Latest Incident Response Jobs

Senior Incident Response Consultant, Rapid Response

Leads high-pressure incident response engagements for organizations affected by cyberattacks, directing forensic investigations and coordinating with customer teams. Produces detailed reports mapped to MITRE ATT&CK, focusing on ransomware and business email compromise (BEC) incidents. Operates in a rapid-response environment with a rotating weekend-heavy schedule to support global customers.

Sophos United Kingdom
Remote Permanent

Principal Consultant, Incident Response (Unit 42)

Leads high-stakes incident response engagements for clients, conducting forensic investigations across Windows, Linux, and macOS systems to identify breaches and attack vectors. Uses advanced tools like EnCase, FTK, and Splunk to analyze logs and memory artifacts, delivering actionable remediation strategies. Mentors junior consultants and collaborates with internal teams to strengthen client security postures.

Palo Alto Networks London, United Kingdom
Hybrid Permanent

DFIR Managing Consultant

Role Purpose:To manage and service NCC Group clients within the Incident Response space.The Managing Consultant plays a critical role within the DFIR team of experienced consultants, delivering high‑quality incident response and proactive services to clients. The role involves leading and...

NCC Group Manchester Hardman Boulevard, United Kingdom
Remote Permanent

SOC Lead

We are seeking an experienced Lead SOC Analyst to oversee Security Operations Centre (SOC) activities, lead incident response efforts, and mentor a team of analysts. The successful candidate will have strong expertise in cyber threat detection, incident investigation, and theSplunk...

NCC Group Remote, United Kingdom
Hybrid

Network Security Engineer (SOC)

This role involves safeguarding network infrastructure, working with the SOC team on incident response, designing security solutions, and ensuring compliance with industry best practices. The position requires a strong understanding of networking principles, experience with firewalls, and proficiency in monitoring technologies.

Eclectic Recruitment Stevenage, United Kingdom £40,000 – £55,000 pa

Operational Security Lead and Vulnerability Manager

This role involves leading day-to-day operational cybersecurity, managing cyber incidents, and overseeing vulnerability management across infrastructure and cloud environments. The individual will coordinate incident response, drive remediation of security risks, and lead threat monitoring and phishing simulations. They will work closely with senior stakeholders to strengthen cyber resilience and ensure robust security governance within a regulated financial services environment.

Kensington Mortgage Company Marlow, United Kingdom
Hybrid Permanent

SOC Analyst - Active SC required

Monitor and respond to security incidents using IBM QRadar SIEM, conducting threat detection, log analysis, and incident investigation across enterprise systems. Support a defence/aerospace client with robust security controls and detailed post-incident reporting. Engage in proactive threat hunting and handle diverse cyber threats including phishing and malware.

Matchtech Harlow, Essex, United Kingdom
Hybrid Contract Clearance Required

Senior SOC Engineer

The Senior SOC Engineer will deploy, configure, and maintain the QRadar SIEM platform, develop and optimise analytical rules, and create incident response playbooks. They will also monitor security alerts, conduct investigations, and lead threat modelling exercises to enhance detection and response capabilities.

eFinancialCareers Glasgow, Alba / Scotland, G2 1AL, United Kingdom £60,000 pa
HAYS Specialist Recruitment logo

Junior Cyber Security Analyst

This role involves monitoring the Security Operations Centre, investigating cyber incidents, and supporting cyber assurance activities. You will work closely with IT operations and contribute to the organisation's broader cyber security initiatives, including penetration testing, security architecture reviews, and technology implementations.

HAYS Specialist Recruitment Liverpool, United Kingdom £27,000 – £28,000 pa

Cyber Resilience Specialist

This role involves assessing cyber threats and vulnerabilities in the context of operational resilience, translating technical security risks into business service impacts, and supporting scenario testing and governance. The specialist will work across technology, security, and risk teams to strengthen resilience capabilities within a regulated environment. Key focus areas include service mapping, impact tolerance assessments, and providing actionable recommendations to enhance organisational resilience.

Hays Technology London, United Kingdom £600 pd
Remote Contract

Senior Security Engineering Consultant

Our client, a leader in the cyber security sector, is currently seeking a Senior Security Engineering Consultant to join their team. This permanent role is a hands-on technical position within the Security Operations domain, focused on helping customers improve and...

Infosec Basingstoke, Hampshire, United Kingdom £70,000 – £80,000 pa

Infrastructure Engineer / Security

This role involves maintaining and securing IT infrastructure across on-premise and cloud environments, with a focus on system hardening, vulnerability management, and incident response. The engineer will work with security technologies like SIEM, EDR, and IAM, support compliance and disaster recovery, and contribute to infrastructure projects using automation and Infrastructure-as-Code tools. A strong background in Linux, networking, and cloud security is essential.

IT Talent Solutions Guildford, Surrey, United Kingdom £55,000 – £65,000 pa

Cloud Security Engineer

This role involves operating and optimising cloud security across AWS and cloud-native environments using Palo Alto's Cortex and Prisma platforms. You'll develop threat detection rules, support incident response, and enhance Zero Trust and container security controls. The position is fully remote, working within a collaborative security team on a 12-month contract.

Hays Technology London, United Kingdom £450 – £550 pd

Cyber Security & Infrastructure Engineer

This role involves protecting systems, networks, and data by monitoring security alerts, leading incident response, and improving security posture across on-premises and cloud environments. The engineer will implement and maintain Azure, Microsoft 365, and Intune security, conduct vulnerability management, and ensure compliance with standards like ISO 27001 and NCSC. A key focus is threat detection, forensic investigation, and enhancing infrastructure resilience within a small, technical IT team.

Adria Solutions East Howdon, Tyne & Wear, United Kingdom £40,000 – £50,000 pa

Senior SOC Analyst

Senior SOC AnalystFarnborough UK | Fully On-Site24/7 Shift PatternCompetitive Salary + Shift AllowanceDV Clearance Eligible – British Citizens OnlyThis SOC role is on the frontline of cyber defence.I'm looking for a Senior SOC Analyst to join a high-performing Security Operations...

Fynity Farnborough, Hampshire, GU14 7JT, United Kingdom £48,000 – £58,000 pa