Cyber Defense Incident Responder - Associate Director

Reference: eynw8r6g6br3zjcdx35w

We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and resolution of sophisticated cybersecurity incidents. This role will provide senior-level technical direction during high-impact events, coordinate response activities across security, technology, risk, legal, and business teams, and help strengthen the organisation’s overall cyber resilience. The successful candidate will be comfortable operating in a fast-paced environment where sound judgment, clear communication, and decisive action are essential.

Responsibilities include managing the end-to-end incident response lifecycle, including detection triage, scoping, forensic investigation, threat containment, eradication, recovery, and post-incident review. You will analyse security alerts and telemetry from SIEM, endpoint detection and response, network monitoring, identity, cloud, and other security platforms. The role will lead investigations involving malware, ransomware, phishing, credential compromise, insider threats, data loss, cloud security events, and advanced persistent threats. You will develop and maintain incident response playbooks, improve operating procedures, support cyber exercises, and provide concise briefings and written reports for senior stakeholders. The position will also help mentor analysts and responders, coordinate third-party support when required, and contribute to threat hunting and proactive detection engineering.

Applicants should have substantial experience in cyber incident response, digital forensics, security operations, or a closely related discipline, including experience leading investigations or response teams. Strong knowledge of attack techniques, incident handling frameworks, network and host-based analysis, identity security, cloud environments, and common security tooling is required. Experience with scripting or automation, forensic utilities, and threat intelligence platforms is desirable. Relevant certifications such as CISSP, GIAC, GCIH, GCFA, or equivalent qualifications would be advantageous. You should demonstrate excellent analytical and problem-solving skills, the ability to prioritise under pressure, and confidence communicating complex technical issues to both technical and non-technical audiences. The role may involve participation in an on-call rota and responding to critical incidents outside standard working hours.

COMPETITIVE SALARY
Added 18/09/2026
Reference: eynw8r6g6br3zjcdx35w

Cyber Defense Incident Responder - Associate Director

Glasgow, Scotland, United Kingdom Permanent Incident Response

Other similar jobs

Cyber Defense Incident Responder - Associate Director

Added 18/09/2026

We are seeking a Cyber Defense Incident Responder – Associate Director to lead the detection, investigation, containment, and resolution of complex cybersecurity incidents. This senior role will provide technical direction during high-impact events, coordinate response activities across security, technology, risk, legal, and business teams, and help strengthen the organisation’s overall cyber resilience. The successful candidate will act as a trusted escalation point for sophisticated threats, ensuring incidents are managed efficiently, documented accurately, and resolved in line with established procedures and regulatory expectations. Key responsibilities include leading investigations involving malware, ransomware, phishing, insider threats, account compromise, data exposure, and advanced persistent...

Learn more

Cyber Defense Incident Responder - Associate Director

Added 18/09/2026

We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and remediation of complex cybersecurity incidents. This role will provide senior technical direction during high-impact events, helping to protect critical systems, sensitive information, and business operations. You will work closely with security operations, threat intelligence, digital forensics, infrastructure, application, and risk teams to coordinate effective incident response across the organisation. Key responsibilities include directing the end-to-end response to suspected and confirmed security incidents; assessing alerts and evidence to determine scope, severity, and business impact; developing containment, eradication, and recovery strategies; and ensuring that...

Learn more

Cyber Defense Incident Responder - Associate Director

Added 18/09/2026

We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and resolution of complex cybersecurity incidents. This role will provide senior-level direction during high-impact events, helping protect critical systems, data, and business operations from evolving cyber threats. The successful candidate will combine strong technical expertise with sound judgment, clear communication, and the ability to coordinate effectively across security, technology, risk, legal, and business teams. Key responsibilities include overseeing the end-to-end incident response lifecycle, from triage and forensic investigation through containment, eradication, recovery, and post-incident review. You will lead investigations into malware, ransomware, phishing,...

Learn more

Cyber Defense Incident Responder - Associate Director

Added 01/09/2026

We are seeking a Cyber Defense Incident Responder – Associate Director to lead the investigation, containment, and resolution of complex cybersecurity incidents. This senior role will provide technical direction during high-impact events, coordinate response activities across security and technology teams, and help strengthen the organisation’s overall cyber resilience. The successful candidate will operate effectively in a fast-paced environment, making sound decisions under pressure while maintaining clear communication with technical and senior stakeholders. Key responsibilities include monitoring and triaging security alerts, leading investigations into suspected compromises, analysing endpoint, network, identity, cloud, and application telemetry, and developing accurate incident timelines. You will...

Learn more

Cyber Defense Incident Responder - Assistant Director

Added 18/09/2026

We are seeking an experienced Cyber Defense Incident Responder to lead the identification, investigation, containment, and resolution of cybersecurity incidents across a complex technology environment. In this senior role, you will provide strategic direction and operational leadership for incident response activities, helping to protect critical systems, data, and services from evolving cyber threats. You will coordinate high-priority investigations, assess business impact, and ensure incidents are managed efficiently from initial detection through recovery and post-incident review. Responsibilities will include leading incident response operations, developing and improving response procedures, and overseeing the use of security monitoring, endpoint detection, network analysis, and threat...

Learn more

Cyber Defense Incident Responder - Assistant Director

Added 18/09/2026

We are seeking a Cyber Defense Incident Responder – Assistant Director to lead the identification, investigation, containment, and recovery of cybersecurity incidents across a complex technology environment. This senior role will provide operational leadership to incident response activities, helping protect critical systems, data, and services from evolving cyber threats. You will oversee the coordination of high-severity incidents, ensure timely escalation, and support clear communication with technical teams, senior stakeholders, and relevant external parties. Key responsibilities include developing and maintaining incident response procedures, playbooks, and escalation frameworks; directing investigations into suspected security breaches, malware infections, unauthorized access, and other cyber events;...

