Head of Cyber Incident Response

3 weeks ago


Solihull B QJ United Kingdom Serco Limited Full time

Head of Cyber Incident Response
Solihull- hybrid
Full Time, Permanent

Between £45,000 to £58,000 per annum (depending on experience)

Here at Serco, we are seeking an experienced Head of Cyber Incident Response to be responsible for Serco UK & Europe Incident response activities. This role will be responsible for the process, the integrations and engagements across Serco Worldwide. It will work closely with the Serco regions (Asia Pacific, Middle East and North America). You will be responsible for working closely with our outsourced partners and with the Threat intelligence and SOC teams to ensure effective management and communications.


As part of this you'll:

  • Understand and develop the Incident Response processes and implementation. Including supporting SOC and wider business around its mechanisms and logic
  • Manage the various available resources (Internal and external) to deliver the quality of Incident Response mature services
  • Develop/manage and advance Incident Response Playbooks, perform proactive threat hunts based on threat intelligence gathered
  • Guide delivery of playbooks, automate routine processes, create or enhance detection and response capabilities
  • Understand the principles analysis of network traffic and output from various network-centric technologies driving good behaviours and skills in others
  • Be able to support technical analysis and assessments of security-related incidents, including malware analysis, packet-level analysis, and system-level forensic analysis.


What you'll need to do the role:

  • Previous experience handling cybersecurity related incidents
  • Technical proficiency in a minimum of at least one of the following domains: Malware Analysis, Digital Forensics, Log Analysis, Red Teaming/ Penetration Testing, or related domains
  • Understanding of networking protocols, traffic analysis, and network security tools (e.g., WAF , NDR)
  • Strong Linux fundamentals, experience operating and investigating incidents in *NIX environments
  • Familiarity performing log analysis using SIEM tools (e.g., Microsoft Sentinel)
  • Experience with scripting languages (e.g., Python, Go and PowerShell) for automation and analysis
  • Excellent communication (verbal and written), teamwork and collaboration skills
  • Ability to communicate technical concepts to a broad range of technical and non-technical staff

Candidates should have one of the following:

  • Bachelor's degree in Cybersecurity, Computer Science, or a technical field (or equivalent work experience in related field).
  • Professional certifications in Cybersecurity (OSCP, GCIH, GREM, GNFA or other relevant certifications).
  • Experience in working and investigating incidents in a global organisation.

Why Serco:

Meaningful and vital work: In this position, your work is vital to the business, in terms of decisions and growth. You will gain a world of opportunity working for a globally operating business delivering essential services across 5 vital sectors, personal growth, achievement and development won't be hard to find. You'll also work with great people. You'll find yourself working in a highly motivated, supportive environment where no two days are the same, with experienced colleagues who strive for excellence.

What we offer:

  • Flexible working considered
  • Pension - 6%
  • Employee Assistance Programme
  • Chance to contribute to innovation in the public services
  • A company passionate about diversity and inclusion
  • Serco Benefits

Apply

Please click on the apply button to be taken to our careers website

Serco is a Disability Confident Employer committed to employing and retaining people with disabilities. Disabled applicants who meet the minimum criteria for the job will be given the opportunity to demonstrate their abilities at an interview. For help with your application please contact

We see people first and foremost for their performance and potential. We are committed to building a diverse and inclusive organisation that supports the needs of all. As such we will make reasonable adjustments at interview through to employment for our candidates. We're a proud holder of the Silver Inclusive Employer Standard and we actively encourage applications from females, those with disabilities or from an ethnic minority background.



  • Solihull, United Kingdom Serco Plc Full time

    Solihull - hybrid Full Time, Permanent Between £45,000 to £58,000 per annum (depending on experience) Here at Serco, we are seeking an experienced Head of Cyber Incident Response to be responsible for Serco UK & Europe Incident response activities. This role will be responsible for the process, the integrations and engagements across Serco Worldwide. It...


  • United Kingdom Barclay Simpson Full time

    I’m working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. This role is varied, offering the incumbent an opportunity to conduct incident response and threat hunting engagements. Some of your responsibilities will be as follows: Work closely with...


  • United Kingdom Barclay Simpson Full time

    I’m working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. This role is varied, offering the incumbent an opportunity to conduct incident response and threat hunting engagements. Some of your responsibilities will be as follows: Work closely with...


  • United Kingdom Integrity360 Full time

    Location: Remote with travel to client/office site, UK Notes: You must be located in the UK and hold valid right to work. No sponsorship offered. Must be willing to undergo BPSS check. About Us Integrity360 is one of Europe’s leading cyber security specialists operating from office locations spread out across Europe, providing a comprehensive range...


  • United Kingdom Barclay Simpson Full time

    I’m working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. Working closely with the wider cyber function, including but not limited to threat intelligence and forensics to assist with investigations and improve the threat hunting service. ...


