Incident Response Manager

6 days ago


London, Greater London, United Kingdom Control Risks Full time
About the Role

We are seeking a highly skilled Cyber Response Consultant to join our team at Control Risks. As a key member of our Cyber Response team, you will be responsible for managing and delivering threat hunting solutions to our clients.

Key Responsibilities
  • Threat Hunting
    • Lead threat hunting engagements to evaluate an attacker's spread through a system and network, anticipating and thwarting further attacker activity.
    • Develop and enhance our Threat Hunting Standard Operating Procedures to ensure they reflect client requirements and align with our Cyber Threat Intelligence team.
    • Work with our Cyber Response Technology and Automation lead to implement the tooling required to effectively threat hunt.
    • Implement a quality assurance program to ensure threat hunting engagements proactively identify and mitigate risk.
    • Leverage Control Risks and external data sources to research threats, vulnerabilities, and intelligence on various attackers and attack techniques, to form hunting playbooks and mitigation steps.
    • Work closely with our Cyber Threat Intelligence team and share threat hunting playbooks with the incident response team.
  • Incident Response
    • Oversee host and network-based investigations, leveraging the Digital Forensics Incident Response (DFIR) team to deliver the work.
    • Own the lifecycle of a cyber incident, including identification, containment, eradication, and recovery.
    • Threat hunt using EDR Tooling to evaluate an attacker's spread through a system and network, anticipating and thwarting further attacker activity.
    • Perform live compromise assessments for organizations who suspect a compromise.
    • Detect and hunt unknown live, dormant, and custom malware in memory across multiple systems in an enterprise environment.
    • Demonstrate a deep understanding of both existing and emerging threat actors, as well as experience identifying rapidly changing tools, tactics, and procedures of attackers.
    • Work closely with the Cyber Threat Intelligence team to identify where they could benefit from the technical information acquired during Cyber Response cases. Also, identify and implement where threat intelligence can be leveraged through tooling and automation.
    • Advise on the safe technical recovery of an organization's IT systems, balancing the need to understand what has happened but speed up recovery.
  • Client Management
    • Support client relationship management, facilitating the introduction and provision of additional technical Control Risks services.
    • Work closely with Cyber Response Management to ensure a cohesive go-to-market approach.
    • Ensure tooling and automation developed is customer-friendly to deploy and use. Be responsible for any customer queries that arise from the use of the technology and automation.
  • Reporting
    • Provide situation reports and other significant case-related material to the client and the Director of Cyber Response.
    • Provide documentation to the relevant consultants in sufficient time to allow review and feedback, before submitting to a client.
    • Report on the performance of the Technical Cyber Response work and forecast technical and resource requirements in the near and long term.
    • Ensure the output of tooling and automation is easily readable and presentable both during cases in situation reports but also within formal end-of-case reports.
  • Supporting the Growth of the Cyber Response Practice
    • Refine Control Risks' cyber response methodologies and approaches, and tailor the approach in changing market conditions.
    • This role has a requirement to be on call.
    • Identify potential new areas of growth and opportunity.
    Requirements
    • Proven experience leading cyber response cases.
    • Technical degree or demonstrated knowledge of common networks, software, and hardware used in business environments.
    • Experience in conducting log analysis and digital forensics following a cyber incident.
    • Proven experience in responding to cyber attacks and information security-related advisory.
    • Demonstrable experience of operating within a commercial environment.
    • Track record of developing consultative relationships with clients.
    • Fluent in English (written and spoken).
    • Excellent presentation skills.
    • Excellent analytical skills.


  • London, Greater London, United Kingdom DGH Recruitment Full time

    About the RoleDGH Recruitment is seeking a highly skilled Incident Response Manager to join our team on a permanent basis.Job SummaryThe Incident Response Manager will be responsible for the oversight and management of our Incident and Problem Management processes and directly manages all in-scope Major Incidents, working closely with our technical leads.Key...


  • London, Greater London, United Kingdom DGH Recruitment Full time

    About the RoleDGH Recruitment is seeking a highly skilled Incident Response Manager to join our team on a permanent basis.Job SummaryThe Incident Response Manager will be responsible for the oversight and management of our Incident and Problem Management processes and directly manages all in-scope Major Incidents, working closely with our technical leads.Key...


  • London, Greater London, United Kingdom Dgh Recruitment Full time

    About the RoleWe are seeking a highly skilled Incident Response Manager to join our team at Dgh Recruitment. As a key member of our organization, you will be responsible for the oversight and management of our Incident and Problem Management processes.Key ResponsibilitiesDirectly manage all in-scope Major Incidents, working closely with cross-functional...


  • London, Greater London, United Kingdom Dgh Recruitment Full time

    About the RoleWe are seeking a highly skilled Incident Response Manager to join our team at Dgh Recruitment. As a key member of our organization, you will be responsible for the oversight and management of our Incident and Problem Management processes.Key ResponsibilitiesDirectly manage all in-scope Major Incidents, working closely with cross-functional...


  • London, Greater London, United Kingdom DGH Recruitment Full time

    Job Summary:The role of the Major Incident Manager / Incident Manager is a critical position within our organization, responsible for overseeing and managing our Incident and Problem Management processes.Key Responsibilities:Manage all in-scope Major Incidents, working closely with technical leads to ensure timely resolution and minimize business...


