26 to 50 of 2,202 Incident Response Jobs in the UK

Associate/Senior Associate - Data & Cyber

Location
West of England, England, United Kingdom
Data & Cyber team advises a wide range of clients across a variety of industry sectors on cyber incidents, regulatory response, technology and data-related claims, and cyber/technology insurance coverage. We are recognised for combining deep cyber incident response capability with a strong understanding … insurance market, enabling us to support clients across the lifecycle of a cyber event and its downstream exposures: from immediate breach response and crisis management, through policy notification and coverage strategy, to regulatory engagement and dispute resolution. The role Based in Bristol, the Associate (1-4 years ...

Regional CERT Manager

Location
Manchester, England, United Kingdom
planet. That’s why our purpose is ‘to make sustainable living commonplace’ Role Overview The Regional CERT Manager is responsible for leading cyber incident response operations across the region, ensuring effective detection, containment, investigation, remediation, and recovery from security incidents. This role combines strategic leadership with hands … technical expertise to drive operational excellence, strengthen security capabilities, and enhance organisational cyber resilience. Key Responsibilities Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents. Own and continuously improve the end‐to‐end Incident Management lifecycle, ensuring ...

Regional CERT Manager

Location
Kingston, England, United Kingdom
planet. That’s why our purpose is ‘to make sustainable living commonplace’ ### **Role Overview**The Regional CERT Manager is responsible for leading cyber incident response operations across the region, ensuring effective detection, containment, investigation, remediation, and recovery from security incidents. This role combines strategic leadership with hands … technical expertise to drive operational excellence, strengthen security capabilities, and enhance organisational cyber resilience.### **Key Responsibilities*** Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents.* Own and continuously improve the end-to-end Incident Management lifecycle, ensuring ...

Regional CERT Manager

Location
Kingston upon Thames, England, United Kingdom
planet. That's why our purpose is 'to make sustainable living commonplace' Role Overview The Regional CERT Manager is responsible for leading cyber incident response operations across the region, ensuring effective detection, containment, investigation, remediation, and recovery from security incidents. This role combines strategic leadership with hands … technical expertise to drive operational excellence, strengthen security capabilities, and enhance organisational cyber resilience. Key Responsibilities Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents. Own and continuously improve the end-to-end Incident Management lifecycle, ensuring ...

SOC Analyst - SC Cleared

Hiring Organisation
Sanderson Government and Defence
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£545 - £590 per day + Inside IR35
environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams. You will … cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions. Key Responsibilities Security Monitoring & Incident Response Monitor and triage security alerts generated through SIEM and security tooling. Investigate and respond ...

Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA

Hiring Organisation
GitLab
Location
United Kingdom
Salary
£ 70 K
affiliated with, and do not endorse products or services of GitLab.An overview of this roleAs a Senior Security Engineer on GitLab’s Security Incident Response Team (SIRT), you will play a critical role in defending GitLab.com and the broader GitLab environment against evolving security threats. This role operates … Saturday to provide 24/7/365 security coverage.You will lead high-impact incidents and investigations, drive continuous improvements in defense, detection and response capabilities, and help scale security operations through automation and intelligent workflows.Operating within a 24/7 global environment (follow the sun model), you will ...

DFIR Managing Consultant

Location
Manchester, England, United Kingdom
Cyber Services and Capabilities Employment Type: Full Time Location: GBR Manchester Hardman Boulevard Role Purpose: To manage and service NCC Group clients within the Incident Response space. The Managing Consultant plays a critical role within the DFIR team of experienced consultants, delivering high‐quality incident response and proactive services to clients. The role involves leading and contributing to detailed technical analysis, managing incident response activities, and ensuring effective communication and coordination throughout an engagement. With a strong focus on technically supporting clients during live incidents, the Managing Consultant is also expected to contribute ...

