176 to 200 of 2,202 Incident Response Jobs in the UK

EMEA CSOC Lead

Location
Cheltenham, England, United Kingdom
lead a team of highly capable cyber threat analysts protecting Northrop Grumman UK and EMEA operations, while remaining directly involved in threat hunting, incident response, digital forensics and cyber defence activities. Working as part of a global cybersecurity organisation, you will collaborate closely with colleagues across … direction, coaching and day-to-day operational oversight. Manage security operations across the EMEA region, ensuring effective execution of cyber monitoring, triage, investigation and response activities. Serve as Incident Response Lead for major cyber security events, coordinating technical investigations, containment and remediation activities. Lead advanced threat hunting ...

Senior Associate – Cybersecurity, Data Privacy & Incident Response

Hiring Organisation
Wicker Hamilton Limited
Location
London, United Kingdom
Salary
£ 80 K
Senior Associate – Cybersecurity, Data Privacy & Incident Response | 5 - 7 + PQE | London |An exceptional opportunity has arisen for an experienced lawyer to join a market-leading team at the forefront of cybersecurity, data privacy and incident response.This role offers the chance to advise a diverse client base … work directly with sophisticated clients, collaborate with leading industry professionals and play a key role in managing high-profile matters from initial response through to resolution. The Opportunity:• Advise on cybersecurity incidents, data breaches and crisis response• Support clients navigating evolving privacy and data protection regulations• Work closely ...

Senior Security Operations Analyst

Location
Leeds, England, United Kingdom
timely and proactive escalation of potential events/items of interest. The role will include access control, application and development, risk management, operational security, incident response, business continuity, operational and physical security of systems, as well as ongoing user training and reporting requirements. Primary responsibilities include: Monitor, investigate … with Detection and Automation team to support development of detection alerts, security automation and recommendations for tuning of rules to reduce false positives Support incident investigation, containment, eradication, and recovery activities while maintaining accurate documentation, and contributing to the continuous improvement of detection capabilities, playbooks, and operational processes Respond ...

Cyber Security Operations Specialist

Hiring Organisation
Sanderson Recruitment
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550 per day
major organisation is seeking a Cyber Security Operations Specialist to join its Security Operations team. This is a hands on role focused on incident response, threat detection, vulnerability management and continuous improvement across enterprise technology environments. You'll be expected to hit the ground running, managing security alerts … tooling estate. The Role Monitor, investigate and respond to cyber security incidents. Manage and triage security alerts, tickets and operational queues. Lead or support incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop ...

Platform Engineer

Location
Wantage, England, United Kingdom
breadth. One day you’ll be defining infrastructure-as-code patterns or improving CI/CD pipelines; the next you’ll be contributing to incident response, helping teams adopt modern delivery practices, or building the kind of platform automation that removes toil for everyone around you. What … knowledge. Observability & Reliability Operate production workloads with an SRE mindset: measure reliability, define SLOs and reduce toil through automation. Contribute to on-call readiness, incident response and root cause analysis. Apply security best practices for Kubernetes (RBAC, network policies, secrets management) and support audit and compliance requirements. What ...

Security Architect - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£545 - £590 per day
solutions into operational security environments. Ensure operational teams have the controls, monitoring capabilities, and processes required to manage secure services. Collaborate with Security Operations, Incident Response, Engineering, and Platform teams to maintain secure systems. Drive continuous improvement within security monitoring and incident response capabilities. Stakeholder Engagement … supporting government departments, public sector organisations, or Critical National Infrastructure programmes. Knowledge of: Zero Trust Architecture Secure by Design Principles DevSecOps Methodologies Security Operations & Incident Response Identity & Access Management (IAM) Data Protection & Privacy Controls Enterprise Security Architecture Frameworks Familiarity with: NCSC Cloud Security Principles ISO 27001 NIST Cybersecurity ...

