1 to 25 of 77 Contract Incident Response Jobs in the UK

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will … cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 85 Hourly
ongoing and long-term thereafter) IR35 status: Inside IR35 (Umbrella) Cyber Threat Operations Specialist Job Description: An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manager in assisting … cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions ...

Cyber Incident Response Specialist

Hiring Organisation
Adecco
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
Cyber Incident Response Specialist 6-Month Contract - Inside IR35 - Hybrid (Warwick 1 day per week) Our client, a leading energy company is looking for an experienced Cyber Incident Response Specialist to take ownership of cyber security incidents from escalation through to resolution. Working within a dedicated … Incident Response team, you will coordinate containment, remediation and recovery activities, lead incident calls, engage key stakeholders, and ensure incidents are managed effectively through to closure. Key Requirements Experience managing cyber/security incidents end-to-end Strong understanding of cyber threats including phishing, malware and insider ...

SOC Manager

Hiring Organisation
NRGTech Talent Solutions Ltd
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP 750 - 850 Daily
Define and lead the delivery of the Cyber Security Operations Centre (CSOC) to detect real-time cyber security incidents/data breaches and manage response and remediation activities, including the management of senior stakeholders and external agencies. Ensure adequate controls, practices and capabilities are in place to identify vulnerabilities … define the process for remediation or mitigation to ensure cyber readiness and resilience against attack. Providing strategic level advice to senior management regarding incident response, monitoring, logging and analysis of all relevant systems and processes. Leading the development, communication and continuous improvement of the cyber incident response ...

Cyber Security Operations Specialist

Hiring Organisation
Sanderson Recruitment
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550 per day
major organisation is seeking a Cyber Security Operations Specialist to join its Security Operations team. This is a hands on role focused on incident response, threat detection, vulnerability management and continuous improvement across enterprise technology environments. You'll be expected to hit the ground running, managing security alerts … tooling estate. The Role Monitor, investigate and respond to cyber security incidents. Manage and triage security alerts, tickets and operational queues. Lead or support incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop ...

Security Architect - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£545 - £590 per day
solutions into operational security environments. Ensure operational teams have the controls, monitoring capabilities, and processes required to manage secure services. Collaborate with Security Operations, Incident Response, Engineering, and Platform teams to maintain secure systems. Drive continuous improvement within security monitoring and incident response capabilities. Stakeholder Engagement … supporting government departments, public sector organisations, or Critical National Infrastructure programmes. Knowledge of: Zero Trust Architecture Secure by Design Principles DevSecOps Methodologies Security Operations & Incident Response Identity & Access Management (IAM) Data Protection & Privacy Controls Enterprise Security Architecture Frameworks Familiarity with: NCSC Cloud Security Principles ISO 27001 NIST Cybersecurity ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage … investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. ...

Cyber Security Analyst

Hiring Organisation
Seymour John Ltd
Location
Nationwide, United Kingdom
Employment Type
Contract
Contract Rate
£400/day
security incidents Investigating cyber security alerts Microsoft Defender for Endpoint (MDE) analysis and remediation Managing SIEM, EDR and NDR alert activity Supporting cyber incident response processes Assisting with security investigations and reporting Supporting information security and compliance activities Working closely with technical and security teams to improve cyber … particularly interested in candidates with experience of: NHS experience Microsoft Defender for Endpoint (MDE) Security Operations or SOC environments SIEM monitoring and incident response Endpoint Detection and Response (EDR) Network Detection and Response (NDR) Microsoft 365 Security Threat investigation and remediation Cyber security frameworks and best ...

OT Cyber Security Manager

Hiring Organisation
Experis
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£550.00 - £570.00 per day
approve OT technology deployments from a cybersecurity perspective. Support the secure adoption of Industrial IoT (IIoT), cloud-connected systems, and remote access solutions. Incident Response & Operational Security Develop and maintain OT-specific incident response processes. Lead investigations and response activities for OT cybersecurity incidents. Coordinate ...

Cyber Security Analyst - Training Course

Hiring Organisation
Netcom Training
Location
Watford, Hertfordshire, United Kingdom
Employment Type
Permanent, Contract, Temporary, Part Time, Apprenticeship
Training's government-funded Cyber security course is your route into one of tech's fastest-growing fields. Learn threat intelligence, security testing and incident response in an interactive online format and earn a nationally recognised NCFE Level 3 Certificate in Cyber Security Practices. Course details Duration … learn Applying cyber security principles and risk assessment Gathering threat intelligence, including open source intelligence (OSINT) Carrying out security testing and identifying vulnerabilities Planning incident response and writing post-incident reports Potential roles this training could lead to Information Security Analyst Incident Responder Analyst Junior Forensic ...

SOC Manager

Hiring Organisation
Randstad Technologies Recruitment
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£600 - £700/day Negotiable
leadership position-not a hands-on technical analyst role. You will take full ownership of the Cyber Security Operations Centre (CSOC), driving strategy, managing incident response, and directing internal teams and external vendors. Key Responsibilities Define and lead the CSOC strategy, operations, and governance. Take command of major … incident response, managing remediation and stakeholder communication. Oversee threat intelligence, vulnerability management, and security monitoring capabilities. Manage relationships with external agencies, Managed Security Service Providers (MSSPs), and technology partners. What We Need From You Proven experience as a SOC Manager (previous leadership experience is essential; this ...

SOC Analyst

Hiring Organisation
ARM (Advanced Resource Managers)
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 85 Hourly
Analyst An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manager in assisting DEX meet the challenges and demands of countering the Cyber Threat. Details of the role … Engineering effort working with the ISR function Assist with the maintenance of Security technologies Assisting the Cyber Eng Team with project activity Supporting the Incident responders with HR and InfoSec related investigations Attend routine security meetings Skillset/experience required: A career background in Cyber Security. Security awareness ...

Security Engineer

Hiring Organisation
Pontoon
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Contract
findings and translating them into actionable remediation plans. Supporting security assurance, risk assessments, and control validation activities. Collaborating with Security Architecture and Cyber Security Incident Response teams to elevate the overall security posture. Assisting with audit, compliance, and evidence-gathering activities when required. Essential Experience: We're looking … external penetration testing engagements. The ability to recognise common vulnerabilities and security gaps. Familiarity with regulated or Critical National Infrastructure (CNI) environments. Exposure to incident response and CSIRT functions. Relevant Microsoft or security certifications (e.g., SC-200, SC-300, SC-400, AZ-500, CCSP). What ...

Trainee Cyber Security Professional

Hiring Organisation
Netcom Training
Location
Sheffield, South Yorkshire, United Kingdom
Employment Type
Permanent, Contract, Temporary, Part Time, Apprenticeship
Principles of Cyber Security, Level 2) equips you with the practical skills employers are actively seeking. From threat intelligence and security testing to incident response and ethical compliance, you’ll gain hands-on experience that prepares you for today’s fast-growing cyber security and IT roles. … Understand cyber security principles and core frameworks Threat Intelligence: Develop expertise to identify risks Testing: Conduct cyber security testing, identify vulnerabilities and implement controls Incident Response: Prepare for and respond to cyber security incidents Ethics: Understand legislation and ethical conduct within cyber security Professional Skills: Build professional skills ...

Cloud Security Engineer

Hiring Organisation
Experis
Location
Knutsford, Cheshire, United Kingdom
Employment Type
Contract
highly available cloud services. Support business stakeholders in adopting modern cloud-native architectures and security best practices. Develop and implement automation for security monitoring, incident response, remediation, and operational processes. Ensure cloud platforms comply with organisational security standards, governance requirements, and software development lifecycle practices. Identify, assess … gaps. Contribute to cloud architecture reviews, security assessments, and threat modelling activities. Work with security tooling and SIEM platforms to improve visibility, detection, and response capabilities. Support incident, problem, and change management processes while maintaining operational excellence. Develop Infrastructure as Code (IaC) solutions to standardise and automate cloud ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
attack vectors and security weaknesses. Support security strategy initiatives by providing intelligence-led insights and risk assessments. Collaborate with security teams to improve detection, response, and mitigation capabilities. Support incident investigations and provide intelligence to assist with response activities. Assist in the development and enhancement of security … procedures (TTPs). Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability to assess cyber risks and communicate findings clearly to stakeholders. Excellent written and verbal ...

