51 to 75 of 856 Incident Response Jobs in the UK excluding London

Information Security Analyst - SecOps Response

Location
Manchester, England, United Kingdom
asking that you attend the office a minimum of 1 day per week. About the Role We’re seeking a passionate and skilled Incident Responder to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. This role will be supporting …/7 operational capabilities (On-call rota). Reporting to the Information Security Lead - SecOps Response, the analyst’s main responsibilities include: Conducting incident response activities to investigate and contain cyber security incidents Developing and maintaining incident response and readiness processes Analyse logs from ...

Information Security Analyst - SecOps Response

Location
Southampton, England, United Kingdom
asking that you attend the office a minimum of 1 day per week. About the Role We’re seeking a passionate and skilled Incident Responder to join our growing Security Operations team, and proactively defend Starling’s customers, assets, and systems against emerging threats. This role will be supporting …/7 operational capabilities (On-call rota). Reporting to the Information Security Lead - SecOps Response, the analyst’s main responsibilities include: Conducting incident response activities to investigate and contain cyber security incidents Developing and maintaining incident response and readiness processes Analyse logs from ...

SecOps Engineer

Location
Manchester, England, United Kingdom
infrastructure, identity platforms, cloud services, and business systems. Configure, maintain, and optimise security technologies to safeguard hybrid environments, enabling proactive threat detection and resilient incident response through close collaboration with infrastructure, operations, and cloud teams. Coordinate vulnerability management activities across endpoints, servers, cloud services, and network infrastructure, including … high-risk vulnerabilities Contribute to the evolution of automated security operations and threat detection workflows, using scripting and orchestration tools to enhance efficiency and response capabilities over time, in collaboration with infrastructure and operations teams. Maintain and enforce information security policies, procedures, and standards in alignment with regulatory frameworks ...

Senior SOC Analyst - DV Clearance

Hiring Organisation
Salt Search
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£70,000 - £100,000 per annum
security cyber defence team supporting critical national infrastructure and sensitive government programmes. This role requires a proactive security professional with strong monitoring, analysis, and incident triage capabilities within a Security Operations Centre environment. SOC Analyst - Key Responsibilities Monitor and analyse security alerts from SIEM and security tooling platforms Perform … triage and investigation of security events and potential incidents Conduct threat hunting and identify indicators of compromise Escalate and coordinate incident response activities where required Analyse endpoint, network, and cloud security telemetry Develop and improve detection rules and use cases Produce detailed investigation and incident reports Collaborate ...

EMEA CSOC Lead

Location
Cheltenham, England, United Kingdom
lead a team of highly capable cyber threat analysts protecting Northrop Grumman UK and EMEA operations, while remaining directly involved in threat hunting, incident response, digital forensics and cyber defence activities. Working as part of a global cybersecurity organisation, you will collaborate closely with colleagues across … direction, coaching and day-to-day operational oversight. Manage security operations across the EMEA region, ensuring effective execution of cyber monitoring, triage, investigation and response activities. Serve as Incident Response Lead for major cyber security events, coordinating technical investigations, containment and remediation activities. Lead advanced threat hunting ...

Senior Security Operations Analyst

Location
Leeds, England, United Kingdom
timely and proactive escalation of potential events/items of interest. The role will include access control, application and development, risk management, operational security, incident response, business continuity, operational and physical security of systems, as well as ongoing user training and reporting requirements. Primary responsibilities include: Monitor, investigate … with Detection and Automation team to support development of detection alerts, security automation and recommendations for tuning of rules to reduce false positives Support incident investigation, containment, eradication, and recovery activities while maintaining accurate documentation, and contributing to the continuous improvement of detection capabilities, playbooks, and operational processes Respond ...

Cyber Security Operations Specialist

Hiring Organisation
Sanderson Recruitment
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550 per day
major organisation is seeking a Cyber Security Operations Specialist to join its Security Operations team. This is a hands on role focused on incident response, threat detection, vulnerability management and continuous improvement across enterprise technology environments. You'll be expected to hit the ground running, managing security alerts … tooling estate. The Role Monitor, investigate and respond to cyber security incidents. Manage and triage security alerts, tickets and operational queues. Lead or support incident response activities through to resolution. Support vulnerability management and remediation activities. Apply threat intelligence to strengthen detection and response capabilities. Develop ...

Platform Engineer

Location
Wantage, England, United Kingdom
breadth. One day you’ll be defining infrastructure-as-code patterns or improving CI/CD pipelines; the next you’ll be contributing to incident response, helping teams adopt modern delivery practices, or building the kind of platform automation that removes toil for everyone around you. What … knowledge. Observability & Reliability Operate production workloads with an SRE mindset: measure reliability, define SLOs and reduce toil through automation. Contribute to on-call readiness, incident response and root cause analysis. Apply security best practices for Kubernetes (RBAC, network policies, secrets management) and support audit and compliance requirements. What ...

