376 to 400 of 2,296 Incident Response Jobs in the UK

Head of Cyber Defence Centre

Hiring Organisation
Lloyds Banking Group
Location
Leeds, West Yorkshire, United Kingdom
Salary
£ 100 K
large-scale security capabilities that protect the UK’s largest digital bank.You’ll provide strategic direction for cyber defence, detection engineering, threat hunting and incident response, while driving continuous improvement across security operations platforms, tooling and processes. Leading a high-performing team, you’ll strengthen operational resilience, coordinate … effective response to cyber threats and incidents, champion a threat-led approach to defence, and help shape a world-class security operation that enables the Group to go faster, safely.Why Join us If you think all banks are the same, you’re wrong. We’re a pioneering, fast-changing ...

SC Cleared SOC Analyst: QRadar & Incident Response (Remote)

Location
Essex, England, United Kingdom
defence/aerospace client on a 3-month contract in the UK. The role focuses on monitoring security events with IBM QRadar SIEM, incident response, and threat detection, with remote work and occasional site visits. You will investigate incidents across platforms, manage the incident lifecycle, perform … analysis, and contribute to post-incident reviews, working to MITRE ATT&CK and NIST frameworks. #J-18808-Ljbffr ...

GRC Consultant

Location
Greater London, England, United Kingdom
actively participates in supporting/governing forums Contribute to the analysis and mitigation of data protection risks Monitors information security incidents, contributing to incident response and root cause analysis. Will own resulting actions as required where they relate to required changes in IT Security and Information Risk Management … policy and controls Security operations and incident response, liaison with internal teams and 3rd party suppliers Desirable Skills and Experience Experience with the design concepts associated with adoption of Cloud platforms (AWS and/or Microsoft Azure) An understanding of the native security capabilities and good practice within ...

SOC Shift Lead

Location
Greater London, England, United Kingdom
investigation and analysis, acting as the escalation point for complex or high‐severity incidents. They conduct root‐cause analysis, guide L1 analysts, and support incident containment and remediation efforts. The role is part of a high‐performance compute operations team operating 24/7, with shift teams paid … hours. Key Responsibilities Investigate escalated incidents to determine attack vectors, scope, and potential impact. Correlate events across multiple data sources to build a comprehensive incident narrative. Execute containment, eradication, and recovery activities in coordination with IT/OT stakeholders. Lead response for medium to high‐severity incidents ...

Lead SRE - AWS,Python

Hiring Organisation
JP Morgan Chase
Location
United Kingdom
Salary
£ 70 K
firm's availability and performance standardsDefine and enforce service level objectives, error budgets, and reliability targets in partnership with engineering and product stakeholdersDrive incident response, root cause analysis, and post-incident reviews to identify systemic improvements and reduce mean time to recoveryDevelop and maintain automation frameworks … platform and tooling decisions to ensure alignment with reliability, scalability, and security requirementsLeverage enterprise-authorized AI-assisted engineering practices to improve operational outcomes, including incident triage support, test strategy acceleration, and delivery workflow optimization, while ensuring consistent validation and secure handling of inputs and outputsRequired qualifications, capabilities, and skillsFormal ...

Junior SOC Analyst - Eastleigh

Hiring Organisation
Circle Group
Location
Eastleigh, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£30,000
defend networks, systems, and applications against evolving threats. You'll work as part of a team that provides 24/7 monitoring, detection, response, and remediation services for a diverse client base. After the initial training period, this role will operate on a 4-on-4-off rota, including … night shifts (swapping fortnightly) Key Responsibilities: Support the Managed Extended Detection & Response (MXDR) service. Monitor security alerts and events to identify potential incidents. Assist in investigating security incidents, determining root causes, and supporting remediation plans. Collaborate with internal teams and external stakeholders to ensure security controls are effectively maintained. ...

DevSecOps Engineer - Remote

Hiring Organisation
MBR Partners
Location
London, United Kingdom
Salary
£ 80 K
make active use of AI coding assistants to accelerate infrastructure and automation work. While ownership of the security posture, disaster recovery, business continuity, and incident response sits with the Head of Technology Delivery, you will play a central role in implementing and maintaining the controls, backups, and monitoring … that underpin these, and in supporting incident resolution when issues arise.The reliability, performance, and efficiency of the platform depend directly on the quality of the work you do, making this a role of significant technical responsibility. The business is a well-funded business with excellent revenues ...

Lead SRE - AWS,Python

Location
Glasgow, Scotland, United Kingdom
availability and performance standards Define and enforce service level objectives, error budgets, and reliability targets in partnership with engineering and product stakeholders Drive incident response, root cause analysis, and post-incident reviews to identify systemic improvements and reduce mean time to recovery Develop and maintain automation frameworks … tooling decisions to ensure alignment with reliability, scalability, and security requirements Leverage enterprise-authorized AI-assisted engineering practices to improve operational outcomes, including incident triage support, test strategy acceleration, and delivery workflow optimization, while ensuring consistent validation and secure handling of inputs and outputs Required qualifications, capabilities, and skills ...

