1 to 25 of 1,801 Incident Response Jobs in the UK

Senior / Lead Incident Response Engineer

Location
Greater London, England, United Kingdom
Title: Senior/Lead Incident Response Engineer Type: Permanent Location: London – Hybrid The Opportunity We are working with a leading, technology-driven financial services organisation to appoint two Senior/Lead Incident Response Engineers on a permanent basis. These are senior-level positions within a highly … sophisticated cybersecurity environment, suited to candidates who have built their careers in cybersecurity engineering and have subsequently developed deep expertise in incident response and major incident management. The organisation is looking for individuals who have already operated through large-scale, high-impact and business-critical cyber incidents ...

Incident Response Consultant (UK)

Location
United Kingdom
Difenda. This was closely followed in December 2024 by the acquisition of US-based, Kivu Consulting, a global cyber security firm with world-leading incident response capabilities. Role Purpose: Incident Response is a core and strategic component of Quorum Cyber’s business. It is central … managed security services and MDR customers, providing specialist expertise when incidents require investigation, containment, remediation, and recovery beyond routine monitoring and response. The Incident Response Consultant supports investigations into cyber security incidents and, with appropriate guidance, takes ownership of defined investigative workstreams. The role provides sound technical analysis ...

Cyber Defense Incident Responder - Associate Director

Location
Greater London, England, United Kingdom
responds, and mitigates cybersecurity risk, protecting EY and client data, and our information management systems. The opportunity The Cyber & Investigative Services (CIS) Senior Cyber Incident Response Coordinator will exercise exemplary incident management techniques to coordinate incident response to cybersecurity events or incidents stemming from suspected … threats on a global scale. Candidates for the role must have an exceptional comprehension of cybersecurity incident response plans and coordination of activities, establish and foster relationships on a global scale, and have superb verbal and written communication skills. Additionally, candidates must have a sense of diplomacy, ability ...

Senior Manager, Global Cyber Security Incident Response (Global CSIRT)

Location
Greater London, England, United Kingdom
Senior Manager, Global Cyber Security Incident Response (Global CSIRT) Location: London About the role KPMG International sets strategy, supports collaboration and protects the reputation of a global network of independent professional services firms. Within Global Digital, the Global Information Security Group provides trusted security services that support KPMG … digital transformation and help protect the network and its clients from cyber threats. The Global Cyber Security Incident Response Team forms part of Information Security Services and works alongside the Global Security Operations Centre to detect, investigate and support the remediation of potential threats. In this senior operational ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Response Lead

Hiring Organisation
Morson Edge
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Contract, Work From Home
Incident Response Lead Scottish Power HQ, Glasgow Flexible & Hybrid working pattern Negotiable rate, Inside IR35, PAYE and UMB options available Help us create a better future, quicker SP Energy Networks (SPEN) has kicked off an ambitious security transformation programme to transparently reduce risk, achieve compliance with NIS regulations … deliver a cyber resilient business and the Incident Response Lead is essential in achieving our goals. This role will be integrated into an active and ambitious global cyber security function, contributing to SPEN's cyber security purpose of delivering cyber resilient OT and IT, to enable a safe ...

Cyber Defense Incident Responder

Location
Greater London, England, United Kingdom
responds, and mitigates cybersecurity risk, protecting EY and client data, and our information management systems. The opportunity The Cyber & Investigative Services (CIS) Senior Cyber Incident Response Coordinator will exercise exemplary incident management techniques to coordinate incident response to cybersecurity events or incidents stemming from suspected … threats on a global scale. Candidates for the role must have an exceptional comprehension of cybersecurity incident response plans and coordination of activities, establish and foster relationships on a global scale, and have superb verbal and written communication skills. Additionally, candidates must have a sense of diplomacy, ability ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
Head of Cyber Defence & Incident Response At Quadient, we support businesses of all sizes in their digital transformation and growth journey, unlocking operational efficiency with reliable, secure, and sustainable automation processes. Our success in delivering innovation and business growth is inspired by the connections our diverse teams create … business lead the way in powering secure and sustainable business connections through digital and physical channels. Job Description The Head of Cyber Defence and Incident Response owns the organisation’s cyber defence capability across a hybrid environment (mix of on‐prem and cloud platforms), ensuring effective monitoring, detection ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

SOC and Incident Response Lead

Location
City Of London, England, United Kingdom
need any adjustments throughout the process in whatever way works best for you. Job Description The Role As an experienced SOC and Incident Response Lead at ASOS, you will provide hands-on technical leadership across security monitoring, detection, engineering, incident response, and threat-led investigations. … will lead the SOC and Incident Response team, ensure security incidents are investigated and resolved effectively, and maintain a strong operating relationship with our external MSSP. The ideal candidate will combine deep technical expertise with proven experience leading analysts, improving operational capability, managing stakeholders, and making sound decisions ...

Associate/Senior Associate - Data & Cyber

Location
West of England, England, United Kingdom
Data & Cyber team advises a wide range of clients across a variety of industry sectors on cyber incidents, regulatory response, technology and data-related claims, and cyber/technology insurance coverage. We are recognised for combining deep cyber incident response capability with a strong understanding … insurance market, enabling us to support clients across the lifecycle of a cyber event and its downstream exposures: from immediate breach response and crisis management, through policy notification and coverage strategy, to regulatory engagement and dispute resolution. The role Based in Bristol, the Associate (1-4 years ...

Incident Response Consultant - Weekend Shift (Remote, GBR)

Hiring Organisation
CrowdStrike
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
opportunity to rapidly accelerate your skills? Do you crave new and innovative work that actually matters to your customer? Do you have an Incident Response or Information Security background that you're not fully utilizing? Are you capable of leading teams and interacting with customers? Do you love … working around like-minded, smart people who you can learn from and mentor on a daily basis? What You ll Do: Lead incident response engagements. Develop and use new methods to hunt for bad actors across large sets of data. Work under the direction of outside counsel ...

