251 to 275 of 1,873 Incident Response Jobs in the UK

Cloud Security Engineer London National Security West

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
security services and implementing cloud security best practices, including identity, monitoring, threat detection and data protection. Understanding of Security Operations, including monitoring, alerting, incident response, threat detection, and SIEM platforms such as Microsoft Sentinel or Splunk. Strong understanding of Identity and Access Management (IAM), least-privilege access principles … . Designing and implementing secure AWS architectures that align with security and compliance requirements. Building and maintaining security monitoring, alerting and automated response capabilities across cloud environments. Integrating cloud platforms with security tooling, including SIEM solutions such as Microsoft Sentinel and Splunk. Leveraging AWS security services and promoting security ...

Staff Reliability Engineer (Full Stack)

Location
Greater London, England, United Kingdom
move quickly without compromising stability. This is a hands‐on individual contributor role with significant cross‐team influence: you’ll lead through technical decisions, incident leadership, and pragmatic improvements to systems and process. Team context Reporting line: Sits on the Platform team reporting to the Head of Platform Engineering. … communicate clearly in writing and help teams adopt consistent operational practices. What success looks like Within your first year, you will have: Reduced incident frequency and/or impact through concrete reliability improvements (e.g., better alerting, safer deploy patterns, guardrails, playbooks). Made incident response more effective ...

Staff Cloud Security Engineer (GCP) - Engine by Starling

Location
Greater London, England, United Kingdom
architecture design reviews to identify risks and vulnerabilities, triage found risks, identify improvements appropriately and design controls to implement as corrective actions Lead incident response efforts, including investigation and remediation of security breaches Support our internal security awareness and training programs, advocating the DevSecOps mindset that we have … risk and impact to us A proactive approach to staying updated with the latest security threats, vulnerabilities and mitigation techniques Thorough understanding of the incident response process (preparation, identification, containment, eradication, recovery, lessons learned) What skills are desirable: In-depth knowledge of network security, including core routing ...

Information Security GRC Lead

Location
Chippenham, England, United Kingdom
activity by interpreting relevant standards and good practice frameworks, translating requirements into practical actions, and working with Technology Teams to support proportionate implementation. Security Incident Support: Support security incident response by helping assess governance, risk and compliance impacts, coordinating evidence, supporting root cause analysis and ensuring lessons … improvement. Essential Good understanding of information technology security, information security risk and control management. Experience supporting, coordinating or assuring IT security controls, vulnerability management, incident response, IT disaster recovery or IT change governance, ideally while working alongside technical teams who own implementation. Awareness of recognised security standards ...

Information Security Analyst

Location
Greater London, England, United Kingdom
help identify, assess, and manage risks, while providing practical security guidance that enables secure and productive ways of working. The role spans security monitoring, incident response, vulnerability management, supplier assurance, compliance, reporting, and security awareness. You will contribute to the ongoing development of the firm’s security capabilities … escalation point for security queries from the Service Desk, IT, and Risk and Compliance teams, including DSAR evidence gathering where appropriate. Support incident response activities including triage, investigation, containment, documentation, remediation tracking, and post-incident review. Support business continuity and disaster recovery activity, helping restore protected services ...

Senior SOC Analyst – DV Clearance

Location
Greater London, England, United Kingdom
security cyber defence team supporting critical national infrastructure and sensitive government programmes. This role requires a proactive security professional with strong monitoring, analysis, and incident triage capabilities within a Security Operations Centre environment. SOC Analyst - Key Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform … triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection rules and use cases Produce detailed investigation and incident reports Collaborate ...

Senior Security Engineer - Contract

Location
Greater London, England, United Kingdom
Cloud, and manages tooling through infrastructure-as-code. They run a quarterly penetration test programme and are continuously building out our detection and response capability. It's a small team with broad scope, which means your work is visible, your opinions are heard, and there are meaningful problems … solve will matter. Does this sound like you You're a senior security engineer who operates credibly across cloud security, detection tooling, and incident response, without being narrowly specialised. You own meaningful parts of the security stack, contribute hands‐on to Azure cloud hardening, and show up reliably ...

Senior Lead Software Engineer - LLM Ops Platform Reliability

Hiring Organisation
Hackajob Ltd
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent
production at scale, with deep instrumentation and strong operational rigor. You will partner across engineering to deliver secure software, improve stability, and lead incident response and continuous improvement. Job responsibilities Design, develop, troubleshoot, and deliver secure, high-quality production software and services for AI infrastructure Build backend services … quantization, parallelism, and speculative decoding Lead reliability engineering for large language model endpoints through capacity planning, load and soak testing, safe rollouts, failover, and incident response for outages and model-quality regressions Participate in on-call rotations, lead incident triage and mitigation, and produce clear post-incident ...

