Book a call
Cybersecurity | 27-1-2026
A global consultancy is seeking an experienced Cyber Incident Response Team Lead to lead the delivery of effective, intelligence-led incident response services for clients operating in complex threat environments. The role blends technical leadership, team management, and the ongoing enhancement of detection and response capabilities.
The Cyber Incident Response Team Lead will oversee cyber incidents from identification through containment, eradication, and recovery, coordinating technical teams and stakeholders throughout. They will conduct proactive threat hunting to identify undetected malicious activity and enhance detection through the development and tuning of behavioural analytics and use cases within Rapid7 InsightIDR. The role includes applying threat intelligence to anticipate and mitigate sector-specific threats, including attacks such as ransomware, POS compromise, and supply chain intrusion. The post holder will direct live incident response activities, including containment, forensic evidence preservation, malware eradication, and system recovery from clean backups. They will also lead post-incident reviews, maintain response playbooks, collaborate with IT and Security Engineering to improve SIEM and SOAR automation, and manage and develop the incident response team while driving continuous improvement through best practice and lessons learned.
Required Experience
This is a hybrid position offering comprehensive salary and benefits package and hybrid working. Please apply now to be considered!
Follow us on LinkedIn for new job listings, industry insights and career advice.
George Knight