Incident Response Consultant - Weekend Shift (Remote, GBR)

Location
London, United Kingdom
opportunity to rapidly accelerate your skills? Do you crave new and innovative work that actually matters to your customer? Do you have an Incident Response or Information Security background that you’re not fully utilizing? Are you capable of leading teams and interacting with customers? Do you love … working around like-minded, smart people who you can learn from and mentor on a daily basis? What You''ll Do: Lead incident response engagements. Develop and use new methods to hunt for bad actors across large sets of data. Work under the direction of outside counsel ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will … cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond ...

Senior Professional Services Consultant

Location
City Of London, England, United Kingdom
will play a key role in helping organisations strengthen their cyber resilience through the delivery of Solis Security's professional services. Working across Cyber Incident Exercising (CIE), Managed Detection and Response (MDR) and Incident Response (IR), you will partner with clients, delivery teams and commercial stakeholders … offers the opportunity to work on a diverse range of engagements, supporting clients across multiple sectors and geographies. You'll lead and facilitate cyber incident exercises, support client onboarding and service adoption, contribute to incident triage activities and collaborate closely with our Security Operations and Incident Response ...

Security Incident Response Manager

Location
Greater London, England, United Kingdom
securely. KPMG is evolving Security Operations across the UK and Switzerland to create a more integrated, intelligence-led approach to cyber resilience. As Security Incident Response Manager, you will lead the Tier 2 Incident Response function and be accountable for managing cyber security incidents escalated … business hours. You must be eligible for Security Check clearance or able to obtain it. Roles and responsibilities Lead, coach and develop Tier 2 Incident Response Analysts, setting clear standards and providing technical guidance. Direct complex investigations across endpoint, identity, email, cloud and network environments, coordinating activity from ...

Incident Response Specialist

Hiring Organisation
Adecco
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
Contract Rate
£700/day
take your cyber security expertise to the next level? Our client, a leader in the energy sector, is on the lookout for an Incident Response Specialist to join their dynamic cyber security team. Role: Incident Response Specialist Duration: 6 Months (ext. options) Location: Warwick (Hybrid … mindset, promoting shared responsibility among Security Operations teams. Your contributions will be vital in defending against an ever-evolving threat landscape. Key Responsibilities Include: Incident Response: Triage and manage high-priority incidents while ensuring appropriate responses are executed. Produce clear incident summaries quickly and adapt your communication ...

Security Engineer I, AWS Security Incident Response

Location
Manchester, England, United Kingdom
Security Engineer I, AWS Security Incident Response AWS Security Incident Response is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious … activity, lead security response, and can explain technical security concepts to non-technical audiences. Key job responsibilities Respond to threat findings that indicate unauthorized activity has occurred Identify, evaluate and communicate security threats, risks and vulnerabilities, and propose recommended remediation for security issues. Contribute to the development of security ...

Senior SOC Analyst - Incident Response

Location
Greater London, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Senior SOC Analyst - Incident Response

Location
North East, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
England, United Kingdom
Incident Response Engineer, UK Security Operations, Hampshire Google is looking for an Incident Response Engineer to join our Security Operations team based in Hampshire. You will be responsible for identifying, mitigating, and responding to security threats, ensuring the safety and integrity of Google's infrastructure … This role is not marked as remote. Company context Google has active SoftwareCareers listings in the current job inventory. Experience signal: Relevant experience in incident response or security operations.. Prepare examples for: Incident Response, Security Operations, Cybersecurity, Network Security, Threat Detection. Job Overview Incident Response ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Senior Digital Forensics and Incident Response (DFIR) Consultant

Location
City Of London, England, United Kingdom
swiftly and effectively return to business following a cyber-attack. As a global market leader in ransomware post-breach remediation and cyber-attack first response, we consistently deliver results that exceed market standards for handling cyber-extortion and ransomware events. Our team collaborates with prominent global insurance carriers, leading … firms, and Fortune 1000 businesses. We're seeking a Senior Digital Forensics and Incident Response (DFIR) Consultant to join our team. In this role, you'll lead complex investigations, conduct forensic analyses across various platforms, and develop strategic incident response plans. If you're passionate about ...

Head of Security Incident and Response

Location
Newcastle upon Tyne, England, United Kingdom
green and healthy future for all. Find out more about DDTS: Defra digital, data and technology blog LinkedIn Defra Jobs The Head of Security Incident and Response provides operational leadership of the Defra Group Security Incident Response Management (SIRM) capability, ensuring the organisation is prepared … able to respond effectively to, security incidents ranging from routine events to significant security incidents. As the senior lead for security incident management, the role oversees incident response policy, governance and operational coordination, directs the response to complex and high-impact incidents, and provides authoritative advice ...

Cybersecurity Incident Response Analyst

Location
England, United Kingdom
## Cybersecurity Incident Response AnalystApply: Hybrid: Remote - England, United Kingdom: Full time: Posted Today: End Date: September 28, 2026 (13 days left to apply): R0138440**Location:**Remote - England, United Kingdom**Job ID:**R0138440**Date Posted:**2026-07-20**Company Name:**HITACHI ENERGY UK LIMITED**Profession (Job Category … increasingly complex and disruptive cybersecurity landscape. This is where you come in.By joining our Cyber Defense Center (CDC) team as a Cybersecurity Incident Response Analyst, you will play a crucial role in protecting and advancing our mission. You will help safeguard our innovative work in renewable energy, ensuring ...