1 to 25 of 426 Incident Response Jobs in the UK

Senior Incident Response Analyst

Hiring Organisation
Littlefish
Location
Derby, Derbyshire, East Midlands, United Kingdom
Employment Type
Permanent
Salary
£70,000
Senior Incident Response Analyst When registering to this job board you will be redirected to the online application form. Please ensure that this is completed in full in order that your application can be reviewed. Come and join the Littlefish team! Work location: Remote Salary … would love to hear from you. The role and what youll be getting up to on a day to day basis: As a Senior Incident Response Analyst at Littlefish, youll be at the heart of our Cyber Security Operations Centre (CSOC), working alongside a passionate and skilled team. ...

SOC L2 Analyst

Hiring Organisation
Stackstudio Digital Ltd
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
From £350 to £400 per day
security stacks. The ideal candidate will have expertise in monitoring and analyzing security incidents in SOC. Your Responsibilities (Up to 10, Avoid repetition) 1. Incident Detection and Response Lead investigations and remediation of complex security incidents, including malware infections, data breaches, and advanced persistent threats (APTs). Utilize … security technologies to analyze and correlate security alerts. Take ownership of Tier 2-level escalations from Tier 1 analysts and guide them through complex incident response procedures. Quality Assurance for SOC L1, monitoring and triaging. 2. Incident Detection and Response Lead investigations and remediation of complex ...

Principal Cyber Security Incident Response Analyst

Hiring Organisation
Akkodis
Location
West Midlands, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £70,000 per annum
Principal Cyber Security Incident Response Analyst £60,000 - £70,000 Full Time/Permanent West Midlands/Hybrid (1-2 days a month in the office ideally) The Role I am looking for a driven and experienced Principal Cyber Security Incident Response Analyst to join … large nationally recognised brand head quartered in the West Midlands. As a Principal Cyber Security Incident Response Analyst, you will play a pivotal role in protecting critical systems, assets, and people from cyber security threats. You'll be part of a world-class team, working at the forefront ...

Principal Cyber Security Incident Response Analyst

Hiring Organisation
Akkodis
Location
United Kingdom
Employment Type
Permanent
Salary
GBP 60,000 - 70,000 Annual
Principal Cyber Security Incident Response Analyst 60,000 - 70,000 Full Time/Permanent West Midlands/Hybrid (1-2 days a month in the office ideally) The Role I am looking for a driven and experienced Principal Cyber Security Incident Response Analyst to join … large nationally recognised brand head quartered in the West Midlands. As a Principal Cyber Security Incident Response Analyst, you will play a pivotal role in protecting critical systems, assets, and people from cyber security threats. You'll be part of a world-class team, working at the forefront ...

Cyber Security Lead

Hiring Organisation
Total IT Technology Solutions Ltd
Location
Bedford, Bedfordshire, South East, United Kingdom
Employment Type
Permanent
Salary
£45,000
security strategy and play a critical role in shaping client security roadmaps. This position focuses on strategic leadership, proactive risk management, and ensuring robust incident response processes. You will act as a trusted advisor to clients and internal teams, driving security initiatives that align with business objectives … regulatory requirements. Responsibilities: Develop and maintain client cyber security roadmaps to ensure long-term resilience and compliance. Coordinate and oversee incident response efforts, ensuring timely containment and remediation of threats. Liaise with clients and stakeholders to communicate risks, strategies, and progress effectively. Prioritise remediation efforts based on risk ...

Cyber Security & Centralised Services Manager

Hiring Organisation
MFK Recruitment
Location
SE1, Southwark, Greater London, United Kingdom
Employment Type
Permanent
Salary
£55000 - £65000/annum
primary escalation point for complex IT and cybersecurity incidents. Manage and secure core client infrastructure and cloud environments. Ensure centralised security, monitoring, and incident response platforms operate effectively. You will collaborate closely with our Service Desk, Projects and Account Management teams to maintain high standards of service, document … infrastructure, cloud services, endpoints, and networks, in alignment with best practices and frameworks such as ISO27001, NIST, and Cyber Essentials Plus. Lead and coordinate incident response efforts, including root cause analysis, threat containment and post-incident reporting for clients. Collaborate with the Project and Service Desk teams ...

