101 to 125 of 2,202 Incident Response Jobs in the UK

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 70 K
Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity.Key ResponsibilitiesCloud Security Assessment & Advisory:Assess the security … configurations of Azure IaaS and Google Cloud environments, including infrastructure.Provide recommendations based on industry best practices and emerging security threats.The ability to provide Cyber Incident Responders subject matter expertise in Cloud security when required.Defender & Security Monitoring Advisory:Evaluate and optimise the use of Azure Defender and other security monitoring ...

Information Security Engineer

Hiring Organisation
Freshfields Bruckhaus Deringer
Location
London, UK
Employment Type
Full-time
Aside from infrastructure, the candidate should have experience and working knowledge of SIEM and vulnerability management platforms. The role will cover elements of cyber incident response, so a background in supporting a wider incident response function is a necessity. Key ResponsibilitiesCloud Security Assessment & Advisory: Assess … Azure IaaS and Google Cloud environments, including infrastructure. Provide recommendations based on industry best practices and emerging security threats. The ability to provide Cyber Incident Responders subject matter expertise in Cloud security when required. Defender & Security Monitoring Advisory: Evaluate and optimise the use of Azure Defender and other security ...

IT Security Analyst

Hiring Organisation
Withersworldwide
Location
London, United Kingdom
Salary
£ 80 K
across the firm's global technology estate. The successful candidate should have practical experience working with modern enterprise security platforms covering endpoint detection and response, extended detection and response, cloud security, threat monitoring, behavioural analytics and vulnerability management, and be comfortable engaging with IT teams, senior stakeholders … pressure. A pragmatic, service-focused approach is essential.Areas of focus and responsibilitiesMonitor, triage and investigate security alerts across the firm’s security monitoring and response platforms, including suspicious activity, root cause analysis and proportionate remediation.Support incident response activities, including containment, eradication, recovery, evidence preservation and clear documentation ...

Operational Security Lead and Vulnerability Manager

Hiring Organisation
Kensington Mortgage Company
Location
Marlow, Buckinghamshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Hybrid - 1 x week in Marlow Department: Information Security Monday-Friday Are you an experienced cyber security professional with a passion for security operations, incident response and vulnerability management? We're looking for an Operational Security Lead & Cyber Vulnerability Manager to play a critical role in protecting Kensington … Role Reporting to the Chief Information Security Officer, you'll lead the day-to-day operational cyber security function, overseeing security operations, cyber incident management, infrastructure and cloud vulnerability management, and third-party security oversight. You'll be responsible for ensuring security risks are managed appropriately, coordinating incident ...

Head of Information Security

Hiring Organisation
MOO
Location
London, United Kingdom
Salary
£ 80 K
first 12 months, to act as build lead for the digital and security aspects of a company-wide Business Continuity, Disaster Recovery and Incident Response programme.This is a standalone role, reporting to the Head of Legal It is not a caretaker or compliance-only position. You will operate … resilience programmes from the ground up.You’ll be comfortable working with executive and board level, while also getting into the details of security incident response, business continuity, disaster recovery, cloud security and data privacy.You’ll be pragmatic and business-focused, balancing security with delivery velocity and availability ...

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
defence/aerospace client on a short term contract. The successful candidate will have proven experience using IBM QRadar SIEM in a monitoring and incident response capacity. Key Responsibilities: Monitor and analyse security events using IBM QRadar SIEM Investigate and respond to security incidents across various platforms Manage … full incident lifecycle, from identification to resolution Conduct threat detection and analysis, along with threat hunting activities Perform detailed log analysis across multiple security platforms Produce incident reports and post-incident reviews Collaborate with team members to ensure robust security controls Investigate non-standard Cyber requests ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Location
City of Westminster, England, United Kingdom
Seize the opportunity to enhance cybersecurity, utilizing your expertise in threat analysis and incident response to protect vital data and systems. As a Security Operations Senior Associate in the Cybersecurity and Tech Controls line of business, you will play a critical role in safeguarding the organization's digital … cybersecurity posture and help maintain the integrity, confidentiality, and availability of sensitive data and systems., Monitor and analyze security infrastructure, contributing to detection and response to threats, vulnerabilities, and incidents to ensure the integrity, confidentiality, and availability of sensitive data and systems Conduct in-depth security investigations, including ...

Senior Incident Response Lead Hybrid Remote UK

Location
Birmingham, England, United Kingdom
LRQA is seeking a Senior Security Consultant (Incident Response) to join its cyber incident response team. The role involves coordinating response to cyber incidents, on-call rotation, and occasional client-site work within the UK. The post requires UK residency and a strong incident response background with CREST/GCFA-type certifications. The candidate will lead responders, conduct investigations, and design training engagements, staying updated on CTI developments and Mitre ATT&CK-aligned #J-18808-Ljbffr ...

