Senior Incident Responder

6 months ago


London, United Kingdom LSEG (London Stock Exchange Group) Full time

Role Purpose

The Senior Incident Response role is part of a global Incident Response team that sits within the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and enhancing the defensive capabilities of the GSOC.

LSEG GSOC is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response.

Key responsibilities
- Serve as a focal technical lead on cyber security events and incidents.
- Provide technical, hands-on incident investigation and support and serve as a main point of contact with management.
- Conduct complex digital forensics and advanced malware analysis investigations.
- Facilitate, document and manage root cause analysis and post-incident review process, including tracking all action items and lessons learned through to implementation.
- Preserve, harvest, and analyse data from computer systems including desktops, servers (virtual/physical) and appliances.
- Handle the chain of custody for all evidence collected during incidents, security, and forensic investigations.
- Build and improve defensive capabilities using monitoring technologies including SIEM and EDR.
- Perform proactive threat hunting and threat modelling to identify cyber threats.

Impact

This role has impact across all parts of the business, as it is responsible for ensuring that cyber-attacks impacting LSEG are appropriately responded to. Impacts include financial, economic, regulatory, customer and brand.

The Global Security Operations Centre (GSOC) where this role sits has responsibility for defending the entire group against cyber-attacks, parts of which are defined by different nations governments as Critical National Infrastructure (CNI).

The role is key to addressing regulatory concerns for all our regulated entities related to cyber security and cyber resilience.

Technical / job functional knowledge
- Experience performing complex digital forensic and incident response investigations.
- Deep knowledge of common operating systems (e.g. macOS, Windows, Unix, Linux) and their associated file systems.
- Proficient with industry-standard incident response toolsets such as EnCase, X-Ways, FTK and Volatility.
- Knowledge of cloud technologies and cloud infrastructures such as AWS, GCP, Azure, O365.
- Experience with conducting log analysis across different components of a typical organisation estate (e.g. OS, network, cloud).
- Deep understanding of advanced cyber adversary tools, techniques and procedures.
- Good understanding of Security Operations Centre (SOC) practices, processes and procedures.
- Good understanding of incident response processes and procedures, including common frameworks (e.g. NIST, SANS).
- Automating and refining incident response procedures/playbooks to improve SOC efficiencies.
- Policies, standards and security frameworks, NIST, CIS.

Business and sector expertise

Must have extensive experience of working in incident response such as within SOCs, digital forensics, or equivalent roles.

Preferred experience and knowledge of cyber security in global financial services and/or regulated environments.

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any othe



  • London, Greater London, United Kingdom Incident Full time

    We are seeking a talented Software Development Engineer to join our team at Incident, an incident management platform that helps companies respond to and learn from incidents. With a strong focus on customer satisfaction and product impact, this role involves taking end-to-end ownership of features from initial design and planning through to implementation,...


  • London, United Kingdom Financial Conduct Authority Full time

    **Salary**: National ranging from £49,700 to £61,400 and London from £53,300 to £68,300 Interested in joining a team that is pivotal in protecting consumers and UK financial markets against cyber-crime? The team/department The Cyber and Information Resilience (C&IR) department is responsible for the protection of the FCA’s systems and data,...


  • London, United Kingdom Incident Full time €110,000 - €130,000

    io is an incident management platform that helps companies when things go wrong. Whether they're site outages, data breaches, or functionality issues, incidents happen literally all the time. When they do, we help get the right people in the room, we run and communicate how you're responding, and we give you a suite of tools and insights to learn and...


  • City of London, United Kingdom Fruition IT Full time

    We are looking for an experienced Cloud Security Incident Responder to join our team at Fruition IT in the UK. The estimated annual salary for this position is £60,000 - £80,000, based on qualifications and experience.In this role, you will be responsible for providing first-response to security incidents, developing and maintaining security policies and...


  • London, Greater London, United Kingdom Incident Full time

    About IncidentIncident is an incident management platform designed to help companies navigate unexpected challenges. With a focus on delivering exceptional customer experiences, our team works tirelessly to provide innovative solutions and support.Salary InformationThe estimated salary for this role is $60,000-$80,000 per year, based on industry standards...

  • Incident Responder

    6 months ago


    London, United Kingdom BAE Systems Full time

    **Location(s): UK, Europe & Africa : UK : London || UK, Europe & Africa : UK : Gloucester || UK, Europe & Africa : UK : Great Baddow || UK, Europe & Africa : UK : Guildford || UK, Europe & Africa : UK : Leeds || UK, Europe & Africa : UK : London-CS || UK, Europe & Africa : UK : Manchester || UK, Europe & Africa : UK : NR- London || UK, Europe & Africa : UK :...


