176 to 200 of 712 Incident Response Jobs in London

Production Engineering Manager

Location
City of Westminster, England, United Kingdom
this role, you will manage a team of production engineers who own the full lifecycle of systems — from capacity planning and performance optimization to incident response and automation. You will drive technical strategy, champion AI-augmented workflows, and partner closely with software engineering, infrastructure, and product teams … team, sharing learnings and best practices with the broader production engineering organizationContribute hands-on to technical work including code, system design reviews, and incident response, using AI tooling to expand personal and team reach across disciplinesPartner cross-functionally with software engineering, data science, and product teams to unblock ...

Senior Software Engineer - Login Platform

Location
Greater London, England, United Kingdom
champion new ideas to evolve our systems responsibly over time. Engineers on the team are involved throughout the software lifecycle, including design, deployment, observability, incident response, and long-term platform evolution. Our technologies We work primarily in C++ and some Python, running mostly on Linux, with continued support … environments. Strong experience designing and building multi-threaded or concurrent applications. Experience owning software across the full lifecycle, including design, implementation, testing, deployment, observability, incident response, and long-term evolution. Ability to make pragmatic system design decisions across performance, scalability, reliability, maintainability, and compatibility constraints. An eagerness ...

Senior Manager- Software Engineering

Location
Greater London, England, United Kingdom
versioning, contracts, and backward compatibility. Advance operational excellence by defining SLOs, improving observability and alerting, hardening on‐call procedures and runbooks, and leading incident response and post‐mortems. Solve complex distributed system challenges (such as throughput, latency, consistency, and data modeling) with pragmatic decision‐making and balanced tradeoffs. … design, and event‐driven systems, as well as experience with containerization and orchestration (Docker, Kubernetes). Strong operational mindset: expert in observability, monitoring, incident response, performance engineering, and adherence to security best practices. Familiarity with CI/CD pipelines, automated testing strategies (unit, integration, e2e), and modern DevOps ...

Senior Lead Software Engineer - Platform Engineering - Team Lead

Location
Greater London, England, United Kingdom
long-term technical vision for the platform, aligning with business outcomes and regulatory requirements Champion a "you-build-it-you-run-it" culture, overseeing incident response and identifying opportunities to automate remediation Ensure successful collaboration across teams and stakeholders, driving consensus on architectural and delivery trade-offs Identify … influence both technical and non-technical stakeholders Ability to translate business objectives into team-level tasks and priorities Experience managing production systems, including incident response and reliability engineering Experience leading multi-team adoption of enterprise-authorized AI-assisted development and delivery tools, including defining governance/ways ...

Global SOC VP: Incident Response & Security Operations

Location
Greater London, England, United Kingdom
Manager for the Attack Analysis team in London. You will guide a team of SOC analysts on alert triage, case analysis and incident response, coordinating workstreams and reporting outcomes to senior management. You will also coach staff, drive performance metrics, and improve alerting and detection capabilities across ...

IT Cyber Security Specialist

Location
City Of London, England, United Kingdom
Security Specialist to join the Infrastructure Engineering team of a leading international law firm. This is a hands-on role covering cybersecurity, infrastructure security, incident response, threat monitoring and vulnerability management, with responsibility for continually improving the firm's global security posture. Key Responsibilities Lead and support cyber … incident response and investigations. Identify and manage vulnerabilities, threats and security risks. Evaluate and implement security improvements and controls. Support business continuity and disaster recovery planning. Lead Cyber Essentials Plus activities. Contribute to infrastructure and security projects, including solution design. Provide third-line support for complex security ...

Remote Lead Incident Response Consultant

Location
Greater London, England, United Kingdom
Palo Alto Networks is seeking a client-facing Principal Consultant to lead reactive services engagements and manage incident response from start to finish. You will guide clients through containment and long-term remediation, leveraging your expert knowledge in digital forensics. This weekend schedule position runs Friday to Monday ...

Lead Software Engineer - Agent Safety

Location
Greater London, England, United Kingdom
platforms. Drive AI security and observability: Build out dedicated auth/permissions for internal AI agents, establish deep monitoring/observability pipelines, and define incident response protocols for AI‐specific anomalies. Verification and Red Teaming: Lead continuous verification efforts and red teaming exercises to proactively identify vulnerabilities, prompt … that accurately reflect the real‐world performance and safety of our internal‐facing AI tooling and harnesses. Resilient Internal Infrastructure: AI security, monitoring, and incident response are treated as first‐class citizens, ensuring that any erratic agent behavior in our internal platforms is immediately caught and mitigated before ...

