26 to 50 of 856 Incident Response Jobs in the UK excluding London

Cyber Defence Senior Analyst

Hiring Organisation
A&O Shearman
Location
Downpatrick, County Down, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team … firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence ...

Senior Specialist Engineer - Networks

Hiring Organisation
National Health Service
Location
Liverpool, Merseyside, United Kingdom
Salary
£ 60 K
configured, resilient, secure, and performant. Beyond day-to-day operational responsibilities, the role carries explicit accountability for network architecture, strategic design, and cross-functional incident response.This role also attracts a market pay supplement of 6650 per annum (to be reviewed in February 2027).Main duties of the jobOwn … teams.Manage routing, switching, wireless, WAN, load balancing, IPAM, DNS and DHCP services, alongside Extreme Networks Fabric Engine, Site Engine and wireless platforms.Network Security, Resilience & Incident ManagementProvide technical leadership for network security and operational resilience across the UKHSA estate.Administer Palo Alto NGFW, Panorama, VPN, micro-segmentation, DMZ and Zero Trust ...

Senior Specialist Engineer - Networks

Hiring Organisation
National Health Service
Location
Leeds, West Yorkshire, United Kingdom
Salary
£ 70 K
configured, resilient, secure, and performant. Beyond day-to-day operational responsibilities, the role carries explicit accountability for network architecture, strategic design, and cross-functional incident response.This role also attracts a market pay supplement of 6650 per annum (to be reviewed in February 2027).Main duties of the jobOwn … teams.Manage routing, switching, wireless, WAN, load balancing, IPAM, DNS and DHCP services, alongside Extreme Networks Fabric Engine, Site Engine and wireless platforms.Network Security, Resilience & Incident ManagementProvide technical leadership for network security and operational resilience across the UKHSA estate.Administer Palo Alto NGFW, Panorama, VPN, micro-segmentation, DMZ and Zero Trust ...

Senior Specialist Engineer - Networks

Hiring Organisation
National Health Service
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 60 K
configured, resilient, secure, and performant. Beyond day-to-day operational responsibilities, the role carries explicit accountability for network architecture, strategic design, and cross-functional incident response.This role also attracts a market pay supplement of 6650 per annum (to be reviewed in February 2027).Main duties of the jobOwn … teams.Manage routing, switching, wireless, WAN, load balancing, IPAM, DNS and DHCP services, alongside Extreme Networks Fabric Engine, Site Engine and wireless platforms.Network Security, Resilience & Incident ManagementProvide technical leadership for network security and operational resilience across the UKHSA estate.Administer Palo Alto NGFW, Panorama, VPN, micro-segmentation, DMZ and Zero Trust ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£85.00 per hour
ongoing and long-term thereafter) IR35 status: Inside IR35 (Umbrella) Cyber Threat Operations Specialist Job Description: An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting … cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
ongoing and long-term thereafter) IR35 status: Inside IR35 (Umbrella) Cyber Threat Operations Specialist Job Description: An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting … cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions ...

Cyber Threat Operations Specialist

Hiring Organisation
Morson Edge
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract
opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting DEX meet the challenges and demands of countering the Cyber Threat. The successful applicant will drive … cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions ...

Senior Incident Response Lead — Rapid Response (Ransomware)

Location
Oxford, England, United Kingdom
Sophos is seeking an experienced Senior Incident Response Consultant to join our Incident Response (IR) team. You will lead incident response engagements for customers worldwide, guiding a team of consultants, conducting rapid responses, and delivering executive updates. You will have 5+ years ...

Senior SOC Engineer

Hiring Organisation
Anson Mccade
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent
Senior SOC Engineer A leading organisation is seeking a Senior SOC Engineer to strengthen its security operations capability and drive continuous improvement across detection, response, and automation. This pivotal role requires deep expertise in IBM QRadar, with a strong focus on playbook development, analytical rule creation, and threat modelling. … Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats. Key Responsibilities SIEM Engineering & Management Deploy, configure, and maintain the QRadar SIEM platform. Onboard and normalise log sources across on-premises and cloud environments. Develop and optimise ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 70 K
Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity.Key ResponsibilitiesCloud Security Assessment & Advisory:Assess the security … configurations of Azure IaaS and Google Cloud environments, including infrastructure.Provide recommendations based on industry best practices and emerging security threats.The ability to provide Cyber Incident Responders subject matter expertise in Cloud security when required.Defender & Security Monitoring Advisory:Evaluate and optimise the use of Azure Defender and other security monitoring ...

