176 to 200 of 856 Incident Response Jobs in the UK excluding London

Senior SOC Analyst | SIEM, Incident Response, SC Cleared

Location
West Midlands, England, United Kingdom
busy team in the United Kingdom. You will bring a minimum of five years' SOC experience, mentor junior staff, and contribute to rapid incident response and threat detection. This role emphasizes hands-on SIEM work (Splunk, MS Sentinel), log analysis (Wireshark), and strong knowledge of Windows and Linux ...

IT Infrastructure and Security Engineer · Colchester ·

Location
Colchester, England, United Kingdom
troubleshooting and resolution in line with SLAs Create and maintain technical documentation, policies, and procedures, ensuring smooth handover to Service Desk teams. Lead the incident response lifecycle, including managing security incidents and data breach containment, eradication, and post-mortem analysis. Serve as a dedicated Tier 3 escalation point … framework. Monitor, investigate, and remediate security alerts, incidents, and Indicators of Compromise (IOCs). Conduct threat analysis to address new and emerging risks; deploy response strategies to mitigate vulnerabilities. Manage and optimise security tools, including Next-Gen SIEM, SOAR, EDR/MDR/XDR, and cloud security solutions (CASB ...

Boundary Service Lead

Hiring Organisation
Sanderson Government and Defence
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
availability, security and resilience of key network services. Key Responsibilities Lead the delivery of secure network boundary services and operations. Manage security monitoring, incident response and service performance. Oversee boundary security technologies including firewalls, IDS/IPS and related security controls. Drive continuous service improvement and operational excellence. … leadership experience managing security operations or managed service teams. Strong knowledge of enterprise firewalls, IDS/IPS, SIEM and threat monitoring technologies. Experience leading incident response and service delivery within secure environments. Excellent stakeholder management and communication skills. Desirable Experience within Defence, Government or National Security environments. Certifications ...

Security Engineer

Location
Belfast City District, Northern Ireland, United Kingdom
Glance Founding UK member of the security organisation at a fast-growing, next-generation cloud security platform Specialism in MDR, detection engineering, incident response, and cloud threat analysis (AWS, GCP, or Azure) Hybrid, Belfast-based ... 3 days per week in office ... must already be based … confident engaging directly with customers under pressure. Key Responsibilities Own UK-hours MDR coverage independently, taking end-to-end responsibility for monitoring, triage, and response Lead in-depth security investigations across supply chain, API, malware, and runtime attack scenarios, documenting outcomes and building playbooks Handle complex and critical incidents ...

Security Engineer

Location
Luton, England, United Kingdom
easyJet's information and information systems through effective security engineering, tooling and technical controls. Working closely with colleagues across Technology, Security Operations and Incident Response, you'll help ensure our security services remain resilient, effective and ready to support the evolving needs of the business. THE ROLE … security control improvement activities. Producing and maintaining technical documentation, runbooks and operational guidance. Supporting security investigations and remediation activities alongside Security Operations and Incident Response teams. Providing security-focused technical support and consultancy to Technology teams across the business. Contributing to the development and delivery of the security ...

Cybersecurity Engineer - Belfast

Location
Belfast City District, Northern Ireland, United Kingdom
technical expertise across Data and Database Security within complex enterprise environments Configure, maintain and optimise security platforms and policies Analyse security events and support incident response and root-cause analysis Troubleshoot complex technical and security issues Support the deployment and configuration of security solutions across on-premise …/NoSQL databases Understanding of Data or Database Security Cloud infrastructure and security , ideally within AWS, Azure or GCP Security engineering, technical troubleshooting or incident response Web and application security, including familiarity with the OWASP Top 10 Networking fundamentals including TCP/IP, HTTP/ ...

Senior Security Operations Analyst

Hiring Organisation
We Are Fr Group
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£65,000
fintech. They're looking for a Senior Security Operations Analyst to sit at the heart of their Information Security function, owning threat detection and incident response at real scale. Senior Security Operations Analyst Salary - £54,000 - £65,000 + bonus Location - Manchester or Leeds - Hybrid The opportunity SIEM … Networks, DevOps and an outsourced SOC. Threat intelligence & hunting - monitor intelligence from multiple sources, identify trends and emerging threats, and lead coordinated hunting activity. Incident response - analyse, contain, and remediate security incidents, communicating clearly across teams and escalating where needed. EDR - day-to-day interaction with the Endpoint ...

Security Consultant

Hiring Organisation
BAE SYSTEMS
Location
Camberley, Surrey, United Kingdom
Salary
£ 70 K
assessments.Advise client’s on improving their supplier assurance risk management processes.Understand cyber threats and able to utilise threat intelligence for assessments.Participate in supplier security incident response, with a focus on assessment of impact and working in concert with the Incident Response (IR) Team to develop risk ...

