1 to 25 of 474 Incident Response Jobs in the UK

Senior Manager - Cyber Incident & Response - Consulting

Hiring Organisation
Oliver James
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £110,000 per annum
Senior Manager/Associate Director - Cyber Incident Response Advisory & Incident Management This is a senior opportunity within a leading Cyber Risk & Security practice, working with major organisations to strengthen their ability to prepare for, manage and recover from complex cyber incidents. The role sits across both proactive … cyber incident response advisory and live incident management, helping clients improve resilience while supporting them through high-impact security events. You will work closely with senior stakeholders and C-suite leaders, advising on cyber incident preparedness, crisis and incident management, response strategies and organisational ...

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
London, UK
Employment Type
Full-time
Description Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your … specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with ...

ServiceNow SIR Engineer

Hiring Organisation
Talent Smart Limited
Location
Home Based, United Kingdom
Employment Type
Contract
Contract Rate
GBP 700 Daily
ServiceNow Security Incident Response (SIR) Engineer - Contract Contract: Initial contract engagement Rate: £700 per/day Specialism: ServiceNow SIR | SecOps | Cyber Security | Incident Response (Remote working) We are looking for an experienced ServiceNow Security Incident Response (SIR) Engineer to join a major cyber security … programme, helping to strengthen and automate the organisation's security incident response capability. Please note: Hands-on ServiceNow Security Incident Response (SIR) experience is an absolute requirement for this role. This is NOT a general ServiceNow Developer/Engineer position. Applicants without demonstrable ServiceNow SIR experience ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
London, UK
Employment Type
Full-time
Description Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£95,000
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. … This is a hands-on consulting role where you will support organisations through cyber incidents while also helping them improve their readiness, resilience and response capability before incidents occur. Working remotely across the UK, you will join a team delivering high-quality DFIR services including incident investigation, containment ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£95,000
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. … This is a hands-on consulting role where you will support organisations through cyber incidents while also helping them improve their readiness, resilience and response capability before incidents occur. Working remotely across the UK, you will join a team delivering high-quality DFIR services including incident investigation, containment ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
business lead the way in powering secure and sustainable business connections through digital and physical channels. Job Description The Head of Cyber Defence and Incident Response owns the organisation’s cyber defence capability across a hybrid environment (mix of on‐prem and cloud platforms), ensuring effective monitoring, detection … response and recovery. Reports directly to the CISO and leads cyber defence operations (including the MSSP) and cybersecurity incident response across the organisation. This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM ...

Associate/Senior Associate - Data & Cyber

Hiring Organisation
RPC
Location
Greater London, United Kingdom
Employment Type
Full Time
ROLE OVERVIEW The team The Data & Cyber team advises a wide range of clients across a variety of industry sectors on cyber incidents, regulatory response, technology and data-related claims, and cyber/technology insurance coverage. We are recognised for combining deep cyber incident response capability with … understanding of the insurance market, enabling us to support clients across the lifecycle of a cyber event and its downstream exposures: from immediate breach response and crisis management, through policy notification and coverage strategy, to regulatory engagement and dispute resolution. The role Based in London, the Associate ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will … cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond ...

Senior Cyber Security Engineer

Hiring Organisation
Comtecs
Location
City of London, London, United Kingdom
Employment Type
Permanent
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

Cyber Security Engineer - MS Sentinel, Defender, SSO, PKI, SC-100/200, CISSP

Hiring Organisation
Comtecs Ltd
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £100,000 per annum
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

Senior Cyber Security Analyst

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
Blue Team within a dynamic Cyber Practice. This senior role offers the chance to work on high-profile client engagements, delivering threat detection, monitoring, incident response, and security operations expertise. The role is ideal for a self-motivated professional with strong technical skills, inquisitive thinking, and a passion … protecting enterprise systems from evolving cyber threats. The Role The Cyber Security Operations Specialist will use advanced tools and threat intelligence to ensure effective incident detection and response across client environments. Working closely with security analysts and wider teams, the role combines detection engineering, monitoring, incident response ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
Financial Services organisation is looking for a Senior Security and Cyber Operations Manager to take ownership of its security operations, cyber defence, monitoring and incident response capabilities. This is a senior, hands-on role within the CISO function, responsible for strengthening the organisations cyber defence capability and ensuring … very flexible working. You will work closely with Technology, Cloud, Data, Architecture, Risk and external security partners, with responsibility for security tooling, detection coverage, incident response, operational cyber risk and service performance. Key Responsibilities Own and continually improve the organisations security operations and cyber defence capability Lead security ...

Associate Security Analyst

Hiring Organisation
GTC Recruitment
Location
London, UK
Employment Type
Full-time
protection of critical digital services, infrastructure and information assets against cyber threats. You will join a dedicated Cyber Defence team, supporting security alert triage, incident investigation, threat detection and cyber incident response. Key Responsibilities Triage and investigate cyber security alerts and user-reported security incidents. Investigate systems, files … network traffic and cloud environments to identify potential threats. Use SIEM and EDR technologies to detect, investigate and respond to cyber threats. Support cyber incident response activities, including containment, eradication and recovery. Assist with the coordination and management of security incidents. Contribute to post-incident reviews, lessons ...

Cyber Security Consultant

Hiring Organisation
Radius Consultancy
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
SIEM, NDR, applications, security architecture, IAM, PAM encryption technologies, network security, Zero Trust, secure interconnection patterns and cyber security principles. Experience within Security Operations, Incident Response, Security Assurance, or GRC functions. Experience managing or overseeing MSSP, SOC activities, third party management. Strong understanding of: ISO 27001, SOC2, NIST … Cyber Security Framework, Incident Response methodologies, Cyber Security Governance, GDPR and regulatory compliance Certifications (one or more) CISSP CISM CRISC The Cyber Security Assurance & Incident Response Lead is responsible for strengthening and maintaining Telehouse's cyber security posture through effective security assurance, incident response ...