Senior Software Engineer | Identity and Access Management | Full-Stack

Location
Greater London, England, United Kingdom
understand that authentication and authorization systems cannot fail. You build for reliability and maintainability, while delivering a user-friendly experience. You will lead incident response, and continuously raise the bar on code quality and operational health Collaborate to Raise the Bar: You will work closely with teammates across … value architectural decisions and complex problem-solving Qualities we look for Extreme Ownership & Operational Excellence: You own your services end-to-end (production operations, incident response, and on-call) and you're motivated by pushing reliability toward four nines. You write comprehensive tests, monitor the systems in production ...

Senior Software Engineer | Identity and Access Management | Full-Stack

Location
Greater London, England, United Kingdom
understand that authentication and authorization systems cannot fail. You build for reliability and maintainability, while delivering a user-friendly experience. You will lead incident response, and continuously raise the bar on code quality and operational health Collaborate to Raise the Bar: You will work closely with teammates across … value architectural decisions and complex problem-solving Qualities we look for Extreme Ownership & Operational Excellence: You own your services end-to-end (production operations, incident response, and on-call) and you're motivated by pushing reliability toward four nines. You write comprehensive tests, monitor the systems in production ...

Software Engineer, ChatGPT Infrastructure

Location
Greater London, England, United Kingdom
correctness, compatibility, and safe rollout and rollback. Strengthen monitoring, alerting, and diagnostics to detect problems early and reduce customer impact. Participate in on‐call, incident response, and root‐cause analysis, and turn operational learnings into lasting engineering improvements. Work across product and infrastructure teams to ensure new systems … writing reliable, maintainable production code. Experience designing, building, or improving services, platforms, or shared infrastructure at scale. Familiarity with production reliability practices, including monitoring, incident response, root‐cause analysis, and operational readiness. Experience diagnosing performance, scalability, or reliability issues in production environments. Understanding of distributed systems, data storage ...

Application Security Engineer

Hiring Organisation
Intercom
Location
London, UK
Employment Type
Full-time
initiatives across the software development lifecycle, helping teams identify and address security risks early. Participate in a shared on-call rotation and lead security incident response, investigation, and remediation efforts. Drive security initiatives from problem definition through design, implementation, and measurable outcomes. Partner with teams building AI-powered … designing, building, or securing authentication, authorization, identity, or enterprise security capabilities. Experience conducting architecture reviews and security assessments for complex systems. Hands-on security incident response experience, including leading investigations and remediation efforts. Strong programming skills and experience building tools, automation, or developer-focused solutions. Comfortable using modern ...

Staff Site Reliability Engineer

Location
Greater London, England, United Kingdom
scale — sharding and replication, materialised views, merge and query optimisation, tenant isolation and cost/performance trade-offs. Owning SLOs, observability, capacity planning and incident response for data-intensive systems and pipelines, alongside the orchestration and job execution that power them. Shaping Data-as-a-Service … black box — and ideally have contributed code upstream. Reliability engineering for data platforms. You bring true SRE discipline — SLOs, observability, capacity planning and incident response — to analytical data systems and pipelines. Data-as-a-Service productisation. You think in terms of data as a product: secure, multi-tenant ...

Network Security Specialist

Hiring Organisation
Liberty Global
Location
London, UK
Employment Type
Full-time
security measures and monitoring. Review and generate technical specifications/documentationTranslate, create, and hand over network monitoring use cases and tread play books to incident response teamsAct as a mentor, technical lead and escalation point for other engineersMonitor and respond to incidentsKEY ACCOUNTABILITIESServe as an authority on Internet … malware/abuse. Experience in presenting findings and making recommendations to other operational teams. Experience in working with many collaborators to improve security and incident response both internal and external in an international community. Demonstrated ability in an ISP environment and Internet security arena. Experience with Internet organizations ...

Director - DSO - UK Data Incident Investigations Strategic Lead - Permanent

Location
Greater London, England, United Kingdom
take your career wherever you want it to go. Join EY and help to build a better working world. Director – DSO – UK Data Incident Investigations Strategic Lead About EY: At EY, we are committed to building a better working world. EY is looking to strengthen its enterprise data incident handling and investigation capability to improve consistency, speed and governance in suspected data incident triage and investigation. Join us and be part of a global team of over 13,000 professionals dedicated to delivering cutting-edgesecurity transformation programs and services. The opportunity: As a director, you will lead ...

Director - DSO - UK Data Incident Investigations Strategic Lead - Permanent

Hiring Organisation
EY (Ernst & Young)
Location
London, UK
Employment Type
Full-time
take your career wherever you want it to go. Join EY and help to build a better working world. Director – DSO – UK Data Incident Investigations Strategic LeadAbout EY: At EY, we are committed to building a better working world. EY is looking to strengthen its enterprise data incident handling and investigation capability to improve consistency, speed and governance in suspected data incident triage and investigation. Join us and be part of a global team of over 13,000 professionals dedicated to delivering cutting-edge security transformation programs and services. The opportunity: As a director, you will ...

