Incident Response Analyst

Pentest People

United Kingdom

Remote

GBP 63,000 - 77,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading security consultancy in the UK is expanding its Incident Response team and seeks an Incident Response Analyst. The role involves tackling cybersecurity threats, conducting incident assessments, and collaborating with clients. Candidates must possess strong analytic and problem-solving skills, with experience in incident response and digital forensics. The position is remote but requires occasional site visits. Apply with your resume and cover letter to join a dynamic team dedicated to enhancing client security.

Qualifications

  • Experience in responding to and investigating incidents.
  • Demonstrated proficiency in log analysis across multiple platforms.
  • Certifications such as ECIH and Security + are good to have.

Responsibilities

  • Conduct initial incident assessments and contribute to Incident Response management.
  • Participate in live Incident Response operations including digital forensics.
  • Document incidents thoroughly and prepare comprehensive reports.

Skills

Analytic Thinking
Problem Solving
Communication

Education

ECIH
Security +
Cysa+

Tools

SIEM
SOAR
EDR
Velociraptor
Volatility

Job description

This range is provided by Pentest People. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

Direct message the job poster from Pentest People

Pentest People is a UK-based security consultancy specialising in providing Penetration Testing as a Service to all its clients. Our innovative approach to security testing merges the benefits of consultant-led penetration testing with ongoing vulnerability assurance through our advanced SecurePortal. This provides clients with a continuous, living threat management system throughout the duration of the contract, rather than a single point-in-time assessment.

We’re expanding our Incident Response team and looking for a Incident Response Analyst to join us in tackling some of the most challenging cybersecurity threats. The role requires analytic thinking, problem solving skills and the ability to work in a fast-paced environment.

As part of our dynamic team, you will play a critical role in reducing the impact of cyberattacks and enchanting our clients security posture to prevent future attacks.

Key responsibilities include:

  • Conducting initial incident assessments and contribute to Incident Response management.
  • Participate in live Incident Response operations including digital forensics.
  • Perform security assessments, threat intelligence gathering and OSINT analysis.
  • Collaborating with other departments to facilitate a holistic cybersecurity service.
  • Engaging with clients on day-to-day basis and getting access to relevant logs and access to clients infrastructure for performing digital forensics.
  • Document incidents thoroughly, including timelines, affected systems, actions taken, and recommendations for future improvements.
  • Prepare comprehensive reports for clients.

Technical skills:

  • Demonstrated experience in responding to and investigating incidents whilst utilizing various monitoring, detection and investigation tooling – SIEM, SOAR, EDR etc.
  • Proficiency in log analysis of Networking, Windows, Mac and Linux and Cloud.
  • Understanding of evidence collection process based on priority.
  • Strong understanding of incident response following NIST 800-61 guidelines incorporating containment, eradication and recovery phases.
  • Experience with digital forensics and investigations, including evidence collection and chain-of-custody protocols.
  • Should have an understanding of tabletop exercises, and IR planning.
  • Should have an understanding of Technical Frameworks such as MITRE Attack, Lockheed Martin kill chain or Diamond model.
  • Should be able to perform dynamic malware analysis.

Qualifications:

  • Certifications such as ECIH, Security +, BTL1, Cysa+, SC-200 are good to have
  • Knowledge of open-source IR tools, such as Velociraptor, Eric Zimmerman Tools, Chainsaw, Volatility, SOF-elk, DFIR IRIS.
  • Experience in python or bash or Go.

About you:

  • Experience in managing stakeholders during live incidents to minimise impacts.
  • Strong communication skills, with the ability to manage and coordinate various incidents whilst remaining calm under pressure.
  • Ability to align client deliverables with industry best practices.
  • Experience in threat intelligence and analysis to support proactive IR.
  • Capable of taking ownership of tasks, ensuring quality delivery and supporting the IR's team growth.

While this role is advertised as remote, it will require occasional visits to client sites and the office as needed. Candidates must be based in the UK and have the right to work, as we are unable to provide sponsorship at this time. If you do not have SC eligibility, you must meet the requirements for SC, as this may be a necessary criterion.

Please send your resume and a cover letter to careers@pentestpeople.com

We understand that job descriptions offer only a glimpse of the role. For more details, please feel free to reach out or apply, and we will be happy to provide additional information. Pentest People is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Seniority level
  • Seniority level
    Not Applicable
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    IT Services and IT Consulting

Referrals increase your chances of interviewing at Pentest People by 2x

Get notified about new Incident Analyst jobs in United Kingdom.

Information Security Analyst - £70,000 - REMOTE

Edinburgh, Scotland, United Kingdom 1 week ago

Glasgow, Scotland, United Kingdom 1 week ago

Dundee, Scotland, United Kingdom 1 week ago

Milton Keynes, England, United Kingdom 1 month ago

London, England, United Kingdom 1 month ago

Birmingham, England, United Kingdom 4 days ago

Newcastle Upon Tyne, England, United Kingdom 1 week ago

Leeds, England, United Kingdom 1 week ago

Manchester, England, United Kingdom 4 days ago

London, England, United Kingdom 1 day ago

Babraham, England, United Kingdom 1 week ago

London, England, United Kingdom 2 days ago

Reading, England, United Kingdom 2 weeks ago

London, England, United Kingdom 1 day ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Analyst
Incident Response Analyst

Enso Recruitment • United Kingdom

On-site
GBP 45,000 - 70,000
SOC Analyst Tier 1
SOC Analyst Tier 1

Cybereason • United Kingdom

On-site
GBP 30,000 - 55,000
Cyber Security Analyst
Cyber Security Analyst

ASA RECRUITMENT • United Kingdom

On-site
GBP 90,000 - 130,000
Information Security Analyst
Information Security Analyst

Intec Select • Greater London

Hybrid
GBP 45,000 - 55,000
Hybrid working – 3 days in London office
Opportunities for professional growth and certification support
Collaborative and inclusive team environment
Cyber Security Incident Response Lead
Cyber Security Incident Response Lead

Head Resourcing • Glasgow

Hybrid
GBP 60,000 - 80,000
Competitive salary
Discretionary bonus
Strong pension scheme (minimum 10%)
+2
Senior Security Consultant - Red Team
Senior Security Consultant - Red Team

MAC Recruit Group Ltd • United Kingdom

On-site
GBP 40,000 - 50,000
Sponsored Certifications
Training Budgets
Company Events
+1
Penetration Tester
Penetration Tester

Platform Recruitment • Greater London

On-site
GBP 35,000 - 45,000
Senior SOC & Incident Response Engineer
Senior SOC & Incident Response Engineer

DGH Recruitment • London

On-site
GBP 40,000 - 50,000
IT Problem & Incident Analyst
IT Problem & Incident Analyst

Public Sector Resourcing • Manchester

Hybrid
GBP 40,000 - 50,000
Security Analyst
Security Analyst

Fruition Group • England

Remote