51 to 75 of 642 Incident Response Jobs in the UK

Senior SOC Analyst - Hybrid / Leeds

Hiring Organisation
Interface Recruitment
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx2
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Head of Cyber Claims - International

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Senior Cyber Security Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
monthly reporting. Deliver secure configuration and compliance reporting across the estate, supporting a measurable uplift in security maturity against NIST CSF. Security Operations and Incident Response Act as the second cyber escalation point within the 24/7 security operating model, providing technical investigation, containment and response as part of the cyber on-call rota and supporting post-incident reviews. Onboard and manage the day-to-day relationship with the outsourced SOC/MDR provider, establishing operational handover processes and driving improvement in detection and response performance (MTTD/MTTR). Provide security input ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Splunk SIEM Engineer

Hiring Organisation
Experis
Location
Knutsford, Cheshire, United Kingdom
Employment Type
Contract
Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience with … tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. SOAR & Automation: Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. Network Security Fundamentals: Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. Communication & Documentation ...

Splunk SIEM Engineer

Hiring Organisation
Hays
Location
Knutsford, Cheshire, North West, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
£500.0 - £638 per day + Up to £638 per day Inside IR35
Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience with … tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. SOAR & Automation: Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. Network Security Fundamentals: Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. Communication & Documentation ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP 500 - 550 Daily
wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy … Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
Remote work, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550/day
wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy … Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . ...

SOC Analyst

Hiring Organisation
Experis
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£400 - £500/day
client is seeking a SOC Analyst to join a security operations team in London. The role is focused on real-time monitoring, investigation, and incident response across a modern enterprise security environment. - Key Responsibilities Monitor, triage, and respond to security alerts across multiple platforms, including Microsoft and endpoint … Optimise and tune detection rules, policies, and alerting mechanisms to improve SOC efficiency. Collaborate with internal teams to support security operations, threat analysis, and incident recovery. Produce clear incident documentation, reports, and recommendations for continuous improvement. Contribute to maintaining and enhancing SOC processes, runbooks, and operational workflows. Required ...

Support Engineer L3

Hiring Organisation
Opus Recruitment Solutions
Location
Newcastle upon Tyne, Tyne & Wear, United Kingdom
Employment Type
Contract
Contract Rate
£37000 - £55000/annum
point for complex issues impacting business-critical services. Execute technical recovery actions during incidents to restore service as quickly as possible. Participate in Major Incident and High-Priority Incident response activities. Technical Troubleshooting Diagnose and resolve application, infrastructure, integration, database, and data-related issues across supported products … architecture, business processes, and operational dependencies. Problem Management & Continuous Improvement Conduct root cause analysis (RCA) and contribute to Problem Management processes. Participate in post-incident reviews and recommend long-term preventative solutions. Drive continuous service improvement through automation, process optimisation, tooling enhancements, and reduction of recurring incidents. Monitor service ...

Security Analyst | Cyber Security | Hybrid

Hiring Organisation
Cyber Talent Limited
Location
Lutterworth, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£55,000
Cyber Essentials , and Cyber Essentials Plus certifications. Produce security metrics , dashboards , and security reports to inform security strategy . Lead and coordinate security incident response and post-incident improvements . Conduct third-party security assessments and manage vendor security assurance . Requirements 4+ years' experience … skills across complex IT environments. Proactive approach to security , with a focus on continuous improvement and best practice . Experience leading or supporting security incident response and remediation . Strong reporting , analysis , and security metrics capabilities. Excellent communication , stakeholder engagement , and documentation skills. Benefits Excellent salary Pension Private ...

DevOps Engineer (AWS)

Hiring Organisation
IT Graduate Recruitment
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£30,000 per annum
Integrate security scanning and compliance checks into deployment pipelines. Implement monitoring, logging and alerting to improve platform reliability. Support production environments and participate in incident response and post-incident reviews. Maintain cloud networking, storage, compute and database services. Collaborate with development teams to improve automation and platform … Infrastructure Automation, DevSecOps, Security Scanning, Checkov, Trivy, Snyk, Vulnerability Management, Least Privilege, Access Management, CloudFormation, AWS CDK, GitOps, ArgoCD, Flux, Monitoring, Observability, Logging, Alerting, Incident Response, Reliability Engineering, Grafana, Datadog, ELK Stack, OpenSearch, Cloud Operations, Linux, Networking, Cloud Native, Platform Automation, Troubleshooting, Infrastructure Reliability, DevOps Practices, Software Delivery ...

