Lead Detection & Response Engineer

Lloyds Bank plc

City of Edinburgh

Hybrid

GBP 73,000 - 81,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

30 days holiday
Pension contribution
Discretionary annual performance‑relat
Flexible benefits
Colleague and family support

Job summary

Lloyds Banking Group is seeking a Lead Detection and Response Engineer to defend one of the UK's largest organisations against evolving cyber threats. The hybrid role is based from Edinburgh with multiple site locations and a flexible working approach.

You will lead investigations, analyse security events, and drive proactive defence activities while mentoring engineers to raise technical standards and foster continuous learning across the team.

Qualifications

  • Experience in SOC/Cyber Defence environments.
  • Experience investigating security incidents with enterprise security tools.
  • Understanding of threat detection lifecycles and attacker tactics.
  • Ability to lead and mentor colleagues while fostering a high-performing culture.
  • Strong analytical and problem-solving skills for complex situations.
  • Ability to influence technical outcomes and communicate with diverse audiences.

Responsibilities

  • Lead investigations into security alerts, incidents and threats with containment and recovery.
  • Analyse security events and attacker behaviours to determine response actions.
  • Conduct threat hunting and forensic activities to identify unknown threats.
  • Contribute to improving detection and response capabilities via initiatives.
  • Utilise automation, AI, and modern security tooling to boost efficiency.
  • Support and coach Security Engineers while promoting excellence and knowledge sharing.

Skills

Security Operations
Incident Response
Threat Hunting
Leadership
Cyber Analytics

Job description

Lead Detection and Response Engineer

End Date: Monday 28 September 2026

Salary: £72,702 - £80,780

Location(s): Edinburgh, Bristol, Manchester, Leeds

Hours: Full time

Working pattern: Our work style is hybrid, which involves spending at least two days per week, or 40% of your time, at one of our office sites.

We support flexible working.

About this opportunity

Help defend one of the UK's largest organisations against evolving cyber threats. As a Lead Detection and Response Engineer within our Cyber Defence Centre, you'll play a key role in protecting the organisation through the investigation of security incidents, identification of malicious activity, and continuous improvement of detection and response capabilities. You'll combine deep technical expertise with analytical thinking to investigate complex cyber security challenges, strengthen cyber resilience, and help shape how we detect and respond to threats across the Group. Alongside remaining hands‑on in cyber defence activities, you'll provide leadership and support to Security Engineers across the team, helping to raise technical standards and foster continuous learning.

Key responsibilities include:
  • Leading investigations into security alerts, incidents and emerging threats, ensuring effective containment, eradication and recovery activities.
  • Analysing security events, attacker behaviours and threat intelligence to identify risks and determine appropriate response actions.
  • Conducting threat hunting, forensic investigations and proactive cyber defence activities to identify previously unknown threats.
  • Contributing to the ongoing enhancement of detection and response capabilities through continuous improvement initiatives.
  • Using automation, AI and modern security tooling to improve operational effectiveness and efficiency.
  • Supporting, developing and managing Security Engineers while promoting engineering excellence and knowledge sharing.
About us / Why Lloyds Banking Group

Like the modern Britain we serve, we're evolving. Investing in the technologies, people and capabilities needed to make a real difference for our customers, we're building a more sustainable and inclusive future. Our focus is on creating better outcomes for customers, colleagues and communities. By joining us, you'll have the opportunity to work on meaningful challenges, develop your skills and contribute to the security and resilience of one of the UK's largest organisations.

What you'll need
  • Strong experience within a Security Operations Centre, Cyber Defence, Incident Response, Threat Hunting or a related cyber security environment.
  • Experience investigating and responding to cyber security incidents using enterprise security technologies and processes.
  • Strong understanding of threat detection lifecycles, attacker behaviours and tactics, techniques and procedures.
  • Proven ability to lead, mentor and develop colleagues while fostering an inclusive, high‑performing team culture.
  • Strong analytical and problem‑solving skills with the ability to assess complex situations and determine appropriate actions.
  • Ability to influence technical outcomes through expertise, collaboration and credibility, communicating effectively with both technical and non‑technical audiences.
  • And any experience of this would be really useful Experience in digital forensics, detection engineering or threat analysis.
  • Experience applying automation or AI‑enabled approaches to improve cyber defence outcomes.
  • Experience contributing to continuous improvement initiatives within cyber security operations.
Benefits
  • 30 days' holiday, with bank holidays on top.
  • A generous pension contribution.
  • Discretionary annual performance‑related award.
  • Flexible benefits designed to support your health, wellbeing and lifestyle.
  • Access to a range of colleague and family support initiatives.

This is a place for you... Our ambition is to be the leading UK business for diversity, equity and inclusion, supporting our customers, colleagues and communities.

We are committed to creating an environment in which everyone can thrive, learn and develop.

We were one of the first major organisations to set goals on diversity in senior roles, create a menopause health package, and launch a dedicated Working with Cancer initiative.

We offer reasonable workplace adjustments for colleagues with disabilities, including flexibility in office attendance, location and working patterns.

As a Disability Confident Leader, we guarantee interviews for a fair and proportionate number of applicants who meet the minimum criteria for the role and have a disability, long‑term health or neurodivergent condition, through the Disability Confident Scheme.

We provide reasonable adjustments throughout the recruitment process to reduce or remove barriers - just let us know what you need.

Flexible Working Options
  • Flexibility in when hours are worked
  • Hybrid Working
  • Job Share

We keep your data safe. So, we'll only ever ask you to provide confidential or sensitive information once you have formally been invited along to an interview or accepted a verbal offer to join us which is when we run our background checks. We'll always explain what we need and why, with any request coming from a trusted Lloyds Banking Group person.

We’re focused on creating a values‑led culture and are committed to building a workforce which reflects the diversity of the customers and communities we serve. Together we’re building a truly inclusive workplace where all of our colleagues have the opportunity to make a real difference. With 320 years under our belt, we’re used to change, and today is no different.

Should you wish to contact us for any reason, please email us at: careers@lloydsbanking.com

For more Flexible Working Options please use the free text search, e.g. job sharing, variable hours, to identify relevant matches.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection & Response Engineer
Detection & Response Engineer

Lloyds Bank plc • City of Edinburgh

Hybrid
GBP 73,000 - 81,000
30 days holiday
Pension scheme
Private health cover
+1
Head of Cyber Defence Centre
Head of Cyber Defence Centre

Lloyds Banking Group • Manchester

Hybrid
GBP 140,000 - 190,000
Pension up to 15%
Annual bonus
Share schemes
+4
Lead Data Scientist
Lead Data Scientist

Lloyds Banking Group • Manchester

Hybrid
GBP 93,000 - 109,000
Pension up to 15%
Annual bonus
Share schemes
+4
Lead Data Scientist
Lead Data Scientist

Lloyds Banking Group • City of Edinburgh

Hybrid
GBP 93,000 - 109,000
Annual bonus
Share schemes including free shares
30 days’ holiday
+1
Lead Data Scientist
Lead Data Scientist

Lloyds Banking Group • Wellington

Hybrid
GBP 93,000 - 109,000
Pension up to 15%
Annual bonus
Share schemes
+3
Software Engineer
Software Engineer

Lloyds Bank plc • United Kingdom

Hybrid
GBP 47,000 - 71,000
Engineering Lead (Cryptography lab)
Engineering Lead (Cryptography lab)

Lloyds Bank plc • Leeds

Hybrid
GBP 93,000 - 109,000
Pension up to 15%
Annual bonus
Share schemes
+3
Read more
Read more

Lloyds Banking Group • City of Edinburgh

Hybrid
GBP 65,000 - 90,000
Pension up to 15%
Annual bonus
Share schemes
+3
Lead Data Scientist
Lead Data Scientist

LLOYDS BANKING GROUP • West of England

On-site
GBP 93,000 - 109,000
Pension up to 15%
Annual bonus
Share schemes
+4
Read more
Read more

Lloyds Banking Group • Leeds

Hybrid
GBP 75,000 - 110,000
Pension up to 15%
Performance bonus
Share schemes
+3