Hybrid InfoSec Incident Response Analyst | Cloud Forensics

Location
Southampton, England, United Kingdom
Response. The role is hybrid with offices in London and Cardiff, requiring in-person collaboration at least one day per week and a strong incident response background. You will document incident notes, findings and containment steps, support tabletop exercises, and contribute to cloud forensics efforts across ...

SC Cleared SOC Analyst: QRadar & Incident Response (Remote)

Location
Essex, England, United Kingdom
defence/aerospace client on a 3-month contract in the UK. The role focuses on monitoring security events with IBM QRadar SIEM, incident response, and threat detection, with remote work and occasional site visits. You will investigate incidents across platforms, manage the incident lifecycle, perform … analysis, and contribute to post-incident reviews, working to MITRE ATT&CK and NIST frameworks. #J-18808-Ljbffr ...

IT Manager

Hiring Organisation
Edwards & Pearce Limited
Location
Grimsby, South Humberside, North East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
timely remediation of findings. Risk Management Establish and maintain a cyber risk management framework. Conduct risk assessments across systems, users, suppliers and business processes. Incident Response Lead the organisation's cyber incident response capability, including investigation, remediation and continuous improvement. Business Continuity & Resilience Ensure robust business ...

Lead Site Reliability Engineer

Location
Greater London, England, United Kingdom
trusted engineering partner to the desk, ensuring systems are stable, performant, and aligned with business needs. Support live trading environments, including incident response, root cause analysis, and post mortem leadership. Work as a core member of the software engineering team, participating in daily standups and design discussions. Contribute … across trading systems, including automated remediation, self‐healing workflows, and resilience engineering. Use enterprise‐authorized AI capabilities within the work environment to accelerate major‐incident triage, troubleshooting, and post‐incident analysis, validating outputs and handling operational data according to sensitivity and security requirements. Lead reuse‐first adoption ...

Senior SOC Analyst

Location
Greater London, England, United Kingdom
investigation and analysis, acting as the escalation point for complex or high‐severity incidents. They conduct root cause analysis, guide L1 analysts, and support incident containment and remediation efforts. The role operates within a high-performance compute environment, working shift‐based 24x7 operations and receiving a shift premium … hours. Key Responsibilities Investigate escalated incidents to determine attack vectors, scope, and potential impact. Correlate events across multiple data sources to build a comprehensive incident narrative. Execute containment, eradication, and recovery activities in coordination with IT/OT stakeholders. Lead response for medium to high‐severity incidents ...

Lead Site Reliability Engineer

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
trusted engineering partner to the desk, ensuring systems are stable, performant, and aligned with business needs. Support live trading environments, including incident response, root cause analysis, and post mortem leadership. Work as a core member of the software engineering team, participating in daily standups and design discussions. Contribute … across trading systems, including automated remediation, self healing workflows, and resilience engineering. Uses enterprise-authorized AI capabilities within the work environment to accelerate major-incident triage, troubleshooting, and post-incident analysis, validating outputs and handling operational data according to sensitivity and security requirements. Leads reuse-first adoption ...

Lead Site Reliability Engineer

Location
Westminster, West End, United Kingdom
trusted engineering partner to the desk, ensuring systems are stable, performant, and aligned with business needs. Support live trading environments, including incident response, root cause analysis, and post mortem leadership. Work as a core member of the software engineering team, participating in daily standups and design discussions. Contribute … across trading systems, including automated remediation, self healing workflows, and resilience engineering. Uses enterprise-authorized AI capabilities within the work environment to accelerate major-incident triage, troubleshooting, and post-incident analysis, validating outputs and handling operational data according to sensitivity and security requirements. Leads reuse-first adoption ...

Senior Lead Software Engineer - LLM Ops Platform Reliability

Location
Auchentibber, Scotland, United Kingdom
production at scale, with deep instrumentation and strong operational rigor. You will partner across engineering to deliver secure software, improve stability, and lead incident response and continuous improvement. Job responsibilities Design, develop, troubleshoot, and deliver secure, high-quality production software and services for AI infrastructure Build backend services … quantization, parallelism, and speculative decoding Lead reliability engineering for large language model endpoints through capacity planning, load and soak testing, safe rollouts, failover, and incident response for outages and model-quality regressions Participate in on-call rotations, lead incident triage and mitigation, and produce clear post-incident ...

