Incident Response Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
We’re looking for an experienced Lead Incident Response Analyst to join a growing Cyber Security Operations team. This is an excellent opportunity for a security professional who enjoys leading investigations, hunting threats, and helping organisations strengthen their cyber resilience.
You’ll take ownership of complex security incidents, support the development of detection capabilities, and act as a technical mentor within the wider security function., * Lead the investigation and response to cyber security incidents.
- Conduct proactive threat hunting activities and identify emerging risks.
- Perform root cause analysis and recommend remediation actions.
- Act as a senior escalation point for complex security events.
- Support the improvement of security monitoring, detection rules, and automation.
- Produce clear and detailed incident reports and technical documentation.
- Mentor and support junior team members.
- Collaborate with technical teams to enhance overall security operations.
Requirements
You’ll have:
- 3+ years’ experience within a Security Operations Centre (SOC).
- Strong incident response and threat hunting expertise.
- Experience with SIEM, XDR, and endpoint security technologies.
- Strong log analysis and query language skills.
- Knowledge of the MITRE ATT&CK framework.
- Experience investigating sophisticated cyber threats.
- Understanding of cloud security, ideally within Azure environments.
- Excellent communication and stakeholder management skills.
- Relevant security certifications or equivalent practical experience.
Desirable Skills
- Experience within a managed security or consultancy environment.
- Knowledge of detection engineering and security automation.
- Experience with multiple SIEM/XDR platforms.
- Linux experience.
- Certifications such as SC-200 or similar.
Benefits & conditions
£45,000 plus bonus - Open to candidates looking for above this number too., * Exposure to complex and high-profile security incidents.
- Opportunities for technical growth and career development.
- Collaborative and supportive team environment.
- Competitive salary and benefits package.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…