401 to 425 of 2,296 Incident Response Jobs in the UK

Cyber Security Engineer

Location
City Of London, England, United Kingdom
implement, and continuously refine preferably automated tooling and reporting to perform some level of dynamic penetration testing of systems and reporting of vulnerabilities. Lead incident response activities, including detection, containment, eradication, and recovery. Conduct forensic investigations and post‐incident reviews, reporting findings to senior management. When … come under new or sustained attack, be front and centre owning our response and mitigation, taking the lead and organising across technology to repel the attempted intrusion. Identify, evaluate, and mitigate cyber risks related to PSP operations, including payment processing systems, customer data, and third‐party integrations. Conduct regular ...

Security Analyst | Cyber Security | Hybrid

Hiring Organisation
Cyber Talent Limited
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
security awareness and phishing simulation programmes. Maintain ISO 27001 , Cyber Essentials , and Cyber Essentials Plus compliance. Produce security metrics , dashboards , and executive reporting. Lead incident response and continuous security improvement. Conduct third-party security assessments and vendor assurance . Requirements 4+ years' experience in a cyber security … skills across complex IT environments. Proactive approach to security , with a focus on continuous improvement and best practice . Experience leading or supporting security incident response and remediation . Strong reporting , analysis , and security metrics capabilities. Excellent communication , stakeholder engagement , and documentation skills. Benefits Excellent salary Pension Private ...

L3 Security Analyst

Location
Newbury, England, United Kingdom
role in protecting millions of customers from global cyber threats. As a Level 3 Security Analyst, you’ll be at the forefront of advanced incident response, tackling complex security challenges and driving continuous improvement in our cyber defence posture. You’ll investigate and validate threats using cutting‐edge … tools, collaborate with global teams on incident investigations, and mentor colleagues to uplift skills across the CSOC. From fine‐tuning SIEM systems and automating response actions to delivering insightful security reports and advisories, your expertise will help shape Vodafone’s resilience against evolving threats. This is a role ...

Senior Security Operations Centre Analyst

Hiring Organisation
Sopra Steria
Location
Aldershot, Hampshire, United Kingdom
Salary
£ 55 K
help protect systems that matter. Apply today and take your cyber security career to the next level. If you're passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you.Office based: Farnborough.Clearance: You do need to be eligible … Doing:Monitor, triage and investigate security incidents across critical client environments.Analyse network traffic, logs and security events to identify threats and vulnerabilities.Lead and support incident response activities, providing expert guidance on containment, eradication and recovery.Enhance detection rules and use cases using MITRE ATT&CK and threat-informed defence ...

IT Operations Director

Hiring Organisation
Bain & Company
Location
London, United Kingdom
Salary
£ 120 K
consistently triaged, remediated, and evidenced.A key part of your role will be advancing the maturity of our technology operations through observability, automation, disciplined incident response, and continuous improvement. You’ll identify opportunities for automation and AI-enabled agent workflows to reduce routine operational effort and embed these capabilities … into the Tier 2 function.Drive operational and service excellenceHelp define and own key Tier 2 performance measures, including mean time to resolution, uptime, automated incident resolution rate, and unplanned work ratio.Own vulnerability and patch management measures, including patch compliance, adherence to remediation targets, mean time to remediate, and automated ...

Lead Security Engineer

Hiring Organisation
JP Morgan Chase
Location
London, United Kingdom
Salary
£ 100 K
assess security risks in runtime and cloud environments, supporting remediationSupport the development and operation of runtime security tooling for production risk visibilityContribute to security incident response activities, including triage and investigationDevelop and maintain incident response processes, runbooks, and detection capabilitiesWork with risk, governance, and control teams … engineering practices across teams to improve code quality, delivery speed, and operational outcomes (e.g., AI-assisted code review/refactoring, test acceleration, release readiness, incident/root-cause analysis), while establishing measurable validation standards (secure coding, peer review, automated testing) and promoting reuse of proven patterns and automation within ...

Lead DevOps Engineer

Hiring Organisation
Collinson Group
Location
London, United Kingdom
Salary
£ 80 K
reliability, stability, and performance of our production platform. Enforce SLAs across availability, security posture, and resilience. Drive the measures, thresholds, and incident response standards the team operates to.Zero-Downtime Operations - Run and maintain a multi-region, zero-downtime platform. Own deployment strategies (blue/green, canary), traffic management … task execution to platform thinking.AI & Automation - Lead the team's adoption of AI-assisted operations - embedding AI into CI/CD pipelines, runbook automation, incident response, and developer tooling. Define where AI adds real leverage and own its safe integration into the platform.Your ExperienceDeep expertise with ...

Senior Security Operations Centre Analyst

Hiring Organisation
Sopra Steria
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
help protect systems that matter. Apply today and take your cyber security career to the next level. If you're passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need … triage and investigate security incidents across critical client environments. Analyse network traffic, logs and security events to identify threats and vulnerabilities. Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed ...

Senior Security Engineer

Location
Greater London, England, United Kingdom
brands and future acquisitions we need to ensure security operations are set up to scale. We are looking for a person with expertise in incident response and vulnerability management who is interested in automation to help scale security operations and take the capability to the next level. … security incidents in a timely and effective manner. Investigate security incidents to identify root causes and prevent future incidents. Communicate with stakeholders throughout the incident response process. Create run books for common scenarios to improve consistency and prepare for automation. Review tooling and processes and automate wherever possible ...

Lead DevOps Engineer

Hiring Organisation
Broadridge
Location
London, United Kingdom
Salary
£ 100 K
deployment, configuration, database schema creation, and operational workflows across cloud and on-prem platforms.Support production systems with a focus on high availability, disaster recovery, incident response, vulnerability management, patching, and change management.Containerize applications and support deployments using container orchestration platforms.Partner with development teams to understand application codebases … assisted engineering tools to accelerate development, automation, troubleshooting, documentation, and operational workflows.Identify, design, and help implement AI-enabled operational capabilities for infrastructure automation, observability, incident response, and platform engineering.Contribute to the strategy for safe, practical, and secure adoption of AI across infrastructure and DevOps practices.Lead and participate ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
Their primary responsibility lies in translating SOC analyst pain points, workflows, and use cases into actionable product features, with particular focus on alert/incident prioritisation and intelligent playbook execution that helps analysts make critical security decisions. Their responsibilities will include: Providing expert SOC operational guidance to product management … operational needs. Translating SOC analyst pain points, workflows, and use cases into actionable product features and user stories. Designing and validating alert prioritisation algorithms, incident triage workflows, and automated playbook logic based on operational experience. Collaborating with product managers to shape product strategy, roadmap priorities, and feature definitions. Conducting ...

Cyber Security Engineer

Location
City Of London, England, United Kingdom
maintain the organisation's cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security , while also providing security advice to technology projects and supporting security‐by‐design principles. … knowledge of Microsoft Security technologies . Experience with Microsoft 365, Entra ID, Intune and Defender . Knowledge of SIEM/SOAR, vulnerability management and incident response . Understanding of cloud security and network security principles . Experience supporting security assessments, audits and penetration testing. Knowledge of security frameworks ...

Cyber Security Engineer

Hiring Organisation
Morgan Hunt Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£390.00 - £430.00 per day
maintain the organisation's cyber security capabilities. You will have a broad remit across Microsoft security technologies, identity and access management, vulnerability management, incident response, SIEM/SOAR, threat hunting and cloud security , while also providing security advice to technology projects and supporting security-by-design principles. … knowledge of Microsoft Security technologies . Experience with Microsoft 365, Entra ID, Intune and Defender . Knowledge of SIEM/SOAR, vulnerability management and incident response . Understanding of cloud security and network security principles . Experience supporting security assessments, audits and penetration testing. Knowledge of security frameworks ...

Lead DevOps Engineer

Location
Greater London, England, United Kingdom
configuration, database schema creation, and operational workflows across cloud and on-prem platforms.* Support production systems with a focus on high availability, disaster recovery, incident response, vulnerability management, patching, and change management.* Containerize applications and support deployments using container orchestration platforms.* Partner with development teams to understand application … engineering tools to accelerate development, automation, troubleshooting, documentation, and operational workflows.* Identify, design, and help implement AI-enabled operational capabilities for infrastructure automation, observability, incident response, and platform engineering.* Contribute to the strategy for safe, practical, and secure adoption of AI across infrastructure and DevOps practices.* Lead ...

Security Engineer

Hiring Organisation
Reed
Location
Redhill, Surrey, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £52,500 per annum, Inc benefits
customer-facing network environments. This is an excellent opportunity for a cybersecurity professional who enjoys working across network security, threat management, vulnerability assessment and incident response within a technically challenging environment. The Role As a Security Engineer, you'll play a key role in maintaining, improving and protecting … development of security policies, procedures and standards Providing cybersecurity guidance to engineering and IT teams Maintaining SIEM, IDS and IPS technologies Contributing to incident response and security management processes Producing technical documentation and security reports Supporting continuous improvement of network and information security controls About ...

Product Security Engineer

Location
Manchester, England, United Kingdom
real control rather than a manifest scan, build-pipeline isolation, third-party risk as runtime telemetry. When the next big supply-chain incident lands, we should know within hours whether it touches us. Detect, respond, contain Runtime detection that catches what actually happens, not what a vendor template guesses … might. Incident response codified as automation: containment, rotation, isolation, evidence capture. Forensics tooling that works on our stack. Adversary emulation against our real attack surface. The metric is mean-time-tocontain, not control coverage. Secure the agentic development surface Our engineers ship with AI agents in the loop ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
practical use of AI‐assisted features within security tools to improve efficiency and consistency. Maintain andenhanceourtools and platforms to continuously improve ourintelligence,detection and response capability. Perform in-depth investigation and analysis of security alertsto identify and promptly respond to securityevents. Collaboratewith key stakeholders during investigations to gather further … information and coordinate response actions. Derive value fromrelevant threat intelligence to drive proactive action. Influencethe strategic direction of our team by presenting insight into the security events, alerts and incidents we handle. Maintain a broad understanding of IT/online environments and key company assets to enhance decision making ...

Lead Network Operations Engineer

Hiring Organisation
G Research
Location
London, United Kingdom
Salary
£ 80 K
network and security infrastructure across datacentre and office environments.This is a hands-on technical leadership role focused on operational excellence, automation, observability, and incident response — ensuring high availability, resilience, and a strong security posture.Key responsibilities:Own the day-to-day performance, stability, availability, and security of network platforms … across datacentre, WAN, and campus environmentsLead response to critical incidents, driving rapid diagnosis, containment, and long-term remediationChampion an automation-first approach, reducing operational toil through tooling, observability, and emerging technologies (including agentic AI)Develop and refine operational tooling, runbooks, and incident response frameworks to ensure consistent ...

Cyber Security Consultant

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
other compliance requirements. Develop and improve security policies, procedures and governance frameworks. Establish and maintain risk registers and support security governance forums. Support incident response planning, tabletop exercises and crisis management activities. Provide advice across areas including vulnerability management, identity and access management, cloud security, security operations … beneficial: ISO 27001/ISO 27005 NIST CSF CIS Controls SOC 2 NIS2/DORA Risk management and governance Security operations and monitoring Incident response Vulnerability management Cloud security, particularly Microsoft Azure and Microsoft 365 This is a UK-based role and applicants must have the full ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 490,000 - 495,495 Daily
deployment, testing, go-live and ongoing operational support. Work with technical and non-technical stakeholders to deliver secure and practical outcomes. Support security monitoring, incident response and continuous improvement initiatives. Contribute to security architecture reviews and technology roadmap discussions. Ensure security controls remain effective across both cloud … Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates who can demonstrate experience of: Assessing technical ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
Surbiton, Surrey, St. Mark's, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£490 - £495/day £495pd, Outside IR35
deployment, testing, go-live and ongoing operational support. Work with technical and non-technical stakeholders to deliver secure and practical outcomes. Support security monitoring, incident response and continuous improvement initiatives. Contribute to security architecture reviews and technology roadmap discussions. Ensure security controls remain effective across both cloud … Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates who can demonstrate experience of: Assessing technical ...

Senior Security Engineer, Detection and Response

Hiring Organisation
HackerOne
Location
London, United Kingdom
Salary
£ 80 K
Engineer, Detection and ResponseRemote Location: Austin TX, Seattle, WA, Washington, DC, San Francisco, CA, Boston, MA Position SummaryAt HackerOne, we’re rebuilding our Detection & Response function with an AI-first approach—focused on engineering, not just triage. As a Senior Security Engineer, you will design and deliver detection … response capabilities that protect a modern, cloud-native environment by writing code, building AI-powered tooling, and automating workflows end-to-end.This role operates across the full detection lifecycle—from identifying gaps in observability to shipping high-signal detections and leading incident response when it matters most. ...

Cyber Defense & Detection Engineer for Incident Response

Location
Greater London, England, United Kingdom
Jane Street in London seeks a Cybersecurity Detection and Response Analyst to protect employees, data, and infrastructure. The role blends incident response, detection engineering, and SOC automation, with emphasis on building tools and systems rather than mere monitoring. The team performs threat modelling, threat hunting, and ongoing ...

Cyber Security Engineer - Assistant Vice President

Location
Greater London, England, United Kingdom
maintain of workspaces, including data connectors, Logic App, Function App, analytics rules, workbooks, and playbooks. Develop and refine custom queries for advanced threat hunting, incident investigation, and reporting. Optimize SIEM performance, cost, and data retention policies Identify new log sources work closely with infrastructure teams Identify, onboard, and configure … detect anomalies and incidents across the applications and infrastructure estate. Collaborate with SOC team to enrich detection logic based on known vulnerabilities and misconfigurations. Incident Response & Security Operations: Formulate proactive threat hunting rule based on emerging threats and intelligence. Contribute to the development and improvement of security playbooks ...

Associate Consultant, Digital Forensics and Incident Response

Hiring Organisation
Control Risks
Location
London, United Kingdom
Salary
£ 80 K
Consultant to join us in London. As an Associate Consultant you will provide technical expertise and consultative solutions in the field of Digital Forensics, Incident Response, Cyber Security and eDiscovery for our clients. Our clients include Law Firms, Fortune 500 multi-nationals, and Government/Law Enforcement. … regional and international Discovery & Data Insights teams (DFIR/Legal Technologies/Data Analytics) as well as working closely with our Cyber Response and Crisis Management divisions as well as our Investigations teams.As an Associate Consultant you will play a crucial role in supporting our team of experienced professionals ...