Senior Identity and Access Management Analyst

Hiring Organisation
Experian Ltd
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Cyber Fusion Center (CFC). This critical, senior-level individual contributor will integrate IAM principles and controls into our security operations and incident response framework. You will be a technical expert with knowledge of the threat environment from the perspective of identity and access management. You will … threat intelligence and operational insights to inform and mature our IAM policies, standards, and controls. You will partner with CFC analysts, threat hunters, and incident responders to provide subject matter expertise during active investigations and to strengthen our security posture. This is a hybrid, Nottingham-based role reporting ...

Deputy Chief Privacy Officer

Hiring Organisation
A&O Shearman
Location
East London, London, United Kingdom
Employment Type
Permanent, Work From Home
firms risk appetite, client expectations and legal and regulatory changes and attitudes Manage and provide day to day leadership and advice on data incident response globally, ensuring appropriate action is taken to minimize the risks associated with actual or potential exfiltration of data, including forensic document review, legal … regulatory reporting, client and individual notifications and reputation management. Act as a trusted adviser to partners, functional heads and others on data incident management, response and remediation worldwide To support the CPO and CISO in the formulation and delivery of the firms cyber and incident response ...

Senior Cyber Operations Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Operations Analyst to join a fast-growing Blue Team within our Cyber Practice. You will work with high-profile clients to ensure effective cyber incident detection, response, and threat mitigation across cloud, endpoint, and network environments. Key Responsibilities: Develop, maintain, and enhance security detection content for SIEM platforms … escalation for junior analysts. Serve as a technical subject matter expert on client engagements, presenting findings to senior stakeholders. Participate in alert testing, incident response exercises, and threat hunting activities. Stay up to date with the latest threat intelligence and emerging attacker tactics. Additional Responsibilities (client-dependent): Threat ...

Security Operations Centre / SOC Team Lead

Hiring Organisation
Hays
Location
Edinburgh, Midlothian, Scotland, United Kingdom
Employment Type
Permanent
Salary
£65,000
Operations Centre. This role will have you leading a team of analysts and working alongside security engineers to develop and automate threat detection and response playbooks, as well as security architects and the wider IT function. The ideal candidate will have the technical expertise to work … development of SOC analysts and engineers. Lead the configuration, tuning, and maintenance of core SOC capabilities including log aggregation, alerting, correlation, threat detection, and response tooling. Define, track, and report SOC performance metrics and KPIs, ensuring operational efficiency and alignment with organisation objectives. Manage and mentor SOC team members ...

SOC Analyst

Hiring Organisation
Tria
Location
United Kingdom
Employment Type
Permanent
Salary
GBP 45,000 Annual
networks, and cloud environments; perform root-cause analysis, impact assessment and containment actions. Develop and maintain detection rules, use cases, threat-intelligence processes, and incident response playbooks. Automate detection and response workflows, using scripting tools (e.g. Python, PowerShell). Perform threat-hunting, log-analysis (including firewall … hours coverage if needed. What we're looking for Solid experience, ideally 3+ years working in a SOC or security operations/incident-response role. Strong working knowledge of Microsoft security stack (e.g. Sentinel, Defender) and hands-on experience with SIEM tooling, alerts triage, detection logic, and security ...

SOC Analyst

Hiring Organisation
Tria
Location
South West, United Kingdom
Employment Type
Permanent
Salary
£45000/annum
networks, and cloud environments; perform root-cause analysis, impact assessment and containment actions. Develop and maintain detection rules, use cases, threat-intelligence processes, and incident response playbooks. Automate detection and response workflows, using scripting tools (e.g. Python, PowerShell). Perform threat-hunting, log-analysis (including firewall … hours coverage if needed. What we're looking for Solid experience, ideally 3+ years working in a SOC or security operations/incident-response role. Strong working knowledge of Microsoft security stack (e.g. Sentinel, Defender) and hands-on experience with SIEM tooling, alerts triage, detection logic, and security ...