Application Security Engineer

Hiring Organisation
Lorien
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£500.00 - £600.00 per day
hands-on Application Security Engineer to join a growing cyber engineering team. You'll play a key role in vulnerability remediation, security incident response, identity and secrets management, and security automation across cloud and application environments. Key Responsibilities Manage the end-to-end HackerOne lifecycle, from triage … remediation and closure. Support security incident investigations and implement effective fixes. Provide guidance on Okta and Doppler integrations and best practices. Design and build security automation to improve scale and efficiency. Partner with the Director of Cybersecurity on AppSec, DevSecOps, and cloud security initiatives. Required Experience Hands-on experience ...

WAF Security Engineer

Location
Manchester, England, United Kingdom
code approaches Contribute to platform modernisation, service improvements, refactoring, automation and technical-debt reduction Improve monitoring, alerting and telemetry to strengthen platform reliability and incident response Support diagnosis and resolution of major incidents with Security Engineering, Network and Cloud teams Embed secure-by-design patterns and guardrails Produce … including design, implementation, and optimization of security controls. Proficient in Infrastructure as Code, CI/CD pipelines, and automation to enhance platform reliability and incident response. Highest-signal resume keywords Web Application Firewall (WAF) Technologies Infrastructure as Code (IaC) CI/CD Pipelines Application Security Python Scripting Hard Skills ...

Director of IT , Systems and Security

Location
Loughborough, England, United Kingdom
infrastructure and technology risk through appropriate controls, policies and assurance processes. Own cyber security standards, access controls, data protection controls, technical risk management and incident response planning. Ensure systems and suppliers support data protection requirements, secure handling of information and appropriate audit trails. Monitor technology risks, vulnerabilities, system … infrastructure and platforms are reliable, resilient, secure and able to support business continuity. Oversee disaster recovery, backup, access management, technical controls, system monitoring and incident response processes. Ensure appropriate documentation is maintained for key systems, infrastructure, integrations, permissions and technical processes. Maintain clear standards for system availability, support ...

SOC Team Lead

Location
Aylesbury, England, United Kingdom
Aylesbury | Days Only Mon-Friday - 2 days WFH | Technical Leadership | Major Incident Response If you're the person everyone turns to when a security incident gets serious, this could be the role you've been waiting for. I'm working with a growing Managed Security Services Provider … technical leaders within the team. This isn't a role where you'll be watching dashboards all day. You'll be leading major incident investigations, driving threat hunting activity, improving detection capabilities and helping shape the future direction of the SOC. What you'll be doing: Leading investigations into ...

Senior DFIR / Incident Response / Digital Forensics

Location
Knutsford, England, United Kingdom
DFIR Lead Cyber Operations Analyst , a VP-level role at the centre of the bank’s cyber defence, delivering advanced digital forensics and incident response. You will analyse malware, malicious samples and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This … support may be required, including extended hours and weekend work. To be successful in this role, you will need the following: Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with ...

Senior SOC Incident Response Lead

Location
Manchester, England, United Kingdom
Manchester seeks a Senior SOC Analyst - Incident Response to lead and coordinate complex, high-severity security incidents across a large enterprise. Reporting to the SOC Manager, you will own investigations end to end and shape critical response decisions. This role goes beyond alert triage, requiring hands ...

Senior Platform Engineer

Location
Warminster, England, United Kingdom
simulation and training systems, as well as existing deployment and virtualisation tools. Apply SRE practices to improve system reliability, including observability (metrics, logs, tracing), incident response, and root cause analysis. What We Are Looking For: This is not a pure cloud or greenfield platform role. You will … infrastructure. Experience in developing with Go or Python as well as shell scripting. Experience applying Site Reliability Engineering (SRE) practices such as monitoring, alerting, incident response, and service reliability improvement. Note: Please feel empowered to apply for this position, even if you think you may only align with ...

Threat Intelligence Analyst

Hiring Organisation
Everywhen, part of the Ardonagh Group
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
closely with our internal and external security operations teams, you will anticipate, assess and mitigate threats. The intelligence you provide will support strategic decisions, incident response and continuous improvements to our cyber resilience. This pivotal Cyber Security role requires strong technical expertise, intelligence capability and commercial awareness within … business insights. MITRE ATT&CK training/certification is essential . Experience developing Priority Intelligence Requirements (PIRs). Strong experience working closely with SOC, Incident Response, Vulnerability Management, Security Engineering and Risk. Experience managing the end-to-end intelligence lifecycle. Significant Cyber Threat Intelligence (CTI) or closely related ...

Head of Security, Risk & Compliance (Global Remit)

Location
Fareham, England, United Kingdom
comprehensive global framework covering: Security Leadership Developing and delivering SYOS's global security strategy. Establishing governance across personnel, facilities, operations and programmes. Leading security incident response and protective security measures. Ensuring compliance with customer, government and national security requirements. Creating a global travel security programme. Conducting country … destination risk assessments. Managing support for colleagues travelling to higher-risk locations. Overseeing emergency communications and incident response capabilities. Information Security & Cyber Governance Providing executive oversight of cyber security and information assurance. Partnering with Technology and Engineering teams to embed security into products and systems. Supporting customer audits ...

