176 to 200 of 1,862 Incident Response Jobs in the UK

Head of Cyber Security Operations

Location
Greater London, England, United Kingdom
protecting QA against cyber threats, vulnerabilities and exploits. You will lead both direct and virtual teams responsible for 24/7 security operations, incident response and continuous risk reduction across on‐premise and cloud environments. Role Responsibilities Lead and manage the Security Operations Centre (SOC), ensuring effective …/7 monitoring and on‐call coverage. Oversee security event monitoring, incident response, and threat intelligence across QA Coordinate and manage security incidents end‐to‐end, ensuring rapid and effective resolution. Ensure monitoring, logging, and prevention tools are fit for purpose and deliver best value. Lead security teams ...

Regional Cyber Incident Response Lead (Hybrid)

Location
Manchester, England, United Kingdom
Unilever is seeking a Regional CERT Manager to lead cyber incident response across the region. Hybrid role based in Manchester, with 3 days in the office weekly. You will guide the CERT, manage end-to-end incident response, and partner with SOC teams to strengthen detection ...

Infrastructure Engineer

Location
Greater London, England, United Kingdom
Helm changes, write runbooks, scaffold tooling, and review pull requests Encode recurring infrastructure tasks as reusable internal skills for human and agent teammates Lead incident response, post-mortems, and root-cause analyses Own reliability, performance, and efficiency of core services end-to-end Define and uphold SLOs … operating resilient, scalable infrastructure for high‐traffic enterprise platforms, with a strong focus on automation using Python or Go. Proven ability to lead incident response and uphold reliability standards while collaborating effectively with cross‐functional teams. Highest‐signal resume keywords Infrastructure Engineering DevOps Practices AWS, GCP, Azure Python ...

Senior / 3rd Line IT Engineer - Infrastructure & Cyber Security

Hiring Organisation
Recruitment Revolution
Location
Colchester, Essex, South East, United Kingdom
Employment Type
Permanent
Enablement Your Background/Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling Who We Are BulkTM is on an incredible journey, with a mission to evolve from a manufacturing … security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. ...

Senior Incident Response Lead — Major Cyber Incidents

Location
Greater London, England, United Kingdom
Arcus Search is recruiting for two Senior/Lead Incident Response Engineers in London on a permanent basis. You will take end-to-end ownership of major incidents, coordinate across Security, Engineering, IT and Cloud teams, and drive investigations to root cause and resolution. This is a high … responsibility role in a fast-paced cybersecurity environment. The ideal candidate has extensive cybersecurity engineering and incident response experience, with a proven track record of leading major #J-18808-Ljbffr ...

Principal Platform Engineer - London

Location
Greater London, England, United Kingdom
Ready for the challenge? The Role This role sits in the core Platform/SRE team that owns production. You’ll work directly on incident response, on‐call, system reliability, and day‐to‐day operations for Heidi’s platform. We’re open to candidates who are strong … role is intentionally ops‐heavy and focused on keeping real systems healthy in production. What you’ll do Participate in on‐call and incident response: Respond to production incidents, contribute to service restoration, and support clear communication during incidents. Over time, take increasing responsibility for leading incidents ...

Global Cybersecurity Director – Data Loss Prevention

Location
Greater London, England, United Kingdom
will connect cybersecurity processes with the teams responsible for investigating and resolving potential data loss events, and ensure that there is coordination across technical, Incident Response, HR, Risk, and Legal teams, bringing clarity to complex cases and helping ensure that issues are handled effectively and appropriately. Lead … operate DLP technologies, ensuring technical capabilities support program requirements. Provide oversight of the DLP alert and escalation process end-to-end, partnering with Incident Response to ensure alerts are triaged effectively and route to the right investigation and escalation paths. Act as the security partner to HR, Legal ...

Advisory PSIRT Engineer

Location
Farnborough, England, United Kingdom
more visit www.lenovo.com , and read about the latest news via our StoryHub . Description and Requirements TheProduct Security Advisory Engineerwithin Lenovo’sEnterprise Product Security Incident Response Team (E-PSIRT)is the central operational orchestrator for vulnerability management across Lenovo’s global product portfolio. This critical role coordinates product … evaluated, remediated, and disclosed. Additionally, this position plays a pivotal role in supporting Lenovo’sCyber Resilience Act (CRA)compliance, vulnerability reporting readiness, and regulatory response activities. Key Responsibilities Vulnerability Assessment & Triage: Evaluate product security vulnerabilities, exploits, and incidents from external researchers, threat intelligence, public disclosures, and internal testing ...

V05727 DIG - Level 1 SOC Cyber Analyst

Hiring Organisation
Outsource UK
Location
Ross-on-Wye, Herefordshire, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
critical infrastructure. This is a hands-on role , focused on alert triage, initial investigations, and working closely with an outsourced SOC to ensure effective incident response and escalation. What you’ll be doing: Monitoring and triaging security alerts in a live SOC environment Conducting initial investigations and validating … potential threats Escalating incidents in line with defined processes and playbooks Working closely with internal teams and external SOC providers Supporting incident response and contributing to continuous improvement of security operations What they’re looking for: Experience in a SOC or Security Operations environment Hands-on exposure ...

Senior Network Engineer - 6 month fixed term contract

Location
Greater London, England, United Kingdom
Trade Desk. NOC Engineers provide world-class technical support while also acting as true engineers - employing complex troubleshooting, customer connectivity onboarding, real-time monitoring, incident response, change execution, and escalation management for a highly distributed, latency-sensitive global network spanning both physical infrastructure and cloud platforms. A defining … milestones to affected firms. Participate in a rotational on-call schedule to support the global trading environment during non-staffed hours. Real-Time Monitoring & Incident Response - 20% Proactively monitor global customer connectivity, market access paths, and back-end trading infrastructure in real time during trading hours. Analyze network ...

Cyber Security Analyst - Training Course

Hiring Organisation
Netcom Training
Location
West Midlands, United Kingdom
Employment Type
Permanent
Training's government-funded Cyber Security course is your shortcut to breaking into the cyber security industry. Learn the essentials - threat intelligence, security testing, incident response and legislation - in an interactive online format and earn an NCFE-accredited Level 3 Certificate in Cyber Security Practices. Course details Duration … cyber security principles and threat intelligence Identifying malicious software, vulnerabilities and social engineering tactics Applying effective security testing methods and cyber security controls Developing incident response plans for security breaches Understanding legislation, information security standards and ethical practice in cyber security Potential roles Information Security Analyst Incident ...

Cyber Security Analyst - Training Course

Hiring Organisation
Netcom Training
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Training's government-funded Cyber Security course is your shortcut to breaking into the cyber security industry. Learn the essentials - threat intelligence, security testing, incident response and legislation - in an interactive online format and earn an NCFE-accredited Level 3 Certificate in Cyber Security Practices. Course details Duration … cyber security principles and threat intelligence Identifying malicious software, vulnerabilities and social engineering tactics Applying effective security testing methods and cyber security controls Developing incident response plans for security breaches Understanding legislation, information security standards and ethical practice in cyber security Potential roles Information Security Analyst Incident ...

Security Architect – Entra ID, MS, Azure

Location
Greater London, England, United Kingdom
administrative boundaries Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures Establish requirements for logging, monitoring, alerting, threat detection and incident response Review technical architectures and solution designs for security weaknesses, gaps and dependencies Assess migration strategies and cutover approaches from a security perspective … administrative controls Experience designing security controls across endpoints, email, data, applications, infrastructure and networks Strong understanding of security logging, monitoring, threat detection and incident-response requirements Experience in threat modelling, security risk assessment, control mapping and architecture assurance Experience assessing security risks associated with migration, coexistence, cutover ...

Site Reliability Engineer / Production Support

Hiring Organisation
Hackajob Ltd
Location
London, United Kingdom
Employment Type
Permanent
role is the single point of ownership when incidents occur. You will directly oversee the offshore Production Support team, run on-call and incident response, and ensure fast detection, triage and restoration of services. This is not a passive monitoring role. You are expected to understand … offshore Production Support team and be the single point person when incidents occur, escalating only to Head Of when required. Run on-call and incident response; ensure fast detection, triage, and restoration. Maintain observability standards (logs, metrics, traces) and alert quality (low noise, high signal). Understand ...

Security Architect (Entra ID/Microsoft Azure)

Location
Greater London, England, United Kingdom
Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures Establish appropriate requirements for security logging, monitoring, alerting, threat detection and incident response Review technical architecture and solution designs, identifying security weaknesses, control gaps, dependencies and areas requiring further assurance Assess migration strategies and cutover … assurance activities, including validation of security controls before major migrations or go-live decisions Provide security input into operational readiness, ensuring that monitoring, alerting, incident response and support arrangements are in place before services transition into production Align programme designs with organisational security policies, information-security standards, data ...

Senior / 3rd Line IT Engineer - Infrastructure & Cyber Security

Hiring Organisation
RecruitmentRevolution.com
Location
Colchester, Essex, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Permanent Your Background/Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling The Opportunity As our ISenior/3rd Line IT Engineer, you'll take ownership of Bulk's infrastructure … security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. ...

Head of Cyber Claims - International

Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Site Reliability Engineer

Location
Milton Keynes, England, United Kingdom
hands‐on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post‐incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post‐incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Analyst, Regional Security Operations Center at Deliveroo

Location
Greater London, England, United Kingdom
Regional Operations Center (ROC) team. The ROC operates in a high-tempo, 24/7 global operations environment, responsible for real-time monitoring, incident triage, and operational response to protect our people, assets, and operations. Here’s what your day-to-day might look like: Operate … Real Time: Monitor dashboards, alerts, inbound reports, and open-source signals to identify security, safety, and operational incidents as they emerge. Execute Incident Response: Triage incidents and execute standard operating procedures (SOPs) through accurate documentation, coordination, and information validation. Apply Analytical Intelligence: Conduct initial fact-finding and source ...

Senior Specialist Engineer - Networks

Hiring Organisation
UK Health Security Agency
Location
Birmingham, Leeds, Liverpool or London (Canary Wharf), E14 4PU, United Kingdom
Salary
£56185.00 to £70566.00
configured, resilient, secure, and performant. Beyond day-to-day operational responsibilities, the role carries explicit accountability for network architecture, strategic design, and cross-functional incident response. This role also attracts a market pay supplement of £6650 per annum (to be reviewed in February 2027). Main duties … routing, switching, wireless, WAN, load balancing, IPAM, DNS and DHCP services, alongside Extreme Networks Fabric Engine, Site Engine and wireless platforms. Network Security, Resilience & Incident Management Provide technical leadership for network security and operational resilience across the UKHSA estate. Administer Palo Alto NGFW, Panorama, VPN, micro-segmentation ...

SC-Cleared Chief, Security Incident & Response

Location
Newcastle upon Tyne, England, United Kingdom
responsible for safeguarding our natural environment, supporting our world-leading food and farming industry, and sustaining a thriving rural economy. The Head of Security Incident and Response will provide operational leadership of the Defra Group Security Incident Response Management capability, ensuring readiness to respond to incidents ...

Business Incident Manager

Hiring Organisation
Hackajob Ltd
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent
backed schemes including Tax-Free Childcare, Help to Save, Court Funds Office and Help to Buy. Be at the centre of decision-making Lead incident response activities, work directly with senior stakeholders and clients, and drive service recovery during high-profile operational events. Grow your career Develop expertise … incident management, stakeholder engagement, service improvement and data analytics, with opportunities to influence strategic decisions and progress into senior service management and leadership roles. Role Purpose The Business Incident Manager is responsible for the end-to-end management of business incidents impacting the NS&I B2B account, supporting ...

Director of Platform Engineering

Location
Greater London, England, United Kingdom
operating culture focused on ownership, automation, reliability and continuous improvement. Remain highly hands‐on, working directly with engineers on production issues, Kubernetes troubleshooting, incident response, deployment automation, observability, capacity management and service resilience. Drive the evolution of SaaS engineering towards a more automated model, reducing manual intervention, operational … through better tooling, workflow automation and self‐healing capabilities. Explore and adopt appropriate Agentic AI and intelligent automation capabilities to improve operational decision support, incident triage, runbook execution, knowledge retrieval, change preparation and service management workflows. Own SaaS operational standards, including runbooks, monitoring, alerting, incident management, post‐incident ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
. Focus on automation and orchestration (SOAR) to reduce manual overhead and ensure security controls are consistently enforced across a global, multi-cloud environment; Incident Response Leadership: Lead the technical response to high-priority security incidents. Drive the containment, eradication, and recovery phases, while coordinating communication between … technical teams and senior stakeholders. Conduct deep-dive root cause analyses and develop long-term engineering roadmaps to prevent incident recurrence; Compliance & Security Assurance: Lead internal security audits and maturity assessments. Ensure systems align with international standards (e.g., ISO 27001) and regulatory requirements. Define the technical standards that validate ...

Security Operations Analyst (SOC analyst)

Location
Greater London, England, United Kingdom
global financial system is a foundational priority, and the Cybersecurity Operations organization is central to that mission. Within it, the Detection and Response team serves as the front line of the firm's cyber defense, operating a global \"follow-the-sun\" model that delivers 24/7 monitoring, detection … response across regions. The London SOC is a critical hub anchoring coverage across EMEA, working seamlessly with partner centers worldwide to ensure continuous, uninterrupted protection. Role Overview This is a hands-on detection and response role at the core of the firm's cyber defense operations. The analyst ...