Senior Cyber Security engineer PID628

Hiring Organisation
Reed Talent Solutions
Location
Bedford, Bedfordshire, England, United Kingdom
Employment Type
Full-Time
Salary
£85,000 per annum
join our team. This is a critical leadership role, overseeing the full security lifecycle — from architecture and policy development to operational resilience and incident response — across complex hybrid environments with a strong emphasis on cloud security (AWS and Azure). Your leadership will be central to ensuring that … into operational deployment. Demonstrate a strong understanding of leading operational security functions, including SOC operations, threat intelligence, and vulnerability management. Experience of managing the incident response lifecycle, including triage, containment, investigation, remediation, and conducting post-incident reviews. Ability to establish and improve incident response playbooks ...

Tech Lead – SOC Responder

Hiring Organisation
Colt Technology Services
Location
England, United Kingdom
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. What you will do: Support SOC Manager to deliver the following SIEM … activities, Technology escalation support, Security Solution assessment, build activities , existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes. Maintenance and enhancement ...

Duty Engineer - Infrastructure Operations Engineer (24/7 Secure Systems)

Hiring Organisation
Elvis Eckardt Recruitment
Location
York, North Yorkshire, UK
Employment Type
Full-time
secure ICT services supporting critical UK Defence systems. Operating within highly regulated, high-availability environments, they deliver resilient infrastructure, operational assurance, and rapid incident response across mission-critical platforms. The engineering teams work at the forefront of secure networking, virtualisation, automation, and monitoring technologies to ensure Defence systems … within secure Defence ICT environments, providing 24/7 operational support for mission-critical systems. The role ensures system availability, resilience, security, and rapid incident resolution in line with contractual SLAs and KPIs, combining deep infrastructure expertise with modern automation and monitoring practices to deliver stable and compliant services. ...

Security Engineer

Hiring Organisation
identifi Global Resources
Location
Slough, Berkshire, UK
Employment Type
Full-time
servers, and workstations. Carrying out security monitoring and improving the configuration of the security monitoring tools used by Smart Communications. Enhancing security detection and incident response processes ranging from individual playbooks to security incident response and remediation plans. Managing vulnerability detection and remediation by working with … years of hands-on experience in a similar role. Good understanding of security principles, technologies, and best practices, including threat detection and security incident response processes. Experience implementing security in AWS environments including proactive configuration of AWS accounts and assets to meet good security practices Experience conducting security ...

Security Engineer

Hiring Organisation
identifi Global Resources
Location
Greater London, England, United Kingdom
servers, and workstations. Carrying out security monitoring and improving the configuration of the security monitoring tools used by Smart Communications. Enhancing security detection and incident response processes ranging from individual playbooks to security incident response and remediation plans. Managing vulnerability detection and remediation by working with … years of hands-on experience in a similar role. Good understanding of security principles, technologies, and best practices, including threat detection and security incident response processes. Experience implementing security in AWS environments including proactive configuration of AWS accounts and assets to meet good security practices Experience conducting security ...

Cyber Security Consultant - Pre-Sales

Hiring Organisation
Seismic Recruitment
Location
Chippenham, Thingley, Wiltshire, United Kingdom
Employment Type
Permanent
Salary
£65000 - £70000/annum OTE - £85,000 to £90,000
present end-to-end security solutions aligned to business objectives Act as a trusted advisor on cyber security strategy and best practice Support incident response and improvement initiatives where required Produce clear technical documentation and recommendations Collaborate with cloud, networking and wider pre-sales teams Maintain relevant vendor … 5+ years’ experience in pre-sales or consulting within an MSP, reseller or systems integrator Strong understanding of SOC operations, security monitoring and incident response Solid knowledge of Microsoft security technologies Experience with SIEM, MDR/EDR, SSE and SASE solutions Knowledge of ISO 27002, CIS, NCSC ...

Cyber Security Manager

Hiring Organisation
Harvey Nash
Location
Manchester, North West, United Kingdom
Employment Type
Contract
take ownership of day-to-day cyber security activities, stabilise the current security posture, and drive a backlog of critical actions across incident response, vulnerability management, and network security. It's a small team environment, so pace, urgency, and the ability to be effective quickly are essential. … infrastructure teams, balancing strategic oversight with hands-on execution to ensure progress is made. What you'll be doing: ?? Owning and progressing cyber incident response planning and readiness activities ?? Reviewing vulnerability scan outputs, prioritising risk, and driving remediation actions ?? Leading remediation activities from penetration testing and security assessments ...

