201 to 225 of 856 Incident Response Jobs in the UK excluding London

Cyber Security Manager - Hybrid

Hiring Organisation
Ashdown Group
Location
Harrow, Middlesex, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £92,000 per annum
role, combining day-to-day security operations with strategic leadership. You will work directly with security technologies, investigate threats and incidents, improve detection and response capabilities, and work closely with technical teams and senior stakeholders. The role is hybrid, with 3 days per week in the organisation’s offices … threat detection, monitoring and threat-hunting capabilities using Sentinel and Defender. Identify vulnerabilities and security weaknesses and work with technical teams on remediation. Develop incident response playbooks, automation and security processes. Support security architecture and technical design reviews. Provide cyber security leadership and advice to senior management. Manage ...

Senior SOC Lead: Incident Response & Vulnerability Mgmt

Location
Farnborough, England, United Kingdom
United Kingdom, is seeking an experienced SOC Lead to oversee 24/7 security operations. You will direct shifts, mentor junior analysts and coordinate incident response using established playbooks to protect critical systems. The role emphasizes vulnerability management, security controls development, and ongoing threat intelligence. You will review ...

Head of Cyber Security

Location
Basingstoke, England, United Kingdom
security strategy, priorities, and outcomes, and provide authoritative security leadership to customer engagements, bids, and executive discussions that support strategic growth. 2. Security Operations & Incident Response Incident Leadership: Provide senior leadership during major cyber incidents, acting as the executive point of escalation and ensuring effective coordination, decision ...

Product Technical Lead: Exercise and Training

Hiring Organisation
Thales
Location
Crawley, Sussex, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Strong understanding of: ICS/SCADA environments Industrial operations and processes PLC/DCS/SIS environments Industrial networking Remote access in OT OT incident response Industrial safety considerations Knowledge of: Purdue model OT resilience principles High-availability operations Critical infrastructure environments Cyber Security Skills: OT threat landscape … awareness. Knowledge of: MITRE ATT&CK for ICS Adversary behaviours Industrial ransomware threats OT detection and monitoring concepts Incident response coordination. Risk communication and cyber awareness delivery. OT security governance and assurance understanding. Training & Facilitation Skills: Exercise facilitation and scenario management. Adult learning and instructional design principles. Development ...

SOAR Playbook Engineer

Location
Manchester, England, United Kingdom
optimise security automation solutions using Splunk SOAR and similar automation platforms. Your primary focus is playbook engineering, Python development, API integrations, and automated incident response workflows. In addition to automation engineering, you are responsible for deploying, maintaining and continuously improving MXDR solutions for our customers. You assess customer … learning are essential. We are looking for someone with experience across MXDR technologies, as well as a solid understanding of security monitoring, detection engineering, incident response, and platform integrations. As a customer-facing professional, you should be confident engaging with stakeholders at all organisational levels, both remotely ...

Hybrid Cyber Security Operations Lead | Incident Response

Location
Stockport, England, United Kingdom
/3 from home) with travel across the UK and reports to the security leadership. You will lead a team covering vulnerability management, EDR, incident response, phishing monitoring and broader security operations activity, partnering with senior stakeholders globally to translate technical activity into actionable business risk. #J ...

SOC Level 3 Technical Lead

Location
High Wycombe, Buckinghamshire, United Kingdom
regulators and law enforcement Mentor the analyst team and act as senior escalation point for major incidents What You'll Bring: 5+ years in incident response or SOC environments, ideally with managed services (MSSP) exposure A proven record leading complex investigations - ransomware and breach cases you can walk … advantage) A well-developed threat hunting toolkit: YARA rules, IOC development, timeline analysis and adversary profiling Cloud investigation experience - Azure and/or AWS incident response, log analysis and cloud-native threats The communication skills to translate deep technical findings for senior, non-technical audiences A natural mentoring ...

Infrastructure Engineer - Security Focus - Palo Alto

Hiring Organisation
hireful
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 45 K
Azure environments.You’ll work across servers, networks, storage, and security tools, contributing to infrastructure projects as well as cyber initiatives such as vulnerability management, incident response, and enhancing security controls. You’ll also collaborate with group security teams and help ensure systems remain resilient and up to date.Key … Tenable, Zscaler etc.)Palo Alto deployment/configuration experience is a mustGood understanding of firewalls, network protocols, and intrusion preventionAbility to manage vulnerability scanning, incident response, and remediationConfident communicator with solid documentation skillsThe role also covers an office in Milton Keynes and they might be occasional travel there ...

