1 to 25 of 56 Incident Response Jobs in the North West

Director, Digital Forensics & Incident Response (Global)

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
Director, Digital Forensics & Incident Response (Global) Department: Cyber Services and Capabilities Employment Type: Full Time Location: GBR Manchester Hardman Boulevard Reporting To: Matt Hull (Open to Associate Director with progression path to Director) Description The purpose of this role is to lead NCC Group’s global Digital Forensics … Incident Response (DFIR) capability, ensuring effective preparedness, response, recovery, and continuous improvement across cyber incident management and forensic investigations. The global DFIR team will consist of regionally distributed colleagues, delivering a consistent, scalable, and market-leading service that protects client assets, reputation, and business operations. ...

Security Incident Response Engineer (ServiceNow)

Hiring Organisation
INTEC SELECT LIMITED
Location
Warrington, Cheshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£100.00 per hour
Security Incident Response Engineer (ServiceNow) Contract: 6 Months (Likely Extension)Location: HybridIR35: Outside/LTD – £700PDSC Cleared/BPSSA highly reputable corporation is hiring an experienced ServiceNow Security Incident Response (SIR) Consultant to support the design, implementation and optimisation of a Security Incident Response capability for a Cyber Security Operations Centre (CSOC).This is an excellent opportunity to play a key role in enhancing cyber incident management processes, automating security workflows and integrating ServiceNow Security Operations with wider security tooling. Key Responsibilities ServiceNow SIR Workflow Design & Development Design and configure ...

Security Incident Response Engineer

Hiring Organisation
NonStop Consulting
Location
Warrington, Cheshire, United Kingdom
Employment Type
Contract
Contract Rate
£100/hour
Details at a Glance Role: Security Incident Response Engineer Location: Warrington - hybrid, typically 2 days per week on site Contract length: 6 months (with strong potential for extension based on performance and project needs) IR35 status: Out of Scope Rate: 100/hour Clearance: Existing SC preferred … Would Be Doing This role sits at the intersection of cyber operations and ServiceNow engineering. You would be responsible for designing and embedding robust incident response capabilities in the ServiceNow Security Incident Response (SIR) module, closely aligned to NCSC and best-practice frameworks. ServiceNow SIR workflow ...

Security Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
that security operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands‐on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements … detection, response, automation and operational processes. The role holder is expected to lead through expertise, supporting analysts and ensuring Security Operations operates with discipline, quality and continuous improvement. Key Responsibilities Act as the primary technical escalation point for security events and incidents identified by the Security Operations team. Support ...

Security Operations Technical Lead

Hiring Organisation
AJ BELL BUSINESS SOLUTIONS LIMITED
Location
Salford, Greater Manchester, North West, United Kingdom
Employment Type
Permanent
that security operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands-on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements … detection, response, automation and operational processes. The role holder is expected to lead through expertise, supporting analysts and ensuring Security Operations operates with discipline, quality and continuous improvement. The key responsibilities of the role are: Act as the primary technical escalation point for security events and incidents identified ...

Cyber Security Analyst

Hiring Organisation
The Portfolio Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£45000/annum
infrastructure and established a modern, cloud-first security stack, it is an exciting time to join the business as we mature our detection, response, and automation capabilities across a global estate. You will work collaboratively with the business and the wider IT team - Infrastructure, Network, Development, DevOps, and Service … with Palo Alto Cortex XSIAM and XSOAR, Cortex XDR, Microsoft Purview, Mimecast, Abnormal, Nessus, and Microsoft 365. You will participate in security investigations and incident response, responding to events involving malware, data loss, phishing, or network intrusion, and supporting our data protection and vulnerability management activity. You will ...

Global DFIR Director: Lead Cyber Incident Excellence

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
Group plc seeks a Director, Digital Forensics & Incident Response (Global) to lead the global DFIR capability, setting strategic direction and ensuring effective preparedness, response, recovery, and continuous improvement across cyber incident management and forensic investigations. The role requires driving operational excellence, collaborating with NCC Group leaders … expanding security services through incident response opportunities. #J-18808-Ljbffr ...

Infosec Analyst - Outside IR35 - up to £300 per day - 6 months

Hiring Organisation
Robert Walters
Location
Bootle, Merseyside, England, United Kingdom
Employment Type
Contractor
Contract Rate
£250 - £300 per day
Outside IR35) Contract: 6-month rolling contract Location: Liverpool (Hybrid) Keywords: Information Security, Cyber Security, ISO27001, NIST, Risk, Governance, Vulnerability Management, Incident Response, Outside IR35 A leading organisation within the transport and logistics sector is looking for an Information Security Analyst to join its Group IT function … bring Previous experience in an Information Security, Cyber Security or IT Security Analyst role. Strong understanding of security principles including risk management, vulnerability management, incident response and access control. Knowledge of security frameworks such as ISO 27001, NIST or Cyber Essentials . Experience with common security technologies such ...

Senior DFIR / Incident Response / Digital Forensics

Hiring Organisation
Jobleads-UK
Location
Knutsford, England, United Kingdom
Summary DFIR Lead Cyber Operations Analyst – a VP‐level role at the centre of Barclays’ cyber defence, delivering advanced digital forensics and incident response. The analyst will analyse malware, malicious samples, and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This … paced, high‐pressure environment. The role includes on‐call support rotation with occasional extended hours and weekend work as required. Qualifications Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with ...

Senior DFIR / Incident Response / Digital Forensics

Hiring Organisation
Jobleads-UK
Location
Knutsford, England, United Kingdom
DFIR Lead Cyber Operations Analyst , a VP-level role at the centre of the bank’s cyber defence, delivering advanced digital forensics and incident response. You will analyse malware, malicious samples and network activity to support complex investigations, working closely with internal teams, external partners and law enforcement. This … support may be required, including extended hours and weekend work. To be successful in this role, you will need the following: Digital forensics and incident response expertise, including host, network, cloud and live forensic analysis, supported by rigorous documentation practices. Excellent written and verbal communication skills, with ...

On-Call DFIR Lead - Cyber Operations & Incident Response

Hiring Organisation
Jobleads-UK
Location
Knutsford, England, United Kingdom
seeking a DFIR Lead Cyber Operations Analyst at VP level in Knutsford. In this key role, you will deliver advanced digital forensics and incident response while leading complex investigations. You will collaborate with internal teams and law enforcement, and produce clear reports under pressure. Ideal candidates will have ...

Senior DFIR & Incident Response Lead

Hiring Organisation
Jobleads-UK
Location
Knutsford, England, United Kingdom
looking for a DFIR Lead Cyber Operations Analyst, a VP-level role focused on cyber defense. This position demands expertise in digital forensics and incident response, and the ability to analyze malware and network activity while effectively communicating findings. The ideal candidate will excel under pressure, possess leadership ...

Infrastructure Engineer

Hiring Organisation
Nextech Group Limited
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£35,000
expected to independently manage monitoring platforms, triage and resolve incidents, validate backup operations across both cloud and on-premises environments, and provide meaningful first-response support for critical P1 and P2 incidents. You will work within a dedicated five-person team participating in a weekly on-call rota … provide 24x7 P1 incident response coverage. The role demands strong technical foundations across both Microsoft Azure and VMware virtualisation platforms, along with a disciplined approach to ITSM processes, documentation, and patching support. WHAT WE EXPECT Minimum of 3-5 years of experience in enterprise infrastructure support roles, ideally ...

Senior Information Security Analyst

Hiring Organisation
AJ BELL BUSINESS SOLUTIONS LIMITED
Location
Salford, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£75,000
focused on monitoring, analysing and responding to security threats, while driving continuous improvement across our security operations capability. Youll play a key role in incident response, threat intelligence, vulnerability management and ensuring effective use of our security tools and processes to reduce risk across the technology estate. ...

Security Cloud Engineer

Hiring Organisation
Stott & May Professional Search Limited
Location
Manchester, North West, United Kingdom
Employment Type
Contract
Contract Rate
£508 - £558 per day
workflows. * Ensure cloud environments align with security, governance, compliance, and software lifecycle standards. * Monitor cloud platforms using SIEM, cloud security, and observability tools. * Support incident, problem, and change management processes. * Work with containerised environments and infrastructure-as-code technologies. Essential Skills & Experience * Strong commercial experience with AWS, Azure … understanding of IAM, RBAC, encryption, cloud governance, and access management. * Experience working with Windows Server and Red Hat Linux environments. * Knowledge of SIEM platforms, incident response, and operational support processes. Desirable Skills * Experience working within regulated or financial services environments. * Relevant cloud certifications (AWS, Microsoft Azure, or Google ...

Junior Cyber Security Analyst

Hiring Organisation
The Portfolio Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£35000/annum
first security stack already in place, it is an exciting time to join the business and learn your craft as we mature our detection, response, and automation capabilities across a global estate. You will work alongside the wider IT team - Infrastructure, Network, Development, DevOps, and Service Desk - gaining … understanding of how security supports the business. The purpose of this role is to build a working knowledge of security operations, protective monitoring, and incident handling by working closely with, and learning from, the wider InfoSec team. Reporting to the Associate Director - Cyber Security, with day-to-day guidance ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
many of these technologies/areas as possible is highly desirable: Security Frameworks (NIST, CIS etc.) PAM Tools and Technologies AWS Security Incident Response Endpoint Security (including mobile devices, Windows and Linux) Job Benefits We have a high-performance culture which is balanced evenly with world-class well ...

