> Markdown version of [/jobs/ext/3562062-security-incident-management-analyst-x-3](https://www.wearedevelopers.com/jobs/ext/3562062-security-incident-management-analyst-x-3). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Incident Management Analyst x 3 - **Company:** CBS Butler Limited - **Location:** Penwortham, UK - **Salary:** £117,000.0 - £130,000.0 - **Contract:** Temporary contract - **Skills:** Cyber Security, SC Clearance - **Published:** October 3, 2026 - **Apply:** https://find.jobs/jobs-near-me/apply/ats-redirect/?id=2992045935-2 ## About the Role * Experience in security incident management, cyber security, IT service management or operational governance * Good understanding of incident lifecycle, severity classifications and escalation processes * Strong supplier/stakeholder coordination and reporting skills * Experience within SIAM or multi-supplier environments is highly desirable * ITIL Incident Management knowledge would be beneficial * Government, defence or regulated-sector experience is advantageous * Active SC clearance is essential ## Description This is a governance and coordination role rather than a hands-on SOC position. You will work across suppliers and security stakeholders to ensure incidents are effectively tracked, escalated, reported and evidenced., * Track security incidents from identification through to closure * Coordinate incident updates across multiple suppliers * Monitor SLAs, resolution performance and escalation trends * Produce incident reports, dashboards and governance packs * Identify gaps in supplier reporting, ownership and evidence * Support incident governance and operational review forums * Maintain accurate, traceable and audit-ready incident records * Support assurance, audit and continuous improvement activities, Please note: This is not a SOC Analyst or hands-on incident response role. You will not be responsible for threat hunting, SOC monitoring or technical remediation.