1 to 25 of 417 Incident Response Jobs in the UK

Incident Response Manager

Hiring Organisation
Proactive Appointments
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £110,000 per annum
Incident Response Manager Hybrid We are partnering with a leading global financial services organisation to appoint a Incident Response Manager to join their high-profile Cyber Threat Centre (CTC). This is a critical leadership role at the forefront of defending against sophisticated cyber adversaries, including … nation states and organised criminal groups. As the central hub for Computer Network Operations, the CTC drives incident response, threat hunting, intelligence, and insider threat detection across the organisation. This role offers the opportunity to shape strategy, lead a globally distributed team, and work with cutting-edge technologies ...

Incident Response Engineer MDR

Hiring Organisation
Client Server
Location
East London, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
Incident Response Engineer (MDR SIEM SOAR AWS) Remote UK to £80k Are you a tech savvy Senior Security Engineer with strong Incident Response experience? You could be progressing your career in a senior, hands-on Senior Security Engineer role as part of a friendly and supportive … strengthening EDR/XDR and DLP configurations, defining new automatic detections of security events in the SIEM, improving automatic security alerts triage and Incident Response playbooks, defining the runbooks to be used during Incident Response and leading the execution of Table Top Exercises (TTX) with different ...

Cyber Incident Response Manager

Hiring Organisation
Ashdown Group
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Incident Response Manager (Cyber Threat) - Global financial services company - Full time permanent role - Salary up to £100,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyber threat … point once a month for weekends) - Deliver on information security projects - Ensuring services provided meet the business requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous ...

Cyber Incident Response Manager

Hiring Organisation
Ashdown Group
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £120,000 per annum
Incident Response Manager (Cyber Threat) - Global financial services company - Full time permanent role - Salary up to £110,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyber threat … point once a month for weekends) - Deliver on information security projects - Ensuring services provided meet the business requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous ...

Cyber Security Incident Manager

Hiring Organisation
Ashdown Group
Location
East London, London, United Kingdom
Employment Type
Permanent, Work From Home
Security Incident Response Manager (Cyber Threat) - Global financial services company - Full time permanent role - Salary up to £110,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyber … point once a month for weekends) - Deliver on information security projects - Ensuring services provided meet the business requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous ...

IT Security Incident Manager

Hiring Organisation
Ashdown Group
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Security Incident Response Manager (Cyber Threat) - Global financial services company - Full time permanent role - Salary up to £100,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyber … point once a month for weekends) - Deliver on information security projects - Ensuring services provided meet the business requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous ...

IT Security Incident Manager

Hiring Organisation
Ashdown Group
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £120,000 per annum
Security Incident Response Manager (Cyber Threat) - Global financial services company - Full time permanent role - Salary up to £110,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyber … point once a month for weekends) - Deliver on information security projects - Ensuring services provided meet the business requirements To be considered suitable for this Incident Response Manager role you will need the following skills and experience: - Experience in a technical cyber/incident response role - Previous ...

Cyber Incident Response Analyst

Hiring Organisation
Lorien
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£300 per day
Cyber Incident Response Analyst London - Onsite 2/3 days a week ASAP Start - November 26 £300 per day - Inside of IR35 We are looking for a Cyber Incident Response Analyst to join a small, highly visible cyber security team and step in for an existing … another project for the next 6-9 months. This role sits on the "Respond" side of Cyber Security, focusing on end-to-end cyber incident management, stakeholder communications, and clear reporting. With increased workload driven by the client merger, this is a key role supporting the organisation's security ...

Head of Cyber Security and Productivity Solutions

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
operationally effective. The role owns information security operations and modern workplace services, spanning identity and access management, endpoint security, data protection, threat detection, incident response and compliance monitoring. Operating across a complex, global technology estate, the Head of Cyber Security and Modern Workplace Operations ensures alignment with recognised … management using platforms such as Intune and Defender. Ensure consistent application of security standards across all user devices and environments. Threat detection, monitoring and incident response Oversee continuous monitoring, threat detection and security event management. Lead incident response readiness, coordination and post-incident analysis. Work ...

Senior Incident Response Manager SOC

Hiring Organisation
Client Server
Location
London, UK
Employment Type
Full-time
Senior Incident Response Manager (SOC) London/WFH to £120k Do you have expertise in the field of Incident Response, Cyber Security Operations or Digital Forensics? You could be progressing your career in a senior, hands-on leadership role at the Investment Management … global bank. As a Senior Incident Response Manager you will continuously develop xxuwjjq a high performance technical response team If your skills, experience, and qualifications match those in this job overview, do not delay your application. Please click on the apply button to read the full ...

