26 to 50 of 239 Incident Response Jobs in the South East

Advisory PSIRT Engineer

Location
Farnborough, England, United Kingdom
more visit www.lenovo.com , and read about the latest news via our StoryHub . Description and Requirements TheProduct Security Advisory Engineerwithin Lenovo’sEnterprise Product Security Incident Response Team (E-PSIRT)is the central operational orchestrator for vulnerability management across Lenovo’s global product portfolio. This critical role coordinates product … evaluated, remediated, and disclosed. Additionally, this position plays a pivotal role in supporting Lenovo’sCyber Resilience Act (CRA)compliance, vulnerability reporting readiness, and regulatory response activities. Key Responsibilities Vulnerability Assessment & Triage: Evaluate product security vulnerabilities, exploits, and incidents from external researchers, threat intelligence, public disclosures, and internal testing ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Cyber Security Analyst

Location
Southampton, England, United Kingdom
service delivery, project and business teams, as well as approved third parties and wider group IT functions. Main Duties and Responsibilities Security operations and incident response Perform day‐to‐day monitoring and proactive management of cyber security systems, alerts and associated components. Triage, investigate and coordinate the resolution … security incidents, escalating material risks in line with the incident and major incident processes. Act as a central point of contact for operational cyber security activity and provide clear updates to technical teams, stakeholders and management. Maintain appropriate incident records, evidence, lessons learned and follow‐up actions. ...

Threat Analyst 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies - including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Head of Information Security

Hiring Organisation
Picture More
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
assurance, while leading the continued development of its security capability. This is a broad leadership position covering everything from the outsourced SOC and incident response through to ISO 27001, Cyber Essentials Plus, cloud security, supplier assurance and the secure adoption of AI. What’s on offer: • Hybrid working … Develop and deliver the firm's cyber security strategy and maturity roadmap • Own and continuously improve security operations and the outsourced SOC • Lead cyber incident investigation and response • Oversee vulnerability management, penetration testing and remediation programmes • Maintain ownership of ISO 27001 and Cyber Essentials Plus • Establish security architecture ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Wadhurst, East Sussex, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

Remote Head of DevOps

Hiring Organisation
grabjobs
Location
Newport Pagnell, Buckinghamshire, UK
secrets management and infrastructure provisioning. Service Reliability: Define and implement SLIs, SLOs, and SLAs to ensure the stability and performance of critical services. Observability & Incident Management: Oversee the full monitoring stack and establish formal incident response and post-mortem processes. Security & Compliance: Enforce "security by design … problem-solving. Skills: Platform Engineering: Building developer-centric tools to increase engineering velocity. Cloud Governance: Managing multi-provider cloud footprints and resource optimisation. Incident Response: Leading high-pressure incident resolution and system recovery. Mentorship: Coaching senior engineers and developing future technical leaders. Process Design: Crafting standardised, scalable ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
cloud environment. This is not a traditional SOC role focused on alert handling . The position sits at the senior technical level and combines incident leadership, detection engineering, threat hunting and automation. You’ll have genuine ownership of security operations maturity rather than working in a ticket-driven environment. … senior technical point of escalation within the SOC, leading complex investigations and driving continuous improvement across tooling, detection capability and response processes. Typical responsibilities include: Leading complex security incidents end-to-end including investigation, containment, forensics and root cause analysis. Designing, tuning and improving detection across SIEM ...

Security Architect - DV Cleared

Hiring Organisation
Sanderson Government and Defence
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
frameworks Cyber Threat & Risk Management Assess cyber threat landscape and design threat-informed security architectures Lead security risk assessments and vulnerability management programmes Design incident response, threat intelligence and cyber defence capabilities Architect security monitoring, detection and response solutions Design business continuity and cyber resilience frameworks Compliance … architecture role Proven experience designing enterprise-scale security architectures Strong background in defence, aerospace or government security programmes Demonstrated expertise with security operations, incident response and threat management Track record of leading security transformation and programme implementations Technical Knowledge Deep expertise in security architecture frameworks, methodologies and best ...

Security Architect - DV Cleared Security Architect – DV Cleared

Hiring Organisation
Sanderson Recruitment
Location
Aldershot, Hampshire, United Kingdom
Salary
£ 70 K
models and continuous verification frameworksCyber Threat & Risk ManagementAssess cyber threat landscape and design threat-informed security architecturesLead security risk assessments and vulnerability management programmesDesign incident response, threat intelligence and cyber defence capabilitiesArchitect security monitoring, detection and response solutionsDesign business continuity and cyber resilience frameworksCompliance & Standards ImplementationEnsure security … with 5+ years in architecture roleProven experience designing enterprise-scale security architecturesStrong background in defence, aerospace or government security programmesDemonstrated expertise with security operations, incident response and threat managementTrack record of leading security transformation and programme implementationsTechnical KnowledgeDeep expertise in security architecture frameworks, methodologies and best practicesExpert-level ...

Hybrid InfoSec Incident Response Analyst | Cloud Forensics

Location
Southampton, England, United Kingdom
Response. The role is hybrid with offices in London and Cardiff, requiring in-person collaboration at least one day per week and a strong incident response background. You will document incident notes, findings and containment steps, support tabletop exercises, and contribute to cloud forensics efforts across ...

Senior SOC Analyst

Hiring Organisation
Network IT
Location
Hanslope, Buckinghamshire, United Kingdom
Employment Type
Permanent
Salary
GBP 75 Hourly
intelligence to determine the nature and severity of security events. Escalate indicators confirmed or suspected cyber security incidents to the Lead SOC Analyst or Incident Responder team in accordance with established operational procedures. Support Incident Responders by providing accurate analytical findings, supporting evidence, timelines and technical information throughout … incident investigations. Contribute to the continual improvement of monitoring capability by identifying opportunities to improve alert quality, investigation processes, monitoring coverage and detection effectiveness. Validate new monitoring content, detection rules and operational procedures before deployment into the live SOC environment. Assist in the onboarding of new systems, cloud services ...

Remote DevSecOps Engineer

Hiring Organisation
grabjobs
Location
Fordingbridge, Hampshire, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Remote DevSecOps Engineer

Hiring Organisation
Mbr Partners, Inc
Location
Sevenoaks, Kent, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Remote DevSecOps Engineer

Hiring Organisation
Mbr Partners, Inc
Location
Oxford, Oxfordshire, UK
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise. The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Senior Threat Detection & Response Lead (Hybrid UK)

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Detection and Response Analyst to lead advanced threat detection, cyber defence, incident response and proactive threat hunting across our UK locations with hybrid working. You will work with specialist teams, influence security strategy and protect critical business operations. This … senior role requires extensive experience in cyber security operations, incident response and threat detection, with strong knowledge of SIEM/EDR and MITRE #J-18808-Ljbffr ...

Senior SOC Analyst

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£55,000
help protect systems that matter. Apply today and take your cyber security career to the next level. If you're passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need … triage and investigate security incidents across critical client environments. Analyse network traffic, logs and security events to identify threats and vulnerabilities. Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed ...

Senior Security Operations Centre Analyst

Location
Farnborough, England, United Kingdom
capabilities, develop your expertise, and work with cutting-edge security technologies in a fast-paced operational environment. If you’re passionate about threat detection, incident response, and staying one step ahead of attackers, we'd love to hear from you. Office based: Farnborough. Clearance: You do need … triage and investigate security incidents across critical client environments. Analyse network traffic, logs and security events to identify threats and vulnerabilities. Lead and support incident response activities, providing expert guidance on containment, eradication and recovery. Enhance detection rules and use cases using MITRE ATT&CK and threat-informed ...

SOC Subject Matter Expert (UK)

Location
Horsham, England, United Kingdom
Their primary responsibility lies in translating SOC analyst pain points, workflows, and use cases into actionable product features, with particular focus on alert/incident prioritisation and intelligent playbook execution that helps analysts make critical security decisions. Their responsibilities will include: Providing expert SOC operational guidance to product management … operational needs. Translating SOC analyst pain points, workflows, and use cases into actionable product features and user stories. Designing and validating alert prioritisation algorithms, incident triage workflows, and automated playbook logic based on operational experience. Collaborating with product managers to shape product strategy, roadmap priorities, and feature definitions. Conducting ...

Security Engineer

Hiring Organisation
Reed
Location
Redhill, Surrey, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £52,500 per annum, Inc benefits
customer-facing network environments. This is an excellent opportunity for a cybersecurity professional who enjoys working across network security, threat management, vulnerability assessment and incident response within a technically challenging environment. The Role As a Security Engineer, you'll play a key role in maintaining, improving and protecting … development of security policies, procedures and standards Providing cybersecurity guidance to engineering and IT teams Maintaining SIEM, IDS and IPS technologies Contributing to incident response and security management processes Producing technical documentation and security reports Supporting continuous improvement of network and information security controls About ...

Cybersecurity Engineer - £495pd - Outside IR35 - Surbiton, Surrey (Hybrid)

Hiring Organisation
Exalto Consulting
Location
Surbiton, Surrey, St. Mark's, Greater London, United Kingdom
Employment Type
Contract
Contract Rate
£490 - £495/day £495pd, Outside IR35
deployment, testing, go-live and ongoing operational support. Work with technical and non-technical stakeholders to deliver secure and practical outcomes. Support security monitoring, incident response and continuous improvement initiatives. Contribute to security architecture reviews and technology roadmap discussions. Ensure security controls remain effective across both cloud … Microsoft Purview and Data Loss Prevention (DLP) implementation and enhancement. Ongoing development of Microsoft 365 and Azure security controls. Improvements to monitoring, detection and response capabilities across the security estate. What We're Looking For We're interested in speaking with candidates who can demonstrate experience of: Assessing technical ...

Senior DFIR Analyst - Threat Hunting & Incident Response

Location
Maidenhead, England, United Kingdom
A.P. Moller - Maersk in Maidenhead, United Kingdom, is seeking an experienced Digital Forensics & Incident Response Analyst. You will investigate across Windows, Linux, cloud and OT, supporting triage through post-incident review in a hybrid, full-time role. The ideal candidate brings enterprise-scale DFIR experience, strong artefact ...

Senior SOC Analyst

Location
Southampton, England, United Kingdom
improve detection capabilities and contribute to the ongoing maturity of the SOC. You will also: Monitor and investigate security events across enterprise environments Perform incident response activities and support remediation efforts Analyse network traffic, endpoint activity and system logs Improve detection rules using MITRE ATT and CK techniques … desirable Python, PowerShell or other scripting experience would be advantageous Key Skills SOC Analyst, Senior SOC Analyst, Security Operations Centre, Microsoft Sentinel, Splunk, SIEM, Incident Response, Threat Detection, Cyber Security, MITRE ATT and CK, Blue Team, NSD #J-18808-Ljbffr ...

Cyber Security Manager

Hiring Organisation
SAAB
Location
Fareham, Hampshire, United Kingdom
Salary
£ 70 K
wider government standards.Act as the Saab UK representative on the Global Cyber Council.Lead risk assessments, threat modelling, and vulnerability management within Saab Uk process.Manage incident response and coordinate with other company parties.Lead on the compliance of Cyber controls including DefStan 05-138, ISO 27001, NIST.Responsible for the completion … environments.Strong knowledge of classified information handling and secure communication protocols.Expertise in intrusion detection, SIEM tools, and advanced threat intelligence systems.Proven track record of leading incident response in high-security environments.Familiarity with defence-specific compliance frameworks (MOD JSPs, NIST SP 800 series, ITAR, GDPR).Excellent leadership, stakeholder management ...

Security & Network Engineer - 12 months Fixed term

Hiring Organisation
Techtronic Industries - Europe HQ
Location
Maidenhead, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
/CD pipelines Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones) Manage incident response for critical infrastructure events; lead post-mortems and remediation Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security … configuration management (Ansible, etc.) Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable) Strong incident response and troubleshooting background; comfort operating in high-pressure environments Experience mentoring junior/mid-level engineers and building security culture within technical teams Desirable ...