51 to 75 of 236 Incident Response Jobs in the North of England

SOAR Playbook Engineer

Location
Manchester, England, United Kingdom
optimise security automation solutions using Splunk SOAR and similar automation platforms. Your primary focus is playbook engineering, Python development, API integrations, and automated incident response workflows. In addition to automation engineering, you are responsible for deploying, maintaining and continuously improving MXDR solutions for our customers. You assess customer … learning are essential. We are looking for someone with experience across MXDR technologies, as well as a solid understanding of security monitoring, detection engineering, incident response, and platform integrations. As a customer-facing professional, you should be confident engaging with stakeholders at all organisational levels, both remotely ...

Head of Engineering | Engineering Manager

Location
Manchester, England, United Kingdom
engineering authority, ensuring statutory, process safety and engineering compliance across plant, utilities, equipment and facilities. Maintain safe, reliable operations by balancing planned maintenance, emergency response and emerging production priorities. Ensure that all statutory regulations (PSSR, PUWER, LOLER, PED, DSEAR/ATEX, L8) are complied with and that management systems … building fabric and infrastructure, including workspace planning and site security arrangements. Provide Engineering input to Site emergency arrangements as a member of the Site Incident Response Team. Provide Engineering support to due diligence, feasibility and integration activity for site expansion and acquisition. Work with Global Engineering functions ...

Security Consultant (Supply Chain)

Location
Manchester, England, United Kingdom
responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you'll operate at the intersection of threat intelligence, incident response and supplier risk. You'll use data, tooling and insight to detect and analyse threats, translating complex findings into clear, actionable advice that … security is designed, embedded and continuously improved. You'll play a key role in strengthening our approach to supply chain threat management-supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you'll operate within agile ways of working and explore ...

On-Call DFIR Lead - Cyber Operations & Incident Response

Location
Knutsford, England, United Kingdom
seeking a DFIR Lead Cyber Operations Analyst at VP level in Knutsford. In this key role, you will deliver advanced digital forensics and incident response while leading complex investigations. You will collaborate with internal teams and law enforcement, and produce clear reports under pressure. Ideal candidates will have ...

Cyber & IT Security Officer: Incident Response & Monitoring

Location
Liverpool City Region, England, United Kingdom
site in Merseyside with an initial on-site week and a requirement to be on site once a week thereafter. The position focuses on incident response, threat monitoring, and information governance, partnering with #J-18808-Ljbffr ...

Security Detection & Response II

Hiring Organisation
Bank of America
Location
Chester, Cheshire, UK
Employment Type
Full-time
Description: Job Title: Security Detection & Response II Corporate Title: Up to Vice President Location: Chester Company Overview: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering … rolling North Wales hills and the banks of the serene River Dee. Role Description: We are seeking an experienced and motivated Security Detection & Response Analyst (SDR II) to join the GIS Monitoring and Triage team. This role supports cybersecurity operations across threat detection, investigation, response, and continuous service ...

Security Incident Management Analyst x 3

Location
Preston, England, United Kingdom
Security Incident Management Analyst x 3 Job type: Contract Town/City: Preston County: Lancashire Business Sector: IT Job ref: LFI 155013 Post Date: September 29, 2026 Security Incident Management Analyst (x3) Onsite in Inverness or Preston Active SC clearance We are looking for Security Incident Management … effectively tracked, escalated, reported and evidenced. Key responsibilities: Track security incidents from identification through to closure Monitor SLAs, resolution performance and escalation trends Produce incident reports, dashboards and governance packs Identify gaps in supplier reporting, ownership and evidence Support incident governance and operational review forums Maintain accurate, traceable ...

Security Incident Management Analyst x 3

Hiring Organisation
CBSbutler Holdings Limited trading as CBSbutler
Location
Preston, Lancashire, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £500/day
Security Incident Management Analyst (x3) Onsite in Inverness or Preston £450 per day (negotiable) inside ir35 6 months duration Active SC clearance We are looking for Security Incident Management Analysts to join a major secure programme, supporting the governance and coordination of security incidents across a complex multi … security stakeholders to ensure incidents are effectively tracked, escalated, reported and evidenced. Key responsibilities: Track security incidents from identification through to closure Coordinate incident updates across multiple suppliers Monitor SLAs, resolution performance and escalation trends Produce incident reports, dashboards and governance packs Identify gaps in supplier reporting, ownership ...

Senior SOC Analyst - Leeds

Location
Leeds, England, United Kingdom
/7 operation with four shift teams working in a standard rotation. They are responsible for utilising the SOC’s Security Incident and Event Management (SIEM) toolsets to detect and investigate potential Security and Service Incidents occurring within the monitored networks. These roles require a minimum of SC clearance … using the Protective Monitoring platform and Internet resources to identify cyber-attacks/security incidents. Categorise all suspected incidents in line with the Security Incident policy Recognise potential, successful and unsuccessful intrusion attempts and compromises through reviews and further analysis of relevant event detail and incident summary information. ...

Senior SOC Analyst - Manchester

Location
Manchester, England, United Kingdom
/7 operation with four shift teams working in a standard rotation. They are responsible for utilising the SOC’s Security Incident and Event Management (SIEM) toolsets to detect and investigate potential Security and Service Incidents occurring within the monitored networks. These roles require a minimum of SC clearance … using the Protective Monitoring platform and Internet resources to identify cyber-attacks/security incidents. Categorise all suspected incidents in line with the Security Incident policy Recognise potential, successful and unsuccessful intrusion attempts and compromises through reviews and further analysis of relevant event detail and incident summary information. ...

Security Detection & Response Specialist

Location
Chester, England, United Kingdom
Description: Job Title: Security Detection & Response Specialist Corporate Title: Up to Assistant Vice President Location: Chester Company Overview : At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth … rolling North Wales hills and the banks of the serene River Dee. Role Description: We are seeking a motivated and analytically driven Security Detection & Response Analyst (SDR) to join the GIS Monitoring and Triage team. This role supports cybersecurity operations across threat detection, investigation, response, and continuous service ...

Infrastructure Engineer

Location
Manchester, England, United Kingdom
expected to independently manage monitoring platforms, triage and resolve incidents, validate backup operations across both cloud and on-premises environments and provide meaningful first-response support for critical P1 and P2 incidents. You will work within a dedicated five-person team participating in a weekly on-call rota … provide 24×7 P1 incident response coverage. The role demands strong technical foundations across both Microsoft Azure and VMware virtualization platforms along with a disciplined approach to ITSM processes, documentation, and patching support. . What we expect · Minimum of 3–5 years of experience in enterprise infrastructure support ...

SOC Shift Lead

Hiring Organisation
Claranet Limited
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
met. Objectives & Key Results Key Responsibilities Shift Leadership and Team Coordination – You run shift operations, ensuring compliance with SLAs and maintaining high-quality incident handling. You set shift agendas, balance workloads, and promptly address any process or staffing issues. You also maintain effective, customer-centric communication with internal teams … including Security Optimisation and Engineering), customers, and their incident response partners Incident Triage and Investigation – You review and prioritise new alerts, taking initial ownership of high-priority or complex incidents, and ensure proper escalation to customers and Senior SOC Analysts. You make sound, data-driven decisions ...

Information Security Analyst

Location
Liverpool, England, United Kingdom
management, investigation and coordination of security alerts, incidents and vulnerabilities, working with our managed Security Operations Centre and internal teams to ensure effective response and remediation. Own the tracking and follow‐up of vulnerabilities, control gaps and remediation actions, helping to drive measurable security improvement across the Club. Conduct … technical and professional security skills. Desirable Technical Knowledge Microsoft 365 security technologies and the wider Microsoft E5 security ecosystem. SIEM, SOAR, endpoint detection and response, identity protection and cloud security technologies. Azure, AWS or similar cloud platforms, including cloud security posture, logging, monitoring and access control concepts. Email security ...

Cyber Security Manager - Operations

Location
Bradford, England, United Kingdom
maintaining a strong and secure environment for Morrisons’ systems and customer data. You’ll be responsible for: Leading security operations, including threat monitoring and incident response Working closely with internal teams and third party partners to ensure effective controls are in place Managing and optimising operational tools … technologies Producing reports on security events, trends, and response actions Supporting wider security programmes and continuous improvement initiatives Success looks like: Threats are identified and addressed quickly Supplier performance and SLAs are well managed Security operations run smoothly, and stakeholders trust your leadership More about You You’re experienced ...

SOC Analysts - L2 and L3 (SC and DV-Cleared)

Hiring Organisation
Pigment Consulting
Location
Manchester, North West, United Kingdom
Employment Type
Contract
Investigation of phishing, malware, credential compromise and suspicious activity. Supporting containment, eradication and recovery. Developing and improving detection rules and playbooks. Producing high-quality incident documentation and reports. Supporting and mentoring Tier 1 analysts. Tier 3 SOC Analyst As a Tier 3 Analyst, you'll provide advanced technical investigation … senior escalation point for complex incidents. Responsibilities include: Leading complex and high-severity security investigations. Advanced threat hunting and incident response. Malware, endpoint, network and forensic investigation. Developing advanced detections and response capabilities. Root-cause analysis and post-incident investigation. Supporting major incident response. Working closely ...

Lead Azure Engineer

Location
Sheffield, England, United Kingdom
applicable, and dependency scanning. Drive observability and production excellence by implementing logging, metrics, and tracing, creating actionable alerts, defining SLOs and SLIs, and leading incident response and post‐incident improvement activities. Embed security by design through secure coding practices, threat modelling, role‐based access control and least ...

Security Operations Engineer

Location
Hessle, England, United Kingdom
third-party SOC vendor. Triage, analyse and prioritise alerts, incidents, escalations, and investigations - validating severity, business impact, and regulatory implications of incidents Co-ordinate incident management and response activities aligned with defined policies, standards, and framework requirements by being the internal response facilitator and co-ordinator … operations. Skills, Qualifications, And Experience Previous hands-on experience in cybersecurity operations or security engineering roles. Experience of security monitoring, threat detection, incident response, and threat hunting methodologies. Strong working knowledge of endpoint security, identity and access management, authentication controls, privileged access management, and security hardening standards incl. ...

Platform Engineer

Location
Leeds, England, United Kingdom
compliance evidence against the firm’s obligations (SOC 2, ISO 27001, GDPR, DORA). Contribute to observability and monitoring across the estate, and to incident response and on-call, including troubleshooting and root cause analysis that drives systemic improvement. Support disaster recovery testing to validate recovery plans … integrating AI or agentic tooling into engineering workflows (e.g. IaC generation, automated remediation, or documentation). Exposure to compliance‐evidence or governance tooling and incident‐management tooling. Additional Information This is a hybrid role, with attendance at our Leeds office once a month. Participation in the on‐call rota ...

Senior Information Security Analyst

Location
Manchester, England, United Kingdom
blended technical security and governance role. One day you could be investigating an alert within our SIEM or responding to a security incident; the next, you could be assessing a supplier, supporting an ISO 27001 audit or discussing a control decision with senior stakeholders. … genuine risk from noise, make sound decisions and help us continuously improve rather than simply identify problems. What You’ll be Doing Security Operations & Incident Response Managing day-to-day security alerts, requests and tickets through to resolution, ensuring SLAs are achieved. Acting as a senior responder ...

IT Security Analyst

Hiring Organisation
Harvey Nash
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
improvement across the security landscape. Working closely with senior security stakeholders, you'll take ownership of key security controls, identify opportunities for enhancement, support incident response activities and help embed a strong security culture across the organisation. Key Responsibilities * Manage and enhance Microsoft security, compliance and data protection … access control (RBAC), access reviews and Joiner-Mover-Leaver processes. * Identify security risks, vulnerabilities and control gaps, driving remediation activity where required. * Support security incident investigations, coordination, reporting and escalation. * Assist with audits, compliance activities and the maintenance of security control evidence. * Produce meaningful security reporting and insights ...

LEAD DATA SCIENTIST

Hiring Organisation
EUROPEAN SOFTWARE SOLUTIONS (UK) LIMITED
Location
Leeds, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
£500 per day
streaming, ETL/ELT, batch and real-time pipelines, data contracts, lineage, cataloguing, quality rules, and scalable cloud storage. Cybersecurity: SOC workflows, threat hunting, incident response, detection engineering, vulnerability and exposure management, IAM/PAM, Zero Trust, cloud security, and security control mapping. Security standards: Practical … service accounts, roles, entitlements, devices, applications, and cloud resources. Threat-intelligence fusion linking indicators, malware, campaigns, threat actors, observed telemetry, vulnerabilities, and affected assets. Incident investigation timelines, alert correlation, root-cause analysis, blast-radius assessment, and recommended containment evidence. Risk-based vulnerability prioritization using exploit context, asset criticality, exposure ...

IT Security Analyst

Location
Manchester, England, United Kingdom
security or information security role Strong understanding of information security principles and risk management Hands-on experience with security monitoring and incident response Knowledge of Microsoft 365 and cloud security controls (e.g. Azure AD, Defender) Familiarity with regulatory and compliance requirements Ability to communicate technical risks clearly ...

Network Security Engineer

Location
Knutsford, England, United Kingdom
operational efficiency. Security Operations & Risk Management Monitor and analyse browser security events, policy violations and suspicious user activity to support threat detection and incident response activities. Support investigations involving browser session activity, data protection events and secure application access controls. Monitor, analyse, and respond to network security incidents … vulnerabilities, and emerging threats. Support threat detection, containment, remediation, and post‐incident reviews. Ensure network security controls remain effective, compliant, and aligned with evolving cyber threats. Conduct security assessments, rule reviews, and network segmentation activities. Security Architecture & Standards Ensure network architectures comply with security standards, secure‐by‐design principles ...

Senior Cloud Security Engineer

Hiring Organisation
Hays
Location
Stockport, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
configuration of security tooling across the cloud environments, contributing to wider Information Security initiatives and projects Proactively monitor security systems and tools, leading the response to security incidents and issues; support investigations and incident response, including participation in an on-call security rota when required Communicate clearly ...