L3 SOC Analyst

Hiring Organisation
Maxwell Bond
Location
Glasgow, Scotland, United Kingdom
Analyst, you’ll act as a senior escalation point within a 24/7 SOC, leading complex investigations and driving incident response activities. You’ll work closely with threat intelligence, engineering, and client teams to continuously improve detection and response capabilities. Key Responsibilities Act as the final … escalation point for security incidents and alerts Lead and coordinate incident response for high-severity threats Perform advanced threat hunting and forensic investigations Analyse logs from SIEM, EDR, NDR, and cloud security tools Develop and refine detection rules and use cases Support SOC maturity improvements and playbook development ...

Cyber Security Analyst

Hiring Organisation
Anson McCade
Location
Greater Bristol Area, United Kingdom
operations. This is a technical role suited to an experienced analyst with strong engineering instincts, hands-on coding capabilities, and a deep understanding of incident response, detection engineering, and adversary tradecraft. This position includes approximately one week per month of on-call availability for high-priority incident … ideal for someone who has likely grown from an engineering background and can write scripts (Python, Bash) to automate, enhance, and refine detection and response workflows. Experience with Splunk, SIEM operations, cloud endpoints, networks, and detection engineering will be highly advantageous. NOTE: Candidates for this role must be eligible ...

Senior Security Engineer

Hiring Organisation
LT Harper Recruitment Group
Location
City of London, London, United Kingdom
user environments. The role You will work closely with security, infrastructure, and architecture teams to design and improve secure technology environments, support incident response, and help drive a security-by-design approach across the wider estate. This role will suit someone with strong experience across Microsoft Sentinel & M365 … user environments Hands-on work with Microsoft Sentinel, M365 Defender , Defender for Cloud, Entra ID, and Conditional Access Supporting the SOC with incident response, vulnerability remediation and escalation Automating repeatable security tasks and improving operational efficiency Supporting compliance requirements, including PCI-DSS Acting as a senior point ...

Director of Cyber Security London

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
clear mandate to progressively absorb higher-value operational ownership into Cyber Security. Over time, this role becomes the centre of gravity for detection engineering, incident response, and threat-driven defence.When major incidents occur, you are the technical authority. You make decisions under uncertainty, set priorities, and advise executives … high-severity security incidents* Owning adversary-focused defence, including threat modelling, detection engineering, and threat hunting strategy* Designing and enforcing runbooks, escalation models, and incident response playbooks* Setting security standards and having authority to block or escalate high-risk architectural decisions* Building and scaling Cyber Security capabilities, including ...

Cyber Security Operations Manager

Hiring Organisation
Acorn Insurance
Location
Liverpool, Merseyside, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£75,000
lead the operational security function responsible for protecting the organisation's information assets, technology services, and users. This role oversees all security operation functions, incident response, threat detection, vulnerability management, and continuous improvement of the organisation's security posture. Working closely with Infrastructure, Cloud, Architecture, Governance, Compliance … manage the daily operations of the internal Security Operations team and primary relationship with any outsourced SOC solution ensuring 24/7 monitoring and response coverage. Oversee cyber defence capabilities including SIEM, SOAR, EDR/XDR, threat intelligence, and identity protection. Develop and maintain operational procedures, playbooks, and response ...

Security Operations Team Lead

Hiring Organisation
Forward Role
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
ensuring the organisation's systems, networks, and data remain protected against evolving cyber threats. As the SecOps Lead, you will manage security monitoring and incident response activities while providing strategic direction for security tools including SIEM and Endpoint Detection & Response (EDR) platforms. You will work closely with … daily operational activities and performance. Define and implement the strategy and operational roadmap for security monitoring, detection, and response. Own and manage the security incident response lifecycle, including investigation, containment, remediation, and post-incident reviews. Lead incident response efforts during high-severity security events ...

Cyber Incident Response Manager

Hiring Organisation
Ashdown Group
Location
City, London, United Kingdom
Employment Type
Permanent
Salary
GBP 100,000 Annual
Incident Response Manager (Cyber Threat) - Global financial services company - Full time permanent role - Salary up to £100,000 plus bonus. Hybrid working (twice a week in the London office) A large global financial services firm is looking for an Incident Response Manager within its cyber threat ...

Senior Cyber Security Engineer

Hiring Organisation
NTT Global Data Centers EMEA UK ltd
Location
Hemel Hempstead, Hertfordshire, South East, United Kingdom
Employment Type
Permanent
tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning). What we are looking for Key Responsibilities: Serves as a senior member … optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. Directs complex security incident response efforts across multiple vectorsendpoint protection, EDR, malware analysis, network and computer forensicsensuring rapid containment and root cause analysis. Designs and executes advanced vulnerability ...

ServiceNow SecOps (SC Cleared)

Hiring Organisation
LA International Computer Consultants Ltd
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
teams, automate workflows, and integrate with existing security tools to detect, prioritize, and remediate threats faster. It includes multiple modules such as Security Incident Response (SIR), Vulnerability Response (VR), and Threat Intelligence, among others. Security Incident Response (SIR) is a specific module within SecOps focused … While SecOps is the umbrella platform, SIR is one of its core capabilities. Key Differences: * Scope: SecOps: End-to-end security operations platform covering incident response, vulnerability management, threat intelligence, and orchestration. SIR: Specializes in handling security incidents-from detection to resolution. * Primary Use Case: SecOps: Aligns security ...

Threat Intelligence Specialist

Hiring Organisation
Morson Edge
Location
London, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
agreed service catalogue. You will integrate Threat Intelligence into core cyber security functions, including threat management, threat modelling, vulnerability management, and cyber incident response, supporting rapid response to emerging and zero-day threats. The role will also contribute to the ongoing maturation of the Threat Defence … provided. Essential Experience: Proven experience delivering a Threat Intelligence function and working closely with Information Security teams, including SOC, CIRT/CERT/CSIRC, incident response, and cyber defence operations. Demonstrable experience supporting the development and delivery of cyber defence strategies, including threat management, metrics, reporting, and intelligence ...

Incident Response Engineer MDR

Hiring Organisation
Client Server
Location
Hackney, Derbyshire, UK
Employment Type
Full-time
Incident Response Engineer (MDR SIEM SOAR AWS) Remote UK to £80k Are you a tech savvy Senior Security Engineer with strong Incident Response experience? You could be progressing your career in a senior, hands-on Senior Security Engineer role as part of a friendly and supportive ...

Head of Information Security

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
client relationship teams with security assurance materials and briefings Build and maintain trust with enterprise clients through transparency, responsiveness, and credible security governance Incident Response Own the group's incident response plan and ensure it is tested, maintained, and ready to activate Lead or co‐ordinate … response to security incidents, acting as the central point of communication to leadership and relevant stakeholders Conduct post‐incident reviews and drive learning back into policies and controls Risk & Governance Reporting Report regularly to the board Risk Committee on the current security posture, identified risks, and the programme ...

Tech lead - SOC responder

Hiring Organisation
Colt Technology Services UK
Location
East London, London, United Kingdom
Employment Type
Permanent, Work From Home
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. What you will do Support SOC Manager to deliver the followingSIEM … activities, Technology escalation support, Security Solution assessment, build activities , existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes. Maintenance and enhancement ...

XSIAM Consultant

Hiring Organisation
83zero
Location
Northern Ireland, United Kingdom
security environment. The successful consultant will play a key role in strengthening the organisation’s security operations capability, helping to modernise threat detection, automate response workflows, and improve visibility across the security ecosystem. Key Responsibilities Lead the implementation and configuration of Palo Alto XSIAM within an enterprise SOC environment … Design and optimise full-spectrum XDR capabilities, improving detection and response across endpoints, networks, and cloud workloads Integrate SIEM and security telemetry sources into XSIAM to create a unified security operations platform Develop and maintain automation workflows and playbooks to streamline incident response and reduce manual ...

Security Operations Analyst

Hiring Organisation
Anson Mccade
Location
North West London, London, United Kingdom
Employment Type
Permanent, Work From Home
operations. This is a technical role suited to an experienced analyst with strong engineering instincts, hands-on coding capabilities, and a deep understanding of incident response, detection engineering, and adversary tradecraft. This position includes approximately one week per month of on-call availability for high-priority incident … ideal for someone who has likely grown from an engineering background and can write scripts (Python, Bash) to automate, enhance, and refine detection and response workflows. Experience with Splunk, SIEM operations, cloud endpoints, networks, and detection engineering will be highly advantageous. NOTE: Candidates for this role must be eligible ...