1 to 25 of 1,507 Incident Response Jobs in the UK

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cyber Response & Recovery Manager - German Speaker Cyber Response & Recovery Manager (Reactive DFIR) About the role This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team … within our Cyber Advisory practice. Your specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands‐on incident response role and an opportunity to join a high ...

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
Appcast
Location
London, UK
Cyber Response & Recovery Manager (Reactive DFIR)This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance.About the roleThe Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice.Your specific focus will … domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases.This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide variety of clients, as KPMG ...

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
London, UK
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Associate Manager - Cyber Security Incident Response

Hiring Organisation
Willis Towers Watson
Location
London, UK
Associate Manager - Cyber Security Incident Response will play a pivotal role within WTW’s Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security incidents and driving initiatives to enhance WTW’s Cyber incident management capabilities. This mid senior-level role requires … highly experienced professional with strong expertise in incident response and cybersecurity. The individual will work as part of a global, multi-disciplined security community with strong support across the business, contributing to fostering a security-aware culture while ensuring WTW remains a great place to work. With ...

Cybersecurity Incident Response Lead

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Overview Executive level position reporting to the Director of Cyber Threat Management & Incident Response, this is a hands‐on senior security position working within the Information Security group and with the internal IT department. This position’s core focus is to ensure consistent, measurable end‐to‐end triage … successful candidate will work to assess, develop, and deploy detection capabilities and processes ensuring enterprise systems and data are protected, serving as the Incident Response Lead for European and Pacific regions of the organisation. We are looking for candidates who have a passion for cyber security, threat detection ...

Cyber Response & Recovery - Senior Manager

Hiring Organisation
KPMG
Location
London, UK
Role The Cyber Response & Recovery Senior Manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. … broad range of cyber-security incidents as well as perform digital forensics (disk, volatile memory, network packets, logfiles) and help advance KPMG’s incident response processes and methodologies. In this role we are looking for a person who can demonstrate strong technical background, significant experience in incident ...

Senior Manager, Cybersecurity Incident Response

Hiring Organisation
ARM
Location
Cambridge, Cambridgeshire, UK
Overview:Interested in defending a global tech company from the latest cyber threats? Arm is seeking a passionate, experienced Senior Manager of Cybersecurity Incident Response to join our growing Cyber Defence Operations (CDO) team, protecting Arm against current and future cyber-attacks! Situated within Arm’s Enterprise Security … function, this role will lead Arm’s global incident response team across the US, UK and India, including acting as a senior technical and operational leader for major cyber incidents.CDO enables Arm to be successful, delivering scalable and defendable security services that not only provide for the protection ...

Senior Incident Response Consultant, Rapid Response

Hiring Organisation
Jobleads-UK
Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Cyber Defense Incident Responder

Hiring Organisation
EY (Ernst & Young)
Location
London, UK
detects, responds, and mitigates cybersecurity risk, protecting EY and client data, and our information management systems. The opportunityThe Cyber & Investigative Services (CIS) Senior Cyber Incident Response Coordinator will exercise exemplary incident management techniques to coordinate incident response to cybersecurity events or incidents stemming from suspected … threats on a global scale. Candidates for the role must have an exceptional comprehension of cybersecurity incident response plans and coordination of activities, establish and foster relationships on a global scale, and have superb verbal and written communication skills. Additionally, candidates must have a sense of diplomacy, ability ...

