326 to 350 of 2,300 Incident Response Jobs in the UK

SENIOR INFORMATION ASSURANCE ENGINEER

Hiring Organisation
Leidos Innovations UK Limited
Location
Huntingdon, Cambridgeshire, East Anglia, United Kingdom
Employment Type
Permanent
Salary
£75,000
with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. Ability to brief and influence senior stakeholders, mentor … Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation. Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes. Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs). Manage vulnerability, risk, audit, control assessment, and compliance ...

Senior Information Assurance Engineer Leidos

Location
United Kingdom
with experience developing assurance artefacts such as SyOPs, RMADs, Security Impact Assessments, risk assessments, and accreditation evidence. Experience leading assurance initiatives, audits, control assessments, incident response activity, and vulnerability management using tools such as Nessus, Trivy, Tenable, or similar platforms. Ability to brief and influence senior stakeholders, mentor … Security Impact Assessments, Security Management Plans, risk assessments, and governance documentation. Drive maturity of assurance processes, tooling, reporting, and governance across multiple programmes. Lead incident response capability development, including response plans, playbooks, testing, exercising, and Tabletop Exercises (TTXs). Manage vulnerability, risk, audit, control assessment, and compliance ...

SOC Shift Lead

Hiring Organisation
Searchability NS&D
Location
Watford, Hertfordshire, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £80,000 per annum
busy Security Operations Centre while remaining hands-on with technical investigations. You will act as the senior escalation point during your shift, leading incident response, mentoring analysts and ensuring high standards across investigations. You will also: Lead Major Incident investigations and technical response activities Analyse advanced … Lead Strong experience leading complex cyber security investigations Commercial experience with Microsoft Sentinel and Splunk Enterprise Security Excellent understanding of MITRE ATT and CK, incident response and threat-informed defence Strong networking knowledge including TCP/IP, DNS, HTTP/S, SMTP, LDAP and VPN technologies Experience analysing ...

Security Architect - DV Cleared

Hiring Organisation
Sanderson Government and Defence
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
frameworks Cyber Threat & Risk Management Assess cyber threat landscape and design threat-informed security architectures Lead security risk assessments and vulnerability management programmes Design incident response, threat intelligence and cyber defence capabilities Architect security monitoring, detection and response solutions Design business continuity and cyber resilience frameworks Compliance … architecture role Proven experience designing enterprise-scale security architectures Strong background in defence, aerospace or government security programmes Demonstrated expertise with security operations, incident response and threat management Track record of leading security transformation and programme implementations Technical Knowledge Deep expertise in security architecture frameworks, methodologies and best ...

Information Security Operations Manager

Location
Greater London, England, United Kingdom
availability standards. Supply Chain Resilience: Assess the security posture of third-party APIs and integrations to prevent data leaks or service disruptions. Operational Excellence & Incident Response Incident Commander: Lead the response to information security incidents. Act as the primary escalation point, coordinating containment while providing clear ...

Senior CSIRT Analyst

Location
Greater London, England, United Kingdom
next step in your career. The role As a Senior CSIRT Analyst you will play a key role in G-Research’s Cyber Security Incident Response Team (CSIRT), specialising in cloud detection and response across AWS and hybrid environments. You will investigate, respond and proactively hunt … corporate Windows environments. You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating and improving the team’s effectiveness against advanced adversaries. ...

Senior CSIRT Analyst

Hiring Organisation
G Research
Location
London, United Kingdom
Salary
£ 80 K
scale.Take the next step in your career.The roleAs a Senior CSIRT Analyst you will play a key role in G-Research’s Cyber Security Incident Response Team (CSIRT), specialising in cloud detection and response across AWS and hybrid environments.You will investigate, respond and proactively hunt for threats … infrastructures, and corporate Windows environments.You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating and improving the team’s effectiveness against advanced adversaries.As ...

Cyber Security Analyst

Hiring Organisation
The Portfolio Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£50000 - £55000/annum
infrastructure and established a modern, cloud-first security stack, it is an exciting time to join the business as we mature our detection, response, and automation capabilities across a global estate. You will work collaboratively with the business and the wider IT team - Infrastructure, Network, Development, DevOps, and Service … with Palo Alto Cortex XSIAM and XSOAR, Cortex XDR, Microsoft Purview, Mimecast, Abnormal, Nessus, and Microsoft 365. You will participate in security investigations and incident response, responding to events involving malware, data loss, phishing, or network intrusion, and supporting our data protection and vulnerability management activity. You will ...

Senior Security Analyst

Location
Greater London, England, United Kingdom
scheduled information security on‐call rotation; assess urgent alerts and incidents, initiate containment or escalation procedures, engage appropriate stakeholders, and maintain clear incident handoffs. Key Deliverables Security alerts, incidents, and ServiceNow requests resolved and documented within defined service‐level targets. Zscaler, email‐security, identity‐security, and Microsoft security‐platform … security risk, with identified control gaps, exceptions, and remediation actions documented and tracked. On‐call security events triaged, documented, and escalated within established response targets. Required Experience Five or more years of progressive experience in information security, security operations, incident response, or a related discipline. Hands ...

