2,782 Security Breaches jobs in the United Kingdom
Senior Information Security Analyst (SIEM & Incident Response)
Posted 20 days ago
Job Viewed
Job Description
Responsibilities:
- Manage, configure, and optimize the SIEM platform to effectively detect, analyze, and report on security threats and incidents.
- Develop and tune correlation rules, alerts, and dashboards to identify malicious activity and anomalies.
- Lead and coordinate incident response activities, including investigation, containment, eradication, and recovery.
- Perform forensic analysis of security incidents to determine root cause and impact.
- Conduct vulnerability assessments and penetration testing, and work with relevant teams to remediate findings.
- Develop and maintain incident response plans, playbooks, and standard operating procedures.
- Monitor security logs and threat intelligence feeds to stay ahead of emerging threats.
- Provide technical expertise and guidance on security best practices to IT and business units.
- Collaborate with internal teams and external stakeholders during security investigations.
- Stay current with the latest cybersecurity threats, vulnerabilities, and defense techniques.
- Contribute to the continuous improvement of the organization's overall security posture.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum of 5 years of experience in information security, with a strong focus on SIEM management and incident response.
- Hands-on experience with leading SIEM solutions (e.g., Splunk, QRadar, LogRhythm, Microsoft Sentinel).
- Proficiency in log analysis, threat hunting, and security event correlation.
- Strong understanding of network security, endpoint security, and cloud security principles.
- Experience with forensic tools and techniques for incident investigation.
- Knowledge of common attack vectors, malware, and intrusion techniques.
- Relevant security certifications such as CISSP, GCIA, GCIH, CEH, or equivalent are highly desirable.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and interpersonal skills, with the ability to work effectively under pressure.
Senior Information Security Analyst - Threat Detection and Incident Response
Posted 3 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor and analyze security alerts from various systems.
- Investigate and respond to security incidents in a timely and effective manner.
- Develop and maintain threat detection rules and signatures.
- Conduct digital forensics and malware analysis when required.
- Create and update incident response playbooks and procedures.
- Collaborate with IT and other departments to implement security controls.
- Provide regular reports on security incidents and trends to management.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent experience.
- Minimum of 5 years of experience in information security, with a focus on threat detection and incident response.
- Proficiency with SIEM tools (e.g., Splunk, QRadar), IDS/IPS, and EDR solutions.
- Strong understanding of networking protocols, operating systems, and common attack vectors.
- Experience with digital forensics and malware analysis techniques.
- Excellent analytical, problem-solving, and critical thinking skills.
- Ability to work independently and as part of a remote team.
Information Security Analyst
Posted today
Job Viewed
Job Description
Information Security Analyst | Security+, Microsoft Purview, Defender | Global Trading Platform
- £60–70k base + 10% bonus
- Hybrid in Coventry with monthly travel to London
- Security certification support & career development built-in
Join a growing InfoSec team at the heart of a global financial institution’s expansion. As an Analyst, you’ll work hands-on with data governance, security tooling, and access management — helping to shape how a modern SME approaches cybersecurity. You’ll bring technical curiosity, the ability to interrogate data, and the confidence to advise IT teams on the practical steps that keep the business secure.
What you’ll bring:
- 3+ years’ experience in an InfoSec, IT security, or analyst role
- Security certifications: Security+ and ideally Microsoft security certifications (e.g. SC-200/SC-400)
- Experience with security tools (Microsoft Defender, web proxy, email security, CrowdStrike or equivalents)
- Knowledge of single sign-on and zero trust networks (beyond just segregation)
- Exposure to data management / governance tools (e.g. Microsoft Purview, or similar)
- Strong communicator: able to translate technical concepts into practical advice for IT and stakeholders
What you’ll be doing:
- Recertification of accounts : Pulling and interrogating data through bespoke platforms
- Security tooling : Working with Defender, web proxy, CrowdStrike-equivalent tools
- Data management : Supporting data labelling & retention projects using Purview or similar
- Governance support : Involved in data loss prevention, labelling, and stakeholder engagement (including DPO)
- Practical incident response input : Advising IT on immediate steps during incidents, converting theory into quick, actionable responses
- Ongoing InfoSec operations : Metrics, monitoring, and security projects across applications and users
Tech & tools you’ll use:
- Microsoft Purview – Data governance and policy enforcement
- Microsoft Defender – Endpoint & email protection
- CrowdStrike / equivalents – Endpoint detection & response
- Web proxy & email security tools
- Azure (beneficial) – IAM, monitoring, and security logging
Why this role?
