Senior Security Consultant (Incident Response)

Nettitude Group

Birmingham

Hybrid

GBP 80,000 - 120,000

Full time

12 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

LRQA is seeking a Senior Security Consultant (Incident Response) to join its cyber incident response team. The role involves coordinating response to cyber incidents, on-call rotation, and occasional client-site work within the UK.

The post requires UK residency and a strong incident response background with CREST/GCFA-type certifications. The candidate will lead responders, conduct investigations, and design training engagements, staying updated on CTI developments and Mitre ATT&CK-aligned

Qualifications

  • Proven incident management and analytical skills.
  • Strong written and spoken English.
  • Understanding of Threat Actor TTPs.
  • Commercial awareness in cyber security.
  • Ability to lead and inspire teams.
  • Willingness to travel to UK and international locations.
  • Ability to join 24/7 on-call rota.

Responsibilities

  • Lead response to customer cyber incidents with the team and manager guidance.
  • Develop and drive the IR strategy with DSS leadership.
  • Define and maintain IR policies, procedures and capabilities.
  • Investigate cyber events across Windows, Linux, Cloud and Hybrid.
  • Perform digital imaging and forensic tasks on Windows and Linux hosts.
  • Provide customer training to improve preparedness for incidents.
  • Deliver written/verbal reports to IR team and senior partners.
  • Research threat landscape and develop IR actions and tooling.
  • Collaborate across technical teams to improve detection and response.

Skills

Incident management
English communication
Threat Actor TTPs
Commercial awareness
Team leadership
On-call readiness
Travel readiness

Tools

CREST CCIM/CRIA
GIAC GCFA/GCIH/GNFA
UKSC Chartered IR

Job description

Select how often (in days) to receive an alert: Create Alert

Senior Security Consultant (Incident Response)

Job ID:44293
Location:UK : Home Based
Position Category:Consulting
Position Type:Employee Regular

Senior Security Consultant

Role Purpose:

This is a new, exciting opportunity for a Senior Security Consultant to join LRQA’s existing dynamic Cyber Incident Response Team.

This role follows a hybrid working arrangement and will involve working on client sites and from the office from time to time. We support remote work across the UK; however, the main office is in Birmingham. Applicants are required to be resident in the UK.

Key Responsibilities:

The successful candidate will be responsible for responding to and leading cyber incidents within LRQA Group and LRQA’s professional service and Defensive Security Service (DSS) customers, providing education (internally and externally) and improving the team’s capability, in line with managerial direction.

The role will lead a team of responders, as well as conduct solo incident investigations, where the actor operates with a high level of sophistication (Organised Crime or above) using agreed mitigation, preparedness, and response and recovery approaches, as needed, to minimise the impact of a cyber-incident.

They will design and execute training engagements that will prepare all levels of stakeholdersfor a cyber-incident, andkeep up to date with the latest CTI industry developments, security developments, vulnerabilities, attacks, news and techniques aligned to Mitre ATT&CK and use this to further the team’s capability.

They are expected to operate autonomously using judgement to escape issues to senior management when appropriate. They must continue to maintain a relevant industry level certification preferably the CREST CCIM and at least one other CREST Certified level certification in the Incident Response field, for which LRQA will provide support.

The following list is indicative of the overall expectations of the role (not exhaustive):

  • In conjunction with the Customer Engagement Manager and Cyber Incident Manager, manage the collective technical response to customer cyber incidents.
  • In conjunction with the DSS leadership, develop and drive the IR strategy.
  • In conjunction with the DSS leadership, develop, refine and monitor IR policies, procedures and technical capability.
  • Conduct analysis and investigation of cyber security events across Windows, Linux, Cloud and Hybrid environments.
  • Conduct digital imaging and forensic investigation tasks on Windows and Linux hosts.
  • Conduct initial triage on suspicious artefacts using both commercial and bespoke tools
  • Provide customer training engagements to develop internal and external stakeholder preparedness for dealing with cyber incidents.
  • Provide written and verbal reports to the wider IR team, senior business partners (internal and external).
  • Conduct ongoing research around the threat landscape, including threat actors, TTPs and develop IR actions, investigation strategies and tooling.
  • A team-first, collaborative approach working across all relevant technical teams to identify opportunity for improvement in detection sets.
  • Excellent problem-solving skills and self-motivated to learn and upskill regularly.
  • A strong desire to continually challenge and develop yourself as part of a fast-paced, high-performing team.

What You'll Bring:

The following list of requirements are pre-requisites for the role:

  • Demonstrably strong incident management and analytical skills.
  • Demonstrably strong written and speaking English skills.
  • Demonstrably strong understanding of Threat Actor TTP’s.
  • Demonstrably strong commercial awareness.
  • Demonstrable ability to work on own projects and within a team.
  • At least 36 months of relevant IT Security industry experience in past 4 years.
  • An ability to lead, teach, present and inspire customers and the wider team.
  • Ability to travel to UK customer locations where requested and non-UK customer locations where mutually agreed.
  • Ability to join 24/7 on-call rota.

