Latest Incident Response Jobs

CrowdStrike logo

Incident Response Sr. Consultant

This role involves serving as a technical team member on incident response engagements, developing new methods to hunt for bad actors, and performing host and network-based forensics across various platforms. You will work on high-profile investigations and produce detailed reports for key stakeholders.

CrowdStrike London, SE10 0TW, United Kingdom
Remote Permanent
CrowdStrike logo

Incident Response Sr. Consultant

This role involves serving as a technical team member on incident response engagements, developing and using new methods to hunt for bad actors, and performing host and network-based forensics across various platforms. You will support the production of high-quality reports and recommendations for key stakeholders, including customer management and legal counsel.

CrowdStrike Bigton, Alba / Scotland, ZE2 9GA, United Kingdom
Remote Permanent

Cyber Security Engineer - Incident Response & Crisis Simulation within UK

This role involves creating and improving defensive security labs, challenges, and online learning content on the Immersive One platform. You will research the latest threats, develop crisis simulation content, and work with the Product team to enhance the platform's blue team capabilities.

Immersive United Kingdom
Remote Permanent

Cyber Operations & Incident Response Manager

This role involves leading a London-based cybersecurity team and managing the Endpoint, Platform, and Incident Response capabilities. The manager will act as Incident Commander during security incidents, oversee vulnerability remediation, and align global cyber risk priorities with local execution. They will coordinate with MDR providers, cross-functional teams, and stakeholders across regions to ensure robust cyber resilience and response readiness.

Prime Personnel UK Sw1E5Jl, SW1E 5JL, United Kingdom £100,000 – £120,000 pa
Hybrid Permanent

Cyber Operations & Incident Response Manager

Leads and manages a London-based cybersecurity team, overseeing incident response, endpoint security, and platform resilience. Acts as Incident Commander during security events, coordinates with MDR providers, and prioritizes remediation efforts using threat intelligence and frameworks like MITRE ATT&CK. Ensures alignment with global cyber risk priorities while serving as the primary escalation point for cyber matters in London.

eFinancialCareers London, United Kingdom
Hybrid Permanent

IT Security Analyst – Incident Response & Vulnerability Management

The Level 3 Security Analyst is responsible for the technical investigation, containment, and resolution of IT security incidents and vulnerabilities across a complex, multi-site customer estate. They act as a senior technical authority, working closely with Incident Management, Infrastructure, and Network teams to ensure security issues are resolved end-to-end and do not reoccur.

Operations Resources Cardiff, Cymru / Wales, CF10 2AF, United Kingdom
Hybrid Permanent
Bridewell logo

OT Incident Responder

The OT Incident Responder role involves hands-on investigation, containment, and recovery activities in industrial environments, supporting CNI clients. You will work under senior responders to build specialist OT and ICS expertise.

Bridewell Cardiff, United Kingdom
Hybrid Permanent Clearance Required
Bridewell logo

Lead OT Incident Responder

One of the most exciting prospects in the UK cyber security sector today, Bridewell is a leading cyber security services company specialising in protecting and transforming critical business functions for some of the world’s most trusted organisations. We are the...

Bridewell Cardiff, United Kingdom
Hybrid Permanent

Principal Consultant, Incident Preparedness

As a Principal Consultant in Incident Preparedness, you will lead high-impact projects to enhance clients' cyber resilience. Your responsibilities include conducting Tabletop Exercises, developing Incident Response Plans, and providing expert advisory to diverse stakeholders, from technical teams to C-suite executives. You will manage the full lifecycle of client engagements, ensuring high-quality outcomes and continuous improvement of service delivery methodologies.

Palo Alto Networks United Kingdom
Remote Permanent

Senior CIRT / Threat Intel Analyst

This role involves leading cyber incident response and threat intelligence activities, focusing on detecting, analyzing, and responding to security incidents across endpoints, networks, cloud, and SaaS environments. The analyst will integrate threat intelligence into investigations, develop incident response playbooks, tune detections, and produce actionable intelligence for both technical and executive audiences. Collaboration with SOC teams and participation in global information-sharing initiatives are key aspects of the position.

eFinancialCareers London, United Kingdom
Hybrid Permanent
HAYS Specialist Recruitment logo

Senior Cyber Security Analyst

The Senior Cyber Security Analyst will work closely with the Head of Information Security to enhance the organization's incident response capabilities and manage vulnerabilities. Key responsibilities include leading remediation efforts, maintaining Microsoft Sentinel SIEM, and staying ahead of emerging threats in a dynamic environment.

HAYS Specialist Recruitment Bolton, United Kingdom £45,000 – £55,000 pa
Hybrid Permanent

Head of Cyber Defend / CERT

This role involves leading and managing multiple cyber security teams, developing and maintaining the organisation's cyber strategy, and responding to cyber threats in real-time. Responsibilities include incident response, threat hunting, vulnerability management, and collaborating with external partners.

Prime Personnel UK London, United Kingdom

Platform Engineering Consultant

This role involves working directly with clients to design, deploy, and support production infrastructure. Responsibilities include incident response, ensuring system reliability, and balancing technical tradeoffs with client deadlines. The position also offers opportunities for mentoring others and contributing to open-source projects.

MicroTech Consulting Cambridgeshire, United Kingdom
Remote
Experis logo

SOC Analyst

This role involves continuous protective monitoring, triaging security alerts, and supporting incident response within a 24/7 Security Operations Centre for UK public sector clients. The analyst will work with advanced SIEM and XDR platforms such as IBM QRadar, Microsoft Sentinel, and Palo Alto XSIAM, contributing to national-level cyber defence. Collaboration within a small, high-performing team and adherence to established runbooks are key aspects of the position.

Experis Hursley, Hampshire, United Kingdom £40,000 – £50,000 pa
On-site Permanent Clearance Required
Adecco logo

Cyber Threat Detection / SIEM Analyst - SANS/GIAC

This role involves proactive threat hunting, analyzing telemetry and threat intelligence, and developing hypotheses based on MITRE ATT&CK TTPs. You will lead investigations, support incident response, and collaborate with SOC, red, and purple teams to enhance defensive strategies.

Adecco Wokingham, Berkshire, United Kingdom £60,000 – £90,000 pa
On-site Permanent Clearance Required