1 to 25 of 94 Remote/Hybrid Incident Response Jobs in the UK excluding London

SOC L2 Analyst

Hiring Organisation
Stackstudio Digital Ltd
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
From £350 to £400 per day
security stacks. The ideal candidate will have expertise in monitoring and analyzing security incidents in SOC. Your Responsibilities (Up to 10, Avoid repetition) 1. Incident Detection and Response Lead investigations and remediation of complex security incidents, including malware infections, data breaches, and advanced persistent threats (APTs). Utilize … security technologies to analyze and correlate security alerts. Take ownership of Tier 2-level escalations from Tier 1 analysts and guide them through complex incident response procedures. Quality Assurance for SOC L1, monitoring and triaging. 2. Incident Detection and Response Lead investigations and remediation of complex ...

Senior Security Engineer - Incident Response

Hiring Organisation
Client Server
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Senior Security Engineer (Incident Response SIEM SOAR AWS) Remote UK to £115k Are you a tech savvy Senior Security Engineer with strong Incident Response experience? You could be progressing your career in a senior, hands-on Senior Security Engineer role as part of a friendly … strengthening EDR/XDR and DLP configurations, defining new automatic detections of security events in the SIEM, improving automatic security alerts triage and Incident Response playbooks, defining the runbooks to be used during Incident Response and leading the execution of Table Top Exercises (TTX) with different ...

Application Security Architect

Hiring Organisation
Randstad Technologies
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£400 - £500 per day
Security Lead - Incident Response & Threat Management 4 Months Contract £400 to £500 a day Inside IR35 Remote working *Active Security Clearance is Needed* A well-established consultancy firm is urgently looking for an experienced Security Lead with a strong background in Incident Response and Threat Management … high-profile client. This role requires a professional with active SC Clearance and a deep understanding of SecOps analyst support. Core Responsibilities Incident Management: Directing the full incident response lifecycle, including the triage, investigation, and total resolution of security events. Threat Intelligence: Utilising Recorded Future, OpenCTI ...

Senior Identity and Access Management Analyst

Hiring Organisation
Experian Ltd
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Cyber Fusion Center (CFC). This critical, senior-level individual contributor will integrate IAM principles and controls into our security operations and incident response framework. You will be a technical expert with knowledge of the threat environment from the perspective of identity and access management. You will … threat intelligence and operational insights to inform and mature our IAM policies, standards, and controls. You will partner with CFC analysts, threat hunters, and incident responders to provide subject matter expertise during active investigations and to strengthen our security posture. This is a hybrid, Nottingham-based role reporting ...

Cyber Security Engineer

Hiring Organisation
Searchability
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£45,000 - £55,000 per annum
enterprise clients.* Full-time, permanent role focused on securing client infrastructures across network, cloud, and endpoint environments.* Hands-on position covering security design, incident response, vulnerability management, and client consultancy.* Hybrid working model with strong benefits, development pathways, and exposure to complex, real-world security challenges.* To apply … Security Engineer, you'll play a key role in securing client IT environments by designing, implementing, and managing robust security solutions. You'll lead incident response activities, conduct vulnerability assessments, and proactively identify risks across network, cloud, and endpoint systems. You'll work directly with clients to understand ...

Cyber Security Specialist

Hiring Organisation
Natural Resources Wales
Location
Wales, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£45,000
closing date. What you will do Monitor security alerts and threat intelligence feeds to detect and respond to cyber incidents. Lead or support incident response activities, including investigation, containment, eradication, and recovery. Manage and maintain security tools such as Security Information and Event Management (SIEM), endpoint protection, vulnerability … personal development plan (known as Sgwrs). Any other reasonable duties requested commensurate with the grade of this role. Required to take part in incident response activities Your qualifications, experience, knowledge and skills In your application and interview you will be asked to demonstrate the following skills ...

Cyber Resilience Analyst

Hiring Organisation
Searchability (UK) Ltd
Location
Chester, Cheshire, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£50,000
ANALYST ROLE: As a Cyber Resilience Analyst, you'll be responsible for defining, maintaining, and testing the organisation's resilience plans, covering Business Continuity, Incident Response, and Disaster Recovery. You'll work closely with IT teams and stakeholders across the wider business to ensure resilience strategies are practical … robust, and effective. The role plays a key part in analysing the impact of cyber incidents on business systems, supporting incident reviews, and ensuring lessons learned are fed back into improved resilience planning. You'll also work alongside project and change teams to ensure new systems and developments ...

CSIRT Analyst SC Cleared

Hiring Organisation
Pontoon
Location
Warwickshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£750 per day
months). In full: Job Purpose The UK CSIRT Tier1 Analyst will deliver the actions and activities as required and detailed in Cyber Incident Response plans. Using technical expertise and co-ordination capabilities, they will work within a team and individually, to respond to incidents and security events. … role requires the individual to have a high level of performance and individual ability. About the Role As part of the Cyber Security Incident Response Team (CSIRT), you will be employed within a global team as a Tier 1 CISRT analyst within its Cyber Security Operations Centre (CSOC ...

Cyber Security Consultant - Pre-Sales

Hiring Organisation
Seismic Recruitment
Location
Chippenham, Thingley, Wiltshire, United Kingdom
Employment Type
Permanent
Salary
£65000 - £70000/annum OTE - £85,000 to £90,000
present end-to-end security solutions aligned to business objectives Act as a trusted advisor on cyber security strategy and best practice Support incident response and improvement initiatives where required Produce clear technical documentation and recommendations Collaborate with cloud, networking and wider pre-sales teams Maintain relevant vendor … 5+ years’ experience in pre-sales or consulting within an MSP, reseller or systems integrator Strong understanding of SOC operations, security monitoring and incident response Solid knowledge of Microsoft security technologies Experience with SIEM, MDR/EDR, SSE and SASE solutions Knowledge of ISO 27002, CIS, NCSC ...

Senior SOC Analyst

Hiring Organisation
Ballantyne Technology Limited
Location
Reading, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£75,000 - £90,000 per annum
cloud environment. This is not a traditional SOC role focused on alert handling . The position sits at the senior technical level and combines incident leadership, detection engineering, threat hunting and automation. You’ll have genuine ownership of security operations maturity rather than working in a ticket-driven environment. … senior technical point of escalation within the SOC, leading complex investigations and driving continuous improvement across tooling, detection capability and response processes. Typical responsibilities include: Leading complex security incidents end-to-end including investigation, containment, forensics and root cause analysis. Designing, tuning and improving detection across SIEM ...

Senior Information Security Engineer

Hiring Organisation
Amtis Professional Ltd
Location
Hinckley, Leicestershire, East Midlands, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£75,000
interpret logs, alerts, and threat data to identify potential security incidents. Ensure security tooling is correctly configured, operational, and fully utilised. Threat Detection, Incident Response & Vulnerability Management Support or lead security incident investigations, including root cause analysis and remediation. Conduct vulnerability assessments and maturity scans, ensuring risks … Experience working with or managing third party SOC, SIEM, and security vendors. Background in overseeing penetration tests and managing remediation activity. Solid understanding of incident response, vulnerability management, and general cyber defence principles. Experience working with ISO 27001 environments or auditing. Excellent communication, documentation, and stakeholder engagement skills. ...

Cyber Security Manager ( SC)

Hiring Organisation
Sanderson Recruitment
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent, Work From Home
industry standards (e.g., GDPR, PCI DSS, NIST CSF) Influence cyber security improvements by reviewing IT/security architectures and providing expert challenge Oversee incident response readiness and assurance of cyber security testing across the enterprise Promote strong security awareness and assure the quality of provider training Conduct horizon … risk assessment and development of mitigation plans aligned to business objectives Experience producing cyber security performance metrics for senior leadership Hands-on experience in incident response, vulnerability management, system hardening, and post-incident analysis Strong understanding of cloud security (IaaS, PaaS, SaaS, CASB, Zero Trust, micro-segmentation ...

Senior Cloud Infrastructure Engineer

Hiring Organisation
Hargreaves Lansdown
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
image scanning, policy-as-code and least privilege IAM. Drive reliability using SRE practices: define SLIs/SLOs, error budgets, capacity planning, chaos testing, incident response and blameless post-incident reviews. Partner with application squads to remove toil, improve developer experience (DX), and reduce lead time … onboarding guides and demo sessions for consumers of the platform. Participate in an on-call rota for critical platform services and lead/coordinate incident response when required. About you Strong hands-on experience with Microsoft Azure core services (networking, compute, storage) and platform services (AKS, App Services ...

Technical Architect - SC Cleared

Hiring Organisation
Run-Time Group Ltd
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Clearance Hybrid work model OUTSIDE IR35 Job Requirements Spec: - end-to-end technical leadership, architecture, and delivery oversight of Network Detection & Response (NDR) and Extended Detection & Response (XDR) solutions using Darktrace and Microsoft Defender - secure, scalable, and successful implementation of advanced detection technologies that enhance organisational threat visibility … improve incident response capability, and support a modern security operations function. - close collaboration with cybersecurity, infrastructure, networking, SOC analysts, service owners, and senior stakeholders to align technical designs with security strategy, operating models, and business needs. - definition of the target architecture for Darktrace NDR and Microsoft Defender ...

Senior SRE

Hiring Organisation
Anson Mccade
Location
Glasgow, Lanarkshire, Scotland, United Kingdom
Employment Type
Permanent, Work From Home
platforms and services. Apply software engineering principles to improve reliability, scalability, performance and operability. Contribute to technical strategy, standards and long-term platform evolution. Incident Management & Resilience Lead and participate in incident response, root cause analysis and blameless post-mortems. Use data and observability to reduce mean … . Deep understanding of Linux, networking, distributed systems and cloud platforms. Experience with infrastructure-as-code and automation (e.g. Terraform, Ansible, CloudFormation). Strong incident response, troubleshooting and fault-analysis skills using a scientific, data-driven approach. Experience with observability: metrics, logging, tracing, alerting and performance analysis. Ability ...

Ticketing Operations Manager

Hiring Organisation
Robert Walters
Location
Manchester, North West, United Kingdom
Employment Type
Permanent
Salary
£75,000
money stops flowing . As Ticketing Operations Manager, you will: Protect revenue by ensuring maximum uptime across all payment and ticketing channels Lead major incident response for payment and ticketing failures Own operational performance across systems used by millions of customers Manage and develop a high-performing operations … incident management team This is a senior operational leadership role with real accountability and influence. Key Responsibilities Lead the day-to-day operational management of all customer-facing ticketing and payment systems, including: Mobile ticketing apps Smartcards EMV/contactless payments Ticket vending machines Take ownership of major incident ...

Head of IT Operations

Hiring Organisation
Accent Housing
Location
Bradford, West Yorkshire, Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£75,000
role suits someone who thrives in complexity, owns outcomes, and embraces the challenge of stabilising today while architecting tomorrow. Whether youre resolving a critical incident, strengthening our cyber posture, or driving our cloud migration roadmap, your impact will be felt across the organisation. Salary The spot salary for this … progression opportunities and structured support. About you Proven experience leading IT Operations in complex, multi-system environments. Strong understanding of security frameworks, threat detection, incident response and operational cyber maturity. Experience with IaaS, PaaS, SaaS and hybrid cloud strategies. Technical depth across infrastructure, networking and enterprise systems. Experience ...

Platform Engineer - AWS / Terraform

Hiring Organisation
Planet Recruitment
Location
Bristol, United Kingdom
Employment Type
Permanent
Salary
£60000 - £75000/annum
services or DevOps tools to continuously enhance infrastructure capabilities. Produce and maintain platform documentation and runbooks, ensuring knowledge is shared and accessible. Contribute to incident response and root cause analysis for infrastructure-related issues. Track and report platform metrics, including performance, cost efficiency, and security posture. Essential Experience … alerting tools (e.g., CloudWatch, ELK/Opensearch, Prometheus, Grafana). Proficiency in scripting or automation languages (Python, Bash, or PowerShell). Track record of incident response and root cause analysis in cloud environments. Ability to collaborate effectively with Development and Test teams, translating requirements into stable and secure ...

Security Operations Manager

Hiring Organisation
Hays
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Contract, Work From Home
Contract Rate
Up to £280.0 per day + £280 Per Day Inside IR35
heart of our cybersecurity strategy. As Operational Security Manager, you'll take ownership of our security operations, overseeing threat intelligence, vulnerability management, incident response and the performance of our outsourced 24/7 SOC. You'll work closely with internal technology teams to embed security into every aspect … infrastructure and change lifecycle, ensuring our defences are proactive, responsive and resilient. From playbook rehearsals to live incident recovery, you'll be the calm in the storm, guiding teams through complex challenges with clarity and confidence. What you'll need to succeed You're a seasoned security professional with ...

Product Manager

Hiring Organisation
Stratospherec Ltd
Location
Horsham, West Sussex, United Kingdom
Employment Type
Permanent
Salary
£60000 - £70000/annum Excellent benefits
operational needs Translate SOC analyst pain points, workflows, and use cases into actionable product features and user stories Design and validate alert prioritization algorithms, incident triage workflows, and automated playbook logic based on operational experience Collaborate with product managers to shape product strategy, roadmap priorities, and feature definitions Conduct … experience as a SOC Analyst, Senior SOC Analyst, or SOC Team Lead Deep understanding of end-to-end SOC operations including alert triage, incident response, threat hunting, and case management Extensive experience with SIEM platforms, security orchestration tools, and the broader SOC technology stack Strong knowledge of threat ...

Head of Cyber Security Remote or Hybrid

Hiring Organisation
Michael Page Technology
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£75,000 per annum
leads the organisation's cyber security strategy, ensuring strong resilience, compliance, and protection of information assets. You will oversee operations, governance, risk management, and incident response while guiding a high-performing security & infrastructure team. Client Details Our client is a respected not-for-profit UK organisation with … regulatory requirements. Conduct security risk assessments, maintain governance frameworks, and ensure robust oversight. Set, enforce, and update security policies, standards, and technical controls. Lead incident response, including investigation, coordination, remediation, and reporting. Manage supplier assurance, third-party risk, and security obligations within contracts. Plan and support external audits ...

Platform Engineer - aws

Hiring Organisation
Reed Technology
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£75,000
services or DevOps tools to continuously enhance infrastructure capabilities. Produce and maintain platform documentation and runbooks, ensuring knowledge is shared and accessible. Contribute to incident response and root cause analysis for infrastructure-related issues. Track and report platform metrics, including performance, cost efficiency, and security posture. Required Skills … security best practices. Experience with monitoring, logging, and alerting tools. Proficiency in scripting or automation languages (Python, Bash, or PowerShell). Track record of incident response and root cause analysis in cloud environments. If you are interested in this position please apply online or for more information contact ...

Microsoft M365 Copilot SME

Hiring Organisation
CBSbutler Holdings Limited trading as CBSbutler
Location
Sheffield, South Yorkshire, United Kingdom
Employment Type
Contract
Contract Rate
£550 - £570/day
working from Sheffield + £550 to £570 per day + Inside IR35 Key Skills: + 3rd/4th Line Support to M365 Copilot + Incident response Job Description: Provide 3rd/4th Line Operational Support for M365 Copilot across HSBC's tenant. Providing incident response via complex troubleshooting, policy/configuration changes and mass deployments throughout the organisation. Key Responsibilities: + Incident & Problem Management: Triage and resolve complex M365 escalations/Multi User Incidents (usage, access errors, unexpected results). Root cause analysis across M365 Admin Centre, Entra, Conditional Access, SharePoint/OneDrive ...

Security Testing Consultant

Hiring Organisation
Anson Mccade
Location
Gloucester, Gloucestershire, South West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
both technical and non-technical stakeholders. You will be part of a global Cyber Technical Services team, collaborating closely with Threat Intelligence and Incident Response specialists across National Security and Defence programmes. What You'll Be Doing as a Security Testing Consultant (SC) Deliver end-to-end security … place Develop and improve scripts, tools, and techniques to enhance testing capability Share knowledge and collaborate with colleagues across cyber, threat intelligence, and incident response teams Support testing across National Security, Defence, and Critical Infrastructure environments Essential Skills & Experience Proven experience working as a Security Testing Consultant ...

Security Testing Consultant

Hiring Organisation
Anson Mccade
Location
Manchester, North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£65,000
both technical and non-technical stakeholders. You will be part of a global Cyber Technical Services team, collaborating closely with Threat Intelligence and Incident Response specialists across National Security and Defence programmes. What You'll Be Doing as a Security Testing Consultant (SC) Deliver end-to-end security … place Develop and improve scripts, tools, and techniques to enhance testing capability Share knowledge and collaborate with colleagues across cyber, threat intelligence, and incident response teams Support testing across National Security, Defence, and Critical Infrastructure environments Essential Skills & Experience Proven experience working as a Security Testing Consultant ...