1 to 25 of 715 Incident Response Jobs in London

Senior Manager - Cyber Incident & Response - Consulting

Hiring Organisation
Oliver James
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £110,000 per annum
Senior Manager/Associate Director - Cyber Incident Response Advisory & Incident Management This is a senior opportunity within a leading Cyber Risk & Security practice, working with major organisations to strengthen their ability to prepare for, manage and recover from complex cyber incidents. The role sits across both proactive … cyber incident response advisory and live incident management, helping clients improve resilience while supporting them through high-impact security events. You will work closely with senior stakeholders and C-suite leaders, advising on cyber incident preparedness, crisis and incident management, response strategies and organisational ...

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
KPMG
Location
London, UK
Employment Type
Full-time
Cyber Response & Recovery Manager (Reactive DFIR)This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the roleThe Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific focus … will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide variety ...

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Cyber Response & Recovery - Senior Manager

Hiring Organisation
KPMG
Location
London, UK
Employment Type
Full-time
Role The Cyber Response & Recovery Senior Manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. … broad range of cyber-security incidents as well as perform digital forensics (disk, volatile memory, network packets, logfiles) and help advance KPMG's incident response processes and methodologies. In this role we are looking for a person who can demonstrate strong technical background, significant experience in incident ...

Cyber Response & Recovery Assistant Manager (Reactive DFIR)

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response & Recovery Assistant Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice. Your … specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a junior case manager on smaller cases, or part of a team (reporting to a case manager or senior case manager) on larger cases. This is a hands-on role ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
Head of Cyber Defence & Incident Response At Quadient, we support businesses of all sizes in their digital transformation and growth journey, unlocking operational efficiency with reliable, secure, and sustainable automation processes. Our success in delivering innovation and business growth is inspired by the connections our diverse teams create … business lead the way in powering secure and sustainable business connections through digital and physical channels. Job Description The Head of Cyber Defence and Incident Response owns the organisation’s cyber defence capability across a hybrid environment (mix of on‐prem and cloud platforms), ensuring effective monitoring, detection ...

Cyber Defense Incident Responder - Assistant Director

Hiring Organisation
EY (Ernst & Young)
Location
London, UK
Employment Type
Full-time
detects, responds, and mitigates cybersecurity risk, protecting EY and client data, and our information management systems. The opportunityThe Cyber & Investigative Services (CIS) Senior Cyber Incident Response Coordinator will exercise exemplary incident management techniques to coordinate incident response to cybersecurity events or incidents stemming from suspected … threats on a global scale. Candidates for the role must have an exceptional comprehension of cybersecurity incident response plans and coordination of activities, establish and foster relationships on a global scale, and have superb verbal and written communication skills. Additionally, candidates must have a sense of diplomacy, ability ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will … cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond ...

Cyber Operations & 3rd Party Security Manager

Location
Greater London, England, United Kingdom
powered by modern technology. Job Purpose The Cyber Operations & 3rd-Party Security Manager is responsible for the Bank's cyber security operations, threat detection, incident response, vulnerability management and 3rd-party cyber risk management capabilities. The role ensures that cyber threats, vulnerabilities, supplier risks and security events … confidentiality, integrity and availability of the Bank's information assets and services. The role leads the operational execution of the Bank's Cyber Incident Response Plan (CIRP), manages relationships with security service providers, and provides oversight of cyber risks arising from suppliers, outsourced services and 3rd parties. ...

Lead Security Operations Engineer

Location
Greater London, England, United Kingdom
Define and deliver Pleo's SecOps roadmap for detection, response, and investigation capabilities Build a structured roadmap based on MITRE ATT&CK, NIST, and CIS benchmarks Lead security investigations and digital forensics through incident response Design, tune, and scale SIEM and standardized logging pipelines Strengthen perimeter … configuration, authorization tuning, and suspicious-traffic monitoring Implement DLP controls aligned with sensitive-data locations Improve the on-call rotation, alerting, escalation paths, and response SLAs Automate detection and response workflows using code and AI Reduce SecOps-attributed compliance risk and collect supporting evidence Build dashboards and reporting ...

