76 to 100 of 988 Incident Response Jobs in the UK

Incident Response Engineer - UK Security Operations

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
Google Public Sector's UK Security Operations team seeks an experienced Incident Response Engineer to join our Hampshire-based on-site team. You will monitor, detect, and respond to security incidents across critical environments, delivering private cloud security for high-assurance customers. In this mid-level role … will operate 24/7, collaborate with product teams, and help mature incident response capabilities, threat hunting, and SOC dashboards while adhering to DV clearance requirements #J-18808-Ljbffr ...

Senior SOC Analyst - Hybrid / London

Hiring Organisation
Interface Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Senior SOC Analyst - Hybrid / Bristol

Hiring Organisation
Interface Recruitment
Location
Bristol, City of Bristol, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Senior SOC Analyst - Hybrid / Leeds

Hiring Organisation
Interface Recruitment
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx2
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Senior Security Analyst

Hiring Organisation
Surrey County Council
Location
Reigate, Surrey, United Kingdom
Employment Type
Permanent
Salary
£55486 - £60898/annum
work will include proactive security monitoring across our hybrid cloud and on premises environment, triaging and investigating alerts, and supporting coordinated incident response activities. You will operate our vulnerability management processes, translate threat intelligence into actionable defences, and contribute to the improvement of detection content and security controls. … contribute to several high impact initiatives including: Establishing a more mature, risk based vulnerability management lifecycle and reducing exposure windows across critical systems Enhancing incident response readiness through improved playbooks, scenario testing, and lessons learned processes Uplifting monitoring coverage and the effectiveness of SIEM/EDR/ ...

SOAR Engineer (SPLUNK)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Description The Senior SOAR Engineer designs, builds and maintains security automations that detect, investigate and respond to cyber threats. The role works closely with Incident Response to identify improvements, create new playbooks and deliver scalable automation within the Splunk ecosystem. Responsibilities include advanced analytics, scripting, creating … cases, validating automation behaviour, documenting changes and mentoring junior engineers. Key Responsibilities Work in partnership with the incident response team to design, identify, and implement opportunities for improvement Develop, and implement automations for detection and response. Be the subject matter experts on big data analytics and automation Participate ...

Head of Cyber Claims - International

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Senior Cyber Security Engineer

Hiring Organisation
Avencia Consulting
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
Salary negotiable
monthly reporting. Deliver secure configuration and compliance reporting across the estate, supporting a measurable uplift in security maturity against NIST CSF. Security Operations and Incident Response: Act as the second cyber escalation point within the 24/7 security operating model, providing technical investigation, containment and response as part of the cyber on-call rota and supporting post-incident reviews. Onboard and manage the day-to-day relationship with the outsourced SOC/MDR provider, establishing operational handover processes and driving improvement in detection and response performance (MTTD/MTTR). Provide security input ...

Senior Cyber Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
monthly reporting. Deliver secure configuration and compliance reporting across the estate, supporting a measurable uplift in security maturity against NIST CSF. Security Operations and Incident Response: Act as the second cyber escalation point within the 24/7 security operating model, providing technical investigation, containment and response as part of the cyber on-call rota and supporting post-incident reviews. Onboard and manage the day-to-day relationship with the outsourced SOC/MDR provider, establishing operational handover processes and driving improvement in detection and response performance (MTTD/MTTR). Provide security input ...

Senior Cyber Security Engineer

Hiring Organisation
The Fidelis Partnership
Location
City Of London, England, United Kingdom
monthly reporting. Deliver secure configuration and compliance reporting across the estate, supporting a measurable uplift in security maturity against NIST CSF. Security Operations and Incident Response: Act as the second cyber escalation point within the 24/7 security operating model, providing technical investigation, containment and response as part of the cyber on-call rota and supporting post-incident reviews. Onboard and manage the day-to-day relationship with the outsourced SOC/MDR provider, establishing operational handover processes and driving improvement in detection and response performance (MTTD/MTTR). Provide security input ...

IT Security Analyst

Hiring Organisation
Omnitek Recruitment
Location
Erskine, Renfrewshire, United Kingdom
Employment Type
Permanent
Salary
£60000 - £70000/annum
international Infrastructure Security team as part of a new local security function based in the Glasgow office. This is a hands-on role covering incident monitoring and response, as well as risk and vulnerability management across ICT and OT environments. You'll be responsible for all aspects … plus a bonus, good pension, generous holiday allowance (option to purchase more each year) plus more…. What you'll be doing Handle incident monitoring and response for EMEA operations. Classify, prioritise, and escalate security events, and drive them through to root cause and closure. Run vulnerability management ...

Site Reliability Engineer

Hiring Organisation
Connells Group HQ
Location
Milton Keynes, Buckinghamshire, England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £55,000 per annum
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Devops Engineer - SC Cleared

Hiring Organisation
Lorien
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
Salary negotiable
coaching to engineers across the team. Contribute to technology roadmaps, service improvements and strategic planning. Drive adoption of DevOps and Agile best practices. Support incident management activities, including major incident response and post-incident reviews. Participate in an out-of-hours support and release rota … Monitoring, observability and platform reliability engineering. Logging, metrics and alerting solutions including technologies such as: ELK Stack Splunk Prometheus Grafana Leading or coordinating major incident response activities. Working within Agile delivery environments and modern DevOps practices. What We're Looking For Successful candidates will bring: Strong technical leadership ...

SC Cleared Splunk SIEM Engineer

Hiring Organisation
Hays
Location
Knutsford, Cheshire, North West, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£500.0 - £638 per day + Up to £638 per day Inside IR35
Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience with … tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. SOAR & Automation: Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. Network Security Fundamentals: Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. Communication & Documentation ...

