701 to 725 of 2,379 Incident Response Jobs in the UK

Engineering Manager, Security

Location
Greater London, England, United Kingdom
responses. Partner with the DPO on data governance and breach notification obligations. Manage third-party and supply chain security risk, including critical outsourcing oversight. Incident management & operations: Own the security incident response plan; lead major incident management for cyber events. Operate and improve security monitoring, SIEM ...

Security Architect (Zero Trust) - DV Cleared

Hiring Organisation
Sanderson Recruitment
Location
Aldershot, Hampshire, United Kingdom
Salary
£ 70 K
Trust and least privilege principlesCyber Threat & Risk ManagementAssess cyber threat landscapes and design threat-informed security architecturesLead security risk assessments and vulnerability management programmesDesign incident response, threat intelligence and cyber defence capabilitiesArchitect security monitoring, detection and response solutionsDevelop cyber resilience and business continuity frameworksCloud & Security SolutionsDesign cloud ...

Associate, Cyber Risk

Hiring Organisation
Kroll
Location
United Kingdom
Salary
£ 60 K
their journey toward cyber resilience. Clients count on us for quick and expert support in the event of and in preparation against a cyber incident; from incident response to risk assessments, and complex forensics to breach notification and ID theft remediation we help clients – of all sizes ...

Assistant Manager Information Security

Location
Greater London, England, United Kingdom
SLAs, coordinating timely remediation with technology teams and external providers, and keeping abreast of the evolving threat landscape. Support the maintenance and testing of incident response and crisis management procedures, contributing to the effective triage, coordination and post‐incident review of security and data protection events while … GENERAL Act as a first point of contact for information security and data protection queries, alerts and events, coordinating responses via the bank's incident management protocols and escalating to the Head of Information Security & Resilience as appropriate. Undertake day‐to‐day administrative tasks, reporting and communication with relevant ...

SOC Analyst - Tier 2 and Tier 3 (SC and DV)

Hiring Organisation
Pigment Consulting
Location
Manchester Area, United Kingdom
Investigation of phishing, malware, credential compromise and suspicious activity. Supporting containment, eradication and recovery. Developing and improving detection rules and playbooks. Producing high-quality incident documentation and reports. Supporting and mentoring Tier 1 analysts. Tier 3 SOC Analyst As a Tier 3 Analyst, you’ll provide advanced technical investigation … senior escalation point for complex incidents: Leading complex and high-severity security investigations. Advanced threat hunting and incident response. Malware, endpoint, network and forensic investigation. Developing advanced detections and response capabilities. Root-cause analysis and post-incident investigation. Supporting major incident response. Working closely with security ...

Senior Security Engineering Consultant

Hiring Organisation
Nomios
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
Professional Services role within our Security Engineering function, focused on detection engineering and automation. You will lead the design and delivery of detection and response capabilities across SIEM, XDR and SOAR platforms. This includes building detection rules, developing automations, and creating operational playbooks that support effective SOC outcomes.A … Working directly with customers, you will define detection strategies, design use cases aligned to MITRE ATT&CK, and guide improvements in visibility, coverage and response maturity. You will work closely with platform onboarding and engineering teams, supplementing them with specialist expertise in detection engineering and automation, rather than focusing ...

SOC Analysts - L2 and L3 (SC and DV-Cleared)

Hiring Organisation
Pigment Consulting
Location
Manchester, North West, United Kingdom
Employment Type
Contract
Investigation of phishing, malware, credential compromise and suspicious activity. Supporting containment, eradication and recovery. Developing and improving detection rules and playbooks. Producing high-quality incident documentation and reports. Supporting and mentoring Tier 1 analysts. Tier 3 SOC Analyst As a Tier 3 Analyst, you'll provide advanced technical investigation … senior escalation point for complex incidents. Responsibilities include: Leading complex and high-severity security investigations. Advanced threat hunting and incident response. Malware, endpoint, network and forensic investigation. Developing advanced detections and response capabilities. Root-cause analysis and post-incident investigation. Supporting major incident response. Working closely ...

