Latest Incident Response Analyst Jobs

Senior SOC Analyst / London

This role involves end-to-end investigation of security incidents, proactive threat hunting, and detection engineering within a modern Microsoft security environment. The analyst will monitor cloud, endpoint, identity, and network telemetry, using tools like Microsoft Sentinel and Defender XDR to detect and respond to threats. The position supports vulnerability management, security posture improvement, and compliance, operating in a 24/7 hybrid shift pattern with a strong focus on proactive cyber defence.

Interface Recruitment London, United Kingdom £58,600 pa
Hybrid Permanent Clearance Required

Senior SOC Analyst Level 2

This role involves monitoring and responding to advanced cyber threats in a high-stakes environment, supporting UK defence and national security programmes. Responsibilities include triaging security alerts, analysing threats using SIEM tools, and enhancing detection rules. The team focuses on defending critical systems and countering sophisticated adversaries, including nation-state actors.

Fynity Hertfordshire, United Kingdom £50,000 – £58,000 pa
On-site Permanent Shift-work Clearance Required

Junior Cyber Security Analyst

This role involves supporting daily security operations by analyzing alerts and incidents using tools like Palo Alto Cortex and Microsoft 365. The analyst will assist in incident response, learn risk and governance principles, and contribute to improving detection and automation across a global environment.

The Portfolio Group Manchester, United Kingdom £35,000 pa
Hybrid Permanent

SOC Analyst (Tier 1)

Monitor and triage security alerts using Microsoft Defender and Sentinel, escalating incidents to senior analysts. Support threat intelligence and contribute to improving SOC detection processes in a 24/7 rotating shift environment. Role includes initial training followed by hybrid working with required office attendance on shift days.

VIQU IT Recruitment Dn121Aa, DN12 1AA, United Kingdom £25,000 – £30,000 pa

Managed Security Analyst

This role involves monitoring, triaging, and investigating security alerts across customer environments, acting as a bridge between IT support and security operations. The analyst will support incident response, vulnerability management, and customer-facing security projects including MFA and security tooling deployments. It requires hands-on technical expertise in Microsoft 365, Azure, Defender, and Entra ID, along with direct engagement to explain security issues and recommend solutions.

Ultimaze Ltd trading as TSR Select Ss117Aa, United Kingdom £30,000 – £35,000 pa
HAYS Specialist Recruitment logo

Cyber Security Analyst

This role involves working with the cyber resilience team to enhance the company's security posture. Responsibilities include monitoring and responding to security incidents, managing vulnerabilities, and contributing to the incident response lifecycle. The company is a leader in the utilities sector and is actively investing in its IT and cyber security infrastructure.

HAYS Specialist Recruitment Newport, United Kingdom £42,000 – £48,000 pa
Hybrid Permanent Clearance Required

Security Operations Analyst

This role involves monitoring and analysing cyber threats, conducting threat modelling, and producing intelligence reports to strengthen security controls. The analyst will work within a security team to detect, investigate, and respond to threats using frameworks like MITRE ATT&CK, while supporting both strategic and operational resilience initiatives. Collaboration with SOC, threat intelligence, and engineering teams is central to the role.

Matchtech London, United Kingdom £594 pd

Threat Intelligence Analyst

This role involves monitoring and analysing the evolving cyber threat landscape to produce actionable intelligence that informs security architecture and risk management decisions. The analyst will assess threats, develop strategic recommendations, and collaborate with security architects, SOC teams, and stakeholders to strengthen enterprise defences. Work includes threat modelling, IOC analysis, and supporting platform security initiatives within a large-scale, regulated environment.

Matchtech London, United Kingdom £594 pd

GRC Analyst

This role involves delivering GRC and compliance consulting services to clients across diverse industries, supporting audits, risk assessments, and compliance gap analyses. The analyst will lead security initiatives in cloud environments, facilitate incident response exercises, and help organisations strengthen their security posture. Key responsibilities include managing compliance evidence, engaging with auditors, and advising on frameworks such as ISO 27001, SOC 2, GDPR, and DORA.

Rise Technical Recruitment London, United Kingdom £45,000 – £55,000 pa
CrowdStrike logo

Sr. Analyst, Falcon Complete , GBR)

Conduct real-time monitoring, analysis, and incident response for enterprise clients using advanced threat detection tools and AI-driven platforms. Perform malware analysis, forensic investigations, and remote remediation across Windows, Mac, and Linux environments. Develop security processes, mentor junior analysts, and contribute to thought leadership through technical communication and public speaking.

CrowdStrike United Kingdom
Remote Permanent

SOC Manager

Lead and develop a Security Operations Centre within a public sector environment, defining strategy and operational roadmap while overseeing incident management, threat intelligence, and security monitoring. Manage cyber security tools, vendor relationships, and MSSP partnerships to strengthen national-level security operations. This role requires active SC clearance and experience in strategic SOC leadership.

NonStop Consulting Exeter, Devon, United Kingdom £800 – £850 pd

SOC Manager

Lead and oversee the strategic direction of a Cyber Security Operations Centre, managing incident response, threat intelligence, and security operations. This role involves high-level governance, coordination with external vendors and MSSPs, and leading teams during major security incidents. The position requires a strategic leader rather than a hands-on analyst, with a focus on crisis management and security operations leadership.

Randstad Technologies Recruitment London, City And County Of the City Of London, United Kingdom £600 – £700 pd
Remote Contract Clearance Required

Cyber Security Engineer

This role involves continuous monitoring, investigation, and response to security alerts using Rapid7 and Microsoft Defender within a 24/7 operational environment. The engineer will conduct threat analysis, identify vulnerabilities, support incident response, and contribute to security improvements and internal awareness initiatives. The position starts fully onsite before transitioning to a hybrid 3-days-per-week office model.

Required IT Br11Aa, United Kingdom £55,000 – £60,000 pa

Cyber Security Lead

Lead and mentor a small SOC team while remaining actively involved in technical security operations, including incident investigation and response across enterprise, cloud, and OT environments. Drive improvements in detection, automation, and SOC processes within a complex technology landscape, balancing hands-on technical work with leadership responsibilities.

Rebel Recruitment Nottinghamshire, United Kingdom £65,000 – £70,000 pa
Hybrid Permanent

Cyber Security Operations Manager

Lead and develop a security operations team while managing the full incident lifecycle from detection to resolution. Design and improve security monitoring strategies using SIEM, EDR, and SOAR tools, and integrate threat intelligence to enhance defensive capabilities. Work closely with MSSPs and internal stakeholders to strengthen the organisation's security posture through continuous improvement and strategic planning.

Tatton Recruitment Pinhoe, Devon, EX4 9EY, United Kingdom £800 pd