Latest Incident Response Analyst Jobs

CrowdStrike logo

Sr. Intelligence Analyst, GTAC Vulnerability Mission

This role involves analyzing and tracking cyber threats, vulnerabilities, and adversary exploitation techniques to produce actionable intelligence. The analyst will identify TTPs used by threat actors, develop tools for predictive analysis, and deliver finished intelligence reports under tight deadlines. Collaboration with internal teams and participation in adversary campaign tracking are key components of the position.

CrowdStrike Germany
Remote Permanent
CrowdStrike logo

Sr. Intelligence Analyst, GTAC Vulnerability Mission

This role involves analyzing and tracking vulnerabilities exploited by cyber adversaries, synthesizing intelligence from diverse sources, and producing actionable reports. The analyst will identify TTPs of threat actors, develop tools for predictive analysis, and collaborate across teams to enhance threat understanding. Work includes briefing stakeholders and contributing to intelligence products on exploit trends and adversary behavior.

Remote Permanent

Threat Detection Engineer

This role involves designing and developing threat-led detections using threat intelligence and hunting outputs, collaborating with an MSP SOC, and building automated reporting dashboards. The focus is on protecting sensitive genomic and AI-driven data, with high autonomy and a mission to advance precision healthcare.

Additional Resources London, United Kingdom £60,000 – £80,000 pa
Hybrid Permanent Flexible

Threat Detection Engineer

This role involves designing and developing threat-led detections using threat intelligence and hunting outputs, creating novel analytic techniques for incident detection, and collaborating with an MSP SOC to maintain and tune the detection catalogue. The position offers high autonomy and the opportunity to work on cutting-edge security initiatives in a mission-focused environment.

Additional Resources Wc1A2Sl, WC1A 2SL, United Kingdom £60,000 – £80,000 pa
Hybrid Permanent

Cyber Security Engineer

This role involves monitoring and responding to security incidents, tuning security tools, and continuously improving the organization's cyber resilience. You will work with platforms like Microsoft Defender, Rapid7 SIEM, and Sophos Antivirus, and collaborate with IT teams to enhance security operations.

Required IT Br11Aa, BR1 1AA, United Kingdom £55,000 – £60,000 pa
Hybrid Permanent

Sr. AI Threat Researcher

This role involves researching how threat actors exploit AI across the attack lifecycle, including AI-powered social engineering, malware generation, and attacks on AI systems. The researcher will analyze telemetry and open-source intelligence to detect adversarial AI use, develop detection strategies, and automate workflows. Findings will be shared through internal collaboration and external publications to keep Sophos and the security community ahead of emerging threats.

Sophos United Kingdom
Remote Permanent
Darktrace logo

Technical Success Manager - Enterprise Accounts

The role involves building trusted relationships with enterprise security and IT teams to drive technical adoption of Darktrace’s AI-driven cybersecurity platform. You'll create success plans, identify high-value use cases, and guide customers from deployment to active use, ensuring measurable risk reduction and operational integration. The position acts as a technical advisor, bridging customer needs with internal teams to improve health, retention, and expansion opportunities.

Darktrace London, UB8 1LQ, United Kingdom
Hybrid Permanent

Cyber Security SOC Analyst

As a Cyber Security SOC Analyst, you will monitor systems, respond to alerts, and manage incident reporting. You will work closely with the Escalations Management Team to mitigate threats and provide operational support to the wider Cyber Security Team.

Gold Group London, United Kingdom £30,000 – £36,000 pa
Hybrid Permanent Clearance Required

Cyber Security Analyst - Watford

Job specification for the position of: Cyber Security AnalystReporting to: IT Governance and Security Manager***OFFICE BASED IN WATFORD - FIVE DAYS PER WEEK - NON-NEGOTIABLE***Must have a British passport or ILR (Indefinite leave to remain) - ***no sponsorship available***Purpose of...

Morgan Philips Group Watford, Hertfordshire, United Kingdom £55,000 – £60,000 pa

Senior Threat Researcher (UK)

Develops high-fidelity threat detections by analyzing malware and web attacks using multi-source telemetry and threat intelligence. Translates research into actionable alerts across Sophos' security platform with a focus on reducing noise. Works closely with threat intelligence and product teams to enhance detection accuracy for endpoint, cloud, and network environments.

Sophos United Kingdom
Remote Permanent

Principal Consultant, Incident Response (Unit 42)

Leads high-stakes incident response engagements for clients, conducting forensic investigations across Windows, Linux, and macOS systems to identify breaches and attack vectors. Uses advanced tools like EnCase, FTK, and Splunk to analyze logs and memory artifacts, delivering actionable remediation strategies. Mentors junior consultants and collaborates with internal teams to strengthen client security postures.

Palo Alto Networks London, United Kingdom
Hybrid Permanent

Principal Consultant, Incident Response (Weekend Schedule)

Our MissionAt Palo Alto Networks®, we’re united by a shared mission—to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice,...

Palo Alto Networks United Kingdom

Cyber Security Analyst

Security Analyst | Cardiff | Hybrid Working | Excellent BenefitsAre you looking for a role where you'll play a key part in protecting a leading professional services organisation from evolving cyber threats?We're looking for a proactive Security Analyst to join...

Yolk Recruitment Cardiff, Cymru / Wales, CF10 2AF, United Kingdom
Experis logo

Splunk SIEM Engineer

Role Title: Splunk SIEM EngineerDuration: contract to run until 30/11/2026Location: Knutsford. Hybrid, 3 days per week onsiteRate: up to £587.33 p/d Umbrella inside IR35Role purpose / summaryJoin us as Splunk SIEM Engineer where you must design, develop and improve software,...

Experis Knutsford, Cheshire, United Kingdom

SC Cleared Splunk SIEM Engineer

Design, develop, and enhance SIEM solutions using Splunk and Microsoft Sentinel within a secure enterprise environment. Manage data pipelines, develop correlation rules, and support security operations with strong focus on automation, incident response, and cross-platform integration. Work in a hybrid model with regular on-site presence in Cheshire.

Hays Technology Knutsford, Cheshire, United Kingdom £500 – £638 pd