SOC Team Lead

Location
Greater London, England, United Kingdom
Drive performance and operational excellence across Shared Service’s Cyber Services function Act as a technical escalation point and line manager Support threat analysis, incident response, and security assurance activities Foster a proactive culture of cyber hygiene and continuous improvement Collaborate across departments to strengthen Shared Service … security posture Deputise for the Service Desk Manager during high workload or absence periods Lead cyber service operations focused on SLA attainment, incident response, and resolution quality Oversee daily workflow distribution and prioritise emerging threats and investigative escalations Ensure complex or unresolved cybersecurity issues are escalated appropriately Line ...

Senior Cyber Security Engineer

Hiring Organisation
Comtecs
Location
City of London, London, United Kingdom
Employment Type
Permanent
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

Cyber Security Engineer - MS Sentinel, Defender, SSO, PKI, SC-100/200, CISSP

Hiring Organisation
Comtecs Ltd
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £100,000 per annum
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

Senior Security and Cyber Operations Manager

Hiring Organisation
McCabe & Barton
Location
City of London, London, United Kingdom
Employment Type
Permanent
Financial Services organisation is looking for a Senior Security and Cyber Operations Manager to take ownership of its security operations, cyber defence, monitoring and incident response capabilities. This is a senior, hands-on role within the CISO function, responsible for strengthening the organisations cyber defence capability and ensuring … very flexible working. You will work closely with Technology, Cloud, Data, Architecture, Risk and external security partners, with responsibility for security tooling, detection coverage, incident response, operational cyber risk and service performance. Key Responsibilities Own and continually improve the organisations security operations and cyber defence capability Lead security ...

Head of Information Security

Hiring Organisation
MOO
Location
London, UK
Employment Type
Full-time
first 12 months, to act as build lead for the digital and security aspects of a company-wide Business Continuity, Disaster Recovery and Incident Response programme. This is a standalone role, reporting to the Head of Legal It is not a caretaker or compliance-only position. You will … resilience programmes from the ground up. You'll be comfortable working with executive and board level, while also getting into the details of security incident response, business continuity, disaster recovery, cloud security and data privacy. You'll be pragmatic and business-focused, balancing security with delivery velocity ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, UK
Employment Type
Full-time
capable of leading cyber incidents operationally, technically and commercially from end-to-end. You will act as a senior technical subject matter expert across incident response, detection engineering, cloud security and vulnerability management, while also providing calm, structured leadership during high-pressure situations. The environment is heavily Microsoft … secure-by-design principlesDetection engineering and automationThreat and vulnerability managementYou will work closely with global technology and cyber teams to continuously improve monitoring, detection, response and remediation capabilities across hybrid cloud and on-premise environments. Key ResponsibilitiesIncident Response & Major Incident ManagementLead the end-to-end management ...

Senior Consultant, Digital Forensics and Incident Response

Location
Greater London, England, United Kingdom
wider EMEA practice, and in turn part of a global practice offering and influencing the direction of our forensic investigation and cyber incident response capability. The Discovery & Data Insights is the hub of all technical consulting. As part of the team you will be able to assist … Consultant you will be expected to work closely with teams across regions and to develop positive and constructive relationships with Control Risks’ dedicated Cyber Response practice as well as the wider Discovery & Data Insights team. Your behaviour and positive decision making will inspire confidence and maintain integrity ...

Cyber Security Consultant

Hiring Organisation
Radius Consultancy
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
SIEM, NDR, applications, security architecture, IAM, PAM encryption technologies, network security, Zero Trust, secure interconnection patterns and cyber security principles. Experience within Security Operations, Incident Response, Security Assurance, or GRC functions. Experience managing or overseeing MSSP, SOC activities, third party management. Strong understanding of: ISO 27001, SOC2, NIST … Cyber Security Framework, Incident Response methodologies, Cyber Security Governance, GDPR and regulatory compliance Certifications (one or more) CISSP CISM CRISC The Cyber Security Assurance & Incident Response Lead is responsible for strengthening and maintaining Telehouse's cyber security posture through effective security assurance, incident response ...