Senior Site Reliability Engineer - Python

Hiring Organisation
Inspire People
Location
Salford, Lancashire, England, United Kingdom
Employment Type
Full-Time
Salary
£63,824 - £80,158 per annum, Pro-rata, Inc benefits
delivery of changes. Collaborate with product, delivery and architecture colleagues to ensure platform services meet user and business needs. Support live service operations, including incident response, troubleshooting and problem management. Share knowledge and provide coaching and mentoring across the engineering community. Contribute to improving security, resilience and compliance ...

Senior Site Reliability Engineer - Python

Hiring Organisation
Inspire People
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£80,000
delivery of changes. Collaborate with product, delivery and architecture colleagues to ensure platform services meet user and business needs. Support live service operations, including incident response, troubleshooting and problem management. Share knowledge and provide coaching and mentoring across the engineering community. Contribute to improving security, resilience and compliance ...

Cyber Security Engineer

Hiring Organisation
Erin Associates
Location
Altrincham, Cheshire, North West, United Kingdom
Employment Type
Permanent
Salary
£55,000
growing cyber security team based in Altrincham, South Manchester. You will play a key role in protecting critical systems, improving security posture, and supporting incident response across a modern hybrid IT environment. This is a hands-on technical role where youll work closely with infrastructure, cloud … respond to security alerts across SIEM and EDR platforms Manage and tune security tools including firewalls, WAFs, and endpoint protection Investigate and support response to security incidents Perform vulnerability assessments and remediation tracking Support implementation of security controls across cloud and on-prem environments Contribute to security policies, standards ...

Infrastructure Lead - Manchester

Hiring Organisation
Nextech Group Limited
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£65,000
through to a fix. You'll act as the technical authority for the operational team: taking ownership of complex incident resolution and root cause analysis, leading platform engineering and hardware lifecycle work, and mentoring Infrastructure Engineers as they develop their own skills. You're expected to be comfortable making … high-stakes calls under pressure during major incidents, and to drive resolution when nobody else can. Day to day, that means leading the technical response to P1 and P2 major incidents, managing Dell VxRail and VMware VCF platform lifecycle operations, overseeing Veeam backup architecture and Azure DR strategy ...

Platform Engineer

Hiring Organisation
Candour
Location
Liverpool, England, United Kingdom
/CD pipelines with blue-green, canary, and rolling deployments, including automated, zero-downtime database releases. Implement comprehensive monitoring, logging, alerting, and automated incident workflows with clear reporting. Strengthen cloud security posture (IAM, secrets, vulnerability scanning) and embed DevSecOps practices while maintaining PCI-DSS compliance. Drive reliability through SLIs …/SLOs, incident response, disaster recovery testing, and capacity planning for peak events. Optimise performance and cost across hybrid environments through right-sizing, forecasting, and resource governance. Apply AI-driven tooling for anomaly detection, operational optimisation, and compliance automation. Collaborate cross-functionally, maintain documentation, and promote DevOps best ...

Security Engineer

Hiring Organisation
Erin Associates
Location
Altrincham, Cheshire, North West, United Kingdom
Employment Type
Permanent
Salary
£55,000
growing cyber security team based in South Manchester. You will play a key role in protecting critical systems, improving security posture, and supporting incident response across a modern hybrid IT environment. This is a hands-on technical role where youll work closely with infrastructure, cloud, and SOC teams … respond to security alerts across SIEM and EDR platforms Manage and tune security tools including firewalls, WAFs, and endpoint protection Investigate and support response to security incidents Perform vulnerability assessments and remediation tracking Support implementation of security controls across cloud and on-prem environments Contribute to security policies, standards ...

Cloud Security Audit AVP

Hiring Organisation
Jobleads-UK
Location
Knutsford, England, United Kingdom
Experience in developing and executing assurance testing approaches for cloud environments in areas such as data security (including cryptography), security configuration, network security, cyber incident response, vulnerability management, cyber threat management, information risk management, data leakage protection, identity & access management, and cyber resilience. Knowledge of IT architecture ...

DevSecOps Engineer

Hiring Organisation
167 Solutions Ltd
Location
North West London, London, United Kingdom
Employment Type
Permanent
Salary
£90,000
vulnerability management, and compliance controls into engineering workflows. Collaborate with software development teams to improve secure coding practices. Develop and maintain monitoring, logging, and incident response automation. Support threat modelling and secure architecture reviews. Drive DevSecOps best practices across engineering teams. Contribute to platform engineering and cloud-native ...