76 to 100 of 715 Incident Response Jobs in London

Cyber Security Engineer

Location
London, United Kingdom
technical cyber security professional with hands-on capability, sound judgement and a practical approach to problem solving. Technical: Strong experience in cyber security operations, incident response or threat detection roles Proven experience working with Microsoft Sentinel (SIEM) in a production environment Good working knowledge of Microsoft Security Copilot … agentic tooling) experience in cloud security, particularly across Azure environments Strong understanding of detection engineering, alert tuning and investigation workflows experience developing and maintaining incident response processes and playbooks Good understanding of security frameworks, controls and governance experience : experience working within a cyber security, security operations or incident ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
Assess the resiliency posture of customer environments from both technical and operational perspectives. Evaluate disaster recovery (DR) plans, business continuity (BC) strategies, and Major Incident Response Plans (MIRPs). Conduct in-depth analysis of cloud infrastructure, application dependencies, observability, and failover capabilities. Review and enhance incident response … availability zones, backup, recovery, and monitoring services. Familiarity with cloud-native resiliency patterns and site reliability engineering (SRE) practices. Experience designing and assessing Major Incident Response Plans (MIRPs). Experience in business continuity planning and operational resilience. Strong communication and documentation skills across technical and business stakeholders. Together ...

Senior Systems Engineer

Hiring Organisation
Tetra Tech
Location
City, London, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
operational maturity, and ensure platforms remain secure, reliable and cost-effective. This role combines strategic oversight with deep technical delivery, supporting infrastructure architecture , automation , incident response, compliance , documentation, operational handover and project execution. Your Impact in this position You will influence the stability, performance and future shape … implementation and operational handover. Documentation, Standards & Governance: Maintain technical documentation, define standards and support consistent processes that strengthen operational quality and compliance. Automation, Resilience & Incident Response: Drive automation, improve provisioning and workflows, and support incident response approaches that protect service integrity and reduce manual intervention. Project ...

Security Operations Vice President

Location
Greater London, England, United Kingdom
strengthen our data. As a member of the Attack Analysis team, you will fit into a Global team providing 24/7 monitoring and Incident Response, acting as the frontline defense for attacks against the firms’ infrastructure. As a SOC Manager, you will serve as the direct manager … metrics to ensure the team is meeting overall alert and case goals as well as identifying opportunities to improve and tune alerts. In an incident response scenario, the SOC Manageris responsible for assigning, coordinating and documenting the outcome of specific analysis workstreams and preparing communications to senior management. ...

Global Head of Security Operations & Incident Response

Location
Greater London, England, United Kingdom
Sportradar AG in London is seeking a hands-on senior leader to run Security Operations end to end, including the SOC, incident response, detection engineering and threat intelligence, reporting to the EVP, Information Security. You will shape the incident response program, build and scale ...

Lead Incident Response Engineer (Hybrid)

Location
Greater London, England, United Kingdom
Checkout Ltd is seeking a Security Incident Response Lead to manage high-severity security incidents and proactively reduce risks. The ideal candidate will have proven leadership skills and the ability to efficiently communicate with cross-functional teams to enhance security measures. This role requires hands-on experience … incident response, a clear mindset to identify vulnerabilities, and a collaborative approach to driving solutions across our cloud and SaaS environments. With a hybrid working model, you'll enjoy flexibility while making a significant impact in the rapidly evolving fintech landscape. #J-18808-Ljbffr ...

Incident Response Engineer - UK Security Operations

Location
City of Westminster, England, United Kingdom
Google Public Sector's UK Security Operations team seeks an experienced Incident Response Engineer to join our Hampshire-based on-site team. You will monitor, detect, and respond to security incidents across critical environments, delivering private cloud security for high-assurance customers. In this mid-level role … will operate 24/7, collaborate with product teams, and help mature incident response capabilities, threat hunting, and SOC dashboards while adhering to DV clearance requirements #J-18808-Ljbffr ...