Tech lead - SOC responder

Hiring Organisation
Colt Telecom
Location
London, United Kingdom
Salary
£ 100 K
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level, with the expectation that … checksResponsible for operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assistAnalyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breachEstablishing and governing the security incident response processes, investigations and security operational processesMaintenance and enhancement of formal ...

Tech lead - SOC responder

Hiring Organisation
Colt Technology Services UK
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Tech Lead - SOC Responder

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Security Operations Specialist

Location
Greater London, England, United Kingdom
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Senior Cyber Detection and Response Engineer

Location
Greater London, England, United Kingdom
Senior Cyber Detection and Response Engineer (London, UK) Summary of Position As a critical technology provider to around 100 of the world's leading financial institutions, Pirum’s security posture is a commercial asset as much as a risk management function. Our customers conduct rigorous third-party security assessments … protect our systems and data directly affects our ability to win and retain business. We are looking for a Senior Detection and Response Engineer to lead Pirum's detection and response capability, enabling us to detect, investigate and contain threats at machine speed across our AWS, on-premises ...

Staff Software Engineer

Location
Uddingston, Scotland, United Kingdom
technical challenges, setting technical direction and helping teams deliver scalable, reliable systems that support business growth? Are you as comfortable reviewing architecture and leading incident response as you are writing production code? If you bring a blend of technical excellence, leadership and a builder mentality, DFYNE might … deployment quality controls. Lead technical problem-solving across critical business systems. Own and influence architecture and technical design decisions across multiple platforms Lead incident response activity, ensure corrective actions address root causes over individual failures. Pair with engineers across critical systems to reduce single points of failure. Mentor ...

SOC Team Lead

Hiring Organisation
Methods Consulting
Location
London, United Kingdom
Salary
£ 100 K
your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance and operational excellence across Shared Service’s Cyber Services function. Acting as both a technical … escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthen Shared Service's security posture. The Team Leader also deputises for the Service ...

Senior Detection and Response Engineer

Hiring Organisation
Jagex
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 80 K
remote work. Applicants should be based within a comfortable commuting distance of our office to attend onsite as required.Are you experienced in detection and incident response, with an engineering mindset and a passion for improving the tools, automation and processes used to investigate threats As a Senior Detection … Response Engineer within our Cyber Security team, you’ll play a key role in strengthening Jagex’s detection and incident response capability across our studio and gaming environments. You’ll take ownership of escalated security investigations, going beyond routine alert handling to understand what happened, determine impact ...

Cyber Security Architect & Engineering Lead

Hiring Organisation
Moore Kingston Smith
Location
London, United Kingdom
Salary
£ 70 K
establish practical controls for Microsoft 365 Copilot, AI agents, custom AI applications and related technologies.Provide senior technical oversight across security monitoring, detection engineering, incident response and recovery capability.Lead or support the response to complex or high-severity security incidents, working with internal teams, external SOC providers … security, application security, API security and secure software development.Experience of security architecture review, threat modelling, technical standards, reference architecture and control design.Practical experience across incident response, detection engineering, threat hunting, vulnerability or exposure management and security automation.Ability to automate security and assurance processes using tools such as Python ...

SOC Team Lead

Location
Greater London, England, United Kingdom
your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. The SOC Team Lead drives performance and operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation … point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service's security posture. The Team Leader also deputises for theService DeskManager during high ...

Cyber Security Analyst

Hiring Organisation
Carter Jonas
Location
Peterborough, Cambridgeshire, United Kingdom
Salary
£ 60 K
team in Peterborough to help protect Carter Jonas’s systems, data, and information assets. The role combines hands-on security operations with vulnerability management, incident response, cyber risk, governance, assurance and continual improvement of the organisation’s security posture. The post holder will work with IT, Compliance … logs and events across key platforms including SIEM, EDR/XDR, Microsoft Defender, Microsoft Sentinel, email security, cloud security and network monitoring tools.Support timely incident response, containment, remediation, recovery and post-incident review activity with internal teams and third-party providers.Maintain the vulnerability management programme, including scanning ...