  • London, Greater London, United Kingdom Apple Full time

    At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. We're a diverse collection of thinkers and doers, continually reimagining our products, systems, and practices to help people do what they love in new ways.DescriptionWe're seeking an exceptional Senior Security Incident Response Engineer to...


  • London, Greater London, United Kingdom Sportradar Full time

    Job OverviewSportradar is a leading sports data and technology company, seeking an experienced Senior Incident Response Strategist to join our Security Operations Center in London.Role DescriptionThis senior role requires a highly skilled professional with expertise in proactive threat hunting and incident response. The successful candidate will serve as a...


  • London, Greater London, United Kingdom Fisher Investments Full time

    As a Senior Information Security Response Specialist at Fisher Investments Europe, you will play a crucial role in shaping our cybersecurity strategy. This position requires a deep understanding of IT security and compliance trends, as well as strong leadership skills to drive innovation in security solutions.The Day-to-Day:You will monitor and respond to...


  • London, United Kingdom Apple Full time

    Summary Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We're a diverse collection of thinkers and doers, continually reimagining our products, systems, and...


  • London, Greater London, United Kingdom Apple Inc. Full time

    About the RoleWe are seeking an exceptional Senior Security Incident Response Engineer to join our Information Security Response Organization. The successful candidate will possess a proven technical background, relevant Information Security experience with a strong focus in the Incident Response lifecycle.Key ResponsibilitiesInvestigate and respond to...


  • London, United Kingdom Apple Inc. Full time

    AIS - Security Incident Response Engineer - Incident Coordination Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and...

  • Incident Manager

    1 month ago


    London, United Kingdom Regal Cloud Full time

    Senior Incident Manager Location: LondonRole Overview: As a Senior Incident Manager, you will work within a technical team to manage complex infrastructure environments, ensuring the swift and effective resolution of major incidents. You will play a key role in global coordination, analysing service collisions, and monitoring the execution of changes until...

  • Incident Manager

    4 weeks ago


    London, United Kingdom Regal Cloud Full time

    Senior Incident Manager Location: London Role Overview: As a Senior Incident Manager, you will work within a technical team to manage complex infrastructure environments, ensuring the swift and effective resolution of major incidents. You will play a key role in global coordination, analysing service collisions, and monitoring the execution of changes...

  • Incident Manager

    4 weeks ago


    London, United Kingdom Regal Cloud Full time

    Senior Incident Manager Location: London Role Overview: As a Senior Incident Manager, you will work within a technical team to manage complex infrastructure environments, ensuring the swift and effective resolution of major incidents. You will play a key role in global coordination, analysing service collisions, and monitoring the execution of...


  • London, United Kingdom Deloitte LLP Full time

    Job description Connect to your Industry Cyber Risk & Security. Everybody's talking about it. Every major corporation is concerned by it. The Government is investing £1.9 billion in tackling it. We're shaping strategies and transforming technology to minimise it and we need you to join us. You'll build strong relationships within a Cyber practice with over...


  • London, Greater London, United Kingdom Encrytpedge Labs Limited Full time

    Incident Response RoleWe are seeking a talented Incident Response Specialist to join our team at EncryptEdge Labs Limited. As part of this role, you will have the opportunity to develop your skills in incident response and defensive security.The Cybersecurity Analyst Internship Program is an eight-week training program designed to equip participants with the...

  • Incident Lead

    6 months ago


    London, United Kingdom FIS Global Full time

    **Position Type**: Full time **Type Of Hire**: Experienced (relevant combo of work and education) **Education Desired**: Bachelor's Degree Are you ready to unleash your full potential? We’re looking for people who are passionate about payments to chart Worldpay’s path to being the largest and most-loved payments company in the world. **About the...


  • London, Greater London, United Kingdom Tesco Full time

    About the Job:As a Senior DFIR Specialist at Tesco, you'll be responsible for leading the response in cybersecurity incidents, ensuring a coordinated approach to ensure a comprehensive and efficient response. You'll collaborate closely with other cybersecurity teams, including Security Operations, Threat Intelligence, Automation and Detection Engineering, to...


  • London, United Kingdom Union Group Services Ltd Full time

    **JOB SUMMARY** Attending a wide variety of events working as a pair, part of a larger team. You will also be responding to emergency, urgent and routine calls Will be responsible for the assessment, care, treatment, referral and transport of patients and their carers/relatives in emergency and non-emergency situations from the Union Medical Deployments...