Cyber Security Manager

Hiring Organisation
Searchability NS&D
Location
City of London, London, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Principal Platform Engineer - London

Location
Greater London, England, United Kingdom
Ready for the challenge? The Role This role sits in the core Platform/SRE team that owns production. You’ll work directly on incident response, on‐call, system reliability, and day‐to‐day operations for Heidi’s platform. We’re open to candidates who are strong … role is intentionally ops‐heavy and focused on keeping real systems healthy in production. What you’ll do Participate in on‐call and incident response: Respond to production incidents, contribute to service restoration, and support clear communication during incidents. Over time, take increasing responsibility for leading incidents ...

Site Reliability Engineer / Production Support

Location
London, United Kingdom
role is the single point of ownership when incidents occur. You will directly oversee the offshore Production Support team, run on-call and incident response, and ensure fast detection, triage and restoration of services. This is not a passive monitoring role. You are expected to understand … offshore Production Support team and be the single point person when incidents occur, escalating only to Head Of when required. Run on-call and incident response ensure fast detection, triage, and restoration. Maintain observability standards (logs, metrics, traces) and alert quality (low noise, high signal). Understand ...

Site Reliability Engineer / Production Support

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
role is the single point of ownership when incidents occur. You will directly oversee the offshore Production Support team, run on-call and incident response, and ensure fast detection, triage and restoration of services. This is not a passive monitoring role. You are expected to understand … offshore Production Support team and be the single point person when incidents occur, escalating only to Head Of when required. Run on-call and incident response; ensure fast detection, triage, and restoration. Maintain observability standards (logs, metrics, traces) and alert quality (low noise, high signal). Understand ...

Security Architect – Entra ID, MS, Azure

Location
Greater London, England, United Kingdom
administrative boundaries Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures Establish requirements for logging, monitoring, alerting, threat detection and incident response Review technical architectures and solution designs for security weaknesses, gaps and dependencies Assess migration strategies and cutover approaches from a security perspective … administrative controls Experience designing security controls across endpoints, email, data, applications, infrastructure and networks Strong understanding of security logging, monitoring, threat detection and incident-response requirements Experience in threat modelling, security risk assessment, control mapping and architecture assurance Experience assessing security risks associated with migration, coexistence, cutover ...

Head of Cyber Claims - International

Hiring Organisation
Howden Group Holdings
Location
London, UK
Employment Type
Full-time
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you'll doLead the development and implementation of international cyber claims strategy across jurisdictions outside … where required, acting as a referral point to support and supplement local expertiseEstablish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global officesBuild and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards, including ...

Head of Cyber Claims - International

Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Head of Cyber Claims - International

Location
Greater London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you'll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Crisis Management & Scenario Testing Specialist

Hiring Organisation
Willis Towers Watson
Location
London, UK
Employment Type
Full-time
testing capabilities. The successful candidate will play a critical role in maintaining operational readiness across the organisation by coordinating crisis management activities, supporting major incident response efforts, managing scenario testing programmes, and driving remediation and continuous improvement initiatives. The role will work closely with business, technology, cyber security … operation of the crisis management framework and act as a key coordinator during significant disruption events, helping ensure effective response, communication, governance and recovery activities across the enterprise. Crisis Management Framework SupportSupport the maintenance and ongoing enhancement of WTW's enterprise crisis management framework, including procedures, playbooks, escalation processes ...

Business Consultant - Incident Management

Hiring Organisation
Undisclosed
Location
City of London, London, United Kingdom
Business Consultant – Incident Management Transformation London, Birmingham or Edinburgh (Predominantly Remote) £950.00 p/d via Umbrella Contract Until End of November (Extension Potential) Overview We're seeking an experienced Business Consultant to support a major Enterprise Incident Management Transformation Programme within a leading financial services organisation. This … high-profile assignment focused on designing and implementing a modern Incident Management Command & Control Centre (IM C3) , helping transform how the organisation responds to technology, operational, cyber, and business incidents. Working alongside the Group Incident Management leadership team, you will play a pivotal role in reshaping incident ...

Data Centre Engineering Cluster Manager, Data Centre Engineering Operations

Hiring Organisation
Amazon
Location
London, UK
Employment Type
Full-time
site management of shift technicians, senior shift technicians, sub-contractors, and vendors, ensuring all work is performed in accordance with established practices and procedures. Incident Management: Lead safety, security, and availability incident response, incident management, incident resolution, and root cause analysis. Financial Management: Manage cost ...

Cyber Response Assistant Manager (Proactive Consulting)

Hiring Organisation
KPMG UK
Location
London Area, United Kingdom
Cyber Response Assistant Manager (Proactive Consulting) This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. About the role The Cyber Response Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice. Your specific focus … will be in the domain of proactive advice and guidance as it relates to Security Operations/Defensive Cyber Operations (Incident Management, Vulnerability Management, Threat Intelligence). Organisations face increasing challenges operating effective security operations capabilities across threat intelligence, vulnerability management and incident management. This role helps clients ...

OT Cyber Security Manager

Hiring Organisation
Experis
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£550.00 - £570.00 per day
approve OT technology deployments from a cybersecurity perspective. Support the secure adoption of Industrial IoT (IIoT), cloud-connected systems, and remote access solutions. Incident Response & Operational Security Develop and maintain OT-specific incident response processes. Lead investigations and response activities for OT cybersecurity incidents. Coordinate ...

Site Reliability Software Engineer (Hybrid)

Location
Greater London, England, United Kingdom
Improve monitoring, alerting, logging, and reporting across applications and infrastructure. Troubleshoot incidents involving applications, servers, databases, APIs, network connectivity, and system integrations. Participate in incident response, root cause analysis, and post-incident remediation. Build and maintain CI/CD pipelines for safer and more consistent deployments. Partner … networking, DNS, SSL/TLS, firewalls, and system performance. Experience with Linux and/or Windows server environments. Experience with monitoring, logging, alerting, and incident troubleshooting. Experience using Git and CI/CD workflows. Ability to analyze complex technical issues across application, server, database, and network layers. Strong documentation ...

Cyber Security Analyst

Hiring Organisation
Digital Waffle
Location
City of London, London, United Kingdom
Analyse logs from endpoints, networks, cloud services and security tools to detect suspicious behaviour Escalate incidents where appropriate and work closely with engineering and incident response teams Develop and improve SIEM detection rules and alert tuning to reduce false positives Produce clear incident reports and maintain accurate … documentation Participate in the on-call rota and support major incident response when required Contribute to the continuous improvement of SOC processes, tooling and operational procedures Skills & Experience Experience working withi n a 24/7 Security Operations Centre ( SOC) or equivalent cyber security environment Strong hands ...

Senior CSIRT Analyst

Location
Greater London, England, United Kingdom
next step in your career. The role As a Senior CSIRT Analyst you will play a key role in G-Research’s Cyber Security Incident Response Team (CSIRT), specialising in cloud detection and response across AWS and hybrid environments. You will investigate, respond and proactively hunt … corporate Windows environments. You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating and improving the team’s effectiveness against advanced adversaries. ...

Senior SOC Analyst

Location
Greater London, England, United Kingdom
cyber security transformation programme within a global enterprise environment. This role is ideal for a senior, hands‐on Security Operations professional who combines strong incident investigation and threat analysis skills with experience in detection engineering, operational process development, and stakeholder engagement. Working as a key bridge between regional … Utilise KQL, SPL, SQL, log analysis, event correlation, and telemetry investigation to validate detection's and support investigations. Support continuous improvement of detection and response capabilities. Stakeholder Management & Collaboration Work closely with Security Operations, Detection Engineering, Threat Intelligence, Incident Response, and Global SOC teams. ...

Senior CSIRT Analyst

Hiring Organisation
G Research
Location
London, UK
Employment Type
Full-time
next step in your career. The roleAs a Senior CSIRT Analyst you will play a key role in G-Research's Cyber Security Incident Response Team (CSIRT), specialising in cloud detection and response across AWS and hybrid environments. You will investigate, respond and proactively hunt for threats … corporate Windows environments. You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating and improving the team's effectiveness against advanced adversaries. ...