1 to 25 of 856 Incident Response Jobs in the UK excluding London

Senior Manager - Cyber Incident & Response - Consulting

Hiring Organisation
Oliver James
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 - £110,000 per annum
Senior Manager/Associate Director - Cyber Incident Response Advisory & Incident Management This is a senior opportunity within a leading Cyber Risk & Security practice, working with major organisations to strengthen their ability to prepare for, manage and recover from complex cyber incidents. The role sits across both proactive … cyber incident response advisory and live incident management, helping clients improve resilience while supporting them through high-impact security events. You will work closely with senior stakeholders and C-suite leaders, advising on cyber incident preparedness, crisis and incident management, response strategies and organisational ...

Senior Manager, Cybersecurity Incident Response

Hiring Organisation
ARM
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 100 K
Overview:Interested in defending a global tech company from the latest cyber threats? Arm is seeking a passionate, experienced Senior Manager of Cybersecurity Incident Response to join our growing Cyber Defence Operations (CDO) team, protecting Arm against current and future cyber-attacks! Situated within Arm’s Enterprise Security … function, this role will lead Arm’s global incident response team across the US, UK and India, including acting as a senior technical and operational leader for major cyber incidents.CDO enables Arm to be successful, delivering scalable and defendable security services that not only provide for the protection ...

Senior Incident Response Consultant 2

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Cyber Response and Recovery - Assistant Manager (Reactive)

Hiring Organisation
KPMG
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 70 K
Cyber Response & Recovery Assistant Manager (Reactive DFIR)This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance.About the role The Cyber Response & Recovery Assistant Manager role will be working in the Cyber Response Services (CRS) Team within our Advisory practice.Your specific focus … will be in the domain of reactive digital forensics and incident response (DFIR) acting as a junior case manager on smaller cases, or part of a team (reporting to a case manager or senior case manager) on larger cases.This is a hands-on role, and an opportunity ...

Senior Incident Response Consultant, Rapid Response

Location
Oxford, England, United Kingdom
human expertise from Sophos X-Ops to deliver advanced, 24/7 threat monitoring, detection, and response. Sophos offers industry-leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection … response (ITDR), and next-gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats. Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security ...

Cyber Response & Recovery - Manager (Remediation focus)

Hiring Organisation
KPMG
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 70 K
Cyber Response & Recovery Manager (Remediation)This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance.About the roleThe Cyber Response & Recovery Manager role will sit within the Cyber Response Services team in KPMG’s Cyber Advisory practice.Your specific focus will … compromise, Active Directory compromise, cloud compromise and advanced network intrusions. In these situations, clients look to KPMG not only to investigate and contain the incident, but also to help them recover securely, rebuild critical services, reduce the risk of reinfection and improve their long-term resilience.This is a hands ...

Senior Manager-Associate Director, Cyber Incident Response Advisory and Incident Management, Recovery and Resilience

Hiring Organisation
Deloitte
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 100 K
operations has become a board level issue. You will provide our clients with a full spectrum of services, covering proactive and reactive Cyber Incident Response (CIR) Services. The proactive arm of our business covers a breadth of propositions, including playbook development, wargaming, readiness assessments, post-breach assessments, managed … threat hunting as well as implementing response automation technologies. Our specialists work with clients to uplift their maturity and fundamentally enhance their preparedness to respond, via targeted capability uplift, C-Suite awareness campaigns and training.Our technical response team support our clients in live incident responses by working ...

Senior Manager-Associate Director, Cyber Incident Response Advisory and Incident Management, Recovery and Resilience

Hiring Organisation
Deloitte
Location
Edinburgh, Midlothian, United Kingdom
Salary
£ 100 K
operations has become a board level issue. You will provide our clients with a full spectrum of services, covering proactive and reactive Cyber Incident Response (CIR) Services. The proactive arm of our business covers a breadth of propositions, including playbook development, wargaming, readiness assessments, post-breach assessments, managed … threat hunting as well as implementing response automation technologies. Our specialists work with clients to uplift their maturity and fundamentally enhance their preparedness to respond, via targeted capability uplift, C-Suite awareness campaigns and training.Our technical response team support our clients in live incident responses by working ...

