Incident Response Lead

FNZ
London
1 week ago
Create job alert

Role Description

At FNZ, our purpose is to make wealth management more accessible, bringing easier, fairer, and more inclusive solutions to people worldwide. Here in theGlobal Information Securityteam, we work to protect the platforms that support investment solutions for over 20 million people.

We are looking for a Cyber Security Incident Response Lead to join the Security Operations team. You will be an expert in incident management, security risk concepts, and technical security. You will be defining and leading the incident response function under direction from the Cyber Security Incident Response and Operations Manager. You will be responsible for escalations from the SOC as well as medium and low severity incidents and be a major part of the investigation for higher severities. Between incidents, you will be assisting in improvements in detection engineering/design, updating and maintaining incident playbooks, threat hunting with assistance from the threat intelligence team, and training incident response analysts. You will be joining an experienced team and working to support some of the biggest financial services clients in the world.

Reporting directly to the Cyber Security Incident Response and Operations Manager, you will lead a newly created incident response team and be looking to prepare a good foundation and maturity to the incident response processes.

Specific Role Responsibilities

  1. Incident Management: Supporting with major incidents and be second in command and backup for leading cyber security events.
  2. SOC Management: Be an escalation point for the SOC team for identified potential major incidents.
  3. Security Incident Response: Develop and maintain an incident response plan, conduct periodic exercises to test the response readiness of the team, and continually enhance the incident response process.
  4. Team Training and Development: Provide mentorship and training to security analysts, ensuring they are equipped with the necessary skills and knowledge to excel in their roles.
  5. Security Incident Remediation: Coordinate with IT and infrastructure teams to implement necessary remediation actions following security incidents, including applying patches, updating configurations, or deploying new security measures.
  6. Triage of alerts from FNZ Group systems.
  7. Analysis of alerts and escalation where required.
  8. Following Standard Operating Procedures and playbooks to respond to incidents.
  9. Supporting development and enhancement of SIEM detection and playbooks.

Experience Required

Primary Requirements

  1. Excellent spoken and written English.
  2. Significant experience of Incident Response (triage, classification, investigation, escalation).
  3. Good working knowledge of networking protocols and investigation (capture, Wireshark).
  4. Good knowledge of Operating Systems, Databases, and Applications (Windows, Linux, SQL, F5).
  5. Well versed in SIEM tools (Splunk, Sentinel).
  6. Well versed in EDR tools (Defender, Crowdstrike).
  7. Knowledge of security concepts (MITRE, Kill-Chain).
  8. Significant experience in major incident handling and managing the incident.
  9. Willing to be part of an on-call rota for escalations of incidents.

About FNZ Culture

Our culture is what drives us. It's at the heart of who we are and everything we do. It's what inspires, excites, and moves us forward. Our ambition is to create a culture for growth, one that opens up limitless opportunities for our employees, customers, and the wider world. At FNZ, we know that great impact is only possible with great teamwork.

That’s why we value the strength and diversity of thought in our global team.

The FNZ Way is the cornerstone of what we do. It is comprised of four values that set the standard for how everyone at FNZ interacts with each other, with our customers, and with all our diverse stakeholders around the world.

  1. Customer obsessed for the long-term.
  2. Think big and make an impact.
  3. Act now and own it all the way.
  4. Challenge, commit, and win together.

Read more about The FNZ Way and our values:www.fnz.com/culture

Opportunities

  1. Right from day one, you will work alongside exceptional, multicultural teams - experts in their respective fields - who will inspire and challenge you to make your greatest impact.
  2. Be part of a highly successful, rapidly growing, global business that is leading the delivery of financial services via cloud computing and partners with some of the world’s largest companies.
  3. Working in a flexible and agile way that meets the needs of the business and personal circumstances.
  4. Remuneration, significant financial rewards, and career advancement is based on individual contribution and business impact rather than tenure or seniority.
  5. We provide global career opportunities for our best employees at any of our offices in the UK, EU, US, Canada, South Africa, and APAC.

Commitment to Equal Opportunities

At FNZ, we recognise that diversity, equity, and inclusion are important factors contributing to our success. We embrace the unique perspective and capabilities of our current and future employees, which will help us continue to drive innovation and achieve our business goals. Recruitment decisions at FNZ are made in a non-discriminatory manner without regard to gender, ethnicity/race, faith, age, nationality, gender identity, sexual orientation, marital status, socio-economic background, disability, or military veteran status where all applicants and employees are valued and respected.