Wevalue capability over credentials. We’re not looking for badge collectors. That said, one or more of the following will serve as a distinct advantage:

  • CREST CCIM / CRIA
  • GIAC GCFA / GCIH / GNFA
  • UKSC Chartered / Principal Professional in IR
  • Similar

Why Join Us?

We’ve built a team that people tend to stay with – and that’s intentional. Our cyber unit includes the full spectrum of services from SOC analysis and Incident Response through Penetration Testing, Adversarial Simulation (Red Teaming) and Threat Intelligence. There are always people available to help you and always more to learn and we have excellent and varied career progression opportunities.

We push ourselves to be excellent, so if you enjoy solving complex technical challenges and working in an environment that supports continuous development, you’ll fit right in! Please visit our website to understand more about how we develop our people, work on cutting edge engagement and offer multiple career progression paths.

Who are LRQA?

LRQA is a leading global assurance partner, combining deep industry expertise with innovative solutions to help organizations manage risk, improve performance, and drive sustainable growth.

Operating in over 50 countries with a team of 2,500+ professionals, we support more than 60,000 clients worldwide through assurance, certification, cybersecurity, inspection, and training services. Our purpose is simple: to help businesses build a safer, more secure, and more sustainable future.

At LRQA our focus has always been on excellence in cyber security. We have teams that offer world class services in red teaming, penetration testing, threat intelligence, research and development, detection and response, governance, risk, and compliance, and plenty more. Our business is global and so are our clients. We work closely with central banks, central and local government, critical national infrastructure, large retailers, and plenty more besides!

We’re an award-winning provider of cyber security services and we’re at a very exciting stage of development. We are looking for the right people to join us as we embrace the challenges thrown up by the advancements within the IT industry and within the threats faced. LRQA will be at the forefront of this arena and we want to seek the right people to join the team and make it happen.

You can find out more about us at https://www.lrqa.com/en-us/cyber-security-services/.

What We Offer:

Join a global team where your expertise is valued and your development is supported. We offer a collaborative work environment, opportunities for professional growth, flexible working arrangements where applicable, a competitive salary aligned with the market, and a comprehensive benefits package.

Pre-Employment Checks

If you are successful in securing a role with us, we may carry out pre-employment checks, as permitted by local law, including verification of identity, right to work, employment history, education, and criminal records where applicable.

These checks are conducted by our trusted screening partner, Cfirst, in compliance with applicable data protection laws. Any personal data collected will be used solely for recruitment purposes, stored securely, and retained only as required.

At LRQA, we belive that as a leading Global Leading Assurance and Risk Management Service provider, our talented people are our risk management advantage.

We belive the best outcomes come from diverse perspectives, shared ambition and working together with integrity. That's how we buid a workplace where everyone can contribute, grow and thrive.

Guided by Vision and powered by Expertise, we're united by a shared purpose. If you're driven to make a difference, you'll belong here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Consultant (Incident Response)
Senior Security Consultant (Incident Response)

LRQA • Birmingham

Hybrid
GBP 70,000 - 110,000
Business Development Executive
Business Development Executive

Nettitude Group • Park Central

On-site
GBP 35,000 - 55,000
Senior Cyber Incident Response Lead (Remote/UK)
Senior Cyber Incident Response Lead (Remote/UK)

LRQA • Birmingham

Hybrid
GBP 70,000 - 110,000
Business Development Executive
Business Development Executive

Nettitude Group • Birmingham

Hybrid
GBP 55,000 - 75,000
Business Development Manager- Assessment
Business Development Manager- Assessment

Nettitude Group • Birmingham

Hybrid
GBP 65,000 - 100,000
Competitive base salary with uncapped
Clear career progression into Senior B
Inside Sales Account Executive
Inside Sales Account Executive

Nettitude Group • Birmingham

Hybrid
GBP 42,000 - 56,000
Inside Sales Account Executive
Inside Sales Account Executive

Nettitude Group • Park Central

On-site
GBP 45,000 - 65,000
Competitive salary
Comprehensive benefits
Flexible working
Business Development Executive
Business Development Executive

LRQA • Birmingham

On-site
GBP 40,000 - 55,000
Competitive salary
Flexible working where applicable
Comprehensive benefits package
Senior Cyber Server & Network Engineer
Senior Cyber Server & Network Engineer

LRQA • Birmingham

Hybrid
GBP 45,000 - 60,000
LRQA Sales Effectivness Co-Ordinator
LRQA Sales Effectivness Co-Ordinator

Nettitude Group • Birmingham

Hybrid
GBP 25,000 - 35,000