Marketing Experience - Senior Associate

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
maintain operational controls, including documented procedures, control testing and monitoring, exception management, and issue remediation with clear accountability Manage operational risk, including operational resilience, incident response, business continuity readiness, and timely escalation of emerging issues Serve as the regional single point of contact for platform operational performance, owning … Required Qualifications, Capabilities, and Skills Demonstrated experience leading operational teams, including people management, performance management, and workforce planning Proven experience managing operational risk, controls, incident response, and business continuity in a regulated environment Demonstrated experience driving continuous improvement using structured methodologies such as root-cause analysis with measurable ...

Team Lead – Panel Systems

Location
Manchester, England, United Kingdom
tooling, and platform improvements Hire and onboard engineers Run fair, well-calibrated performance reviews Establish and maintain engineering practices covering observability, testing, documentation, and incident response Ensure reliable, secure, and performant systems supporting panel engagement and data collection Represent the team’s work to Product and Engineering teams … Agile Methodologies Hard Skills Software Engineering Management Web Development Backend Systems Test Automation AI Tooling System Design Performance Reviews Technical Roadmapping Data Privacy Compliance Incident Response Soft Skills Clear Communication Stakeholder Engagement Mentoring Feedback Provision Career Development Support Certifications & Qualifications ISO 27001 Compliance Industry Keywords Data Privacy GDPR ...

Cyber Resilience Analyst

Hiring Organisation
Iceland Food Group
Location
Deeside, Flintshire, Wales, United Kingdom
Employment Type
Permanent
Cyber Governance, Risk, and Compliance Manager. This role focuses on defining, maintaining, and testing resilience plans for the organisation, including Business Continuity, Incident Response, and Disaster Recovery. You will work closely with multiple teams across the IT department and the wider business to ensure that resilience strategies … will include: Conducting analysis on business systems to understand and document the impact, scope, and recovery path in relation to cyber incidents. Contribution to incident reviews to ensure learnings are taken to improve our resilience. Identifying and escalating weaknesses in the resilience strategy. Working with project and change teams ...

Technical Sales Content Developer and Trainer for Europe (Barcelona, Spain/ Reading, UK)

Location
Reading, England, United Kingdom
drive business outcomes. Willingness to travel Fluency in English. Bonus Points: Hands‐on experience through delivering demos and POVs or in cybersecurity operations, incident response, digital forensics, or security‐focused AI infrastructure—providing the operational depth that elevates authored content beyond theoretical instruction. CrowdStrike Falcon certifications (e.g., CCFA … accommodation, please contact us at recruiting@crowdstrike.com for further assistance. , Bonus Points: Hands‐on experience through delivering demos and POVs or in cybersecurity operations, incident response, digital forensics, or security‐focused AI infrastructure—providing the operational depth that elevates authored content beyond theoretical instruction. CrowdStrike Falcon certifications (e.g. ...

Detection Engineer (Cybersecurity)

Location
Glasgow, Scotland, United Kingdom
defend Morgan Stanley Network. The Cyber, Data, Risk and Resilience (CDRR) division provides first-line defences for information and cyber security, fraud, resilience, response and recovery, and technology risk and controls. The organization also includes Morgan Stanley's Firmwide Data Office, International Technology offices, and the Non-Financial Risk … bring to the role: 3-5 years of experience directly in Cybersecurity related fields (Hunt, Intelligence, Detection Engineering, Blue Teaming, Pen testing, Incident Response, SOC Operations, Cyber Risk) or relevant educational experience. Ability to work with customers, gather requirements and distil them into complete solutions. Detailed understanding ...

Cyber Resilience Analyst

Location
Chester, England, United Kingdom
report to the Cyber Operations and Engineering Manager. This role focuses on defining, maintaining, and testing resilience plans for the organisation, including Business Continuity , Incident Response , and Disaster Recovery . You will work closely with multiple teams across the IT department and the wider business to ensure that … will include: Conducting analysis on business systems to understand and document the impact, scope, and recovery path in relation to cyber incidents. Contribution to incident reviews to ensure learnings are taken to improve our resilience. Identifying and escalating weaknesses in the resilience strategy. Working with project and change teams ...

Security Consultant (Supply Chain)

Hiring Organisation
Lloyds Banking Group
Location
Edinburgh, Midlothian, United Kingdom
Salary
£ 60 K
responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you’ll operate at the intersection of threat intelligence, incident response and supplier risk. You’ll use data, tooling and insight to detect and analyse threats, translating complex findings into clear, actionable advice that … influence how security is designed, embedded and continuously improved.You’ll play a key role in strengthening our approach to supply chain threat management—supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you’ll operate within agile ways of working and explore ...

Security Consultant (Supply Chain)

Hiring Organisation
Lloyds Banking Group
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 60 K
responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you’ll operate at the intersection of threat intelligence, incident response and supplier risk. You’ll use data, tooling and insight to detect and analyse threats, translating complex findings into clear, actionable advice that … influence how security is designed, embedded and continuously improved.You’ll play a key role in strengthening our approach to supply chain threat management—supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you’ll operate within agile ways of working and explore ...