Global Cyber Incident Response Director

Location
Greater London, England, United Kingdom
seeking a Senior Cyber Incident Response Coordinator to lead global cybersecurity incident responses and coordinate with legal, privacy, risk, and business stakeholders. You will drive incident response programs and mentor junior team members. The role requires extensive incident response, forensics, and SIEM experience ...

Acquisition Cybersecurity Operations (ACO) - Senior SOC Analyst

Location
City Of London, England, United Kingdom
Seize the opportunity to enhance cybersecurity, utilizing your expertise in threat analysis and incident response to protect vital data and systems. As a Security Operations Senior Associate in the Cybersecurity and Tech Controls line of business, you will play a critical role in safeguarding the organization's digital … help maintain the integrity, confidentiality, and availability of sensitive data and systems. Job responsibilities Monitor and analyze security infrastructure, contributing to detection and response to threats, vulnerabilities, and incidents to ensure the integrity, confidentiality, and availability of sensitive data and systems Conduct in-depth security investigations, including log analysis ...

Cyber Incident Lead

Hiring Organisation
British Airways
Location
Feltham, Middlesex, United Kingdom
Salary
£ 70 K
think big and bring your ambition to work every day, which is why, at British Airways the sky is never the limit.The role:Cyber Incident LeadThis role reports into the Cyber Incident Manager, and works with stakeholders across the organisation to ensure BA is able to effectively identify … incidents across the BA estate 24/7 365 days a year as part of an on call functionResponsible for developing, maintaining, and managing incident response processesAbility to present on complex, technical concepts to a wide range of stakeholders of varying seniority and knowledgeConfident to engage with business ...

Senior Security Consultant (Incident Response)

Hiring Organisation
LRQA
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 45 K
Employee RegularSenior Security Consultant Role Purpose:This is a new, exciting opportunity for a Senior Security Consultant to join LRQA’s existing dynamic Cyber Incident Response Team.This role follows a hybrid working arrangement and will involve working on client sites and from the office from time to time. … improving the team’s capability, in line with managerial direction. The role will lead a team of responders, as well as conduct solo incident investigations, where the actor operates with a high level of sophistication (Organised Crime or above) using agreed mitigation, preparedness, and response and recovery approaches ...

Senior SOC Engineer

Hiring Organisation
Anson McCade
Location
Glasgow, Lanarkshire, United Kingdom
Salary
£ 60 K
Type: PermanentSenior SOC EngineerA leading organisation is seeking a Senior SOC Engineer to strengthen its security operations capability and drive continuous improvement across detection, response, and automation. This pivotal role requires deep expertise in IBM QRadar, with a strong focus on playbook development, analytical rule creation, and threat modelling. … Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats.Key ResponsibilitiesSIEM Engineering & ManagementDeploy, configure, and maintain the QRadar SIEM platform.Onboard and normalise log sources across on-premises and cloud environments.Develop and optimise analytical rules for threat detection ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar
Location
London, United Kingdom
Salary
£ 80 K
responding to security threats across complex client environments.You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your … Analyst, you'll take ownership of more complex security alerts and incidents, including:Investigating and analysing escalated security alerts from Tier 1 analystsConducting detailed incident investigations to determine scope, impact and root causeMonitoring and analysing activity across SIEM, EDR and other security platformsIdentifying indicators of compromise, suspicious activity ...

Cyber Incident Lead

Location
Greater London, England, United Kingdom
bring your ambition to work every day, which is why, at British Airways the sky is never the limit. The role: Cyber Incident Lead This role reports into the Cyber Incident Manager, and works with stakeholders across the organisation to ensure BA is able to effectively identify, respond … across the BA estate 24/7 365 days a year as part of an on call function Responsible for developing, maintaining, and managing incident response processes Ability to present on complex, technical concepts to a wide range of stakeholders of varying seniority and knowledge Confident to engage ...

Global Cyber Incident Response Director

Location
Greater London, England, United Kingdom
London seeks a Senior Cyber Incident Response Coordinator to lead global incident response coordination and hands-on forensics. You will manage complex incidents across regions, partnering with security, legal and risk teams to ensure timely, effective responses. The role requires deep incident response knowledge ...

