Incident Response Engineer, UK Security Operations, Hampshire

Reference: ote99dw334p26kl1r8bt

We are seeking an Incident Response Engineer to join a UK-based Security Operations function in Hampshire. This role will help protect critical systems, services and information by identifying, investigating and responding to cyber security incidents. You will work as part of a collaborative team responsible for monitoring threats, assessing their impact and coordinating effective containment and recovery activities across a complex technical environment.

Your responsibilities will include triaging alerts and reported security events, conducting investigations using security information and event management, endpoint detection and response, network monitoring and vulnerability management tools, and analysing logs, malware and other forensic evidence. You will develop clear incident timelines, identify root causes, recommend remediation actions and maintain accurate records in accordance with established procedures. The role will also involve supporting threat hunting, detection engineering, playbook development, security control improvements and post-incident reviews. You may be required to participate in an out-of-hours or on-call rota and provide concise updates to technical and non-technical stakeholders during active incidents.

Applicants should have practical experience in incident response, security operations or a closely related cyber security discipline, with a sound understanding of attack techniques, intrusion analysis, digital forensics and incident management principles. Familiarity with frameworks such as MITRE ATT&CK, NIST or equivalent is desirable, along with experience using SIEM, EDR, ticketing and investigative tools. Knowledge of Windows and Linux environments, networking, identity technologies, cloud platforms and scripting—particularly PowerShell or Python—would be advantageous. Strong analytical, communication and documentation skills are essential, as is the ability to prioritise under pressure, work collaboratively and handle sensitive information responsibly. Relevant professional certifications or demonstrable equivalent experience will be welcomed.

COMPETITIVE SALARY
Added 26/08/2026
Reference: ote99dw334p26kl1r8bt

Incident Response Engineer, UK Security Operations, Hampshire

London, England, United Kingdom Permanent Incident Response

Other similar jobs

Security Platform Engineer, UK Security Operations

Added 18/08/2026

We are seeking a skilled Security Platform Engineer to join our dynamic UK Security Operations team. In this role, you will be responsible for the design, implementation, and maintenance of security platforms that protect our organization’s digital assets. You will work closely with cross-functional teams to ensure robust security measures are integrated into our technology stack, while continuously monitoring and improving security protocols. Your expertise will play a crucial role in identifying vulnerabilities, conducting risk assessments, and developing strategies to mitigate potential threats. The ideal candidate will have a strong background in cybersecurity, with experience in security architecture and engineering....

Learn more

Security Platform Engineer, Google Cloud Public Sector

Added 18/08/2026

We are seeking a skilled Security Platform Engineer to join our dynamic team focused on securing cloud infrastructure for public sector clients. In this role, you will be responsible for designing, implementing, and maintaining security solutions that protect sensitive information and ensure compliance with governmental regulations. You will work closely with cross-functional teams to identify security risks and develop effective mitigation strategies. Your expertise will guide the integration of security best practices within the cloud environment, ensuring the highest levels of data protection and system reliability. The ideal candidate will have extensive experience in cloud security architecture, with a strong...

Learn more

Security Architect

Added 25/08/2026

We are seeking an experienced Security Architect to design, develop and maintain secure technology architectures across a complex and evolving environment. You will provide strategic direction on information security, ensuring that security principles are embedded throughout the design, delivery and operation of systems, applications, networks and cloud services. Working closely with technology, delivery, risk and operational teams, you will translate business and technical requirements into practical, resilient security solutions. Key responsibilities will include defining security architecture standards, patterns and reference designs; reviewing proposed solutions and identifying risks, vulnerabilities and control gaps; and providing expert guidance on identity and access management,...

Learn more

Managed Security Operations Centre (SOC) and Incident Response Services Agreement

Added 29/07/2026

An exciting opportunity has arisen for a skilled professional to lead the delivery and management of Security Operations Centre (SOC) and Incident Response services. The successful candidate will be responsible for overseeing a team of security analysts, ensuring proactive monitoring, detection, and response to security incidents across various client environments. This role requires maintaining high standards of service delivery, ensuring compliance with relevant frameworks, and continuous improvement of security operations processes. Key responsibilities include managing and developing SOC processes, collaborating with stakeholders to assess risk and implement mitigation strategies, and coordinating effective incident response and recovery actions. You will be...

Learn more

Security Engineer I, AWS Security Incident Response

Added 02/09/2026

We are seeking a Security Engineer I, AWS Security Incident Response to help protect cloud environments, investigate security events, and strengthen incident response capabilities. In this role, you will work with security operations, engineering, and infrastructure teams to identify, contain, and remediate threats affecting AWS accounts, services, and workloads. You will contribute to the development of repeatable processes that improve detection, response times, and overall cloud security resilience. Key responsibilities include monitoring and triaging security alerts, investigating suspicious activity across AWS services, and supporting incident response from initial analysis through containment, recovery, and post-incident review. You will assist with log...

Learn more

Security Engineer I, AWS Security Incident Response

Added 02/09/2026

We are seeking a Security Engineer I to support cloud security incident response and help protect critical systems, applications, and data. In this entry-level role, you will monitor, investigate, and respond to suspected security events across cloud environments, working closely with experienced security professionals and technical teams. You will contribute to the full incident lifecycle, including alert triage, evidence collection, containment, eradication, recovery, and post-incident review. Key responsibilities include analysing logs, alerts, and network or endpoint telemetry; investigating potential unauthorised access, malware, data exposure, and account compromise; documenting findings and maintaining accurate case records; and escalating incidents according to established...

