1 to 25 of 228 Remote/Hybrid Incident Response Jobs in London

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
KPMG
Location
London, UK
Employment Type
Full-time
Cyber Response & Recovery Manager (Reactive DFIR)This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the roleThe Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific focus … will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide variety ...

Cyber Response & Recovery Manager (Reactive DFIR) - German Speaking

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response & Recovery Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team within our Cyber Advisory practice. Your specific … focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands-on incident response role and an opportunity to join a high performing team that works with a wide ...

Cyber Response & Recovery Assistant Manager (Reactive DFIR)

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response & Recovery Assistant Manager (Reactive DFIR) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice. Your … specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a junior case manager on smaller cases, or part of a team (reporting to a case manager or senior case manager) on larger cases. This is a hands-on role ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
Head of Cyber Defence & Incident Response At Quadient, we support businesses of all sizes in their digital transformation and growth journey, unlocking operational efficiency with reliable, secure, and sustainable automation processes. Our success in delivering innovation and business growth is inspired by the connections our diverse teams create … business lead the way in powering secure and sustainable business connections through digital and physical channels. Job Description The Head of Cyber Defence and Incident Response owns the organisation’s cyber defence capability across a hybrid environment (mix of on‐prem and cloud platforms), ensuring effective monitoring, detection ...

Cyber Defense Incident Responder - Assistant Director

Hiring Organisation
EY (Ernst & Young)
Location
London, UK
Employment Type
Full-time
detects, responds, and mitigates cybersecurity risk, protecting EY and client data, and our information management systems. The opportunityThe Cyber & Investigative Services (CIS) Senior Cyber Incident Response Coordinator will exercise exemplary incident management techniques to coordinate incident response to cybersecurity events or incidents stemming from suspected … threats on a global scale. Candidates for the role must have an exceptional comprehension of cybersecurity incident response plans and coordination of activities, establish and foster relationships on a global scale, and have superb verbal and written communication skills. Additionally, candidates must have a sense of diplomacy, ability ...

Cyber Response & Recovery Manager (Remediation)

Hiring Organisation
KPMG UK
Location
City of London, London, United Kingdom
Cyber Response & Recovery Manager (Remediation) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice. Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience. This ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, UK
Employment Type
Full-time
focused business lead the way in powering secure and sustainable business connections through digital and physical channels. Job DescriptionThe Head of Cyber Defence and Incident Response owns the organisation's cyber defence capability across a hybrid environment (mix of on‐prem and cloud platforms), ensuring effective monitoring, detection … response and recovery. Reports directly to the CISO and leads cyber defence operations (including the MSSP) and cybersecurity incident response across the organisation. This fits within the context of the broader organizational Crisis Management plan owned outside Technology. A key focus is optimising security tooling (e.g., SIEM ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will … cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond ...

Cyber Operations & 3rd Party Security Manager

Location
Greater London, England, United Kingdom
powered by modern technology. Job Purpose The Cyber Operations & 3rd-Party Security Manager is responsible for the Bank's cyber security operations, threat detection, incident response, vulnerability management and 3rd-party cyber risk management capabilities. The role ensures that cyber threats, vulnerabilities, supplier risks and security events … confidentiality, integrity and availability of the Bank's information assets and services. The role leads the operational execution of the Bank's Cyber Incident Response Plan (CIRP), manages relationships with security service providers, and provides oversight of cyber risks arising from suppliers, outsourced services and 3rd parties. ...

Head of Information Security

Hiring Organisation
MOO
Location
London, UK
Employment Type
Full-time
first 12 months, to act as build lead for the digital and security aspects of a company-wide Business Continuity, Disaster Recovery and Incident Response programme. This is a standalone role, reporting to the Head of Legal It is not a caretaker or compliance-only position. You will … resilience programmes from the ground up. You'll be comfortable working with executive and board level, while also getting into the details of security incident response, business continuity, disaster recovery, cloud security and data privacy. You'll be pragmatic and business-focused, balancing security with delivery velocity ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, UK
Employment Type
Full-time
capable of leading cyber incidents operationally, technically and commercially from end-to-end. You will act as a senior technical subject matter expert across incident response, detection engineering, cloud security and vulnerability management, while also providing calm, structured leadership during high-pressure situations. The environment is heavily Microsoft … secure-by-design principlesDetection engineering and automationThreat and vulnerability managementYou will work closely with global technology and cyber teams to continuously improve monitoring, detection, response and remediation capabilities across hybrid cloud and on-premise environments. Key ResponsibilitiesIncident Response & Major Incident ManagementLead the end-to-end management ...

Senior Consultant, Digital Forensics and Incident Response

Location
Greater London, England, United Kingdom
wider EMEA practice, and in turn part of a global practice offering and influencing the direction of our forensic investigation and cyber incident response capability. The Discovery & Data Insights is the hub of all technical consulting. As part of the team you will be able to assist … Consultant you will be expected to work closely with teams across regions and to develop positive and constructive relationships with Control Risks’ dedicated Cyber Response practice as well as the wider Discovery & Data Insights team. Your behaviour and positive decision making will inspire confidence and maintain integrity ...

Information Security Incident Response Analyst

Hiring Organisation
NTT
Location
London, UK
Employment Type
Full-time
society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Job Description SummaryThe Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role … compromise, reconstructing attacker activity, and communicating clear, actionable findings. The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands‐on investigations and internal ...

