1 to 25 of 258 Incident Response Jobs in London

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cyber Response & Recovery Manager - German Speaker Cyber Response & Recovery Manager (Reactive DFIR) About the role This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team … within our Cyber Advisory practice. Your specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands‐on incident response role and an opportunity to join a high ...

Head of Threat Defence, Paddington

Hiring Organisation
Morson Edge
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
ownership of a threat defence strategy and service. The role will focus on leading a team responsible for security operations, incident detection and response and threat intelligence which will be delivered through partnership with outsourced providers and IT. We're looking for a motivated and experienced individual … This role will have line management responsibilities for 3 of the team: a Threat Intelligence Lead, a TD Service Operations Lead and a Cyber Incident Response Lead. The role requires DV clearance and a minimum of 2 days per week in the Paddington Office. Occasional travel to other ...

Head of Cyber Defence

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
operational execution of all defensive security capabilities. Reporting directly to the Chief Information Security Officer (CISO), the role provides leadership across threat detection, incident response, vulnerability management, application security, cloud and platform security, and identity security. The organisation operates a Managed Security Service Provider (MSSP/MSP) model … ensure high quality, risk aligned security operations. The role leads five specialist domains through the following direct reports: Lead – SecOps Incident Management & Response, Lead – Application Security & Vulnerabilities, Lead – Cloud & Platform Security, Lead – IAM/PAM, and Lead – Incident Response and Cyber Resilience. Key Results Areas 1. ...

Embedded Cyber Detection and Response Deputy Team Lead

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cyber Detection and Response Deputy Team Lead serves as the operational second-in-command of the Cyber Detection and Response Team (DART), bridging the gap between hands-on cyber operations and team leadership. The role supports the Team Lead in the ongoing development, maturation, and delivery … client's detection and response capabilities, while providing technical leadership and operational oversight across day-to-day security operations. This position remains actively involved in threat detection, incident response, threat hunting, and detection engineering activities while also assuming supervisory and coordination responsibilities. The Deputy Team Lead acts ...

Security Incident Response Engineer - 6 Months - Warrington

Hiring Organisation
Morson Edge
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£50 - 100 per hour + None
Security Incident Response Engineer Location : Warrington (Hybrid - 2 days per week onsite) Contract Length : 6 Months IR35 Status : Out of Scope Rate : Up to £100 per hour Umbrella/£75.30 per hour PAYE Overview Were looking for an experienced Security Incident Response Engineer to support … major organisation on a 6-month contract. This role will focus on cyber security incident response activities, security operations support, and stakeholder engagement across the business. Key Responsibilities Investigate, analyse and respond to cyber security incidents. Support and enhance security operations processes and procedures. Utilise ServiceNow SecOps ...

Head of Cyber Defence

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives. Key Responsibilities Lead and manage the Cyber Defence function, overseeing … security operations, threat intelligence, vulnerability management, and incident response capabilities. Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats. Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents. Oversee threat intelligence programmes, identifying emerging ...

Senior Security Engineer

Hiring Organisation
Intec Select Ltd
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 700 Daily
must have active SC clearance. You will play a key role in implementing, configuring, and managing Palo Alto Networks XSIAM to improve threat detection, incident response, security monitoring, and operational resilience. This is an excellent opportunity for a senior security professional to support a major cyber security initiative … Cyber Security Standard. Key Responsibilities: Implement and manage Palo Alto Networks XSIAM security platform Configure security policies, rules, and monitoring capabilities Improve threat detection, response, and security automation Investigate security alerts and support incident response activities Integrate security tools and enhance operational workflows Provide technical guidance ...

Senior Security Engineer

Hiring Organisation
Intec Select Ltd
Location
London, Canary Wharf, United Kingdom
Employment Type
Contract
Contract Rate
£700/day
must have active SC clearance. You will play a key role in implementing, configuring, and managing Palo Alto Networks XSIAM to improve threat detection, incident response, security monitoring, and operational resilience. This is an excellent opportunity for a senior security professional to support a major cyber security initiative … Cyber Security Standard. Key Responsibilities: Implement and manage Palo Alto Networks XSIAM security platform Configure security policies, rules, and monitoring capabilities Improve threat detection, response, and security automation Investigate security alerts and support incident response activities Integrate security tools and enhance operational workflows Provide technical guidance ...