Cyber Incident Manager (CIM) - Welwyn Garden City, United Kingdom of Great Britain and Northern Ireland

Hiring Organisation
Tesco
Location
Welwyn Garden City, Hertfordshire, United Kingdom
Salary
£ 70 K
About the role: As a Cyber Incident Manager at Tesco, you will lead the coordinated response to cyber incidents, protecting the integrity of the retail ecosystem that serves millions of customers every day. Acting as a central orchestrator, you will ensure swift, structured, and effective incident resolution … minimising operational disruption and customer impact. This role is critical to maintaining trust in Tesco’s digital platforms by driving proactive, intelligence-led response and embedding continuous improvement across the cyber defence lifecycle. You will operate at the intersection of technology, business impact, and customer outcomes, championing innovation ...

Cyber Analyst in CYBER DEFENCE CENTRE

Hiring Organisation
Bank of England
Location
London, United Kingdom
Salary
£ 80 K
successful candidate will take part in the operations rota ensuring security alerts are thoroughly investigated, escalated appropriately and take part in subsequent Cyber Security incident response activities as part of the wider Cyber Security incident response team where required. When not responding to security alerts … function, the role holder will be expected to proactively seek opportunities to improve the team’s operational capability for both detection and response processes through a greater use of automation. The role will require close collaboration across all of the CDC’s core functions and has varied and challenging ...

InfoSec Analyst

Location
United Kingdom
Analyst to serve as the primary operational interface into Era4's Security Operations Center (SOC). This role focuses on security monitoring, threat detection, incident response, and protecting our next-generation AI datacentre infrastructure, cloud platforms, and applications through proactive security operations. You will be the key point … engineering/operations teams, responsible for monitoring our datacentre security estate, identifying threats across network infrastructure and Era4's proprietary cloud platform, coordinating incident response, managing alerts, and continuously improving our security posture. The successful candidate combines strong technical security knowledge with hands-on experience analysing logs from ...

Security Engineer I, AWS Security Incident Response

Location
Manchester, England, United Kingdom
Security Engineer I, AWS Security Incident Response AWS Security Incident Response is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious … activity, lead security response, and can explain technical security concepts to non-technical audiences. Key job responsibilities Respond to threat findings that indicate unauthorized activity has occurred Identify, evaluate and communicate security threats, risks and vulnerabilities, and propose recommended remediation for security issues. Contribute to the development of security ...

Senior SOC Analyst - Incident Response

Location
Manchester, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Senior SOC Analyst - Incident Response

Location
North East, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Senior SOC Analyst - Incident Response

Location
Greater London, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Threat Response Technology and Capabilities Product Owner

Hiring Organisation
MasterCard
Location
Ringwood, Hampshire, United Kingdom
Salary
£ 60 K
networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.Title and SummaryThreat Response Technology and Capabilities Product OwnerOverviewThe Corporate Security Threat and Response Management product ownership team is looking for a Lead Security Engineer to help drive … ideal candidate is passionate about the modern security tools, capabilities, and strategies.As a Product Owner, you will be defining, owning, and driving the incident response technology and capability strategy across global Security Operations. This role sets the vision for response tooling, automation, AI augmentation, and digital evidence ...

Incident Response Engineer, UK Security Operations, Hampshire

Location
England, United Kingdom
Incident Response Engineer, UK Security Operations, Hampshire Google is looking for an Incident Response Engineer to join our Security Operations team based in Hampshire. You will be responsible for identifying, mitigating, and responding to security threats, ensuring the safety and integrity of Google's infrastructure … This role is not marked as remote. Company context Google has active SoftwareCareers listings in the current job inventory. Experience signal: Relevant experience in incident response or security operations.. Prepare examples for: Incident Response, Security Operations, Cybersecurity, Network Security, Threat Detection. Job Overview Incident Response ...