Security Operations Manager

Location
Bournemouth, England, United Kingdom
deliver a modern, resilient cyber security function. What you’ll be doing: Lead and develop a Cyber Security Operations team Take ownership of incident detection, response, and recovery Drive SOC maturity improvements and tool optimisation Deliver security insights and risk reporting to senior stakeholders Partner with vendors, forensic … delivery of the security strategy and roadmap What we’re looking for: Proven experience leading SOC/Cyber Security Operations teams Strong background in incident response and threat management Experience with SIEM, monitoring, and detection engineering Knowledge of frameworks such as ISO27001, NIST, GDPR Ability to operate ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
world attack techniques Map customer log sources to detection use cases to assess coverage and identify gaps Design and implement SOAR automations, integrations and response workflows Develop and document customer incident response playbooks aligned to detection outputs Translate threat intelligence and operational learnings into improved detections … including use case design, ruleset development and coverage assessment Log source mapping and normalisation to support detection use cases Network Detection and Response technologies such as Vectra AI, Corelight or similar Cloud security and telemetry, particularly within Azure environments Threat intelligence integration and enrichment to support detection and response ...

Business Information Security Officer (BISO)

Location
Southampton, England, United Kingdom
tracking. Ensure all projects, solutions, and business changes are delivered using Secure by Design principles, identifying control weaknesses and managing associated risks. Lead security incident and breach response activities between Technology and the business, participating in the Cyber Security Incident Response Team (CSIRT) where required. Drive ...

Business Information Security Officer (BISO)

Hiring Organisation
Kingfisher
Location
Southampton, Hampshire, United Kingdom
Salary
£ 100 K
remediation tracking.Ensure all projects, solutions, and business changes are delivered using Secure by Design principles, identifying control weaknesses and managing associated risks.Lead security incident and breach response activities between Technology and the business, participating in the Cyber Security Incident Response Team (CSIRT) where required.Drive assurance ...

Business Information Security Officer (BISO)

Location
Southampton, England, United Kingdom
tracking. Ensure all projects, solutions, and business changes are delivered using Secure by Design principles, identifying control weaknesses and managing associated risks. Lead security incident and breach response activities between Technology and the business, participating in the Cyber Security Incident Response Team (CSIRT) where required. Drive ...

Information Security Analyst

Location
Greater London, England, United Kingdom
join its global Information Security Team. This role is ideal for an individual who enjoys a broad range of security responsibilities spanning security operations, incident response, governance, risk management, compliance, supplier assurance and security project delivery. As a member of a small but highly effective global Information Security … than just IT service and delivery. Key Responsibilities Monitor, investigate and respond to security alerts and incidents across on-premise and cloud environments. Lead incident triage, containment, remediation and post-incident reviews to minimise business risk. Manage security operations workflows, ensuring issues are prioritised and resolved within agreed ...

Director, Security Engineering

Location
Greater London, England, United Kingdom
governance, and operations—defining roadmaps, managing budgets, and communicating risk to executives while serving as a senior security advocate for sales, customer audits, and incident communications. You will own full-lifecycle detection and response (telemetry, automation, CI/CD detection-as-code, and MTTR/ATT&CK metrics … serve as Incident Commander, running regular tabletop/purple-team exercises and postmortem improvements. A major focus is driving AI security and internal AI governance: integrating LLMs/ML into SOC triage and anomaly detection, defending AI attack surfaces (agent activity, prompt injection, machine identities), hardening against AI-driven ...

Lead IT Security Engineer (Cybersecurity & Platform Security)

Location
Greater London, England, United Kingdom
cloud security controls, baselines, monitoring capabilities, and security automation solutions. Develop and enhance scripts, workflows, and automation to improve operational efficiency, security coverage, and response times. Create and maintain technical documentation, operational procedures, runbooks, and knowledge articles to support cloud security operations. Participate in incident response, troubleshooting ...

Senior SOC Analyst

Location
City Of London, England, United Kingdom
experienced Senior SOC Analyst to join a growing security operations team in London. This is a hands-on position for someone with strong incident detection, investigation and response experience. You will take the lead on complex security incidents, support the development of junior analysts and help improve … organisation’s overall detection and response capabilities. Key responsibilities Investigating and responding to complex security alerts and incidents Leading incident triage, containment and remediation activities Performing threat hunting and identifying suspicious behaviour across the environment Developing and improving SIEM rules, alerts and security use cases Analysing endpoint, network ...

ServiceNow GRC Architect

Location
Greater London, England, United Kingdom
across multiple ServiceNow modules, including: Integrated Risk Management (IRM): Policy Management, Compliance & Audit Management, Vendor Risk Management, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, and Security Dashboards. IT Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration ...

Vice President, Production Services Application Support

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
coverage across on-site and offshore support hours. Use SQL scripting, automation, monitoring, and observability tools to improve operational resilience, service health, reliability, and incident response. To be successful in this role, were seeking the following: Excellent SQL scripting skills. Strong scripting and automation skills using languages such … Proven skills and track record in AI automation, including the use of intelligent automation capabilities to reduce manual effort, improve operational efficiency, and enhance incident response workflows. Experience applying AI and automation solutions for alert correlation, anomaly detection, predictive monitoring, and service optimisation. Strong understanding of Site Reliability ...