Regional CERT Manager

Location
Manchester, England, United Kingdom
planet. That’s why our purpose is ‘to make sustainable living commonplace’ Role Overview The Regional CERT Manager is responsible for leading cyber incident response operations across the region, ensuring effective detection, containment, investigation, remediation, and recovery from security incidents. This role combines strategic leadership with hands … technical expertise to drive operational excellence, strengthen security capabilities, and enhance organisational cyber resilience. Key Responsibilities Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents. Own and continuously improve the end‐to‐end Incident Management lifecycle, ensuring ...

DFIR Managing Consultant

Location
Manchester, England, United Kingdom
Cyber Services and Capabilities Employment Type: Full Time Location: GBR Manchester Hardman Boulevard Role Purpose: To manage and service NCC Group clients within the Incident Response space. The Managing Consultant plays a critical role within the DFIR team of experienced consultants, delivering high‐quality incident response and proactive services to clients. The role involves leading and contributing to detailed technical analysis, managing incident response activities, and ensuring effective communication and coordination throughout an engagement. With a strong focus on technically supporting clients during live incidents, the Managing Consultant is also expected to contribute ...

Cyber Incident Manager (CIM) - Welwyn Garden City, United Kingdom of Great Britain and Northern Ireland

Hiring Organisation
Tesco
Location
Welwyn Garden City, Hertfordshire, United Kingdom
Salary
£ 70 K
About the role: As a Cyber Incident Manager at Tesco, you will lead the coordinated response to cyber incidents, protecting the integrity of the retail ecosystem that serves millions of customers every day. Acting as a central orchestrator, you will ensure swift, structured, and effective incident resolution … minimising operational disruption and customer impact. This role is critical to maintaining trust in Tesco’s digital platforms by driving proactive, intelligence-led response and embedding continuous improvement across the cyber defence lifecycle. You will operate at the intersection of technology, business impact, and customer outcomes, championing innovation ...

Security Engineer I, AWS Security Incident Response

Location
Manchester, England, United Kingdom
Security Engineer I, AWS Security Incident Response AWS Security Incident Response is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious … activity, lead security response, and can explain technical security concepts to non-technical audiences. Key job responsibilities Respond to threat findings that indicate unauthorized activity has occurred Identify, evaluate and communicate security threats, risks and vulnerabilities, and propose recommended remediation for security issues. Contribute to the development of security ...

Senior SOC Analyst - Incident Response

Location
Manchester, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Senior SOC Analyst - Incident Response

Location
North East, England, United Kingdom
enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain … enable GHD to deliver for clients and communities around the world. As cyber threats become more sophisticated and connected environments grow in complexity, effective incident response depends on more than technology alone. At GHD, we combine disciplined investigation, practical judgement and close collaboration to understand threats quickly, contain ...

Threat Response Technology and Capabilities Product Owner

Hiring Organisation
MasterCard
Location
Ringwood, Hampshire, United Kingdom
Salary
£ 60 K
networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.Title and SummaryThreat Response Technology and Capabilities Product OwnerOverviewThe Corporate Security Threat and Response Management product ownership team is looking for a Lead Security Engineer to help drive … ideal candidate is passionate about the modern security tools, capabilities, and strategies.As a Product Owner, you will be defining, owning, and driving the incident response technology and capability strategy across global Security Operations. This role sets the vision for response tooling, automation, AI augmentation, and digital evidence ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
Sandwich, Kent, United Kingdom
Salary
£ 100 K
ROLE SUMMARYOur Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on-premises, cloud, and hybrid environments.As a Lead Threat Response Operations Analyst within Pfizer’s Global Cyber Defense organization, you will … serve as a senior individual contributor, providing technical leadership for the investigation and response to sophisticated cyber threats. While this is not a people-management role, you will lead complex investigations, coordinate the response to security incidents on a global scale, and provide technical guidance to analysts ...

Lead Threat Response Operations Analyst

Hiring Organisation
Pfizer
Location
South East, United Kingdom
Employment Type
Permanent
ROLE SUMMARY Our Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, incident response, and risk mitigation across on-premises, cloud, and hybrid environments. As a Lead Threat Response Operations Analyst within Pfizers Global Cyber Defense organization … will serve as a senior individual contributor, providing technical leadership for the investigation and response to sophisticated cyber threats. While this is not a people-management role, you will lead complex investigations, coordinate the response to security incidents on a global scale, and provide technical guidance to analysts ...

