Latest Incident Response Jobs

Cyber Response & Recovery Manager

Lead technical recovery and remediation efforts following major cyber incidents such as ransomware, Active Directory compromise, and cloud breaches. Design and implement secure recovery strategies, oversee infrastructure hardening, and guide clients through resilience improvements. Mentor junior staff and manage stakeholder communication during high-pressure engagements.

Circle Recruitment Manchester, United Kingdom £64,000 – £76,000 pa
Hybrid Permanent Clearance Required

Senior SOC Analyst / London

This role involves end-to-end investigation of security incidents, proactive threat hunting, and detection engineering within a modern Microsoft security environment. The analyst will monitor cloud, endpoint, identity, and network telemetry, using tools like Microsoft Sentinel and Defender XDR to detect and respond to threats. The position supports vulnerability management, security posture improvement, and compliance, operating in a 24/7 hybrid shift pattern with a strong focus on proactive cyber defence.

Interface Recruitment London, United Kingdom £58,600 pa
Hybrid Permanent Clearance Required

IT Security and Compliance Specialist

This role involves leading cybersecurity, risk, and compliance initiatives within a software services company. The specialist will manage security governance, conduct audits, perform risk assessments, and support incident response. They will act as a security advisor across both technical and business teams, ensuring alignment with regulatory standards and maintaining a strong security posture.

Head Resourcing Edinburgh, Alba / Scotland, United Kingdom £55,000 – £65,000 pa
Hybrid Permanent Clearance Required

Cyber Security Engineer

This role involves securing a hybrid IT environment spanning Microsoft Azure, VMware, and Cisco Meraki systems. The engineer will focus on cloud security, infrastructure hardening, incident response, and disaster recovery testing while collaborating with infrastructure and service teams. Key responsibilities include vulnerability remediation, security automation, and strengthening cyber resilience across the estate.

DCV Technologies Lincoln, Lincolnshire, United Kingdom £60,000 – £65,000 pa
Hybrid Permanent Clearance Required

Cyber Security Lead

Lead and mentor a small SOC team while remaining actively involved in technical security operations, including incident investigation and response across enterprise, cloud, and OT environments. Drive improvements in detection, automation, and SOC processes within a complex technology landscape, balancing hands-on technical work with leadership responsibilities.

Rebel Recruitment Nottinghamshire, United Kingdom £65,000 – £70,000 pa
Hybrid Permanent

SOC Analyst (Tier 1)

Monitor and triage security alerts using Microsoft Defender and Sentinel in a 24/7 Security Operations Centre. Conduct incident investigation and support response activities within a collaborative team environment. Contribute to improving detection capabilities and SOC processes in a hybrid-working setup with rotating 12-hour shifts.

VIQU IT New Edlington, South Yorkshire, DN12 1DZ, United Kingdom £25,000 – £30,000 pa

Senior Security Engineer

This role involves leading security operations, incident response, and vulnerability management while designing and automating security controls across the technology estate. The engineer will work with SIEM, EDR (including CrowdStrike), IAM, and cloud security technologies, supporting secure adoption of AI and other emerging platforms. Responsibilities include policy development, threat monitoring, and embedding security best practices across teams.

STELLAR360 Bracknell, Berkshire, United Kingdom £80,000 – £100,000 pa

Senior SOC Analyst

This role involves leading complex security incident investigations, designing and tuning detection rules in SIEM/EDR platforms, proactive threat hunting in cloud and CI/CD environments, and building automation through SOAR. The analyst will drive improvements in SOC maturity, collaborate with engineering teams to strengthen security posture, and mentor junior staff, all within a modern cloud-first environment.

Ballantyne Technology Associates Ltd Reading, Berkshire, United Kingdom £75,000 – £90,000 pa
Hybrid Permanent

ITSM JiraSM Platform Engineer - Barclaycard Payments

Design and engineer ITSM change workflows in Jira Service Management, integrating with CI/CD, monitoring, and observability platforms to enable safe, automated, and auditable change control. Focus on platform-driven policy guardrails, automation, and service management integration within a regulated payments environment. Work closely with engineering teams to reduce friction while maintaining compliance and security.

Barclays London, E14 5RB, United Kingdom
Hybrid Permanent Clearance Required

Data Privacy Senior Manager

Lead the design and implementation of privacy controls across data platforms, products, and engineering workflows, embedding privacy-by-design into SDLC and CI/CD pipelines. Drive automation of data discovery, classification, and lineage, and manage compliance with UK GDPR, international transfers, and AI/ML model governance. Operate end-to-end data subject rights and incident response with engineered runbooks and tooling integration.

Barclays London, E14 5RB, United Kingdom
Hybrid Permanent

SOC Manager

Lead and shape the strategic direction of a mature Security Operations Centre within a high-profile public sector organisation. Oversee security monitoring, incident response, and threat intelligence capabilities while managing a high-performing team and collaborating with MSSPs and vendors. Drive continuous improvement in cyber resilience and operational excellence in a fully remote role.

Fox Morris Group Ltd Hackney Central, London, United Kingdom £700 – £850 pd

SOC Analyst - DV Cleared

This role involves maintaining a unified operational view across cyber, network, infrastructure, and physical security domains within a secure, live operations centre. The SOC Analyst will lead incident coordination, perform real-time alert triage, and ensure effective communication and decision-making during high-pressure situations. It is a hybrid position emphasizing operational leadership while requiring solid technical awareness to manage and escalate incidents across multiple teams.

CBSbutler Holdings Limited trading as CBSbutler Hanslope, Buckinghamshire, United Kingdom £60,000 – £65,000 pa
On-site Permanent Clearance Required

SC Cleared Splunk SIEM Engineer

Design, develop, and enhance SIEM solutions using Splunk and Microsoft Sentinel within a secure enterprise environment. Manage data pipelines, develop correlation rules, and support security operations with strong focus on automation, incident response, and cross-platform integration. Work in a hybrid model with regular on-site presence in Cheshire.

Hays Technology Knutsford, Cheshire, United Kingdom £500 – £638 pd

Cyber Security Operations Manager

Lead and develop a security operations team while managing the full incident lifecycle from detection to resolution. Design and improve security monitoring strategies using SIEM, EDR, and SOAR tools, and integrate threat intelligence to enhance defensive capabilities. Work closely with MSSPs and internal stakeholders to strengthen the organisation's security posture through continuous improvement and strategic planning.

Tatton Recruitment Pinhoe, Devon, EX4 9EY, United Kingdom £800 pd

Senior SOC Analyst Level 2

This role involves monitoring, triaging, and investigating real-time security alerts within a high-stakes SOC environment focused on national defence and critical infrastructure. The analyst will use SIEM tools, endpoint and network data to detect and respond to advanced threats, aligning detection strategies with MITRE ATT&CK. The position operates on a 24/7 shift pattern and plays a key role in incident response and threat improvement within a highly secure setting.

Fynity Hemel Hempstead, Hertfordshire, HP1 1EW, United Kingdom £50,000 – £58,000 pa
On-site Permanent Clearance Required