1 to 25 of 873 Permanent Incident Response Jobs in the UK excluding London

Senior Manager - Cyber Incident & Response - Consulting

Hiring Organisation
Oliver James
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £110,000 per annum
Senior Manager/Associate Director - Cyber Incident Response Advisory & Incident Management This is a senior opportunity within a leading Cyber Risk & Security practice, working with major organisations to strengthen their ability to prepare for, manage and recover from complex cyber incidents. The role sits across both proactive … cyber incident response advisory and live incident management, helping clients improve resilience while supporting them through high-impact security events. You will work closely with senior stakeholders and C-suite leaders, advising on cyber incident preparedness, crisis and incident management, response strategies and organisational ...

Senior Manager, Cybersecurity Incident Response

Hiring Organisation
ARM
Location
Cambridge, Cambridgeshire, UK
Employment Type
Full-time
Overview: Interested in defending a global tech company from the latest cyber threats? Arm is seeking a passionate, experienced Senior Manager of Cybersecurity Incident Response to join our growing Cyber Defence Operations (CDO) team, protecting Arm against current and future cyber-attacks! Situated within Arm's Enterprise Security … function, this role will lead Arm's global incident response team across the US, UK and India, including acting as a senior technical and operational leader for major cyber incidents. CDO enables Arm to be successful, delivering scalable and defendable security services that not only provide ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Management Consultant I

Location
Belfast City District, Northern Ireland, United Kingdom
## Incident Management Consultant IApply: Hybrid: Belfast 10 Mays Meadow: Der-Derry/Londonderry: Full time: Posted Today: End Date: October 6, 2026 (5 days left to apply): R34276At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. … driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection.**Your role in the team**The Incident Management Consultant within the Enterprise Command Center (ECC) handles complex major incident detection/situations and provides guidance/coaching to other team ...

Incident Response Specialist

Location
Warwick, England, United Kingdom
About the Role Exciting opportunity to join the Security Incident Response Team, part of the Security function within DD&T. Our team is responsible for: Ensuring we effectively respond to cyber and physical security incidents; Mitigating potential security threats by identifying lessons learned and translating these into business … improvements; Developing Incident Response readiness plans and processes; Exercising and testing to ensure NESO is prepared to respond to the security threats we face. The Incident Response Specialist will lead the team's response to security incidents, following industry best practice incident management frameworks. ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Response Specialist

Hiring Organisation
Adecco
Location
Warwick, Warwickshire, United Kingdom
Employment Type
Full-Time
Salary
£700.00 per day
take your cyber security expertise to the next level? Our client, a leader in the energy sector, is on the lookout for an Incident Response Specialist to join their dynamic cyber security team. Role: Incident Response Specialist Duration: 6 Months (ext. options) Location: Warwick (Hybrid … mindset, promoting shared responsibility among Security Operations teams. Your contributions will be vital in defending against an ever-evolving threat landscape. Key Responsibilities Include: Incident Response: Triage and manage high-priority incidents while ensuring appropriate responses are executed. Produce clear incident summaries quickly and adapt your communication ...

Senior SOC Analyst - Incident Response

Location
North East, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Security Engineer I, AWS Security Incident Response

Location
Manchester, England, United Kingdom
Description AWS Security Incident Response is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious activity, lead security response, and can explain … technical security concepts to non-technical audiences. AWS Security Incident Response is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious activity, lead ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Head of Security Incident and Response

Location
Newcastle upon Tyne, England, United Kingdom
green and healthy future for all. Find out more about DDTS: Defra digital, data and technology blog LinkedIn Defra Jobs The Head of Security Incident and Response provides operational leadership of the Defra Group Security Incident Response Management (SIRM) capability, ensuring the organisation is prepared … able to respond effectively to, security incidents ranging from routine events to significant security incidents. As the senior lead for security incident management, the role oversees incident response policy, governance and operational coordination, directs the response to complex and high-impact incidents, and provides authoritative advice ...

Operational Security Manager

Location
Farnborough, England, United Kingdom
will join a growing team of security professionals to protect and maintain the effectiveness of managed service capabilities. The Operational Security Manager supports cybersecurity incident response, investigation, escalation, and regulatory reporting, with a focus on the EU Cyber Resilience Act. Working across Cybersecurity, Product Security, Legal, Compliance, Privacy … Security Manager also provides technical leadership and continuously improves security processes, controls, and supporting technologies. What You'll Be Doing : Support the full cybersecurity incident response lifecycle, including triage, investigation, containment, escalation, remediation, recovery, and post-incident review across enterprise and product environments. Coordinate incident response ...

Incident Response Manager/DFIR Manager

Hiring Organisation
Hays Specialist Recruitment Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £115,000 per annum
Your new company You will join an established international cybersecurity services organisation providing digital forensics, incident response and post-breach support to clients worldwide. Operating through a global follow-the-sun model, the organisation is expanding its regional leadership capability in response to continued growth. This … remote UK role, with a preference for candidates based around London, Birmingham or Manchester and occasional client-site travel. Your new role As Incident Response Manager, you will lead complex DFIR engagements while managing and developing a regional team of approximately six to seven professionals. This ...

Security Operations Consultant

Location
Belfast City District, Northern Ireland, United Kingdom
Manager to join our Digital Trust & Cyber Security practice. Working on behalf of our clients, you will lead Security Operations Centre (SOC) analysts and incident response specialists. You will combine hands‐on operational leadership with advisory work. This means managing live incident containment … minimum of two days per week, depending on the role and assignment. What you'll do Lead and develop SOC analysts and incident response specialists, providing clear operational direction, coaching and support across day‐to‐day security operations. Take a hands‐on leadership role during cyber security incidents ...

Security Incident Management Analyst

Location
Preston, England, United Kingdom
Security Incident Management Analyst Location: Inverness or Preston | 5 days onsite Duration: 5 months possible extension Pay rate: up to £575 per day umbrella Clearance: Active SC clearance/UK sole national Role Description: The Security Incident Management Analyst operates within the Operational Integrator (OI) function … multi-supplier (SIAM) environment, supporting the governance and coordination of security incident management activities across suppliers. The role assists in ensuring security incidents are identified, tracked, escalated, and reported in accordance with client policies and agreed service levels. Working closely with suppliers, service management teams, and security stakeholders ...

Business Resilience Manager

Location
Leeds, England, United Kingdom
Business Resilience function works across practice groups, Business Services teams and international offices to strengthen preparedness, protect critical services and enable an effective response to disruption. This role reports to the Head of Risk Management and partners closely with IT, Information Security and senior business leaders. About the role … services, people, locations, technology, suppliers and the external threat environment. A central feature of the role is close partnership with IT as technology incident response, cyber response and disaster recovery capabilities mature. You will align business and technology recovery assumptions, design a structured operational and executive exercising ...

Product Security Incident Response Engineer

Location
City of Edinburgh, Scotland, United Kingdom
FY25, ADI ensures today's innovators stay Ahead of What's Possible. Learn more at www.analog.com and on LinkedIn and X. Product Security Incident Response Engineer Is looking for a Product Security Incident Response Engineer to join our team in Limerick, Ireland or Edinburgh, Scotland offices. … Essential Duties & Responsibilities Coordinate product incident response activities, from external and internal finders, across multiple product lines within the ADI product catalog with a strong focus on software. 3+ years demonstrable proficiency with incident response responsibilities in one or more of the following areas: Internet ...

Senior Information Security Analyst

Hiring Organisation
Cathcart Technology
Location
Edinburgh, Midlothian, Scotland, United Kingdom
Employment Type
Permanent
implement practical solutions across a complex technology environment. The role is broad, covering areas such as vulnerability management, identity, network security, security operations and incident response, with a strong emphasis on hands-on technical security. Alongside your technical responsibilities, you'll act as a senior point of reference … administration of enterprise security tooling across areas such as endpoint security, vulnerability management, logging and SIEM, as well as supporting detection, investigation and incident response when required. You'll need to be comfortable moving between technical detail and wider business conversations, explaining security risks clearly and helping stakeholders ...

Senior Incident Response Lead — Rapid Response (Ransomware)

Location
Oxford, England, United Kingdom
Sophos is seeking an experienced Senior Incident Response Consultant to join our Incident Response (IR) team. You will lead incident response engagements for customers worldwide, guiding a team of consultants, conducting rapid responses, and delivering executive updates. You will have 5+ years ...

Cyber Security Analyst L3

Location
Gateshead, England, United Kingdom
What you will be doing Conduct in-depth investigations of malicious incidents or complex alerts escalated by analysts. Mentoring and training analysts. Assist in incident response and post-incident reviews. Prioritising and managing workload effectively, managing several open Incidents and requests whilst following existing procedures and best … Microsoft Sentinel, and Microsoft XDR A willingness to learn and good attention to detail. Experience in conducting security investigations and triaging alerts. Familiarity with incident response and post-incident reviews. Understanding of threat intelligence and its integration into operations. Strong communication skills for handling customer calls ...

Incident Response Consultant (UK)

Location
City of Edinburgh, Scotland, United Kingdom
# Incident Response Consultant (UK)*Quorum Cyber***Edinburgh, Scotland**Mid · Full-time### The RoleThe consultant supports end-to-end cyber security incident investigations, taking ownership of defined workstreams across host, network, and memory forensics on Windows, Linux, macOS, and multi-cloud environments. Day-to-day work includes … analysis, artefact examination, TTP identification, evidence handling, and stakeholder engagement throughout active incidents.### Skills & ExperienceCandidates need practical expertise in digital forensics and incident response, including disk image analysis, network traffic review, and volatile memory forensics. Familiarity with Microsoft security technologies and telemetry is essential. Experience with threat intelligence ...

SecOps Engineering Lead

Location
Abingdon, England, United Kingdom
controls our Cyber Security Architect designs, and to lead security operations for our Azure-hosted, multi‐tenant SaaS platform: SOC engineering, detection and monitoring, incident response, and managing a team of three analysts. 60% of the role is engineering: putting Azure guardrails, SOC tooling, pipeline security tooling … platform hardening into production. The rest is running the SOC: keeping security observability controls healthy, improving detections, leading response, and developing the three analysts. You are expected to be a senior hands‐on practitioner in the team and the analysts' escalation point, so you are expected to troubleshoot ...

Site Reliability Engineer

Location
Cambridge, England, United Kingdom
continuous improvement of the Bango Platform end-to-end — from the infrastructure and pipelines that build and deploy it, to the observability and incident response that keep it running to agreed service levels. You combine three things that have historically sat in separate teams: platform and cloud infrastructure … engineering, automation and delivery pipeline ownership, and proactive/reactive reliability engineering including incident response and customer impact management. You design, build and operate the automation, observability and platform capabilities that other engineering teams rely on, and you are equally comfortable diagnosing a live incident ...

Security Operations Engineer

Hiring Organisation
Required IT
Location
Bromley, Kent, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
ongoing opportunities to develop your technical skills, broaden your experience and grow your career in cyber security. What you’ll be doing Security Monitoring & Incident Response Monitor security alerts and telemetry across endpoints, identities, email and cloud services using Rapid7 SIEM, Microsoft Defender and Sophos . Investigate … respond to suspected cyber attacks, including malware infections, phishing campaigns, identity compromise and unauthorised access attempts. Perform security incident triage, root cause analysis, containment and remediation. Lead or support incident response activities in line with established policies and procedures. Escalate significant incidents appropriately and provide clear, timely ...

Cyber Security Architect & Engineering Lead

Hiring Organisation
Circle Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £80,000 per annum
implementation and validation. Provide technical leadership across Microsoft Sentinel, Defender and wider SecOps , including configuration, tuning, detection engineering and monitoring. Provide oversight across incident response, threat hunting, vulnerability/exposure management and security recovery. Support complex and high-severity incident response with internal teams, SOC providers … reviews, threat modelling, control design, technical standards and reference architectures. Strong practical ISO 27001 experience, including controls, audits, remediation and continual improvement. Experience across incident response, detection engineering, threat hunting, vulnerability/exposure management and security automation. Proven ability to own initiatives from identifying a problem and building ...