26 to 50 of 642 Incident Response Jobs in the UK

Senior Cyber Security Engineer

Hiring Organisation
NTT Global Data Centers EMEA UK ltd
Location
City of London, London, United Kingdom
Employment Type
Permanent
tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning). What we are looking for Key Responsibilities: Serves as a senior member … optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. Directs complex security incident response efforts across multiple vectorsendpoint protection, EDR, malware analysis, network and computer forensicsensuring rapid containment and root cause analysis. Designs and executes advanced vulnerability ...

Senior Security Platform Engineer

Hiring Organisation
NTT Global Data Centers
Location
EC4N, Cordwainer, Greater London, United Kingdom
Employment Type
Permanent
tasks specialized at threat hunting, SIEM/SOAR, Network Security and other operational security tasks such as performance and availability monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning). What we are looking for Key Responsibilities: • Serves as a senior member … optimization of enterprise security platforms, overseeing lifecycle management including break-fix, patching, version upgrades, and integration with broader security ecosystems. • Directs complex security incident response efforts across multiple vectors—endpoint protection, EDR, malware analysis, network and computer forensics—ensuring rapid containment and root cause analysis. • Designs and executes ...

SOC Operations Technical Lead

Hiring Organisation
Jobleads-UK
Location
Birmingham, England, United Kingdom
reports to Head of SOC Operations. This hands‐on position serves as the senior technical authority for SOC operations, driving excellence in threat detection, incident response, and security operations across a diverse multi-client portfolio. You will combine deep technical proficiency with strong consulting skills to mentor analysts … manage shift rotations, optimise SOC processes and tools, lead complex incident escalations, and act as a trusted advisor. Although you will manage a team of SOC analysts, this is not a purely managerial role; you will remain deeply involved in technical work while elevating team capabilities and delivering strategic ...

Cyber Security Analyst

Hiring Organisation
Hays Technology
Location
Newport, Gwent, United Kingdom
Employment Type
Permanent
Salary
£43000 - £47000/annum Up to £47k + good benefits
will require knowledge and understanding of attack and exploitation techniques and adversarial TTP's. Help to provide resilience to our threat monitoring and response capabilities. Handle security incident response with internal teams and other third parties to ensure that the incident response life cycle … Good knowledge and understanding of SOC processes and procedures. Basic experience using SIEM systems such as MS Sentinel, LogRhythm, AlienVault, Splunk Good understanding of incident response stages and handling. Basic knowledge and experience using leading endpoint detection and threat management products and managing their operation. Good knowledge ...

Director, ProdSecOps

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
program leadership role responsible for embedding security into how products are designed, built, and shipped - and for owning the full threat detection and incident response pipeline end-to-end. The Director sets direction for a global team spanning secure development lifecycle, security architecture, threat modeling, vulnerability and exposure … management, offensive security, cloud security, security monitoring, and incident management. The role translates cyber risk into business risk and drives the conversation leadership can act on. Strong experience across both Product Security and SecOps is required. This is a leader-coach role in a lean, high-ownership team operating ...

Performance & Observability Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
infrastructure, and networking. Implement Service Level Indicators (SLIs), Service Level Objectives (SLOs), and Error Budgets to track system health. Automate root cause analysis and incident detection through advanced monitoring techniques. Incident Response & Reliability Engineering Reduce Mean Time to Detect (MTTD) and Mean Time to Resolve (MTTR) through … improved observability. Integrate monitoring and alerting tools with incident response platforms (ie: ServiceNow). Develop self-healing and auto-remediation mechanisms to reduce operational toil. Improve alerting strategies by reducing false positives and improving signal-to-noise ratio. Governance, Compliance & Reporting Define observability best practices and governance models ...

Cyber Security Engineer

Hiring Organisation
DCV Technologies Limited
Location
Tring, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£65,000
network estate (including Cisco Meraki). The role is hands-on and operational, partnering with IT teams to implement security controls, supportmonitoringand incident response through Sophos MDR, and improve cyber resilience by supporting Disaster Recovery (DR) testing and Business Continuity (BC) readiness. Key Responsibilities Cloud Security (Azure) Implement … whererequiredand ensure changes follow change control. Enable and review network security logging/alerting (e.g., syslog/SIEM integrations where applicable). Monitoring, Detection & Incident Response (Sophos MDR) Act as the internal technical point of contact for Sophos MDR and ensure smooth collaboration with MDR analysts. Maintain coverage ...