Head of Security Incident and Response

Location
Newcastle upon Tyne, England, United Kingdom
green and healthy future for all. Find out more about DDTS: Defra digital, data and technology blog LinkedIn Defra Jobs The Head of Security Incident and Response provides operational leadership of the Defra Group Security Incident Response Management (SIRM) capability, ensuring the organisation is prepared … able to respond effectively to, security incidents ranging from routine events to significant security incidents. As the senior lead for security incident management, the role oversees incident response policy, governance and operational coordination, directs the response to complex and high-impact incidents, and provides authoritative advice ...

Cyber Defence Analyst

Location
Belfast, County Antrim, United Kingdom
playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. … Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand ...

Operational Security Manager

Location
Farnborough, England, United Kingdom
will join a growing team of security professionals to protect and maintain the effectiveness of managed service capabilities. The Operational Security Manager supports cybersecurity incident response, investigation, escalation, and regulatory reporting, with a focus on the EU Cyber Resilience Act. Working across Cybersecurity, Product Security, Legal, Compliance, Privacy … Security Manager also provides technical leadership and continuously improves security processes, controls, and supporting technologies. What You'll Be Doing : Support the full cybersecurity incident response lifecycle, including triage, investigation, containment, escalation, remediation, recovery, and post-incident review across enterprise and product environments. Coordinate incident response ...

Cyber Security Engineer - MS Sentinel, Defender, SSO, PKI, SC-100/200, CISSP

Hiring Organisation
Comtecs Ltd
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£90,000 - £100,000 per annum
Cyber Security Specialist/Cyber Security Engineer - CISSP, CEH, CCNA Security, Incident Response, Threat Monitoring, Vulnerability Management, Security Architecture, Azure, Windows Server Infrastructure. Permanent. London Hybrid. c.£90k - £100k + Bons +Benefits Global Law Firm seeks an experienced IT Cyber Security Specialist to join its Infrastructure Engineering team … identify vulnerabilities, respond to incidents and strengthen the firm's overall security posture. This is a hands-on technical role covering Cyber Security Engineering, Incident Response, Threat Monitoring, Vulnerability Management and Security Architecture (Infrastructure focussed) using tools such as MS Defender and MS Sentinel. You'll work across ...

NMC Cyber Incident Responder (Digital Forensics)

Hiring Organisation
Police Digital Services
Location
Wigan, Greater Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Join Police Digital Service as NMC Cyber Incident Responder (Digital Forensics) Salary starting at £55,000 pa + 10% shift allowance As a member of the National Management Centre (NMC) Cyber Incident Response team, you will lead and support the investigation of cyber security incidents affecting … policing. This role combines digital forensics, incident response and stakeholder engagement, requiring the ability to identify, contain and investigate sophisticated cyber threats across diverse technology estates. You will conduct forensic examinations of compromised systems, analyse host, network and memory-based evidence, and support the collection and preservation ...

Enterprise Incident Manager Senior

Location
Gateshead, England, United Kingdom
Ready to take your career globally? Make your mark at one of the biggest names in payments. We’re looking for a Enterprise Incident Manager Senior to join our ever-evolving team and help support delivery that shapes the future of global commerce. Ready to take your career globally … Make your mark at one of the biggest names in payments. We’re looking for a Enterprise Incident Manager Senior to join our ever-evolving team and help support delivery that shapes the future of global commerce. What you’ll own Enterprise Incident Leadership Lead the Enterprise Incident ...

Senior Security Consultant (Incident Response)

Location
Birmingham, England, United Kingdom
Select how often (in days) to receive an alert: Create Alert Senior Security Consultant (Incident Response) Job ID:44293 Location:UK : Home Based Position Category:Consulting Position Type:Employee Regular Senior Security Consultant Role Purpose: This is a new, exciting opportunity for a Senior Security Consultant to join … LRQA’s existing dynamic Cyber Incident Response Team. This role follows a hybrid working arrangement and will involve working on client sites and from the office from time to time. We support remote work across the UK; however, the main office is in Birmingham. Applicants are required ...

Cyber Defence Senior Analyst

Location
Belfast, County Antrim, United Kingdom
based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team … firm’s Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence ...