Lead for Incident Response and Blue Team Fully

11 hours ago


Manchester, United Kingdom NonStop Consulting Ltd Full time

**Overview** **Position - Service Lead for Incident Response and Blue Team** - My client are a security consultancy based in the UK. As an established boutique they perform technical security assessments for a diverse range of clients focusing on high street banks and financials within the UK and wider EU/US, and hold the top industryaccreditation's within CREST and NCSC for security assessment. - Under our Active Breach brand we also perform Adversary Simulation and Assumed Breach engagements for organisations with high security maturity and "Blue Teams" with numerous industry-leading defensive technologies and products. A key value-add for ourbusiness is providing insights into these technologies and improving their effectiveness. - They are looking for an industry-proven senior consultant who can formalise and deliver an Incident Response function which can support our Active Breach team. **This will cover all aspects of a client's requirements such as**: - Preparing an organisation's incident response policy, - Acting as the lead point of contact on incident investigations including stakeholder management, planning, decision-making and delivery. - Responsibilities In charge of overall quality for service area. Includes sampling reports, proposals, working in a supporting role across multiple jobs and providing feedback to directors - Developing and updating sales collateral, proposal material - Developing methodology, material and process for delivering work, responsible for curating new tools, techniques, results - Liaising with the sales team to attend meetings, provide technical and sales guidance and material for services - Responsible for updating and assisting with aspects of the hiring and on-boarding process - Directing or performing targeted research in the sector - Curating and updating internal wiki/knowledge bases with information **Essential** - My client are technically focused and as such we expect this to be a "hands-on" role, and not a purely management role. You will be expected to lead small and large-scale breach investigations for the client base and perform all technical levels of theinvestigation from stakeholder communication to technical forensics, supported by their technical team. - Pro-active approach to defining the business area and driving development of the above responsibilities - Understanding of common enterprise network architectures including Windows-based Domains, *nix infrastructures and management, network segmentation - Familiarity with common capabilities and resources of typical enterprises including default logging and common barriers to forensic assessment and how these may be overcome familiarity with common attacker MO - Ability to craft custom approaches to ingesting and correlating data and to challenge or enhance the Blue Team's capabilities - A range of soft-skills including client-facing pre-sales, stakeholder management, planning, decision-making - Desirable Low-level understanding of the Windows and *nix OS architecture Low-level forensics experience (malware analysis, host analysis) - In-depth understanding of the popular blue team products and capabilities including SIEMs, Splunk, EDR, IDS/IPS - Detailed knowledge of the Cyber Kill Chain and specifically the common post-exploitation steps of modern adversaries - Bachelor degree If this role sounds like something you would be interested in, please send your CV, ideally in Word format, via this site. If this role is not quite right for you but you would like to have a conversation about other roles, please search and connect with me, Cody Murphy, on LinkedIn.



  • Manchester, England, United Kingdom iO Associates Full time £125,000 - £150,000 per year

    Lead Incident Response Manager - Build It, Lead It, Own It£125,000 + bonus | Hybrid (Manchester-based) | Clear path to Technical DirectorWhen a cyber incident hits, you are the calm in the chaos.You take control, make the decisions, and guide clients through the storm.This is your opportunity to lead a fast-growing Incident Response function within a...

  • Senior Cyber Threat

    6 days ago


    Manchester, United Kingdom UK Home Office Full time

    A government agency is looking for a Cyber Security Response Manager to safeguard critical national infrastructure in Manchester. This role involves leading a team to manage cyber security incidents, utilizing threat intelligence, and ensuring an effective response to potential incidents. Candidates should have experience in Security Operations Centres,...


  • Manchester, United Kingdom Trades Workforce Solutions Full time

    A leading cybersecurity firm in the UK is seeking Cyber Incident Response Consultants/Managers to investigate advanced threats and deliver containment. Candidates should have proven experience in incident response and digital forensics, with strong knowledge of modern attack techniques. This hybrid role involves working with enterprise clients and offers...


  • Manchester, United Kingdom Greater Manchester Mental Health NHS Foundation Trust Full time

    The post holder will need to have good attention to detail, time management skills and a good knowledge and understanding of Microsoft Office Packages. The Incident Administrator will be responsible for the data quality checking, approval, monitoring of incidents and the preparation of investigation documentation surrounding incidents as required by the...

  • Incident Response

    1 week ago


    Manchester, United Kingdom IO Associates Full time

    Incident Response - Recovery SpecialistSalary: Up to £60,000 DOE Location: Manchester (with travel at short notice) Step into a role where your expertise makes an immediate and measurable impact.We're recruiting on behalf of a fast-growing cyber security organisation that specialises in incident response, recovery and digital forensics. This is a unique...

  • Incident Response

    1 week ago


    Manchester, United Kingdom INOVERSE GROUPE Full time

    Incident Response - Recovery Specialist - Manchester Join to apply for the Incident Response - Recovery Specialist - Manchester role at INOVERSE GROUPE Salary: Up to £60,000 DOE Location: Manchester (with travel at short notice) Step into a role where your expertise makes an immediate and measurable impact. Why This Role Stands Out You’ll be the person...

  • Incident Response

    6 days ago


    Manchester, United Kingdom iO Associates Full time

    Incident Response - Recovery Specialist - ManchesterSalary: Up to £60,000 DOELocation: Manchester (with travel at short notice)Step into a role where your expertise makes an immediate and measurable impact.We’re recruiting on behalf of a fast‑growing cyber security organisation that specialises in incident response, recovery and digital forensics. This...

  • Senior Manager

    1 week ago


    Manchester, United Kingdom Deloitte LLP Full time

    Cyber Risk & Security. Everybody’s talking about it. Every major corporation is concerned by it. The Government is investing £1.9 billion in tackling it. We’re shaping strategies and transforming technology to minimise it and we need you to join us. You’ll build strong relationships within a Cyber practice with some 300 FTE extremely talented people....

  • Incident Response

    6 days ago


    Manchester, United Kingdom IO Associates Full time

    Incident Response - Recovery SpecialistSalary: Up to £60,000 DOE Location: Manchester (with travel at short notice)Step into a role where your expertise makes an immediate and measurable impact.We're recruiting on behalf of a fast-growing cyber security organisation that specialises in incident response, recovery and digital forensics. This is a unique...

  • Incident Response

    2 weeks ago


    Manchester, United Kingdom IO Associates Full time

    Job DescriptionIncident Response - Recovery SpecialistSalary: Up to £60,000 DOELocation: Manchester (with travel at short notice)Step into a role where your expertise makes an immediate and measurable impact.We're recruiting on behalf of a fast-growing cyber security organisation that specialises in incident response, recovery and digital forensics. This is...