Senior Observability Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
report into the Senior Engineering Manager for SRE and Observability and work as an individual contributor, partnering closely with development squads, platform engineers, and incident response teams. The Bengaluru team is deeply integrated into IG’s global engineering community, with real ownership and scope to shape how observability … adoption across the organisation, providing guidance and practical support to help engineering teams embed reliability targets into their day-to-day ways of working.**Incident response*** Join the support rota and incident response, using observability tooling to accelerate diagnosis and reduce mean time to resolution.* Lead ...

Senior Observability Engineer

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
report into the Senior Engineering Manager for SRE and Observability and work as an individual contributor, partnering closely with development squads, platform engineers, and incident response teams. The Bengaluru team is deeply integrated into IG's global engineering community, with real ownership and scope to shape how observability … adoption across the organisation, providing guidance and practical support to help engineering teams embed reliability targets into their day-to-day ways of working. Incident response – Join the support rota and incident response, using observability tooling to accelerate diagnosis and reduce mean time to resolution. Lead ...

Security Operations Specialist

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Platform & Workplace Engineering Director

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Overview Leading and developing two engineering teams — Cloud Platform (cloud infrastructure, observability, SRE, incident response) and Enterprise Services (IT support, IAM, Okta, Slack and core SaaS) — setting technical direction, hiring and performance standards across both. Delivering the reliability, performance and cost-efficiency of the cloud platform underpinning production … services, including SLOs, on-call and incident response practices, and post-incident learning, in line with the broader infrastructure strategy. Executing the roadmap for enterprise services and identity, treating internal IT as an engineering discipline — automation-first, self-service where possible, and measured on employee productivity ...

Associate Director, Cybersecurity

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
business teams to protect research data, intellectual property, scientific platforms, regulated data and contract‐bound information. Own and continuously improve Nxera’s cyber incident response capability, including playbooks, escalation routes, tabletop exercises, communication protocols and post‐incident reviews. Manage the relationship and operational effectiveness of external cybersecurity … Microsoft Entra ID, Azure security, Intune, Microsoft Defender, Conditional Access, endpoint protection, data loss prevention, logging and monitoring. Experience with cybersecurity governance, risk management, incident response, vulnerability management, third‐party security assurance and security control improvement. Experience managing external cybersecurity partners/vendors, such as SOC/ ...

Incident Response (CSIRT) / SOC Level 3 Analyst

Hiring Organisation
Morson Edge
Location
Hampshire, United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
Incident Response (CSIRT)/SOC Level 3 Analyst - Outside IR35 Location: Crawley (2-3 days onsite) Contract: 6 Months Outside IR35 We are looking for an experienced Incident Response (CSIRT)/SOC Level 3 Analyst to join a high-performing cyber security operations team ...

Mid-Level Cyber Security Analyst

Hiring Organisation
Nextech
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £55,000 per annum
excellent opportunity for someone with 2-4 years' hands-on security experience to take the next step in their career, working across threat detection, incident response, and security operations in a collaborative, fast-paced environment. Key Responsibilities Monitor security alerts and investigate potential threats using SIEM tooling Support … incident response activities, from initial triage through to resolution and reporting Conduct vulnerability assessments and coordinate remediation with technical teams Assist with security control reviews and audits against frameworks such as ISO 27001, NIST CSF, and Cyber Essentials Contribute to the development and improvement of security policies ...

Splunk SIEM Engineer

Hiring Organisation
Square One Resources
Location
Manchester, Lancashire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 500 - 550 Daily
Cribl Stream. This is an exciting opportunity to work within a large-scale enterprise environment, helping improve threat detection, security monitoring, automation, and incident response capabilities. Essential Experience Bachelor's degree (minimum qualification). Strong experience administering and developing Splunk Enterprise . Extensive experience with Splunk Enterprise Security … Experience with Cribl Stream , including log ingestion, data routing, transformation, parsing, and data normalisation. Experience working in enterprise Security Operations environments, including threat detection, incident response, and security event analysis. Experience with SOAR platforms, playbook development, and security automation. Good understanding of network security, including Firewalls, proxies, network ...

Security Incident Response Engineer - 6 Months - Warrington

Hiring Organisation
Morson Edge
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP 50 - 100 Hourly
Security Incident Response Engineer Location : Warrington (Hybrid - 2 days per week onsite) Contract Length : 6 Months IR35 Status : Out of Scope Rate : Up to £100 per hour Umbrella/£75.30 per hour PAYE Overview Were looking for an experienced Security Incident Response Engineer to support ...

