1 to 25 of 205 Remote/Hybrid Incident Response Jobs

Cyber Response & Recovery Manager - German Speaker

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Cyber Response & Recovery Manager - German Speaker Cyber Response & Recovery Manager (Reactive DFIR) About the role This role requires current SC or DV clearance, or eligibility and willingness to obtain clearance. The Cyber Response & Recovery Manager role will be working in the Cyber Response Services (CRS) Team … within our Cyber Advisory practice. Your specific focus will be in the domain of reactive digital forensics and incident response (DFIR) acting as a case manager on medium to large cases. This is a hands‐on incident response role and an opportunity to join a high ...

Security Incident Response Engineer (ServiceNow)

Hiring Organisation
INTEC SELECT LIMITED
Location
Warrington, Cheshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£100.00 per hour
Security Incident Response Engineer (ServiceNow) Contract: 6 Months (Likely Extension)Location: HybridIR35: Outside/LTD – £700PDSC Cleared/BPSSA highly reputable corporation is hiring an experienced ServiceNow Security Incident Response (SIR) Consultant to support the design, implementation and optimisation of a Security Incident Response capability for a Cyber Security Operations Centre (CSOC).This is an excellent opportunity to play a key role in enhancing cyber incident management processes, automating security workflows and integrating ServiceNow Security Operations with wider security tooling. Key Responsibilities ServiceNow SIR Workflow Design & Development Design and configure ...

Head of Threat Defence, Paddington

Hiring Organisation
Morson Edge
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
ownership of a threat defence strategy and service. The role will focus on leading a team responsible for security operations, incident detection and response and threat intelligence which will be delivered through partnership with outsourced providers and IT. We're looking for a motivated and experienced individual … This role will have line management responsibilities for 3 of the team: a Threat Intelligence Lead, a TD Service Operations Lead and a Cyber Incident Response Lead. The role requires DV clearance and a minimum of 2 days per week in the Paddington Office. Occasional travel to other ...

Security Incident Response Engineer

Hiring Organisation
NonStop Consulting
Location
Warrington, Cheshire, United Kingdom
Employment Type
Contract
Contract Rate
£100/hour
Details at a Glance Role: Security Incident Response Engineer Location: Warrington - hybrid, typically 2 days per week on site Contract length: 6 months (with strong potential for extension based on performance and project needs) IR35 status: Out of Scope Rate: 100/hour Clearance: Existing SC preferred … Would Be Doing This role sits at the intersection of cyber operations and ServiceNow engineering. You would be responsible for designing and embedding robust incident response capabilities in the ServiceNow Security Incident Response (SIR) module, closely aligned to NCSC and best-practice frameworks. ServiceNow SIR workflow ...

Senior Security Engineer

Hiring Organisation
Jobleads-UK
Location
United Kingdom
Security Operations Team, you will collaborate with a global team of engineers to monitor and respond to security events, lead security incidents as Incident Commander, and lead digital forensic investigations in support of Employee Relations, Legal, Compliance, or Information Security cases. Although you will be focused on security incident response, you will also have the opportunity to create and maintain runbooks, automated workflows, and assist in process refinement and implementation. You will collaborate with a diverse team of engineers and key stakeholders on security initiatives across the company. Above all, your focus is bringing Security expertise ...

Head of Cyber, Band 8b

Hiring Organisation
Gloucestershire Hospitals NHS Foundation Trust
Location
Gloucester, GL1 2EL, United Kingdom
Salary
£66582.00 to £77368.00
participation in the regional "Defend as One" model. The role combines governance, assurance and hands-on leadership of proactive and preventative tactics, threat intelligence, incident response, vulnerability management, strategy and cultural change to build cyber resilience across the Integrated Care System (ICS). Main duties … within large, complex or multi-organisation environments. They will possess deep technical and governance expertise across areas such as threat detection, vulnerability management and incident response, with the ability to translate complex technical risk into clear, articulate, actionable information for senior executives and boards with assurance and confidence. ...

Security Operations Technical Lead

Hiring Organisation
AJ BELL BUSINESS SOLUTIONS LIMITED
Location
Salford, Greater Manchester, North West, United Kingdom
Employment Type
Permanent
that security operations activities are executed efficiently, consistently and in line with defined SLAs and operational standards, through hands-on technical leadership across SOC, Incident Response, Threat Intelligence, Insider Risk and Vulnerability Management. This role acts as a senior technical escalation point, supporting complex investigations and driving improvements … detection, response, automation and operational processes. The role holder is expected to lead through expertise, supporting analysts and ensuring Security Operations operates with discipline, quality and continuous improvement. The key responsibilities of the role are: Act as the primary technical escalation point for security events and incidents identified ...

Cyber Security Analyst

Hiring Organisation
Hays Technology
Location
Newport, Gwent, United Kingdom
Employment Type
Permanent
Salary
£43000 - £47000/annum Up to £47k + good benefits
will require knowledge and understanding of attack and exploitation techniques and adversarial TTP's. Help to provide resilience to our threat monitoring and response capabilities. Handle security incident response with internal teams and other third parties to ensure that the incident response life cycle … Good knowledge and understanding of SOC processes and procedures. Basic experience using SIEM systems such as MS Sentinel, LogRhythm, AlienVault, Splunk Good understanding of incident response stages and handling. Basic knowledge and experience using leading endpoint detection and threat management products and managing their operation. Good knowledge ...

IT Incident Response and Forensics Consultant III

Hiring Organisation
Kaiser Permanente
Location
Greensboro, North Carolina, United States
Employment Type
Permanent
Salary
USD Annual
position. The selected candidate may be required to report to the assigned office in Greensboro, NC 2-5 days per week. Technical Summary: The Incident Handler supports the monitoring, investigation, and triage of cybersecurity events across the enterprise by applying established procedures and security practices. This role conducts analysis … impact, and support appropriate containment and remediation activities. The position collaborates with cross-functional Cyber Risk Defense Center teams to communicate findings, support incident response processes, and contribute to ongoing security operations and escalation efforts. This role also assists in identifying opportunities to improve security posture and participates ...

Cyber Security Engineer

Hiring Organisation
DCV Technologies Limited
Location
Tring, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£65,000
network estate (including Cisco Meraki). The role is hands-on and operational, partnering with IT teams to implement security controls, supportmonitoringand incident response through Sophos MDR, and improve cyber resilience by supporting Disaster Recovery (DR) testing and Business Continuity (BC) readiness. Key Responsibilities Cloud Security (Azure) Implement … whererequiredand ensure changes follow change control. Enable and review network security logging/alerting (e.g., syslog/SIEM integrations where applicable). Monitoring, Detection & Incident Response (Sophos MDR) Act as the internal technical point of contact for Sophos MDR and ensure smooth collaboration with MDR analysts. Maintain coverage ...

Security Operations Specialist

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level , with the expectation that … operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach Establishing and governing the security incident response processes, investigations and security operational processes Maintenance and enhancement ...

Lead Security Analyst

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£80,000
engagement, setting the technical direction for the SOC and owning the quality of what the team produces - from detection engineering to threat-hunting to incident response. This isn't a role where you disappear into a ticket queue. You'll shape the threat-landscape narrative for your engagement, drive … collection plan, produce timely and rigorous intelligence products, and build feedback loops that keep the cycle honest and improving. Establish and lead security incident response practice - build playbooks, define the severity model, run exercises, and lead the team's response to significant incidents; run blameless post-mortems ...

CIRT Analyst

Hiring Organisation
IMT Resourcing Solutions
Location
Cheltenham, Gloucestershire, United Kingdom
Employment Type
Contract
Contract Rate
£300/annum Up to £300 per day (Inside IR35)
major project by reviewing a large volume of applications and ensuring they meet security standards before deployment. Whilst there is some exposure to Cyber Incident Response activities, this is very much a hands-on security assessment role where you'll be expected to work independently and manage … management tools such as Qualys (or similar) to assess security risks. Support ongoing cybersecurity project delivery within a high-profile programme. Assist with Cyber Incident Response activities where required, including security monitoring and investigation. What we're looking for We're looking for someone ...

Senior Security Analyst

Hiring Organisation
Surrey County Council
Location
Reigate, Surrey, United Kingdom
Employment Type
Permanent
Salary
£55486 - £60898/annum
work will include proactive security monitoring across our hybrid cloud and on premises environment, triaging and investigating alerts, and supporting coordinated incident response activities. You will operate our vulnerability management processes, translate threat intelligence into actionable defences, and contribute to the improvement of detection content and security controls. … contribute to several high impact initiatives including: Establishing a more mature, risk based vulnerability management lifecycle and reducing exposure windows across critical systems Enhancing incident response readiness through improved playbooks, scenario testing, and lessons learned processes Uplifting monitoring coverage and the effectiveness of SIEM/EDR/ ...

Senior SOC Analyst - Hybrid / London

Hiring Organisation
Interface Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Senior SOC Analyst - Hybrid / Bristol

Hiring Organisation
Interface Recruitment
Location
Bristol, City of Bristol, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Senior SOC Analyst - Hybrid / Leeds

Hiring Organisation
Interface Recruitment
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx2
team within a leading international technology and cyber security provider. This is far more than a traditional SOC role. You'll be involved in incident response, threat hunting, vulnerability management, detection engineering and proactive cyber defence activities across a modern Microsoft security environment. What You'll Be Doing … Identity Defender for Cloud Apps Microsoft Intune Qualys AttackIQ XM Cyber We're Interested In Candidates with experience in: SOC Operations Security Monitoring Incident Response Threat Hunting Cyber Defence Vulnerability Management Security Operations Engineering You may currently be working as a: Senior SOC Analyst SOC Analyst Cyber Security ...

Head of Cyber Claims - International

Hiring Organisation
Jobleads-UK
Location
City Of London, England, United Kingdom
accountable for developing and implementing cyber claims strategy, best practice and capability across those offices, ensuring a consistent and effective approach to service delivery, incident response and client support. What you’ll do Lead the development and implementation of international cyber claims strategy across jurisdictions outside … required, acting as a referral point to support and supplement local expertise. Establish and embed best practice approaches to cyber claims handling, both initial response and coverage, across global offices. Build and oversee local cyber claims capability in key international markets to ensure consistency of service provision and standards ...

Site Reliability Engineer

Hiring Organisation
Connells Limited
Location
Milton Keynes, Buckinghamshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
hands-on role in ensuring it is reliable, scalable, and observable. You will help establish and mature SRE practices, focusing on: Monitoring and observability Incident response Post-incident review Reliability testing and capacity planning Toil reduction Enabling development velocity We offer a hybrid working arrangement with … Milton Keynes office. Key Responsibilities: Support teams using ConnellsX and respond to incidents in a structured, blameless way Investigate root causes and drive post-incident actions to completion Define SLIs, contribute to SLOs, and monitor error budgets Build dashboards, alerts, and runbooks to improve visibility Automate repetitive tasks ...

Splunk SIEM Engineer

Hiring Organisation
Experis
Location
Knutsford, Cheshire, United Kingdom
Employment Type
Contract
Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. Security Operations: Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). Data Pipeline Management: Hands-on experience with … tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. SOAR & Automation: Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. Network Security Fundamentals: Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. Communication & Documentation ...

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
Remote work, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550/day
wider Microsoft Security stack. You will work closely with Security Operations, Infrastructure, and Cloud teams to strengthen the organisation's security posture and improve incident detection and response capabilities. Key Responsibilities Design, implement, configure and support Microsoft Sentinel solutions . Lead and support SIEM migration projects from legacy … Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor and Log Analytics environments . ...

Support Engineer L3

Hiring Organisation
Opus Recruitment Solutions
Location
Newcastle upon Tyne, Tyne & Wear, United Kingdom
Employment Type
Contract
Contract Rate
£37000 - £55000/annum
point for complex issues impacting business-critical services. Execute technical recovery actions during incidents to restore service as quickly as possible. Participate in Major Incident and High-Priority Incident response activities. Technical Troubleshooting Diagnose and resolve application, infrastructure, integration, database, and data-related issues across supported products … architecture, business processes, and operational dependencies. Problem Management & Continuous Improvement Conduct root cause analysis (RCA) and contribute to Problem Management processes. Participate in post-incident reviews and recommend long-term preventative solutions. Drive continuous service improvement through automation, process optimisation, tooling enhancements, and reduction of recurring incidents. Monitor service ...

Lead Security Assurance Engineer

Hiring Organisation
Jobleads-UK
Location
Bristol, England, United Kingdom
audience, showing trends over time, and structuring reports around the decisions the reader needs to make, not just the findings. Set the standard for incident response and detection readiness. Drive adoption of incident response practices across engagements, own the IR-to-vulnerability-management feedback loop ...

Lead Security Assurance Engineer

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£90,000
audience, showing trends over time, and structuring reports around the decisions the reader needs to make, not just the findings. Set the standard for incident response and detection readiness. Drive adoption of incident response practices across engagements, own the IR-to-vulnerability-management feedback loop ...

Senior DevSecOps Engineer

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Developer Empowerment: Building and maintaining 'golden path' templates for secure service deployment, enabling feature teams to confidently and safely push code without compromising security. Incident Response: Contributing expertise to the security incident response team, helping to swiftly and effectively manage and resolve security events. What ...