Cyber Response & Recovery - Manager (Remediation focus)

Hiring Organisation
KPMG
Location
Manchester, UK
Cyber Response & Recovery Manager (Remediation)This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance.About the roleThe Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice.Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience.This is a hands ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
City of London, Greater London, UK
Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

Director, Digital Forensics & Incident Response (Global)

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
Director, Digital Forensics & Incident Response (Global) Department: Cyber Services and Capabilities Employment Type: Full Time Location: GBR Manchester Hardman Boulevard Reporting To: Matt Hull (Open to Associate Director with progression path to Director) Description The purpose of this role is to lead NCC Group’s global Digital Forensics … Incident Response (DFIR) capability, ensuring effective preparedness, response, recovery, and continuous improvement across cyber incident management and forensic investigations. The global DFIR team will consist of regionally distributed colleagues, delivering a consistent, scalable, and market-leading service that protects client assets, reputation, and business operations. ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£95,000
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. … This is a hands-on consulting role where you will support organisations through cyber incidents while also helping them improve their readiness, resilience and response capability before incidents occur. Working remotely across the UK, you will join a team delivering high-quality DFIR services including incident investigation, containment ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£95,000
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. … This is a hands-on consulting role where you will support organisations through cyber incidents while also helping them improve their readiness, resilience and response capability before incidents occur. Working remotely across the UK, you will join a team delivering high-quality DFIR services including incident investigation, containment ...

Associate/Senior Associate - Data & Cyber

Hiring Organisation
RPC
Location
Greater London, United Kingdom
Employment Type
Full Time
ROLE OVERVIEW The team The Data & Cyber team advises a wide range of clients across a variety of industry sectors on cyber incidents, regulatory response, technology and data-related claims, and cyber/technology insurance coverage. We are recognised for combining deep cyber incident response capability with … understanding of the insurance market, enabling us to support clients across the lifecycle of a cyber event and its downstream exposures: from immediate breach response and crisis management, through policy notification and coverage strategy, to regulatory engagement and dispute resolution. The role Based in London, the Associate ...

Cyber Incident Operations Lead

Hiring Organisation
Appcast
Location
Glasgow, UK
Cyber Incident Operations LeadSalary: 59-74K (plus up to 15% bonus, 15% pension and private healthcare)Location: Glasgow (hybrid, 2-3 days in the office)Permanent, Full time**Due to the nature of the role, the successful candidate will need to be able to obtain NSV SC clearance … years before being eligible to meet the Minimum Residency Criteria**Help us create a better future, quickerWe are looking for an experienced Incident Response Lead to play a critical role in strengthening and evolving SPR’s cyber defence capability across complex IT and Operational Technology (OT) environments. Working ...

Incident Response Specialist

Hiring Organisation
Pontoon
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
Contract Rate
£700/day
take your cyber security expertise to the next level? Our client, a leader in the energy sector, is on the lookout for an Incident Response Specialist to join their dynamic cyber security team. Role: Incident Response Specialist Duration: 6 Months (ext. options) Location: Warwick (Hybrid … mindset, promoting shared responsibility among Security Operations teams. Your contributions will be vital in defending against an ever-evolving threat landscape. Key Responsibilities Include: Incident Response: Triage and manage high-priority incidents while ensuring appropriate responses are executed. Produce clear incident summaries quickly and adapt your communication ...

Cyber Incident Response Manager

Hiring Organisation
Hays
Location
Liverpool, Merseyside, North West, United Kingdom
Employment Type
Contract
Contract Rate
£750.0 - £800 per day
IR35 Status: Outside IR35 Contract Length: 6 months initially Location: Hybrid - Liverpool Overview I'm supporting an organisation seeking an experienced Incident Response Manager to lead and mature its Incident Response capability across a complex enterprise environment. Responsibilities Own and manage cyber incidents from detection through … resolution. Review, enhance, and develop Incident Response frameworks, runbooks, and playbooks. Ensure alerts from SIEM, EDR, CTI, and SOC services are effectively integrated into Incident Response processes. Lead tabletop exercises and testing activities. Work closely with SOC, Threat Intelligence, Technology, and Business teams. Drive continual improvement ...