- Be central to shaping data governance and security operations in a dynamic SME environment
- Hands-on exposure to a wide range of security tools and concepts (not siloed to audit work)
- Opportunity to advise and influence IT directly on practical security decisions
- Work alongside experienced InfoSec leadership who value mentoring and professional growth
If this sounds like something you would be interested in, please apply!
Information Security Analyst | Security+, Microsoft Purview, Defender | Global Trading Platform
Information Security Consultant
Posted today
Job Viewed
Job Description
Information Security Consultant - Virtual CISO (vCISO)
Up to £80,000 | Fully Remote (with occasional client travel)
My client is seeking an experienced cyber security professional to step into a Virtual CISO (vCISO) role, acting as a trusted advisor to a diverse portfolio of organisations. This is an opportunity to directly influence and shape cyber security strategies at board level while embedding yourself as a valued extension of your clients’ security teams.
Key Responsibilities
- Serve as a strategic security partner, helping clients to define, develop, and mature their cyber security roadmap.
- Build strong, long-term relationships with stakeholders and establish yourself as a core member of their security function.
- Take ownership of client-specific Security Improvement Plans, ensuring risks are reduced and resilience is increased.
- Lead governance and oversight activities, including risk reviews, board-level reporting, and mentoring client teams.
- Carry out security reviews across cloud, hybrid, and on-premises environments, identifying vulnerabilities and improvement areas.
- Work closely with SOC teams to review threat hunting outcomes and ensure remediation of poor practices.
- Provide guidance on compliance and frameworks such as ISO 27001, Cyber Assessment Framework (CAF), and Cyber Essentials.
- Contribute to incident readiness and response as part of the Cyber Security Incident Response Team (CSIRT).
- Actively contribute to the internal growth and knowledge-sharing within the wider team, suggesting improvements and supporting colleagues.
- Ensure compliance with internal security and governance standards.
About You:
- Proven experience as a CISO, vCISO, or senior cyber security advisor.
- Strong knowledge of security frameworks, governance, risk management, and compliance.
- Excellent communication and stakeholder engagement skills, with the ability to influence at board level.
- Hands-on experience with cloud and hybrid architectures, audits, and security assessments.
- Incident response and crisis management experience is a plus.
- Holding CISSP/CISM
- ISO27001 Lead implementer
What’s on Offer
- Salary up to £80,000
- Fully remote role with flexibility to travel to client sites when required
- Opportunity to work across varied industries, influencing security at the highest levels
If you’re looking for a role where you can combine strategic influence with hands-on expertise, and you thrive on building trusted client relationships, this could be your next career move.
Information Security Manager
Posted 2 days ago
Job Viewed
Job Description
Information Security Manager - Rail Sector, URGENT HIRE
Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their Information Security Manager.
The Role:
- Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management.
- Working alongside the DPO and Head of Technology to support on areas of data protection.
- Lead collaboration with key partners for train onboard systems cyber security assessments and risk management
- Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and governance practices
- Manage the information security incident response program
- Manage implementation and deployment of Information Security Management System (ISMS).
- Line management of the internal InfoSec specialists.
Requirements
- Extensive experience working with PCI-DSS and ISO27001
- Strong understanding on security tools such as IDS/IPS.
- Demonstrable experience of leading Information Security, Governance, Compliance teams.
- Ideally a form of cybersecurity qualification such as CISM or CISSP
Benefits:
- Salary between £55,000 - £70,000
- Hybrid working 3 days on site, 2 days at home.
- Working in Euston or Birmingham office.
- & more.
Sponsorship is not available for this position and the successful candidate will be subject to toxicology screening as standard for the rail industry.
We are looking for this hire ASAP so those will short (1 month or less) notice periods are encouraged to apply.
Information Security Manager
Posted 2 days ago
Job Viewed
Job Description
Information Security Manager - Rail Sector, URGENT HIRE
Lawrence Harvey is delighted to be exclusively supporting a leading rail client once again to support with the growth of their exceptional technology team for their Information Security Manager.
The Role:
- Leading management of information security which includes ISO27001, PCI-DSS, and vulnerability management.
- Working alongside the DPO and Head of Technology to support on areas of data protection.
- Lead collaboration with key partners for train onboard systems cyber security assessments and risk management
- Establish and maintain appropriate policies, procedures, and practices in relations to cyber, data and governance practices
- Manage the information security incident response program
- Manage implementation and deployment of Information Security Management System (ISMS).
- Line management of the internal InfoSec specialists.
Requirements
- Extensive experience working with PCI-DSS and ISO27001
- Strong understanding on security tools such as IDS/IPS.
- Demonstrable experience of leading Information Security, Governance, Compliance teams.
- Ideally a form of cybersecurity qualification such as CISM or CISSP
Benefits:
- Salary between £55,000 - £70,000
- Hybrid working 3 days on site, 2 days at home.
- Working in Euston or Birmingham office.
- & more.
Sponsorship is not available for this position and the successful candidate will be subject to toxicology screening as standard for the rail industry.
We are looking for this hire ASAP so those will short (1 month or less) notice periods are encouraged to apply.
Information Security Engineer
Posted 2 days ago
Job Viewed
Job Description
Security Engineer (Hybrid – Manchester)
Salary: £40,000 – £43,000 DOE
Overview
Our client is seeking a Security Engineer to strengthen their cyber resilience and ensure effective protection against evolving threats. This role combines technical security expertise with the ability to support compliance initiatives and drive incident response readiness.
You will play a key role in managing cyber incident response planning , leading compliance activities (CIS Controls, ISO 27001, Cyber Essentials+), and configuring/optimising the CrowdStrike Falcon platform. The ideal candidate will also be comfortable designing and running desktop exercises to ensure IT staff are prepared to respond effectively to potential incidents.
This is a hybrid position based in Manchester , offering the opportunity to shape security practices within a supportive and collaborative organisation.
Key Responsibilities
- Lead and maintain the organisation’s cyber incident response plan .
- Develop and run desktop exercises to test incident response readiness and train IT staff.
- Administer and optimise CrowdStrike Falcon , including creation and implementation of playbooks.
- Support compliance activities, audits, and risk assessments aligned to ISO 27001, CIS Controls, and Cyber Essentials+ .
- Investigate and remediate security incidents, alerts, and vulnerabilities.
- Support patch management, vulnerability scanning, and secure configuration activities.
- Produce and maintain documentation including playbooks, procedures, and incident records.
- Collaborate with ICT and leadership teams to improve overall cyber security maturity.
Person Profile
We are looking for a candidate who is proactive, analytical, and able to communicate effectively with both technical and non-technical stakeholders. You’ll need to be comfortable working across teams, influencing security practices, and ensuring operational readiness in the event of a cyber incident.
Skills & Experience
Essential:
- Proven experience in a cyber security or infrastructure role with incident response responsibilities.
- Strong hands-on knowledge of CrowdStrike Falcon , including the ability to design and implement playbooks.
- Experience managing or contributing to compliance programmes (e.g. ISO 27001, CIS, Cyber Essentials+ ).
- Ability to lead incident response planning and facilitate response exercises.
- Familiarity with patch management, vulnerability assessment, and endpoint/server hardening.
- Clear written and verbal communication skills, with the ability to train and guide IT staff.
Desirable:
- Exposure to SIEM tools (e.g. Sentinel, Splunk).
- Scripting or automation skills (PowerShell, Python).
