> Markdown version of [/jobs/ext/2051311-security-incident-management-analyst](https://www.wearedevelopers.com/jobs/ext/2051311-security-incident-management-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Incident Management Analyst - **Company:** Sanderson Recruitment Plc - **Location:** Preston, UK - **Salary:** £114,400.0 - £124,800.0 - **Contract:** Temporary contract - **Skills:** Cyber Security, Issue Tracking Systems, SC Clearance, Tools for Reporting - **Published:** August 14, 2026 - **Apply:** https://www.totaljobs.com/job/incident-management-analyst/sanderson-government-and-defence-job107842598 ## About the Role * Experience within cyber security, service management, operational governance, or support functions. * Understanding of security incident management processes and controls. * Knowledge of: + Incident severity classifications + Escalation procedures + Major incident management principles * Strong organisational, reporting, and documentation skills. * Experience coordinating multiple stakeholders across complex environments. * Ability to manage competing priorities and maintain attention to detail. * Strong communication and relationship management skills. Desirable Skills * Experience working within SIAM (Service Integration and Management) or multi-supplier environments. * Familiarity with incident management tools and reporting platforms. * Understanding of ITIL Incident Management principles. * Experience working within government, defence, critical national infrastructure, or other highly regulated sectors. * Exposure to governance, assurance, and audit processes. Security Requirements To be considered for this opportunity, candidates must: ? Hold active SC Clearance ? Be able to work 5 days per week onsite in Inverness or Preston Successful candidates will also be required to complete pre-employment screening, including identity verification, nationality and immigration checks, employment history verification, and criminal record checks. ## Description Working within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, you will play a key role in coordinating and governing security incident management activities across multiple service providers. This position focuses on ensuring incidents are effectively tracked, reported, escalated, and evidenced throughout their lifecycle, while maintaining compliance with agreed policies, processes, and service levels. This is an excellent opportunity for professionals with experience in cyber security, service management, operational governance, or incident management who enjoy working with stakeholders and driving operational excellence within complex environments. The Role You will support the visibility, governance, and coordination of security incidents across multiple suppliers, ensuring accurate reporting, robust audit readiness, and effective stakeholder engagement. Key Responsibilities Incident Tracking & Coordination * Monitor security incidents throughout their lifecycle. * Ensure incident records are maintained and updated by suppliers. * Track incidents from identification through to closure. * Escalate overdue, recurring, or high-impact incidents through appropriate governance channels. Supplier Management & Engagement * Coordinate with suppliers to obtain incident updates and status reports. * Support the collection and validation of supplier reporting. * Ensure reporting standards and data quality requirements are consistently applied. * Identify gaps in ownership, reporting, evidence, and accountability. Reporting & Governance * Produce regular security incident reports, dashboards, and performance metrics. * Monitor: + Incident volumes + Resolution performance + SLA compliance + Escalation trends * Provide reporting and updates into governance meetings and operational review forums. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Minimising the Carbon Footprint of Workloads](https://www.wearedevelopers.com/videos/1198-minimising-the-carbon-footprint-of-workloads) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Fighting Fraud with an AI Grandma - Ben Hopkins and Morten Legarth from faith @ VCCP](https://www.wearedevelopers.com/videos/1316-fighting-fraud-with-an-ai-grandma-ben-hopkins-and-morten-legarth-from-faith-vccp) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk)