1 to 25 of 29 Remote/Hybrid Incident Response Jobs in the Thames Valley

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Security analyst - Sector security

Location
Oxford, England, United Kingdom
users across universities, colleges and research organisations. Combining cutting-edge security technologies, threat intelligence and specialist expertise, we provide 24/7 protection, rapid incident response and advanced threat detection to help our members stay secure and resilient. Security Centre brings together Cyber Security Incident Response (CSIRT), Digital Forensics and Incident Response (DFIR), SIEM Analysts and Network Defensive Services specialists. Working at the forefront of cyber defence, we identify and respond to threats, support organisations through cyber incidents, conduct threat hunting activities and continuously evolve our capabilities to stay ahead of emerging risks. ...

Senior Incident Response Lead — Rapid Response (Ransomware)

Location
Oxford, England, United Kingdom
Sophos is seeking an experienced Senior Incident Response Consultant to join our Incident Response (IR) team. You will lead incident response engagements for customers worldwide, guiding a team of consultants, conducting rapid responses, and delivering executive updates. You will have 5+ years ...

Digital Forensics & Incident Response Analyst

Location
Maidenhead, England, United Kingdom
innovation, knowledge sharing, continuous improvement, and operational excellence. About the Role Join Maersk's Cyber team and play a key role in a modern incident management and response function that combines digital forensics, threat hunting, detection engineering, and cyber security improvement initiatives. This role offers the opportunity … contribute to complex investigations, strengthen response capabilities, and help shape the future of cyber defence within a globally recognised organisation. Key Responsibilities Conduct digital forensic investigations across endpoint, cloud, and OT environments to support incident response and recovery activities. Perform threat hunting and behavioural analysis to proactively ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
take ownership of the engineering, administration, health and continuous improvement of the security platforms, detection content and automation that underpin threat monitoring, detection and incident response across my client's internal and managed customer environments. They will act as the final internal escalation point for complex and high … live incidents. Key Responsibilities Lead the end-to-end management of complex and high-severity security incidents, including investigation, containment, eradication, recovery and post-incident review. Conduct digital forensic investigations across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise ...

Cyber Security Manager

Location
Slough, England, United Kingdom
complex security concepts to technical and non-technical audiences Advising on security architectures, controls and technologies Developing cyber security strategies and implementation roadmaps Supporting incident response and business continuity planning Applying frameworks including NIST, ISO 27001, CIS and CAF Providing specialist advice across complex Defence and Government environments … Security environments Knowledge of security frameworks including NIST, ISO 27001, CIS or CAF Experience within areas such as security architecture, cyber risk, vulnerability management, incident response, security monitoring or threat intelligence Strong stakeholder management and client-facing communication skills Understanding of network security, encryption, authentication and access controls ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Senior SOC Analyst

Hiring Organisation
Hays Specialist Recruitment Limited
Location
Milton Keynes, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
£73.00 per hour
cyber events, suspicious activity and indicators of compromise. Independently investigate security alerts and complex cyber events. Assess the significance, potential impact and appropriate response to identified threats. Correlate information from multiple technical sources to establish attack timelines and identify affected systems. Analyse indicators of compromise, attacker techniques and threat … intelligence. Escalate confirmed or suspected incidents to the Lead SOC Analyst or Incident Response team. Provide Incident Responders with accurate findings, evidence, timelines and technical information. Validate monitoring content, detection rules and operational procedures before live deployment. Support the onboarding of new systems, applications and cloud services ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
cloud environment. This is not a traditional SOC role focused on alert handling . The position sits at the senior technical level and combines incident leadership, detection engineering, threat hunting and automation. You’ll have genuine ownership of security operations maturity rather than working in a ticket-driven environment. … senior technical point of escalation within the SOC, leading complex investigations and driving continuous improvement across tooling, detection capability and response processes. Typical responsibilities include: Leading complex security incidents end-to-end including investigation, containment, forensics and root cause analysis. Designing, tuning and improving detection across SIEM ...

IT Systems Engineer

Location
Kidlington, England, United Kingdom
corporate IT environment Support vulnerability remediation, endpoint security and technical cyber security controls Take an active role in security monitoring, vulnerability management and incident response Support the development of internal security operations capability as the UK IT function matures Contribute to the design and implementation of secure … with endpoint security, vulnerability remediation and patch‐management tooling Good understanding of cloud platforms, particularly Microsoft Azure Experience with security monitoring, vulnerability management or incident response Familiarity with SIEM, EDR/XDR or SOC tooling Strong troubleshooting, documentation and communication skills Qualifications Relevant degree, technical qualification, apprenticeship ...

Staff Site Reliability Engineer

Hiring Organisation
Genomics
Location
Oxford, United Kingdom
petabyte scale — sharding and replication, materialised views, merge and query optimisation, tenant isolation and cost/performance trade-offs.Owning SLOs, observability, capacity planning and incident response for data-intensive systems and pipelines, alongside the orchestration and job execution that power them.Shaping Data-as-a-Service as a real … black box — and ideally have contributed code upstream.Reliability engineering for data platforms. You bring true SRE discipline — SLOs, observability, capacity planning and incident response — to analytical data systems and pipelines.Data-as-a-Service productisation. You think in terms of data as a product: secure, multi-tenant, immutable releases ...

Chief Information Security Officer

Hiring Organisation
FCDO Services
Location
Milton keynes, United Kingdom
bring a broad range of experience gained in a Deputy CISO, Head of Cyber Security or equivalent role. This could include working in incident response, SOC, security architecture, vulnerability and compliance, governance or risk. Preferably, you’ll have experience of working in both the public and private sectors … competencies are included in an extract from the Government Security Profession, provided in a separate document.)o Applied Security Capabilityo Cyber Security Operationso Incident Management, Incident Investigation and Responseo Information Risk Assessment and Risk Managemento Risk Understanding and Mitigationo Security Architecture:o Threat Intelligence and Threat Assessmento Threat ...