Security Analyst

Hiring Organisation
VIQU IT Recruitment
Location
Northampton, Northamptonshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£350 - £450 per day
Analyst: Strong experience with Microsoft Sentinel (SIEM) and Microsoft Defender suite (Defender for Endpoint, Identity, Cloud, etc.). Proven track record in security monitoring, incident response, and alert troubleshooting . Working knowledge of SOAR platforms (preferably within Sentinel or similar). Understanding of threat detection, log analysis … Sentinel and Microsoft Defender . Perform detailed security event analysis and correlation, escalating incidents where necessary. Develop and optimise SOAR (Security Orchestration, Automation and Response) playbooks to enhance incident response and efficiency. Collaborate with wider IT and security teams to improve threat detection, incident handling ...

Health & Safety Incident Response Manager

Hiring Organisation
Project People
Location
Reading, Oxfordshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
significant injury risks as well as the management of H&S issues on the estate. We're now seeking an experienced H&S Incident Response Manager to join our team. In this pivotal role, you will manage and coordinate the effective delivery of incident and issue management … This is a hybrid role with a minimum of 2 days per week in our Central Reading office. What you'll do: Co-ordinate incident and issue management delivered by outsourced providers, ensuring alignment with MBNL's Policies and Standards. Serve as the primary point of contact for stakeholders ...

Security Pre-Sales Consultant

Hiring Organisation
Bechtle UK
Location
Chippenham, England, United Kingdom
organization's technology infrastructure and data from cyber-attacks. Provide support and expertise during cyber incidents and contribute to the development of cyber incident management and response plans Prepare detailed technical documentation to support with the improvement of a customer’s security estate, acting … programme. Experience 2+ years in Pre-Sales or similar role within an MSP/Reseller organisation. Previous experience being part of or working with incident response teams would be beneficial Good understanding of incident response stages and handling preferred Knowledge and/or experience using endpoint ...

SOC Analyst (Senior and Lead)

Hiring Organisation
Addition
Location
Hanslope, Milton Keynes, Buckinghamshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£41,036 - £53,697 per annum
threats. You will be a part of a 24/7 team responsible for monitoring our systems, detecting potential security incidents, and initiating the incident response process. Key Responsibilities Continuous Monitoring: You will monitor security tools, including Security Information and Event Management (SIEM) systems, to detect suspicious activity. … will be the first to see potential threats and will need to be efficient and professional response against defined processes. Incident Triage: You will analyse alerts and logs to determine if an event is a genuine security incident or a false positive. You will need ...

SOC Analyst

Hiring Organisation
Experis
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £500/day
client is seeking a SOC Analyst to join a security operations team in London. The role is focused on real-time monitoring, investigation, and incident response across a modern enterprise security environment. Key Responsibilities Monitor, triage, and respond to security alerts across multiple platforms, including Microsoft and endpoint … Optimise and tune detection rules, policies, and alerting mechanisms to improve SOC efficiency. Collaborate with internal teams to support security operations, threat analysis, and incident recovery. Produce clear incident documentation, reports, and recommendations for continuous improvement. Contribute to maintaining and enhancing SOC processes, runbooks, and operational workflows. Required ...

Operational Resilience & Incident Manager

Hiring Organisation
Quix Recruitment Group
Location
City of London, London, United Kingdom
client is an innovative and growing financial services organisation focused on providing exceptional service and safeguarding client wealth. They are seeking an Operational Resilience & Incident Manager to ensure the organisation can anticipate, withstand, respond to, and recover from operational disruptions. This pivotal role involves leading resilience testing, managing real … simulations. Assess critical business services and their dependencies, ensuring robust impact tolerances. Collaborate with technology and business teams to embed resilience into operational processes. Incident Management Lead and coordinate real-time response efforts for operational incidents, ensuring swift and effective resolution. Develop and maintain incident response ...