Site Reliability Software Engineer (Hybrid)

Location
Greater London, England, United Kingdom
Improve monitoring, alerting, logging, and reporting across applications and infrastructure. Troubleshoot incidents involving applications, servers, databases, APIs, network connectivity, and system integrations. Participate in incident response, root cause analysis, and post-incident remediation. Build and maintain CI/CD pipelines for safer and more consistent deployments. Partner … networking, DNS, SSL/TLS, firewalls, and system performance. Experience with Linux and/or Windows server environments. Experience with monitoring, logging, alerting, and incident troubleshooting. Experience using Git and CI/CD workflows. Ability to analyze complex technical issues across application, server, database, and network layers. Strong documentation ...

Cyber Security Analyst

Hiring Organisation
Digital Waffle
Location
City of London, London, United Kingdom
Analyse logs from endpoints, networks, cloud services and security tools to detect suspicious behaviour Escalate incidents where appropriate and work closely with engineering and incident response teams Develop and improve SIEM detection rules and alert tuning to reduce false positives Produce clear incident reports and maintain accurate … documentation Participate in the on-call rota and support major incident response when required Contribute to the continuous improvement of SOC processes, tooling and operational procedures Skills & Experience Experience working withi n a 24/7 Security Operations Centre ( SOC) or equivalent cyber security environment Strong hands ...

Security Architect - DV Cleared - Perm Security Architect – DV Cleared

Hiring Organisation
Sanderson Recruitment
Location
Aldershot, Hampshire, United Kingdom
Salary
£ 100 K
models and continuous verification frameworksCyber Threat & Risk ManagementAssess cyber threat landscape and design threat-informed security architecturesLead security risk assessments and vulnerability management programmesDesign incident response, threat intelligence and cyber defence capabilitiesArchitect security monitoring, detection and response solutionsDesign business continuity and cyber resilience frameworksCompliance & Standards ImplementationEnsure security … with 5+ years in architecture roleProven experience designing enterprise-scale security architecturesStrong background in defence, aerospace or government security programmesDemonstrated expertise with security operations, incident response and threat managementTrack record of leading security transformation and programme implementationsTechnical KnowledgeDeep expertise in security architecture frameworks, methodologies and best practicesExpert-level ...

Senior Security Analyst

Hiring Organisation
Brookfield Renewable
Location
London, United Kingdom
Salary
£ 70 K
scheduled information security on-call rotation; assess urgent alerts and incidents, initiate containment or escalation procedures, engage appropriate stakeholders, and maintain clear incident handoffs.Key DeliverablesSecurity alerts, incidents, and ServiceNow requests resolved and documented within defined service-level targets.Zscaler, email-security, identity-security, and Microsoft security-platform configurations maintained … reviewed for security risk, with identified control gaps, exceptions, and remediation actions documented and tracked.On-call security events triaged, documented, and escalated within established response targets.Required ExperienceFive or more years of progressive experience in information security, security operations, incident response, or a related discipline.Hands-on experience investigating ...

Senior Site Reliability Engineer

Hiring Organisation
Malvern Panalytical
Location
United Kingdom
Salary
£ 55 K
Azure-based cloud platforms and applications. You will lead proactive reliability engineering initiatives, helping to establish observability standards, define service level objectives, strengthen incident response capabilities, and drive automation across deployments and operational processes.Working closely with engineering, product, and operations teams, you will help ensure that new features … Service Level Objectives (SLOs), Service Level Indicators (SLIs), and Service Level Agreements (SLAs) in partnership with development, product, and operations teams• Lead and support incident response activities, outage investigations, post-incident reviews, and root cause analysis to drive continual service improvement• Drive automation and operational excellence across ...

Senior SOC Analyst: Incident Response & Threat Hunting

Location
City Of London, England, United Kingdom
Franklin Fitch in London is seeking an experienced Senior SOC Analyst to join a growing security operations team. This hands-on role focuses on incident detection, investigation, and response, with leadership on complex incidents. You will mentor junior analysts and help develop and improve SIEM rules and detection … cases. You will work four days on site in London with one day remote, collaborating with incident response, security engineering and IT teams to strengthen controls and #J-18808-Ljbffr ...

Senior Security Analyst

Location
United Kingdom
Senior level, the role is about more than your own output. You will help junior analysts develop their triage tradecraft, normalise pairing on incident response, contribute to shared detection standards across the practice, and model the kind of blameless, collaborative culture that makes a security team genuinely effective. … against defined requirements, track actor TTPs, manage indicator lifecycles, and produce situational‐awareness products that inform both detection priorities and client risk decisions. Lead incident response and drive improvement — co‐ordinate containment across engineering and analyst teams, communicate incident detail clearly to client stakeholders, and turn every ...

Senior SOC Analyst

Location
Manchester, England, United Kingdom
dual‐focused position combining hands‐on technical expertise with day‐to‐day operational leadership, ensuring high‐quality delivery of managed detection and response services across a diverse customer base. You'll lead SOC operations, act as the escalation point for complex security incidents, and mentor junior analysts—driving both … dual‐focused position combining hands‐on technical expertise with day‐to‐day operational leadership, ensuring high‐quality delivery of managed detection and response services across a diverse customer base. You'll lead SOC operations, act as the escalation point for complex security incidents, and mentor junior analysts—driving both ...