Cyber Incident Response Lead

Location
Greater London, England, United Kingdom
EC2R 7BP Manchester, GB, M1 4HN Bristol, GB, BS32 4TP Leiston, GB, IP16 4EW Felixstowe, GB, IP10 0DD Career Area: Data, Tech & IT Cyber Incident Response Lead Sizewell C’s business is to design, finance, construct, commission, operate, maintain, and eventually decommission the nuclear power plant and related … independent organisation and continue building one of the UK’s largest and most important energy projects. We are now recruiting the below position. Cyber Incident Response Lead Location: Based in London on a hybrid basis with travel to Suffolk as required. Contract : Permanent, full-time. Benefits include: Bonus ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
Sandwich, Kent, United Kingdom
Salary
£ 100 K
ROLE SUMMARYOur Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on-premises, cloud, and hybrid environments.As a Lead Threat Response Operations Analyst within Pfizer’s Global Cyber Defense organization, you will … serve as a senior individual contributor, providing technical leadership for the investigation and response to sophisticated cyber threats. While this is not a people-management role, you will lead complex investigations, coordinate the response to security incidents on a global scale, and provide technical guidance to analysts ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
South East, United Kingdom
Employment Type
Permanent
ROLE SUMMARY Our Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on-premises, cloud, and hybrid environments. As a Lead Threat Response Operations Analyst within Pfizers Global Cyber Defense organization … will serve as a senior individual contributor, providing technical leadership for the investigation and response to sophisticated cyber threats. While this is not a people-management role, you will lead complex investigations, coordinate the response to security incidents on a global scale, and provide technical guidance to analysts ...

Head of Security Incident and Response

Location
Newcastle upon Tyne, England, United Kingdom
green and healthy future for all. Find out more about DDTS: Defra digital, data and technology blog LinkedIn Defra Jobs The Head of Security Incident and Response provides operational leadership of the Defra Group Security Incident Response Management (SIRM) capability, ensuring the organisation is prepared … able to respond effectively to, security incidents ranging from routine events to significant security incidents. As the senior lead for security incident management, the role oversees incident response policy, governance and operational coordination, directs the response to complex and high-impact incidents, and provides authoritative advice ...

Incident Response Lead (DFIR)

Hiring Organisation
LT Harper Recruitment Group
Location
England, United Kingdom
Incident Response Lead (DFIR) - Hybrid - Can be based anywhere in the UK - Up to £110k The opportunity: Do you want to lead the response to incidents that matter nationally? A Cyber Consultancy is looking for an Incident Response Lead to join its Cyber Response … senior leadership of a fast-growing capability Hybrid working from London or Manchester hubs Pension contribution and private healthcare [confirm] Your responsibilities as an Incident Response Lead will be to: Manage and coordinate a portfolio of cyber security incidents for clients, working closely with the head of cyber ...

Senior SOC Analyst - Incident Response

Hiring Organisation
GHD
Location
London, United Kingdom
Salary
£ 70 K
that enable GHD to deliver for clients and communities around the world.As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … risk and continually strengthen our security operations.The opportunityWe are looking for an accomplished Senior SOC Analyst – Incident Response to lead and coordinate complex, high-severity incidents across a large enterprise environment. Reporting to the SOC Manager, you will own investigations end to end, shape critical response decisions ...

Cyber Defence Analyst

Location
United Kingdom
playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. … Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand ...

Cyber Defence Analyst

Location
Belfast, County Antrim, United Kingdom
playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. … Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand ...

Cyber Operations & 3rd Party Security Manager

Hiring Organisation
Arbuthnot Latham
Location
London, United Kingdom
Salary
£ 80 K
banking powered by modern technology.Job PurposeThe Cyber Operations & 3rd-Party Security Manager is responsible for the Bank's cyber security operations, threat detection, incident response, vulnerability management and 3rd-party cyber risk management capabilities. The role ensures that cyber threats, vulnerabilities, supplier risks and security events are effectively … supporting the confidentiality, integrity and availability of the Bank's information assets and services.The role leads the operational execution of the Bank's Cyber Incident Response Plan (CIRP), manages relationships with security service providers, and provides oversight of cyber risks arising from suppliers, outsourced services and 3rd parties.To ...