Security Incident Management Analyst

Sanderson Recruitment Plc
Preston, UK
14 days ago
Apply on www.totaljobs.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Compensation
£114,400.0 - £124,800.0
Working hours
Regular working hours

Tech stack

Cyber Security Issue Tracking Systems SC Clearance Tools for Reporting

Job description

Working within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, you will play a key role in coordinating and governing security incident management activities across multiple service providers. This position focuses on ensuring incidents are effectively tracked, reported, escalated, and evidenced throughout their lifecycle, while maintaining compliance with agreed policies, processes, and service levels.

This is an excellent opportunity for professionals with experience in cyber security, service management, operational governance, or incident management who enjoy working with stakeholders and driving operational excellence within complex environments.

The Role

You will support the visibility, governance, and coordination of security incidents across multiple suppliers, ensuring accurate reporting, robust audit readiness, and effective stakeholder engagement.

Key Responsibilities

Incident Tracking & Coordination

  • Monitor security incidents throughout their lifecycle.
  • Ensure incident records are maintained and updated by suppliers.
  • Track incidents from identification through to closure.
  • Escalate overdue, recurring, or high-impact incidents through appropriate governance channels.

Supplier Management & Engagement

  • Coordinate with suppliers to obtain incident updates and status reports.
  • Support the collection and validation of supplier reporting.
  • Ensure reporting standards and data quality requirements are consistently applied.
  • Identify gaps in ownership, reporting, evidence, and accountability.

Reporting & Governance

  • Produce regular security incident reports, dashboards, and performance metrics.
  • Monitor:
  • Incident volumes
  • Resolution performance
  • SLA compliance
  • Escalation trends
  • Provide reporting and updates into governance meetings and operational review forums.

Requirements

  • Experience within cyber security, service management, operational governance, or support functions.
  • Understanding of security incident management processes and controls.
  • Knowledge of:
  • Incident severity classifications
  • Escalation procedures
  • Major incident management principles
  • Strong organisational, reporting, and documentation skills.
  • Experience coordinating multiple stakeholders across complex environments.
  • Ability to manage competing priorities and maintain attention to detail.
  • Strong communication and relationship management skills.

Desirable Skills

  • Experience working within SIAM (Service Integration and Management) or multi-supplier environments.
  • Familiarity with incident management tools and reporting platforms.
  • Understanding of ITIL Incident Management principles.
  • Experience working within government, defence, critical national infrastructure, or other highly regulated sectors.
  • Exposure to governance, assurance, and audit processes.

Security Requirements

To be considered for this opportunity, candidates must:

? Hold active SC Clearance ? Be able to work 5 days per week onsite in Inverness or Preston

Successful candidates will also be required to complete pre-employment screening, including identity verification, nationality and immigration checks, employment history verification, and criminal record checks.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

5:58 min

Analyzing web performance indicators through field and lab data

Ines Akrap Ines Akrap · LIVE

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

3:06 min

Measuring campaign effectiveness and telecommunication incident reporting

Ben Hopkins +1 · Coffee With Developers

Videos

See all

Related articles

See all