Senior Cyber Security Engineer

Hiring Organisation
The Financial Times
Location
London, UK
Employment Type
Full-time
working. DesirableExperience with leveraging AI for AppSec and CloudSec. AWS Certified Security – Speciality or equivalent practical AWS security experience. Terraform or CloudFormation expertise. Incident-management or incident-response experience. Experience with Splunk or similar logging/SIEM platforms. Experience with security metrics, dashboards or reporting that helped ...

Cyber Security Operations Manager

Hiring Organisation
Vitality
Location
Stockport, Greater Manchester, United Kingdom
Salary
£ 80 K
Office. Full time, 35 hours per week. We are happy to discuss flexible working!Top 3 skills needed for this role:Security Operations Leadership & Incident ResponseRisk, Governance & Regulatory ComplianceTechnical Depth in Monitoring & Security EngineeringWhat this role is all about:You will be joining a vibrant, exciting environment to lead … team of security analysts and a service delivery manager with specific skill sets. This role provides cyber security leadership through risk management, threat monitoring, incident response, resilience planning, training, and CSIRT team support.In addition to your daily responsibilities, you will be playing a part in the longer-term ...

Head of Production Management- J.P. Morgan Personal Investing

Hiring Organisation
JP Morgan Chase
Location
London, United Kingdom
Salary
£ 120 K
resilience, and risk posture of our production and disaster recovery environments. In this role, you will define and govern production management standards across change, incident, capacity, and automation disciplines — driving operational consistency and minimising disruption to our UK customers. Working within a you-build-it-you-run-it engineering … speed, scalability, reliability, and cost-to-serve), including portfolio-level standards for AI-orchestrated delivery workflows, release governance, automated test modernization, resilience engineering, and incident response acceleration; establishes guardrails for validation, security, resiliency, traceability, and reuse.Applies knowledge of tools within the Software Development Life Cycle toolchain, including enterprise ...

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£65,000
Security Operations capability. This is more than a leadership role. You'll remain hands-on in the fight against cyber threats, leading investigations, driving incident response, mentoring analysts, and strengthening our detection and response capabilities across multiple complex client environments. Whether you're already leading … operational discussions with stakeholders, partners and custom ers. What You'll Bring: Proven experience working within a Security Operations Centre (SOC). Strong incident detection, investigation and response experience. Deep understanding of network and host-based attack techniques. Hands-on experience with SIEM technologies such as Microsoft Sentinel ...

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Security Operations capability. This is more than a leadership role. You'll remain hands-on in the fight against cyber threats, leading investigations, driving incident response, mentoring analysts, and strengthening our detection and response capabilities across multiple complex client environments. Whether you're already leading … operational discussions with stakeholders, partners and custom ers. What You'll Bring: Proven experience working within a Security Operations Centre (SOC). Strong incident detection, investigation and response experience. Deep understanding of network and host-based attack techniques. Hands-on experience with SIEM technologies such as Microsoft Sentinel ...

Test Environment Manager

Location
Greater London, England, United Kingdom
provisioning time, and stability metrics. Monitor environment health using observability tools (Prometheus, Grafana, Splunk, etc.) and proactively identify and resolve performance issues or bottlenecks. Incident & Problem Management Lead incident response for environment-related issues, driving quick resolution and facilitating blameless post-mortems. Implement permanent fixes based … manual environment tasks and eliminate them through automation, improving engineering efficiency and reducing operational burden. Strategic & Cultural Responsibilities: Continuous Improvement Analyze environment performance data, incident trends, and post-mortem outcomes to drive ongoing enhancements and innovation. Reliability Management Apply an "error budget" framework to balance velocity and reliability across ...

cloud engineer in insurance

Location
Greater London, England, United Kingdom
Drive improvements in reliability, resilience, performance, and efficiency through SRE practices Own and enhance observability and monitoring, including meaningful alerting, operational dashboards, and rapid incident diagnosis Improve operational maturity through incident management, root-cause analysis, and continuous improvement Ensure workloads are designed, deployed, and operated according to cloud … such as Terraform, CI/CD pipelines, and automation tooling Hands-on expertise in SRE and operational excellence, including monitoring, alerting, reliability improvement, and incident response Proven ability to lead technical initiatives end-to-end while balancing robustness, efficiency, and developer usability Experience operating and supporting Kubernetes-based ...