Security Operations Analyst

Hiring Organisation
Matchtech Mobility
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
Up to £594 per day
attack vectors and security weaknesses. Support security strategy initiatives by providing intelligence-led insights and risk assessments. Collaborate with security teams to improve detection, response, and mitigation capabilities. Support incident investigations and provide intelligence to assist with response activities. Assist in the development and enhancement of security … procedures (TTPs). Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability to assess cyber risks and communicate findings clearly to stakeholders. Excellent written and verbal ...

Security Operations Analyst

Hiring Organisation
Matchtech
Location
London, UK
Employment Type
Full-time
attack vectors and security weaknesses. Support security strategy initiatives by providing intelligence-led insights and risk assessments. Collaborate with security teams to improve detection, response, and mitigation capabilities. Support incident investigations and provide intelligence to assist with response activities. Assist in the development and enhancement of security … techniques, and procedures (TTPs).Understanding of common attack frameworks such as MITRE ATT&CK and Cyber Kill Chain. Experience investigating security events and supporting incident response activities. Strong analytical, investigative, and problem-solving skills. Ability to assess cyber risks and communicate findings clearly to stakeholders. Excellent written ...

SOC Manager - DV Cleared

Location
Hounslow, England, United Kingdom
with technical awareness , placing you at the centre of a live Security Operations Centre where you'll maintain situational awareness across multiple domains, coordinate incident response, and ensure effective operational decision-making. You'll act as the operational lead within a fast-paced control room environment, working closely … domains. Monitor live environments and assess alerts and incidents in real time. Perform initial triage and validation of alerts, reducing noise and ensuring accurate incident classification. Manage incident prioritisation and escalation in accordance with operational procedures. Coordinate response activities across SOC, NOC, Infrastructure and Security teams. Support ...

Associate Security Analyst

Hiring Organisation
NonStop Consulting Ltd
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£650.00 - £700.00 per day
/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract … environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions ...

Associate Security Analyst

Hiring Organisation
NonStop Consulting
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£650 - £700/day
/2027 , based in London on a hybrid model (around 60% on site) , and would suit someone who already has strong SOC/incident response experience and is looking to take the next step in a critical national environment. Why this role stands out Length & stability: Contract … environments to determine the nature and scope of incidents. Support and implement containment, eradication and recovery actions. Help coordinate incidents and contribute to post-incident reviews and lessons learned. Identify and support continuous improvements to incident investigation and response processes. Work closely with other Cyber Defence functions ...

Cyber Security Consultant

Hiring Organisation
Experis
Location
West End, London, United Kingdom
Employment Type
Contract
Contract Rate
£560 - £610/day
Cyber Security Consultant - Incident and Vulnerability Management Duration: 30/11/2026 Pay: up to £610 per day (umbrella) Location: Preston, London or Birmingham UK, Hybrid - 30% office 70% home CONTRACTOR MUST BE MOD SC CLEARED AND BE A SOLE UK NATIONAL Role Summary The Security Incident … transition to a multi-supplier (SIAM) model within a Defence environment. The role focuses on understanding, aligning and governing existing high-severity security incident management (S3/S4) and vulnerability management processes across suppliers. Ensuring a consistent, risk-based approach in line with client policy and regulatory requirements, supported ...

SRE Managing Consultant - Cloud Operating Model

Location
Greater London, England, United Kingdom
Model & Ways of Working**: Define and implement SRE ways of working and engagement patterns, aligning reliability practices with existing ITSM/ITIL processes (e.g., incident, problem, release and change) and modern engineering delivery.* **Reliability Measures (SLIs/SLOs) & Error Budgets**: Establish service measures and targets (SLIs/SLOs … Insight:** Shape observability approaches (metrics/logs/traces) and operational monitoring models that make reliability risks visible and actionable, improving operational decision-making.* **Incident Excellence & Continuous Learning:** Design incident analysis and improvement loops, including practical approaches that strengthen incident response and drive learning through post ...

Engineering Manager, Security

Location
Greater London, England, United Kingdom
responses. Partner with the DPO on data governance and breach notification obligations. Manage third-party and supply chain security risk, including critical outsourcing oversight. Incident management & operations: Own the security incident response plan; lead major incident management for cyber events. Operate and improve security monitoring, SIEM ...

NOC Manager

Location
Greater London, England, United Kingdom
opportunity: You’ll lead the day-to-day operation and strategic evolution of the Network Operations Centre, owning ITIL-based service management across Incident, Problem, Change, and Major Incident processes, and acting as the operational authority driving the transition of managed services onto Opticore's platform. What … doing: Lead the day-to-day operation of the NOC team, including analysts, engineers, and shift leads. Own and govern ITIL processes across Incident, Problem, Change, Event, Request Fulfilment, and Major Incident Management. Ensure service levels are consistently achieved in line with agreed SLAs and operational KPIs. Coordinate ...