226 to 250 of 2,295 Incident Response Jobs in the UK

Sr. Manager, Site Reliability

Location
Manchester, England, United Kingdom
Tier‐1 customer‐facing services, in partnership with Product and Engineering. Establish error budget policy and the enforcement mechanism when budgets burn. Design the incident command structure: severity rubric, declaration criteria, war‐room protocol, stakeholder communication cadence, and the postmortem template. Train the first cohort of incident commanders … already in use) over net‐new procurement. Define the instrumentation standards all new services must meet. Partner with the VP to migrate the interim incident response RACI — currently held by matrixed individuals across IT, Engineering, Support, and Enterprise Security — into a durable SRE‐owned model. Establish ...

Senior Cyber Security Analyst

Hiring Organisation
Lightsource bp
Location
London, United Kingdom
Salary
£ 80 K
risk and lead the remediation of identified vulnerabilities across Lightsource bp's IT systems globally. You will be responsible for threat detection, investigation, and incident response, leveraging a modern security technology stack with a strong focus on the Microsoft Defender ecosystem. Working across multiple business areas and time … team Experience & Knowledge Required Experience: 5+ years of professional experience in cybersecurity, with at least 2+ years in a Security Operations Center (SOC) or incident response role Advanced proficiency with Microsoft Defender XDR and expert-level knowledge of Microsoft Sentinel, including KQL query writing and analytics rule development ...

Assistant Manager – Information Security

Location
Greater London, England, United Kingdom
oversight to cyber security operations and liaise with specialist technical teams. Coordinate threat intelligence and vulnerability management, remediation SLAs and external providers. Support incident response, crisis management, operational resilience, business continuity and IT disaster recovery, including AWS cloud environments. Support the Data Protection Officer with UK GDPR governance … GDPR, and awareness of FCA/PRA and payment scheme expectations. Sound understanding of the cyber threat landscape, threat intelligence, vulnerability management and incident/breach management, with the ability to interpret events and drive effective remediation. Working knowledge with security technologies and controls, including perimeter/edge security ...

Information Security Technical Lead

Hiring Organisation
Davies
Location
London, United Kingdom
Salary
£ 100 K
will be part of the wider infrastructure team and work closely with development teams, clients, risk and compliance to drive security automation, threat detection, incident response, and risk reduction across the enterprise platform stack.Key ResponsibilitiesSecurity Leadership & Team Management: Lead a team of engineers, setting direction, managing workloads … well as vendor solutions & systems. Collaborate on implementing & Integrating security controls into pipelines including security scans, policy enforcement, and dependency checking. Security Monitoring & Incident Response: Monitor security alerts and events from SIEM, EDR, firewall, IDS/IPS, & other security tools. Triage and prioritise alerts based on severity ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
London, United Kingdom
Salary
£ 80 K
supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management.The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should be able … aligned to business risk.Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk.Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps.Translate technical findings into clear, business-relevant ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management. The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should … business risk. Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk. Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps. Translate technical findings into clear, business ...

AI Security Consultant

Location
Greater London, England, United Kingdom
supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management. The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should … business risk. Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk. Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps. Translate technical findings into clear, business ...

Senior SOC & Incident Response Lead: Drive Detection

Location
Greater London, England, United Kingdom
ASOS.com Ltd is seeking an experienced SOC and Incident Response Lead to provide hands-on technical leadership across security monitoring, detection, engineering, incident response and threat-led investigations. You will lead the SOC and IR team, coordinate with an external MSSP, and drive improvements in detection … incident handling. The role requires strong coaching, stakeholder management, and the ability to operate under pressure while guiding analysts through complex security findings #J-18808-Ljbffr ...

Senior Security Operations Engineer New London

Location
Greater London, England, United Kingdom
business and our customers. In the short to medium term, your focus will be on improving operational security capability - enhancing detection and response, incident management, vulnerability management and cloud security operations. As these capabilities mature, you’ll increasingly focus on security engineering and architecture; designing scalable security services … this role you will: Manage, build and mature our Security Operations capability (short to medium term) Own and continuously improve security monitoring, detection and incident response capabilities across our cloud, endpoint and SaaS environment. Build, tune, and maintain high-quality detections, reducing alert fatigue while increasing confidence that ...

3rd Line Security Analyst

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
take ownership of the engineering, administration, health and continuous improvement of the security platforms, detection content and automation that underpin threat monitoring, detection and incident response across my client’s internal and managed customer environments. They will act as the final internal escalation point for complex and high … live incidents. Key Responsibilities Lead the end-to-end management of complex and high-severity security incidents, including investigation, containment, eradication, recovery and post-incident review. Conduct digital forensic investigations across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise ...

Senior SOC Analyst – Incident Response Leader

Location
England, United Kingdom
seeking a Senior SOC Analyst - Incident Response to lead complex security incidents in a large enterprise. You will own investigations end to end, coordinate multiple IT teams and apply structured incident response methodology using Microsoft Sentinel and Defender XDR. You will mentor junior analysts, develop playbooks ...

Information Security Analyst - SecOps Detection

Location
Cardiff, Wales, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Documentation - Maintain clear documentation for detection rules, hunting playbooks, and processes. 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behavior, with a strong understanding and application of threat analysis models like MITRE ...

Information Security Analyst - SecOps Detection

Location
Manchester, England, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Documentation - Maintain clear documentation for detection rules, hunting playbooks, and processes. 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behavior, with a strong understanding and application of threat analysis models like MITRE ...

Information Security Analyst - Secops Detection

Location
Southampton, England, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Maintain clear documentation for detection rules, hunting playbooks, and processes. Requirements 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behaviour, with a strong understanding and application of threat analysis models like MITRE ...

