Incident Response Analyst

Hamilton Barnes ?

United Kingdom

Remote

GBP 45,000 - 55,000

Full time

14 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Hamilton Barnes is seeking an Incident Response Analyst for a fully remote role in the UK. You will lead the full lifecycle of cyber incidents across enterprise environments, triaging, containing, eradicating and recovering while guiding client stakeholders.

The role emphasizes real-world breaches, development of playbooks, mentoring junior analysts, and improving detection and response capabilities within SIEM/EDR/SOAR tooling.

Qualifications

  • 4+ years of incident response, SOC, or security consulting
  • Experience handling high-severity client incidents
  • Strong networking, endpoint security, and digital forensics knowledge

Responsibilities

  • Own end-to-end lifecycle of cyber incidents from triage to recovery
  • Conduct forensic investigations across endpoints, networks and cloud
  • Lead live compromise assessments for suspected breaches
  • Develop incident response playbooks and runbooks
  • Deliver post-incident reviews and remediation strategies
  • Produce incident and forensic reports for technical and non-technical audiences

Skills

Incident response
SOC experience
Communication
Mentorship
Calm under pressure

Tools

Microsoft Defender
Microsoft Sentinel
CrowdStrike
SentinelOne

Job description

Incident Response Analyst | £45,000 – £55,000 | Fully Remote

This is a client-facing Incident Response position within a specialist cyber security consultancy, focused on leading and supporting the full lifecycle of cyber incident investigations across enterprise environments. You will work on high-impact, real-world breaches across host, network, and cloud environments, taking ownership from initial triage through to containment, eradication, and recovery while advising stakeholders throughout.

Why this role stands out:
  1. Exposure to complex, real-world incidents rather than repetitive alert handling
  2. The opportunity to directly influence client security posture and response maturity
  3. A clear path to senior incident responder through hands‑on experience, tooling exposure, and continuous improvement initiatives
  • Own and lead the end-to-end lifecycle of cyber incidents, including triage, containment, eradication, recovery, and root cause analysis
  • Conduct forensic investigations across endpoints, networks, and cloud platforms
  • Perform live compromise assessments for organisations with suspected breaches
  • Act as a key point of contact during incidents, managing communication and escalation with client stakeholders
  • Develop, maintain, and improve incident response playbooks and standard operating procedures
  • Support and guide junior analysts on complex investigations
  • Deliver post-incident reviews, including lessons learned and remediation strategies
  • Support incident readiness through tabletop exercises and simulation activities
  • Recommend improvements to detection and response capabilities across SIEM, EDR, and SOAR platforms
  • Produce clear, detailed incident and forensic reports for both technical and non-technical audiences
  • 4+ years' experience in incident response, SOC, or security consulting with a strong focus on investigations and containment
  • Proven experience handling complex, high-severity security incidents in client‑facing or consultancy environments
  • Strong technical knowledge across networking, endpoint security, and digital forensics
  • Hands‑on experience with EDR and SIEM platforms (e.g., Microsoft Defender, Sentinel, CrowdStrike, SentinelOne or similar)
  • Solid understanding of attacker tactics, techniques, and procedures (TTPs) and incident response methodologies
  • Ability to remain composed and methodical in high‑pressure situations
  • Strong communication skills with the ability to translate technical findings into business impact
  • Relevant certifications such as GCIH, ECIH, or equivalent are advantageous
  • Fully remote working with occasional in-person collaboration
  • Exposure to high‑impact, real‑world cyber incidents across multiple industries
  • Ongoing training and professional development support
  • Opportunity to work with modern detection and response tooling
  • Structured career progression within incident response

#IncidentResponse #DFIR #DigitalForensics #CyberSecurity #ThreatHunting #SIEM #EDR #RemoteJobs #InfoSecJobs #UKJobs

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Incident Response Analyst
Senior Incident Response Analyst

Bonhill Partners • Greater London

Hybrid
GBP 72,000 - 120,000
Senior Incident Response & Digital Forensics Analyst
Senior Incident Response & Digital Forensics Analyst

Berenice Photography • Greater London

On-site
GBP 58,000 - 90,000
Incident Response Analyst
Incident Response Analyst

Check Point Software Technologies • England

On-site
GBP 60,000 - 90,000
Lead Incident Response Analyst
Lead Incident Response Analyst

IntaPeople: STEM Recruitment • Cardiff

On-site
GBP 55,000
Bespoke learning plans
Bonus plan
Senior Manager – Associate Director Technical Incident Responder, Cyber Incident Response
Senior Manager – Associate Director Technical Incident Responder, Cyber Incident Response

Cyber UK • Greater London, Manchester

On-site
GBP 60,000 - 80,000
Senior Consultant, Digital Forensics and Incident Response
Senior Consultant, Digital Forensics and Incident Response

Control Risks • Greater London

On-site
GBP 90,000 - 130,000
Hybrid working arrangements
Senior Consultant, Digital Forensics and Incident Response
Senior Consultant, Digital Forensics and Incident Response

Control Risks • City Of London

On-site
GBP 90,000 - 130,000
Hybrid working
Incident response investigator
Incident response investigator

WithSecure • City Of London

On-site
GBP 90,000 - 130,000
Freedom to innovate
Collaborative team
Global exposure
Incident Response Specialist
Incident Response Specialist

Forensic Focus Limited • England

On-site
GBP 53,000 - 90,000
Incident response investigator
Incident response investigator

WithSecure • Greater London

On-site
GBP 70,000 - 110,000
Freedom
Experienced colleagues
Global visibility