1 to 25 of 57 Incident Response Jobs in Central London

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Senior Cyber Security Engineer

Hiring Organisation
Comtecs
Location
City of London, London, United Kingdom
Employment Type
Permanent
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

Senior Cyber Security Analyst

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
Blue Team within a dynamic Cyber Practice. This senior role offers the chance to work on high-profile client engagements, delivering threat detection, monitoring, incident response, and security operations expertise. The role is ideal for a self-motivated professional with strong technical skills, inquisitive thinking, and a passion … protecting enterprise systems from evolving cyber threats. The Role The Cyber Security Operations Specialist will use advanced tools and threat intelligence to ensure effective incident detection and response across client environments. Working closely with security analysts and wider teams, the role combines detection engineering, monitoring, incident response ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
Financial Services organisation is looking for a Senior Security and Cyber Operations Manager to take ownership of its security operations, cyber defence, monitoring and incident response capabilities. This is a senior, hands-on role within the CISO function, responsible for strengthening the organisations cyber defence capability and ensuring … very flexible working. You will work closely with Technology, Cloud, Data, Architecture, Risk and external security partners, with responsibility for security tooling, detection coverage, incident response, operational cyber risk and service performance. Key Responsibilities Own and continually improve the organisations security operations and cyber defence capability Lead security ...

Associate Security Analyst

Hiring Organisation
GTC Recruitment
Location
City of London, London, United Kingdom
protection of critical digital services, infrastructure and information assets against cyber threats. You will join a dedicated Cyber Defence team, supporting security alert triage, incident investigation, threat detection and cyber incident response. Key Responsibilities Triage and investigate cyber security alerts and user-reported security incidents. Investigate systems, files … network traffic and cloud environments to identify potential threats. Use SIEM and EDR technologies to detect, investigate and respond to cyber threats. Support cyber incident response activities, including containment, eradication and recovery. Assist with the coordination and management of security incidents. Contribute to post-incident reviews, lessons ...

SOC Shift Lead

Hiring Organisation
Anson McCade
Location
City of London, London, United Kingdom
security operation in Central London. This is not a traditional SOC Analyst position. You’ll be the senior technical escalation point on shift , leading incident response activity, supporting analysts and taking ownership of complex and high-severity security incidents. What you’ll be doing Lead the response … sources Perform root cause analysis and coordinate containment, eradication and recovery Correlate events across SIEM, EDR and other security tooling to build a clear incident narrative Identify detection gaps and support improvements to rules, thresholds and playbooks Mentor and provide technical guidance to L1 SOC Analysts Produce detailed investigation ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
join a high-performing cyber security operations team supporting critical, secure infrastructure in a 24/7 environment. This is an opportunity to lead incident response activities, mentor analysts, and play a key role in protecting complex enterprise environments from evolving cyber threats. What You'll Be Doing … Lead the investigation and response to medium and high-severity security incidents. Act as the escalation point for complex cyber security events and threat activity. Conduct root cause analysis and produce detailed incident reports. Coordinate containment, eradication and recovery activities with technical teams. Correlate data across SIEM ...

SOC Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
eligible for UK Security Clearance This is an exciting opportunity to work within a 24/7 SOC, investigating sophisticated cyber threats, leading incident response activities, and helping protect critical infrastructure powering next-generation AI and high-performance computing platforms. What You'll Be Doing Investigate and analyse … escalated security incidents, identifying attack vectors, root causes and potential business impact. Correlate events across multiple security tools and data sources to build comprehensive incident timelines. Lead response activities for medium and high-severity security incidents. Support containment, eradication and recovery efforts in partnership with technical stakeholders. Produce ...

Senior Observability Engineer

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
report into the Senior Engineering Manager for SRE and Observability and work as an individual contributor, partnering closely with development squads, platform engineers, and incident response teams. The Bengaluru team is deeply integrated into IG's global engineering community, with real ownership and scope to shape how observability … adoption across the organisation, providing guidance and practical support to help engineering teams embed reliability targets into their day-to-day ways of working. Incident response – Join the support rota and incident response, using observability tooling to accelerate diagnosis and reduce mean time to resolution. Lead ...

