational support. Work with technical and non-technical stakeholders to deliver secure and practical outcomes. Support security monitoring, incident response and continuous improvement initiatives. Contribute to security architecture reviews and technology roadmap discussions. Ensure security controls remain effective across both cloud … Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates who can demonstrate experience of: Assessing technical ...

Cyber Security & Infrastructure Engineer

Hiring Organisation
Adria Solutions
Location
Newcastle-upon-Tyne, Tyne and Wear, North East, United Kingdom
Employment Type
Permanent
Salary
£50,000
their systems, networks and data. This is a hands-on position offering the opportunity to work across cyber security, infrastructure, cloud, threat detection and incident response within a small, technically capable IT team. The Role As Cyber Security & Infrastructure Engineer, you will be responsible for maintaining and improving … with internal teams and third-party suppliers to improve security, resilience and operational performance. Key Responsibilities Monitor security alerts, investigate potential incidents and lead incident response activities Conduct forensic investigations and contribute to threat detection and intelligence activities Develop and refine security monitoring, detection rules and use cases ...

AWS Security Incident Response Engineer

Location
Manchester, England, United Kingdom
Amazon EU SARL (UK Branch) is seeking technical Security Engineers for AWS Security Incident Response to learn rapidly and work in teams to keep customers secure. You will lead security response, explain concepts to non-technical audiences, and operate with AWS technologies at scale. Responsibilities include threat … triage, incident handling, and collaboration with partner teams, with on-call duties and commitment to continual learning and improvement of security controls. #J-18808-Ljbffr ...

Cyber Security Engineer

Hiring Organisation
Morgan Hunt Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£390.00 - £430.00 per day
maintain the organisation's cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security , while also providing security advice to technology projects and supporting security-by-design principles. … knowledge of Microsoft Security technologies . Experience with Microsoft 365, Entra ID, Intune and Defender . Knowledge of SIEM/SOAR, vulnerability management and incident response . Understanding of cloud security and network security principles . Experience supporting security assessments, audits and penetration testing. Knowledge of security frameworks ...

Data Platform Engineer

Hiring Organisation
Norton Rose Fulbright LLP
Location
Newcastle Upon Tyne, Tyne and Wear, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
keep the platform reliable, observable, governed and ready for controlled production use. Its emphasis is on platform health, support processes, quality assurance, release readiness, incident response and continual service improvement. The successful candidate will work closely with Architecture, Information Security, Service Delivery, Infrastructure, suppliers and consuming business teams … Manage incidents, problems, and service requests in line with established ITSM processes. Investigate and resolve operational issues, ensuring timely restoration of service. Support major incident response activities where platform services are impacted. Contribute to root cause analysis and implement actions to improve platform stability and reduce issue recurrence. ...

Cyber Security Manager

Hiring Organisation
SAAB
Location
Fareham, Hampshire, United Kingdom
Salary
£ 70 K
wider government standards.Act as the Saab UK representative on the Global Cyber Council.Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process.Manage incident response and coordinate with other company parties.Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST.Responsible for the completion … environments.Strong knowledge of classified information handling and secure communication protocols.Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems.Proven track record of leading incident response in high-security environments.Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR).Excellent leadership, stakeholder management ...

Senior SOC Analyst

Hiring Organisation
Searchability NS&D
Location
Farnborough, England, United Kingdom
improve detection capabilities and contribute to the ongoing maturity of the SOC. You will also: Monitor and investigate security events across enterprise environments Perform incident response activities and support remediation efforts Analyse network traffic, endpoint activity and system logs Improve detection rules using MITRE ATT and CK techniques … application to our client in conjunction with this vacancy only. Key Skills SOC Analyst, Senior SOC Analyst, Security Operations Centre, Microsoft Sentinel, Splunk, SIEM, Incident Response, Threat Detection, Cyber Security, MITRE ATT and CK, Blue Team ...