Lead Site Reliability Engineer

Hiring Organisation
Jobleads-UK
Location
Nottingham, England, United Kingdom
Site Reliability Engineering, cloud operations, and modern software delivery practices with a passion for building high-performing engineering teams. You will lead reliability strategies, incident management, automation initiatives, and continuous improvement efforts, while partnering closely with product, engineering, and business stakeholders to align technology outcomes with organisational objectives. This … World Check verify Applications. Define and implement SLOs, SLIs, and error budgets; maintain reliability scorecards and drive improvements through engineering backlogs. Act as Major Incident Commander during critical outages; lead blameless post-incident reviews and ensure learnings are institutionalized. Drive automation-first mindset across incident response ...

Cyber Security Analyst

Hiring Organisation
The Portfolio Group
Location
Manchester, United Kingdom
Employment Type
Permanent
Salary
£45000/annum
infrastructure and established a modern, cloud-first security stack, it is an exciting time to join the business as we mature our detection, response, and automation capabilities across a global estate. You will work collaboratively with the business and the wider IT team - Infrastructure, Network, Development, DevOps, and Service … with Palo Alto Cortex XSIAM and XSOAR, Cortex XDR, Microsoft Purview, Mimecast, Abnormal, Nessus, and Microsoft 365. You will participate in security investigations and incident response, responding to events involving malware, data loss, phishing, or network intrusion, and supporting our data protection and vulnerability management activity. You will ...

Security Architect (ZTA) - DV Cleared - on-site Farnborough

Hiring Organisation
DXC
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
frameworks. Cyber Threat & Risk Management Assess cyber threat landscape and design threat-informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence and cyber defence capabilities. Architect security monitoring, detection and response solutions. Design business continuity and cyber resilience frameworks. Compliance … architectural role. Proven experience designing enterprise-scale security architectures. Strong background in defence, aerospace or government security programmes. Demonstrated expertise with security operations, incident response and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies and best practices. Expert ...

Security Architect (ZTA) - DV Cleared, Farnborough

Hiring Organisation
Jobleads-UK
Location
Farnborough, England, United Kingdom
frameworks. Cyber Threat & Risk Management Assess cyber threat landscape and design threat-informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence and cyber defence capabilities. Architect security monitoring, detection and response solutions. Design business continuity and cyber resilience frameworks. Compliance … architectural role. Proven experience designing enterprise-scale security architectures. Strong background in defence, aerospace or government security programmes. Demonstrated expertise with security operations, incident response and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies and best practices. Expert ...

Security Architect - ZTA

Hiring Organisation
Hackajob Ltd
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
frameworks. Cyber Threat & Risk Management Assess cyber threat landscape and design threat-informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence and cyber defence capabilities. Architect security monitoring, detection and response solutions. Design business continuity and cyber resilience frameworks. Compliance … architectural role. Proven experience designing enterprise-scale security architectures. Strong background in defence, aerospace or government security programmes. Demonstrated expertise with security operations, incident response and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies and best practices. Expert ...

Cyber Security Specialist (SecOps / Liverpool)

Hiring Organisation
Michael Page
Location
Liverpool, Merseyside, United Kingdom
Employment Type
Permanent
Salary
£60000 - £65000/annum healthcare
This position focuses on security monitoring, incident investigation, threat analysis, and operational security improvement. The successful candidate will act as a subject matter expert for cyber security operations, supporting both proactive and reactive security activities while helping to enhance the organisation's overall security maturity. Client Details Our client … analysis and identifying potential threats or areas requiring further investigation. Working closely with external security service providers to ensure effective monitoring, alert management, and incident handling. Supporting cyber incident response activities as a technical security specialist. Analysing security metrics and trends, providing recommendations to improve security controls ...