Incident Response Engineer - UK Security Operations

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
Google Public Sector's UK Security Operations team seeks an experienced Incident Response Engineer to join our Hampshire-based on-site team. You will monitor, detect, and respond to security incidents across critical environments, delivering private cloud security for high-assurance customers. In this mid-level role … will operate 24/7, collaborate with product teams, and help mature incident response capabilities, threat hunting, and SOC dashboards while adhering to DV clearance requirements #J-18808-Ljbffr ...

Site Reliability Engineer / Production Support

Hiring Organisation
17918
Location
Westminster, West End, United Kingdom
role is the single point of ownership when incidents occur. You will directly oversee the offshore Production Support team, run on-call and incident response, and ensure fast detection, triage and restoration of services. This is not a passive monitoring role. You are expected to understand … offshore Production Support team and be the single point person when incidents occur, escalating only to Head Of when required. Run on-call and incident response ensure fast detection, triage, and restoration. Maintain observability standards (logs, metrics, traces) and alert quality (low noise, high signal). Understand ...

Head of Cyber Claims - International

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Cyber Response Assistant Manager (Proactive Consulting)

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response Assistant Manager (Proactive Consulting) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice. Your specific focus … will be in the domain of proactive advice and guidance as it relates to Security Operations/Defensive Cyber Operations (Incident Management, Vulnerability Management, Threat Intelligence). Organisations face increasing challenges operating effective security operations capabilities across threat intelligence, vulnerability management and incident management. This role helps clients ...

Lead Site Reliability Engineer

Hiring Organisation
17918
Location
Westminster, West End, United Kingdom
trusted engineering partner to the desk, ensuring systems are stable, performant, and aligned with business needs. Support live trading environments, including incident response, root cause analysis, and post mortem leadership. Work as a core member of the software engineering team, participating in daily standups and design discussions. Contribute … across trading systems, including automated remediation, self healing workflows, and resilience engineering. Uses enterprise-authorized AI capabilities within the work environment to accelerate major-incident triage, troubleshooting, and post-incident analysis, validating outputs and handling operational data according to sensitivity and security requirements. Leads reuse-first adoption ...

SOC Manager

Hiring Organisation
Randstad Technologies Recruitment
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£600 - £700/day Negotiable
leadership position-not a hands-on technical analyst role. You will take full ownership of the Cyber Security Operations Centre (CSOC), driving strategy, managing incident response, and directing internal teams and external vendors. Key Responsibilities Define and lead the CSOC strategy, operations, and governance. Take command of major … incident response, managing remediation and stakeholder communication. Oversee threat intelligence, vulnerability management, and security monitoring capabilities. Manage relationships with external agencies, Managed Security Service Providers (MSSPs), and technology partners. What We Need From You Proven experience as a SOC Manager (previous leadership experience is essential; this ...

IT Cyber Security Specialist

Hiring Organisation
Slaughter and May
Location
City of London, London, United Kingdom
firm's cybersecurity controls and security architecture. The successful candidate will develop security policies, identify and mitigate vulnerabilities, investigate security incidents, and lead the response and resolution of major cyber incidents, helping to ensure the firm's technology environment remains secure, resilient, and aligned to business needs. Key responsibilities … rating. Identify vulnerabilities in hardware and software to be remediated by Engineering\Operations teams. Understand current and emerging security threats. Assist and lead in Incident Response investigations and mitigation. Communicate threats and deliver training and awareness programmes to other team members. Produces quarterly privilege access slides, suggesting ongoing ...

Senior Cybersecurity Lead

Hiring Organisation
We Love Alfa
Location
City Of Westminster, London, United Kingdom
Employment Type
Permanent
Salary
GBP 90,000 - 110,000 Annual
will define the cybersecurity strategy and roadmap, establish governance and risk reporting, create core policies and standards, and personally get involved in tooling, configuration, incident response and problem-solving where required. You will be responsible for improving security across Microsoft 365, Azure, endpoints and identity; building incident response, business continuity and disaster recovery capability; managing GDPR, PCI-DSS and ISO 27001 initiatives; strengthening supplier security; and providing clear cyber risk reporting to senior leadership. You will work closely with IT, infrastructure, project teams, operational stakeholders and external suppliers in a lean environment without a large ...

Blockchain Security Operations Vice President

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
vulnerabilities and compromises, utilizing advanced tools and techniques to detect anomalies and contribute to the development of strategies for security investigation, threat mitigation, and incident response Collaborate with cross-functional teams to ensure a coordinated approach to blockchain and enterprise security, sharing insights, and promoting best practices across … Degree in Computer Science, Cybersecurity, Data Science, or related disciplines 5+ years of experience in cybersecurity operations, with a focus on threat detection, incident response, and security infrastructure management Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with ...

Marketing Experience - Senior Associate

Hiring Organisation
17918
Location
Westminster, West End, United Kingdom
maintain operational controls, including documented procedures, control testing and monitoring, exception management, and issue remediation with clear accountability Manage operational risk, including operational resilience, incident response, business continuity readiness, and timely escalation of emerging issues Serve as the regional single point of contact for platform operational performance, owning … Required Qualifications, Capabilities, and Skills Demonstrated experience leading operational teams, including people management, performance management, and workforce planning Proven experience managing operational risk, controls, incident response, and business continuity in a regulated environment Demonstrated experience driving continuous improvement using structured methodologies such as root-cause analysis with measurable ...

Cyber Security Specialist: Incident Response & Threat Defense

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
London is seeking an IT Cyber Security Specialist to join the Infrastructure Engineering team. This hands-on role covers cybersecurity, infrastructure security, incident response, threat monitoring and vulnerability management to continually improve the firm’s global security posture. The role is based in London with hybrid work ...

Production Engineering Manager

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
this role, you will manage a team of production engineers who own the full lifecycle of systems — from capacity planning and performance optimization to incident response and automation. You will drive technical strategy, champion AI-augmented workflows, and partner closely with software engineering, infrastructure, and product teams … team, sharing learnings and best practices with the broader production engineering organizationContribute hands-on to technical work including code, system design reviews, and incident response, using AI tooling to expand personal and team reach across disciplinesPartner cross-functionally with software engineering, data science, and product teams to unblock ...

IT Cyber Security Specialist

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
Security Specialist to join the Infrastructure Engineering team of a leading international law firm. This is a hands-on role covering cybersecurity, infrastructure security, incident response, threat monitoring and vulnerability management, with responsibility for continually improving the firm's global security posture. Key Responsibilities Lead and support cyber … incident response and investigations. Identify and manage vulnerabilities, threats and security risks. Evaluate and implement security improvements and controls. Support business continuity and disaster recovery planning. Lead Cyber Essentials Plus activities. Contribute to infrastructure and security projects, including solution design. Provide third-line support for complex security ...

Cyber Security Consultant

Hiring Organisation
Experis
Location
West End, London, United Kingdom
Employment Type
Contract
Contract Rate
£560 - £610/day
Cyber Security Consultant - Incident and Vulnerability Management Duration: 30/11/2026 Pay: up to £610 per day (umbrella) Location: Preston, London or Birmingham UK, Hybrid - 30% office 70% home CONTRACTOR MUST BE MOD SC CLEARED AND BE A SOLE UK NATIONAL Role Summary The Security Incident … transition to a multi-supplier (SIAM) model within a Defence environment. The role focuses on understanding, aligning and governing existing high-severity security incident management (S3/S4) and vulnerability management processes across suppliers. Ensuring a consistent, risk-based approach in line with client policy and regulatory requirements, supported ...

Expert Associate Partner, Architecture (Cybersecurity)

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
security, cloud and data security risks, and third‐party/supply chain risk. Hands‐on or advisory experience across IAM/PAM, vulnerability management, incident response, SIEM, and business continuity. Cloud landing zone design and segmentation: able to limit blast radius from a security incident through architecture ...

Production Engineer

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
trade flow, and post-trade issues. Lead the ‘follow the sun’ support model coordination, working closely with global teams in APAC and US. Drive incident management practices, trend identification, and post-mortem analysis. Collaborate with development teams to influence platform improvements based on support insights. Occasional weekend work will … with the resilience to handle high-pressures production incidents Desired Experience with Site Reliability Engineering (SRE) practices, including monitoring, incident response, and post-mortem analysis Proven experience applying AI or machine-learning models to optimise workflows, identify patterns, and drive intelligent automation solutions Hands-on experience with containerization ...