Platform Engineer

Hiring Organisation
Williams Racing
Location
Retford, Nottinghamshire, United Kingdom
Salary
£ 60 K
breadth. One day you’ll be defining infrastructure-as-code patterns or improving CI/CD pipelines; the next you’ll be contributing to incident response, helping teams adopt modern delivery practices, or building the kind of platform automation that removes toil for everyone around you.What … without deep infrastructure knowledge.Observability & ReliabilityOperate production workloads with an SRE mindset: measure reliability, define SLOs and reduce toil through automation.Contribute to on-call readiness, incident response and root cause analysis.Apply security best practices for Kubernetes (RBAC, network policies, secrets management) and support audit and compliance requirements.What ...

Network Support Engineer

Hiring Organisation
Bright Purple Resourcing
Location
Scotland, United Kingdom
Employment Type
Permanent
Salary
£65,000
support). Monitor, analyse, and investigate network traffic and emerging threats, including active DDoS activity. Support customer maintenance, upgrades, and technical communications. Contribute to incident response and post-incident reviews that sharpen our detection and mitigation playbooks. Work within ITIL processes (Incident, Change, Problem, Service Requests … A+, Network+, Security+, CySA+, or CyberOps. If youre early in your career and hungry to build deep expertise in network security, traffic analysis, and incident response, this role was designed for you. Bright Purple is an equal opportunities employer: we are proud to work with clients who share ...

Security Engineer

Location
Greater London, England, United Kingdom
confidentiality, integrity, and availability of company data. Collaborate with the IT System Administrator to manage and enhance the overall network and system security. Incident Response, Threat Detection & SOC Operations Develop, maintain, and run incident response plans to address security incidents promptly and effectively. … operations, including monitoring, triage, investigation, and response to security alerts. Assess the company threat landscape using MITRE ATT&CK and MITRE D3FEND to identify detection and mitigation opportunities. Connect and maintain log sources into our SIEM to ensure relevant coverage across corporate IT and the Intigriti platform. Write, tune ...

Platform Lead - ML Ops

Location
Greater London, England, United Kingdom
spot instances, and down-scaling policies to eliminate waste, while providing full visibility into the unit economics of training and serving LLM models. Observability & Incident Response: Establish 24/7 incident response, telemetry, and observability metrics to monitor system performance, model drift, and data pipelines. Data ...

ML Ops Lead

Hiring Organisation
Anaplan
Location
London, United Kingdom
Salary
£ 100 K
scaling, spot instances, and down-scaling policies to eliminate waste, while providing full visibility into the unit economics of training and serving LLM models.Observability & Incident Response: Establish 24/7 incident response, telemetry, and observability metrics to monitor system performance, model drift, and data pipelines.Data Governance ...

Lead Software Engineer - LLM Ops Platform Reliability

Hiring Organisation
Hackajob Ltd
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent
production at scale, with deep instrumentation and strong operational rigor. You will partner across engineering to deliver secure software, improve stability, and lead incident response and continuous improvement. Job Responsibilities Design, develop, troubleshoot, and deliver secure, high-quality production software and services for AI infrastructure Build backend services … parallelism, speculative decoding) Lead reliability engineering for LLM endpoints through capacity planning, load/soak testing, safe rollouts (blue/green, canary), failover, and incident response for outages and model-quality regressions Participate in an on-call rotation, lead incident triage and mitigation, and produce clear post ...

Lead Software Engineer - LLM Ops Platform Reliability

Hiring Organisation
Hackajob Ltd
Location
Paisley, Scotland, United Kingdom
production at scale, with deep instrumentation and strong operational rigor. You will partner across engineering to deliver secure software, improve stability, and lead incident response and continuous improvement. Job Responsibilities Design, develop, troubleshoot, and deliver secure, high-quality production software and services for AI infrastructure Build backend services … parallelism, speculative decoding) Lead reliability engineering for LLM endpoints through capacity planning, load/soak testing, safe rollouts (blue/green, canary), failover, and incident response for outages and model-quality regressions Participate in an on-call rotation, lead incident triage and mitigation, and produce clear post ...

Lead Software Engineer - LLM Ops Platform Reliability

Hiring Organisation
Hackajob Ltd
Location
Milton Keynes, England, United Kingdom
production at scale, with deep instrumentation and strong operational rigor. You will partner across engineering to deliver secure software, improve stability, and lead incident response and continuous improvement. Job Responsibilities Design, develop, troubleshoot, and deliver secure, high-quality production software and services for AI infrastructure Build backend services … parallelism, speculative decoding) Lead reliability engineering for LLM endpoints through capacity planning, load/soak testing, safe rollouts (blue/green, canary), failover, and incident response for outages and model-quality regressions Participate in an on-call rotation, lead incident triage and mitigation, and produce clear post ...