1 to 25 of 66 Incident Response Jobs in Central London

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

Senior Cyber Security Analyst

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
Blue Team within a dynamic Cyber Practice. This senior role offers the chance to work on high-profile client engagements, delivering threat detection, monitoring, incident response, and security operations expertise. The role is ideal for a self-motivated professional with strong technical skills, inquisitive thinking, and a passion … protecting enterprise systems from evolving cyber threats. The Role The Cyber Security Operations Specialist will use advanced tools and threat intelligence to ensure effective incident detection and response across client environments. Working closely with security analysts and wider teams, the role combines detection engineering, monitoring, incident response ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
Financial Services organisation is looking for a Senior Security and Cyber Operations Manager to take ownership of its security operations, cyber defence, monitoring and incident response capabilities. This is a senior, hands-on role within the CISO function, responsible for strengthening the organisations cyber defence capability and ensuring … very flexible working. You will work closely with Technology, Cloud, Data, Architecture, Risk and external security partners, with responsibility for security tooling, detection coverage, incident response, operational cyber risk and service performance. Key Responsibilities Own and continually improve the organisations security operations and cyber defence capability Lead security ...

SOC Shift Lead

Hiring Organisation
Anson McCade
Location
City of London, London, United Kingdom
security operation in Central London. This is not a traditional SOC Analyst position. You’ll be the senior technical escalation point on shift , leading incident response activity, supporting analysts and taking ownership of complex and high-severity security incidents. What you’ll be doing Lead the response … sources Perform root cause analysis and coordinate containment, eradication and recovery Correlate events across SIEM, EDR and other security tooling to build a clear incident narrative Identify detection gaps and support improvements to rules, thresholds and playbooks Mentor and provide technical guidance to L1 SOC Analysts Produce detailed investigation ...

Graduate SOC Analyst

Hiring Organisation
CyPro
Location
City of London, London, United Kingdom
pigeonholed into one narrow specialism. At CyPro, you’ll have the opportunity to get involved in a wide range of areas including monitoring, incident response, threat intelligence, detection engineering, automation and internal security operations. You’ll play a key role in our Security Operations Centre, delivering … monitoring, detection and response to our growing customer base. You’ll contribute to building out our capabilities, improving tooling and processes, and shaping how we operate as the function matures. As the team grows further, you’ll have the flexibility to focus more deeply on the areas that interest ...

Security Operations Engineering Manager

Location
City Of London, England, United Kingdom
security is fundamental to maintaining trust and supporting our award-winning Human Digital Banking model. This is an opportunity to help shape our cyber incident response capability, strengthen our security operations and contribute to the resilience of our cloud-first banking platform against an evolving cyber threat landscape. … exciting opportunity to join our Information Security team in a role that combines hands-on cyber security expertise with strategic oversight across incident response, threat detection, cloud security and technical assurance. Working across cloud and on-premise environments, you’ll identify and investigate emerging threats, assess technologies ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
join a high-performing cyber security operations team supporting critical, secure infrastructure in a 24/7 environment. This is an opportunity to lead incident response activities, mentor analysts, and play a key role in protecting complex enterprise environments from evolving cyber threats. What You'll Be Doing … Lead the investigation and response to medium and high-severity security incidents. Act as the escalation point for complex cyber security events and threat activity. Conduct root cause analysis and produce detailed incident reports. Coordinate containment, eradication and recovery activities with technical teams. Correlate data across SIEM ...

SOC Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
eligible for UK Security Clearance This is an exciting opportunity to work within a 24/7 SOC, investigating sophisticated cyber threats, leading incident response activities, and helping protect critical infrastructure powering next-generation AI and high-performance computing platforms. What You'll Be Doing Investigate and analyse … escalated security incidents, identifying attack vectors, root causes and potential business impact. Correlate events across multiple security tools and data sources to build comprehensive incident timelines. Lead response activities for medium and high-severity security incidents. Support containment, eradication and recovery efforts in partnership with technical stakeholders. Produce ...