  • London, Greater London, United Kingdom DGH Recruitment Full time

    Job Summary:The role of the Major Incident Manager / Incident Manager is a critical position within our organization, responsible for overseeing and managing our Incident and Problem Management processes.Key Responsibilities:Manage all in-scope Major Incidents, working closely with technical leads to ensure timely resolution and minimize business...


  • London, Greater London, United Kingdom Dgh Recruitment Full time

    Job Summary:The role of the Major Incident Manager / Incident Manager is a critical position within our organization, responsible for overseeing and managing our Incident and Problem Management processes. This includes directly managing all in-scope Major Incidents, working closely with our technical leads to ensure seamless operations.Key...


  • London, Greater London, United Kingdom Dgh Recruitment Full time

    Job Summary:The role of the Major Incident Manager / Incident Manager is a critical position within our organization, responsible for overseeing and managing our Incident and Problem Management processes. This includes directly managing all in-scope Major Incidents, working closely with our technical leads to ensure seamless operations.Key...


  • London, Greater London, United Kingdom Block Full time

    Job OverviewThe TechOps team at Block is dedicated to incident and service management within the Engineering discipline. Operating globally across three time zones, TechOps provides essential service coverage and manages high-severity production incidents across various Block products, including Clearpay, Afterpay, CashApp, and Square. Our incident managers...


  • London, Greater London, United Kingdom Starling Bank Full time

    Welcome to Starling Bank, where we are redefining banking through innovative technology that empowers individuals to manage their finances effectively. As a fully licensed UK bank, we embody the agility and creativity of a tech company, striving to make banking fairer and more accessible for everyone.About the Position:We are excited to introduce a new...


  • London, Greater London, United Kingdom Starling Bank Full time

    Welcome to Starling Bank, where we are redefining banking through innovative technology. As a fully licensed UK bank, we combine the agility of a tech company with the reliability of traditional banking. Our mission is to empower individuals to manage their finances more effectively and transparently.Role Overview:We are seeking an Incident Response...


  • London, Greater London, United Kingdom BCT Resourcing Full time

    Job Summary:BCT Resourcing is seeking a highly skilled Cybersecurity Incident Response Manager to join our team. As a key member of our cybersecurity practice, you will be responsible for delivering cyber-related engagements with our clients, working collaboratively with colleagues and clients to identify and respond to security incidents.Key...


  • London, Greater London, United Kingdom BCT Resourcing Full time

    Job Summary:BCT Resourcing is seeking a highly skilled Cybersecurity Incident Response Manager to join our team. As a key member of our cybersecurity practice, you will be responsible for delivering cyber-related engagements with our clients, working collaboratively with colleagues and clients to identify and respond to security incidents.Key...


  • London, Greater London, United Kingdom Starling Bank Full time

    About Starling Bank:At Starling, we have redefined banking by leveraging technology to empower individuals in managing their finances effectively. As a fully licensed UK bank, we embody the dynamic spirit of a tech-driven organization, aiming to provide a fairer and more accessible banking experience for all.Role Overview:We are introducing a pivotal...


  • London, Greater London, United Kingdom Oliver James Associates Ltd. Full time

    Oliver James Associates Ltd. is partnering with a global cyber security business to hire an Incident & Response Manager to be based in a hybrid work environment. The role offers a competitive basic salary of up to c£70,000, excluding bonuses and benefits, as well as first-class training, development, research, and clear progression opportunities.This...


  • London, Greater London, United Kingdom Oliver James Associates Ltd. Full time

    Oliver James Associates Ltd. is partnering with a global cyber security business to hire an Incident & Response Manager to be based in a hybrid work environment. The role offers a competitive basic salary of up to c£70,000, excluding bonuses and benefits, as well as first-class training, development, research, and clear progression opportunities.This...


  • London, Greater London, United Kingdom Block Full time

    Job OverviewThe TechOps team at Block is a specialized group dedicated to incident and service management within the Engineering domain. Operating globally across three time zones, TechOps plays a crucial role in ensuring service continuity and managing high-severity production incidents across various Block products, including Clearpay, Afterpay, CashApp,...


  • London, Greater London, United Kingdom Starling Bank Full time

    About Starling Bank:Starling Bank is a pioneering financial institution that leverages technology to revolutionize how individuals manage their finances. As a fully licensed bank in the UK, we embody the agility and innovation of a tech company, striving to make banking fairer and more accessible for everyone.Role Overview:We are seeking an Incident Response...


  • London, Greater London, United Kingdom Marsh McLennan Full time

    Marsh Advisory's Consulting Solutions provides you with the insights, deep technical expertise, and global resources needed to create and implement risk management strategies that help you move beyond cost savings to building resilienceR_ Senior Managing Consultant - Incident Response AdvisoryWhat can you expect?Marsh takes an analytical, data-driven, and...


  • London, Greater London, United Kingdom Block Full time

    Job OverviewThe TechOps team at Block is a specialized group dedicated to incident and service management within the Engineering sector. Operating globally across three time zones, this team is crucial for providing essential service coverage and managing high-severity production incidents across various Block products, including Clearpay, Afterpay, CashApp,...