Head of Cyber Defence

Hiring Organisation
IDEX Consulting
Location
London, UK
Employment Type
Full-time
leader responsible for developing and executing enterprise-wide cyber defence strategies to protect critical business systems, data, and infrastructure. Leads security operations, threat detection, incident response, and cyber resilience initiatives while ensuring alignment with organisational risk management objectives. Key ResponsibilitiesLead and manage the Cyber Defence function, overseeing security … operations, threat intelligence, vulnerability management, and incident response capabilities. Develop and implement cyber defence strategies, policies, and procedures to protect against evolving cyber threats. Direct Security Operations Centre (SOC) activities, ensuring effective monitoring, detection, investigation, and response to security incidents. Oversee threat intelligence programmes, identifying emerging risks ...

Graduate SOC Analyst

Hiring Organisation
CyPro
Location
City of London, London, United Kingdom
pigeonholed into one narrow specialism. At CyPro, you’ll have the opportunity to get involved in a wide range of areas including monitoring, incident response, threat intelligence, detection engineering, automation and internal security operations. You’ll play a key role in our Security Operations Centre, delivering … monitoring, detection and response to our growing customer base. You’ll contribute to building out our capabilities, improving tooling and processes, and shaping how we operate as the function matures. As the team grows further, you’ll have the flexibility to focus more deeply on the areas that interest ...

Security Operations Engineering Manager

Location
City Of London, England, United Kingdom
security is fundamental to maintaining trust and supporting our award-winning Human Digital Banking model. This is an opportunity to help shape our cyber incident response capability, strengthen our security operations and contribute to the resilience of our cloud-first banking platform against an evolving cyber threat landscape. … exciting opportunity to join our Information Security team in a role that combines hands-on cyber security expertise with strategic oversight across incident response, threat detection, cloud security and technical assurance. Working across cloud and on-premise environments, you’ll identify and investigate emerging threats, assess technologies ...

Senior Cyber Threat Intelligence (CTI) Analyst

Location
Greater London, England, United Kingdom
Cyber Threat Intelligence (CTI) Analyst to drive hands‐on intelligence analysis and research across our global environment. This role sits within the Detection and Response Engineering, CTI, and Threat Hunting team. The team focuses on identifying emerging threats, conducting in-depth analysis of malicious activity, and enhancing the organization … security posture, detection, and incident response capabilities. THE ROLE This is a hands‐on senior individual contributor role for an analyst who wants to stay technical: researching threat actors and their infrastructure, digging into malware and phishing campaigns, tracking ransomware and the cybercrime ecosystems targeting live entertainment, ticketing ...

Consultant, Digital Forensics and Incident Response

Location
Greater London, England, United Kingdom
Consultant to join us in London. As the Consultant you will provide technical expertise and consultative solutions in the field of Digital Forensics, Incident Response, Cyber Security and eDiscovery for our clients. Our clients include Law Firms, Fortune 500 multi-nationals, and Government/Law Enforcement. You will … regional and international Discovery & Data Insights teams (DFIR/Legal Technologies/Data Analytics) as well as working closely with our Cyber Response and Crisis Management divisions as well as our Investigations teams. As the Consultant you will also support the business development effort for the department contributing subject ...

Incident Response Engineer Information security London

Location
Greater London, England, United Kingdom
getting started. The role This role exists to ensure security incidents are rare, contained, and unsurprising. You will own the technical direction of security incident response and response readiness across the company. When a serious incident occurs, you lead from the front — investigating, containing, and driving … Security Operations, IT, and Engineering to reduce real risk, not theoretical risk. What you’ll be responsible for Leading the end-to-end technical response to high-severity security incidents Owning investigation, containment, eradication, and recovery activities Acting as the senior technical authority during live incidents Providing clear, decisive ...