26 to 50 of 293 Incident Response Jobs in the UK

Security Operations Manager

Hiring Organisation
Vitality Corporate Services Limited - Tech
Location
Bournemouth, Dorset, South West, United Kingdom
Employment Type
Permanent
Salary
£65,000
Vitality BournemouthOffice.Full time, 35 hours per week. We are happy to discuss flexible working! Top 3 skills needed for this role: Security Operations Leadership & Incident Response Risk, Governance & Regulatory Compliance Technical Depth in Monitoring & Security Engineering What this role is all about: Join our dynamic, values-led organisation … CISO in delivering our security strategy, lead a team of analysts, and oversee key controls that protect member data. The role includes security monitoring, incident response, developing playbooks, and managing the CSIRT function. Key Actions Leadership and management of the Cyber Security Operations team Conducting cyber security maturity ...

Senior Security Analyst

Hiring Organisation
Arthur
Location
City of London, London, England, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
built for you.We’re hiring a hands-on Senior Security Analyst/Security Engineer to strengthen a Microsoft-centric security posture across detection, response, tooling, and infrastructure hardening. Not a one-lane SOC role. Not governance-heavy. This role blends incident response with security engineering and hardening … Cyber Essentials, NIST, SOC2) Contribute to threat hunting, threat intelligence application and proactive monitoring Support operational resilience: scenario testing, DR exercises, post-incident reviews Assist with security tooling assessments (including AD hardening tools ) Essential Experience (Must Haves) Candidates must have: Security Engineering & Hardening IAM, PIM/PAM , identity lifecycle ...

Cyber Incident Responder - SC Cleared

Hiring Organisation
Lorien
Location
Oxfordshire, England, United Kingdom
Employment Type
Temporary
Salary
£550 per day
Cyber Incident Responder - SC Cleared Remote, plus onsite delivery in Shrivenham 6 months initially scope to extend Inside of IR35 £550 per day This role focuses on analysing and responding to cyber threats using established tools and methodologies, supporting the clients cyber training through real-world operational insight. Ideal … industry cyber responders who can adapt quickly to their environments. What You'll Do Conduct analysis, threat investigation, and incident response Support the creation of real-world incident scenarios and exercises Provide technical expertise to learners and training teams Work on-site for delivery blocks ...

Incident Responder (Recovery & Resilience)

Hiring Organisation
IBEX RECRUITMENT LTD
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Join our leading consulting firm's Technology & Transformation practice as a Technical Incident Responder (permanent or FTC, hybrid working). Help clients manage cyber risks through proactive and reactive incident response, network forensics, and threat eviction within a UK Cyber team delivering cutting-edge resilience services. What … Lead cyber incident response engagements, supervising technical/non-technical teams and managing incidents. Perform network forensics to detect malicious activity using traffic analysis. Conduct forensic/memory analysis on Windows/Unix/Linux for host-based threats. Deliver proactive IR advisory, including response process creation ...

Cyber Security Operations Lead

Hiring Organisation
MJA (London) Ltd
Location
City, London, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Security Operations Manager/SOC Lead to lead and develop their cyber security operations capability. The role will oversee SOC operations, threat detection, and incident response, while driving improvements across security monitoring, automation, and response processes. Key experience required: Strong experience in cyber security operations Strong experience … leading or mentoring SOC teams Strong knowledge of incident response and threat detection Experience with SIEM platforms such as LogRhythm, Splunk, or Microsoft Sentinel Familiarity with SOAR platforms, EDR/XDR tools (eg CrowdStrike, Defender, SentinelOne) and cloud security monitoring across Azure, AWS, or GCP Understanding of frameworks ...

Cyber Security Operations Lead

Hiring Organisation
MJA (London) Ltd
Location
EC3, Broad Street, Greater London, United Kingdom
Employment Type
Permanent
Security Operations Manager/SOC Lead to lead and develop their cyber security operations capability. The role will oversee SOC operations, threat detection, and incident response, while driving improvements across security monitoring, automation, and response processes. Key experience required: Strong experience in cyber security operations Strong experience … leading or mentoring SOC teams Strong knowledge of incident response and threat detection Experience with SIEM platforms such as LogRhythm, Splunk, or Microsoft Sentinel Familiarity with SOAR platforms, EDR/XDR tools (eg CrowdStrike, Defender, SentinelOne) and cloud security monitoring across Azure, AWS, or GCP Understanding of frameworks ...

Security Architect - Defence

Hiring Organisation
Broster Buchanan
Location
Bristol, Avon, England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £90,000 per annum
Defining, implementing, and maintaining corporate security policies, standards, and procedures to ensure compliance with industry regulations, legal requirements (e.g., GDPR, HIPAA), and best practices. Incident Response and Management: Playing a key role in developing incident response plans and coordinating efforts to detect, analyse, and respond ...

SOC Lead/SOC Manager - London - £90,000

Hiring Organisation
Nigel Frank International
Location
City, London, United Kingdom
Employment Type
Permanent
Salary
GBP 85,000 - 90,000 Annual
primary onsite representative for SOC operations, working closely with senior stakeholders while coordinating with offshore security analysts to ensure effective monitoring, threat detection, and incident response. The successful candidate will play a vital role in strengthening cybersecurity operations, improving detection capabilities, and ensuring operational excellence across the Security Operations … stakeholders and the offshore SOC to ensure efficient handling of alerts, incidents, and operational requests. Oversee daily SOC operations, ensuring security monitoring, investigations, and response activities are delivered in line with agreed SLAs. Lead incident management for high-severity security events, coordinating across IT, infrastructure, and business teams. ...

SOC Lead / SOC Manager - London - £90,000

Hiring Organisation
Nigel Frank International
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £95,000 per annum
primary onsite representative for SOC operations, working closely with senior stakeholders while coordinating with offshore security analysts to ensure effective monitoring, threat detection, and incident response. The successful candidate will play a vital role in strengthening cybersecurity operations, improving detection capabilities, and ensuring operational excellence across the Security Operations … stakeholders and the offshore SOC to ensure efficient handling of alerts, incidents, and operational requests. Oversee daily SOC operations, ensuring security monitoring, investigations, and response activities are delivered in line with agreed SLAs. Lead incident management for high-severity security events, coordinating across IT, infrastructure, and business teams. ...

Security Engineer - SIEM, KQL

Hiring Organisation
Harvey Nash
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£350 - £400 per day
Case Development: Develop and refine detection rules based on threat intelligence and attack patterns Continuously improve detection efficacy and reduce false positives Security Monitoring & Incident Response: Monitor systems for anomalies and malicious activity Contribute to threat hunting and incident response playbooks Provide expert guidance on securing ...

Vulnerability Manager

Hiring Organisation
Amtis Professional Ltd
Location
Solihull, West Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
drive improvements to tools, processes, automation, and reporting to enhance programme maturity. Stay current with emerging vulnerabilities, zero-day threats, and vendor advisories. Support incident response activities where vulnerabilities are linked to potential security events. What Youll Bring Proven experience in vulnerability management, cyber security operations … SIEM, SOAR, EDR, and associated security tooling. Strong analytical skills with the ability to translate technical risk into clear, executive-level reporting. Experience supporting incident response and investigations. Excellent stakeholder management skills, with the confidence to challenge and influence both technical and non-technical teams. Strong understanding ...

Head of Information Security

Hiring Organisation
Hays
Location
Bolton, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
enterprise-wide security strategy, and ensure resilience across all technology environments during a time of rapid change. You'll oversee governance, architecture, operations, and incident response, while working closely with senior leadership to safeguard critical systems, data, and digital services. Acting as a trusted advisor, you'll translate … drive a global information security strategy aligned to organisational priorities and risk appetite. Lead multidisciplinary teams spanning governance, risk, compliance, architecture, operations, and incident response. Embed recognised frameworks such as ISO 27001, NIST CSF, NIS2, and DORA into policies, processes, and technology platforms. Oversee security operations, including monitoring, threat ...

Incident Response Consultant

Hiring Organisation
Anson Mccade
Location
Stevenage, Hertfordshire, United Kingdom
Employment Type
Permanent
Salary
GBP 60,000 Annual
BRISTOL OR STEVENAGE - Sole British Citizen We are seeking a proactive CERT Incident Responder to lead our Digital Forensics and Incident Response (DFIR) readiness and drive our Adversarial Exposure Validation (AEV) program. This role is a unique hybrid of defensive response and proactive testing, ensuring ...

