Cyber Incident Response Lead

6 days ago


Greater London, United Kingdom Trades Workforce Solutions Full time

OverviewCyber Incident Response Lead (Contract)6-month initial contract | January start | Inside IR35 | UK-wide (travel to London 1 day/month)Must be SC eligible, 5+ years UK residencyWe are recruiting for a Cyber Incident Response Lead to support a major organisation with their incident response capability. This is a hands-on technical role for someone who thrives in fast-moving investigations, can lead response activities end-to-end, and is confident working across complex environments.You can be based anywhere in the UK, with one day per month required in London. Occasional travel to client sites may be required (rare). Key ResponsibilitiesLead and conduct full incident response investigations: triage, containment, eradication and recovery.Perform host forensics across Windows, Linux, macOS and cloud workloads.Carry out network forensics using tools such as Wireshark, analysing packet flows, IDS alerts and lateral movement indicators.Use EDR platforms such as CrowdStrike, Microsoft Defender, Velociraptor (or similar) for threat hunting, evidence collection and response actions.Perform forensic analysis using tools like X-Ways, Autopsy/FTK, and other digital forensics suites.Use sandboxing and malware detonation environments to analyse suspicious files and behaviours.Produce clear incident reports, contribute to lessons-learned reviews and improve IR playbooks.Support proactive cyber defence activities such as table-top exercises, threat simulations, and readiness assessments. What You’ll BringStrong background in Incident Response, Digital Forensics, Threat Hunting or SOC L3 roles.Deep technical understanding of modern attacker TTPs and the MITRE ATT&CK framework.Experience analysing evidence across endpoint, network and cloud environments.Familiarity with SIEM/IDS/IPS tooling and scripting/automation to accelerate investigations.Excellent communication and ability to work calmly in high-pressure situations.Relevant certs desirable (not essential): GCFE, GCFA, GREM, CISSP, CISM, etc.SC eligible — must have lived in the UK for the last 5 years. #J-18808-Ljbffr



  • Greater London, United Kingdom Deloitte LLP Full time

    A leading consultancy firm in the UK is seeking a Technical Incident Responder to join their Cyber Incident Response team. In this role, you will lead teams, engage with clients, and tackle advanced cyber threats, ensuring security resilience. The ideal candidate will have a strong background in incident response and forensics, with industry qualifications...


  • Greater London, United Kingdom Live Nation Full time

    A leading entertainment company in Greater London is seeking an Incident Response Lead to manage cyber security events effectively. The role requires exceptional communication and organizational skills while coordinating with technical teams during incidents. Candidates should possess a Bachelor's degree in Computer Science or related fields, with at least 5...


  • Greater London, United Kingdom Trades Workforce Solutions Full time

    Cyber Incident Response (Senior Consultant & Manager Levels) Are you passionate about Cyber Security, Digital Forensics, and Incident Response? We’re looking for Cyber Incident Response Consultants / Managers to join a growing global cyber practice, working across major enterprise clients and government‑grade environments. This is a hands‑on,...


  • Greater London, United Kingdom Live Nation Full time

    Job Summary : The Incident Response Lead is responsible for driving the containment and eradication of threats during cyber security events and following through with supporting remediation efforts post events within a fast-paced and dynamic environment in effort to restore normal secure service delivery. This individual will act as a liaison between...


  • Greater London, United Kingdom Cyber Security training courses Full time

    Location(s): UK, Europe & Africa : UK : Frimley || UK, Europe & Africa : UK : London || UK, Europe & Africa : UK : Manchester BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces...

  • Senior Cyber Defence

    2 weeks ago


    Greater London, United Kingdom Insight Investment Group Full time

    A leading asset management firm in Greater London is seeking a Senior Cyber Defence Operations Analyst to lead incident response and vulnerability management efforts. The role includes maintaining alerts in the monitoring solution, coordinating with stakeholders for compliance, and enhancing operational security processes. Candidates should have a strong...


  • London, Greater London, United Kingdom Alexander Associates Technical Recruitment Full time £125,000 per year

    Lead Cyber Incident Response ManagerPermanent opportunityRemote (occasional travel to customer sites)Consultancy work / External client facingPaying up to £125,000 per annum (dependent on experience)*Please note that this role requires NPPV3 clearance in addition to National Security Clearance (SC).Job DescriptionThis is working for a leading UK provider of...


  • Greater London, United Kingdom S-RM Full time

    A global intelligence consultancy in Greater London is seeking a Cyber Advisory Associate to lead cyber resilience consultancy engagements and incident response exercises. The ideal candidate has experience in cyber incident response and project management. This role offers hybrid working options and encourages the development of junior colleagues while...


  • City of London, Greater London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response) Location: UK remote Start: ASAP Duration: 6 months (inside IR35) Overall purpose the role Our CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as...


  • Greater London, United Kingdom Cyber Security training courses Full time

    A leading cybersecurity firm is seeking a Junior Incident Response Specialist. This role involves home-based work with regular travel to various UK locations. The successful candidate will investigate cyber-attacks and perform forensic analysis on multiple operating systems. Candidates should possess knowledge of forensic tools and a keen understanding of...