Lead SRE - AWS,Python

Location
Glasgow, Scotland, United Kingdom
availability and performance standards Define and enforce service level objectives, error budgets, and reliability targets in partnership with engineering and product stakeholders Drive incident response, root cause analysis, and post-incident reviews to identify systemic improvements and reduce mean time to recovery Develop and maintain automation frameworks … tooling decisions to ensure alignment with reliability, scalability, and security requirements Leverage enterprise-authorized AI-assisted engineering practices to improve operational outcomes, including incident triage support, test strategy acceleration, and delivery workflow optimization, while ensuring consistent validation and secure handling of inputs and outputs Required Qualifications, Capabilities, And Skills ...

Information Security Analyst - SecOps Detection

Hiring Organisation
Starling Bank
Location
London, United Kingdom
Salary
£ 80 K
SaaS, and endpoint environments.Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response.Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation.Threat Intelligence integration - Integrate and operationalise threat … detective controls.Documentation - Maintain clear documentation for detection rules, hunting playbooks, and processes.Requirements3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence.Attacker Knowledge: Practical experience analysing attacker behavior, with a strong understanding and application of threat analysis models like MITRE ...

Incident Response Analyst - 24/7 Security Operations

Location
Greater London, England, United Kingdom
Starling seeks a passionate Incident Responder to join its Security Operations team, defending customers, assets and systems. You will support 24/7 operations under the Information Security Lead - SecOps Response, conducting investigations, containment, and recovery across cloud, endpoints and network. You will develop incident response ...

Director of DevOps & SRE

Location
Greater London, England, United Kingdom
access. Enterprise directory services, role-based and privileged access controls, Auth0 machine-to-machine credentials, and least-privilege access across engineering and QA. Incident response and resilience. Escalation paths, root-cause analysis and postmortems, production readiness reviews, automated failover, and our disaster recovery and RTO/RPO commitments. … background (GitHub Actions and/or Azure DevOps Pipelines) and infrastructure as code with Terraform, including module development and state management. Production support and incident response experience for a multi-tenant SaaS platform. Containerisation and orchestration in production (Docker, Kubernetes). Solid grounding in identity and access management ...

Cyber Security Analyst - up to 70,000 + Bonus + Benefits

Hiring Organisation
Involved Solutions
Location
London, United Kingdom
Salary
£ 60 K
role in strengthening cyber resilience and protecting critical enterprise systems. This is a hands-on operational security role focused on threat detection, incident response and continuous improvement of security monitoring capabilities. The position of Cyber Security Analyst is suited to an experienced security professional who thrives in fast … alerts across SIEM platforms and ticketing systems, managing incidents through to resolution Participate in an on-call rota to support live security incidents Manage incident queues and approvals within IT service management tools Act as a subject matter expert for nominated security technologies, ensuring effective configuration and optimisation Support ...

Associate / SrAssociate - Data & Cyber - Bristol - 1-8 PQE

Hiring Organisation
Chadwick Nott
Location
Bristol, Gloucestershire, United Kingdom
Salary
£ 70 K
team in Bristol. This is an excellent opportunity to work within a specialist group advising on cyber incidents, technology and data related claims, regulatory response and cyber/technology insurance coverage.The RoleYou'll support partners on a broad range of cyber, technology and data related matters, including:Advising insurers … insureds and brokers on breach response insurance issues, policy interpretation and coverage strategyRunning and supporting complex cyber coverage matters, including multi insurer claims and allocation issuesAdvising on technology and cyber related liability exposures, including technology E&O claimsSupporting defence and strategy of technology/data related disputes, including ...

Information Security Officer

Location
Salford, England, United Kingdom
mobile) are configured securely. Vulnerability Management: Run and remediate vulnerability scans; don’t just report the issues; help figure out how to fix them. Incident Response: Be a key part of our incident response team, investigating alerts and refining our "playbooks" for future threats. Identity & Access ...

Cyber Security Analyst-VM

Hiring Organisation
Wipro
Location
Norwich, Norfolk, United Kingdom
Salary
£ 70 K
ever-changing world. For additional information, visit us at www.wipro.com.Job DescriptionRole PurposeThe purpose of this role is to analyze attack patterns, develop incident response plans, ensure audit readiness, and implement disaster recovery measures, to ensure adherence to cyber security regulatory frameworks. ͏Areas of responsibilityMonitoring and Incident Detection … processes and implement improvements for faster detection, to ensure compliance with security frameworks and regulatory standards.Incident Handling and Analysis-Perform root cause analysis, create incident response plans and implement disaster recovery measures to minimize business disruptionThreat Assessment and Analytics-Undertake forensic analysis using advanced analytics tools and implement ...

Security Engineer

Hiring Organisation
Optima Recruitment
Location
Redhill, Surrey, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £50,000 per annum
internal and customer networks and systems. The role will work closely with Security, IT, Compliance and Engineering teams, providing technical expertise in network security, incident response, vulnerability management and security monitoring. The successful candidate will act as a key technical authority and provide third-line support for complex … device security. Monitor and investigate security events using SIEM, IDS/IPS and other security tools. Investigate and resolve security incidents and provide incident response support. Manage vulnerabilities and support penetration testing and security assessments. Provide through-life cybersecurity support and recommend improvements. Provide third-line technical support ...

