Incident Response Consultant

3 days ago


City Of London, United Kingdom CFC Full time

Incident Response ConsultantDepartment: Incident ResponseEmployment Type: Permanent - Full TimeLocation: UK - LondonReporting To: Connor RowdenAt CFC Response you will be part of a unique collaborative team of incident responders, business resumption engineers, and cybersecurity specialists whose sole responsibility it is to protect, recover, and mature the more than 80,000 CFC Underwriting insurance policyholders. You will be joining a group of technical experts who tackle cyber threats day‑in‑day‑out, at scale, for a myriad of clients ranging from small businesses with minimal in‑house capabilities, right through to large complex corporations with a full stack. You will never be bored, you will always be learning, and you will have fun doing it.This is a technical incident response role whose primary focus will be on data scoping and collection, investigation of the root cause, scope and data impact of a cyber incident and the verbal and written reporting of findings to respective insured/clients. As part of this undertaking, you will be joining a team of leading IR industry professionals who are responding to complex cyber incidents, at scale and across the globe. Furthermore, you will be supported by a wider team of experts.Key ResponsibilitiesYou’ll lead the charge in collecting and analysing data, uncovering root causes, and identifying the scope of data exposure. Your insights will directly shape containment and eradication strategies for clients, and you’ll have the opportunity to present your findings with confidence, answering technical questions and guiding stakeholders through the incident lifecycle. From authoring detailed investigation reports aligned to the MITRE ATT&CK framework to compiling Indicators of Compromise, your work will be critical in helping clients understand and recover from complex threats.Beyond technical excellence, this role is about building trust and delivering exceptional service. You’ll collaborate closely with clients, policyholders, brokers, underwriters, and capacity providers‑fostering strong relationships and championing the values that define CFC’s culture. Whether you’re analysing phishing emails and bypassed security controls or supporting the wider incident response team, your contributions will reflect integrity, accuracy, and quality. If you’re passionate about cybersecurity and thrive in a fast‑paced, client‑focused environment, this is your chance to be part of something truly meaningful.Skills, Knowledge and ExpertiseDemonstrable understanding of common cyber‑attacks.Programming experience in Python, PowerShell, BASH or similar scripting languages.Working knowledge of the Microsoft 365 platform.Laser focus on customer service and product excellence.Demonstratable investigational skills.Core ValuesLove what you doWe show up each day ready to take on the world. Our passion and intensity set us apart and makes the difference to our colleagues, customers, brokers and carriers.Challenge everythingWe’re never afraid to question the way that things are done and we constantly challenge ourselves and others to makes things better.Have fun, be goodInsurance is a serious business, but we don’t take ourselves too seriously. We make it fun to work at CFC, we welcome all viewpoints, and we treat everyone how we would expect to be treated. #J-18808-Ljbffr



  • City Of London, United Kingdom Palo Alto Networks Full time

    A leading cybersecurity company is seeking a Principal Consultant to oversee incident response engagements. The role involves direct client interactions, managing forensic investigations, and mentoring team members. Candidates should have extensive experience in incident response and digital forensics, along with strong leadership skills. A bachelor's degree...


  • City Of London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response)Location: UK remoteStart: ASAPDuration: 6 months (inside IR35) Overall purpose the roleOur CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as implementing...


  • City Of London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response)Location: UK remoteStart: ASAPDuration: 6 months (inside IR35) Overall purpose the roleOur CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as implementing...


  • City of London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response)Location: UK remoteStart: ASAPDuration: 6 months (inside IR35) Overall purpose the roleOur CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as implementing...


  • london (city of london), United Kingdom Iceberg Full time

    We are representing a consultancy that are a leader in the Cyber Security and Incident response space. If you have experience leading the legal aspects of Data Breach case this could be the role for you. This role is open to any of the multiple offices my client has across the UK. The client is looking for a Principal Associate to support and shape the...


  • City of London, Greater London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response) Location: UK remote Start: ASAP Duration: 6 months (inside IR35) Overall purpose the role Our CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as...


  • City Of London, United Kingdom Livenation Full time

    The Incident Response Lead is responsible for driving the containment and eradication of threats during cyber security events and following through with supporting remediation efforts post events within a fast-paced and dynamic environment in effort to restore normal secure service delivery. This individual will act as a liaison between technical teams and...

  • Incident Response

    6 days ago


    London, Greater London, United Kingdom NETbuilder Full time £120,000 - £180,000 per year

    LondonPermanentNETbuilderis a leading provider of innovative technology solutions, helping clients achieve operational excellence through our expertise in observability and cybersecurity. We are committed to fostering a collaborative environment where professionals can thrive and make a significant impact.We're recruiting for an experienced Incident Response...


  • City Of London, United Kingdom Ransomware Recovery Full time

    CYPFER is a leading first-responder cybersecurity organization enabling clients to swiftly and effectively return to business following a cyber-attack. As a global market leader in ransomware post-breach remediation and cyber-attack first response, we consistently deliver results that exceed market standards for handling cyber-extortion and ransomware...


  • London, Greater London, United Kingdom Solis Full time £40,000 - £80,000 per year

    At CFC Response you will be part of a unique collaborative team of incident responders, business resumption engineers, and cybersecurity specialists whose sole responsibility it is to protect, recover, and mature the more than 80,000 CFC Underwriting insurance policyholders. You will be joining a group of technical experts who tackle cyber threats...