Information Security Analyst - SecOps Detection

Location
Greater London, England, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Maintain clear documentation for detection rules, hunting playbooks, and processes. Requirements 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behavior, with a strong understanding and application of threat analysis models like MITRE ...

Cyber Security Engineer

Hiring Organisation
Picture More
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £77,000 per annum
play a key role in a growing SecOps function protecting a modern Microsoft and cloud environment. This is a highly technical role focused on incident response, SIEM optimisation, vulnerability management, and security engineering, helping drive a Zero Trust journey and supporting ISO 27001 & CIS controls. What … doing: Lead and support incident response, threat monitoring and root-cause analysis Tune and optimise SIEM & CrowdStrike EDR for maximum effectiveness Drive vulnerability management, remediation and risk reduction Secure cloud and infrastructure across Intune, Entra ID, Palo Alto, Cisco, Mimecast and more Implement key security controls including ...

AMBG - Cloud Security & Exposure Management Architect

Location
Greater London, England, United Kingdom
Assess the resiliency posture of customer environments from both technical and operational perspectives. Evaluate disaster recovery (DR) plans, business continuity (BC) strategies, and Major Incident Response Plans (MIRPs). Conduct in-depth analysis of cloud infrastructure, application dependencies, observability, and failover capabilities. Review and enhance incident response … availability zones, backup, recovery, and monitoring services. Familiarity with cloud-native resiliency patterns and site reliability engineering (SRE) practices. Experience designing and assessing Major Incident Response Plans (MIRPs). Experience in business continuity planning and operational resilience. Strong communication and documentation skills across technical and business stakeholders. Together ...

Lead Security Analyst

Location
United Kingdom
engagement, setting the technical direction for the SOC and owning the quality of what the team produces—from detection engineering to threat-hunting to incident response. This isn’t a role where you disappear into a ticket queue. You’ll shape the threat‐landscape narrative for your engagement, drive … collection plan, produce timely and rigorous intelligence products, and build feedback loops that keep the cycle honest and improving. Establish and lead security incident response practice — build playbooks, define the severity model, run exercises, and lead the team’s response to significant incidents; run blameless post‐mortems ...

Incident Response Manager — Hybrid/Remote

Location
United Kingdom
Arctic Wolf is seeking a Manager, Incident Response to lead and mature the practice by combining strategic leadership with advanced technical incident response expertise. This role guides a hybrid/remote team through complex investigations, ransomware engagements, and large-scale recovery, while maintaining high standards ...

Senior SOC Incident Response Lead

Location
Greater London, England, United Kingdom
seeking a Senior SOC Analyst - Incident Response to lead complex, high-severity incidents across a large enterprise environment. You will own investigations end-to-end, coordinate technical teams during live incidents and apply robust incident response methodology. This role emphasizes hands-on containment, evidence preservation ...

Monitoring & Observability Engineer

Location
Reading, England, United Kingdom
operational responses that improve reliability and reduce downtime. What You'll Be Working On Monitor live systems, triage operational alerts and provide first-line incident response to maximise system availability. Develop and maintain dashboards that deliver clear visibility into system health, trends and operational performance. Analyse recurring incidents … tooling and operational processes. Define monitoring thresholds, alerting strategies and operational metrics that support reliable live quantum computing services. Produce documentation covering monitoring processes, incident response, escalation procedures and operational handovers. Contribute to automation and continuous improvement initiatives that reduce manual intervention and improve service reliability. What ...

Senior IT Security Principal

Hiring Organisation
KBR
Location
Guildford, Surrey, United Kingdom
Salary
£ 70 K
objectives, while also helping achieve their sustainability goals.Role SummaryWe are seeking an experienced cybersecurity professional to provide technical leadership across security operations, vulnerability management, incident response, threat hunting, risk mitigation, and compliance activities. You will act as a trusted advisor to senior stakeholders, lead enterprise security initiatives … help strengthen and mature security capabilities across the organisationResponsibilitiesAs Senior IT Security Principal, you will provide technical leadership across security operations, incident response, threat hunting, vulnerability management, security architecture, identity and access governance, and compliance activities. You will lead the response to complex cybersecurity incidents, drive enterprise ...

Senior Security Operations Engineer

Location
Bournemouth, England, United Kingdom
week. We are happy to discuss flexible working! Top 3 skills needed for this role: Highly experienced Cyber Security Operations expertise Advanced security incident response capability Proven security tooling and threat management knowledge What this role is all about: We're looking for a Senior Security Operations Engineer … strong relationships with internal stakeholders, vendors and technology partners to support effective security operations You'll develop and maintain security documentation, operational procedures and incident response playbooks Support penetration testing activities and coordinate the remediation of identified findings Contribute to the ongoing enhancement of monitoring, detection and response ...

Senior Systems Engineer

Location
York and North Yorkshire, England, United Kingdom
with ITIL v4, enabled by ServiceNow, automation, and the practical use of generative and agentic AI. Our 24x7 Operations squads provide proactive management and incident response across infrastructure, cloud and modern workplace services. What You Will Do As a Senior Systems Engineer within our 24x7 Operations function … squad's senior technical escalation point on the day shift Squad (Mon-Fri, office hours), taking ownership of complex incidents, major incident response and problem management across both core infrastructure and Microsoft Modern Workplace services. You will combine deep technical capability with sound judgement under pressure, and play ...

Senior Weekend Incident Response Consultant - Remote UK

Location
United Kingdom
Google Inc. is seeking a Senior Incident Response Consultant for the Mandiant Weekend team to lead complex client engagements across cloud, endpoint, and network sources. The role requires 5+ years in investigative forensics, end-to-end incident response, and strong communication skills to explain findings ...