Associate Security Analyst

Hiring Organisation
NonStop Consulting
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£650 - £700/day
/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract … environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions ...

Cyber Security Consultant

Hiring Organisation
Experis
Location
West End, London, United Kingdom
Employment Type
Contract
Contract Rate
£560 - £610/day
Cyber Security Consultant - Incident and Vulnerability Management Duration: 30/11/2026 Pay: up to £610 per day (umbrella) Location: Preston, London or Birmingham UK, Hybrid - 30% office 70% home CONTRACTOR MUST BE MOD SC CLEARED AND BE A SOLE UK NATIONAL Role Summary The Security Incident … transition to a multi-supplier (SIAM) model within a Defence environment. The role focuses on understanding, aligning and governing existing high-severity security incident management (S3/S4) and vulnerability management processes across suppliers. Ensuring a consistent, risk-based approach in line with client policy and regulatory requirements, supported ...

Cyber Security Consultant - Inside IR35 - SC

Hiring Organisation
Sanderson Government and Defence
Location
Birmingham, West Midlands, United Kingdom
Employment Type
Contract
Contract Rate
£550 - £599.65 per day
Role Title : Cyber Security Consultant - Incident and Vulnerability Management Clearance: SC Cleared Location : Preston, London or Birmingham UK, Hybrid - 30% office 70% home Length: Initial contract to 30/11/2026 Pay rate : 581.75-599.65£ per day, 77.56-79.95£ per hour Status : Inside IR35 Role Summary The Security … Incident & Vulnerability Management Consultant operates within the Operational Integrator (OI) function to support the transition to a multi-supplier (SIAM) model within a Defence environment. The role focuses on understanding, aligning and governing existing high-severity security incident management (S3/S4) and vulnerability management processes across suppliers. ...

SOC Analysts - L2 and L3 (SC and DV-Cleared)

Hiring Organisation
Pigment Consulting
Location
Manchester, North West, United Kingdom
Employment Type
Contract
Investigation of phishing, malware, credential compromise and suspicious activity. Supporting containment, eradication and recovery. Developing and improving detection rules and playbooks. Producing high-quality incident documentation and reports. Supporting and mentoring Tier 1 analysts. Tier 3 SOC Analyst As a Tier 3 Analyst, you'll provide advanced technical investigation … senior escalation point for complex incidents. Responsibilities include: Leading complex and high-severity security investigations. Advanced threat hunting and incident response. Malware, endpoint, network and forensic investigation. Developing advanced detections and response capabilities. Root-cause analysis and post-incident investigation. Supporting major incident response. Working closely ...

SC Cleared DevOps Engineer (On-prem)

Hiring Organisation
VIQU IT
Location
London, Bishopsgate, United Kingdom
Employment Type
Contract
Contract Rate
£600 - £800/day Inside IR35
release processes. * Familiar with Observability functions, designing and operating end-to-end logging, metrics, tracing, dashboards, and alerting systems using ELK, Splunk, Prometheus, Grafana. * Incident-management leadership — owning major incident response, prioritisation, real-time coordination, stakeholder communication, and supporting post-incident reviews and reliability improvements. * Thorough ...

SOC Manager

Hiring Organisation
Fox Morris Group Ltd
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 700 - 850 Daily
performing security team. About the Role As the SOC Manager, you will be responsible for leading the Security Operations Centre, ensuring effective security monitoring, incident response and threat intelligence capabilities while shaping the future direction of the SOC. Working closely with internal stakeholders, external vendors and managed security … experience with the ability to develop and evolve SOC capabilities. Demonstrated experience leading and managing high-performing cyber security teams. Strong understanding of security incident management and response processes. Experience delivering and managing effective security monitoring capabilities. Proven experience in threat intelligence, threat assessment and cyber risk management. ...

Chief Information Security Officer / CISO - Interim

Hiring Organisation
Experis
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure … leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical ...

Chief Information Security Officer / CISO - Interim

Hiring Organisation
Experis
Location
East Midlands, United Kingdom
Employment Type
Contract
security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure … leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical ...

Chief Information Security Officer / CISO - Higher Education

Hiring Organisation
Experis
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure … leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical ...