14 of 14 Permanent Incident Response Jobs in Hertfordshire

Cyber Incident Manager (CIM)

Location
Welwyn Garden City, England, United Kingdom
About the role As a Cyber Incident Manager at Tesco, you will lead the coordinated response to cyber incidents, protecting the integrity of the retail ecosystem that serves millions of customers every day. Acting as a central orchestrator, you will ensure swift, structured, and effective incident resolution … minimising operational disruption and customer impact. This role is critical to maintaining trust in Tesco's digital platforms by driving proactive, intelligence-led response and embedding continuous improvement across the cyber defence lifecycle. You will operate at the intersection of technology, business impact, and customer outcomes, championing innovation ...

SOC Shift Lead

Location
Watford, England, United Kingdom
busy Security Operations Centre while remaining hands-on with technical investigations. You will act as the senior escalation point during your shift, leading incident response, mentoring analysts and ensuring high standards across investigations. You will also: Lead Major Incident investigations and technical response activities Analyse advanced … Lead Strong experience leading complex cyber security investigations Commercial experience with Microsoft Sentinel and Splunk Enterprise Security Excellent understanding of MITRE ATT and CK, incident response and threat-informed defence Strong networking knowledge including TCP/IP, DNS, HTTP/S, SMTP, LDAP and VPN technologies Experience analysing ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management. The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should … business risk. Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk. Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps. Translate technical findings into clear, business ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Potters Bar, Hertfordshire, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

Senior Platform Engineer

Location
Welwyn Garden City, England, United Kingdom
enable safe, fast, and repeatable delivery. Championing DevSecOps principles, embedding security and compliance into the software delivery lifecycle. Establishing and improving observability, monitoring, and incident response practices, including vulnerability management and remediation. Mentoring engineers and contributing to a strong engineering culture through knowledge sharing, documentation, and technical leadership. ...

Operations Team Lead (Production & Reliability)

Location
Watford, England, United Kingdom
Operational readiness for new releases Safe production access and change coordination Production is a high-discipline environment. You make sure it stays that way. Incident Management You own the full lifecycle: High‐signal alerting and fast detection Structured incident response Clear internal and customer communication Blameless postmortems … Escalations are fast and predictable. Monitoring & Reliability Define SLIs/SLOs for critical systems Improve visibility across availability, latency, errors, and saturation Track MTTR, incident frequency, and escalation trends Drive reliability roadmap initiatives We measure reliability, and improve it continuously. Team Leadership Lead and grow the Operations team ...

Onsite SOC Shift Lead: Incident Response & Mentoring

Location
Watford, England, United Kingdom
seeking an experienced SOC Shift Lead for an onsite role in Hemel Hempstead. You will oversee daily SOC operations, mentor analysts, and lead major incident responses while collaborating with engineering teams to enhance detection capabilities. A strong background in MITRE ATT&CK and cloud logs is preferred. The role ...

Windows Engineer (Active DV Clearance Required)

Location
Stevenage, England, United Kingdom
across Infrastructure and Workplace Windows Environments in restricted secret & above networks Act as Tier 2/Tier 3 support for Windows-related issues, performing incident response and remediation. Maintain a comprehensive knowledge of the business IT environment. Plan and coordinate maintenance and patching across Windows Environments. Manage changes … maintain high-quality documentation and problem resolution guides. Resolve incidents related to Windows Services in line with agreed SLAs, escalating as necessary. Coordinate with incident and technical managers during high-severity incidents. Identify root causes of recurring incidents and implement long-term solutions. Job Requirements: Active DV clearance ...

Cyber Threat Operations Lead: Threat Hunting & Detection

Location
Stevenage, England, United Kingdom
Morson Edge in Stevenage is seeking a Cyber Threat Operations specialist to support the Active Defence Incident Response Manager and help counter cyber threats through robust threat hunting, detection engineering and analysis within a high-performing UK SOC. You will work with UK InfoSec teams, utilise SIEM, Network ...

Cyber Threat Operations Lead - Threat Hunting & IR

Location
Stevenage, England, United Kingdom
clearance to follow. Rate is £85 per hour, with hybrid/onsite working and 37 hours per week. The role supports the Active Defence Incident Response Team, focusing on threat hunting, detection engineering and advanced analytics across UK SOC operations. #J-18808-Ljbffr ...

Remote SRE: Cloud Reliability & AI-Driven Ops

Location
Hemel Hempstead, England, United Kingdom
seeking a hands-on Site Reliability Engineer to join our Product Technology team. This remote-first role involves shaping CI/CD, observability, and incident response while collaborating with engineers and tech leads to ensure reliable, scalable platforms for guests and colleagues. You’ll tackle infrastructure design, tooling ...

Network Security Engineer (SOC)

Hiring Organisation
Eclectic Recruitment
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Permanent
Salary
£40000 - £55000/annum
ensuring the security of network infrastructure. Key Responsibilities: Playing a key role in safeguarding the organisations network infrastructure Working with the SOC team on incident response and triage activity Designing and implementing robust security solutions to protect against threats Collaborating with cross functional teams, implementing changes securely Identifying ...

Remote Software Engineer, Fullstack (UK)

Hiring Organisation
grabjobs
Location
Bishop's Stortford, Hertfordshire, UK
speed. Collaborate with teammates and cross-functional partners to solve problems and deliver customer value. Contribute to production health, including on-call rotations and incident response, in a "you build it, you run it" environment. Identify and help resolve availability, reliability, and performance issues. Minimum Qualifications Bachelor ...

Onsite DV-Cleared Windows Engineer (Contract)

Location
Stevenage, England, United Kingdom
support a defence client in restricted environments. Candidates must hold active DV clearance and have extensive experience with Windows Server, AD, virtualization, and incident response. You will perform Tier 2/3 support, manage changes, patching, and maintain documentation. This role is fully onsite due to network restrictions. #J ...