Senior Executive Operational Resilience

Location
Greater London, England, United Kingdom
ability to recover within defined limits, producing test evidence, results analysis and remediation plans for any breaches. Develop, test and refine Business Continuity Management, Incident and Crisis Management and Incident Response Plans. Coordinate operational resilience testing exercises, including scenario testing, stress testing, and crisis simulations Monitor regulatory … version-controlled and kept current. Scenario and impact tolerance test reports, including results analysis and remediation plans for any breaches. BCM, Crisis Management and Incident Response plans, tested and refreshed on an agreed cycle. Third-party resilience assessments for cloud and payment service providers. Operational resilience MI packs ...

SOAR Engineer

Location
Warwick, England, United Kingdom
help secure Britain's energy. About the role: A crucial part of our Cyber Threat Detection team, the SOAR Engineer (security orchestration and automated response) ensures that National Gas can continuously keep up-to-date with new and emerging threats and ensures we can detect and respond to them. … Enable the Computer Security Incident Response Team (CSIRT) to detect threats targeting the organisation through enrichment, tuning and automation, allowing the CSIRT to be more effective. Mature the cyber security posture of the business by leveraging automation and orchestrated response. Key accountabilities: Subject Matter Expert for all things ...

Hybrid Incident Response Analyst – Banking IR Pro

Location
England, United Kingdom
Forensic Focus Limited in England is seeking an experienced Incident Response Specialist to join our security operations team on a contract basis. You will respond to sophisticated cyber security incidents within a large banking-sector enterprise, conduct live-response investigations, build host activity timelines, and produce clear … incident reports for stakeholders. The role follows a Wednesday–Saturday shift pattern and sits in a mature team alongside threat intelligence, detection #J-18808-Ljbffr ...

Junior SOC Analyst - Eastleigh

Hiring Organisation
Circle Group
Location
Eastleigh, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£30,000
defend networks, systems, and applications against evolving threats. You'll work as part of a team that provides 24/7 monitoring, detection, response, and remediation services for a diverse client base. After the initial training period, this role will operate on a 4-on-4-off rota, including … night shifts (swapping fortnightly) Key Responsibilities: Support the Managed Extended Detection & Response (MXDR) service. Monitor security alerts and events to identify potential incidents. Assist in investigating security incidents, determining root causes, and supporting remediation plans. Collaborate with internal teams and external stakeholders to ensure security controls are effectively maintained. ...

Senior Threat Detection & Response Lead (Hybrid UK)

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Detection and Response Analyst to lead advanced threat detection, cyber defence, incident response and proactive threat hunting across our UK locations with hybrid working. You will work with specialist teams, influence security strategy and protect critical business operations. This … senior role requires extensive experience in cyber security operations, incident response and threat detection, with strong knowledge of SIEM/EDR and MITRE #J-18808-Ljbffr ...

Security Engineer

Location
Greater London, England, United Kingdom
employee systems Security tooling and automation , including checks built into CI/CD, so the same work is never done manually twice Detection and incident response , from logging and alerting through investigation and recovery, turning each incident into a lasting improvement to systems and controls AI security … Python or a comparable language, and you integrate security checks into how engineers already work Detection and response. Understanding of security logging, monitoring and incident investigation, and comfort owning a problem through investigation, remediation and verification Risk judgement at startup pace. You start from the likely harm and attack ...

GRC Consultant

Location
Greater London, England, United Kingdom
actively participates in supporting/governing forums Contribute to the analysis and mitigation of data protection risks Monitors information security incidents, contributing to incident response and root cause analysis. Will own resulting actions as required where they relate to required changes in IT Security and Information Risk Management … policy and controls Security operations and incident response, liaison with internal teams and 3rd party suppliers Desirable Skills and Experience Experience with the design concepts associated with adoption of Cloud platforms (AWS and/or Microsoft Azure) An understanding of the native security capabilities and good practice within ...

SOC Shift Lead

Location
Greater London, England, United Kingdom
investigation and analysis, acting as the escalation point for complex or high‐severity incidents. They conduct root‐cause analysis, guide L1 analysts, and support incident containment and remediation efforts. The role is part of a high‐performance compute operations team operating 24/7, with shift teams paid … hours. Key Responsibilities Investigate escalated incidents to determine attack vectors, scope, and potential impact. Correlate events across multiple data sources to build a comprehensive incident narrative. Execute containment, eradication, and recovery activities in coordination with IT/OT stakeholders. Lead response for medium to high‐severity incidents ...

Information Security Officer

Location
Salford, England, United Kingdom
mobile) are configured securely. Vulnerability Management: Run and remediate vulnerability scans; don’t just report the issues; help figure out how to fix them. Incident Response: Be a key part of our incident response team, investigating alerts and refining our "playbooks" for future threats. Identity & Access ...