  • United Kingdom Cyber Crime Full time

    Senior Associate, Detection Engineer, Cyber Managed Services Kroll As the leading independent provider of risk and financial advisory solutions, Kroll leverages our unique insights, data and technology to help clients stay ahead of complex demands. Click for more details. View company page In a world of disruption and increasingly complex business...


  • United Kingdom Pen Test Partners Full time

    Pen Test Partners is an innovative and dynamic thinking organisation committed to providing a supportive environment, where our people can not only thrive but actively participate in shaping PTP’s culture and direction.With over 120 employees across pen testing, consultancy, digital forensics, sales and support functions, we pride ourselves in attracting...


  • United Kingdom Pen Test Partners Full time

    Pen Test Partners is an innovative and dynamic thinking organisation committed to providing a supportive environment, where our people can not only thrive but actively participate in shaping PTP’s culture and direction. With over 120 employees across pen testing, consultancy, digital forensics, sales and support functions, we pride ourselves in attracting...


  • United Kingdom Pen Test Partners Full time

    Pen Test Partners is an innovative and dynamic thinking organisation committed to providing a supportive environment, where our people can not only thrive but actively participate in shaping PTP’s culture and direction. With over 120 employees across pen testing, consultancy, digital forensics, sales and support functions, we pride ourselves in...


  • United Kingdom Pen Test Partners Full time

    Pen Test Partners is an innovative and dynamic thinking organisation committed to providing a supportive environment, where our people can not only thrive but actively participate in shaping PTP’s culture and direction.With over 120 employees across pen testing, consultancy, digital forensics, sales and support functions, we pride ourselves in attracting...


  • United Kingdom Pen Test Partners Full time

    Pen Test Partners is an innovative and dynamic thinking organisation committed to providing a supportive environment, where our people can not only thrive but actively participate in shaping PTP’s culture and direction. With over 120 employees across pen testing, consultancy, digital forensics, sales and support functions, we pride ourselves in...


  • United Kingdom Locke and McCloud Full time

    Role: Cyber Security Manager Location: Leeds Salary: £70,000+ Locke & McCloud are looking for an experienced Cyber Security Manager on behalf of a Financial Services company. This organisation are undergoing a digital transformation project and are seeking a Cyber Security Manager with analytical skills and confident leading a growing cyber security...


  • United Kingdom Citation Cyber Full time

    Company Description Citation Cyber is a cybersecurity company that provides accessible and dynamic services to help businesses protect their information and infrastructure from cyber attacks. We offer comprehensive support and expertise in securing data, assets, and intellectual property. This is a full-time remote role for a Penetration Tester. As a...


  • United Kingdom Citation Cyber Full time

    Company Description Citation Cyber is a cybersecurity company that provides accessible and dynamic services to help businesses protect their information and infrastructure from cyber attacks. We offer comprehensive support and expertise in securing data, assets, and intellectual property. This is a full-time remote role for a Penetration Tester. As a...


  • United Kingdom Burman Recruitment Full time

    I am currently working with a leading Higher Education Institution on the search for an experienced Cyber Security Analyst (Incident Response) on a 12-month contract working fully remote. EXPERIENCE IN THE PUBLIC SECTOR IS RECOMMENDED As a Cyber Security Analyst specialising in Incident Response, you will play a crucial role in investigating and mitigating a...


  • United Kingdom Burman Recruitment Full time

    I am currently working with a leading Higher Education Institution on the search for an experienced Cyber Security Analyst (Incident Response) on a 12-month contract working fully remote. EXPERIENCE IN THE PUBLIC SECTOR IS RECOMMENDED As a Cyber Security Analyst specialising in Incident Response, you will play a crucial role in investigating and...


  • United Kingdom Burman Recruitment Full time

    I am currently working with a leading Higher Education Institution on the search for an experienced Cyber Security Analyst (Incident Response) on a 12-month contract working fully remote. EXPERIENCE IN THE PUBLIC SECTOR IS RECOMMENDED As a Cyber Security Analyst specialising in Incident Response, you will play a crucial role in investigating and...


  • United Kingdom Burman Recruitment Full time

    I am currently working with a leading Higher Education Institution on the search for an experienced Cyber Security Analyst (Incident Response) on a 12-month contract working fully remote. EXPERIENCE IN THE PUBLIC SECTOR IS RECOMMENDED As a Cyber Security Analyst specialising in Incident Response, you will play a crucial role in investigating and mitigating a...


  • United Kingdom Burman Recruitment Full time

    I am currently working with a leading Higher Education Institution on the search for an experienced Cyber Security Analyst (Incident Response) on a 12-month contract working fully remote. EXPERIENCE IN THE PUBLIC SECTOR IS RECOMMENDED As a Cyber Security Analyst specialising in Incident Response, you will play a crucial role in investigating and...


  • United Kingdom Burman Recruitment Full time

    I am currently working with a leading Higher Education Institution on the search for an experienced Cyber Security Analyst (Incident Response) on a 12-month contract working fully remote. As a Cyber Security Analyst specialising in Incident Response, you will play a crucial role in investigating and mitigating a recent security breach within our university...