Senior Observability Engineer

Location
City Of London, England, United Kingdom
report into the Senior Engineering Manager for SRE and Observability and work as an individual contributor, partnering closely with development squads, platform engineers, and incident response teams. The Bengaluru team is deeply integrated into IG's global engineering community, with real ownership and scope to shape how observability … adoption across the organisation, providing guidance and practical support to help engineering teams embed reliability targets into their day-to-day ways of working. Incident response – Join the support rota and incident response, using observability tooling to accelerate diagnosis and reduce mean time to resolution. Lead ...

Senior Linux DevOps Engineer

Hiring Organisation
RedTech Recruitment Ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£90,000
Terraform and Ansible Experience building and managing CI/CD pipelines using GitLab CI/CD, GitHub Actions, Jenkins or similar Experience with incident response, root cause analysis and driving improvements to the reliability and performance of production systems Commercial experience with Microsoft Azure or another major cloud … automate large-scale Linux-based production environments Build and improve containerised environments using Docker and Kubernetes Diagnose complex infrastructure, networking and performance issues, supporting incident response and root cause analysis Develop automation, Infrastructure as Code and CI/CD processes to improve engineering efficiency and reliability Implement ...

Senior Systems Engineer

Hiring Organisation
Tetra Tech
Location
City, London, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
operational maturity, and ensure platforms remain secure, reliable and cost-effective. This role combines strategic oversight with deep technical delivery, supporting infrastructure architecture , automation , incident response, compliance , documentation, operational handover and project execution. Your Impact in this position You will influence the stability, performance and future shape … implementation and operational handover. Documentation, Standards & Governance: Maintain technical documentation, define standards and support consistent processes that strengthen operational quality and compliance. Automation, Resilience & Incident Response: Drive automation, improve provisioning and workflows, and support incident response approaches that protect service integrity and reduce manual intervention. Project ...

Incident Response Engineer - UK Security Operations

Location
City of Westminster, England, United Kingdom
Google Public Sector's UK Security Operations team seeks an experienced Incident Response Engineer to join our Hampshire-based on-site team. You will monitor, detect, and respond to security incidents across critical environments, delivering private cloud security for high-assurance customers. In this mid-level role … will operate 24/7, collaborate with product teams, and help mature incident response capabilities, threat hunting, and SOC dashboards while adhering to DV clearance requirements #J-18808-Ljbffr ...

Cyber Security Manager

Hiring Organisation
Searchability NS&D
Location
City of London, London, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Head of Cyber Claims - International

Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Business Consultant - Incident Management

Hiring Organisation
Undisclosed
Location
City of London, London, United Kingdom
Business Consultant – Incident Management Transformation London, Birmingham or Edinburgh (Predominantly Remote) £950.00 p/d via Umbrella Contract Until End of November (Extension Potential) Overview We're seeking an experienced Business Consultant to support a major Enterprise Incident Management Transformation Programme within a leading financial services organisation. This … high-profile assignment focused on designing and implementing a modern Incident Management Command & Control Centre (IM C3) , helping transform how the organisation responds to technology, operational, cyber, and business incidents. Working alongside the Group Incident Management leadership team, you will play a pivotal role in reshaping incident ...

Cyber Security Analyst

Hiring Organisation
Accenture
Location
City of London, London, United Kingdom
with the organisation. As part of our Blue Team, you’ll use the latest intelligence and tooling to analyse information systems to ensure effective incident detection and response. Job Description If you are looking to make your mark on a rapidly growing SecOps team with some very exciting clients … keen interest when it comes to technical cybersecurity topics such as threat hunting, attacker tactics and techniques, monitoring and alerting, threat intelligence, and incident readiness and response. Key responsibilities of the role are summarised below: · Security monitoring and incident response · Detection engineering - Develop, maintain, and enhance security ...

Lead DevOps Engineer

Location
City Of London, England, United Kingdom
configuration, database schema creation, and operational workflows across cloud and on-prem platforms. Support production systems with a focus on high availability, disaster recovery, incident response, vulnerability management, patching, and change management. Containerize applications and support deployments using container orchestration platforms. Partner with development teams to understand application … engineering tools to accelerate development, automation, troubleshooting, documentation, and operational workflows. Identify, design, and help implement AI-enabled operational capabilities for infrastructure automation, observability, incident response, and platform engineering. Contribute to the strategy for safe, practical, and secure adoption of AI across infrastructure and DevOps practices. Lead ...

SOC Manager

Hiring Organisation
Randstad Technologies Recruitment
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£600 - £700/day Negotiable
leadership position-not a hands-on technical analyst role. You will take full ownership of the Cyber Security Operations Centre (CSOC), driving strategy, managing incident response, and directing internal teams and external vendors. Key Responsibilities Define and lead the CSOC strategy, operations, and governance. Take command of major … incident response, managing remediation and stakeholder communication. Oversee threat intelligence, vulnerability management, and security monitoring capabilities. Manage relationships with external agencies, Managed Security Service Providers (MSSPs), and technology partners. What We Need From You Proven experience as a SOC Manager (previous leadership experience is essential; this ...

IT Cyber Security Specialist

Hiring Organisation
Slaughter and May
Location
City of London, London, United Kingdom
firm's cybersecurity controls and security architecture. The successful candidate will develop security policies, identify and mitigate vulnerabilities, investigate security incidents, and lead the response and resolution of major cyber incidents, helping to ensure the firm's technology environment remains secure, resilient, and aligned to business needs. Key responsibilities … rating. Identify vulnerabilities in hardware and software to be remediated by Engineering\Operations teams. Understand current and emerging security threats. Assist and lead in Incident Response investigations and mitigation. Communicate threats and deliver training and awareness programmes to other team members. Produces quarterly privilege access slides, suggesting ongoing ...

Senior Cybersecurity Lead

Hiring Organisation
We Love Alfa
Location
City Of Westminster, London, United Kingdom
Employment Type
Permanent
Salary
GBP 90,000 - 110,000 Annual
will define the cybersecurity strategy and roadmap, establish governance and risk reporting, create core policies and standards, and personally get involved in tooling, configuration, incident response and problem-solving where required. You will be responsible for improving security across Microsoft 365, Azure, endpoints and identity; building incident response, business continuity and disaster recovery capability; managing GDPR, PCI-DSS and ISO 27001 initiatives; strengthening supplier security; and providing clear cyber risk reporting to senior leadership. You will work closely with IT, infrastructure, project teams, operational stakeholders and external suppliers in a lean environment without a large ...

Blockchain Security Operations Vice President

Location
City Of London, England, United Kingdom
vulnerabilities and compromises, utilizing advanced tools and techniques to detect anomalies and contribute to the development of strategies for security investigation, threat mitigation, and incident response Collaborate with cross-functional teams to ensure a coordinated approach to blockchain and enterprise security, sharing insights, and promoting best practices across … Degree in Computer Science, Cybersecurity, Data Science, or related disciplines 5+ years of experience in cybersecurity operations, with a focus on threat detection, incident response, and security infrastructure management Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with ...

Marketing Experience - Senior Associate

Location
Westminster, West End, United Kingdom
maintain operational controls, including documented procedures, control testing and monitoring, exception management, and issue remediation with clear accountability Manage operational risk, including operational resilience, incident response, business continuity readiness, and timely escalation of emerging issues Serve as the regional single point of contact for platform operational performance, owning … Required Qualifications, Capabilities, and Skills Demonstrated experience leading operational teams, including people management, performance management, and workforce planning Proven experience managing operational risk, controls, incident response, and business continuity in a regulated environment Demonstrated experience driving continuous improvement using structured methodologies such as root-cause analysis with measurable ...

Engineering Manager - Cloud Platform Engineering

Location
Westminster, West End, United Kingdom
long-term technical vision for the platform, aligning with business outcomes and regulatory requirements. Champion a "you-build-it-you-run-it" culture, overseeing incident response and identifying opportunities to automate remediation. Ensure successful collaboration across teams and stakeholders, driving consensus on architectural and delivery trade-offs. Identify … technical and non-technical stakeholders. Ability to translate business objectives into team-level tasks and priorities. Experience managing production systems, including on-call rotations, incident response, and reliability engineering. Experience leading multi-team adoption of enterprise-authorized AI-assisted development and delivery tools, including defining governance/ways ...

Cyber Security Specialist: Incident Response & Threat Defense

Location
City Of London, England, United Kingdom
London is seeking an IT Cyber Security Specialist to join the Infrastructure Engineering team. This hands-on role covers cybersecurity, infrastructure security, incident response, threat monitoring and vulnerability management to continually improve the firm’s global security posture. The role is based in London with hybrid work ...