escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Centre (CFC) according to Experian's IncidentResponse Plan. This team member will join a new, growing team of specialized, advanced responders to support escalations of complex or prioritized matters … from Experian's existing 24x7 security monitoring and response functions responsible for responding to and analysing security incidents involving threats targeting Experian information assets. These threats may include phishing, malware, network attacks, and suspicious activity. You will work with end-users, partners, technical support teams, and management to ensure … in on-call schedule or work outside of normal work hours to manage cybersecurity incidents. You will report to the CFC Senior Director of Incident Management and Security Operations. Main Responsibilities include: Conduct advanced incidentresponse activities to investigate and contain complex and larger-scale cybersecurity matters More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
Experian Ltd
escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Centre (CFC) according to Experian's IncidentResponse Plan. This team member will join a new, growing team of specialized, advanced responders to support escalations of complex or prioritized matters … from Experian's existing 24x7 security monitoring and response functions responsible for responding to and analysing security incidents involving threats targeting Experian information assets. These threats may include phishing, malware, network attacks, suspicious activity. Also, you will involve working with end-users, partners, technical support teams, and management to … in on-call schedule or work outside of normal work hours to manage cybersecurity incidents. You will report to the CFC Senior Director of Incident Management and Security Operations. Main Responsibilities include:- Conduct advanced incidentresponse activities to investigate and contain complex and larger-scale cybersecurity matters More ❯
meticulous documentation maintenance, risk assessments, and strict compliance with regulations. Key responsibilities include monitoring and managing security infrastructure, defining and implementing security policies, managing incidentresponse processes, and promoting cybersecurity awareness across the organization. This global position involves close collaboration with Global IT colleagues, various functions, and third … 2.0, and maintain ISMS. Identify risks, develop a comprehensive security plan. Test cyber-attacks regularly to address vulnerabilities. Monitor security trends, adapt strategies. Oversee incident monitoring, detection, response via SOC and MSSPs. Manage security tools like SIEM and endpoint protection. Lead incidentresponse and post-incident … frameworks (e.g., ISO 27001, COBIT), security technologies, tools, and best practices across EU, UK, and USA Proficiency in risk management processes, vulnerability assessments, and incidentresponse strategies. Current technical and hands-on experience with security tools and technologies, including Rapid7, Rubrik, Sentinel, and endpoint protection solutions like Microsoft More ❯
Birmingham, West Midlands, United Kingdom Hybrid / WFH Options
OFWAT
Join Ofwats Corporate Enablers as a Head of Security Operations & IncidentResponse *Office Location: Birmingham (B5 4UA) with hybrid working * About Us We are Ofwat, the Water Services Regulation Authority, a non-ministerial government department responsible for regulating the water sector in England and Wales. Our work has … needed; holding water companies to account. Come and work at the source of everyday life. The Role As the Head of Security Operations and IncidentResponse, you will be responsible for the Security Strategy in Ofwat, our security operations, and overseeing the monitoring and response to security … team and be the primary point of contact for the leadership team and business stakeholders for any security event, ensuring comprehensive monitoring and effective response to cyber security threats across all networks, assets, and users. You will also be responsible for managing incidents related to personnel, technical, and physical More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Nottingham Building Society
multi-factor authentication (MFA), and identity federation for staff and partners. Documentation and Improvement: Maintain and improve access governance documentation and identity management processes. IncidentResponse: Help with incidentresponse and troubleshooting of identity-related issues. About you: Tool Proficiency: Working knowledge of identity governance and More ❯