Senior Information Security Analyst, UK

Hiring Organisation
Realty Income
Location
London, United Kingdom
Salary
£ 80 K
Senior Information Security Analyst supports the day-to-day operations of the global Information Security program, with a focus on security alert triage, incident investigation, and operational effectiveness across the environment.This role is responsible for monitoring and responding to security alerts, performing assigned operational tasks, and optimizing security tooling … accurate classification, documentation, and escalation.Perform daily operational information security tasks, including the management and resolution of ServiceNow incidents assigned to the Information Security team.Support incident response efforts through investigation, coordination, and detailed documentation of findings.Participate occasionally in an on-call rotation as required to support timely response ...

Tier 2 SOC Analyst

Hiring Organisation
Oscar Technology
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £50,000 per annum
security threats across complex client environments. You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your technical … take ownership of more complex security alerts and incidents, including: Investigating and analysing escalated security alerts from Tier 1 analysts Conducting detailed incident investigations to determine scope, impact and root cause Monitoring and analysing activity across SIEM, EDR and other security platforms Identifying indicators of compromise, suspicious activity ...

Global Cyber Incident Response Lead

Location
Greater London, England, United Kingdom
Technology is seeking a Senior Cyber Incident Response Coordinator to lead global cybersecurity incident response activities. You will coordinate across international teams, manage on‐call rotations, and work with General Counsel, Data Privacy, and Risk Management to protect EY’s information assets. The role requires deep … incident response knowledge, forensics capability, and experience with SIEM tools (Splunk/Sentinel). #J-18808-Ljbffr ...

Cyber Risk Advisory Consultant, London Cyber security London

Location
Greater London, England, United Kingdom
Cyber Security practice is the newest and fastest-growing part of S-RM. The cyber sector is always evolving, and our Advisory, Testing, Incident Response and Forensics practices are in more demand than ever. We’re building a team to meet this challenge. This means we’re quick … Security Consulting At the core of the Associate role is hands‐on cyber security consulting. You will lead delivery across multiple domain areas, including: Incident Response Preparedness Cy ber incident response strategy, policy, and plan development. Simulation exercising at leadership and operational levels. Digital Resilience Business ...

AWS Infrastructure Engineer

Location
Greater London, England, United Kingdom
availability and day-to-day operation of its AWS cloud infrastructure and deployment platforms. This role is run and reliability-focused, owning break-fix, incident response and operational support of our AWS estate. You'll work hands-on with Terraform, Ansible and Linux every day, partnering closely with … Portal/ESB and SaaS platforms Act as a primary responder for AWS infrastructure-related incidents, participating in P1/P2 escalations and coordinated incident response Perform break-fix activities across the AWS estate, including deployment failures, EC2 and networking outages and data recovery from S3/ ...

Senior Cyber Analyst

Location
Greater London, England, United Kingdom
your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. Role Summary The Senior Cyber Analyst is the senior technical lead within the Cyber Services function, responsible for complex cyber investigations … incident response, threat detection, and security platform optimisation. Acting as the highest technical escalation point within cyber operations, the role provides leadership, mentoring, and strategic direction to ensure customers maintain a strong and resilient security posture. Incident Response & Threat Management Lead the investigation and resolution ...

Security Operations Engineer

Hiring Organisation
CloudBees
Location
London, United Kingdom
Salary
£ 80 K
engineer the systems that make Security Operations smarter, faster and more scalable.You'll work across Detection Engineering, Security Automation, Threat Hunting and Incident Response, building detection logic, automating repetitive workflows and partnering closely with Product Engineering to improve security telemetry across the CloudBees platform.Whether you're already operating … SaaS and application environments. Own the full detection lifecycle from hypothesis through deployment and continuous tuning. Create high-fidelity detections using operational threat intelligence, incident learnings and purple team findings. Measure and improve detection coverage using the MITRE ATT&CK framework. Continuously reduce false positives while improving visibility into ...

Security engineer, detection and response (UK)

Location
Greater London, England, United Kingdom
journey to create a better future of work with AI. About the role Join WRITER's security team as a staff detection and response engineer and help protect the AI infrastructure that's transforming how the world works. You'll build sophisticated detection systems that identify attacks targeting … platform, training data, and model deployments while creating automated response capabilities that scale with our explosive growth. This isn't just traditional security work – you're defending cutting-edge AI/AGI systems against adversaries who are evolving their tactics as fast as AI itself advances. This role combines ...

Staff Security Engineer London, UK

Location
Greater London, England, United Kingdom
Operations team, you will help Ripple detect, investigate, and respond to security threats across our environment. You’ll work across detection and data engineering, incident response, and security automation — building the tooling and detection logic that lets the team scale. You’ll operate independently on sophisticated investigations … Design, build, and tune detections across our security stack (Google Security Operations) to improve our ability to identify and mitigate threats. Lead incident response for the most complex and high-severity investigations, from initial triage through root cause and remediation. Build and maintain security automation workflows (e.g. ...