Tech Lead - SOC Responder

Hiring Organisation
Hackajob Ltd
Location
South West London, London, United Kingdom
Employment Type
Permanent, Work From Home
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Staff Software Engineer

Location
Uddingston, Scotland, United Kingdom
technical challenges, setting technical direction and helping teams deliver scalable, reliable systems that support business growth? Are you as comfortable reviewing architecture and leading incident response as you are writing production code? If you bring a blend of technical excellence, leadership and a builder mentality, DFYNE might … deployment quality controls. Lead technical problem-solving across critical business systems. Own and influence architecture and technical design decisions across multiple platforms Lead incident response activity, ensure corrective actions address root causes over individual failures. Pair with engineers across critical systems to reduce single points of failure. Mentor ...

Senior Detection and Response Engineer

Hiring Organisation
Jagex
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 80 K
remote work. Applicants should be based within a comfortable commuting distance of our office to attend onsite as required.Are you experienced in detection and incident response, with an engineering mindset and a passion for improving the tools, automation and processes used to investigate threats As a Senior Detection … Response Engineer within our Cyber Security team, you’ll play a key role in strengthening Jagex’s detection and incident response capability across our studio and gaming environments. You’ll take ownership of escalated security investigations, going beyond routine alert handling to understand what happened, determine impact ...

Cyber Security Analyst

Hiring Organisation
Carter Jonas
Location
Peterborough, Cambridgeshire, United Kingdom
Salary
£ 60 K
team in Peterborough to help protect Carter Jonas’s systems, data, and information assets. The role combines hands-on security operations with vulnerability management, incident response, cyber risk, governance, assurance and continual improvement of the organisation’s security posture. The post holder will work with IT, Compliance … logs and events across key platforms including SIEM, EDR/XDR, Microsoft Defender, Microsoft Sentinel, email security, cloud security and network monitoring tools.Support timely incident response, containment, remediation, recovery and post-incident review activity with internal teams and third-party providers.Maintain the vulnerability management programme, including scanning ...

Senior Information Security Analyst

Hiring Organisation
Cirrus Logic
Location
Edinburgh, Midlothian, United Kingdom
Salary
£ 70 K
that support the Cirrus Logic business roadmap.Develop and implement security requirements, policies, and procedures to protect information systems, data, and applications.Participate in detection and incident response activities, including investigation, containment, and remediation.Perform hands-on evaluation, engineering, and administration of enterprise security tools in collaboration with Security … Qualifications:Bachelor’s degree in cybersecurity, information systems, or a related technical field, or equivalent practical experience.Experience across multiple cybersecurity domains, including vulnerability management, incident response, identity and access management, network security, risk analysis, security operations, and security engineering.Demonstrated success operating as a senior individual contributor ...

Cyber Security Operations Specialist

Hiring Organisation
Tank Recruitment
Location
Bath, Somerset, United Kingdom
Employment Type
Contract
Contract Rate
£450 - £550/day
will play a key role in detecting, investigating and responding to cyber threats, while helping to improve the organisation's overall security monitoring and incident response capabilities. The role combines hands-on security operations, tooling optimisation and continuous improvement across a varied technology estate. Key responsibilities: Monitor, triage … investigate security alerts and incidents across IT, cloud and OT environments. Lead or support incident response, including containment, eradication, recovery and escalation. Develop and optimise SIEM detection rules, EDR policies and security monitoring capabilities. Reduce false positives and improve detection coverage using threat intelligence and incident learnings. ...

Junior AWS Security Incident Response Engineer

Location
Manchester, England, United Kingdom
Amazon AWS Security Incident Response is seeking a Security Engineer I to join a fast-paced team responsible for threat detection and incident response across customer environments. The role emphasizes learning, collaboration, and communicating complex security concepts to non-technical audiences. You will monitor networks ...

Head of Cyber Defence Centre

Location
Manchester, England, United Kingdom
scale security capabilities that protect the UK's largest digital bank. You’ll provide strategic direction for cyber defence, detection engineering, threat hunting and incident response, while driving continuous improvement across security operations platforms, tooling and processes. Leading a high-performing team, you’ll strengthen operational resilience, coordinate … effective response to cyber threats and incidents, champion a threat-led approach to defence, and help shape a world-class security operation that enables the Group to go faster, safely. Why Join us? If you think all banks are the same, you're wrong. We're a pioneering, fast ...

Senior Information Security Analyst

Location
City of Edinburgh, Scotland, United Kingdom
Cirrus Logic business roadmap. Develop and implement security requirements, policies, and procedures to protect information systems, data, and applications. Participate in detection and incident response activities, including investigation, containment, and remediation. Perform hands‐on evaluation, engineering, and administration of enterprise security tools in collaboration with Security … Bachelor’s degree in cybersecurity, information systems, or a related technical field, or equivalent practical experience. Experience across multiple cybersecurity domains, including vulnerability management, incident response, identity and access management, network security, risk analysis, security operations, and security engineering. Demonstrated success operating as a senior individual contributor ...

Cyber Security Analyst

Hiring Organisation
Radius Payment Solutions
Location
Chester, Cheshire, United Kingdom
Salary
£ 70 K
Security Analyst, you will play a key role in protecting systems, networks, and data against cyber threats. You will participate in threat detection and incident response efforts, support the development of security policies and controls, and work closely with stakeholders to ensure compliance and security best practice across … Development Lifecycle (SDLC).Create, maintain and review cyber security policies, standards, procedures and technical documentation.Monitor security events and alerts, conducting threat detection, investigation and incident response activities to minimise business impact.Perform vulnerability management activities, including vulnerability identification, risk assessment, remediation tracking and reporting.Conduct threat intelligence research, analysing emerging ...

EU Resilience Lead

Location
Cambridgeshire and Peterborough, England, United Kingdom
capabilities for critical services. You Have: 8+ years of experience leading or advising on enterprise technology, resilience, cybersecurity, infrastructure, disa ster recovery, business continuity, incident response, or crisis management disciplines for large, complex European or global organizations Experience with advising executive stakeholders and leading senior-level advising … capabilities, and develop ing practical improvement roadmaps that help clients harden infrastructure, improve alignment to NIST CSF categories, strengthen recovery and continuity strategies, test response capabilities, and mature program governance over time Experience in a consult ing or corporate advisory role, including with a top-tier consulting company ...

EU Resilience Lead

Hiring Organisation
Booz Allen Hamilton
Location
Cambridge, Cambridgeshire, United Kingdom
Salary
£ 70 K
building recovery capabilities for critical services.You Have:8+ years of experience leading or advising on enterprise technology, resilience, cybersecurity, infrastructure, disaster recovery, business continuity, incident response, or crisis management disciplines for large, complex European or global organizationsExperience with advising executive stakeholders and leading senior-level advising or delivery … current capabilities, and developing practical improvement roadmaps that help clients harden infrastructure, improve alignment to NIST CSF categories, strengthen recovery and continuity strategies, test response capabilities, and mature program governance over timeExperience in a consulting or corporate advisory role, including with a top-tier consulting company, specialized cybersecurity ...

AI Security Consultant

Hiring Organisation
PA Consulting
Location
Pimlico, Hertfordshire, UK
Employment Type
Full-time
supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management. The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should … business risk. Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk. Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps. Translate technical findings into clear, business ...

3rd Line Security Analyst

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
take ownership of the engineering, administration, health and continuous improvement of the security platforms, detection content and automation that underpin threat monitoring, detection and incident response across my client’s internal and managed customer environments. They will act as the final internal escalation point for complex and high … live incidents. Key Responsibilities Lead the end-to-end management of complex and high-severity security incidents, including investigation, containment, eradication, recovery and post-incident review. Conduct digital forensic investigations across cloud, identity, endpoint and network platforms, and carry out malware analysis and threat validation. Design, implement and optimise ...

Information Security Analyst - SecOps Detection

Location
Cardiff, Wales, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Documentation - Maintain clear documentation for detection rules, hunting playbooks, and processes. 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behavior, with a strong understanding and application of threat analysis models like MITRE ...

Information Security Analyst - SecOps Detection

Location
Manchester, England, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Documentation - Maintain clear documentation for detection rules, hunting playbooks, and processes. 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behavior, with a strong understanding and application of threat analysis models like MITRE ...

Information Security Analyst - Secops Detection

Location
Southampton, England, United Kingdom
endpoint environments. Purple Team - Collaborate with our Adversarial Simulation team in Purple Team exercises to test, validate, and improve detection logic and response. Incident Response SME support - Act as a Subject Matter Expert during security incidents, providing deep technical analysis and aiding remediation. Threat Intelligence integration - Integrate … Maintain clear documentation for detection rules, hunting playbooks, and processes. Requirements 3+ years in a technical security role, such as detection engineering, threat hunting, incident response, or threat intelligence. Attacker Knowledge: Practical experience analysing attacker behaviour, with a strong understanding and application of threat analysis models like MITRE ...