oxford district, south east england, United Kingdom Hybrid / WFH Options
Lawrence Harvey
a pivotal role at the heart of a rapidly growing mobile-first payments solution organisation, where you can truly shape and affect how the incidentresponse is delivered. You would be reporting to the Security Operations Lead (who reports to the Head of Security) and will be working … responsibilities You will be responsible for building the infrastructure of a new in-house SOC, all the way through to conducting precise and robust incidentresponse against basic and advanced threat actors. You will be responsible for the automation workflow design and use case development. You will work … on the SIEM detection content development and false positive reduction. You will be in charge of robust and detailed incidentresponse to threats, investigation, and triage of day-to-day security events. Key requirements Experience in deploying security related IaC projects at scale. Familiarity with SOAR and optimisation More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
GCS
a robust threat-informed defence strategy. You'll also work collaboratively across teams to enhance our threat intelligence capabilities, inform vulnerability management, and strengthen incidentresponse readiness. Your role will involve maintaining threat actor profiles, managing intelligence feeds, supporting compliance, and shaping threat intelligence processes to align with … a Senior Cyber Threat Intelligence Analyst: Cyber Threat Assessment: Support and lead cyber threat assessments and provide recommendations to technical, managerial, and executive stakeholders. IncidentResponse Support: Act as part of the incidentresponse team where appropriate and deliver cyber intelligence insights during security events. Threat More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
a robust threat-informed defence strategy. You'll also work collaboratively across teams to enhance our threat intelligence capabilities, inform vulnerability management, and strengthen incidentresponse readiness. Your role will involve maintaining threat actor profiles, managing intelligence feeds, supporting compliance, and shaping threat intelligence processes to align with … a Senior Cyber Threat Intelligence Analyst: Cyber Threat Assessment: Support and lead cyber threat assessments and provide recommendations to technical, managerial, and executive stakeholders. IncidentResponse Support: Act as part of the incidentresponse team where appropriate and deliver cyber intelligence insights during security events. Threat More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Accelerant
aligned with best practices. Monitor and address emerging threats, vulnerabilities, and security trends, ensuring timely implementation of countermeasures. Perform vulnerability assessments, threat analysis, and incident response. Participate in Incidentresponse efforts by conducting log analysis, gathering evidence, and executing remediation tasks. Work closely with partners in infrastructure … such as AZ-500/AZ-700/AZ -305. Background in computer networking. Experience with a scripting language for task automation. Previous incidentresponse participation. Previous experience working as a security or infrastructure engineer in a cloud environment. Enjoy our comprehensive benefits package designed to meet More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Lawrence Harvey
in place, this is a relatively greenfield SOC buildout, where you will work alongside the SOC Manager to shape their SOC monitoring, detection and response function. Key Responsibilities: Act as a lead and technical escalation point on the most complex incidents and investigations. Work closely with Security Engineering team … to recommend system tuning/configuration improvements. Mentor and train junior team members through complex incidentresponse investigations. Key Requirements: Significant experience working in a SOC environment, dealing with and responding to escalated and most high profile incidents. Comprehensive knowledge of the Microsoft Security stack – Defender, Sentinel, etc … Knowledge of various IncidentResponse techniques and procedures. Experience working in hybrid-cloud SOC environments – Azure/AWS preferably. If you’re an experienced SOC Analyst, looking to shape how one of the most innovative Mobile Payments FinTech firms build out their cyber defence capability and leave a More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Intec Select
infrastructure. Role & Responsibilities: Monitor networks and systems for security breaches, intrusions, and abnormal system behavior Investigate security incidents, perform root cause analysis, and provide incidentresponse support Conduct regular vulnerability assessments and penetration testing; assist in remediation efforts Maintain and manage SIEM (Security Information and Event Management) tools More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Dynamic Search Solutions
based clients, this role also requires eligibility to obtain SC Clearance. Roles & Responsibilities Create, maintain, and optimise Logic Apps and Sentinel playbooks to automate incident detection and response workflows in Microsoft Sentinel. Develop and implement API integrations between Microsoft Sentinel and other systems to enhance data collection, cross … as expected, identifying opportunities for further improvements. Skills & Experience Hands-on experience with Microsoft Sentinel: proven track record in developing playbooks, automation workflows, and incidentresponse processes within Microsoft Sentinel. Experience in building and maintaining workflows with Azure Logic Apps to automate processes. Strong experience in API development More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Computer Futures / SThree Group
AWS Lambda and serverless design. Compliance Standards: Expertise in GDPR, HIPAA, SOC2, ISO 27001. Advanced Security Practices: Knowledge of zero-trust architecture and security incident response. Why Apply? Influence: Leadership role with the power to shape key architectural decisions. Innovation: Work on cutting-edge cloud technologies and large-scale More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Nationwide Building Society
a Senior IT Operations Manager within our 24x7 Enterprise Command Centre (ECC) . As part of the role you will act as a Major Incident Manager, leading our response to major incidents, ensuring minimal disruption to our customer and colleagues services. You’ll be the calm in the … present within the command centre is key to our success. About you As a minimum requirement you’ll: have extensive experience of Leading Major IncidentResponse - Taking command of major incidents, coordinating cross-functional teams to restore services swiftly and effectively. be highly effective at Stakeholder Communication - Acting More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Beazley Security
risk with quantifiable results. We’re comprised of top talent from private industry, government, intelligence, and law enforcement who are specialists in threat detection, incidentresponse, digital forensics, offensive security, risk management, and cyber resilience. As a subsidiary of specialty insurance giant, Beazley Insurance, we’ve been at … the forefront of cyber insurance management and breach response activities for business clients in the US, UK, and Europe since 2017. As Beazley Security, the company will have an expanded scope, leveraging nearly two decades of cyber incident experience, a strong services division, and a business strategy focused More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
Implement and ensure compliance with Group Policy Objects (GPOs) and security standards. Conduct regular AD audits and health checks to ensure robust monitoring and incidentresponse capabilities. Supplier and Stakeholder Management Manage third-party supplier relationships, ensuring adherence to Service Level Agreements (SLAs) and the delivery of value. More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Cloud Decisions
development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incidentresponse or DFIR is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel (KQL More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Durlston Partners
Collaborate with developers and traders to optimise infrastructure, troubleshoot issues, and deploy production-ready tooling Write automation and internal tools for deployment, monitoring, and incidentresponse Tune performance across OS, network, and cloud layers — this role is hands-on and detail-oriented Improve system resilience, observability, and security More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
eMFusion Global
2026. Key Requirements Strong software engineering experience, ideally in Java (Spring Boot) and Python Proven background in SRE practices, including platform reliability, monitoring, and incidentresponse Ability to debug and resolve issues directly in production code Solid experience with Kubernetes , AWS , CI/CD pipelines , and observability tools More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
bet365
maintain the Company’s competitive edge. Guiding the creation and maintenance of advanced tools and scripts for real-time detection, threat analysis, and rapid incident response. By applying to us you are agreeing to share your Personal Data in accordance with our Recruitment Privacy Policy which can be found More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Signify Technology
and establish roadmap Architect and implement reliable platform features at scale for hundreds of thousands of users daily Build proactive monitoring, alerting, and rapid incidentresponse processes Balance feature development with technical debt reduction Integrate new AI-driven capabilities to enhance security and user experience What you’ll More ❯
oxford district, south east england, United Kingdom Hybrid / WFH Options
Context Recruitment
security operations at scale. A key position within a world-class MSSP, leveraging Microsoft Sentinel, Defender for Endpoint, and KQL to enhance threat detection, response, and security automation. Responsibilities include developing automated security workflows, streamlining investigations, and advancing proactive defense strategies. Key Responsibilities: Design and implement automation workflows within … proficiency in KQL for deep threat hunting and security analytics. Knowledge of SIEM automation, playbooks, and integrations. Experience in cybersecurity operations, threat detection, and incident response. Passion for security automation and proactive cyber defense strategies. Paying up to 60k + on-call (65k total package) Remote based Must be More ❯