Security Consultant (Supply Chain)

Hiring Organisation
Lloyds Banking Group
Location
Leeds, West Yorkshire, United Kingdom
Salary
£ 70 K
responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you’ll operate at the intersection of threat intelligence, incident response and supplier risk. You’ll use data, tooling and insight to detect and analyse threats, translating complex findings into clear, actionable advice that … influence how security is designed, embedded and continuously improved.You’ll play a key role in strengthening our approach to supply chain threat management—supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you’ll operate within agile ways of working and explore ...

Security Consultant (Supply Chain)

Location
Leeds, England, United Kingdom
responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you'll operate at the intersection of threat intelligence, incident response and supplier risk. You'll use data, tooling and insight to detect and analyse threats, translating complex findings into clear, actionable advice that … security is designed, embedded and continuously improved. You'll play a key role in strengthening our approach to supply chain threat management-supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you'll operate within agile ways of working and explore ...

Cyber Security Compliance Officer

Hiring Organisation
Venesky Brown
Location
Glasgow, Scotland, United Kingdom
policies and procedures relating to Information Governance and security in safeguarding the confidentiality of personal data throughout the organisation. - Support investigations and local response to Information and Cyber Security incidents which take place on computers, networks, information systems or contain data; liaising with Police Scotland, Counter Fraud Services, Central … defence technologies, as well as others linked to partner organisations or suppliers e.g. cloud hosted information systems. - Assist in the maintenance of the Incident Response Plan and Cyber Awareness Strategy as part of requirements of the Cyber Resilience Framework. - Be a member of the Board’s Information Governance ...

Security Operations Team Leader

Hiring Organisation
Nigel Wright Group
Location
Darlington, County Durham, United Kingdom
Employment Type
Full-Time
Salary
£80,000 per annum
primary contact for the managed SOC and wider security vendors. Running vendor reviews, SLA management and service improvement activities. Overseeing BAU security operations and incident response activities. Supporting threat investigations and false positive analysis. Improving security processes, documentation and operational playbooks. Participating in an on-call rota (approximately … Microsoft Sentinel Microsoft Defender Microsoft Entra Conditional Access Azure Security controls Experience managing third-party security vendors and outsourced SOC services. Strong security operations, incident response and alert management experience. Ability to lead, influence and professionally challenge where required. ...

InfoSec Analyst, Europe: Incident Response & Compliance

Location
Farnborough, England, United Kingdom
risk assessments, and support audits including EASA Part-IS, collaborating with global teams and stakeholders. The role also offers exposure to multi-cloud platforms, incident response, and governance across a premium private aviation group, with on-call duties and opportunities to advance #J-18808-Ljbffr ...

On-Call DFIR Lead - Cyber Operations & Incident Response

Location
Knutsford, England, United Kingdom
seeking a DFIR Lead Cyber Operations Analyst at VP level in Knutsford. In this key role, you will deliver advanced digital forensics and incident response while leading complex investigations. You will collaborate with internal teams and law enforcement, and produce clear reports under pressure. Ideal candidates will have ...

OT/IoT Security Lead — Build & Own Security Capability

Location
West Midlands, England, United Kingdom
organization's OT/IoT security capability from the ground up. You will define strategy, roadmap, and operating model, owning governance, tooling and incident response for OT/IoT environments. You will work cross-functionally with Threat Intelligence, Incident Response, Vulnerability Management, GRC and Security Architecture ...

Senior Cyber Responder

Hiring Organisation
FCDO
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent
Salary
£40,000
customers we serve. This role offers the opportunity to further develop skills and expertise through on-the-job training, gain exposure to advanced incident response activities, and undertake digital forensics across a wide range of devices. Responsibilities include using, developing and designing approaches and tools to investigate … systems and infrastructures across our network, including applications, servers and laptops. The role also involves conducting scheduled tests and checks to monitor compliance with incident response and recovery plans, and taking responsibility for the task management of an Associate Cyber Responder. Additional responsibilities include analysing security breaches ...

Senior Cyber Responder

Hiring Organisation
FCDO
Location
Northampton, England, United Kingdom
customers we serve. This role offers the opportunity to further develop skills and expertise through on-the-job training, gain exposure to advanced incident response activities, and undertake digital forensics across a wide range of devices. Responsibilities include using, developing and designing approaches and tools to investigate … systems and infrastructures across our network, including applications, servers and laptops. The role also involves conducting scheduled tests and checks to monitor compliance with incident response and recovery plans, and taking responsibility for the task management of an Associate Cyber Responder. Additional responsibilities include analysing security breaches ...