SIEM Security Engineer

Location
Birmingham, England, United Kingdom
ingestion of our security information and event management (SIEM) system. Your focus will be on leveraging Elasticsearch and related technologies to enhance threat detection, incident response, and overall security posture. The role is hybrid (3 days in office) & based in Birmingham What you’ll be doing Data Ingestion … performance of the SIEM infrastructure. Security Engineering Contribute to security engineering projects, transitions, and transformations. Work closely with security operations and associated security incident response systems Stay informed about emerging threats and security best practices. Essential Skills/Experience Proven experience in SIEM Detection Engineering. Experience using cyber ...

IT Systems Engineer

Location
Kidlington, England, United Kingdom
corporate IT environment Support vulnerability remediation, endpoint security and technical cyber security controls Take an active role in security monitoring, vulnerability management and incident response Support the development of internal security operations capability as the UK IT function matures Contribute to the design and implementation of secure … with endpoint security, vulnerability remediation and patch‐management tooling Good understanding of cloud platforms, particularly Microsoft Azure Experience with security monitoring, vulnerability management or incident response Familiarity with SIEM, EDR/XDR or SOC tooling Strong troubleshooting, documentation and communication skills Qualifications Relevant degree, technical qualification, apprenticeship ...

SOC Manager

Location
Glasgow, Scotland, United Kingdom
organisations strengthen their security posture, protect critical assets, and deliver high-quality digital solutions. Our teams operate across multiple specialist disciplines, including Digital Forensics, Incident Response, SOC Operations, Quality & Compliance, and Technical Consultancy. We are committed to excellence, continuous improvement, and delivering trusted, customer-focused services that meet … complex transition projects (e.g., insourcing, offshore in-shore). Operational familiarity with CREST, NIS2, DORA, and the EU AI Act. Hands-on experience leading incident response, threat hunting, and investigations. Broad technical knowledge across Windows, Linux, cloud, hybrid environments, firewalls, EDR/XDR, IDS/IPS, VPNs ...

SOC Manager

Location
Birmingham, England, United Kingdom
organisations strengthen their security posture, protect critical assets, and deliver high-quality digital solutions. Our teams operate across multiple specialist disciplines, including Digital Forensics, Incident Response, SOC Operations, Quality & Compliance, and Technical Consultancy. We are committed to excellence, continuous improvement, and delivering trusted, customer-focused services that meet … complex transition projects (e.g., insourcing, offshore in-shore). Operational familiarity with CREST, NIS2, DORA, and the EU AI Act. Hands-on experience leading incident response, threat hunting, and investigations. Broad technical knowledge across Windows, Linux, cloud, hybrid environments, firewalls, EDR/XDR, IDS/IPS, VPNs ...

SOC Analyst

Location
Harlow, England, United Kingdom
Requirements: 2-3+ years' SOC experience Strong hands-on experience with IBM QRadar SIEM Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable Ability to work independently and manage complex cyber investigations … Technical Exposure: IBM QRadar Microsoft Defender/EDR Microsoft Sentinel (desirable) Microsoft Entra ID/Azure AD Email threat response Incident Experience: Phishing & Business Email Compromise Malware & Ransomware Account Compromise Privilege Escalation Insider Threats DLP & Data Exfiltration Alerts Suspicious Authentication Activity Knowledge of: MITRE ATT&CK, Cyber Kill ...

Senior Security Operations Analyst

Hiring Organisation
DGH Recruitment
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£90,000
root cause analysis, and implementation of corrective actions to maintain service reliability and security. Required Skills: * 5+ years in Security Operations/SOC or Incident Response, including in a 247 or global environment. * Proven experience across incident response, alert triage, threat hunting, data loss prevention ...

OT/Marine Cyber Security Engineer

Location
Southampton, England, United Kingdom
containment design, so that the impact of any single compromise across autonomous, robotic and vessel systems is limited by design. Lead OT and vessel incident response, from identification through containment and recovery to post-incident review, in coordination with the wider Cyber team and vessel stakeholders. … Practised in applying IEC 62443 zones and conduits, or an equivalent OT security standard, to systems in service rather than on paper; Confident leading incident response in an operational environment, from identification through containment and recovery to post-incident review; Experienced in acting as the technical security ...