carefully selected team of experts are capable of solving complex cyber security challenges - keeping data secure and businesses running as usual. CyberClan's Global IncidentResponse Teams are available 24/7/365 to leap into action, responding to all cyber-attacks with proven defensive methodology. We … mentor junior staff and handle multiple projects simultaneously. Extensive travel may be required on short notice. Reporting to the Global Head of Digital Forensics & IncidentResponse, the successful candidate will join the Post Breach Remediation team, collaborating with cross-functional teams within the organization. Essential Functions Provide reliable … operations after a disaster. Own customer issues from troubleshooting to resolution or escalation. Identify and escalate urgent issues. Meet or exceed customer expectations regarding response quality, timeliness, and overall experience. Act as the point of contact for escalations, ensuring prompt resolution. Innovate beyond standard practices to rescue production environments. More ❯
cybersecurity team. The ideal candidate will be responsible for designing, implementing, and maintaining our customers Elastic SIEM infrastructure to ensure robust security monitoring and incidentresponse capabilities. Embedded with an existing Customer SOC, you will provide Engineering support and expertise for the customers Elastic SIEM implementation, working alongside … real-time monitoring and analysis of security events. Data Integration : Integrate various data sources into Elasticsearch, ensuring data quality and consistency through ETL processes. IncidentResponse : Investigate and respond to security incidents, leveraging Elastic SIEM capabilities to identify and mitigate threats. Performance Optimization : Monitor and optimize the performance More ❯
Nottingham, Nottinghamshire, United Kingdom Hybrid / WFH Options
The Nottingham
Analyst at Nottingham Building Society: Security Monitoring: Monitor and respond to security alerts across networks, systems, and cloud environments using SIEM and EDR tools. Incident Investigation: Investigate security incidents and support the full incidentresponse lifecycle, including documentation and root cause analysis. Vulnerability Assessments: Conduct regular vulnerability More ❯
and be a key player in ensuring the organisation's overall cybersecurity posture remains strong. You will also be involved in proactive security measures, incidentresponse, and disaster recovery planning. This role is office-based at our Coventry site, with travel to other UK sites as required, sometimes … including firewalls, VPNs, IDS/IPS, and endpoint protection. Conduct vulnerability assessments and penetration testing. Apply patches and updates to mitigate security threats. Lead response efforts in cyber-attacks or security breaches, including containment and remediation. Perform root cause analysis and recommend mitigation strategies. Collaborate on incident handling More ❯
delivery processes Support the agenda for our cloud first strategy and ensure any cloud solutions meet our security aspirations and requirements Take responsibility for incident management and lead our response to cyber security events, incidents and potential breaches Ensure our suppliers adequately monitor the IT estate for threats … environments A strong technical background across Networks, Security, Firewall, Vulnerability Management, SIEM and EDR technologies Experience with cyber security concepts, such as Threat Modelling, IncidentResponse, Penetration Testing (external/internal) Advanced knowledge of cloud products and services e.g. Azure, Microsoft 365 Emotionally intelligent and able to recognise More ❯
be part of a fast-paced, successful team. This is a hands-on technical lead role, requiring expertise in security assessments, threat detection and incident response. We are looking for someone with a solid technical background who is willing to take on a broader remit and take ownership of … auditing, policy enforcement, and risk mitigation across a group of companies. PRINCIPLE ACCOUNTABILITIES Monitor security threats and vulnerabilities, proactively identifying and mitigating risks Lead incidentresponse efforts, investigating security breaches and implementing corrective actions Work closely with IT, cloud, and network teams to ensure security is integrated at More ❯
standards in accordance with regulatory requirements. Risk Management: Conduct regular security audits, vulnerability assessments, and penetration tests to identify risks and recommend mitigation strategies. IncidentResponse: Lead and coordinate response efforts during security incidents, ensuring swift resolution and minimal impact. Technology Integration: Collaborate with IT and business More ❯
optimal performance and stability. Manage and maintain limited Windows Servers running ITSM agents. Troubleshooting & Root Cause Analysis: Identify, analyse, and resolve complex system issues. Incident & Problem Management: Implement robust incidentresponse and problem-resolution strategies. Performance Monitoring & Optimization: Utilize to proactively enhance system performance. Security & Compliance: Ensure More ❯
Warwick, Warwickshire, United Kingdom Hybrid / WFH Options
ICEO
to maintain rigorous standards Conduct regular risk identification and develop mitigation strategies across systems, processes, and vendors Develop and maintain security policies, standards, and incidentresponse protocols Support business continuity and disaster recovery planning for seamless resilience Lead and oversee internal/external security audits to ensure transparency More ❯
