701 to 725 of 2,366 Incident Response Jobs in the UK

Security Operations Manager

Location
Bournemouth, England, United Kingdom
deliver a modern, resilient cyber security function. What you’ll be doing: Lead and develop a Cyber Security Operations team Take ownership of incident detection, response, and recovery Drive SOC maturity improvements and tool optimisation Deliver security insights and risk reporting to senior stakeholders Partner with vendors, forensic … delivery of the security strategy and roadmap What we’re looking for: Proven experience leading SOC/Cyber Security Operations teams Strong background in incident response and threat management Experience with SIEM, monitoring, and detection engineering Knowledge of frameworks such as ISO27001, NIST, GDPR Ability to operate ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
world attack techniques Map customer log sources to detection use cases to assess coverage and identify gaps Design and implement SOAR automations, integrations and response workflows Develop and document customer incident response playbooks aligned to detection outputs Translate threat intelligence and operational learnings into improved detections … including use case design, ruleset development and coverage assessment Log source mapping and normalisation to support detection use cases Network Detection and Response technologies such as Vectra AI, Corelight or similar Cloud security and telemetry, particularly within Azure environments Threat intelligence integration and enrichment to support detection and response ...

Business Information Security Officer (BISO)

Location
Southampton, England, United Kingdom
tracking. Ensure all projects, solutions, and business changes are delivered using Secure by Design principles, identifying control weaknesses and managing associated risks. Lead security incident and breach response activities between Technology and the business, participating in the Cyber Security Incident Response Team (CSIRT) where required. Drive ...

Business Information Security Officer (BISO)

Hiring Organisation
Kingfisher
Location
Southampton, Hampshire, United Kingdom
Salary
£ 100 K
remediation tracking.Ensure all projects, solutions, and business changes are delivered using Secure by Design principles, identifying control weaknesses and managing associated risks.Lead security incident and breach response activities between Technology and the business, participating in the Cyber Security Incident Response Team (CSIRT) where required.Drive assurance ...

Business Information Security Officer (BISO)

Location
Southampton, England, United Kingdom
tracking. Ensure all projects, solutions, and business changes are delivered using Secure by Design principles, identifying control weaknesses and managing associated risks. Lead security incident and breach response activities between Technology and the business, participating in the Cyber Security Incident Response Team (CSIRT) where required. Drive ...

Information Security Analyst

Location
Greater London, England, United Kingdom
join its global Information Security Team. This role is ideal for an individual who enjoys a broad range of security responsibilities spanning security operations, incident response, governance, risk management, compliance, supplier assurance and security project delivery. As a member of a small but highly effective global Information Security … than just IT service and delivery. Key Responsibilities Monitor, investigate and respond to security alerts and incidents across on-premise and cloud environments. Lead incident triage, containment, remediation and post-incident reviews to minimise business risk. Manage security operations workflows, ensuring issues are prioritised and resolved within agreed ...

Director, Security Engineering

Location
Greater London, England, United Kingdom
governance, and operations—defining roadmaps, managing budgets, and communicating risk to executives while serving as a senior security advocate for sales, customer audits, and incident communications. You will own full-lifecycle detection and response (telemetry, automation, CI/CD detection-as-code, and MTTR/ATT&CK metrics … serve as Incident Commander, running regular tabletop/purple-team exercises and postmortem improvements. A major focus is driving AI security and internal AI governance: integrating LLMs/ML into SOC triage and anomaly detection, defending AI attack surfaces (agent activity, prompt injection, machine identities), hardening against AI-driven ...

Lead IT Security Engineer (Cybersecurity & Platform Security)

Location
Greater London, England, United Kingdom
cloud security controls, baselines, monitoring capabilities, and security automation solutions. Develop and enhance scripts, workflows, and automation to improve operational efficiency, security coverage, and response times. Create and maintain technical documentation, operational procedures, runbooks, and knowledge articles to support cloud security operations. Participate in incident response, troubleshooting ...

Senior SOC Analyst

Location
City Of London, England, United Kingdom
experienced Senior SOC Analyst to join a growing security operations team in London. This is a hands-on position for someone with strong incident detection, investigation and response experience. You will take the lead on complex security incidents, support the development of junior analysts and help improve … organisation’s overall detection and response capabilities. Key responsibilities Investigating and responding to complex security alerts and incidents Leading incident triage, containment and remediation activities Performing threat hunting and identifying suspicious behaviour across the environment Developing and improving SIEM rules, alerts and security use cases Analysing endpoint, network ...

ServiceNow GRC Architect

Location
Greater London, England, United Kingdom
across multiple ServiceNow modules, including: Integrated Risk Management (IRM): Policy Management, Compliance & Audit Management, Vendor Risk Management, Business Continuity Management. Security Operations (SecOps): Vulnerability Response, Security Incident Response, and Security Dashboards. IT Service Management (ITSM). IT Operations Management (ITOM). Customer Service Management (CSM). Integration ...