Senior Security Specialist - Threat Hunting

Hiring Organisation
Yolk Recruitment Limited
Location
Cardiff, South Glamorgan, Wales, United Kingdom
Employment Type
Permanent
Wales. Essential Requirements Degree (or equivalent experience) in Cyber Security, IT or a related technical discipline. Strong knowledge of cyber security operations, threat hunting, incident response and security monitoring. Experience with SIEM platforms (ideally Microsoft Sentinel), KQL or similar analytics tools. Good understanding of cloud, endpoint, identity, network … application security. Knowledge of security frameworks such as NIST or ISO 27001. Experience Proven experience in cyber security operations, SOC, incident response or threat hunting within a complex environment. Experience analysing security events and telemetry from multiple sources. Experience improving detection capabilities, developing security use cases and tuning ...

Principal Software Engineer-AI

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
agentic runtime, auth, data retrieval, eval tooling) Experience running AI systems in production at scale, including observability, cost and capacity planning, regression detection, and incident response for AI-powered applications Experience operating production distributed systems on AWS/Azure, with a strong grasp of reliability, observability, and incident response at scale Deep knowledge of cloud-native technologies, serverless applications, event-driven architectures, data and inference pipelines, relational, NoSQL, and vector databases, and modern software architecture patterns Proven track record of owning multi-year technical strategy and architectural roadmaps, guiding teams from AI prototype through production deployment ...

Delivery Manager

Location
Wokingham, England, United Kingdom
solutions are ready for live operation with CNI and operational support teams Embed operational considerations early to minimise operational risk Coordinate communication, change impact, incident preparedness and release readiness Coordinate transition into service, support arrangements, training and business readiness Support deployed applications and platforms Improve operational handovers, service acceptance … incident response mechanisms Requirements Strong delivery leadership experience in multi-team, multi-vendor technology environments Ability to manage complex dependencies across multiple teams and suppliers Excellent understanding of business and operational objectives and stakeholder landscapes Proven delivery governance capability, including RAID management, milestone planning, reporting, roadmap alignment ...

EU Cyber Resilience Lead – Incident Response

Location
Farnborough, England, United Kingdom
Hampshire) seeks an Operational Security Manager to join the Solutions & Services Group. You will collaborate with global engineering teams to align security standards, manage incident response, and ensure regulatory reporting across EU and UK contexts. You will lead cross-functional incident handling, coordinate with Cybersecurity, Product Security ...

Information Security Manager

Location
Bedford, England, United Kingdom
ISMS and ISO 27001, lead/support security audits, risk and assurance activities, and work with technical teams across vulnerability management, patching, penetration testing, incident response and infrastructure security. You'll also have involvement across supplier assurance, Cyber Essentials, business continuity, disaster recovery, DPIAs, BIAs, security policies … Policies, Controls, Compliance and Assurance. Technical Security: Infrastructure Security, Network Security, Vulnerability Management, Patch Management, Penetration Testing, IAM, Endpoints and Cloud Security. Security & Resilience: Incident Response, Cyber Essentials, Supplier Assurance, Business Continuity and Disaster Recovery. Technical Background: Infrastructure, Networks, Security Engineering, IT Operations, Cyber Security or SaaS/ ...

Resilience Crisis Lead

Location
Glasgow, Scotland, United Kingdom
drive resilience through planning, training, exercises and continuous improvement. You will support the development of SPEN's crisis management framework, ensuring plans, playbooks and response processes remain effective, tested and aligned with regulatory requirements and industry best practice. The role will also involve coordinating crisis response activities, supporting … with experience in cyber security, operational resilience, crisis management, emergency planning or a related field. You will have a strong understanding of cyber threats, incident response and resilience principles, along with experience coordinating activities across multiple teams and stakeholders. Confidence in facilitating exercises, engaging senior leaders and producing ...

Technical Support Manager

Location
Cambridge, England, United Kingdom
team's time-zone spread to ensure responsive support well beyond any single region. This position owns end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and executive‐level support. The Technical Support Manager will drive continuous improvement of support workflows, knowledge bases … coverage model using EMEA and India working hours, with well‐defined cross‐region handoff processes Own end‐to‐end employee support operations including incident response, request fulfillment, onboarding, offboarding, and white‐glove support for leadership Define and maintain SLAs and quality standards; track and report on ticket volume ...

Technical Support Manager

Hiring Organisation
Roku
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 100 K
team's time-zone spread to ensure responsive support well beyond any single region. This position owns end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and executive-level support. The Technical Support Manager will drive continuous improvement of support workflows, knowledge bases … coverage model using EMEA and India working hours, with well-defined cross-region handoff processesOwn end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and white-glove support for leadershipDefine and maintain SLAs and quality standards; track and report on ticket volume, resolution time ...