Detection & Response Engineer

Lloyds Bank plc

City of Edinburgh

Hybrid

GBP 73,000 - 81,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

30 days holiday
Pension scheme
Private health cover
Flexible benefits

Job summary

Lloyds Banking Group in Edinburgh is recruiting a Detection & Response Engineer to defend against cyber threats in the Cyber Defence Centre. You will lead investigations, analyze events, and help enhance detection and response capabilities across the organisation.

The role involves hybrid work with two days per week on-site, contributing to automation and threat detection efforts while coaching peers and participating in occasional on-call duties.

Qualifications

  • Experience investigating cyber incidents in a SOC or similar environment.
  • Ability to analyse attacker behaviour and threat intelligence to support detection.
  • Strong problem solving and communication skills.
  • Experience coaching technical colleagues.

Responsibilities

  • Lead complex investigations into security alerts and incidents.
  • Analyse events and threat intel to determine response actions.
  • Undertake threat hunting and forensic investigations.
  • Improve detection and response capabilities through automation and AI.
  • Coach and support colleagues to raise engineering capability.
  • Participate in an on-call rota for a small number of weeks each year.

Skills

Incident response
Threat hunting
Threat intelligence
Automation & AI
Communication
Mentoring
Threat detection

Job description

End Date Monday 28 September 2026 Salary Range £72,702 - £80,780 Flexible Working Options Flexibility in when hours are worked, Hybrid Working, Job Share

Job Description Summary . Job Description Detection & Response Engineer SALARY: £72,702 - £80,780 LOCATION(S): Edinburgh, Bristol, Leeds, Manchester HOURS: Full time WORKING PATTERN: Our work style is hybrid, which involves spending at least two days per week, or 40% of your time, at one of our office sites.

About this opportunity

Help defend one of the UK's largest organisations against evolving cyber threats! As a Detection & Response Engineer within our Cyber Defence Centre, you'll play a key role in protecting the organisation from cyber threats by leading complex investigations, identifying malicious activity and continuously enhancing our detection and response capabilities. Working alongside experienced cyber defence professionals, you'll act as a technical specialist, contributing to the identification, investigation, containment and remediation of security incidents while helping strengthen our cyber resilience. This is an individual contributor role, offering opportunities to provide technical leadership, coach colleagues and influence how we detect and respond to threats!

What you'll do
  • Lead complex investigations into security alerts, incidents and emerging threats, driving effective containment, eradication and recovery activities.
  • Analyse security events, attacker behaviours and threat intelligence to identify risks and determine appropriate response actions.
  • Undertake threat hunting, forensic investigations and proactive cyber defence activities to identify previously unknown threats.
  • Improve cyber defence capabilities through continuous detection and response activities, helping enhance operational effectiveness.
  • Use automation, AI and modern security tooling to improve the efficiency and effectiveness of detection and response engineering.
  • Coach and support colleagues, sharing technical expertise and lessons learned to help develop team capability and engineering excellence.
  • Participate in an on‑call rota for a small number of weeks each year.
About us / Why Lloyds Banking Group

Our continued dedication to helping Britain prosper means that as a colleague you can make a difference to customers, businesses and communities. Together we have a key role to play in shaping the bank of the future, whilst the scale and reach of our Group means you'll continue to have opportunities to learn, grow and develop.

We're focused on creating a values‑led culture, and our approach to inclusion and diversity means that we all have the chance to make a real difference, together.

What you’ll need
  • Strong experience investigating cyber security incidents within a Security Operations Centre, Cyber Defence, Threat Hunting, Incident Response or similar environment.
  • Expertise in analysing attacker behaviour, security events and threat intelligence to support effective detection and response outcomes.
  • Strong problem‑solving and critical thinking skills, with the ability to assess complex situations and determine appropriate actions.
  • Experience influencing technical outcomes through collaboration, exchanging information, and technical expertise.
  • Experience coaching, mentoring or supporting the development of technical colleagues.
  • Strong written and verbal communication skills, with the ability to explain technical findings to both technical and non‑technical audiences.
  • And any experience of this would be really useful Experience in one or more specialist cyber defence disciplines such as Threat Hunting, Detection Engineering, Threat Analysis or Digital Forensics.
  • Experience using automation and AI capabilities to improve cyber defence processes.
  • Knowledge of enterprise‑scale security tooling and technologies.

This is a place for you... Our ambition is to be the leading UK business for diversity, equity and inclusion, supporting our customers, colleagues and communities.

We are committed to creating an environment in which everyone can thrive, learn and develop.

We were one of the first major organisations to set goals on diversity in senior roles, create a menopause health package, and launch a dedicated Working with Cancer initiative.

We offer reasonable workplace adjustments for colleagues with disabilities, including flexibility in office attendance, location and working patterns. As a Disability Confident Leader, we guarantee interviews for a fair and proportionate number of applicants who meet the minimum criteria for the role and have a disability, long-term health or neurodivergent condition, through the Disability Confident Scheme. We provide reasonable adjustments throughout the recruitment process to reduce or remove barriers - just let us know what you need.

Benefits
  • 30 days' holiday, with bank holidays on top.
  • A generous pension contribution from the Group.
  • Private health cover and wellbeing support.
  • Access to a wide range of colleague benefits and flexible benefits options.
  • Ongoing learning, development and career growth opportunities.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Detection & Response Engineer
Lead Detection & Response Engineer

Lloyds Bank plc • City of Edinburgh

Hybrid
GBP 73,000 - 81,000
30 days holiday
Pension contribution
Discretionary annual performance‑relat
+2
Head of Cyber Defence Centre
Head of Cyber Defence Centre

Lloyds Banking Group • Manchester

Hybrid
GBP 140,000 - 190,000
Pension up to 15%
Annual bonus
Share schemes
+4
Lead Cyber Defense & Detection Engineer
Lead Cyber Defense & Detection Engineer

Lloyds Bank plc • City of Edinburgh

Hybrid
GBP 73,000 - 81,000
30 days holiday
Pension contribution
Discretionary annual performance‑relat
+2
Hybrid Senior Threat Detection & Response Lead
Hybrid Senior Threat Detection & Response Lead

Lloyds Bank plc • City of Edinburgh, West of England, Leeds, Manchester

Hybrid
GBP 73,000 - 81,000
Hybrid working
Job Share
Flexible hours
Read more
Read more

Lloyds Banking Group • City of Edinburgh

Hybrid
GBP 65,000 - 90,000
Pension up to 15%
Annual bonus
Share schemes
+3
Read more
Read more

Lloyds Banking Group • Leeds

Hybrid
GBP 75,000 - 110,000
Pension up to 15%
Performance bonus
Share schemes
+3
Software Engineer
Software Engineer

Lloyds Bank plc • United Kingdom

Hybrid
GBP 47,000 - 71,000
Security Engineer - Detection & Response | Leading Global Investment Group
Security Engineer - Detection & Response | Leading Global Investment Group

Techfellow Limited • Greater London

Hybrid
GBP 250,000 - 350,000
Senior Cyber Threat Detection and Response Analyst
Senior Cyber Threat Detection and Response Analyst

weServed • Portsmouth

Hybrid
GBP 70,000 - 100,000
Generous holiday allowance
Pension with life assurance
Digital GP and health checks
Principal Analyst Detection Engineering - Technology Vendor
Principal Analyst Detection Engineering - Technology Vendor

Hamilton Barnes Associates Limited • United Kingdom

Remote
GBP 60,000 - 70,000
Remote-first with travel