Vice President, Production Services Application Support

Hiring Organisation
Hackajob Ltd
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
coverage across on-site and offshore support hours. Use SQL scripting, automation, monitoring, and observability tools to improve operational resilience, service health, reliability, and incident response. To be successful in this role, were seeking the following: Excellent SQL scripting skills. Strong scripting and automation skills using languages such … Proven skills and track record in AI automation, including the use of intelligent automation capabilities to reduce manual effort, improve operational efficiency, and enhance incident response workflows. Experience applying AI and automation solutions for alert correlation, anomaly detection, predictive monitoring, and service optimisation. Strong understanding of Site Reliability ...

Senior Cyber Security Engineer

Hiring Organisation
The Financial Times
Location
London, UK
Employment Type
Full-time
working. DesirableExperience with leveraging AI for AppSec and CloudSec. AWS Certified Security – Speciality or equivalent practical AWS security experience. Terraform or CloudFormation expertise. Incident-management or incident-response experience. Experience with Splunk or similar logging/SIEM platforms. Experience with security metrics, dashboards or reporting that helped ...

Cyber Security Operations Manager

Hiring Organisation
Vitality
Location
Stockport, Greater Manchester, United Kingdom
Salary
£ 80 K
Office. Full time, 35 hours per week. We are happy to discuss flexible working!Top 3 skills needed for this role:Security Operations Leadership & Incident ResponseRisk, Governance & Regulatory ComplianceTechnical Depth in Monitoring & Security EngineeringWhat this role is all about:You will be joining a vibrant, exciting environment to lead … team of security analysts and a service delivery manager with specific skill sets. This role provides cyber security leadership through risk management, threat monitoring, incident response, resilience planning, training, and CSIRT team support.In addition to your daily responsibilities, you will be playing a part in the longer-term ...

Head of Production Management- J.P. Morgan Personal Investing

Hiring Organisation
JP Morgan Chase
Location
London, United Kingdom
Salary
£ 120 K
resilience, and risk posture of our production and disaster recovery environments. In this role, you will define and govern production management standards across change, incident, capacity, and automation disciplines — driving operational consistency and minimising disruption to our UK customers. Working within a you-build-it-you-run-it engineering … speed, scalability, reliability, and cost-to-serve), including portfolio-level standards for AI-orchestrated delivery workflows, release governance, automated test modernization, resilience engineering, and incident response acceleration; establishes guardrails for validation, security, resiliency, traceability, and reuse.Applies knowledge of tools within the Software Development Life Cycle toolchain, including enterprise ...

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, South East, United Kingdom
Employment Type
Permanent
Salary
£65,000
Security Operations capability. This is more than a leadership role. You'll remain hands-on in the fight against cyber threats, leading investigations, driving incident response, mentoring analysts, and strengthening our detection and response capabilities across multiple complex client environments. Whether you're already leading … operational discussions with stakeholders, partners and custom ers. What You'll Bring: Proven experience working within a Security Operations Centre (SOC). Strong incident detection, investigation and response experience. Deep understanding of network and host-based attack techniques. Hands-on experience with SIEM technologies such as Microsoft Sentinel ...

SOC Shift Lead

Hiring Organisation
Sopra Steria
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Security Operations capability. This is more than a leadership role. You'll remain hands-on in the fight against cyber threats, leading investigations, driving incident response, mentoring analysts, and strengthening our detection and response capabilities across multiple complex client environments. Whether you're already leading … operational discussions with stakeholders, partners and custom ers. What You'll Bring: Proven experience working within a Security Operations Centre (SOC). Strong incident detection, investigation and response experience. Deep understanding of network and host-based attack techniques. Hands-on experience with SIEM technologies such as Microsoft Sentinel ...

Test Environment Manager

Location
Greater London, England, United Kingdom
provisioning time, and stability metrics. Monitor environment health using observability tools (Prometheus, Grafana, Splunk, etc.) and proactively identify and resolve performance issues or bottlenecks. Incident & Problem Management Lead incident response for environment-related issues, driving quick resolution and facilitating blameless post-mortems. Implement permanent fixes based … manual environment tasks and eliminate them through automation, improving engineering efficiency and reducing operational burden. Strategic & Cultural Responsibilities: Continuous Improvement Analyze environment performance data, incident trends, and post-mortem outcomes to drive ongoing enhancements and innovation. Reliability Management Apply an "error budget" framework to balance velocity and reliability across ...

cloud engineer in insurance

Location
Greater London, England, United Kingdom
Drive improvements in reliability, resilience, performance, and efficiency through SRE practices Own and enhance observability and monitoring, including meaningful alerting, operational dashboards, and rapid incident diagnosis Improve operational maturity through incident management, root-cause analysis, and continuous improvement Ensure workloads are designed, deployed, and operated according to cloud … such as Terraform, CI/CD pipelines, and automation tooling Hands-on expertise in SRE and operational excellence, including monitoring, alerting, reliability improvement, and incident response Proven ability to lead technical initiatives end-to-end while balancing robustness, efficiency, and developer usability Experience operating and supporting Kubernetes-based ...