Senior Security Operations Analyst

Location
Leeds, England, United Kingdom
root cause analysis, and implementation of corrective actions to maintain service reliability and security. Required Skills: 5+ years in Security Operations/SOC or Incident Response, including in a 24×7 or global environment. Proven experience across incident response, alert triage, threat hunting, data loss prevention ...

Cyber Security Consultant

Location
Aberdeen City, Scotland, United Kingdom
information security programmes. Ability to provide credible cyber security advice to both technical and non-technical stakeholders. Experience working across security architecture, cyber engineering, incident response or closely related cyber security disciplines. Strong understanding of information security controls, risk management and security governance principles. Excellent communication and presentation … solutions. Commitment to continuous professional development and staying current with evolving cyber threats and technologies. Experience in a cyber security architecture, senior engineering or incident response role. Professional certifications such as CISSP, CISM, C-CISO, CISA or equivalent industry-recognised accreditation. Experience delivering virtual CISO (vCISO) services. Experience ...

Senior SOC Analyst — Incident Response Lead

Location
North East, England, United Kingdom
seeking a Senior SOC Analyst - Incident Response to lead complex, high-severity investigations across a large enterprise. You will own investigations end-to-end, shape critical response decisions and strengthen detection, containment and lessons across the organisation. Reporting to the SOC Manager, you will mentor junior analysts ...

Security & Network Engineer - 12 months Fixed term

Location
Maidenhead, England, United Kingdom
/CD pipelines Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones) Manage incident response for critical infrastructure events; lead post-mortems and remediation Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security … configuration management (Ansible, etc.) Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable) Strong incident response and troubleshooting background; comfort operating in high-pressure environments Experience mentoring junior/mid-level engineers and building security culture within technical teams Desirable ...

Threat Intelligence Lead

Hiring Organisation
Iberdrola
Location
Glasgow, Lanarkshire, United Kingdom
Salary
£ 60 K
role you will be responsible for monitoring the threat landscape, analysing emerging risks, and delivering timely intelligence that supports Security Operations Centre (SOC) activities, incident response, threat hunting, detection engineering, risk management and the wider business. You will assess adversary tactics, techniques and procedures (TTPs), develop intelligence … aligned to real-world adversary tradecraft. You will help transform intelligence into actionable decisions, strengthen monitoring capabilities and drive improvement across the detection and response lifecycle. There will also be the chance to research new and specialist techniques, working cross industry, and helping to shape our OT LAB.You will ...

Threat Intelligence Lead

Location
Glasgow, Scotland, United Kingdom
role you will be responsible for monitoring the threat landscape, analysing emerging risks, and delivering timely intelligence that supports Security Operations Centre (SOC) activities, incident response, threat hunting, detection engineering, risk management and the wider business. You will assess adversary tactics, techniques and procedures (TTPs), develop intelligence … aligned to real-world adversary tradecraft. You will help transform intelligence into actionable decisions, strengthen monitoring capabilities and drive improvement across the detection and response lifecycle. There will also be the chance to research new and specialist techniques, working cross industry, and helping to shape our OT LAB. ...

Core Infrastructure Network Engineer

Location
Leeds, England, United Kingdom
teams (client networking and virtualization) to support infrastructure projects and support issues. Participate in out-of-hours on-call rota, providing operational support and incident response outside of standard business hours Provide networking expertise to support virtualization platforms, including: VMware vSphere/ESXi Microsoft Hyper-V Nutanix Participate … network architecture reviews, capacity planning, and performance tuning Create and maintain technical documentation, network diagrams, and operational procedures Support change management, incident response, and root cause analysis Work effectively as part of a global, remote team, including occasional out-of-hours support if required. Required Skills & Experience CCNA ...

Security Operations Lead - Incident Response & Compliance

Location
Glasgow, Scotland, United Kingdom
Aggreko in Glasgow is seeking a Security Operations Team Lead to steer a global security operations function, drive incident response, and lead strategic security initiatives across the organisation. You will manage agile teams, align with ISO27001, Cyber Essentials Plus, NIS-2 and SOX audits, and hands ...