1 to 25 of 234 Permanent Incident Response Jobs in England

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Cyber Response & Recovery Assistant Manager (Reactive DFIR)

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response & Recovery Assistant Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice. Your … specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a junior case manager on smaller cases, or part of a team (reporting to a case manager or senior case manager) on larger cases. This is a hands-on role ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£95,000
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. … This is a hands-on consulting role where you will support organisations through cyber incidents while also helping them improve their readiness, resilience and response capability before incidents occur. Working remotely across the UK, you will join a team delivering high-quality DFIR services including incident investigation, containment ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£95,000
Incident Response Consultant - Mid to Principal - UK Wide UK Remote | Up to £95,000 + benefits | SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements. … This is a hands-on consulting role where you will support organisations through cyber incidents while also helping them improve their readiness, resilience and response capability before incidents occur. Working remotely across the UK, you will join a team delivering high-quality DFIR services including incident investigation, containment ...

Data and Cyber Associate/Senior Associate

Hiring Organisation
Auston Legal Limited
Location
London Area, United Kingdom
regarding cyber incidents, regulatory responses, technology and data-related claims, and cyber/technology insurance coverage. They are known for their expertise in cyber incident response and their comprehensive understanding of the insurance market, which allows them to assist clients throughout the entire process of a cyber event … associated risks, including immediate breach response and crisis management, policy notification and coverage strategy, as well as regulatory engagement and dispute resolution. The Role: The London team is seeking to recruit an Associate (1-4PQE) and Senior Associate (4-8PQE) who will support Partners in delivering cyber ...

Cyber Security Consultant

Hiring Organisation
Radius Consultancy
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
SIEM, NDR, applications, security architecture, IAM, PAM encryption technologies, network security, Zero Trust, secure interconnection patterns and cyber security principles. Experience within Security Operations, Incident Response, Security Assurance, or GRC functions. Experience managing or overseeing MSSP, SOC activities, third party management. Strong understanding of: ISO 27001, SOC2, NIST … Cyber Security Framework, Incident Response methodologies, Cyber Security Governance, GDPR and regulatory compliance Certifications (one or more) CISSP CISM CRISC The Cyber Security Assurance & Incident Response Lead is responsible for strengthening and maintaining Telehouse's cyber security posture through effective security assurance, incident response ...

Senior IT Security Analyst

Hiring Organisation
Prime Personnel
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
practical improvements to reduce cyber risk. The role combines analyst and engineering responsibilities across security tools, vulnerability and exposure management, web and email security, incident response, and threat-informed remediation. The role works closely with infrastructure, cloud, application, identity and business teams to identify security issues, prioritise actions … cyber defence posture. Owned or materially contributed to one or more cyber security domains, such as endpoint security, vulnerability management, identity security, network security, incident response or Microsoft 365/Azure security. Used CrowdStrike or equivalent EDR tooling to investigate detections, support incident response and improve ...

Senior IT Security Analyst / Engineer

Hiring Organisation
Prime Personnel UK
Location
SW1E, Victoria, Greater London, United Kingdom
Employment Type
Permanent
Salary
£75000 - £90000/annum c£85,000
practical improvements to reduce cyber risk. The role combines analyst and engineering responsibilities across security tools, vulnerability and exposure management, web and email security, incident response, and threat-informed remediation. The role works closely with infrastructure, cloud, application, identity and business teams to identify security issues, prioritise actions … cyber defence posture. Owned or materially contributed to one or more cyber security domains, such as endpoint security, vulnerability management, identity security, network security, incident response or Microsoft 365/Azure security. Used CrowdStrike or equivalent EDR tooling to investigate detections, support incident response and improve ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
join a high-performing cyber security operations team supporting critical, secure infrastructure in a 24/7 environment. This is an opportunity to lead incident response activities, mentor analysts, and play a key role in protecting complex enterprise environments from evolving cyber threats. What You'll Be Doing … Lead the investigation and response to medium and high-severity security incidents. Act as the escalation point for complex cyber security events and threat activity. Conduct root cause analysis and produce detailed incident reports. Coordinate containment, eradication and recovery activities with technical teams. Correlate data across SIEM ...

SOC Analyst

Hiring Organisation
Reed
Location
Central London, London, England, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
protecting a large-scale, international technology environment. This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid … cyber security alerts, incidents and threats Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response Prioritise and manage security incidents based on business risk and impact Conduct proactive threat hunting across endpoint, network, identity and cloud environments Develop ...

Cyber Security Engineer/Specialist

Hiring Organisation
Exalto Consulting
Location
Surrey, United Kingdom
Employment Type
Permanent
Salary
£70000 - £80000/annum Up to 80k (+ benefits)
risk reduction rather than purely operational support. You'll be responsible for strengthening the organisation's security posture through threat assessment, vulnerability management, incident response and continuous security improvement initiatives. Key responsibilities include: Enterprise Threat Management Identify, assess and mitigate cyber threats across enterprise infrastructure and business systems … vulnerability analysis Develop and implement security controls and remediation strategies Monitor emerging threats and recommend appropriate defensive measures Enhance threat detection, monitoring and incident response capabilities Develop and maintain incident response playbooks and operational procedures Work closely with third-party security providers during incidents and security ...

Incident Response Consultant - Mid to Principal - UK Wide

Hiring Organisation
Circle Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
GBP 95,000 Annual
Incident Response Consultant - Mid to Principal - UK Wide UK Remote Up to £95,000 + benefits SC Eligible Pref A specialist opportunity for experienced Incident Response professionals looking to work across a varied mix of proactive and reactive Digital Forensics & Incident Response (DFIR) engagements ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, United Kingdom
Employment Type
Permanent
team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying … monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
South West London, London, United Kingdom
Employment Type
Permanent
Salary
£85,000
incidents while leading, mentoring and developing SOC Analysts on shift. Youll act as a key escalation point for complex and high-severity incidents, supporting incident containment, remediation and recovery while providing leadership across the SOC. What youll be doing Leading the SOC team during your assigned shift and handling … escalations Investigating and responding to medium and high-severity security incidents Supporting incident containment, remediation and recovery Mentoring, teaching and upskilling junior SOC Analysts Supporting threat hunting, detection improvement and incident response activities What were looking for 6+ years experience across SOC, Incident Response ...

SOC Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
eligible for UK Security Clearance This is an exciting opportunity to work within a 24/7 SOC, investigating sophisticated cyber threats, leading incident response activities, and helping protect critical infrastructure powering next-generation AI and high-performance computing platforms. What You'll Be Doing Investigate and analyse … escalated security incidents, identifying attack vectors, root causes and potential business impact. Correlate events across multiple security tools and data sources to build comprehensive incident timelines. Lead response activities for medium and high-severity security incidents. Support containment, eradication and recovery efforts in partnership with technical stakeholders. Produce ...

SOC Shift Lead

Hiring Organisation
Searchability NS&D
Location
Hemel Hempstead, England, United Kingdom
busy Security Operations Centre while remaining hands-on with technical investigations. You will act as the senior escalation point during your shift, leading incident response, mentoring analysts and ensuring high standards across investigations. You will also: Lead Major Incident investigations and technical response activities Analyse advanced … Lead Strong experience leading complex cyber security investigations Commercial experience with Microsoft Sentinel and Splunk Enterprise Security Excellent understanding of MITRE ATT and CK, incident response and threat-informed defence Strong networking knowledge including TCP/IP, DNS, HTTP/S, SMTP, LDAP and VPN technologies Experience analysing ...

Security Operations Specialist

Hiring Organisation
Sanderson
Location
Greater Bristol Area, United Kingdom
major organisation is seeking a Cyber Security Operations Specialist to join its Security Operations team. This is a hands on role focused on incident response, threat detection, vulnerability management and continuous improvement across enterprise technology environments. You'll be expected to hit the ground running, managing security alerts … tooling estate. The Role Monitor, investigate and respond to cyber security incidents. Manage and triage security alerts, tickets and operational queues. Lead or support incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop ...

