Cyber Security Incident Response Engineer

Hydrogen
Welwyn Garden City, UK
2 months ago

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Cloud Computing Security Cyber Security Runbook Security Information and Event Management Mitre Att&ck Cyber Threat Analysis Security Orchestration, Automation & Response

Job description

6-month initial contract Inside IR35 1 day per week onsite in Welwyn Garden City Day rate highly flexible for the right person

I’m working with a large retail business, and they are looking for a Security Engineer to help build and mature their Cyber Security Incident Response capability.

This is a strategic and hands-on role, working closely with the Cyber Security Incident Manager, SOC, DFIR, Threat Intelligence and Engineering teams to improve the organisation’s readiness for high-impact cyber incidents such as ransomware, insider threats and major security breaches.

Key experience required:

  • CSIRT, SOC or Incident Response experience within a large enterprise environment.
  • Building and improving incident response capabilities, processes, playbooks and runbooks.
  • Supporting tabletop exercises, simulations and cyber readiness activities.
  • Knowledge of frameworks such as NIST, ISO 27035 and MITRE ATT&CK.
  • Experience with security tooling including SIEM, SOAR, EDR/XDR and cloud security platforms.
  • Strong stakeholder management and documentation skills.
  • Ability to drive continuous improvement across cyber incident response and resilience.

Requirements

  • CSIRT, SOC or Incident Response experience within a large enterprise environment.
  • Building and improving incident response capabilities, processes, playbooks and runbooks.
  • Supporting tabletop exercises, simulations and cyber readiness activities.
  • Knowledge of frameworks such as NIST, ISO 27035 and MITRE ATT&CK.
  • Experience with security tooling including SIEM, SOAR, EDR/XDR and cloud security platforms.
  • Strong stakeholder management and documentation skills.
  • Ability to drive continuous improvement across cyber incident response and resilience.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on computerjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · World Congress 2026 Europe

6:03 min

Engaging software developers deeply in secure engineering practices

Tanya Janca · World Congress 2021

Videos

See all

Related articles

See all