Sr. Backend Engineer, Cloud - Threat Detection / Incident Response (Hybrid, London)

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
join a mission that matters? The future of cybersecurity starts with you.About the Role:Does building systems that help security analysts close a critical incident before it becomes a breach excite you? Does correlating and analyzing data at trillions-of-events-per-day scale sound like the kind … defend themselves from sophisticated cyberattacks? We'd love to meet you.We are seeking a Senior Software Engineer, Cloud to join our Threat Detection and Incident Response (TDIR) team, helping revolutionize security management with our AI-native Falcon Next-Gen SIEM platform – enabling customers to detect, investigate, and hunt ...

Cyber Security Analyst

Hiring Organisation
Holt Executive
Location
London, United Kingdom
Employment Type
Permanent
team. This is an excellent opportunity to join a fast-paced cybersecurity environment, helping to protect critical infrastructure and enterprise systems through proactive monitoring, incident response, and threat analysis. Working as part of a 24/7 operational security function, you will play a key role in identifying … monitoring tools, network infrastructure, and endpoint technologies. Investigate and triage security alerts to identify malicious activity and determine attack methods and techniques. Follow established incident response and escalation procedures to contain and mitigate security risks. Ensure all incidents are accurately documented, including indicators of compromise, evidence, and investigation ...

Senior Cyber Security Engineer

Hiring Organisation
NTT Global Data Centers EMEA UK ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent
tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning). What we are looking for Key Responsibilities: Serves as a senior member … optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. Directs complex security incident response efforts across multiple vectorsendpoint protection, EDR, malware analysis, network and computer forensicsensuring rapid containment and root cause analysis. Designs and executes advanced vulnerability ...

Senior Security Platform Engineer

Hiring Organisation
NTT Global Data Centers
Location
EC4N, Cordwainer, Greater London, United Kingdom
Employment Type
Permanent
tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning). What we are looking for Key Responsibilities: • Serves as a senior member … optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. • Directs complex security incident response efforts across multiple vectors—endpoint protection, EDR, malware analysis, network and computer forensics—ensuring rapid containment and root cause analysis. • Designs and executes ...

Tech lead - SOC responder

Hiring Organisation
Colt Technology Services UK
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Security Operations Specialist

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Security Incident Response Engineer - 6 Months - Warrington

Hiring Organisation
Morson Edge
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 50 - 100 Hourly
Security Incident Response Engineer Location : Warrington (Hybrid - 2 days per week onsite) Contract Length : 6 Months IR35 Status : Out of Scope Rate : Up to £100 per hour Umbrella/£75.30 per hour PAYE Overview Were looking for an experienced Security Incident Response Engineer to support ...

Information Security Manager

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
proportionate controls are in place. Provide informed input into security testing scope (e.g. Penetration testing, configuration reviews) and review remediation activity with suppliers. Support incident response and operational infosec activities as required, providing cover and acting as an all-round contributor in a small team. Maintain awareness … experience in an information security role with significant exposure to grc, alongside working knowledge of broader cyber security disciplines (e.g. Supplier assurance, security testing, incident response, security operations). Experience of iso 27001 isms implementation and management, and certification process (working with external and internal auditors). Strong ...

Regional Information Security Officer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
threats, and trends into actionable inputs for Oracle’s product and compliance strategies Develop repeatable security architectures and playbooks tailored to industry requirements Crisis Response & Incident Communication Act as an industry liaison during security events or crises, helping ensure timely, accurate, and credible communications with customers, executives … external stakeholders Partner with Oracle’s incident response, legal, and communications teams to shape coordinated global responses when security issues impact customers Security Transparency & Messaging Contribute to the content and evolution of Oracle’s Trust Center and thought leadership platforms Work with engineering and field teams to align ...

Senior Site Reliability Engineer - UK

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Ready for the challenge? The Role This role sits in the core Platform/SRE team that owns production. You’ll work directly on incident response, on‐call, system reliability, and day‐to‐day operations for Heidi’s platform. We’re open to candidates who are strong … role is intentionally ops‐heavy and focused on keeping real systems healthy in production. What you’ll do Participate in on‐call and incident response: Respond to production incidents, contribute to service restoration, and support clear communication during incidents. Over time, take increasing responsibility for leading incidents ...

Senior SOC Analyst - Hybrid / London

Hiring Organisation
Interface Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Head of Security and Resilience

Hiring Organisation
Goodman Masson
Location
City of London, Cubitt Town, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £650/day
business continuity, disaster recovery, physical security, facilities management and estates, ensuring robust governance, compliance and operational excellence. You will also lead enterprise risk management, incident response, crisis management and resilience planning across the organisation. Key Responsibilities Lead the organisation's Security, Resilience and Facilities Management strategy. Oversee cyber … Drive enterprise risk assessment, threat management and control assurance activities. Ensure compliance with relevant legislation, regulatory requirements and recognised security standards. Lead crisis management, incident response and resilience testing exercises. Manage key suppliers and third-party assurance arrangements. Provide strategic advice and reporting to senior leadership and governance ...

Head of Cyber Claims - International

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Staff Site Reliability Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
reliability problems across our stack, then design and implement software and systems to create step-function improvements. You will design robust observability solutions, lead incident response, automate operational tasks, and continuously improve our infrastructure's reliability, all while mentoring and educating the broader engineering team to make reliability … Build systems to monitor and report on these metrics, holding teams accountable and ensuring we maintain high reliability standards while balancing innovation speed. Lead Incident Management and Response: Act as a senior leader during high-impact incidents, guiding the team to rapid resolution. Conduct thorough, blameless post-mortems ...

SOC Analyst

Hiring Organisation
Experis
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £500/day
client is seeking a SOC Analyst to join a security operations team in London. The role is focused on real-time monitoring, investigation, and incident response across a modern enterprise security environment. - Key Responsibilities Monitor, triage, and respond to security alerts across multiple platforms, including Microsoft and endpoint … Optimise and tune detection rules, policies, and alerting mechanisms to improve SOC efficiency. Collaborate with internal teams to support security operations, threat analysis, and incident recovery. Produce clear incident documentation, reports, and recommendations for continuous improvement. Contribute to maintaining and enhancing SOC processes, runbooks, and operational workflows. Required ...

DevOps Engineer (AWS)

Hiring Organisation
IT Graduate Recruitment
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£30,000 per annum
Integrate security scanning and compliance checks into deployment pipelines. Implement monitoring, logging and alerting to improve platform reliability. Support production environments and participate in incident response and post-incident reviews. Maintain cloud networking, storage, compute and database services. Collaborate with development teams to improve automation and platform … Infrastructure Automation, DevSecOps, Security Scanning, Checkov, Trivy, Snyk, Vulnerability Management, Least Privilege, Access Management, CloudFormation, AWS CDK, GitOps, ArgoCD, Flux, Monitoring, Observability, Logging, Alerting, Incident Response, Reliability Engineering, Grafana, Datadog, ELK Stack, OpenSearch, Cloud Operations, Linux, Networking, Cloud Native, Platform Automation, Troubleshooting, Infrastructure Reliability, DevOps Practices, Software Delivery ...

Senior Security Engineer - Contract

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cloud, and manages tooling through infrastructure-as-code. They run a quarterly penetration test programme and are continuously building out our detection and response capability. It's a small team with broad scope, which means your work is visible, your opinions are heard, and there are meaningful problems … solve will matter. Does this sound like you? You're a senior security engineer who operates credibly across cloud security, detection tooling, and incident response, without being narrowly specialised. You own meaningful parts of the security stack, contribute hands‐on to Azure cloud hardening, and show up reliably ...