1 to 25 of 65 Incident Response Jobs in Central London

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

Senior Cyber Security Engineer

Hiring Organisation
Comtecs
Location
City of London, London, United Kingdom
Employment Type
Permanent
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

Senior Cyber Security Analyst

Hiring Organisation
Anson Mccade
Location
Central London, London, United Kingdom
Employment Type
Permanent
Blue Team within a dynamic Cyber Practice. This senior role offers the chance to work on high-profile client engagements, delivering threat detection, monitoring, incident response, and security operations expertise. The role is ideal for a self-motivated professional with strong technical skills, inquisitive thinking, and a passion … protecting enterprise systems from evolving cyber threats. The Role The Cyber Security Operations Specialist will use advanced tools and threat intelligence to ensure effective incident detection and response across client environments. Working closely with security analysts and wider teams, the role combines detection engineering, monitoring, incident response ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
Financial Services organisation is looking for a Senior Security and Cyber Operations Manager to take ownership of its security operations, cyber defence, monitoring and incident response capabilities. This is a senior, hands-on role within the CISO function, responsible for strengthening the organisations cyber defence capability and ensuring … very flexible working. You will work closely with Technology, Cloud, Data, Architecture, Risk and external security partners, with responsibility for security tooling, detection coverage, incident response, operational cyber risk and service performance. Key Responsibilities Own and continually improve the organisations security operations and cyber defence capability Lead security ...

Graduate SOC Analyst

Hiring Organisation
CyPro
Location
City of London, London, United Kingdom
pigeonholed into one narrow specialism. At CyPro, you’ll have the opportunity to get involved in a wide range of areas including monitoring, incident response, threat intelligence, detection engineering, automation and internal security operations. You’ll play a key role in our Security Operations Centre, delivering … monitoring, detection and response to our growing customer base. You’ll contribute to building out our capabilities, improving tooling and processes, and shaping how we operate as the function matures. As the team grows further, you’ll have the flexibility to focus more deeply on the areas that interest ...

Security Operations Engineering Manager

Location
City Of London, England, United Kingdom
security is fundamental to maintaining trust and supporting our award-winning Human Digital Banking model. This is an opportunity to help shape our cyber incident response capability, strengthen our security operations and contribute to the resilience of our cloud-first banking platform against an evolving cyber threat landscape. … exciting opportunity to join our Information Security team in a role that combines hands-on cyber security expertise with strategic oversight across incident response, threat detection, cloud security and technical assurance. Working across cloud and on-premise environments, you’ll identify and investigate emerging threats, assess technologies ...

SOC Shift Lead

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
join a high-performing cyber security operations team supporting critical, secure infrastructure in a 24/7 environment. This is an opportunity to lead incident response activities, mentor analysts, and play a key role in protecting complex enterprise environments from evolving cyber threats. What You'll Be Doing … Lead the investigation and response to medium and high-severity security incidents. Act as the escalation point for complex cyber security events and threat activity. Conduct root cause analysis and produce detailed incident reports. Coordinate containment, eradication and recovery activities with technical teams. Correlate data across SIEM ...

Security Consultant

Location
Westminster, West End, United Kingdom
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including ...

SOC Analyst

Hiring Organisation
Anson Mccade
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£65,000
eligible for UK Security Clearance This is an exciting opportunity to work within a 24/7 SOC, investigating sophisticated cyber threats, leading incident response activities, and helping protect critical infrastructure powering next-generation AI and high-performance computing platforms. What You'll Be Doing Investigate and analyse … escalated security incidents, identifying attack vectors, root causes and potential business impact. Correlate events across multiple security tools and data sources to build comprehensive incident timelines. Lead response activities for medium and high-severity security incidents. Support containment, eradication and recovery efforts in partnership with technical stakeholders. Produce ...

Senior Observability Engineer

Location
City Of London, England, United Kingdom
report into the Senior Engineering Manager for SRE and Observability and work as an individual contributor, partnering closely with development squads, platform engineers, and incident response teams. The Bengaluru team is deeply integrated into IG's global engineering community, with real ownership and scope to shape how observability … adoption across the organisation, providing guidance and practical support to help engineering teams embed reliability targets into their day-to-day ways of working. Incident response – Join the support rota and incident response, using observability tooling to accelerate diagnosis and reduce mean time to resolution. Lead ...

Tech Lead - SOC Responder

Location
Westminster, West End, United Kingdom
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
City of Westminster, England, United Kingdom
Incident Response Engineer, UK Security Operations, Hampshire Google London, UK Mid Experience driving progress, solving problems, and mentoring more junior team members; deeper expertise and applied knowledge within relevant area. Must be a British citizen to meet compliance and security clearance requirements. Office location will be a satellite … more programming languages. Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance. Preferred qualifications: Security+ or similar Cyber Security/Incident Response related certifications. Experience responding to security incidents on Kubernetes. Experience analyzing, triaging, and remediating common information security incidents. Understanding of common attacker ...

Senior Linux DevOps Engineer

Hiring Organisation
RedTech Recruitment Ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£90,000
Terraform and Ansible Experience building and managing CI/CD pipelines using GitLab CI/CD, GitHub Actions, Jenkins or similar Experience with incident response, root cause analysis and driving improvements to the reliability and performance of production systems Commercial experience with Microsoft Azure or another major cloud … automate large-scale Linux-based production environments Build and improve containerised environments using Docker and Kubernetes Diagnose complex infrastructure, networking and performance issues, supporting incident response and root cause analysis Develop automation, Infrastructure as Code and CI/CD processes to improve engineering efficiency and reliability Implement ...

Senior Systems Engineer

Hiring Organisation
Tetra Tech
Location
City, London, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
operational maturity, and ensure platforms remain secure, reliable and cost-effective. This role combines strategic oversight with deep technical delivery, supporting infrastructure architecture , automation , incident response, compliance , documentation, operational handover and project execution. Your Impact in this position You will influence the stability, performance and future shape … implementation and operational handover. Documentation, Standards & Governance: Maintain technical documentation, define standards and support consistent processes that strengthen operational quality and compliance. Automation, Resilience & Incident Response: Drive automation, improve provisioning and workflows, and support incident response approaches that protect service integrity and reduce manual intervention. Project ...

Incident Response Engineer - UK Security Operations

Location
City of Westminster, England, United Kingdom
Google Public Sector's UK Security Operations team seeks an experienced Incident Response Engineer to join our Hampshire-based on-site team. You will monitor, detect, and respond to security incidents across critical environments, delivering private cloud security for high-assurance customers. In this mid-level role … will operate 24/7, collaborate with product teams, and help mature incident response capabilities, threat hunting, and SOC dashboards while adhering to DV clearance requirements #J-18808-Ljbffr ...

Cyber Security Manager

Hiring Organisation
Searchability NS&D
Location
City of London, London, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Head of Cyber Claims - International

Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Business Consultant - Incident Management

Hiring Organisation
Undisclosed
Location
City of London, London, United Kingdom
Business Consultant – Incident Management Transformation London, Birmingham or Edinburgh (Predominantly Remote) £950.00 p/d via Umbrella Contract Until End of November (Extension Potential) Overview We're seeking an experienced Business Consultant to support a major Enterprise Incident Management Transformation Programme within a leading financial services organisation. This … high-profile assignment focused on designing and implementing a modern Incident Management Command & Control Centre (IM C3) , helping transform how the organisation responds to technology, operational, cyber, and business incidents. Working alongside the Group Incident Management leadership team, you will play a pivotal role in reshaping incident ...

Cyber Security Analyst

Hiring Organisation
Accenture
Location
City of London, London, United Kingdom
with the organisation. As part of our Blue Team, you’ll use the latest intelligence and tooling to analyse information systems to ensure effective incident detection and response. Job Description If you are looking to make your mark on a rapidly growing SecOps team with some very exciting clients … keen interest when it comes to technical cybersecurity topics such as threat hunting, attacker tactics and techniques, monitoring and alerting, threat intelligence, and incident readiness and response. Key responsibilities of the role are summarised below: · Security monitoring and incident response · Detection engineering - Develop, maintain, and enhance security ...

Security Analyst

Hiring Organisation
LT Harper Recruitment Group
Location
City of London, London, United Kingdom
function as part of an ongoing security improvement programme. This is a hands-on role within an established IT Security team, covering security operations, incident response, vulnerability management, and risk assessment across a large enterprise environment. The role You will work across the full breadth of the security … including: Using security tooling to identify, correlate and contain suspicious events, determine root cause, and recommend improvements to systems and procedures. Performing deep-dive incident analysis across multiple data sources, investigating security logs against short and medium-term threats and indicators of compromise (IoCs). Carrying out proactive ...

Lead DevOps Engineer

Location
City Of London, England, United Kingdom
configuration, database schema creation, and operational workflows across cloud and on-prem platforms. Support production systems with a focus on high availability, disaster recovery, incident response, vulnerability management, patching, and change management. Containerize applications and support deployments using container orchestration platforms. Partner with development teams to understand application … engineering tools to accelerate development, automation, troubleshooting, documentation, and operational workflows. Identify, design, and help implement AI-enabled operational capabilities for infrastructure automation, observability, incident response, and platform engineering. Contribute to the strategy for safe, practical, and secure adoption of AI across infrastructure and DevOps practices. Lead ...

SOC Manager

Hiring Organisation
Randstad Technologies Recruitment
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£600 - £700/day Negotiable
leadership position-not a hands-on technical analyst role. You will take full ownership of the Cyber Security Operations Centre (CSOC), driving strategy, managing incident response, and directing internal teams and external vendors. Key Responsibilities Define and lead the CSOC strategy, operations, and governance. Take command of major … incident response, managing remediation and stakeholder communication. Oversee threat intelligence, vulnerability management, and security monitoring capabilities. Manage relationships with external agencies, Managed Security Service Providers (MSSPs), and technology partners. What We Need From You Proven experience as a SOC Manager (previous leadership experience is essential; this ...

IT Cyber Security Specialist

Hiring Organisation
Slaughter and May
Location
City of London, London, United Kingdom
firm's cybersecurity controls and security architecture. The successful candidate will develop security policies, identify and mitigate vulnerabilities, investigate security incidents, and lead the response and resolution of major cyber incidents, helping to ensure the firm's technology environment remains secure, resilient, and aligned to business needs. Key responsibilities … rating. Identify vulnerabilities in hardware and software to be remediated by Engineering\Operations teams. Understand current and emerging security threats. Assist and lead in Incident Response investigations and mitigation. Communicate threats and deliver training and awareness programmes to other team members. Produces quarterly privilege access slides, suggesting ongoing ...

Senior Cybersecurity Lead

Hiring Organisation
We Love Alfa
Location
City Of Westminster, London, United Kingdom
Employment Type
Permanent
Salary
GBP 90,000 - 110,000 Annual
will define the cybersecurity strategy and roadmap, establish governance and risk reporting, create core policies and standards, and personally get involved in tooling, configuration, incident response and problem-solving where required. You will be responsible for improving security across Microsoft 365, Azure, endpoints and identity; building incident response, business continuity and disaster recovery capability; managing GDPR, PCI-DSS and ISO 27001 initiatives; strengthening supplier security; and providing clear cyber risk reporting to senior leadership. You will work closely with IT, infrastructure, project teams, operational stakeholders and external suppliers in a lean environment without a large ...