Network Support Engineer

Hiring Organisation
Bright Purple Resourcing
Location
Edinburgh, Midlothian, Scotland, United Kingdom
Employment Type
Permanent
Salary
£65,000
support). Monitor, analyse, and investigate network traffic and emerging threats, including active DDoS activity. Support customer maintenance, upgrades, and technical communications. Contribute to incident response and post-incident reviews that sharpen our detection and mitigation playbooks. Work within ITIL processes (Incident, Change, Problem, Service Requests … A+, Network+, Security+, CySA+, or CyberOps. If youre early in your career and hungry to build deep expertise in network security, traffic analysis, and incident response, this role was designed for you. Bright Purple is an equal opportunities employer: we are proud to work with clients who share ...

Security Architect (ZTA)

Hiring Organisation
Jobleads-UK
Location
Farnborough, England, United Kingdom
frameworks. Cyber Threat & Risk Management – Assess cyber threat landscape and design threat‐informed security architectures. Lead security risk assessments and vulnerability management programmes. Design incident response, threat intelligence, and cyber defence capabilities. Architect security monitoring, detection, and response solutions. Design business continuity and cyber resilience frameworks. Compliance … architectural role. Proven experience designing enterprise‐scale security architectures. Strong background in defence, aerospace, or government security programmes. Demonstrated expertise with security operations, incident response, and threat management. Track record of leading security transformation and programme implementations. Deep expertise in security architecture frameworks, methodologies, and best practices. Expert ...

Global DFIR Director: Lead Cyber Incident Excellence

Hiring Organisation
Jobleads-UK
Location
Manchester, England, United Kingdom
Group plc seeks a Director, Digital Forensics & Incident Response (Global) to lead the global DFIR capability, setting strategic direction and ensuring effective preparedness, response, recovery, and continuous improvement across cyber incident management and forensic investigations. The role requires driving operational excellence, collaborating with NCC Group leaders … expanding security services through incident response opportunities. #J-18808-Ljbffr ...

Lead Site Reliability Engineer - Operations Excellence

Hiring Organisation
Jobleads-UK
Location
Glasgow, Scotland, United Kingdom
production at scale, with deep instrumentation and strong operational rigor. You will partner across engineering to deliver secure software, improve stability, and lead incident response and continuous improvement. Job Responsibilities Design, develop, troubleshoot, and deliver secure, high‐quality production software and services for AI infrastructure Build backend services … parallelism, speculative decoding) Lead reliability engineering for LLM endpoints through capacity planning, load/soak testing, safe rollouts (blue/green, canary), failover, and incident response for outages and model‐quality regressions Participate in an on‐call rotation, lead incident triage and mitigation, and produce clear post ...

Lead Security Assurance Engineer

Hiring Organisation
Jobleads-UK
Location
Bristol, England, United Kingdom
audience, showing trends over time, and structuring reports around the decisions the reader needs to make, not just the findings. Set the standard for incident response and detection readiness. Drive adoption of incident response practices across engagements, own the IR-to-vulnerability-management feedback loop ...

Lead Security Assurance Engineer

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£90,000
audience, showing trends over time, and structuring reports around the decisions the reader needs to make, not just the findings. Set the standard for incident response and detection readiness. Drive adoption of incident response practices across engagements, own the IR-to-vulnerability-management feedback loop ...

Soc Operations Manager

Hiring Organisation
Morson Edge
Location
City of London, London, United Kingdom
Employment Type
Contract
Contract Rate
£800 - 950 per day
apply. The Role - As SOC Operations Manager, you'll lead the day-to-day operation of the Security Operations Centre, ensuring security monitoring, incident response and cyber defence capabilities are operating effectively. You'll be responsible for developing the SOC function, leading analysts and engineers, improving operational maturity … excellence and stakeholder management. Responsibilities - Lead and develop a high-performing SOC team, providing coaching, mentoring and technical leadership. Oversee the detection, investigation and response to cyber security incidents. Drive continual improvement across SOC processes, playbooks and operational procedures. Monitor and improve key SOC performance metrics including MTTD, MTTR ...