Tech lead - SOC responder

Hiring Organisation
Colt Technology Services UK
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Cyber Security Engineer, Cloud Security, SIEM, Incident Response, COR7555

Hiring Organisation
Corriculo Ltd
Location
Oxford, Oxfordshire, England, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £70,000 per annum
Cyber Security Engineer, Cloud Security, SIEM, Incident Response, COR7555 An exciting opportunity has arisen for a Cyber Security Engineer to join a growing technology company based in Oxfordshire, working on a hybrid basis.This is a hands-on role focused on strengthening cyber security across cloud platforms, applications … business systems. Working closely with the CIO and development teams, the Cyber Security Engineer will play a key role in improving cloud security, incident response, vulnerability management, security monitoring and secure development practices, helping to enhance the organisation's overall cyber resilience.The company develops innovative software solutions ...

Director, Cyber Security (CISO)

Hiring Organisation
Coca-Cola Europacific Partners
Location
Uxbridge, Greater London, UK
Employment Type
Full-time
security metrics, risk indicators and maturity measures to executive stakeholders. Strengthen cyber defence and resilience Lead our cyber defence capabilities, including monitoring, threat detection, incident response, crisis management and continuous improvement. Oversee Security Operations Centre capabilities, ensuring effective protection against evolving cyber threats. Lead executive cyber incident response activities during significant security events. Ensure security capabilities protect the confidentiality, integrity and availability of business-critical services and information. Drive security architecture and engineering excellence Champion secure-by-design principles across technology initiatives and transformation programmes. Define the strategic direction for security architecture, engineering, application security ...

Mid-Level Cyber Security Analyst

Hiring Organisation
Nextech
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £55,000 per annum
excellent opportunity for someone with 2-4 years' hands-on security experience to take the next step in their career, working across threat detection, incident response, and security operations in a collaborative, fast-paced environment. Key Responsibilities Monitor security alerts and investigate potential threats using SIEM tooling Support … incident response activities, from initial triage through to resolution and reporting Conduct vulnerability assessments and coordinate remediation with technical teams Assist with security control reviews and audits against frameworks such as ISO 27001, NIST CSF, and Cyber Essentials Contribute to the development and improvement of security policies ...

Lead Security Analyst

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£80,000
engagement, setting the technical direction for the SOC and owning the quality of what the team produces - from detection engineering to threat-hunting to incident response. This isn't a role where you disappear into a ticket queue. You'll shape the threat-landscape narrative for your engagement, drive … collection plan, produce timely and rigorous intelligence products, and build feedback loops that keep the cycle honest and improving. Establish and lead security incident response practice - build playbooks, define the severity model, run exercises, and lead the team's response to significant incidents; run blameless post-mortems ...

Information Security Manager - Cyber

Hiring Organisation
Standard 8
Location
Guildford, Surrey, England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £75,000 per annum
security team Delivering the organisation's security roadmap and controls framework Acting as the senior escalation point for security-related issues Overseeing security operations, incident response and vulnerability management Supporting secure Azure and AWS environments Managing and optimising security tooling including SIEM, EDR and related platforms Reviewing projects … design principles across technology initiatives Managing third-party security providers and key supplier relationships Leading risk assessments, audit activities and compliance initiatives Maintaining incident response and business continuity capabilities Delivering security awareness and guidance across the wider business Skill required Security operations and cyber defence Azure ...

Senior Security Operations Engineer

Hiring Organisation
Vitality Corporate Services Limited
Location
Bournemouth, Dorset, South West, United Kingdom
Employment Type
Permanent
Salary
£60,000
week. We are happy to discuss flexible working! Top 3 skills needed for this role: Highly experienced Cyber Security Operations expertise Advanced security incident response capability Proven security tooling and threat management knowledge What this role is all about: We're looking for a Senior Security Operations Engineer … strong relationships with internal stakeholders, vendors and technology partners to support effective security operations You'll develop and maintain security documentation, operational procedures and incident response playbooks Support penetration testing activities and coordinate the remediation of identified findings Contribute to the ongoing enhancement of monitoring, detection and response ...