Graduate SOC Analyst

Hiring Organisation
CyPro
Location
London, UK
Employment Type
Full-time
pigeonholed into one narrow specialism. At CyPro, you’ll have the opportunity to get involved in a wide range of areas including monitoring, incident response, threat intelligence, detection engineering, automation and internal security operations. You’ll play a key role in our Security Operations Centre, delivering … monitoring, detection and response to our growing customer base. You’ll contribute to building out our capabilities, improving tooling and processes, and shaping how we operate as the function matures. As the team grows further, you’ll have the flexibility to focus more deeply on the areas that interest ...

Cyber Incident Response Specialist

Hiring Organisation
Adecco
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
Cyber Incident Response Specialist 6-Month Contract - Inside IR35 - Hybrid (Warwick 1 day per week) Our client, a leading energy company is looking for an experienced Cyber Incident Response Specialist to take ownership of cyber security incidents from escalation through to resolution. Working within a dedicated … Incident Response team, you will coordinate containment, remediation and recovery activities, lead incident calls, engage key stakeholders, and ensure incidents are managed effectively through to closure. Key Requirements Experience managing cyber/security incidents end-to-end Strong understanding of cyber threats including phishing, malware and insider ...

Cyber Incident Response Specialist

Hiring Organisation
Adecco
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
Cyber Incident Response Specialist 6-Month Contract - Inside IR35 - Hybrid (Warwick 1 day per week) Our client, a leading energy company is looking for an experienced Cyber Incident Response Specialist to take ownership of cyber security incidents from escalation through to resolution. Working within a dedicated … Incident Response team, you will coordinate containment, remediation and recovery activities, lead incident calls, engage key stakeholders, and ensure incidents are managed effectively through to closure. Key Requirements Experience managing cyber/security incidents end-to-end Strong understanding of cyber threats including phishing, malware and insider ...

Senior SOC Engineer

Hiring Organisation
Anson Mccade
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent
Senior SOC Engineer A leading organisation is seeking a Senior SOC Engineer to strengthen its security operations capability and drive continuous improvement across detection, response, and automation. This pivotal role requires deep expertise in IBM QRadar, with a strong focus on playbook development, analytical rule creation, and threat modelling. … Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats. Key Responsibilities SIEM Engineering & Management Deploy, configure, and maintain the QRadar SIEM platform. Onboard and normalise log sources across on-premises and cloud environments. Develop and optimise ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
London, UK
Employment Type
Full-time
Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity. Key ResponsibilitiesCloud Security Assessment & Advisory: Assess … Azure IaaS and Google Cloud environments, including infrastructure. Provide recommendations based on industry best practices and emerging security threats. The ability to provide Cyber Incident Responders subject matter expertise in Cloud security when required. Defender & Security Monitoring Advisory: Evaluate and optimise the use of Azure Defender and other security ...

IT Security Analyst

Hiring Organisation
Withersworldwide
Location
London, UK
Employment Type
Full-time
across the firm's global technology estate. The successful candidate should have practical experience working with modern enterprise security platforms covering endpoint detection and response, extended detection and response, cloud security, threat monitoring, behavioural analytics and vulnerability management, and be comfortable engaging with IT teams, senior stakeholders … pragmatic, service-focused approach is essential. Areas of focus and responsibilitiesMonitor, triage and investigate security alerts across the firm's security monitoring and response platforms, including suspicious activity, root cause analysis and proportionate remediation. Support incident response activities, including containment, eradication, recovery, evidence preservation and clear documentation ...

Operational Security Lead and Vulnerability Manager

Hiring Organisation
Kensington Mortgage Company
Location
Marlow, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Hybrid - 1 x week in Marlow Department: Information Security Monday-Friday Are you an experienced cyber security professional with a passion for security operations, incident response and vulnerability management? We're looking for an Operational Security Lead & Cyber Vulnerability Manager to play a critical role in protecting Kensington … Role Reporting to the Chief Information Security Officer, you'll lead the day-to-day operational cyber security function, overseeing security operations, cyber incident management, infrastructure and cloud vulnerability management, and third-party security oversight. You'll be responsible for ensuring security risks are managed appropriately, coordinating incident ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
join a high-performing cyber security operations team supporting critical, secure infrastructure in a 24/7 environment. This is an opportunity to lead incident response activities, mentor analysts, and play a key role in protecting complex enterprise environments from evolving cyber threats. What You'll Be Doing … Lead the investigation and response to medium and high-severity security incidents. Act as the escalation point for complex cyber security events and threat activity. Conduct root cause analysis and produce detailed incident reports. Coordinate containment, eradication and recovery activities with technical teams. Correlate data across SIEM ...

SOC Analyst

Hiring Organisation
Reed
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
protecting a large-scale, international technology environment. This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid … cyber security alerts, incidents and threats Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response Prioritise and manage security incidents based on business risk and impact Conduct proactive threat hunting across endpoint, network, identity and cloud environments Develop ...

SOC Manager

Hiring Organisation
NRGTech Talent Solutions Ltd
Location
Nationwide, United Kingdom
Employment Type
Contract
Contract Rate
£750 - £850/day Prestige opportunity
Define and lead the delivery of the Cyber Security Operations Centre (CSOC) to detect real-time cyber security incidents/data breaches and manage response and remediation activities, including the management of senior stakeholders and external agencies. Ensure adequate controls, practices and capabilities are in place to identify vulnerabilities … define the process for remediation or mitigation to ensure cyber readiness and resilience against attack. Providing strategic level advice to senior management regarding incident response, monitoring, logging and analysis of all relevant systems and processes. Leading the development, communication and continuous improvement of the cyber incident response ...