Security Operations Engineering Manager

Location
City Of London, England, United Kingdom
security is fundamental to maintaining trust and supporting our award-winning Human Digital Banking model. This is an opportunity to help shape our cyber incident response capability, strengthen our security operations and contribute to the resilience of our cloud-first banking platform against an evolving cyber threat landscape. … exciting opportunity to join our Information Security team in a role that combines hands-on cyber security expertise with strategic oversight across incident response, threat detection, cloud security and technical assurance. Working across cloud and on-premise environments, you’ll identify and investigate emerging threats, assess technologies ...

Consultant, Digital Forensics and Incident Response

Location
Greater London, England, United Kingdom
Consultant to join us in London. As the Consultant you will provide technical expertise and consultative solutions in the field of Digital Forensics, Incident Response, Cyber Security and eDiscovery for our clients. Our clients include Law Firms, Fortune 500 multi-nationals, and Government/Law Enforcement. You will … regional and international Discovery & Data Insights teams (DFIR/Legal Technologies/Data Analytics) as well as working closely with our Cyber Response and Crisis Management divisions as well as our Investigations teams. As the Consultant you will also support the business development effort for the department contributing subject ...

Incident Response Engineer Information security London

Location
Greater London, England, United Kingdom
getting started. The role This role exists to ensure security incidents are rare, contained, and unsurprising. You will own the technical direction of security incident response and response readiness across the company. When a serious incident occurs, you lead from the front — investigating, containing, and driving … Security Operations, IT, and Engineering to reduce real risk, not theoretical risk. What you’ll be responsible for Leading the end-to-end technical response to high-severity security incidents Owning investigation, containment, eradication, and recovery activities Acting as the senior technical authority during live incidents Providing clear, decisive ...

Head of Information Security

Location
Greater London, England, United Kingdom
growth and innovation. You'll define and lead our security strategy, establish governance and compliance frameworks, strengthen cloud and third-party security, and drive incident response and resilience planning across the organisation. Responsibilities As our security leader, you will bring a hands-on, builder mindset to establish … DPAs, transfer mechanisms, and data classification standards across the business. Audit Readiness: Keep the organization continuously prepared for external compliance audits and regulatory assessments. Incident Response & Business Resilience Incident Command: Own the incident response plan, acting as incident commander during crises and managing executive ...

SOC Analyst

Hiring Organisation
Reed
Location
London, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum, Inc benefits
protecting a large-scale, international technology environment. This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid … cyber security alerts, incidents and threats Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response Prioritise and manage security incidents based on business risk and impact Conduct proactive threat hunting across endpoint, network, identity and cloud environments Develop ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
security threats across complex client environments. You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your technical … take ownership of more complex security alerts and incidents, including: Investigating and analysing escalated security alerts from Tier 1 analysts Conducting detailed incident investigations to determine scope, impact and root cause Monitoring and analysing activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity ...

Security Operations Engineer

Hiring Organisation
CloudBees
Location
London, UK
Employment Type
Full-time
engineer the systems that make Security Operations smarter, faster and more scalable. You'll work across Detection Engineering, Security Automation, Threat Hunting and Incident Response, building detection logic, automating repetitive workflows and partnering closely with Product Engineering to improve security telemetry across the CloudBees platform. Whether … SaaS and application environments. Own the full detection lifecycle from hypothesis through deployment and continuous tuning. Create high-fidelity detections using operational threat intelligence, incident learnings and purple team findings. Measure and improve detection coverage using the MITRE ATT&CK framework. Continuously reduce false positives while improving visibility into ...

Senior Security Specialist

Hiring Organisation
Reonomy
Location
London, UK
Employment Type
Full-time
security operations, expanding our offensive security capabilities, and improving how we detect and respond to emerging threats. Working across security engineering, threat intelligence, incident response, and cloud security, you will identify opportunities to improve detection, automate processes, mature security technologies, and strengthen our overall security posture. This … Security Operations and technology teams to drive continuous improvement. Work across the full spectrum of modern cybersecurity. From security engineering and cloud security to incident response, threat intelligence, automation, and offensive security, this role offers technical breadth. You will solve complex security challenges, improve detection and response ...

Cyber Security Engineer

Hiring Organisation
Foresters Financial
Location
Bromley, London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£60,000
environment and you will have on-going opportunities to develop your technical skills and grow within cyber security What you will do: Security Monitoring & Incident Response Actively monitor alerts and telemetry across endpoints, identities, email, and cloud services using Rapid7 SIEM, Microsoft Defender, and Sophos AV. Investigate suspected … malware infections, phishing campaigns, identity compromise, and unauthorised access attempts. Perform triage, root cause analysis, containment, and remediation of security incidents. Lead or support incident response activities in line with internal policies and procedures. Escalate significant incidents appropriately and provide clear, timely updates to stakeholders. Threat Detection & Prevention ...

Security Consultant

Location
Greater London, England, United Kingdom
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use‐case tuning, and post‐incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client‐facing deliverables including ...

Security Consultant

Hiring Organisation
Version 1
Location
London, UK
Employment Type
Full-time
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including ...

Security Consultant

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
define pragmatic remediation roadmaps aligned to business priorities. Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains. Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements. Challenge weak security assumptions with confidence … guardrails. Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices. Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities. Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including ...