> Markdown version of [/jobs/ext/724953-incident-response-analyst-remote](https://www.wearedevelopers.com/jobs/ext/724953-incident-response-analyst-remote). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Incident Response Analyst - Remote - **Company:** UST - **Location:** UK (Remote available) - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Application Testing, Business Process Modeling, Cloud Computing, Cyber Security, Computer Forensics, Digital Forensics, Forensics Tools (Digital Forensics Software), Identity and Access Management, Intrusion Detection and Prevention, PCI Data Security Standards, Reverse Engineering, Security Information and Event Management, Software Security, Malware - **Published:** June 29, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=3350a4326d2bd231 ## About the Role Do you have experience in SIEM?, * Experience with incident management in cloud-based environments * Knowledge of the tools and processes for maintaining application security; Skills/knowledge of designing and implementing security programs * Experience of application testing to detect bugs, flaws and insecure configurations. * Experience of responding to application threats following established security policy. * Knowledge of concepts, tools and practices of dealing with computer crime; Experience of detecting and preventing crimes that involve computers/networks as instruments. * Sound knowledge of information security * Knowledge of techniques, approaches and processes of digital threats; Experience of detecting, monitoring, analysing and preventing digital threats. * Knowledge of concept, issues and techniques of endpoint security; Experience of ensuring security compliance of endpoint devices in various circumstances * Demonstrable experience in fields such as information security, incident response, or related domains. * Demonstrate experience in incident response, security monitoring, digital forensics, and advanced malware analysis. * Experience of identifying, managing, and producing incident updates, reports, and recommendations to SLT to facilitate decision-making and risk management. Nice to have: * Knowledge of identity and access management (IAM) security principles and insider threat detection tooling * Familiarity with container and Kubernetes security monitoring * Experience with reverse engineering or sandbox analysis of malware samples * Understanding of regulatory and compliance frameworks relevant to financial services (e.g. PCI-DSS, GDPR, DORA, NIST CSF) * Experience with SIEM platforms, intrusion detection,computer forensics,endpoint security,incident response ## Description * Monitors the performance and efficiency of computer forensics practices. * Operates intrusion detection and prevention technologies, systems and tools to monitor, analyse and respond to networks and systems. * Monitors forensics procedures and adjusts digital forensics tools accordingly. * Ensures optimisation in order to increase the response speed and outcome reliability. * Assists in developing internal control reports provided to external auditors. * Application of information security laws in computer crime investigation. * Analyses unexpected network or system events, assessing their impact, and devising and implementing actions to stop them. * Manages the sharing of important information quickly and accurately. * Supports the monitoring/review of policies, processes/procedures and prioritise operations. Leads and manages incident response activities. * Communicates to senior leads awareness of significant incidents. * Support the development of enhance strategies and incident response playbooks. * Manage stakeholder relationships and streamline processes. * Shape and implement products and processes to protect the bank from Insider threat. * Develops appropriate metrics to display the effectiveness of Insider threat. * Monitor/review processes/systems and product performance to ensure continuous improvements are made to prevent and eliminate insider threats. ## Related Videos - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)