- Knowledge of UK GDPR and data protection requirements.
- Security certification (e.g. Security+, CISSP, ISO 27001 Lead Implementer/Auditor).
Be The First To Know
About the latest Security breaches Jobs in United Kingdom !
Information Security Manager

Posted 6 days ago
Job Viewed
Job Description
**Job Title:** Information Security Manager
**Location:** London, UK or Birmingham hybrid Variable
**Department:** Information Security
**About Us:**
NTT Data is a leading Managed Service Provider (MSP) with a global reach empowering local team, undertaking hugely exciting work and is genuinely changing the world.
We specialise in delivering cutting-edge IT and cybersecurity solutions to our diverse client base. We provide expert-managed services to help clients protect their data, comply with regulations, and manage evolving cyber threats. We are looking for a skilled Information Security Manager to join our team and be billed out to a key client to enhance their information security posture.
**What you'll be doing:**
**What you will be doing;**
We are seeking an experienced Information Security Manager to play a critical role in ensuring the security and resilience of our client's IT systems and data. As a client-facing professional, you will act as the pivotal point of contact for all matters relating to information and cybersecurity. You will collaborate closely with multiple teams to develop, implement, and manage robust information security frameworks, policies, and protocols.
This role combines both strategic leadership and technical expertise, enabling you to influence decision-making, advise on best practices, and ensure continuous improvement in the security posture. You will lead efforts in risk management, regulatory compliance, incident response, and security awareness training, while ensuring the client remains aligned with industry standards and legal requirements (e.g., ISO 27001, GDPR, Cyber Essentials). Your expertise will help mitigate risks, defend against cyber threats, and maintain the highest level of security across the client's infrastructure, all while maintaining a clear focus on delivering outstanding service and value.
Key to your success will be your ability to manage complex security challenges, foster strong relationships with teams, and drive a proactive security culture within their organisation.
**Core responsibilities;**
+ Act as the primary information security point of contact for relevant teams, developing a trusted relationship and advising on all aspects of cybersecurity.
+ Develop, implement, and maintain information security policies, procedures, and frameworks, ensuring alignment with industry standards (e.g., ISO 27001, NIST) and legal requirements (e.g., GDPR, Cyber Essentials).
+ Conduct security risk assessments and vulnerability management for the client, providing actionable recommendations to mitigate risks.
+ Lead incident detection, investigation, and response efforts, ensuring minimal impact to the client's business operations.
+ Collaborate with the client's IT and business teams to integrate security solutions and processes that align with their goals.
+ Deliver regular reporting to the client on security status, incidents, risks, and compliance with agreed SLAs and KPIs.
+ Provide guidance and support for the client in meeting their regulatory obligations (e.g., GDPR compliance, data protection).
+ Oversee and lead security audits, penetration testing, and vulnerability assessments for the client.
+ Manage security awareness training programs for the client's staff, fostering a culture of cybersecurity awareness.
+ Provide ongoing advice on emerging threats, vulnerabilities, and security best practices, helping the client stay ahead of the curve.
+ Ensure that the client's information security posture is continuously improved through proactive security measures, monitoring, and reporting.
**What experience you'll bring:**
**What you will bring;**
Proven experience (typically 5+ years) in information security management or a related role, preferably within an MSP or client-facing environment.
+ Strong understanding of UK and international cybersecurity regulations, including GDPR, Cyber Essentials, and ISO 27001.
+ Experience managing and leading security operations, incident response, and risk assessments.
+ Understanding and knowledge of security technologies (SIEM, firewalls, endpoint protection, encryption, etc.) and practices (vulnerability management, penetration testing).
+ Experience working in a service delivery or consultancy capacity with external clients.
+ Excellent communication skills, able to convey technical security information to non-technical stakeholders at all levels.
+ Relevant certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.
**Desirable Attributes:**
+ Strong stakeholder engagement experiences.
+ Ability to work independently, take initiative, and work in a dynamic environment.
+ Proactive approach to identifying and solving problems before they escalate.
