Senior Cyber Incident Response Specialist

Royal London Group
Alderley Edge, UK
2 days ago
Apply on www.adzuna.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£49,625.0
Working hours
Regular working hours

Tech stack

Cyber Security Phishing Malware Cyber Threat Analysis Cybercrime

Job description

This role will assure the response to a cybersecurity event or incident, taking the lead to contain the threat to the Royal London business and support the remediation activities to stabilise service.

The role will co-ordinate the activities between Defence, Threat Intelligence, SOC, and Engineering and be the point of contact for IT Security within the Royal London Group incident management process. Additionally, the role will mentor the current Cyber Incident Response team at analyst and specialist level.

The team purpose is to minimise and control the damage resulting from cybersecurity incidents, ensuring that the appropriate incident management and response controls are in place and operating as required to enable the identification, protection, detection, response, and recovery of RLG information assets.

About the role

  • Creation and maintenance of RLG incident response plan and procedure.
  • Undertake Confidential and sensitive colleague investigations.

  • Provide root cause analysis, create metrics to create reports and analytics to improve future incident response.
  • Collect supporting information and/or relevant artifacts in support of incident response activities.
  • Conduct technical analysis on impacted systems to determine impact, scope, and recovery from active and potential cyber incidents.
  • Documents the findings of cyber threats, subsequent remediation, and recovery in an effective and consistent manner.
  • Executes the Incident Response Lifecycle and coordinates remediation activities throughout the organization and its lines of business as a part of Cyber Incident Response handling.
  • Presenting Incident, improvements, and features to senior management.

Requirements

Recent & relevant experience within an incident response role:

  • Understand threat analysis / threat modelling.

  • Experience with endpoints/EDR in an MDR.
  • Experience of managing complex and challenging Cyber Security or Service Incidents.
  • Understanding of common cybersecurity threats and terminology including but not limited to phishing, malware, and data compliance.
  • Ability to create structured reports on cybersecurity incidents.
  • Proficient project management, organization, and communication skills.
  • Self-motivated, innovative, and willingness to learn.

Benefits & conditions

We’re the UK’s largest mutual life, pensions and investment company, offering protection, long-term savings and asset management products and services.

Our People Promise to our colleagues is that we will all work somewhere inclusive, responsible, enjoyable and fulfilling. This is underpinned by our Spirit of Royal London values; Empowered, Trustworthy, Collaborate, Achieve.

We’ve always been proud to reward employees by offering great workplace benefits such as 28 days annual leave in addition to bank holidays, an up to 14% employer matching pension scheme and private medical insurance.

Inclusion, diversity and belonging

We’re an inclusive employer. We celebrate and value different backgrounds and cultures across Royal London. Our diverse people and perspectives give us a range of skills which are recognised and respected - whatever their background.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

Videos

See all

Related articles

See all