Remote Digital Forensics & Incident Response Lead

Location
Maidenhead, England, United Kingdom
Maersk's Cyber team invites an experienced security professional to join a modern incident management and response function, combining digital forensics, threat hunting, detection engineering, and cyber security improvement. You will investigate complex incidents across endpoints, cloud, and OT, deliver root cause analyses, support uplift projects, and mentor ...

Oracle Service Delivery Manager(SC Cleared)

Location
Maidenhead, England, United Kingdom
KPIs, across incidents, service requests and change, reporting honestly on where things stand and what you are doing about it Chair or oversee incident, problem and change management processes, including major incident response and post-incident reviews Plan and manage the rota that keeps support cover … live, business-critical enterprise system, ideally Oracle Cloud (Fusion) or a comparable ERP/HCM/EPM platform Solid grounding in ITIL-based incident, problem and change management, and the judgement to know when to elevate and when to let a process run Experience managing SLAs, service reporting ...

Application Security Engineer

Hiring Organisation
Centrica - CHP
Location
Windsor, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
desirable extras include certifications such as GWAPT, GWEB, OSCP or AWS Security Specialty, Security Champions or developer training experience, and exposure to SOC or Incident Response environments. What's in it for you? Enjoy a generous market salary, along with fantastic growth opportunities and a vibrant work environment ...

Information Security Lead

Hiring Organisation
Hackajob Ltd
Location
Wallingford, Oxfordshire, South East, United Kingdom
Employment Type
Permanent
policies and risk management framework Conduct vendor and third-party security assessments as part of the procurement and onboarding process Contribute to Dexory's incident response and vulnerability management processes Monitor the threat landscape for risks relevant to an autonomous robotics and warehouse intelligence business Develop ...

Platform Engineer

Location
Milton Keynes, England, United Kingdom
pragmatic, well-understood patterns over those who lean on theory, jargon, or unnecessary complexity. A platform you've built and kept running, or an incident you've resolved and can clearly explain, will count for far more than a stack of certifications. Core Responsibilities Provision, configure, and harden … example CloudWatch) across services and infrastructure Maintain data pipelines, backup, and lifecycle management for Aurora PostgreSQL and other AWS-native data tooling Platform Operations & Incident Response Act as first responder for infrastructure incidents, supporting root cause analysis and post-incident review Coordinate patching, upgrades, and lifecycle management ...

SIEM Engineer

Location
Reading, England, United Kingdom
data transformations Design and optimise KQL queries; build and tune analytic rules and detection logic Develop Logic Apps/SOAR workflows to automate response Implement CI/CD pipelines (Azure DevOps/Git) for SIEM content deployment Automate deployment/config across environments; tune detections to reduce false positives … logic design and tuning Logic Apps, Playbooks and SOAR automation Azure DevOps/Git CI/CD pipeline implementation Strong grounding in security monitoring, incident response and threat hunting Strong troubleshooting and root cause analysis skills Desirable SANS SEC503 – Network Monitoring and Threat Detection Candidates must hold active ...

Principal Engineer

Location
Milton Keynes, England, United Kingdom
functional requirements and acceptance criteria for availability, recoverability, performance, security, accessibility and support. Ensure technical designs include suitable monitoring, alerting, backup, disaster recovery and incident response considerations. YOU ARE A MATCH IF... Education: A degree in Computer Science, Software Engineering or related discipline, or equivalent professional experience. Relevant … queues, API Management, Azure SQL, Cosmos DB, containers and monitoring services. Strong understanding of CI/CD, automated testing, code quality controls, observability, incident diagnosis, reliability engineering and DevSecOps practices. Knowledge of application security, identity and access management, OWASP guidance, threat modelling, privacy by design and relevant compliance requirements. ...

Senior DevOps Engineer

Hiring Organisation
Halian Technology Limited
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
availability Implement self-service tooling to empower development teams Drive DevOps best practices across the digital product lifecycle Develop and enhance monitoring, observability, and incident response processes Support global engineering teams delivering high-traffic platforms Key Requirements Proven experience supporting digital product delivery in a DevOps or platform ...

Cyber Security Delivery Partner

Location
Oxford, England, United Kingdom
improve division’s (and the departments that sit within them) security posture while enabling divisionalobjectives. The role will also support audits, assurance activity, incident response follow-up, and continuous improvement in cyber maturity. This role will manage the divisions cyber security team/resources ...

Cyber Security Delivery Partner

Hiring Organisation
University of Oxford
Location
Oxford, United Kingdom
improve division’s (and the departments that sit within them) security posture while enabling divisional objectives. The role will also support audits, assurance activity, incident response follow-up, and continuous improvement in cyber maturity. This role will manage the divisions cyber security team/resources ...

Hybrid 2nd Line Security Analyst — Incident Response

Location
Reading, England, United Kingdom
Line Security Analyst to help ensure the security of clients’ infrastructure and applications. The role involves providing high-quality technical support and leading security incident management, with a requirement to work in the office for training and three days a week thereafter. Candidates should have significant experience, strong communication ...

Chief Information Security Officer

Hiring Organisation
FCDO
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
Youll bring a broad range of experience gained in a Deputy CISO, Head of Cyber Security or equivalent role. This could include working in incident response, SOC, security architecture, vulnerability and compliance, governance or risk. Preferably, youll have experience of working in both the public and private sectors ...