+ Strong leadership and mentoring skills to support junior staff and teams.
+ Ability to translate business needs into security solutions.
**Who we are:**
We're a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects.
Our inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks such as: the Women's Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network.
For more information on Diversity, Equity and Inclusion please click here: Creating Inclusion Together at NTT DATA UK | NTT DATA ( we'll offer you:**
We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.
You can find more information about NTT DATA UK & Ireland here: are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a proud Disability Confident Committed Employer - we are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.
Back to search Email to a friend Apply now
Information Security Analyst
Posted today
Job Viewed
Job Description
Key Responsibilities:
- Monitor security systems and respond to security alerts and incidents.
- Conduct vulnerability assessments and penetration testing.
- Analyse security logs and event data to identify suspicious activities.
- Develop, implement, and enforce information security policies and procedures.
- Assist in the management of security technologies such as firewalls and IDS/IPS.
- Support incident response activities and conduct post-incident analysis.
- Contribute to security awareness training and promote a strong security culture.
- Ensure compliance with relevant data protection regulations (e.g., GDPR).
- Collaborate with IT teams to implement and maintain security controls.
- Research emerging cybersecurity threats and recommend appropriate countermeasures.
- Bachelor's degree in Computer Science, Cybersecurity, IT, or a related field.
- Proven experience in information security analysis or a similar role.
- Knowledge of network security principles, protocols, and technologies.
- Experience with SIEM tools and log analysis.
- Familiarity with vulnerability assessment and penetration testing methodologies.
- Understanding of security frameworks and compliance standards (e.g., ISO 27001, NIST).
- Relevant security certifications (e.g., Security+, CISSP, CEH) are highly desirable.
- Strong analytical and problem-solving skills.
- Excellent communication and teamwork abilities.
Information Security Architect
Posted 1 day ago
Job Viewed
Job Description
- Design, develop, and implement secure enterprise-wide IT and security architectures, ensuring alignment with business objectives and regulatory requirements.
- Evaluate and select security technologies and solutions, such as firewalls, intrusion detection systems, SIEM, identity and access management (IAM), and encryption.
- Develop security policies, standards, and guidelines, and ensure their effective implementation across the organisation.
- Conduct security risk assessments and threat modeling for new and existing systems and applications.
- Provide expert guidance on security best practices to IT teams, developers, and business stakeholders.
- Oversee the integration of security controls into the software development lifecycle (SDLC) and infrastructure deployment processes.
- Collaborate with IT operations to ensure the secure configuration and management of networks, servers, cloud environments, and endpoints.
- Lead security architecture reviews and provide recommendations for improving the overall security posture of the organisation.
- Stay abreast of emerging security threats, vulnerabilities, and technologies, and proactively incorporate relevant solutions into the security architecture.
- Develop and maintain security architecture documentation, including diagrams, specifications, and strategy documents.
- Participate in incident response planning and provide architectural support during security incidents.
- Ensure compliance with relevant industry standards (e.g., ISO 27001, NIST) and regulatory frameworks (e.g., GDPR).
- Mentor junior security professionals and contribute to the development of security expertise within the organisation.
- Master's degree in Computer Science, Information Security, Cybersecurity, or a related field.
- A minimum of 7 years of experience in information security, with at least 3 years in a security architecture or design role.
- Deep understanding of security principles, frameworks, and best practices, including threat modeling, risk assessment, and incident response.
- Proven experience in designing and implementing security architectures for complex IT environments, including on-premises and cloud (AWS, Azure, GCP).
- Expertise in various security technologies such as IAM, network security, endpoint security, data encryption, and application security.
- Familiarity with relevant industry standards and regulatory compliance requirements.
- Strong analytical, problem-solving, and strategic thinking skills.
- Excellent communication, collaboration, and leadership skills, with the ability to influence stakeholders at all levels.
- Professional certifications such as CISSP-ISSAP, SABSA, or equivalent are highly desirable.
- Experience with scripting and automation tools for security operations is a plus.