201 to 225 of 896 Incident Response Jobs in the UK excluding London

Head of Cyber Security

Location
Basingstoke, England, United Kingdom
security strategy, priorities, and outcomes, and provide authoritative security leadership to customer engagements, bids, and executive discussions that support strategic growth. 2. Security Operations & Incident Response Incident Leadership: Provide senior leadership during major cyber incidents, acting as the executive point of escalation and ensuring effective coordination, decision ...

Senior Security Specialist - Threat Hunting

Hiring Organisation
Yolk Recruitment Limited
Location
Cardiff, South Glamorgan, Wales, United Kingdom
Employment Type
Permanent
Wales. Essential Requirements Degree (or equivalent experience) in Cyber Security, IT or a related technical discipline. Strong knowledge of cyber security operations, threat hunting, incident response and security monitoring. Experience with SIEM platforms (ideally Microsoft Sentinel), KQL or similar analytics tools. Good understanding of cloud, endpoint, identity, network … application security. Knowledge of security frameworks such as NIST or ISO 27001. Experience Proven experience in cyber security operations, SOC, incident response or threat hunting within a complex environment. Experience analysing security events and telemetry from multiple sources. Experience improving detection capabilities, developing security use cases and tuning ...

Principal Software Engineer-AI

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
agentic runtime, auth, data retrieval, eval tooling) Experience running AI systems in production at scale, including observability, cost and capacity planning, regression detection, and incident response for AI-powered applications Experience operating production distributed systems on AWS/Azure, with a strong grasp of reliability, observability, and incident response at scale Deep knowledge of cloud-native technologies, serverless applications, event-driven architectures, data and inference pipelines, relational, NoSQL, and vector databases, and modern software architecture patterns Proven track record of owning multi-year technical strategy and architectural roadmaps, guiding teams from AI prototype through production deployment ...

Delivery Manager

Location
Wokingham, England, United Kingdom
solutions are ready for live operation with CNI and operational support teams Embed operational considerations early to minimise operational risk Coordinate communication, change impact, incident preparedness and release readiness Coordinate transition into service, support arrangements, training and business readiness Support deployed applications and platforms Improve operational handovers, service acceptance … incident response mechanisms Requirements Strong delivery leadership experience in multi-team, multi-vendor technology environments Ability to manage complex dependencies across multiple teams and suppliers Excellent understanding of business and operational objectives and stakeholder landscapes Proven delivery governance capability, including RAID management, milestone planning, reporting, roadmap alignment ...

EU Cyber Resilience Lead – Incident Response

Location
Farnborough, England, United Kingdom
Hampshire) seeks an Operational Security Manager to join the Solutions & Services Group. You will collaborate with global engineering teams to align security standards, manage incident response, and ensure regulatory reporting across EU and UK contexts. You will lead cross-functional incident handling, coordinate with Cybersecurity, Product Security ...

Information Security Manager

Location
Bedford, England, United Kingdom
ISMS and ISO 27001, lead/support security audits, risk and assurance activities, and work with technical teams across vulnerability management, patching, penetration testing, incident response and infrastructure security. You'll also have involvement across supplier assurance, Cyber Essentials, business continuity, disaster recovery, DPIAs, BIAs, security policies … Policies, Controls, Compliance and Assurance. Technical Security: Infrastructure Security, Network Security, Vulnerability Management, Patch Management, Penetration Testing, IAM, Endpoints and Cloud Security. Security & Resilience: Incident Response, Cyber Essentials, Supplier Assurance, Business Continuity and Disaster Recovery. Technical Background: Infrastructure, Networks, Security Engineering, IT Operations, Cyber Security or SaaS/ ...

Resilience Crisis Lead

Location
Glasgow, Scotland, United Kingdom
drive resilience through planning, training, exercises and continuous improvement. You will support the development of SPEN's crisis management framework, ensuring plans, playbooks and response processes remain effective, tested and aligned with regulatory requirements and industry best practice. The role will also involve coordinating crisis response activities, supporting … with experience in cyber security, operational resilience, crisis management, emergency planning or a related field. You will have a strong understanding of cyber threats, incident response and resilience principles, along with experience coordinating activities across multiple teams and stakeholders. Confidence in facilitating exercises, engaging senior leaders and producing ...

Technical Support Manager

Location
Cambridge, England, United Kingdom
team's time-zone spread to ensure responsive support well beyond any single region. This position owns end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and executive‐level support. The Technical Support Manager will drive continuous improvement of support workflows, knowledge bases … coverage model using EMEA and India working hours, with well‐defined cross‐region handoff processes Own end‐to‐end employee support operations including incident response, request fulfillment, onboarding, offboarding, and white‐glove support for leadership Define and maintain SLAs and quality standards; track and report on ticket volume ...

Technical Support Manager

Hiring Organisation
Roku
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 100 K
team's time-zone spread to ensure responsive support well beyond any single region. This position owns end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and executive-level support. The Technical Support Manager will drive continuous improvement of support workflows, knowledge bases … coverage model using EMEA and India working hours, with well-defined cross-region handoff processesOwn end-to-end employee support operations including incident response, request fulfillment, onboarding, offboarding, and white-glove support for leadershipDefine and maintain SLAs and quality standards; track and report on ticket volume, resolution time ...

Cyber Security Manager - Hybrid

Hiring Organisation
Ashdown Group
Location
Harrow, Middlesex, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £92,000 per annum
role, combining day-to-day security operations with strategic leadership. You will work directly with security technologies, investigate threats and incidents, improve detection and response capabilities, and work closely with technical teams and senior stakeholders. The role is hybrid, with 3 days per week in the organisation’s offices … threat detection, monitoring and threat-hunting capabilities using Sentinel and Defender. Identify vulnerabilities and security weaknesses and work with technical teams on remediation. Develop incident response playbooks, automation and security processes. Support security architecture and technical design reviews. Provide cyber security leadership and advice to senior management. Manage ...

Senior SOC Lead: Incident Response & Vulnerability Mgmt

Location
Farnborough, England, United Kingdom
United Kingdom, is seeking an experienced SOC Lead to oversee 24/7 security operations. You will direct shifts, mentor junior analysts and coordinate incident response using established playbooks to protect critical systems. The role emphasizes vulnerability management, security controls development, and ongoing threat intelligence. You will review ...

Head of Cyber Security

Location
Basingstoke, England, United Kingdom
security strategy, priorities, and outcomes, and provide authoritative security leadership to customer engagements, bids, and executive discussions that support strategic growth. 2. Security Operations & Incident Response Incident Leadership: Provide senior leadership during major cyber incidents, acting as the executive point of escalation and ensuring effective coordination, decision ...

Product Technical Lead: Exercise and Training

Hiring Organisation
Thales
Location
Crawley, Sussex, United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Strong understanding of: ICS/SCADA environments Industrial operations and processes PLC/DCS/SIS environments Industrial networking Remote access in OT OT incident response Industrial safety considerations Knowledge of: Purdue model OT resilience principles High-availability operations Critical infrastructure environments Cyber Security Skills: OT threat landscape … awareness. Knowledge of: MITRE ATT&CK for ICS Adversary behaviours Industrial ransomware threats OT detection and monitoring concepts Incident response coordination. Risk communication and cyber awareness delivery. OT security governance and assurance understanding. Training & Facilitation Skills: Exercise facilitation and scenario management. Adult learning and instructional design principles. Development ...

SOAR Playbook Engineer

Location
Manchester, England, United Kingdom
optimise security automation solutions using Splunk SOAR and similar automation platforms. Your primary focus is playbook engineering, Python development, API integrations, and automated incident response workflows. In addition to automation engineering, you are responsible for deploying, maintaining and continuously improving MXDR solutions for our customers. You assess customer … learning are essential. We are looking for someone with experience across MXDR technologies, as well as a solid understanding of security monitoring, detection engineering, incident response, and platform integrations. As a customer-facing professional, you should be confident engaging with stakeholders at all organisational levels, both remotely ...

Hybrid Cyber Security Operations Lead | Incident Response

Location
Stockport, England, United Kingdom
/3 from home) with travel across the UK and reports to the security leadership. You will lead a team covering vulnerability management, EDR, incident response, phishing monitoring and broader security operations activity, partnering with senior stakeholders globally to translate technical activity into actionable business risk. #J ...

SOC Level 3 Technical Lead

Location
High Wycombe, Buckinghamshire, United Kingdom
regulators and law enforcement Mentor the analyst team and act as senior escalation point for major incidents What You'll Bring: 5+ years in incident response or SOC environments, ideally with managed services (MSSP) exposure A proven record leading complex investigations - ransomware and breach cases you can walk … advantage) A well-developed threat hunting toolkit: YARA rules, IOC development, timeline analysis and adversary profiling Cloud investigation experience - Azure and/or AWS incident response, log analysis and cloud-native threats The communication skills to translate deep technical findings for senior, non-technical audiences A natural mentoring ...

Infrastructure Engineer - Security Focus - Palo Alto

Hiring Organisation
hireful
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 45 K
Azure environments.You’ll work across servers, networks, storage, and security tools, contributing to infrastructure projects as well as cyber initiatives such as vulnerability management, incident response, and enhancing security controls. You’ll also collaborate with group security teams and help ensure systems remain resilient and up to date.Key … Tenable, Zscaler etc.)Palo Alto deployment/configuration experience is a mustGood understanding of firewalls, network protocols, and intrusion preventionAbility to manage vulnerability scanning, incident response, and remediationConfident communicator with solid documentation skillsThe role also covers an office in Milton Keynes and they might be occasional travel there ...

Marketing Experience - Senior Associate

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent
maintain operational controls, including documented procedures, control testing and monitoring, exception management, and issue remediation with clear accountability Manage operational risk, including operational resilience, incident response, business continuity readiness, and timely escalation of emerging issues Serve as the regional single point of contact for platform operational performance, owning … Required Qualifications, Capabilities, and Skills Demonstrated experience leading operational teams, including people management, performance management, and workforce planning Proven experience managing operational risk, controls, incident response, and business continuity in a regulated environment Demonstrated experience driving continuous improvement using structured methodologies such as root-cause analysis with measurable ...

Team Lead – Panel Systems

Location
Manchester, England, United Kingdom
tooling, and platform improvements Hire and onboard engineers Run fair, well-calibrated performance reviews Establish and maintain engineering practices covering observability, testing, documentation, and incident response Ensure reliable, secure, and performant systems supporting panel engagement and data collection Represent the team’s work to Product and Engineering teams … Agile Methodologies Hard Skills Software Engineering Management Web Development Backend Systems Test Automation AI Tooling System Design Performance Reviews Technical Roadmapping Data Privacy Compliance Incident Response Soft Skills Clear Communication Stakeholder Engagement Mentoring Feedback Provision Career Development Support Certifications & Qualifications ISO 27001 Compliance Industry Keywords Data Privacy GDPR ...

Cyber Security Lead — Risk, Compliance & Incident Response

Location
Horsham, England, United Kingdom
experienced Cyber Security Lead to own and advance our security programme. You will implement and govern security controls, lead vulnerability management and coordinate incident response with stakeholders across the organisation. You will collaborate with procurement, legal, and operations to manage third‐party risk and drive security improvements that ...

Cyber Resilience Analyst

Hiring Organisation
Iceland Food Group
Location
Deeside, Flintshire, Wales, United Kingdom
Employment Type
Permanent
Cyber Governance, Risk, and Compliance Manager. This role focuses on defining, maintaining, and testing resilience plans for the organisation, including Business Continuity, Incident Response, and Disaster Recovery. You will work closely with multiple teams across the IT department and the wider business to ensure that resilience strategies … will include: Conducting analysis on business systems to understand and document the impact, scope, and recovery path in relation to cyber incidents. Contribution to incident reviews to ensure learnings are taken to improve our resilience. Identifying and escalating weaknesses in the resilience strategy. Working with project and change teams ...

Technical Sales Content Developer and Trainer for Europe (Barcelona, Spain/ Reading, UK)

Location
Reading, England, United Kingdom
drive business outcomes. Willingness to travel Fluency in English. Bonus Points: Hands‐on experience through delivering demos and POVs or in cybersecurity operations, incident response, digital forensics, or security‐focused AI infrastructure—providing the operational depth that elevates authored content beyond theoretical instruction. CrowdStrike Falcon certifications (e.g., CCFA … accommodation, please contact us at recruiting@crowdstrike.com for further assistance. , Bonus Points: Hands‐on experience through delivering demos and POVs or in cybersecurity operations, incident response, digital forensics, or security‐focused AI infrastructure—providing the operational depth that elevates authored content beyond theoretical instruction. CrowdStrike Falcon certifications (e.g. ...

Detection Engineer (Cybersecurity)

Location
Glasgow, Scotland, United Kingdom
defend Morgan Stanley Network. The Cyber, Data, Risk and Resilience (CDRR) division provides first-line defences for information and cyber security, fraud, resilience, response and recovery, and technology risk and controls. The organization also includes Morgan Stanley's Firmwide Data Office, International Technology offices, and the Non-Financial Risk … bring to the role: 3-5 years of experience directly in Cybersecurity related fields (Hunt, Intelligence, Detection Engineering, Blue Teaming, Pen testing, Incident Response, SOC Operations, Cyber Risk) or relevant educational experience. Ability to work with customers, gather requirements and distil them into complete solutions. Detailed understanding ...

Cyber Resilience Analyst

Location
Chester, England, United Kingdom
report to the Cyber Operations and Engineering Manager. This role focuses on defining, maintaining, and testing resilience plans for the organisation, including Business Continuity , Incident Response , and Disaster Recovery . You will work closely with multiple teams across the IT department and the wider business to ensure that … will include: Conducting analysis on business systems to understand and document the impact, scope, and recovery path in relation to cyber incidents. Contribution to incident reviews to ensure learnings are taken to improve our resilience. Identifying and escalating weaknesses in the resilience strategy. Working with project and change teams ...

Security Consultant (Supply Chain)

Hiring Organisation
Lloyds Banking Group
Location
Edinburgh, Midlothian, United Kingdom
Salary
£ 60 K
responds to cyber risk across its third-party ecosystem. Sitting within the Threat Lab, you’ll operate at the intersection of threat intelligence, incident response and supplier risk. You’ll use data, tooling and insight to detect and analyse threats, translating complex findings into clear, actionable advice that … influence how security is designed, embedded and continuously improved.You’ll play a key role in strengthening our approach to supply chain threat management—supporting incident response, informing risk decisions, and driving more proactive, intelligence-led controls. Alongside this, you’ll operate within agile ways of working and explore ...