Lead Security Analyst

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£80,000
engagement, setting the technical direction for the SOC and owning the quality of what the team produces - from detection engineering to threat-hunting to incident response. This isn't a role where you disappear into a ticket queue. You'll shape the threat-landscape narrative for your engagement, drive … collection plan, produce timely and rigorous intelligence products, and build feedback loops that keep the cycle honest and improving. Establish and lead security incident response practice - build playbooks, define the severity model, run exercises, and lead the team's response to significant incidents; run blameless post-mortems ...

Cyber Incident Response Manager

Hiring Organisation
Hays
Location
Liverpool, Merseyside, United Kingdom
Employment Type
Contract
Contract Rate
GBP 750 - 800 Daily
IR35 Status: Outside IR35 Contract Length: 6 months initially Location: Hybrid - Liverpool Overview I'm supporting an organisation seeking an experienced Incident Response Manager to lead and mature its Incident Response capability across a complex enterprise environment click apply for full job details ...

Information Security Manager

Hiring Organisation
Jobleads-UK
Location
City of Westminster, England, United Kingdom
proportionate controls are in place. Provide informed input into security testing scope (e.g. Penetration testing, configuration reviews) and review remediation activity with suppliers. Support incident response and operational infosec activities as required, providing cover and acting as an all-round contributor in a small team. Maintain awareness … experience in an information security role with significant exposure to grc, alongside working knowledge of broader cyber security disciplines (e.g. Supplier assurance, security testing, incident response, security operations). Experience of iso 27001 isms implementation and management, and certification process (working with external and internal auditors). Strong ...

AMBG - Cloud Security & Exposure Management Architect

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Assess the resiliency posture of customer environments from both technical and operational perspectives. Evaluate disaster recovery (DR) plans, business continuity (BC) strategies, and Major Incident Response Plans (MIRPs). Conduct in-depth analysis of cloud infrastructure, application dependencies, observability, and failover capabilities. Review and enhance incident response … availability zones, backup, recovery, and monitoring services. Familiarity with cloud-native resiliency patterns and site reliability engineering (SRE) practices. Experience designing and assessing Major Incident Response Plans (MIRPs). Experience in business continuity planning and operational resilience. Strong communication and documentation skills across technical and business stakeholders. Together ...

Senior Security Operations Engineer

Hiring Organisation
Vitality Corporate Services Limited
Location
Bournemouth, Dorset, South West, United Kingdom
Employment Type
Permanent
Salary
£60,000
week. We are happy to discuss flexible working! Top 3 skills needed for this role: Highly experienced Cyber Security Operations expertise Advanced security incident response capability Proven security tooling and threat management knowledge What this role is all about: We're looking for a Senior Security Operations Engineer … strong relationships with internal stakeholders, vendors and technology partners to support effective security operations You'll develop and maintain security documentation, operational procedures and incident response playbooks Support penetration testing activities and coordinate the remediation of identified findings Contribute to the ongoing enhancement of monitoring, detection and response ...

CIRT Analyst

Hiring Organisation
IMT Resourcing Solutions
Location
Cheltenham, Gloucestershire, United Kingdom
Employment Type
Contract
Contract Rate
GBP 300 Annual
major project by reviewing a large volume of applications and ensuring they meet security standards before deployment. Whilst there is some exposure to Cyber Incident Response activities, this is very much a hands-on security assessment role where you'll be expected to work independently and manage … management tools such as Qualys (or similar) to assess security risks. Support ongoing cybersecurity project delivery within a high-profile programme. Assist with Cyber Incident Response activities where required, including security monitoring and investigation. What we're looking for We're looking for someone ...

Senior Security Analyst

Hiring Organisation
Surrey County Council
Location
Reigate, Surrey, United Kingdom
Employment Type
Permanent
Salary
£55486 - £60898/annum
work will include proactive security monitoring across our hybrid cloud and on premises environment, triaging and investigating alerts, and supporting coordinated incident response activities. You will operate our vulnerability management processes, translate threat intelligence into actionable defences, and contribute to the improvement of detection content and security controls. … contribute to several high impact initiatives including: Establishing a more mature, risk based vulnerability management lifecycle and reducing exposure windows across critical systems Enhancing incident response readiness through improved playbooks, scenario testing, and lessons learned processes Uplifting monitoring coverage and the effectiveness of SIEM/EDR/ ...

Senior SOC Analyst - Hybrid / London

Hiring Organisation
Interface Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Senior SOC Analyst - Hybrid / Bristol

Hiring Organisation
Interface Recruitment
Location
Bristol, City of Bristol, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...