In addition, we want to ensure accessibility needs are well supported; if you require specific support please advise us.

About FNZ

FNZ is committed to opening up wealth so that everyone, everywhere can invest in their future on their terms. We know the foundation to do that already exists in the wealth management industry, but complexity holds firms back.

We created wealth’s growth platform to help. We provide a global, end-to-end wealth management platform that integrates modern technology with business and investment operations. All in a regulated financial institution.

We partner with over 650 financial institutions and 12,000 wealth managers, with US$1.5 trillion in assets under administration (AUA).

Together with our customers, we help over 20 million people from all wealth segments to invest in their future.

#J-18808-Ljbffr

Related Jobs

View all jobs

Incident Manager

Senior Information Security Analyst ( Hybrid / Leeds )

InfoSec Manager

Security Engineer, AWS Managed Services, AWS Managed Services

Incident Response Manager

Incident Response Manager

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Tips for Staying Inspired: How Cyber Security Pros Fuel Creativity and Innovation

Cyber security professionals face a rapidly changing digital landscape, where new threats emerge almost daily and the stakes—protecting critical data, safeguarding personal privacy, and defending entire infrastructures—could not be higher. It’s easy to be consumed by vulnerability scans, incident response workflows, and endless compliance checks. Yet, thriving in this high-pressure environment demands more than just technical know-how. It also requires creativity and innovation, which enable you to stay one step ahead of potential attackers. So how do cyber security experts remain inspired and agile, even when the challenges can feel relentless? Below, we’ll explore ten actionable strategies to help security analysts, threat hunters, penetration testers, and security engineers maintain fresh perspectives and keep innovating. If you’re looking to sharpen your problem-solving skills and rediscover the spark that drew you to cyber security in the first place, these tips can guide you toward a more fulfilling and impactful career.

Top 10 Cyber Security Career Myths Debunked: Key Facts for Aspiring Professionals

In a hyper-connected world, cyber security is no longer an afterthought—it’s a core component of modern business, government, and everyday life. From stopping ransomware attacks to safeguarding personal data, cyber security professionals shoulder a vital responsibility: keeping digital systems, networks, and data safe. Unsurprisingly, the demand for skilled cyber security talent continues to surge, offering robust and often lucrative career paths. Yet, despite the industry’s prominence, myths and misconceptions about cyber security careers abound. Is it really just about hacking? Do you need to be a superhuman coder with years of experience? Or is cyber security just a niche field, reserved for tech giants? At CyberSecurityJobs.tech, we see firsthand how these myths deter capable individuals from entering or advancing in one of the most dynamic fields in tech. This article aims to bust the top 10 cyber security career myths—providing clear, evidence-based insights into what it really takes to thrive in this ever-evolving domain. Whether you’re a recent graduate exploring the field, a mid-career professional seeking a pivot, or simply curious about the prospects, read on to discover the true breadth and promise of cyber security careers.

Global vs. Local: Comparing the UK Cyber Security Job Market to International Landscapes

Understanding opportunities, salaries, and work culture in cyber security across the UK, the US, Europe, and Asia Cyber security has rapidly ascended from a back-office concern to a strategic priority for every industry. As data breaches, ransomware, and nation-state attacks increase in frequency and sophistication, organisations worldwide are racing to fortify their digital defences. This ongoing surge in cyber threats fuels an unprecedented demand for skilled security professionals—ranging from penetration testers and threat intelligence analysts to cloud security architects and CISOs. In this article, we’ll explore how the UK cyber security job market compares to major international hubs in the United States, Europe, and Asia. We’ll discuss job opportunities, salary bands, work culture, and provide guidance for those who might be contemplating remote or overseas positions. By understanding the nuances of each region’s cyber security ecosystem, you can make a more informed decision about where and how to advance your career in this high-impact, fast-evolving sector. Whether you’re a seasoned expert with years of experience or a career-changer eager to break into cyber security, this overview will help you navigate the global landscape. By the end, you’ll have a clearer perspective on each region’s advantages and challenges—along with practical insights for seizing the best opportunities in a field that has become mission-critical for every modern organisation.