Cyber Incident Response Manager
Contract
Day Rate: £750 per dayIR35 Status: Outside IR35Contract Length: 6 months initiallyLocation: Hybrid - Liverpool
Overview
I'm supporting an organisation seeking an experienced Cyber Incident Response Manager to lead and mature its Incident Response capability across a complex enterprise environment.
Responsibilities
- Own and manage cyber incidents from detection through to resolution.
- Review, enhance, and develop Incident Response frameworks, runbooks, and playbooks.
- Ensure alerts from SIEM, EDR, CTI, and SOC services are effectively integrated into Incident Response processes.
- Lead tabletop exercises and testing activities.
- Work closely with SOC, Threat Intelligence, Technology, and Business teams.
- Drive continual improvement of the Incident Response service.
- Support both BAU incidents and strategic capability development.
- Manage incidents relating to both IT and OT environments.
Essential Experience (Non-Negotiable)
- Proven Incident Response in leading within large enterprise environments.
- Experience leading and managing cyber incidents.
- Strong experience in leading on the creating, reviewing, and improving runbooks and playbooks.
- Experience designing or enhancing Incident Response frameworks.
- Experience running tabletop exercises.
- Strong understanding of SIEM, EDR, SOC and Threat Intelligence integration.
Environment
- Microsoft Sentinel
- Microsoft Defender for Endpoint
- Recorded Future
- Darktrace
- Microsoft Purview
- ThreatLocker
If you are interested in the role please send you CV
Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk