1 to 25 of 228 Permanent Incident Response Jobs in the South East

Senior Manager - Cyber Incident & Response - Consulting

Hiring Organisation
Oliver James
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £110,000 per annum
Senior Manager/Associate Director - Cyber Incident Response Advisory & Incident Management This is a senior opportunity within a leading Cyber Risk & Security practice, working with major organisations to strengthen their ability to prepare for, manage and recover from complex cyber incidents. The role sits across both proactive … cyber incident response advisory and live incident management, helping clients improve resilience while supporting them through high-impact security events. You will work closely with senior stakeholders and C-suite leaders, advising on cyber incident preparedness, crisis and incident management, response strategies and organisational ...

Incident Response Specialist

Location
Wokingham, England, United Kingdom
## Incident Response SpecialistApply: Warwick, CV34 6DA: Wokingham, RG41 5BN: Full time: Posted Today: End Date: October 7, 2026 (6 days left to apply): JR100833**About the Role**Exciting opportunity to join the **Security Incident Response Team**, part of the Security function within DD&T. … effectively respond to **cyber** and **physical** security incidents;* Mitigating potential **security threats** by identifying lessons learned and translating these into business improvements;* Developing Incident Response **readiness plans** and processes;* **Exercising** and **testing** to ensure NESO is prepared to respond to the security threats we face. The Incident ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Operational Security Manager

Location
Farnborough, England, United Kingdom
will join a growing team of security professionals to protect and maintain the effectiveness of managed service capabilities. The Operational Security Manager supports cybersecurity incident response, investigation, escalation, and regulatory reporting, with a focus on the EU Cyber Resilience Act. Working across Cybersecurity, Product Security, Legal, Compliance, Privacy … Security Manager also provides technical leadership and continuously improves security processes, controls, and supporting technologies. What You'll Be Doing : Support the full cybersecurity incident response lifecycle, including triage, investigation, containment, escalation, remediation, recovery, and post-incident review across enterprise and product environments. Coordinate incident response ...

Incident Response Manager/DFIR Manager

Hiring Organisation
Hays Specialist Recruitment Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £115,000 per annum
Your new company You will join an established international cybersecurity services organisation providing digital forensics, incident response and post-breach support to clients worldwide. Operating through a global follow-the-sun model, the organisation is expanding its regional leadership capability in response to continued growth. This … remote UK role, with a preference for candidates based around London, Birmingham or Manchester and occasional client-site travel. Your new role As Incident Response Manager, you will lead complex DFIR engagements while managing and developing a regional team of approximately six to seven professionals. This ...

Senior Incident Response Lead — Rapid Response (Ransomware)

Location
Oxford, England, United Kingdom
Sophos is seeking an experienced Senior Incident Response Consultant to join our Incident Response (IR) team. You will lead incident response engagements for customers worldwide, guiding a team of consultants, conducting rapid responses, and delivering executive updates. You will have 5+ years ...

Cyber Incident Lead

Hiring Organisation
British Airways
Location
Feltham, Middlesex, United Kingdom
Salary
£ 70 K
think big and bring your ambition to work every day, which is why, at British Airways the sky is never the limit.The role:Cyber Incident LeadThis role reports into the Cyber Incident Manager, and works with stakeholders across the organisation to ensure BA is able to effectively identify … incidents across the BA estate 24/7 365 days a year as part of an on call functionResponsible for developing, maintaining, and managing incident response processesAbility to present on complex, technical concepts to a wide range of stakeholders of varying seniority and knowledgeConfident to engage with business ...

Cyber Incident Lead

Hiring Organisation
British Airways
Location
Stanwell, Surrey, UK
Employment Type
Full-time
bring your ambition to work every day, which is why, at British Airways the sky is never the limit. The role: Cyber Incident LeadThis role reports into the Cyber Incident Manager, and works with stakeholders across the organisation to ensure BA is able to effectively identify, respond … incidents across the BA estate 24/7 365 days a year as part of an on call functionResponsible for developing, maintaining, and managing incident response processesAbility to present on complex, technical concepts to a wide range of stakeholders of varying seniority and knowledgeConfident to engage with business ...

SecOps Engineering Lead

Location
Abingdon, England, United Kingdom
controls our Cyber Security Architect designs, and to lead security operations for our Azure-hosted, multi‐tenant SaaS platform: SOC engineering, detection and monitoring, incident response, and managing a team of three analysts. 60% of the role is engineering: putting Azure guardrails, SOC tooling, pipeline security tooling … platform hardening into production. The rest is running the SOC: keeping security observability controls healthy, improving detections, leading response, and developing the three analysts. You are expected to be a senior hands‐on practitioner in the team and the analysts' escalation point, so you are expected to troubleshoot ...

Senior Cyber Threat Intelligence Analyst

Location
Portsmouth, England, United Kingdom
could impact Babcock's people, information, systems, programmes and customers. You will transform complex threat data into actionable intelligence that supports proactive cyber defence, incident response, vulnerability management and risk reduction activities across the organisation. Day-to-day, you'll work closely with Security Operations, Incident Response … threat intelligence to support proactive cyber defence activities. Analysing threat actor activity, malware campaigns, phishing threats and emerging cyber risks. Collaborating with Security Operations, Incident Response and Security Assurance teams to improve cyber resilience. Creating high-quality intelligence assessments and reports that support business decision-making. Monitoring ...

Digital Forensics & Incident Response Analyst

Location
Maidenhead, England, United Kingdom
innovation, knowledge sharing, continuous improvement, and operational excellence. About the Role Join Maersk's Cyber team and play a key role in a modern incident management and response function that combines digital forensics, threat hunting, detection engineering, and cyber security improvement initiatives. This role offers the opportunity … contribute to complex investigations, strengthen response capabilities, and help shape the future of cyber defence within a globally recognised organisation. Key Responsibilities Conduct digital forensic investigations across endpoint, cloud, and OT environments to support incident response and recovery activities. Perform threat hunting and behavioural analysis to proactively ...

Senior Cyber Threat Detection and Response Analyst

Location
Portsmouth, England, United Kingdom
Title: Senior Cyber Threat Detection and Response Analyst Location: Any of our main UK locations+ Hybrid Working Arrangements Compensation: Competitive + Benefits Role Type: Full time/Permanent Role ID: SF75113 At Babcock we’re working to create a safe and secure world, together, and if you join … play your part as a Senior Cyber Threat Detection and Response Analyst at any of our main UK locations. The role As a Senior Cyber Threat Detection and Response Analyst, you’ll be a technical leader within our Cyber Security Operations capability, driving advanced threat detection, cyber defence ...

Senior Global Security Operations Centre Analyst

Hiring Organisation
Centrica - CHP
Location
Windsor, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Senior Global Security Operations Centre Analyst, you'll be the key technical escalation point between our Security Analyst team and the Cyber Security Incident Response Team (CSIRT), leading complex investigations and supporting the response to significant security incidents. Working across cloud, endpoint, identity, and network technologies … site. Day to day - Lead complex cyber security investigations across Centrica, acting as the primary technical escalation point within the GSOC and supporting incident response before escalation to CSIRT where required. Investigate and respond to threats across cloud, endpoint, identity, email, network and Operational Technology (OT) environments, assessing ...

Digital Forensics & Incident Response Analyst

Location
Maidenhead, England, United Kingdom
# Digital Forensics & Incident Response Analyst*A.P. Moller - Maersk***Maidenhead, England**Hybrid · Mid · Full-time### The RoleThe analyst conducts digital forensic investigations across Windows, Linux, cloud, and operational technology environments, supporting the full incident response lifecycle from triage through to post-incident review. ...

Incident Response Lead – Cyber & Physical Security (Hybrid)

Location
Wokingham, England, United Kingdom
National Energy System Operator Limited is seeking an experienced Incident Response Specialist to join the Security Incident Response Team, working across cyber and physical security incident management. The role leads responses to high-priority incidents, triages events, and supports junior colleagues while coordinating with internal ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
take ownership of the engineering, administration, health and continuous improvement of the security platforms, detection content and automation that underpin threat monitoring, detection and incident response across my client's internal and managed customer environments. They will act as the final internal escalation point for complex and high … live incidents. Key Responsibilities Lead the end-to-end management of complex and high-severity security incidents, including investigation, containment, eradication, recovery and post-incident review. Conduct digital forensic investigations across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise ...

Senior IT Security Principal

Hiring Organisation
KBR
Location
Guildford, Surrey, United Kingdom
Salary
£ 70 K
objectives, while also helping achieve their sustainability goals.Role SummaryWe are seeking an experienced cybersecurity professional to provide technical leadership across security operations, vulnerability management, incident response, threat hunting, risk mitigation, and compliance activities. You will act as a trusted advisor to senior stakeholders, lead enterprise security initiatives … help strengthen and mature security capabilities across the organisationResponsibilitiesAs Senior IT Security Principal, you will provide technical leadership across security operations, incident response, threat hunting, vulnerability management, security architecture, identity and access governance, and compliance activities. You will lead the response to complex cybersecurity incidents, drive enterprise ...

Senior IT Security Principal

Hiring Organisation
KBR
Location
Leatherhead, Surrey, UK
Employment Type
Full-time
while also helping achieve their sustainability goals. Role SummaryWe are seeking an experienced cybersecurity professional to provide technical leadership across security operations, vulnerability management, incident response, threat hunting, risk mitigation, and compliance activities. You will act as a trusted advisor to senior stakeholders, lead enterprise security initiatives … help strengthen and mature security capabilities across the organisationResponsibilitiesAs Senior IT Security Principal, you will provide technical leadership across security operations, incident response, threat hunting, vulnerability management, security architecture, identity and access governance, and compliance activities. You will lead the response to complex cybersecurity incidents, drive enterprise ...

Cyber Security Manager

Location
Slough, England, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Monitoring & Observability Engineer

Location
Reading, England, United Kingdom
operational responses that improve reliability and reduce downtime. What You'll Be Working On Monitor live systems, triage operational alerts and provide first-line incident response to maximise system availability. Develop and maintain dashboards that deliver clear visibility into system health, trends and operational performance. Analyse recurring incidents … tooling and operational processes. Define monitoring thresholds, alerting strategies and operational metrics that support reliable live quantum computing services. Produce documentation covering monitoring processes, incident response, escalation procedures and operational handovers. Contribute to automation and continuous improvement initiatives that reduce manual intervention and improve service reliability. What ...

Senior / 3rd Line IT Engineer - Infrastructure & Cyber Security

Hiring Organisation
Recruitment Revolution
Location
Colchester, Essex, South East, United Kingdom
Employment Type
Permanent
Enablement Your Background/Skills: 3rd Line Engineering, IT Infrastructure, Cyber Security, Azure, Google Workspace, Networking, CrowdStrike, Cisco, VMware vSphere, Windows Server, Jamf, Intune, Incident Response, Cyber Essentials, AI Tooling Who We Are BulkTM is on an incredible journey, with a mission to evolve from a manufacturing … security aspects of AI integration and take a leading role in our Cyber Essentials project next year. You'll also oversee infrastructure, security tooling, incident response, budgeting and contracting, while becoming a Tier 3 escalation point for complex issues that need deeper technical expertise. ...

Advisory PSIRT Engineer

Location
Farnborough, England, United Kingdom
more visit www.lenovo.com , and read about the latest news via our StoryHub . Description and Requirements TheProduct Security Advisory Engineerwithin Lenovo’sEnterprise Product Security Incident Response Team (E-PSIRT)is the central operational orchestrator for vulnerability management across Lenovo’s global product portfolio. This critical role coordinates product … evaluated, remediated, and disclosed. Additionally, this position plays a pivotal role in supporting Lenovo’sCyber Resilience Act (CRA)compliance, vulnerability reporting readiness, and regulatory response activities. Key Responsibilities Vulnerability Assessment & Triage: Evaluate product security vulnerabilities, exploits, and incidents from external researchers, threat intelligence, public disclosures, and internal testing ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...