Incident Response Specialist

Published
September 10, 2026
Location
London, United Kingdom
Category
Job Type
Salary
£500 - £600 per day

Description

Incident Response Specialist

Working Hours: Wednesday to Saturday, 08:00 to 17:45 (UK Time)
Rate: £500 - £600 per day inside IR35

Fully Remote

About the Role

We are seeking an experienced Incident Response Specialist to join a high-performing Cyber Security team responsible for defending a complex enterprise environment against evolving cyber threats. The role offers the opportunity to work in the Banking sector.

This is an excellent opportunity for a cyber security professional looking to further develop their expertise in incident response, digital forensics, threat containment, and enterprise-scale cyber operations. You will work alongside experienced professionals across Threat Intelligence, Detection Engineering, Security Operations, and Incident Management functions, responding to sophisticated security incidents and helping to strengthen the organisation's overall security posture.

Why Apply?

  • Join a mature and advanced cyber incident response function.
  • Investigate real-world cyber incidents and security breaches.
  • Gain exposure to enterprise-scale security operations and leading EDR technologies.
  • Contribute to cyber defence improvements and operational enhancements.
  • Collaborate with globally distributed cyber security teams.
  • Develop your technical expertise in digital forensics and incident handling within a dynamic and fast-paced environment.

Key Responsibilities

  • Investigate and respond to cyber security incidents across the enterprise environment.
  • Perform host-based investigations, forensic analysis, and threat containment activities.
  • Monitor and support critical information security technologies operating within a 24/7 environment.
  • Work closely with internal and external stakeholders to support cyber security operations.
  • Develop and maintain investigation procedures, operational playbooks, and incident documentation.
  • Produce high-quality incident reports and executive-ready summaries.
  • Support continuous improvement initiatives across the cyber security function.
  • Coordinate incident management activities and engage third-party service providers where required.
  • Provide technical cyber security expertise and guidance to internal stakeholders.
  • Assist in strengthening detection, response, and recovery capabilities through lessons learned and post-incident reviews.

Required Experience

Applicants should have experience in the following areas:

  • 2 to 4 years' experience within Security Operations and Incident Response.
  • 2 to 4 years' experience investigating cyber security incidents and security breaches.
  • 2 to 4 years' experience in digital forensics and forensic analysis.
  • Hands-on experience with Endpoint Detection and Response (EDR) technologies.
  • Experience conducting live response investigations and developing host activity timelines.
  • Experience creating operational processes, procedures, and technical documentation.
  • Strong incident reporting and stakeholder communication skills.

Skills & Competencies

  • Strong analytical and investigative capabilities.
  • Excellent problem-solving skills and attention to detail.
  • Ability to remain calm and effective during high-severity security incidents.
  • Strong communication and stakeholder management skills.
  • Experience working collaboratively across technical and non-technical teams.
  • Ability to prioritise and manage multiple investigations simultaneously.

Qualifications

  • Degree in Computer Science, Information Security, Cyber Security, Business, or a related discipline, or equivalent practical experience.
  • 2 to 4 years of relevant Information Security or Cyber Security experience.
  • Hands-on experience conducting cyber investigations and working with enterprise security technologies.
  • Industry certifications are highly desirable, including:
    • CISSP
    • GCIH
    • GCIA
    • GSEC
    • CISM
    • CRISC
    • Other GIAC or ISACA certification
Apply
Drop files here browse files ...

I confirm that I have read and accept the Privacy Policy. By sending my CV, I give my consent for Marcus Donald People to process and store my personal data, share my CV with clients and receive marketing communications regarding job opportunities

You can withdraw your consent at any point by emailing consent@marcusdonald.com

Related Jobs

Purview Application Support   Poplar, United Kingdom
March 31, 2026
Senior Data Governance Manager   Canary Wharf, United Kingdom
January 6, 2026
Regulatory Reporting Senior Analyst   London, United Kingdom
July 15, 2025
Scroll to Top
Are you sure you want to delete this file?
/