Cybersecurity Consultant

Hiring Organisation
Experis
Location
London, United Kingdom
Employment Type
Contract, Work From Home
/LLM tools , including Copilot, Azure OpenAI, and agentic systems-ensuring proper guardrails, risk assessments, and data protection. Participate in cloud monitoring, detection & incident response , working with SIEM/XDR tooling and platform/application teams. Collaborate closely with data governance to ensure appropriate classification, labeling, access control … governance controls using Microsoft Purview. Practically skilled in AI security , including risk identification, secure integration patterns, and AI governance models. Experience with cloud monitoring, incident response, SIEM/XDR operations. Ability to translate complex security risks into clear business language and actionable recommendations. Desirable Skills Experience with secure ...

Cyber Security Analyst - up to £70,000 Bonus Benefits

Hiring Organisation
Involved Solutions
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £70,000 per annum
role in strengthening cyber resilience and protecting critical enterprise systems. This is a hands-on operational security role focused on threat detection, incident response and continuous improvement of security monitoring capabilities. The position of Cyber Security Analyst is suited to an experienced security professional who thrives in fast … alerts across SIEM platforms and ticketing systems, managing incidents through to resolution Participate in an on-call rota to support live security incidents Manage incident queues and approvals within IT service management tools Act as a subject matter expert for nominated security technologies, ensuring effective configuration and optimisation Support ...

Forensic Investigator

Hiring Organisation
Orchard Recruitment Ltd
Location
Douglas, Isle of Man, United Kingdom
Employment Type
Permanent
leading role. The role of Forensic Investigator combines open-source intelligence (OSINT), enhanced due diligence (EDD), corporate investigations and digital forensics, and cyber incident response. You will require a meticulous, analytical, and resilient discipline with a deep commitment to accuracy, integrity, and client service. You will collect and analyse … trust sectors Digital Forensics & DFIR - Conduct forensic acquisition and preservation of digital devices and cloud data sources - Use industry-standard digital forensics and incident response tools - Analyse evidence for signs of data theft, fraud, or unauthorised access - Support live incident response, breach containment, and ransomware investigations ...

Senior Security Engineer

Hiring Organisation
Sanderson
Location
Greater Bristol Area, United Kingdom
visibility and enhance the overall security posture. Key Responsibilities: Implement, configure and optimise core security tooling across the environment Enhance threat detection, monitoring and response capabilities Investigate security alerts and support incident response activities Improve integration and automation between security platforms Support vulnerability management and remediation processes … vulnerability management platforms such as Tenable Knowledge of OT/ICS security monitoring platforms such as Claroty Experience supporting security monitoring, detection engineering and incident response Strong understanding of enterprise infrastructure and cloud security ...

Senior Security Engineer

Hiring Organisation
Sanderson Recruitment
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £525 per day
visibility and enhance the overall security posture. Key Responsibilities: Implement, configure and optimise core security tooling across the environment Enhance threat detection, monitoring and response capabilities Investigate security alerts and support incident response activities Improve integration and automation between security platforms Support vulnerability management and remediation processes … management platforms such as Tenable Knowledge of OT/ICS security platforms such as Claroty is beneficial Experience supporting security monitoring, detection engineering and incident response Strong understanding of enterprise infrastructure and cloud security Reasonable Adjustments: Respect and equality are core values to us. We are proud ...

Senior SOC Analyst

Hiring Organisation
Searchability NS&D
Location
Farnborough, Hampshire, England, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £65,000 per annum
/7 SOC services across multiple platforms and projects. You will lead and support a small team of analysts, oversee security monitoring and incident response, and contribute to the development of security controls, processes and governance. You will work closely with senior stakeholders to produce security reporting, support … technical work and mentoring others. Senior SOC Analyst essential skills Proven experience working within a SOC environment, ideally 3+ years Strong knowledge of SIEM, incident management and threat intelligence Experience with cloud security, networking and information security principles Understanding of IDAM, RBAC and joiners, movers and leavers processes Ability ...

Solutions Engineer (Cyber)

Hiring Organisation
SER Limited
Location
City of London, United Kingdom
Employment Type
Permanent
Salary
£48000 - £55000/annum Hybrid Working
client environments and act as a trusted security advisor. What you’ll be doing: Designing and implementing security solutions (firewalls, endpoint, cloud security) Leading incident response and remediation activities Conducting vulnerability assessments & penetration testing Implementing security monitoring, reporting & best practices Advising clients on Cyber Essentials, CE+, GDPR … similar environment Firewall experience (Palo Alto, Fortinet) EDR/endpoint protection (Microsoft Defender, Sophos, Bitdefender) Network & cloud security knowledge (Azure, AWS, VPNs, VLANs, DNS) Incident response & vulnerability management experience Cyber Essentials/CE+ knowledge or certification Confident communicator, comfortable in client-facing scenarios What’s on offer: Hybrid ...

Information Security Officer Hybrid / Multiple Locations

Hiring Organisation
Michael Page Technology
Location
Manchester, Lancashire, England, United Kingdom
Employment Type
Full-Time
Salary
£50,000 per annum
safeguarding of the organisation's information assets by identifying risks, monitoring security controls, and ensuring best-practice governance. The role also contributes to incident response, third-party oversight, and ongoing security improvements. It is a hybrid role with 40% working from home. You can choose to work … Perform due-diligence reviews of third-party suppliers and support ongoing monitoring of external security risks. Profile Experience in information security, risk assessment, and incident response within a regulated or structured environment. Familiarity with security monitoring tools, vulnerability management, and supporting audit activities. Understanding of security frameworks such ...

SOC Analyst T2

Hiring Organisation
Oscar Technology
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £52,000 per annum
Analyst (Tier 2) to support their security operations function. This role will focus on investigating security incidents, improving detection capabilities and supporting the wider incident response process. Key Responsibilities: Investigate and respond to security alerts and incidents Perform threat analysis and incident investigation Analyse security logs … understanding of security threats, vulnerabilities and attack techniques Hands-on experience with SIEM platforms (Splunk, Sentinel, QRadar, Elastic) Knowledge of endpoint security tools and incident response processes Strong analytical and investigative skills Nice to Have: Experience with CrowdStrike, SentinelOne or Microsoft Defender Knowledge of MITRE ATT&CK framework ...

IT Service Desk Manager

Hiring Organisation
Netteam tX Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
stakeholder input for operational excellence Ensure SLA compliance, lead governance, and implement corrective actions as needed Coordinate NOC processes including escalation, event monitoring, and incident response to maintain service stability Support Vendor Partnership Manager (e.g., Oracle) Drive continuous improvement using data, feedback, and industry trends to streamline service … delivery Lead major incident response and escalation, ensuring rapid resolution and clear communication across teams Conduct problem management and root cause analysis, implementing lasting solutions and reducing incidents Analyse ticket data to uncover opportunities for automation and process improvements Deliver comprehensive reports on KPIs, SLAs, incident trends ...

Cyber Security Manager

Hiring Organisation
Goodman Masson
Location
Greater Manchester, Lancashire, England, United Kingdom
Employment Type
Full-Time
Salary
£56,000 per annum
approximately 80% cyber security and 20% network-related responsibilities. You will take a proactive, strategic approach to safeguarding information assets, managing cyber risks, leading incident response, and driving continual improvement in our security and network posture. Key responsibilities include: Developing and maintaining security strategies, policies, standards, and procedures … risk management, vulnerability remediation, patch management (soon transitioning to a third-party provider-opportunity to put your stamp on processes), and supplier compliance. Overseeing incident management, coordinating audits, penetration testing (third-party delivered, but you will shape scoping and remediation), and contributing to disaster recovery/business continuity. Mentoring ...

Lead Information Security Engineer

Hiring Organisation
Picture More
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
Salary negotiable
regions. Key Responsibilities Lead the design and implementation of secure authentication, authorisation, and data protection frameworks. Manage and enhance Data Loss Prevention (DLP) systems, incident response, and risk management processes. Oversee cloud security architecture across Azure, O365, and iManage Cloud environments. Collaborate with global IT, compliance, and risk … information security within a global enterprise environment . Strong knowledge of cloud and network security (Azure, O365). Experienced in DLP, SIEM, and incident response processes. Familiar with ISO 27001/27002 and governance frameworks. CISSP or CEH certification preferred. Excellent communication, stakeholder management, and documentation skills. ...