Learn more

Advisory Engineer, Enterprise Product Security Incident Response Team (E-PSIRT)

Added 11/09/2026

We are seeking an Advisory Engineer to join an Enterprise Product Security Incident Response Team (E-PSIRT). In this role, you will help identify, assess, coordinate, and resolve security vulnerabilities affecting enterprise products, platforms, and services. You will act as a trusted technical adviser to engineering, product, infrastructure, and customer-facing teams, helping to ensure that security issues are managed consistently, efficiently, and in line with established response processes. Your responsibilities will include investigating reported vulnerabilities and security incidents, validating technical findings, assessing severity and potential business impact, and coordinating remediation activities across multiple stakeholders. You will contribute to vulnerability response plans,...

Learn more

Security Engineer – SecOps / Incident Response & Automation (GBP 350 per day outside IR35)

Added 03/09/2026

We are seeking an experienced Security Engineer to support Security Operations, Incident Response and security automation within a fast-paced technology environment. This contract opportunity offers a rate of GBP 350 per day, outside IR35, and is suited to a hands-on practitioner who can investigate security events, coordinate effective responses and improve the efficiency of operational security processes. The successful candidate will monitor, triage and investigate alerts from SIEM, endpoint detection and response, identity, cloud and network security platforms. You will lead or support the response to security incidents, including scoping impact, analysing logs and indicators of compromise, containing threats, coordinating...

Learn more

Senior Security Incident Response Engineer

Added 20/08/2026

We are seeking a highly skilled Senior Security Incident Response Engineer to join our dynamic cybersecurity team. In this role, you will be at the forefront of our incident response efforts, tasked with identifying, managing, and mitigating security incidents across our organization. You will collaborate closely with cross-functional teams to develop and implement incident response plans, ensuring rapid recovery and minimal impact on business operations. Your expertise will be critical in conducting thorough investigations, analyzing security breaches, and producing detailed reports that outline the findings, recommendations, and lessons learned. The ideal candidate will have a strong background in cybersecurity, with...

Learn more

Product Security Incident Response Engineer

Added 29/07/2026

We are seeking a skilled Product Security Incident Response Engineer to join our dynamic team. In this pivotal role, you will be responsible for monitoring, detecting, and responding to security incidents impacting our products. You will leverage your expertise to analyze security events, conduct investigations, and implement remediation measures to ensure the integrity and security of our systems. Collaborating with cross-functional teams, you will develop and maintain incident response plans and documentation, ensuring that our organization is prepared to effectively handle security incidents as they arise. Your key responsibilities will include performing in-depth analysis of security incidents, identifying root causes,...

Learn more

Senior Manager, Global Cyber Security Incident Response (Global CSIRT)

Added 18/09/2026

We are seeking a Senior Manager, Global Cyber Security Incident Response to lead and evolve a global incident response capability. This role will be responsible for directing the identification, containment, investigation and recovery of significant cyber security incidents across a complex, international environment. You will provide calm, decisive leadership during high-impact events, coordinate technical and business stakeholders, and ensure that response activities protect critical services, data and customer trust. The role will also contribute to the development of a mature, intelligence-led and continuously improving Global CSIRT function. Key responsibilities include leading incident response teams and third-party partners through suspected and...

Learn more

Senior Associate, Cyber Security Analyst – Incident Response

Added 02/09/2026

We are seeking a Senior Associate, Cyber Security Analyst – Incident Response to join a dedicated security operations function. In this role, you will help protect critical systems, data and services by leading the investigation and response to cyber security incidents. You will work closely with technology, risk, infrastructure and business teams to identify threats, contain activity, recover affected environments and strengthen the organisation’s overall security posture. Key responsibilities include monitoring and analysing security alerts, endpoint activity, network traffic, identity events and other indicators of compromise. You will triage incidents, determine scope and severity, coordinate containment and eradication activities, and...

Learn more

Senior Security Consultant (Incident Response)

Added 26/08/2026

We are seeking a Senior Security Consultant (Incident Response) to lead and support the investigation, containment and recovery of complex cybersecurity incidents. This role will work closely with clients and internal stakeholders to provide expert guidance throughout the incident lifecycle, from initial triage and scoping through to remediation, lessons learned and strategic improvement. You will be expected to operate confidently in high-pressure situations, communicate clearly with both technical and non-technical audiences, and help organisations strengthen their resilience against future threats. Key responsibilities include leading or contributing to digital forensics and incident response engagements; analysing endpoint, network, identity, cloud and application...

Learn more

Team Leader - Information Security Incident Response

Added 26/08/2026

We are seeking an experienced Team Leader – Information Security Incident Response to lead the coordination and delivery of effective responses to cyber security incidents. This role will provide operational leadership to an incident response team, ensuring threats are identified, contained, investigated and resolved promptly. You will oversee the end-to-end incident management lifecycle, from initial triage and assessment through to recovery, post-incident review and the implementation of preventative improvements. Key responsibilities will include leading the investigation of complex security incidents, coordinating technical and business stakeholders, and ensuring timely, accurate communication during major events. You will develop and maintain incident response...

Learn more

Product Security Incident Response Manager (m/f/d)

Added 25/08/2026

We are seeking a Product Security Incident Response Manager (m/f/d) to lead the coordination and continuous improvement of security incident response for products, platforms, and supporting services. In this role, you will manage the response to vulnerabilities, suspected compromises, and product security incidents from initial assessment through containment, remediation, recovery, and post-incident review. You will work closely with engineering, product management, cloud operations, legal, privacy, communications, and customer-facing teams to ensure that incidents are handled efficiently, consistently, and with clear ownership. Your responsibilities will include establishing and maintaining incident response processes, playbooks, severity models, escalation paths, and communication procedures. You...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.