Key responsibilities and accountabilities: Design and recommend security architectures, solutions, and controls to protect client critical assets and data. Develop and help customers implement incidentresponse plans, which outline steps to take in case of a security breach. Perform security assessments for customers, including penetration testing, to identify More ❯
Derby, Derbyshire, United Kingdom Hybrid / WFH Options
risual Limited
the Node4 Group. As SOC Analyst, you will be helping customers effectively respond to and manage cybersecurity incidents, ranging from compromise assessments to live incidentresponse and digital forensics. The successful candidate will demonstrate a technical background, ideally experience or education in working in a SecOps environment, and More ❯
identify, own, and solve security challenges end-to-end. Strong technical skills across areas like threat detection, vulnerability management, identity and access control, and incident response. Familiarity with a range of security tools and platformssuch as SIEM, EDR, firewalls, and cloud security solutions. A clear understanding of security frameworks More ❯
West Midlands, Bilbrook, Staffordshire, United Kingdom Hybrid / WFH Options
Tilt Recruitment
into every layer of the cloud ecosystem. Driving the DevSecOps mindset and ensuring integration with Group-level security processes such as monitoring, alerting, and incident response. You’ll bring: Proven experience in cloud security engineering within an enterprise setting, preferably on Microsoft Azure. Solid background in foundational security design More ❯
warwick, midlands, United Kingdom Hybrid / WFH Options
Vallum Associates
improve the overall security posture of the organization’s IT estate Collaborate with internal teams to integrate IDS tools with broader SIEM and threat response systems Produce reports, dashboards, and technical documentation related to IDS activities and incidents Ensure compliance with security policies and regulatory requirements Requirements: Minimum … per week Excellent communication skills and stakeholder management Strong hands-on experience with Intrusion Detection Systems (especially HIDS) Proven background in cybersecurity monitoring and incidentresponse Familiarity with broader estate security management Strong analytical and problem-solving skills Kind Regards -- Priyanka Sharma Senior Delivery Consultant Office: 02033759240 Email More ❯
Warwick, north west england, United Kingdom Hybrid / WFH Options
Vallum Associates
improve the overall security posture of the organization’s IT estate Collaborate with internal teams to integrate IDS tools with broader SIEM and threat response systems Produce reports, dashboards, and technical documentation related to IDS activities and incidents Ensure compliance with security policies and regulatory requirements Requirements: Minimum … per week Excellent communication skills and stakeholder management Strong hands-on experience with Intrusion Detection Systems (especially HIDS) Proven background in cybersecurity monitoring and incidentresponse Familiarity with broader estate security management Strong analytical and problem-solving skills Kind Regards -- Priyanka Sharma Senior Delivery Consultant Office: 02033759240 Email More ❯
risk. You'll help define HSBC Group cybersecurity standards, deliver Global Security Operations and Threat Management services, provide round-the-clock monitoring and security incidentresponse, and oversee Network/Application/Infrastructure Security. Your work will provide assurance of the effectiveness of security controls to Business Risk More ❯
and client/regulator interaction. Understanding supply chain security considerations, including software and hardware assurance, secure procurement, and third-party risk management. Exposure to incidentresponse planning, resilience testing, or crisis management in OT environments. Ability to support or guide the creation of cybersecurity architecture documentation, reference models More ❯
of which the cyber team are responsible for implementing across the globe. The type of things you will be helping out with include: SIEM & IncidentResponse Working with the MSSP SOC IAM Microsoft Security Stack Azure 3rd Party Assurance Project work BAU activites Key Details: Salary: Up to More ❯
Immingham, Lincolnshire, North East, United Kingdom Hybrid / WFH Options
Rullion Limited
security risks. Act as Deputy NIS Reporting Officer (NRO) , ensuring compliance with NCSC's Cyber Assessment Framework (CAF) and NIS regulations . Support cyber incidentresponse efforts, managing containment, remediation, and business continuity. Rullion celebrates and supports diversity and is committed to ensuring equal opportunities for both employees More ❯
Derby, Derbyshire, United Kingdom Hybrid / WFH Options
risual Limited
Node4 Group. As SOC Analyst you will be helping customers effectively respond to and manage cybers security incidents, ranging from compromise assessments, to live incidentresponse and digital forensics. The successful candidate will demonstrate a technical background, ideally experience or education in working in a SecOps environment and More ❯