Senior Security Consultant (Incident Response)

Reference: 89ai2gjx7q1pg9gzci33

We are seeking a Senior Security Consultant (Incident Response) to lead and support the investigation, containment and recovery of complex cybersecurity incidents. This role will work closely with clients and internal stakeholders to provide expert guidance throughout the incident lifecycle, from initial triage and scoping through to remediation, lessons learned and strategic improvement. You will be expected to operate confidently in high-pressure situations, communicate clearly with both technical and non-technical audiences, and help organisations strengthen their resilience against future threats.

Key responsibilities include leading or contributing to digital forensics and incident response engagements; analysing endpoint, network, identity, cloud and application evidence; identifying attack vectors, indicators of compromise, threat actor activity and business impact; and developing practical containment and eradication recommendations. You will produce accurate investigation reports, executive briefings and technical findings, while maintaining clear documentation and defensible evidence-handling processes. The role will also involve developing incident response plans and playbooks, conducting tabletop exercises, supporting security assessments, mentoring less experienced consultants and contributing to the continual improvement of internal methodologies, tools and services. Occasional out-of-hours response work and travel may be required.

Applicants should have substantial experience in cybersecurity incident response, digital forensics, security operations or a closely related discipline, with a proven ability to manage investigations from detection to closure. Strong knowledge of Windows and Linux environments, network and cloud security, log analysis, malware investigation, threat intelligence and common attack frameworks is essential. Experience with enterprise security platforms, forensic tooling, scripting or automation, and cloud-native investigations would be advantageous. Relevant professional certifications such as GIAC, CISSP, CREST, GCFA, GCIH or equivalent are desirable. You should demonstrate sound judgement, structured problem-solving, strong report-writing skills and the ability to build trusted relationships while delivering high-quality work to agreed deadlines.

COMPETITIVE SALARY
Added 26/08/2026
Reference: 89ai2gjx7q1pg9gzci33

Senior Security Consultant (Incident Response)

Birmingham, England, United Kingdom Permanent Incident Response

Other similar jobs

Cyber Security Analyst

Added 27/07/2026

We are seeking a motivated and detail-oriented Cyber Security Analyst to join our dynamic team. In this role, you will be responsible for monitoring and protecting our organization's information systems from cyber threats. Your primary duties will include conducting regular security assessments, analyzing security breaches, and implementing effective security protocols to safeguard sensitive data. You will collaborate with various departments to ensure compliance with security policies and regulations while staying updated on the latest cyber security trends and threats. The ideal candidate will possess a strong understanding of network security, risk assessment, and incident response strategies. You should have experience...

Learn more

Lead Auditor - Information Security

Added 27/07/2026

We are seeking a highly skilled Lead Auditor specializing in Information Security to join our team. In this role, you will be responsible for planning, executing, and overseeing comprehensive audits of the organization's information security management systems. You will assess current security protocols, identify vulnerabilities, and recommend improvements to enhance the overall security posture. Your expertise will ensure compliance with industry standards and regulations, such as ISO 27001, NIST, and GDPR, while also driving a culture of security awareness throughout the organization. As the Lead Auditor, you will collaborate closely with cross-functional teams to evaluate risks, develop audit strategies, and...

Learn more

24 x 7 Security Analyst

Added 27/07/2026

We are seeking a dedicated and detail-oriented 24 x 7 Security Analyst to join our dynamic team. In this role, you will be responsible for monitoring and analyzing security incidents, identifying vulnerabilities, and implementing effective security measures to protect our systems and data. Your expertise will be essential in responding to security breaches and ensuring compliance with industry regulations. You will also support the development and maintenance of security policies, procedures, and guidelines. The ideal candidate will possess a strong understanding of cybersecurity principles and practices. Responsibilities include conducting regular security assessments, performing risk analyses, and collaborating with IT teams...

Learn more

Graduate Consultant, Cyber Incident Response: One Year Fixed Term Contract

Added 01/09/2026

Graduate Consultant, Cyber Incident Response: One Year Fixed Term Contract. An exciting opportunity is available for a recent graduate or early-career professional to begin a career in cyber incident response. Working as part of a specialist security team, you will support the investigation, management and resolution of cyber incidents affecting a range of systems, networks and users. This is a practical, learning-focused role suited to someone with a genuine interest in cybersecurity, strong analytical ability and a willingness to develop technical expertise. Your responsibilities will include assisting with the triage and investigation of suspected security incidents, reviewing alerts and log...

Learn more

Senior Manager, Global Cyber Security Incident Response (Global CSIRT)

Added 18/09/2026

We are seeking a Senior Manager, Global Cyber Security Incident Response to lead and evolve a global incident response capability. This role will be responsible for directing the identification, containment, investigation and recovery of significant cyber security incidents across a complex, international environment. You will provide calm, decisive leadership during high-impact events, coordinate technical and business stakeholders, and ensure that response activities protect critical services, data and customer trust. The role will also contribute to the development of a mature, intelligence-led and continuously improving Global CSIRT function. Key responsibilities include leading incident response teams and third-party partners through suspected and...

Learn more

Senior Associate, Cyber Security Analyst – Incident Response

Added 02/09/2026

We are seeking a Senior Associate, Cyber Security Analyst – Incident Response to join a dedicated security operations function. In this role, you will help protect critical systems, data and services by leading the investigation and response to cyber security incidents. You will work closely with technology, risk, infrastructure and business teams to identify threats, contain activity, recover affected environments and strengthen the organisation’s overall security posture. Key responsibilities include monitoring and analysing security alerts, endpoint activity, network traffic, identity events and other indicators of compromise. You will triage incidents, determine scope and severity, coordinate containment and eradication activities, and...

Learn more

Senior Security Incident Response Engineer

Added 20/08/2026

We are seeking a highly skilled Senior Security Incident Response Engineer to join our dynamic cybersecurity team. In this role, you will be at the forefront of our incident response efforts, tasked with identifying, managing, and mitigating security incidents across our organization. You will collaborate closely with cross-functional teams to develop and implement incident response plans, ensuring rapid recovery and minimal impact on business operations. Your expertise will be critical in conducting thorough investigations, analyzing security breaches, and producing detailed reports that outline the findings, recommendations, and lessons learned. The ideal candidate will have a strong background in cybersecurity, with...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment and resolution of complex cybersecurity incidents across a diverse technology environment. You will act as a senior escalation point within the Security Operations Centre, providing expert analysis during high-impact events and helping to protect critical systems, data and services. The role will involve working closely with infrastructure, cloud, engineering, risk and business teams to coordinate effective responses and minimise operational disruption. Your responsibilities will include monitoring and triaging alerts from SIEM, EDR, network, identity and cloud security platforms; conducting in-depth analysis of logs, endpoint activity,...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment, and resolution of complex cybersecurity incidents. You will operate as a senior member of a security operations team, providing expert guidance during active incidents and helping protect critical systems, applications, and data. The role requires strong analytical thinking, sound technical judgement, and the ability to remain calm and decisive in a fast-moving environment. Responsibilities include monitoring and triaging security alerts, investigating suspected compromises, conducting threat hunting, and coordinating end-to-end incident response activities. You will analyse events from SIEM, EDR, network, identity, cloud, and other security...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment and resolution of complex cybersecurity incidents. In this role, you will act as a senior escalation point within the security operations function, coordinating response activities across technical teams and providing clear, timely updates to relevant stakeholders. You will analyse alerts and events from SIEM, EDR, network security and cloud platforms, identify indicators of compromise, determine root cause and assess the scope and impact of incidents. Your responsibilities will include developing and executing incident response procedures, conducting forensic investigations, performing threat hunting and supporting malware and...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment, and resolution of complex cybersecurity incidents. You will act as a senior point of escalation within the Security Operations Centre, providing expert guidance during high-impact events and helping strengthen the organisation’s overall incident response capability. The role involves working closely with security engineering, infrastructure, application, risk, and compliance teams to protect critical systems, data, and services. Your responsibilities will include monitoring and analysing alerts from SIEM, EDR, network, cloud, identity, and threat intelligence platforms; validating suspected incidents; performing detailed investigation and forensic analysis; and coordinating...

Learn more

Senior SOC Analyst - Incident Response

Added 02/09/2026

We are seeking a Senior SOC Analyst – Incident Response to lead the investigation, containment, and resolution of complex cybersecurity incidents. In this role, you will act as a senior point of escalation within the Security Operations Centre, providing expert analysis and guidance during high-impact events. You will monitor and investigate alerts across endpoint, network, cloud, identity, and application environments, using SIEM, EDR, threat intelligence, and other security technologies to identify malicious activity and assess business risk. You will coordinate incident response activities from initial triage through eradication, recovery, and post-incident review. Responsibilities include developing and refining detection rules, conducting...

Learn more

Senior Manager, Cybersecurity Incident Response

Added 25/08/2026

We are seeking a Senior Manager, Cybersecurity Incident Response to lead the development and execution of a mature, enterprise-wide capability for detecting, investigating and responding to cyber threats. This role will provide strategic direction and operational leadership across incident response, digital forensics, threat intelligence, crisis management and post-incident improvement. The successful candidate will help protect critical systems, data and services while ensuring a coordinated, timely and effective response to security events. Key responsibilities include leading and developing a team of incident response professionals; establishing and maintaining response policies, procedures, playbooks and escalation processes; and overseeing the investigation and containment of...

Learn more

Security Engineer I, AWS Security Incident Response

Added 02/09/2026

We are seeking a Security Engineer I, AWS Security Incident Response to help protect cloud environments, investigate security events, and strengthen incident response capabilities. In this role, you will work with security operations, engineering, and infrastructure teams to identify, contain, and remediate threats affecting AWS accounts, services, and workloads. You will contribute to the development of repeatable processes that improve detection, response times, and overall cloud security resilience. Key responsibilities include monitoring and triaging security alerts, investigating suspicious activity across AWS services, and supporting incident response from initial analysis through containment, recovery, and post-incident review. You will assist with log...

Learn more

Security Engineer I, AWS Security Incident Response

Added 02/09/2026

We are seeking a Security Engineer I to support cloud security incident response and help protect critical systems, applications, and data. In this entry-level role, you will monitor, investigate, and respond to suspected security events across cloud environments, working closely with experienced security professionals and technical teams. You will contribute to the full incident lifecycle, including alert triage, evidence collection, containment, eradication, recovery, and post-incident review. Key responsibilities include analysing logs, alerts, and network or endpoint telemetry; investigating potential unauthorised access, malware, data exposure, and account compromise; documenting findings and maintaining accurate case records; and escalating incidents according to established...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.