Incident Response Analyst

Enso Recruitment

United Kingdom

On-site

GBP 45,000 - 70,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Enso Recruitment is seeking an experienced Incident Response Analyst for a growing cybersecurity consultancy. This role involves participating in incident response, conducting digital forensics, and collaborating with clients to enhance their cybersecurity resilience. The successful candidate will possess strong technical skills, thrive under pressure, and contribute to ongoing improvements in incident response capabilities.

Qualifications

  • Experience conducting investigations in cybersecurity.
  • Strong knowledge of digital forensic practices.
  • Familiar with incident response frameworks like NIST 800-61.

Responsibilities

  • Participate in active incident response cases.
  • Conduct incident assessments and support recovery.
  • Document findings and provide remediation guidance.

Skills

Digital forensics
Threat intelligence
Investigation using SIEM
Log analysis
Malware analysis

Education

Certifications such as Security+, ECIH, CYSA+, SC-200

Tools

Python
Bash

Job description

1 week ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

This range is provided by Enso Recruitment. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

Direct message the job poster from Enso Recruitment

Connecting organisations with the talented Cyber Security and Tech talent needed for their teams | Principal Recruitment Consultant @ Enso…

Enso Recruitment is working on behalf of a growing cybersecurity consultancy to find an experienced Incident Response Analyst. This role offers the opportunity to join a team dedicated to reducing the impact of cyber threats and helping clients strengthen their long-term resilience.

The successful candidate will join a fast-paced and collaborative incident response function, contributing to investigations, digital forensics, threat intelligence, and client reporting. This position is ideal for someone who thrives on problem-solving, has strong technical skills, and enjoys working closely with clients during live security incidents.

Key Responsibilities:

  • Take part in active incident response cases, including digital forensics and stakeholder coordination.
  • Conduct initial incident assessments and support the full response lifecycle, from containment to recovery.
  • Carry out security assessments and use threat intelligence and open-source research to inform investigations.
  • Collaborate across teams to deliver end-to-end incident response and security services.
  • Document findings and actions thoroughly, producing clear reports and remediation guidance for clients.
  • Engage directly with clients to gather information, access logs, and coordinate response activities.
  • Support process improvements and contribute to the ongoing development of the incident response capability.

Technical Skills & Experience:

  • Experience conducting investigations using SIEM, SOAR, EDR and similar technologies.
  • Strong knowledge of digital forensic practices, including evidence handling and chain of custody.
  • Familiarity with NIST 800-61 or similar incident response frameworks.
  • Proficient in log analysis across Windows, Linux, MacOS, network devices, and cloud environments.
  • Understanding of attack frameworks such as MITRE ATT&CK, Lockheed Martin Kill Chain, or the Diamond Model.
  • Comfortable with basic dynamic malware analysis and use of open-source tools (e.g. Velociraptor, Volatility, DFIR IRIS).

Desirable Qualifications & Tools:

  • Certifications such as Security+, ECIH, CYSA+, SC-200 or equivalent are beneficial.
  • Experience with scripting or automation (e.g. Python, Bash, Go).
  • Familiarity with open-source IR and forensic tools (Chainsaw, Zimmerman Tools, SOF-ELK, etc.).

About You:

  • Effective under pressure, with the ability to calmly manage live incidents and stakeholder communications.
  • Strong communicator who can translate technical findings into business context.
  • Takes ownership of tasks and supports team development.
  • Aligns work with industry best practices and maintains a high standard of documentation.
  • Has a proactive mindset, including experience or interest in threat hunting and threat intelligence.

This is a great opportunity for an Incident Response Analyst looking to grow their skills and make a meaningful impact across diverse client environments. If you’re ready to take the next step in your IR career, Enso Recruitment would love to hear from you.

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Technology, Information and Media

Referrals increase your chances of interviewing at Enso Recruitment by 2x

Get notified about new Information Technology Security Analyst jobs in United Kingdom.

Principal Security Analyst - Microsoft Sentinel /Chronicle
Principal Security Analyst - Microsoft Sentinel /Chronicle

London, England, United Kingdom 5 days ago

Birmingham, England, United Kingdom 6 days ago

Bolton, England, United Kingdom 5 days ago

Manchester, England, United Kingdom 6 days ago

Newcastle Upon Tyne, England, United Kingdom 1 week ago

Leeds, England, United Kingdom 1 week ago

Principal Security Analyst - SecOps (Chronicle)
Global Security GRC Analyst (Governance, Risk, and Compliance)

Manchester Area, United Kingdom 3 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Analyst
Incident Response Analyst

Pentest People • United Kingdom

Remote
GBP 50,000 - 70,000
Senior SOC & Incident Response Engineer
Senior SOC & Incident Response Engineer

DGH Recruitment • London

On-site
GBP 40,000 - 50,000
SOC Analyst Tier 1
SOC Analyst Tier 1

Cybereason • United Kingdom

On-site
GBP 30,000 - 55,000
Cyber Security Analyst
Cyber Security Analyst

ASA RECRUITMENT • United Kingdom

On-site
GBP 90,000 - 130,000
Cyber Security Incident Response Lead
Cyber Security Incident Response Lead

Head Resourcing • Glasgow

Hybrid
GBP 60,000 - 80,000
Competitive salary
Discretionary bonus
Strong pension scheme (minimum 10%)
+2
Information Security Analyst
Information Security Analyst

Intec Select • Greater London

Hybrid
GBP 45,000 - 55,000
Hybrid working – 3 days in London office
Opportunities for professional growth and certification support
Collaborative and inclusive team environment
Cyber Security Incident Response Team (CSIRT) Manager
Cyber Security Incident Response Team (CSIRT) Manager

Adeptis Group • Greater London

On-site
GBP 60,000 - 70,000
Security Analyst
Security Analyst

Fruition Group • England

Remote
Senior Security Consultant - Red Team
Senior Security Consultant - Red Team

MAC Recruit Group Ltd • United Kingdom

On-site
GBP 40,000 - 50,000
Sponsored Certifications
Training Budgets
Company Events
+1
Security Operations Center Analyst
Security Operations Center Analyst

Queen Square Recruitment • Reading

Hybrid
GBP 50,000 - 70,000