Senior Security Engineer, Detection and Response

Location
Greater London, England, United Kingdom
integrity, ensuring trust and accountability. Employees, researchers, customers, and partners Win Together by fostering empowerment, inclusion, respect, and accountability. Senior Security Engineer, Detection and Response Remote Location: Austin TX, Seattle, WA, Washington, DC, San Francisco, CA, Boston, MA Position Summary At HackerOne, we’re rebuilding our Detection & Response … function with an AI-first approach—focused on engineering, not just triage. As a Senior Security Engineer, you will design and deliver detection and response capabilities that protect a modern, cloud-native environment by writing code, building AI-powered tooling, and automating workflows end-to-end. This role operates ...

SOC Automation Engineer

Location
Pocklington, England, United Kingdom
focused on designing, developing and enhancing security automation solutions that improve the effectiveness, efficiency and scalability of SOC operations. Working closely with SOC Analysts, Incident Responders and Service Owners, you will help automate security processes, streamline investigations and improve customer outcomes through intelligent automation and orchestration. What will … doing? Design, develop and maintain security automation workflows to support SOC operations. Create and optimise automated playbooks that improve detection, triage, enrichment and response activities. Work closely with SOC, engineering and service delivery teams to understand operational requirements and deliver automation solutions. Build and maintain integrations with security technologies ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
London, United Kingdom
Salary
£ 80 K
role will include:Serving as a subject matter expert for a team of analysts supporting 24/7/365 security monitoring and response operations.Monitoring, investigating, and responding to cybersecurity incidents, including participation in off-hours and on-call rotations.Acting as an escalation point … applying behavioural and anomaly-detection techniques.Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency.Identifying opportunities to automate SOC processes and improve operational efficiency.Assessing programme strengths and weaknesses and recommending AI solutions to enhance team capabilities, skills ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
Cheltenham, Gloucestershire, United Kingdom
Salary
£ 70 K
role will include:Serving as a subject matter expert for a team of analysts supporting 24/7/365 security monitoring and response operations.Monitoring, investigating, and responding to cybersecurity incidents, including participation in off-hours and on-call rotations.Acting as an escalation point … applying behavioural and anomaly-detection techniques.Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency.Identifying opportunities to automate SOC processes and improve operational efficiency.Assessing programme strengths and weaknesses and recommending AI solutions to enhance team capabilities, skills ...

Senior SOC Analyst

Hiring Organisation
Corpay
Location
Walsall, West Midlands (County), United Kingdom
Salary
£ 70 K
role will include:Serving as a subject matter expert for a team of analysts supporting 24/7/365 security monitoring and response operations.Monitoring, investigating, and responding to cybersecurity incidents, including participation in off-hours and on-call rotations.Acting as an escalation point … applying behavioural and anomaly-detection techniques.Leveraging commercial and open-source technologies, including AI-enabled tools, to automate repetitive tasks, enhance threat detection, and improve response efficiency.Identifying opportunities to automate SOC processes and improve operational efficiency.Assessing programme strengths and weaknesses and recommending AI solutions to enhance team capabilities, skills ...

Director, Security Operations Enablement

Hiring Organisation
American International Group (AIG)
Location
London, United Kingdom
Salary
£ 100 K
ownership of Data Engineering, Data Analytics, and SIEM/SOAR engineering capabilities, ensuring that platforms, data pipelines, and automation solutions effectively support detection and response outcomes. This role manages a global team of engineering professionals and is accountable for the delivery, performance, and governance of Security Operations technologies … Operations enablement, in alignment with the direction set by the Head of Security Operations, Deputy CISO, and CISO. Working closely with peer leaders across Incident Response, Global Cyber-risk Defense Center (GCDC), Cyber Threat Management, and Security Engineering, this role ensures that operational requirements are translated into scalable ...

Senior Detection and Response Engineer

Location
Cambridge, England, United Kingdom
queries and monitoring logic across cloud, endpoint, network and application environments. Develop tooling and automation to improve security telemetry, alert enrichment, investigation workflows and response times. Conduct threat hunting using adversary behaviours, TTPs and frameworks such as MITRE ATT&CK, incorporating findings into security controls and detections. Create … continuously improve incident runbooks, playbooks and detection processes based on findings from real-world investigations. Work with the external SOC and internal engineering teams to strengthen monitoring coverage, investigate escalations and continuously improve detection and response capability. Participate in an on-call rotation. Requirements Hands-on experience investigating ...

IT Operations Manager

Location
Birmingham, England, United Kingdom
compliance, and a positive customer experience. The post holder will lead operational teams, manage service delivery processes, oversee infrastructure and cloud operations, coordinate major incident response, and ensure operational readiness across all supported services. Key Responsibilities People and Operational Leadership Lead and manage service desk, infrastructure, and cloud … Cyber Essentials Plus requirements. Oversee operational security controls including access reviews, vulnerability remediation, patch compliance, and monitoring activities. Participate in incident response, disaster recovery, and business continuity exercises. Ensure audit evidence, service records, and operational documentation are accurate and maintained. Promote a culture where security, compliance, and risk ...