Latest Incident Response Jobs

Senior Incident Response Consultant, Rapid Response

Leads high-pressure incident response engagements for organizations affected by cyberattacks, directing forensic investigations and coordinating with customer teams. Produces detailed reports mapped to MITRE ATT&CK, focusing on ransomware and business email compromise (BEC) incidents. Operates in a rapid-response environment with a rotating weekend-heavy schedule to support global customers.

Sophos United Kingdom
Remote Permanent

Principal Consultant, Incident Response (Unit 42)

Leads high-stakes incident response engagements for clients, conducting forensic investigations across Windows, Linux, and macOS systems to identify breaches and attack vectors. Uses advanced tools like EnCase, FTK, and Splunk to analyze logs and memory artifacts, delivering actionable remediation strategies. Mentors junior consultants and collaborates with internal teams to strengthen client security postures.

Palo Alto Networks London, United Kingdom
Hybrid Permanent
Pfizer logo

Lead Threat Response Operations Analyst

Leads complex cyber threat investigations and incident response activities across global environments, analyzing telemetry from endpoints, network, cloud, and identity systems to identify and neutralize sophisticated threats. Provides technical leadership in threat response, coordinates cross-functional teams during incidents, and drives improvements in detection, containment, and remediation processes. Focuses on adversary tradecraft analysis, attack lifecycle reconstruction, and strategic recommendations to enhance organizational cyber resilience.

Pfizer Sandwich, Kent, United Kingdom

Senior SOC Analyst/SOC Team Lead

This role involves leading a team of 10 in a hybrid working environment, handling high-impact cyber attacks, mentoring security engineers, and building proactive security measures like threat-hunting programs and Zero Trust architectures. The position requires strong technical and leadership skills, particularly in Microsoft 365 security tools and incident response.

Ultimaze Ltd trading as TSR Select Ss143Wn, United Kingdom £40,000 – £50,000 pa

Operational Security Lead and Vulnerability Manager

This role involves leading day-to-day operational cybersecurity, managing cyber incidents, and overseeing vulnerability management across infrastructure and cloud environments. The individual will coordinate incident response, drive remediation of security risks, and lead threat monitoring and phishing simulations. They will work closely with senior stakeholders to strengthen cyber resilience and ensure robust security governance within a regulated financial services environment.

Kensington Mortgage Company Marlow, United Kingdom
Hybrid Permanent

SOC Analyst - Active SC required

Monitor and respond to security incidents using IBM QRadar SIEM, conducting threat detection, log analysis, and incident investigation across enterprise systems. Support a defence/aerospace client with robust security controls and detailed post-incident reporting. Engage in proactive threat hunting and handle diverse cyber threats including phishing and malware.

Matchtech Harlow, Essex, United Kingdom
Hybrid Contract Clearance Required

Cyber Resilience Specialist

This role involves assessing cyber threats and vulnerabilities in the context of operational resilience, translating technical security risks into business service impacts, and supporting scenario testing and governance. The specialist will work across technology, security, and risk teams to strengthen resilience capabilities within a regulated environment. Key focus areas include service mapping, impact tolerance assessments, and providing actionable recommendations to enhance organisational resilience.

Hays Technology London, United Kingdom £600 pd
Remote Contract

Senior Security Engineering Consultant

Our client, a leader in the cyber security sector, is currently seeking a Senior Security Engineering Consultant to join their team. This permanent role is a hands-on technical position within the Security Operations domain, focused on helping customers improve and...

Infosec Basingstoke, Hampshire, United Kingdom £70,000 – £80,000 pa

Infrastructure Engineer / Security

This role involves maintaining and securing IT infrastructure across on-premise and cloud environments, with a focus on system hardening, vulnerability management, and incident response. The engineer will work with security technologies like SIEM, EDR, and IAM, support compliance and disaster recovery, and contribute to infrastructure projects using automation and Infrastructure-as-Code tools. A strong background in Linux, networking, and cloud security is essential.

IT Talent Solutions Guildford, Surrey, United Kingdom £55,000 – £65,000 pa

Cloud Security Engineer

This role involves operating and optimising cloud security across AWS and cloud-native environments using Palo Alto's Cortex and Prisma platforms. You'll develop threat detection rules, support incident response, and enhance Zero Trust and container security controls. The position is fully remote, working within a collaborative security team on a 12-month contract.

Hays Technology London, United Kingdom £450 – £550 pd

Cyber Security & Infrastructure Engineer

This role involves protecting systems, networks, and data by monitoring security alerts, leading incident response, and improving security posture across on-premises and cloud environments. The engineer will implement and maintain Azure, Microsoft 365, and Intune security, conduct vulnerability management, and ensure compliance with standards like ISO 27001 and NCSC. A key focus is threat detection, forensic investigation, and enhancing infrastructure resilience within a small, technical IT team.

Adria Solutions East Howdon, Tyne & Wear, United Kingdom £40,000 – £50,000 pa

Senior Cybersecurity Lead

Lead the development and execution of cybersecurity strategy across Five Guys' European operations in a hands-on, greenfield role. Define security policies, strengthen cloud and identity security, lead incident response, and ensure compliance with GDPR, PCI-DSS, and ISO 27001. Collaborate with IT and leadership in a lean environment while building security capabilities from the ground up.

We Love Alfa London, United Kingdom £90,000 – £110,000 pa

Senior SOC Analyst

Senior SOC AnalystFarnborough UK | Fully On-Site24/7 Shift PatternCompetitive Salary + Shift AllowanceDV Clearance Eligible – British Citizens OnlyThis SOC role is on the frontline of cyber defence.I'm looking for a Senior SOC Analyst to join a high-performing Security Operations...

Fynity Farnborough, Hampshire, GU14 7JT, United Kingdom £48,000 – £58,000 pa

Trainee Cyber Security Specialist

This role involves completing a fully-funded 5-week online cyber security course, gaining hands-on experience in threat intelligence, security testing, incident response, and ethical compliance. The training prepares you for entry-level roles in IT support, cyber security analysis, and related fields.

Netcom Online Learning Sheffield, United Kingdom £25,000 – £32,000 pa
Remote Internship

Cyber Security Lead

Role: Cyber Security Lead Location: NottinghamshireWorking Arrangement: 3 days a week in officeSalary: Up to £70kAre you an experienced SOC professional who's ready to take the next step into leadership without leaving the technical work behind?We're looking for a Cyber...

Rebel Recruitment Nottingham, Nottinghamshire, United Kingdom £65,000 – £70,000 pa