26 to 50 of 988 Incident Response Jobs in the UK

Head of Security Operations

Hiring Organisation
Jobleads-UK
Location
Wolverhampton, England, United Kingdom
will be accountable for the effective operation, continuous improvement and resilience of the Bank's security operations capability, covering Security Operations Centre monitoring and response, Identity and Access Management services, security analysis, operational security controls and supplier-delivered security services. The Head of Security Operations is a senior leadership … India offices, supported where appropriate by third-party managed security service providers. The team provides 24x7 or extended-hours security monitoring and response, identity and access management operations, vulnerability and threat analysis, security tooling administration, control assurance support, reporting, and operational support. Your responsibilities will include... Security Operations Leadership ...

IT Security & Compliance Lead

Hiring Organisation
Jobleads-UK
Location
City of Edinburgh, Scotland, United Kingdom
company grows. You'll build our IT security function from the ground up — covering device management, identity and access, infrastructure controls, and incident response — while also owning the compliance and AI governance work that keeps enterprise customers confident in how we operate. It's a hands‐on, build … tools like Okta. Own infrastructure and cloud security controls across our environment (e.g. AWS), working closely with Engineering to keep systems hardened. Security Operations & Incident Response Lead security incident response — full lifecycle investigations, coordinating with internal teams and external partners (e.g. SOCaaS providers), and running post ...

SPLUNK SOAR Engineer - FTC 12m £110k UK REMOTE

Hiring Organisation
Circle Group
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Temporary
optimising security automation across a large-scale enterprise environment. This is a hands-on engineering position focused on delivering scalable Security Orchestration, Automation and Response (SOAR) capabilities using the Splunk Security platform . Working alongside Incident Response and Threat Management teams, you will develop advanced automation, improve … detection and response processes, and build new use cases that strengthen cyber resilience. This is a 12-month fixed term contract with a strong likelihood of renewal , offering a salary of up to £110,000 , an excellent benefits package and fully expensed travel and accommodation for occasional business travel ...

Principal Security Engineer

Hiring Organisation
Jobleads-UK
Location
St Albans, England, United Kingdom
Operate as a strategic partner to the IT Ops Specialist. Jointly shape how security and IT operations integrate shared tooling decisions, aligned processes, unified incident response, single view of risk. Stakeholder Influence: Present security posture, risk appetite and investment cases to senior leadership. Translate technical risk into business … MITRE ATT&CK. Continuously reduce false positives and expand coverage. Automation: Engineer automation for security operations at scale — scripting (Python, Bash, PowerShell) for response orchestration, access reviews, compliance checks, vulnerability reporting, threat intel enrichment. Integration & Evaluation: Ensure all security tooling integrates with existing infrastructure and identity platforms. Lead POCs ...

Cyber Security Engineer/Specialist

Hiring Organisation
Exalto Consulting
Location
Surrey, United Kingdom
Employment Type
Permanent
Salary
£70000 - £80000/annum Up to 80k (+ benefits)
risk reduction rather than purely operational support. You'll be responsible for strengthening the organisation's security posture through threat assessment, vulnerability management, incident response and continuous security improvement initiatives. Key responsibilities include: Enterprise Threat Management Identify, assess and mitigate cyber threats across enterprise infrastructure and business systems … vulnerability analysis Develop and implement security controls and remediation strategies Monitor emerging threats and recommend appropriate defensive measures Enhance threat detection, monitoring and incident response capabilities Develop and maintain incident response playbooks and operational procedures Work closely with third-party security providers during incidents and security ...

Security Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
that security operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands‐on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements … detection, response, automation and operational processes. The role holder is expected to lead through expertise, supporting analysts and ensuring Security Operations operates with discipline, quality and continuous improvement. Key Responsibilities Act as the primary technical escalation point for security events and incidents identified by the Security Operations team. Support ...

SOC Manager - SC cleared

Hiring Organisation
Parker Shaw
Location
South West, United Kingdom
Employment Type
Contract
Contract Rate
GBP 35 Annual
lead the delivery of the Cyber Security Operations Centre (CSOC) to detect Real Time cyber security incidents/data breaches and manage our response and remediation activities, including the management of senior stakeholders and external agencies. Ensure adequate controls, practices and capabilities are in place to identify vulnerabilities across … define the process for remediation or mitigation to ensure cyber readiness and resilience against attack. Providing strategic level advice to senior management regarding incident response, monitoring, logging and analysis of all relevant systems and processes. Leading the development, communication and continuous improvement of the cyber incident response ...

Security engineer, detection and response (UK)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
journey to create a better future of work with AI. About the role Join WRITER's security team as a staff detection and response engineer and help protect the AI infrastructure that's transforming how the world works. You'll build sophisticated detection systems that identify attacks targeting … platform, training data, and model deployments while creating automated response capabilities that scale with our explosive growth. This isn't just traditional security work – you're defending cutting-edge AI/AGI systems against adversaries who are evolving their tactics as fast as AI itself advances. This role combines ...

Security Operations Centre Manager

Hiring Organisation
First Military Recruitment Ltd
Location
Nationwide, United Kingdom
Employment Type
Contract
Define and lead the delivery of the Cyber Security Operations Centre (CSOC) to detect real-time cyber security incidents/data breaches and manage response and remediation activities, including the management of senior stakeholders and external agencies. Ensure adequate controls, practices and capabilities are in place to identify vulnerabilities … define the process for remediation or mitigation to ensure cyber readiness and resilience against attack. Providing strategic level advice to senior management regarding incident response, monitoring, logging and analysis of all relevant systems and processes. Leading the development, communication and continuous improvement of the cyber incident response ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
GBP 95,000 Annual
Incident Response Consultant - Mid to Principal - UK Wide UK Remote Up to £95,000 + benefits SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent
Salary
GBP 95,000 Annual
Incident Response Consultant - Mid to Principal - UK Wide UK Remote Up to £95,000 + benefits SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
Manchester, UK
Employment Type
Full-time
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. ...

Legal Counsel

Hiring Organisation
CyberClan
Location
United Kingdom
carefully selected team of experts are capable of solving complex cyber security challenges – keeping data secure and businesses running as usual. CyberClan’s Global Incident Response Teams are available 24/7/365 to leap into action, responding to all cyber-attacks with proven defensive methodology … business operations. Role Overview: This role supports the CERT/Sales team with reviewing insurance policies, assisting with claims assessments, and contributing to breach response efforts. Ideal for someone with early in house or private practice experience who’s ready to grow into a broader commercial legal role. This ...

SOC Manager

Hiring Organisation
Aspect Resources
Location
Exeter, Devon, United Kingdom
Employment Type
Contract
Contract Rate
GBP 750 - 850 Daily
lead the delivery of the Cyber Security Operations Centre (CSOC) to detect Real Time cyber security incidents/data breaches and manage our response and remediation activities, including the management of senior stakeholders and external agencies. Ensure adequate controls, practices and capabilities are in place to identify vulnerabilities across … define the process for remediation or mitigation to ensure cyber readiness and resilience against attack. Providing strategic level advice to senior management regarding incident response, monitoring, logging and analysis of all relevant systems and processes. Leading the development, communication and continuous improvement of the cyber incident response ...

Global Incident Response Lead — Cybersecurity

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Creative Artists Agency is looking for an experienced executive-level Incident Response Lead based in Greater London. This key position collaborates closely with the Director of Cyber Threat Management and focuses on incident response, threat detection, and security measures across the organization. The ideal candidate will … have a strong technical background, particularly in cloud environments, and will be responsible for mentoring junior staff while leading response strategies during security incidents. A minimum of 8 years in IT, with 5 years in incident response, is essential. #J-18808-Ljbffr ...

SOC Manager

Hiring Organisation
NRGTech Talent Solutions Ltd
Location
Nationwide, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £850/day Prestige opportunity
Define and lead the delivery of the Cyber Security Operations Centre (CSOC) to detect real-time cyber security incidents/data breaches and manage response and remediation activities, including the management of senior stakeholders and external agencies. Ensure adequate controls, practices and capabilities are in place to identify vulnerabilities … define the process for remediation or mitigation to ensure cyber readiness and resilience against attack. Providing strategic level advice to senior management regarding incident response, monitoring, logging and analysis of all relevant systems and processes. Leading the development, communication and continuous improvement of the cyber incident response ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, United Kingdom
Employment Type
Permanent
team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying … monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation ...

Senior IT Security Analyst

Hiring Organisation
Jobleads-UK
Location
Towcester, England, United Kingdom
data sources. Define triage criteria, alert handling standards, escalation paths and quality checks for security operations. Review high‐impact alerts and incidents, ensure proportional response and remove barriers to containment and remediation. Develop and improve detection logic, playbooks, dashboards and operational procedures. Incident response leadership Coordinate response to significant cybersecurity incidents in line with the incident management process. Lead technical analysis for malware, phishing, credential compromise, insider risk, data exposure, privilege misuse and suspicious network activity. Ensure evidence handling, incident timelines, decisions, lessons learned and remediation actions are complete and auditable. Produce post‐incident ...

Head of Cyber Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Security translates the IT and Cyber Security strategy into practical controls, measurable outcomes and clear reporting. This includes cyber governance, security operations, vulnerability management, incident readiness, third-party cyber risk, security awareness, policy ownership and cyber assurance across on-premises, cloud and supplier-hosted services. Responsibilities Cyber Security Strategy … SIEM, endpoint protection, identity controls, email security, cloud security, vulnerability tooling and managed security service providers. Improve detection coverage, alert quality, escalation paths and response times Cyber Incident Response: Own cyber incident response playbooks and readiness for realistic scenarios including ransomware, data loss, account compromise ...

Security Consultant

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use‐case tuning, and post‐incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client‐facing deliverables including ...

MDR Team Lead

Hiring Organisation
Jobleads-UK
Location
Oxford, England, United Kingdom
Role Summary Sophos is seeking an experienced MDR Manager to support its Managed Detection and Response customers. The successful candidate will lead MDR analysts and day-to-day operations, ensuring operational quality, timely incident handling, effective customer communication, consistent reporting, and continuous service improvement. As part … Managed Detection and Response team, you will help deliver best-in-class monitoring, detection, and response services that proactively defend customer environments. You will guide investigations, review quality, coach analysts, manage escalations, and use operational insights to improve team performance, investigation consistency, and customer outcomes. What you will ...

Site Reliability Engineer

Hiring Organisation
Jobleads-UK
Location
Watford, England, United Kingdom
doing Objectives of the role Maintain reliable production services across digital platforms Improve monitoring, alerting, and observability coverage Reduce operational toil through automation Support incident response and continuous improvement Contribute to performance and scaling of services Production operations Participate in 1-in-4 on-call rotation: Respond … diagnosis Monitor system health across: + Web and mobile platforms + Games platforms + Player services Troubleshoot issues across application, infrastructure, and network layers Incident response & improvement Support incident triage and resolution Participate in post-incident reviews and implement remediation actions Maintain and improve runbooks ...

Senior Cyber Security Engineer

Hiring Organisation
NTT Global Data Centers EMEA UK ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent
tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning). What we are looking for Key Responsibilities: Serves as a senior member … optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. Directs complex security incident response efforts across multiple vectorsendpoint protection, EDR, malware analysis, network and computer forensicsensuring rapid containment and root cause analysis. Designs and executes advanced vulnerability ...

SOC Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Birmingham, England, United Kingdom
reports to Head of SOC Operations. This hands‐on position serves as the senior technical authority for SOC operations, driving excellence in threat detection, incident response, and security operations across a diverse multi-client portfolio. You will combine deep technical proficiency with strong consulting skills to mentor analysts … manage shift rotations, optimise SOC processes and tools, lead complex incident escalations, and act as a trusted advisor. Although you will manage a team of SOC analysts, this is not a purely managerial role; you will remain deeply involved in technical work while elevating team capabilities and delivering strategic ...

Information Security & Compliance Manager

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
individual notifications where required. Oversee data transfer mechanisms and data residency considerations across our global footprint and subsidiaries. Client security assurance Own the response to client security due-diligence: complete security questionnaires and assessments from biopharma and medtech clients accurately and on time. Support commercial and contractual discussions … tools and AI/SaaS vendors. Maintain an inventory of vendors and their data access, and reassess risk on a regular cadence. Incident response and investigations Own the incident response plan; lead detection, triage, investigation, containment, and post-incident review. Investigate security events (for example ...