Remote Senior Site Reliability Engineer Manager (Remote)

Location
Cambourne, England, United Kingdom
technical and process perspective. Provide a consistent smooth operation of live systems and drive all on-call support issues. Design and operate a new incident tracking process to ensure root causes are found and remediated in a timely fashion by the development team. Create and maintain high end monitoring … experience in a senior or lead SRE role, with a strong track record of building and maintaining highly reliable infrastructure and services. Expertise in incident management, including incident response, resolution, and post-mortem analysis. Proficiency in monitoring, alerting, and observability tools such as Prometheus, Grafana, ELK stack ...

Senior Lead Software Engineer - Cloud Platform Engineering

Hiring Organisation
JP Morgan Chase
Location
London, United Kingdom
Salary
£ 100 K
stability of software applications and systems.- Provides operational support and leadership for production systems in a "you-build-it-you-run-it" culture, including incident response, post-incident learning, and continuous reliability improvements.- Leads evaluation sessions with external vendors, startups, and internal teams to drive outcomes-oriented … engineering practices across teams to improve code quality, delivery speed, and operational outcomes (e.g., AI-assisted code review/refactoring, test acceleration, release readiness, incident/root-cause analysis), while establishing measurable validation standards (secure coding, peer review, automated testing) and promoting reuse of proven patterns and automation within ...

Information Security Engineer

Hiring Organisation
Medpace
Location
London, United Kingdom
Salary
£ 80 K
teams as needed.• Improve and automate security operations by developing scripts, integrations, or workflows to reduce manual effort, enhance detection capabilities, and streamline incident response (e.g., building security automation in cloud or SIEM).• Integrate security into enterprise systems and processes, working closely with Network, Cloud, and DevOps … networks, and cloud architectures (Azure preferred), and how to secure them.Proven hands-on experience with security technologies, including some variety of SIEM, endpoint detection & response, identity/privileged access management, and cloud security tools.Excellent communication and documentation skills, with the ability to clearly explain complex security concepts to both ...

Chief Information Security Officer / CISO - Higher Education

Hiring Organisation
Experis
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure … leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical ...

Chief Information Security Officer / CISO - Higher Education

Hiring Organisation
Experis
Location
West Midlands, United Kingdom
Employment Type
Contract
security policies, standards and control frameworks. Deliver security reporting and risk updates to Executive Leadership Teams, Boards, Audit Committees and key stakeholders. Lead security incident preparedness, response oversight and resilience planning. Drive cyber maturity improvements across people, process and technology. Manage security risk assessments and remediation programmes. Ensure … leading enterprise-wide cyber security programmes. Strong background covering: Operational Security Security Governance Cyber Risk Management Cyber Assurance Security Strategy Third-Party Security Management Incident Response & Cyber Resilience Experience overseeing or working alongside managed SOC services. Strong stakeholder management skills with the ability to engage both technical ...

Lead Platform Operations Engineer

Location
Greater London, England, United Kingdom
evolve container-based platforms using Kubernetes and Docker Define and maintain platform standards, patterns, and best practices Own Platform Reliability, Security & Performance Lead incident response, root cause analysis, and platform improvements Implement robust monitoring, observability, and alerting strategies Drive security improvements aligned to ISO27001, SOC2, and modern SDLC … with vulnerability management, PAM, secrets management, and secure access Platform & Operations Excellence Experience running and scaling highly available SaaS platforms Strong understanding of SRE, incident management, and operational best practices Experience implementing BCP/DR solutions across cloud and on-prem Leadership & Delivery Proven leadership experience managing technical teams ...

Site Reliability Engineer, Studios

Hiring Organisation
iMG world
Location
London, United Kingdom
Salary
£ 70 K
embed reliability engineering practices across systems that support live, business-critical environments.The successful candidate will play a key role in improving service reliability, observability, incident response, automation, and disaster recovery readiness across IMG platforms, while working closely with engineering, operations, and project stakeholders.Key Responsibilities and AccountabilitiesDesign, build … teams to improve release quality, resilience, and supportability.Act as an escalation point for production incidents, leading or supporting rapid diagnosis, mitigation, communication, and post-incident follow-up.Drive root cause analysis and corrective actions following incidents, with a focus on prevention and continuous improvement.Support the design, testing, and documentation ...