Learn more

Cyber Defense Incident Responder - Assistant Director

Added 17/09/2026

We are seeking an experienced Cyber Defense Incident Responder to lead the identification, investigation, containment, and resolution of complex cybersecurity incidents. In this assistant director-level role, you will provide technical leadership across incident response operations, helping protect critical systems, networks, applications, and data from evolving threats. You will coordinate response activities during high-severity events, establish priorities, guide investigative teams, and ensure that incidents are managed efficiently and consistently from initial detection through recovery and post-incident review. Key responsibilities include developing and improving incident response procedures, playbooks, and escalation processes; directing the analysis of alerts, malicious activity, vulnerabilities, and indicators of...

Learn more

Cyber Defense Incident Responder - Assistant Director

Added 17/09/2026

We are seeking an experienced Cyber Defense Incident Responder to support the leadership and delivery of a modern cyber defense function. In this role, you will help direct the identification, investigation, containment, and remediation of security incidents across enterprise systems, networks, applications, and cloud environments. You will serve as a senior escalation point for complex incidents, helping to ensure that threats are managed quickly, consistently, and in line with established response procedures. Key responsibilities include coordinating incident response activities, assessing alerts and intelligence, leading forensic investigations, and analysing evidence from endpoint, network, identity, and cloud security platforms. You will develop...

Learn more

Cyber Defense Incident Responder - Assistant Director

Added 17/09/2026

We are seeking an experienced Cyber Defense Incident Responder to lead and coordinate the response to complex cybersecurity incidents across a diverse technology environment. In this Assistant Director-level role, you will provide strategic direction and hands-on expertise throughout the incident lifecycle, from detection and triage through containment, eradication, recovery, and post-incident review. You will help strengthen operational resilience, protect critical information assets, and ensure that response activities are timely, coordinated, and well documented. Key responsibilities include directing investigations into suspected and confirmed security incidents; assessing business and technical impact; coordinating response activities with security operations, infrastructure, applications, legal, risk, privacy,...

Learn more

Cyber Defense Incident Responder

Added 01/09/2026

We are seeking a Cyber Defense Incident Responder to help protect critical systems, applications, and data from evolving cyber threats. In this role, you will monitor, investigate, and respond to security incidents across enterprise environments, working closely with security operations, infrastructure, application, and risk teams. You will assess alerts, validate suspicious activity, determine scope and impact, contain threats, and support recovery efforts while maintaining clear and timely incident documentation. Your responsibilities will include conducting investigations using security information and event management (SIEM), endpoint detection and response (EDR), network monitoring, identity, email, and cloud security tools. You will perform event correlation,...

Learn more

Cyber Defense Incident Responder

Added 01/09/2026

We are seeking a Cyber Defense Incident Responder to protect critical systems, networks, applications, and data from cyber threats. In this role, you will monitor security events, investigate suspected incidents, coordinate containment and recovery activities, and help strengthen the organisation’s overall security posture. You will work closely with security operations, infrastructure, applications, risk, and business teams to ensure incidents are handled promptly, consistently, and with minimal operational impact. Key responsibilities include triaging and analysing alerts from security monitoring platforms, endpoint detection and response tools, network sensors, identity systems, and other data sources. You will conduct host- and network-based investigations, identify...

Learn more

Cyber Defense Incident Responder

Added 01/09/2026

We are seeking a Cyber Defense Incident Responder to join a security operations team responsible for protecting critical systems, applications, networks, and data. In this role, you will monitor, investigate, and respond to suspected and confirmed cybersecurity incidents across a complex technology environment. You will analyse alerts from security monitoring platforms, endpoint detection tools, network sensors, identity systems, and other sources to determine the nature, scope, and impact of threats. Your responsibilities will include leading or supporting incident response activities from initial triage through containment, eradication, recovery, and post-incident review. You will perform forensic analysis, develop timelines of attacker activity,...

Learn more

Cyber Defense Incident Responder

Added 01/09/2026

We are seeking a Cyber Defense Incident Responder to help protect critical systems, applications, and information from evolving cyber threats. In this role, you will monitor security events, investigate suspected incidents, and coordinate timely responses to reduce risk and limit operational impact. You will work closely with security operations, infrastructure, application, and risk teams to identify malicious activity, contain threats, and restore affected services securely. Your responsibilities will include triaging alerts from security monitoring platforms, conducting investigations across endpoint, network, identity, and cloud environments, and analysing logs and other digital evidence to determine the scope and root cause of incidents....

Learn more

Cyber Defense Incident Responder

Added 18/08/2026

We are seeking a skilled Cyber Defense Incident Responder to join our dynamic cybersecurity team. In this role, you will be responsible for monitoring and analyzing security incidents, responding swiftly to threats, and developing strategies to mitigate future risks. You will work closely with various teams to investigate security breaches, conduct forensic analysis, and implement incident response plans to ensure the integrity and security of our systems. A strong understanding of network security protocols, threat detection tools, and incident management processes is essential for success in this position. Your primary duties will include identifying potential security incidents, conducting real-time analysis,...

Learn more

Cyber Defense Incident Responder

Added 06/08/2026

We are seeking a skilled Cyber Defense Incident Responder to join our dynamic cybersecurity team. In this role, you will be responsible for monitoring, detecting, and responding to security incidents across our digital infrastructure. Your primary duties will include analyzing security alerts, conducting thorough investigations to determine the root cause of incidents, and coordinating effective response actions to mitigate potential threats. You will also be responsible for documenting incidents and maintaining accurate records of your findings to support compliance and reporting initiatives. Additionally, you will collaborate with other IT and security teams to implement best practices and enhance our overall...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.