1 to 25 of 106 Remote/Hybrid Incident Response Jobs in the South East

Incident Response Specialist

Location
Wokingham, England, United Kingdom
## Incident Response SpecialistApply: Warwick, CV34 6DA: Wokingham, RG41 5BN: Full time: Posted Today: End Date: October 7, 2026 (6 days left to apply): JR100833**About the Role**Exciting opportunity to join the **Security Incident Response Team**, part of the Security function within DD&T. … effectively respond to **cyber** and **physical** security incidents;* Mitigating potential **security threats** by identifying lessons learned and translating these into business improvements;* Developing Incident Response **readiness plans** and processes;* **Exercising** and **testing** to ensure NESO is prepared to respond to the security threats we face. The Incident ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Response Engineer 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Incident Response Manager/DFIR Manager

Hiring Organisation
Hays Specialist Recruitment Limited
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £115,000 per annum
Your new company You will join an established international cybersecurity services organisation providing digital forensics, incident response and post-breach support to clients worldwide. Operating through a global follow-the-sun model, the organisation is expanding its regional leadership capability in response to continued growth. This … remote UK role, with a preference for candidates based around London, Birmingham or Manchester and occasional client-site travel. Your new role As Incident Response Manager, you will lead complex DFIR engagements while managing and developing a regional team of approximately six to seven professionals. This ...

SOC - Cyber Threat Operations Specialist

Hiring Organisation
Certain Advantage
Location
Stevenage, Hertfordshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£85 per hour, Benefits Overtime Rate
ongoing and long-term thereafter) IR35 status: Inside IR35 (Umbrella) Cyber Threat Operations Specialist Job Description: An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting … cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment. Responsibilities: To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions ...

Senior Incident Response Lead — Rapid Response (Ransomware)

Location
Oxford, England, United Kingdom
Sophos is seeking an experienced Senior Incident Response Consultant to join our Incident Response (IR) team. You will lead incident response engagements for customers worldwide, guiding a team of consultants, conducting rapid responses, and delivering executive updates. You will have 5+ years ...

SecOps Engineering Lead

Location
Abingdon, England, United Kingdom
controls our Cyber Security Architect designs, and to lead security operations for our Azure-hosted, multi‐tenant SaaS platform: SOC engineering, detection and monitoring, incident response, and managing a team of three analysts. 60% of the role is engineering: putting Azure guardrails, SOC tooling, pipeline security tooling … platform hardening into production. The rest is running the SOC: keeping security observability controls healthy, improving detections, leading response, and developing the three analysts. You are expected to be a senior hands‐on practitioner in the team and the analysts' escalation point, so you are expected to troubleshoot ...

Senior Cyber Threat Intelligence Analyst

Location
Portsmouth, England, United Kingdom
could impact Babcock's people, information, systems, programmes and customers. You will transform complex threat data into actionable intelligence that supports proactive cyber defence, incident response, vulnerability management and risk reduction activities across the organisation. Day-to-day, you'll work closely with Security Operations, Incident Response … threat intelligence to support proactive cyber defence activities. Analysing threat actor activity, malware campaigns, phishing threats and emerging cyber risks. Collaborating with Security Operations, Incident Response and Security Assurance teams to improve cyber resilience. Creating high-quality intelligence assessments and reports that support business decision-making. Monitoring ...

Digital Forensics & Incident Response Analyst

Location
Maidenhead, England, United Kingdom
innovation, knowledge sharing, continuous improvement, and operational excellence. About the Role Join Maersk's Cyber team and play a key role in a modern incident management and response function that combines digital forensics, threat hunting, detection engineering, and cyber security improvement initiatives. This role offers the opportunity … contribute to complex investigations, strengthen response capabilities, and help shape the future of cyber defence within a globally recognised organisation. Key Responsibilities Conduct digital forensic investigations across endpoint, cloud, and OT environments to support incident response and recovery activities. Perform threat hunting and behavioural analysis to proactively ...

Senior Cyber Threat Detection and Response Analyst

Location
Portsmouth, England, United Kingdom
Title: Senior Cyber Threat Detection and Response Analyst Location: Any of our main UK locations+ Hybrid Working Arrangements Compensation: Competitive + Benefits Role Type: Full time/Permanent Role ID: SF75113 At Babcock we’re working to create a safe and secure world, together, and if you join … play your part as a Senior Cyber Threat Detection and Response Analyst at any of our main UK locations. The role As a Senior Cyber Threat Detection and Response Analyst, you’ll be a technical leader within our Cyber Security Operations capability, driving advanced threat detection, cyber defence ...

Senior Global Security Operations Centre Analyst

Hiring Organisation
Centrica - CHP
Location
Windsor, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Senior Global Security Operations Centre Analyst, you'll be the key technical escalation point between our Security Analyst team and the Cyber Security Incident Response Team (CSIRT), leading complex investigations and supporting the response to significant security incidents. Working across cloud, endpoint, identity, and network technologies … site. Day to day - Lead complex cyber security investigations across Centrica, acting as the primary technical escalation point within the GSOC and supporting incident response before escalation to CSIRT where required. Investigate and respond to threats across cloud, endpoint, identity, email, network and Operational Technology (OT) environments, assessing ...

Incident Response Lead – Cyber & Physical Security (Hybrid)

Location
Wokingham, England, United Kingdom
National Energy System Operator Limited is seeking an experienced Incident Response Specialist to join the Security Incident Response Team, working across cyber and physical security incident management. The role leads responses to high-priority incidents, triages events, and supports junior colleagues while coordinating with internal ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
take ownership of the engineering, administration, health and continuous improvement of the security platforms, detection content and automation that underpin threat monitoring, detection and incident response across my client's internal and managed customer environments. They will act as the final internal escalation point for complex and high … live incidents. Key Responsibilities Lead the end-to-end management of complex and high-severity security incidents, including investigation, containment, eradication, recovery and post-incident review. Conduct digital forensic investigations across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise ...

Cyber Security Manager

Location
Slough, England, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Threat Analyst 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies - including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Head of Information Security

Hiring Organisation
Picture More
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
assurance, while leading the continued development of its security capability. This is a broad leadership position covering everything from the outsourced SOC and incident response through to ISO 27001, Cyber Essentials Plus, cloud security, supplier assurance and the secure adoption of AI. What’s on offer: • Hybrid working … Develop and deliver the firm's cyber security strategy and maturity roadmap • Own and continuously improve security operations and the outsourced SOC • Lead cyber incident investigation and response • Oversee vulnerability management, penetration testing and remediation programmes • Maintain ownership of ISO 27001 and Cyber Essentials Plus • Establish security architecture ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Wadhurst, East Sussex, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Newport Pagnell, Buckinghamshire, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
cloud environment. This is not a traditional SOC role focused on alert handling . The position sits at the senior technical level and combines incident leadership, detection engineering, threat hunting and automation. You’ll have genuine ownership of security operations maturity rather than working in a ticket-driven environment. … senior technical point of escalation within the SOC, leading complex investigations and driving continuous improvement across tooling, detection capability and response processes. Typical responsibilities include: Leading complex security incidents end-to-end including investigation, containment, forensics and root cause analysis. Designing, tuning and improving detection across SIEM ...

Hybrid InfoSec Incident Response Analyst | Cloud Forensics

Location
Southampton, England, United Kingdom
Response. The role is hybrid with offices in London and Cardiff, requiring in-person collaboration at least one day per week and a strong incident response background. You will document incident notes, findings and containment steps, support tabletop exercises, and contribute to cloud forensics efforts across ...

Remote DevSecOps Engineer

Hiring Organisation
grabjobs
Location
Fordingbridge, Hampshire, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Remote DevSecOps Engineer

Hiring Organisation
Mbr Partners, Inc
Location
Sevenoaks, Kent, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Remote DevSecOps Engineer

Hiring Organisation
Mbr Partners, Inc
Location
Oxford, Oxfordshire, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...