Lead Cyber Detect and Respond Analyst (Ref: 20811)

Hiring Organisation
Appcast
Location
Sheffield, UK
This role aligns against Monitoring Leadfrom the Government Security Profession Framework.The Lead Cyber Detect and Respond Analyst will lead the proactive monitoring, analysis, and response to security events and incidents, ensuring the effective detection and mitigation of cyber threats to the Ministry of Justice (MoJ). The lead analyst … develops and refines detection and response procedures, mentors junior team members, and provides expert guidance during high-severity incidents. Operating with a high degree of independence and technical authority, this role plays a critical part in strengthening the MoJ’s cyber resilience and advancing the maturity of SOC operations. ...

Security Incident Management Analyst - MUST HAVE SC CLEARANCE - Inverness or Preston - 6 months+

Hiring Organisation
Octopus Computer Associates
Location
Preston, Lancashire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Daily
Security Incident Management Analyst - MUST HAVE SC CLEARANCE - Inverness or Preston - 6 months+/RATE: £500 per day inside IR35 One of our Blue Chip Clients is urgently looking for a Security Incident Management Analyst. Please note this role is to start end of September/early October. … years Location: Inverness or Preston | 5 days onsite MUST BE PAYE THROUGH UMBRELLA Role Description: About the role you're considering The Security Incident Management Analyst operates within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, supporting the governance and coordination of security incident management ...

Principal Consultant, Incident Response (Unit 42)

Hiring Organisation
Palo Alto Networks
Location
London, UK
will lead and produce deliverables for reactive services engagements. You will work directly with a variety of customers and key stakeholders to manage incident response engagements from start to finish, providing expert guidance on immediate containment and long-term remediation to enhance their security posture.Key ResponsibilitiesManage and lead … incident response engagements, including scoping work, guiding clients through forensic investigations, and containing security incidents.Perform reactive incident response and host-based analysis on Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs).Examine firewall, web, database, and other log sources to identify ...

Principal Consultant, Incident Response (Weekend Schedule)

Hiring Organisation
Appcast
Location
Remote, UK
will lead and produce deliverables for reactive services engagements. You will work directly with a variety of customers and key stakeholders to manage incident response engagements from start to finish, providing expert guidance on immediate containment and long-term remediation to enhance their security posture.This is a weekend … will have every Tuesday, Wednesday and Thursday as your normal days off. Eligibility for UK SC is an essential requirementKey ResponsibilitiesManage and lead incident response engagements, including scoping work, guiding clients through forensic investigations, and containing security incidents.Perform reactive incident response and host-based analysis ...

Incident Management Specialist

Hiring Organisation
eTeam
Location
United Kingdom
specialist that provides support to the clients across EMEA, APAC, US and Canada. We have an excellent job opportunity for you. Role Title: Security Incident Management Analyst (x3 seats) Location: Inverness or Preston | 5 days onsite Duration: 31/03/2027 Must have: Must Be Sc Cleared (Active … Rate: £447 to 483 per day all inc. (PAYE through Umbrella) Role Description: About the role you’re considering The Security Incident Management Analyst operates within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, supporting the governance and coordination of security incident management activities across ...

Embedded Cyber Detection and Response Deputy Team Lead

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cyber Detection and Response Deputy Team Lead serves as the operational second-in-command of the Cyber Detection and Response Team (DART), bridging the gap between hands-on cyber operations and team leadership. The role supports the Team Lead in the ongoing development, maturation, and delivery … client's detection and response capabilities, while providing technical leadership and operational oversight across day-to-day security operations. This position remains actively involved in threat detection, incident response, threat hunting, and detection engineering activities while also assuming supervisory and coordination responsibilities. The Deputy Team Lead acts ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
United Kingdom
Security Operations Team, you will collaborate with a global team of engineers to monitor and respond to security events, lead security incidents as Incident Commander, and lead digital forensic investigations in support of Employee Relations, Legal, Compliance, or Information Security cases. Although you will be focused on security incident response, you will also have the opportunity to create and maintain runbooks, automated workflows, and assist in process refinement and implementation. You will collaborate with a diverse team of engineers and key stakeholders on security initiatives across the company. Above all, your focus is bringing Security expertise ...