Cyber Security Architect & Engineering Lead

Location
Greater London, England, United Kingdom
establish practical controls for Microsoft 365 Copilot, AI agents, custom AI applications and related technologies. Provide senior technical oversight across security monitoring, detection engineering, incident response and recovery capability. Lead or support the response to complex or high-severity security incidents, working with internal teams, external … security, API security and secure software development. Experience of security architecture review, threat modelling, technical standards, reference architecture and control design. Practical experience across incident response, detection engineering, threat hunting, vulnerability or exposure management and security automation. Ability to automate security and assurance processes using tools such ...

Senior Detection and Response Engineer

Location
United Kingdom
work. Applicants should be based within a comfortable commuting distance of our office to attend onsite as required. Are you experienced in detection and incident response, with an engineering mindset and a passion for improving the tools, automation and processes used to investigate threats? As a Senior Detection … Response Engineer within our Cyber Security team, you’ll play a key role in strengthening Jagex’s detection and incident response capability across our studio and gaming environments. You’ll take ownership of escalated security investigations, going beyond routine alert handling to understand what happened, determine impact ...

Senior Information Security Analyst

Hiring Organisation
Cirrus Logic
Location
Edinburgh, Midlothian, United Kingdom
Salary
£ 70 K
that support the Cirrus Logic business roadmap.Develop and implement security requirements, policies, and procedures to protect information systems, data, and applications.Participate in detection and incident response activities, including investigation, containment, and remediation.Perform hands-on evaluation, engineering, and administration of enterprise security tools in collaboration with Security … Qualifications:Bachelor’s degree in cybersecurity, information systems, or a related technical field, or equivalent practical experience.Experience across multiple cybersecurity domains, including vulnerability management, incident response, identity and access management, network security, risk analysis, security operations, and security engineering.Demonstrated success operating as a senior individual contributor ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage … investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. ...

Junior AWS Security Incident Response Engineer

Location
Manchester, England, United Kingdom
Amazon AWS Security Incident Response is seeking a Security Engineer I to join a fast-paced team responsible for threat detection and incident response across customer environments. The role emphasizes learning, collaboration, and communicating complex security concepts to non-technical audiences. You will monitor networks ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
United Kingdom
Incident Response Engineer, UK Security Operations, Hampshire Google London, UK Mid Experience driving progress, solving problems, and mentoring more junior team members; deeper expertise and applied knowledge within relevant area. X Must be a British citizen to meet compliance and security clearance requirements. Office location will … more programming languages. Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance. Preferred qualifications: Security+ or similar Cyber Security/Incident Response related certifications. Experience responding to security incidents on Kubernetes. Experience analyzing, triaging, and remediating common information security incidents. Understanding of common attacker ...

Head of Cyber Defence Centre

Location
Manchester, England, United Kingdom
scale security capabilities that protect the UK's largest digital bank. You’ll provide strategic direction for cyber defence, detection engineering, threat hunting and incident response, while driving continuous improvement across security operations platforms, tooling and processes. Leading a high-performing team, you’ll strengthen operational resilience, coordinate … effective response to cyber threats and incidents, champion a threat-led approach to defence, and help shape a world-class security operation that enables the Group to go faster, safely. Why Join us? If you think all banks are the same, you're wrong. We're a pioneering, fast ...

Head of Cyber Defence Centre

Location
Greater London, England, United Kingdom
scale security capabilities that protect the UK's largest digital bank. You’ll provide strategic direction for cyber defence, detection engineering, threat hunting and incident response, while driving continuous improvement across security operations platforms, tooling and processes. Leading a high-performing team, you’ll strengthen operational resilience, coordinate … effective response to cyber threats and incidents, champion a threat-led approach to defence, and help shape a world-class security operation that enables the Group to go faster, safely. Why Join us? If you think all banks are the same, you're wrong. We're a pioneering, fast ...