Senior SOC Analyst - Incident Response

Reference: 271uco412n2vgvoajxh6

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment and resolution of complex cybersecurity incidents. In this role, you will act as a senior escalation point within the security operations function, coordinating response activities across technical teams and providing clear, timely updates to relevant stakeholders. You will analyse alerts and events from SIEM, EDR, network security and cloud platforms, identify indicators of compromise, determine root cause and assess the scope and impact of incidents.

Your responsibilities will include developing and executing incident response procedures, conducting forensic investigations, performing threat hunting and supporting malware and endpoint analysis. You will help improve detection and response capabilities by tuning security rules, creating use cases, refining playbooks and documenting lessons learned. The role will also involve coordinating containment, eradication and recovery actions, maintaining accurate incident records, and contributing to post-incident reviews. You may support security exercises, vulnerability investigations, threat intelligence assessments and the development of operational metrics and reports. As a senior team member, you will mentor junior analysts and promote consistent, high-quality working practices.

Applicants should have substantial experience in a security operations or incident response environment, with a strong understanding of attack techniques, threat modelling and the incident lifecycle. Practical expertise with SIEM, EDR, network monitoring, identity platforms and cloud security technologies is required, along with the ability to investigate suspicious activity using logs, telemetry and forensic evidence. Familiarity with frameworks such as MITRE ATT&CK, NIST or ISO 27001 is desirable. Relevant certifications, such as GIAC, CISSP, CREST or equivalent, are advantageous. You should be an analytical and confident communicator who can remain calm during high-pressure incidents, explain technical findings to varied audiences and work collaboratively across teams. Participation in an out-of-hours on-call or incident escalation rota may be required.

COMPETITIVE SALARY
Added 02/09/2026
Reference: 271uco412n2vgvoajxh6

Senior SOC Analyst - Incident Response

Manchester, England, United Kingdom Permanent SOC Analyst

Other similar jobs

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment, and resolution of complex cybersecurity incidents. You will act as a senior point of escalation within the Security Operations Centre, providing expert guidance during high-impact events and helping strengthen the organisation’s overall incident response capability. The role involves working closely with security engineering, infrastructure, application, risk, and compliance teams to protect critical systems, data, and services. Your responsibilities will include monitoring and analysing alerts from SIEM, EDR, network, cloud, identity, and threat intelligence platforms; validating suspected incidents; performing detailed investigation and forensic analysis; and coordinating...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment, and resolution of complex cybersecurity incidents. In this role, you will act as a senior point of escalation within the Security Operations Centre, providing expert analysis and guidance during high-impact events. You will monitor and investigate alerts across endpoint, network, cloud, identity, and application environments, using SIEM, EDR, threat intelligence, and other security technologies to identify malicious activity and assess business risk. You will coordinate incident response activities from initial triage through eradication, recovery, and post-incident review. Responsibilities include developing and refining detection rules, conducting...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment, and resolution of complex cybersecurity incidents. You will operate as a senior member of a security operations team, providing expert guidance during active incidents and helping protect critical systems, applications, and data. The role requires strong analytical thinking, sound technical judgement, and the ability to remain calm and decisive in a fast-moving environment. Responsibilities include monitoring and triaging security alerts, investigating suspected compromises, conducting threat hunting, and coordinating end-to-end incident response activities. You will analyse events from SIEM, EDR, network, identity, cloud, and other security...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment and resolution of complex cybersecurity incidents across a diverse technology environment. You will act as a senior escalation point within the Security Operations Centre, providing expert analysis during high-impact events and helping to protect critical systems, data and services. The role will involve working closely with infrastructure, cloud, engineering, risk and business teams to coordinate effective responses and minimise operational disruption. Your responsibilities will include monitoring and triaging alerts from SIEM, EDR, network, identity and cloud security platforms; conducting in-depth analysis of logs, endpoint activity,...

Learn more

Managed Security Operations Centre (SOC) and Incident Response Services Agreement

Added 29/07/2026

An exciting opportunity has arisen for a skilled professional to lead the delivery and management of Security Operations Centre (SOC) and Incident Response services. The successful candidate will be responsible for overseeing a team of security analysts, ensuring proactive monitoring, detection, and response to security incidents across various client environments. This role requires maintaining high standards of service delivery, ensuring compliance with relevant frameworks, and continuous improvement of security operations processes. Key responsibilities include managing and developing SOC processes, collaborating with stakeholders to assess risk and implement mitigation strategies, and coordinating effective incident response and recovery actions. You will be...

Learn more

Senior Associate, Cyber Security Analyst – Incident Response

Added 02/09/2026

We are seeking a Senior Associate, Cyber Security Analyst – Incident Response to join a dedicated security operations function. In this role, you will help protect critical systems, data and services by leading the investigation and response to cyber security incidents. You will work closely with technology, risk, infrastructure and business teams to identify threats, contain activity, recover affected environments and strengthen the organisation’s overall security posture. Key responsibilities include monitoring and analysing security alerts, endpoint activity, network traffic, identity events and other indicators of compromise. You will triage incidents, determine scope and severity, coordinate containment and eradication activities, and...

Learn more

Senior Manager, Global Cyber Security Incident Response (Global CSIRT)

Added 18/09/2026

We are seeking a Senior Manager, Global Cyber Security Incident Response to lead and evolve a global incident response capability. This role will be responsible for directing the identification, containment, investigation and recovery of significant cyber security incidents across a complex, international environment. You will provide calm, decisive leadership during high-impact events, coordinate technical and business stakeholders, and ensure that response activities protect critical services, data and customer trust. The role will also contribute to the development of a mature, intelligence-led and continuously improving Global CSIRT function. Key responsibilities include leading incident response teams and third-party partners through suspected and...

Learn more

Senior Security Consultant (Incident Response)

Added 26/08/2026

We are seeking a Senior Security Consultant (Incident Response) to lead and support the investigation, containment and recovery of complex cybersecurity incidents. This role will work closely with clients and internal stakeholders to provide expert guidance throughout the incident lifecycle, from initial triage and scoping through to remediation, lessons learned and strategic improvement. You will be expected to operate confidently in high-pressure situations, communicate clearly with both technical and non-technical audiences, and help organisations strengthen their resilience against future threats. Key responsibilities include leading or contributing to digital forensics and incident response engagements; analysing endpoint, network, identity, cloud and application...

Learn more

Senior Manager, Cybersecurity Incident Response

Added 25/08/2026

We are seeking a Senior Manager, Cybersecurity Incident Response to lead the development and execution of a mature, enterprise-wide capability for detecting, investigating and responding to cyber threats. This role will provide strategic direction and operational leadership across incident response, digital forensics, threat intelligence, crisis management and post-incident improvement. The successful candidate will help protect critical systems, data and services while ensuring a coordinated, timely and effective response to security events. Key responsibilities include leading and developing a team of incident response professionals; establishing and maintaining response policies, procedures, playbooks and escalation processes; and overseeing the investigation and containment of...

Learn more

Senior Security Incident Response Engineer

Added 20/08/2026

We are seeking a highly skilled Senior Security Incident Response Engineer to join our dynamic cybersecurity team. In this role, you will be at the forefront of our incident response efforts, tasked with identifying, managing, and mitigating security incidents across our organization. You will collaborate closely with cross-functional teams to develop and implement incident response plans, ensuring rapid recovery and minimal impact on business operations. Your expertise will be critical in conducting thorough investigations, analyzing security breaches, and producing detailed reports that outline the findings, recommendations, and lessons learned. The ideal candidate will have a strong background in cybersecurity, with...

Learn more

Advisory Engineer, Enterprise Product Security Incident Response Team (E-PSIRT)

Added 11/09/2026

We are seeking an Advisory Engineer to join an Enterprise Product Security Incident Response Team (E-PSIRT). In this role, you will help identify, assess, coordinate, and resolve security vulnerabilities affecting enterprise products, platforms, and services. You will act as a trusted technical adviser to engineering, product, infrastructure, and customer-facing teams, helping to ensure that security issues are managed consistently, efficiently, and in line with established response processes. Your responsibilities will include investigating reported vulnerabilities and security incidents, validating technical findings, assessing severity and potential business impact, and coordinating remediation activities across multiple stakeholders. You will contribute to vulnerability response plans,...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.