Splunk SIEM Engineer

Hiring Organisation
Experis
Location
Knutsford, Cheshire, United Kingdom
Employment Type
Contract
Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience with … tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. SOAR & Automation: Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. Network Security Fundamentals: Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. Communication & Documentation ...

Interim Cyber Security Officer

Hiring Organisation
Alois Technologies Limited
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 400 - 500 Daily
successful candidate will have extensive hands-on experience with CrowdStrike Falcon and Splunk Enterprise Security , with the ability to enhance security monitoring, improve incident response processes, support threat hunting activities, and mentor internal team members. Key Responsibilities Lead the deployment, configuration, administration, and ongoing optimisation of the CrowdStrike … investigation of sophisticated cyber threats. Act as the senior technical escalation point for complex and high-priority cyber security incidents, utilising Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) technologies to support rapid investigation, containment, and remediation. Design, develop, and improve Security Orchestration, Automation ...

Interim Cyber Security Officer

Hiring Organisation
Alois Technologies Limited
Location
London, United Kingdom
Employment Type
Contract, Temporary
Salary
£400 - £500/day
successful candidate will have extensive hands-on experience with CrowdStrike Falcon and Splunk Enterprise Security , with the ability to enhance security monitoring, improve incident response processes, support threat hunting activities, and mentor internal team members. Key Responsibilities Lead the deployment, configuration, administration, and ongoing optimisation of the CrowdStrike … investigation of sophisticated cyber threats. Act as the senior technical escalation point for complex and high-priority cyber security incidents, utilising Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) technologies to support rapid investigation, containment, and remediation. Design, develop, and improve Security Orchestration, Automation ...

Senior Azure Cybersecurity Content Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
opportunity, you must have 5+ years of relevant cyber security industry experience in roles such as Senior SOC Analyst (L3/L4), Security Engineer, Incident Responder, Threat Hunter, or Digital Forensics Investigator , with a strong focus on Microsoft Azure security . Ideally, you have: Worked in defensive security roles … within Azure-based or hybrid cloud organisations Designed or operated real-world Azure security controls, detections, and incident response workflows Experience translating complex security concepts into structured learning experiences You should also demonstrate: Deep hands-on experience with Microsoft Azure , including security architecture, identity, networking, monitoring, and incident ...

IT Security Manager

Hiring Organisation
Jobleads-UK
Location
Guildford, England, United Kingdom
shareholder directives. Advise senior stakeholders on cyber threats, emerging risks, and security investment priorities. Oversee day‐to‐day security operations including monitoring, threat response, vulnerability management, and incident handling. Ensure the organisation’s SIEM, EDR, firewalls and other security tools are well‐configured and maintained. Work closely with … Design principles. Oversee cyber security audits, compliance initiatives and certification efforts. Maintain security documentation, registers and evidence repositories for audit readiness. Lead the response to cyber incidents and coordinate with technical teams to contain and remediate threats. Ensure good threat intelligence sources for the latest security threats and mitigation ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP 500 - 550 Daily
wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy … Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
Remote work, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550/day
wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy … Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . ...

Cyber Response Assistant Manager (Proactive Consulting)

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response Assistant Manager (Proactive Consulting) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice. Your specific focus … will be in the domain of proactive advice and guidance as it relates to Security Operations/Defensive Cyber Operations (Incident Management, Vulnerability Management, Threat Intelligence). Organisations face increasing challenges operating effective security operations capabilities across threat intelligence, vulnerability management and incident management. This role helps clients ...

Support Engineer L3

Hiring Organisation
Opus Recruitment Solutions
Location
Newcastle upon Tyne, Tyne & Wear, United Kingdom
Employment Type
Contract
Contract Rate
£37000 - £55000/annum
point for complex issues impacting business-critical services. Execute technical recovery actions during incidents to restore service as quickly as possible. Participate in Major Incident and High-Priority Incident response activities. Technical Troubleshooting Diagnose and resolve application, infrastructure, integration, database, and data-related issues across supported products … architecture, business processes, and operational dependencies. Problem Management & Continuous Improvement Conduct root cause analysis (RCA) and contribute to Problem Management processes. Participate in post-incident reviews and recommend long-term preventative solutions. Drive continuous service improvement through automation, process optimisation, tooling enhancements, and reduction of recurring incidents. Monitor service ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
cloud environment. This is not a traditional SOC role focused on alert handling . The position sits at the senior technical level and combines incident leadership, detection engineering, threat hunting and automation. You’ll have genuine ownership of security operations maturity rather than working in a ticket-driven environment. … senior technical point of escalation within the SOC, leading complex investigations and driving continuous improvement across tooling, detection capability and response processes. Typical responsibilities include: Leading complex security incidents end-to-end including investigation, containment, forensics and root cause analysis. Designing, tuning and improving detection across SIEM ...

Security Analyst | Cyber Security | Hybrid

Hiring Organisation
Cyber Talent Limited
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£55,000
Cyber Essentials , and Cyber Essentials Plus certifications. Produce security metrics , dashboards , and security reports to inform security strategy . Lead and coordinate security incident response and post-incident improvements . Conduct third-party security assessments and manage vendor security assurance . Requirements 4+ years' experience … skills across complex IT environments. Proactive approach to security , with a focus on continuous improvement and best practice . Experience leading or supporting security incident response and remediation . Strong reporting , analysis , and security metrics capabilities. Excellent communication , stakeholder engagement , and documentation skills. Benefits Excellent salary Pension Private ...