Security Operations Lead — Incident Response & Cloud Defense

Kubrick Group

Greater London

Hybrid

GBP 60,000 - 90,000

Full time

37 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid working
Pension matching up to 5%
Mental health support (Help@Hand)
Cycle to Work
Specsavers eye care
Learning and development opportunities
Employee Assistance Program (EAP)
Diversity and inclusion support

Job summary

Kubrick Group is seeking a hands-on Security Analyst to lead our Security Operations. You will monitor, triage and investigate alerts using Microsoft Sentinel, Defender and EDR, while driving incident response and continuous improvement.

You’ll enhance runbooks, playbooks and security processes, and support client security questionnaires and RFPs. The role covers governance and ISO/NIST compliance, with hybrid working options and opportunities to grow within a fast-paced cyber defence

Qualifications

  • Hands-on security project or implementation experience.

Responsibilities

  • Lead Security Operations, monitor, triage and investigate alerts through Microsoft Sentinel, Defender and EDR, working with SIEM partner.
  • Own end-to-end incident response, containment, eradication, recovery and post-incident reviews.
  • Develop and maintain runbooks, response playbooks and docs to enable scalable security.
  • Drive cyber security projects, implementing and optimising controls across the Microsoft security stack.
  • Oversee vulnerability management, including scanning, risk assessment and remediation prioritisation.
  • Support Business Continuity and Disaster Recovery exercises and tests.
  • Champion security governance and compliance (ISO 27001, NIST, Cyber Essentials Plus).
  • Engage with clients on due diligence, RFPs and tender responses to demonstrate security excellence.

Skills

Cybersecurity basics
CISM
CISSP
Microsoft Defender
Purview
Intune
Entra ID
Sentinel
M365 services
AI/ML security
Vulnerability management
DLP
Data classification
Information protection
BYOD security
Azure security
Cloud security
ISO 27001
NIST
Cyber Essentials
PowerShell
Communication
Penetration testing
PAM
CASB
SC-200
AZ-500
CompTIA Security+

Tools

Microsoft Defender
Purview
Intune
Entra ID
Sentinel
M365

Job description

Kubrick Group is seeking a hands-on Security Analyst to lead our Security Operations. You will monitor, triage and investigate alerts using Microsoft Sentinel, Defender and EDR, while driving incident response and continuous improvement.

You’ll enhance runbooks, playbooks and security processes, and support client security questionnaires and RFPs. The role covers governance and ISO/NIST compliance, with hybrid working options and opportunities to grow within a fast-paced cyber defence

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations Lead - Cloud & Incident Response
Senior Security Operations Lead - Cloud & Incident Response

Manchester Digital • Manchester

Hybrid
GBP 90,000 - 130,000
Lead Security Engineer: Own Cloud & Incident Response
Lead Security Engineer: Own Cloud & Incident Response

Understanding Recruitment • Greater London

Hybrid
GBP 110,000 - 150,000
Hybrid working
London office access
Autonomy and ownership
+2
Security Operations Lead - Incident Response & Compliance
Security Operations Lead - Incident Response & Compliance

Aggreko • Glasgow

On-site
GBP 85,000 - 120,000
Pension plan
Bonus scheme
Life Assurance
Cyber Security Operations Specialist
Cyber Security Operations Specialist

Tank Recruitment • Bath

On-site
GBP 55,000 - 85,000
Cyber Security Operations Lead – Incident Response
Cyber Security Operations Lead – Incident Response

Methods Business And Digital Technology • England

Hybrid
GBP 70,000 - 100,000
LinkedIn Learning access
Management development programme
Training opportunities
+4
Senior Cyber Incident Response Lead
Senior Cyber Incident Response Lead

Methods • Greater London

Hybrid
GBP 90,000 - 130,000
Autonomy to develop
Flexible working
Private medical insurance
+1
IT Security Operations & Assurance Analyst
IT Security Operations & Assurance Analyst

Oliver James Associates Ltd. • Greater London

Hybrid
GBP 60,000 - 90,000
Cloud Security SOC Analyst | Incident Response & SIEM
Cloud Security SOC Analyst | Incident Response & SIEM

TRIA • Dunfermline

Hybrid
GBP 50,000 - 54,000
Salary £50,000-£54,000
Hybrid work 2 days in office
Pension scheme
+1
Head of Security Operations Technology · London, Dubai · Hybrid
Head of Security Operations Technology · London, Dubai · Hybrid

Sokin • Greater London

Hybrid
GBP 120,000 - 180,000
Senior IT Security Lead - Cloud, Incident & Resilience
Senior IT Security Lead - Cloud, Incident & Resilience

V.Group • Glasgow

On-site
GBP 70,000 - 110,000