1 to 25 of 37 Remote/Hybrid Incident Response Jobs in the East of England

Senior Manager, Cybersecurity Incident Response

Hiring Organisation
ARM
Location
Cambridge, Cambridgeshire, UK
Employment Type
Full-time
Overview: Interested in defending a global tech company from the latest cyber threats? Arm is seeking a passionate, experienced Senior Manager of Cybersecurity Incident Response to join our growing Cyber Defence Operations (CDO) team, protecting Arm against current and future cyber-attacks! Situated within Arm's Enterprise Security … function, this role will lead Arm's global incident response team across the US, UK and India, including acting as a senior technical and operational leader for major cyber incidents. CDO enables Arm to be successful, delivering scalable and defendable security services that not only provide ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
ongoing and long-term thereafter) IR35 status: Inside IR35 (Umbrella) Cyber Threat Operations Specialist Job Description: An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting … cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management. The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should … business risk. Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk. Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps. Translate technical findings into clear, business ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Potters Bar, Hertfordshire, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

SENIOR INFORMATION ASSURANCE ENGINEER

Location
Cambridge, England, United Kingdom
with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. Ability to brief and influence senior stakeholders, mentor … Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation. Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes. Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs). Manage vulnerability, risk, audit, control assessment, and compliance ...

Remote DevSecOps Engineer

Hiring Organisation
grabjobs
Location
Colchester, Essex, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

IT Infrastructure and Security Engineer · Colchester ·

Location
Colchester, England, United Kingdom
troubleshooting and resolution in line with SLAs Create and maintain technical documentation, policies, and procedures, ensuring smooth handover to Service Desk teams. Lead the incident response lifecycle, including managing security incidents and data breach containment, eradication, and post-mortem analysis. Serve as a dedicated Tier 3 escalation point … framework. Monitor, investigate, and remediate security alerts, incidents, and Indicators of Compromise (IOCs). Conduct threat analysis to address new and emerging risks; deploy response strategies to mitigate vulnerabilities. Manage and optimise security tools, including Next-Gen SIEM, SOAR, EDR/MDR/XDR, and cloud security solutions (CASB ...

SOC Analyst (MS Sentinel & Defender, SC Cleared)

Location
Harlow, England, United Kingdom
Demonstrable experience as a SOC Analyst Strong hands-on experience with SIEM, including Microsoft Sentinel Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable Ability to work independently and manage complex cyber investigations … Technical Exposure: IBM QRadar Microsoft Defender/EDRMicrosoft Sentinel (essential) Microsoft Entra ID/Azure AD Email threat response Incident Experience: Phishing & Business Email Compromise Malware & Ransomware Account Compromise Privilege Escalation Insider Threats DLP & Data Exfiltration Alerts Suspicious Authentication Activity Knowledge of: MITRE ATT&CK, Cyber Kill Chain ...

Security Engineer

Location
Luton, England, United Kingdom
easyJet's information and information systems through effective security engineering, tooling and technical controls. Working closely with colleagues across Technology, Security Operations and Incident Response, you'll help ensure our security services remain resilient, effective and ready to support the evolving needs of the business. THE ROLE … security control improvement activities. Producing and maintaining technical documentation, runbooks and operational guidance. Supporting security investigations and remediation activities alongside Security Operations and Incident Response teams. Providing security-focused technical support and consultancy to Technology teams across the business. Contributing to the development and delivery of the security ...

Head of Business Continuity & Resilience

Hiring Organisation
Cambridge University Press & Assessment
Location
Cambridge, Cambridgeshire, East Anglia, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£85,000
changing and challenging world in which we operate. Critical accountabilities include: Develop and lead the organisation's global Business Continuity, Crisis Management and Incident Response strategy, ensuring resilience objectives are embedded across all business functions and regions. Own and continuously enhance the global BCR framework, including business impact … analysis, continuity and recovery planning, testing and assurance, threat awareness and horizon scanning, and programme maturity improvement. Take a lead role in the response to major incidents and crises, providing governance and advice, executive support, and post-incident reviews to strengthen organisational preparedness and recovery capabilities. Drive ...

Technical Support Manager

Location
Cambridge, England, United Kingdom
team's time-zone spread to ensure responsive support well beyond any single region. This position owns end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and executive‐level support. The Technical Support Manager will drive continuous improvement of support workflows, knowledge bases … coverage model using EMEA and India working hours, with well‐defined cross‐region handoff processes Own end‐to‐end employee support operations including incident response, request fulfillment, onboarding, offboarding, and white‐glove support for leadership Define and maintain SLAs and quality standards; track and report on ticket volume ...

ICT Security Analyst

Hiring Organisation
Braintree District Council
Location
Braintree, Essex, South East, United Kingdom
Employment Type
Permanent, Work From Home
investigating and responding to threats while strengthening the controls that protect our systems, networks and data. Your responsibilities will span security monitoring, risk review, incident response and liaison with local and national partners. You will also contribute to the wider ICT service, including Microsoft 365 administration, infrastructure updates … Security Analyst - Key Responsibilities: - Monitor security systems, identify and investigate cyber threats, and respond to incidents while maintaining clear documentation and up-to-date incident response procedures - Design, implement, maintain and monitor security measures across systems and networks, including firewalls, intrusion detection, anti-virus, authentication, log management ...

IT Security Operations Engineer

Hiring Organisation
EMBL-EBI
Location
Saffron Walden, Essex, South East, United Kingdom
Employment Type
Contract
Contract Rate
£70,000
operation and continuous improvement of EMBL-EBIs cybersecurity capabilities. Working alongside infrastructure, platform and service teams, you will be responsible for vulnerability management, incident response, security monitoring, operational security processes and the implementation of technical security controls. This is a hands-on technical role focused on protecting EMBL … Tenable, Qualys or Rapid7. Familiarity with SIEM and security automation platforms such as Microsoft Sentinel, Splunk or Elastic. Experience implementing endpoint detection and response (EDR/XDR) technologies. Understanding of Identity Governance and Privileged Access Management. Knowledge of cyber security frameworks and implementing and maintaining effective security controls. Experience ...

Remote Senior Director, Engineering- X-Ops Platform

Hiring Organisation
grabjobs
Location
Westoning, Bedfordshire, UK
leaders (directors, managers and senior ICs), building high-performing teams with clear ownership and strong engineering culture Own platform reliability, resilience, and operational excellence: incident management, on-call standards, SLIs/SLOs, post-incident learning, and continuous improvement Partner with product engineering and threat research leaders to improve … focused environment Strong track record of building reliable, secure platforms and improving developer productivity through pragmatic, outcome-driven investment Experience establishing operational excellence practices (incident response, on-call, observability, SLOs, post-incident learning) and driving continuous improvement Ability to set strategy and translate it into execution ...

Remote Senior Platform Engineer

Hiring Organisation
grabjobs
Location
Cambridge, Cambridgeshire, UK
troubleshooting techniques, analyzing logs and metrics, and collaborating with development teams to identify and resolve root causes. You will also contribute to creating comprehensive incident response plans and post-mortem analyses. Drive Automation Initiatives to Streamline Operational Tasks and Enhance System Reliability: You will champion automation initiatives ...

Remote DevOps Engineer

Hiring Organisation
grabjobs
Location
Bedford, Bedfordshire, UK
tooling for application and infrastructure metrics, e.g. Prometheus, Datadog, Open Telemetry Candidates with the following background will be of particular interest: Experience contributing to incident response across a complex microservice-based application Application Security best practice including identifying potential threats and vulnerabilities in applications and cloud infrastructure, designing ...

Remote DevOps Engineer

Hiring Organisation
Ripjar
Location
Peterborough, Cambridgeshire, UK
tooling for application and infrastructure metrics, e.g. Prometheus, Datadog, Open Telemetry Candidates with the following background will be of particular interest: Experience contributing to incident response across a complex microservice-based application Application Security best practice including identifying potential threats and vulnerabilities in applications and cloud infrastructure, designing ...

Remote DevOps Engineer

Hiring Organisation
Ripjar
Location
Norwich, Norfolk, UK
tooling for application and infrastructure metrics, e.g. Prometheus, Datadog, Open Telemetry Candidates with the following background will be of particular interest: Experience contributing to incident response across a complex microservice-based application Application Security best practice including identifying potential threats and vulnerabilities in applications and cloud infrastructure, designing ...

Remote DevOps Engineer

Hiring Organisation
Ripjar
Location
Ipswich, Suffolk, UK
tooling for application and infrastructure metrics, e.g. Prometheus, Datadog, Open Telemetry Candidates with the following background will be of particular interest: Experience contributing to incident response across a complex microservice-based application Application Security best practice including identifying potential threats and vulnerabilities in applications and cloud infrastructure, designing ...

Remote DevOps Engineer

Hiring Organisation
grabjobs
Location
Stanford-Le-Hope, Essex, UK
tooling for application and infrastructure metrics, e.g. Prometheus, Datadog, Open Telemetry Candidates with the following background will be of particular interest: Experience contributing to incident response across a complex microservice-based application Application Security best practice including identifying potential threats and vulnerabilities in applications and cloud infrastructure, designing ...

Remote Sr. Software Engineer, Fullstack (UK)

Hiring Organisation
grabjobs
Location
Braintree, Essex, UK
ready solutions and address architectural gaps using modern microservices and cloud-native patterns. Own production health for your services, contributing to on-call rotations, incident response, and post-incident reviews in a "you build it, you run it" environment. Identify, analyse, and resolve system availability, reliability ...

Staff Private Cloud Engineer

Location
Cambridge, England, United Kingdom
patterns for reliable and repeatable builds. Develop platform services, APIs (FastAPI) and automation using Python. Drive improvements in reliability, scalability and performance. Lead incident response, fixing and root cause analysis. Work across compute, networking and storage layers. Collaborate with engineering teams to improve platform usability. Mentor engineers ...

Senior Software Engineer, Infrastructure / Efficiency / Productivity

Hiring Organisation
Roku
Location
Cambridge, Cambridgeshire, UK
Employment Type
Full-time
First Automation & Intelligent Tooling Define and lead an AI-first automation roadmap for Engineering Infrastructure and Enterprise Tooling (e.g., reducing waste, accelerating reviews, improving incident response, increasing release confidence).Architect and ship AI/LLM-enabled workflow automation across the SDLC (e.g. risk assessment, automated build, test … change-impact analysis, auto-triage of build/test failures).Establish policies and guardrails for AI usage in internal tools: data handling, prompt/response logging, model/provider selection, evaluation, fallback behaviors, and abuse prevention.Dev Productivity & Enterprise Tooling (Global Scale)Set technical direction and standards for the globally ...

Remote IT Operations & Security Lead - UK (Remote)

Hiring Organisation
grabjobs
Location
Peterborough, Cambridgeshire, UK
maintain our IT and security policies, then turn them into working processes, technical controls and training that sticks: access reviews, vulnerability management, external testing, incident processes and an easy way to report concerns. Trust, assurance and compliance Customers increasingly want evidence that we take security seriously. You’ll make … make sure we respond well: clear ownership, good communication, recorded decisions, and the underlying issue actually fixed. We already have an established incident process for our product; you’ll extend it to everything else. What this role doesn’t own It covers corporate IT and security, not the platform ...

SC-Cleared SOC Analyst: MS Sentinel & Defender (Hybrid)

Location
Harlow, England, United Kingdom
remote work after week one). You will monitor, triage, and investigate security incidents using SIEM (Microsoft Sentinel) and Defender, with emphasis on incident response and root-cause analysis in a large enterprise environment. #J-18808-Ljbffr ...