Operational Security Lead and Vulnerability Manager

Hiring Organisation
Kensington Mortgage Company
Location
Marlow, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Hybrid - 1 x week in Marlow Department: Information Security Monday-Friday Are you an experienced cyber security professional with a passion for security operations, incident response and vulnerability management? We're looking for an Operational Security Lead & Cyber Vulnerability Manager to play a critical role in protecting Kensington … Role Reporting to the Chief Information Security Officer, you'll lead the day-to-day operational cyber security function, overseeing security operations, cyber incident management, infrastructure and cloud vulnerability management, and third-party security oversight. You'll be responsible for ensuring security risks are managed appropriately, coordinating incident ...

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
defence/aerospace client on a short term contract. The successful candidate will have proven experience using IBM QRadar SIEM in a monitoring and incident response capacity. Key Responsibilities: Monitor and analyse security events using IBM QRadar SIEM Investigate and respond to security incidents across various platforms Manage … full incident lifecycle, from identification to resolution Conduct threat detection and analysis, along with threat hunting activities Perform detailed log analysis across multiple security platforms Produce incident reports and post-incident reviews Collaborate with team members to ensure robust security controls Investigate non-standard Cyber requests ...

Senior Incident Response Lead Hybrid Remote UK

Location
Birmingham, England, United Kingdom
LRQA is seeking a Senior Security Consultant (Incident Response) to join its cyber incident response team. The role involves coordinating response to cyber incidents, on-call rotation, and occasional client-site work within the UK. The post requires UK residency and a strong incident response background with CREST/GCFA-type certifications. The candidate will lead responders, conduct investigations, and design training engagements, staying updated on CTI developments and Mitre ATT&CK-aligned #J-18808-Ljbffr ...

Cyber Incident Lead

Hiring Organisation
British Airways
Location
Feltham, Middlesex, United Kingdom
Salary
£ 70 K
think big and bring your ambition to work every day, which is why, at British Airways the sky is never the limit.The role:Cyber Incident LeadThis role reports into the Cyber Incident Manager, and works with stakeholders across the organisation to ensure BA is able to effectively identify … incidents across the BA estate 24/7 365 days a year as part of an on call functionResponsible for developing, maintaining, and managing incident response processesAbility to present on complex, technical concepts to a wide range of stakeholders of varying seniority and knowledgeConfident to engage with business ...

Senior Security Consultant (Incident Response)

Hiring Organisation
LRQA
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 45 K
Employee RegularSenior Security Consultant Role Purpose:This is a new, exciting opportunity for a Senior Security Consultant to join LRQA’s existing dynamic Cyber Incident Response Team.This role follows a hybrid working arrangement and will involve working on client sites and from the office from time to time. … improving the team’s capability, in line with managerial direction. The role will lead a team of responders, as well as conduct solo incident investigations, where the actor operates with a high level of sophistication (Organised Crime or above) using agreed mitigation, preparedness, and response and recovery approaches ...

Senior SOC Engineer

Hiring Organisation
Anson McCade
Location
Glasgow, Lanarkshire, United Kingdom
Salary
£ 60 K
Type: PermanentSenior SOC EngineerA leading organisation is seeking a Senior SOC Engineer to strengthen its security operations capability and drive continuous improvement across detection, response, and automation. This pivotal role requires deep expertise in IBM QRadar, with a strong focus on playbook development, analytical rule creation, and threat modelling. … Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats.Key ResponsibilitiesSIEM Engineering & ManagementDeploy, configure, and maintain the QRadar SIEM platform.Onboard and normalise log sources across on-premises and cloud environments.Develop and optimise analytical rules for threat detection ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
security threats across complex client environments. You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your technical … take ownership of more complex security alerts and incidents, including: Investigating and analysing escalated security alerts from Tier 1 analysts Conducting detailed incident investigations to determine scope, impact and root cause Monitoring and analysing activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity ...

Senior Cyber Threat Intelligence Analyst

Hiring Organisation
Babcock
Location
Todmorden, Lancashire, United Kingdom
Salary
£ 60 K
could impact Babcock’s people, information, systems, programmes and customers. You will transform complex threat data into actionable intelligence that supports proactive cyber defence, incident response, vulnerability management and risk reduction activities across the organisation.Day-to-day, you’ll work closely with Security Operations, Incident Response … actionable cyber threat intelligence to support proactive cyber defence activities.Analysing threat actor activity, malware campaigns, phishing threats and emerging cyber risks.Collaborating with Security Operations, Incident Response and Security Assurance teams to improve cyber resilience.Creating high-quality intelligence assessments and reports that support business decision-making.Monitoring the evolving threat ...

Cyber Incident Responder - OT Technology

Location
West Midlands, England, United Kingdom
from the ground up. This is a foundational role within a well-established Security Operations function, offering genuine ownership over strategy, tooling, governance and incident response for OT/IoT environments. You'll work cross-functionally with Threat Intelligence, Incident Response, Vulnerability Management, GRC and Security … Architecture, as well as engineering and site teams, to embed proportionate, pragmatic security controls across operational environments — while also playing a key role in incident response when OT/IoT-related incidents occur. Key Responsibilities Build and develop the organisation's OT/IoT security capability from ...

Senior / 3rd Line IT Engineer – Infrastructure & Cyber Security

Hiring Organisation
Recruitment Revolution
Location
Colchester, Essex, United Kingdom
Salary
£ 55 K
EnablementYour Background/Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI ToolingWho We AreBulk is on an incredible journey, with a mission to evolve from a manufacturing-led retailer into … security aspects of AI integration and take a leading role in our Cyber Essentials project next year.You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise.And we're not expecting ...

Senior Cyber Threat Detection and Response Analyst

Hiring Organisation
Babcock
Location
Todmorden, Lancashire, United Kingdom
Salary
£ 60 K
Title: Senior Cyber Threat Detection and Response AnalystLocation: Any of our main UK locations + Hybrid Working ArrangementsCompensation: Competitive + BenefitsRole Type: Full time/PermanentRole ID: SF75113At Babcock we’re working to create a safe and secure world, together, and if you join us, you can play your … part as a Senior Cyber Threat Detection and Response Analyst at any of our main UK locations.The roleAs a Senior Cyber Threat Detection and Response Analyst, you’ll be a technical leader within our Cyber Security Operations capability, driving advanced threat detection, cyber defence, incident response ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£85,000
incidents while leading, mentoring and developing SOC Analysts on shift. Youll act as a key escalation point for complex and high-severity incidents, supporting incident containment, remediation and recovery while providing leadership across the SOC. What youll be doing Leading the SOC team during your assigned shift and handling … escalations Investigating and responding to medium and high-severity security incidents Supporting incident containment, remediation and recovery Mentoring, teaching and upskilling junior SOC Analysts Supporting threat hunting, detection improvement and incident response activities What were looking for 6+ years experience across SOC, Incident Response ...

SOC Analyst

Location
Farnborough, England, United Kingdom
security alerts, intrusions, or unauthorised, unexpected, or illegal activity Respond to incidents using a catalogue of playbooks Escalate complex incidents to Tier 2 Incident Response Teams Review and develop security controls in line with the evolving technical environment Triage and review vulnerability scanning reports and feed results back … threats and trends Research and develop understanding of security as a discipline Requirements Previous experience in Security, SOC or related technical field Focus on Incident Management Focus on Vulnerability Management Relevant qualification(s) in Cyber Security, or other related technical roles Knowledge of key concepts of Cloud Computing Knowledge ...

SOC Shift Lead

Hiring Organisation
Searchability NS&D
Location
Hemel Hempstead, England, United Kingdom
busy Security Operations Centre while remaining hands-on with technical investigations. You will act as the senior escalation point during your shift, leading incident response, mentoring analysts and ensuring high standards across investigations. You will also: Lead Major Incident investigations and technical response activities Analyse advanced … Lead Strong experience leading complex cyber security investigations Commercial experience with Microsoft Sentinel and Splunk Enterprise Security Excellent understanding of MITRE ATT and CK, incident response and threat-informed defence Strong networking knowledge including TCP/IP, DNS, HTTP/S, SMTP, LDAP and VPN technologies Experience analysing ...

Information Security Analyst - SecOps Response

Location
Cardiff, Wales, United Kingdom
asking that you attend the office a minimum of 1 day per week. About the Role We’re seeking a passionate and skilled Incident Responder to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. This role will be supporting …/7 operational capabilities (On-call rota). Reporting to the Information Security Lead - SecOps Response, the analyst’s main responsibilities include: Conducting incident response activities to investigate and contain cyber security incidents Developing and maintaining incident response and readiness processes Analyse logs from ...