Cyber Operations & Incident Response Manager

Prime Personnel
London

Global SME financial seeks a Cyber Operations and Incident Response Manager to lead and line-manage London-based cyber security team (x3/x4), assure the local delivery of globally-prioritised work, and act as Incident Commander and first point of escalation for cyber security in London. The role additionally leads the Endpoint, Platform and Incident Response capability, owning the global prioritisation of that backlog against enterprise cyber risk.

Previous Experience Required:

Led or coordinated cyber security incident response as an Incident Commander or equivalent, working with MDR providers and cross-functional stakeholders (IT, Legal, Compliance).

A strong, hands-on technical background in operational cyber security spanning endpoint & EDR, identity & Active Directory, Microsoft 365 & Azure, network/ZTNA, and SIEM/log management — able to act as a senior technical authority within the team.

Demonstrable experience leading cyber security incident response (incident command), from detection through containment and remediation.

Working knowledge of MITRE ATT&CK and at least one recognised control framework (ISO 27001, CIS or NIST).

Risk-based prioritisation of remediation using threat intelligence.

Operated endpoint security and endpoint detection and response (EDR) tooling (e.g. CrowdStrike or equivalent) in a production environment.

Prioritised and managed a risk-based security backlog, applying frameworks such as MITRE ATT&CK and threat-based prioritisation.

Assured the delivery of security initiatives across distributed teams or sites, tracking vulnerability remediation and patching through to completion.

Act as Incident Commander for security incidents during London hours, coordinating first responders, IT, Legal, Compliance, specialist providers and EDF Group as required.

Serve as the first point of escalation for IT and the business in London on cyber security matters.

Work with the 24/7 Managed Detection and Response (MDR) provider to triage and escalate detections.

Coordinate local participation in incident response exercises and maintain readiness.

Track and chase vulnerability remediation and patching on London-managed systems, escalating blockers.

Own the global prioritisation of the Endpoint, Platform and Incident Response backlog, ordered against the enterprise cyber risk register and exploitation-based intelligence (e.g. MITRE ATT&CK).

Curate the backlog from inputs across Houston and London, including the endpoint detection and response (CrowdStrike) execution lead.

Maintain alignment of this domain to the enterprise risks for endpoint compromise, detection and containment, and cyber resilience.

Operate within the Global Head’s monthly prioritisation cadence; prioritisation across other domains remains with the Global Head.

Provide the local stakeholder interface for cyber security in London.

Planned and delivered complex, cross-functional security or technology initiatives end-to-end, coordinating multiple workstreams, stakeholders and dependencies to time and quality.

This is a hybrid role working 2 days a week in the London office and 3 days remotely.

Posted 2026-06-13

Recommended Jobs

Music Teacher - Good Mixed School in Kingston

Marchant Recruitment
Kingston upon Thames, Greater London

Music Teacher – Good Mixed School in Kingston Location: Kingston Start Date: January 2026 Contract Type: Full-time, Permanent Salary: Paid to Scale A creative and inclusive Good Of…

View Details
Posted 2025-12-16

Year 3 Teacher | Brent

Marchant Recruitment
Brent, Greater London

A highly regarded primary school in Brent is recruiting a committed and enthusiastic Year 3 Teacher to join their team from January 2026. This is a fantastic opportunity for a Year 3 Teacher who is p…

View Details
Posted 2025-12-10

Transfer Pricing Senior Associate - London

Kingpin International
City of London, Greater London

Are you an expert in building client relationships, with an outstanding background in Transfer Pricing? We’re looking for a Transfer Pricing Senior Manager to join a dynamic team based in London,…

View Details
Posted 2025-10-21

Market Data Administration & Data Vendor Analyst

DonePlus
London

London (On-Site / Client Facing) 3–6 Years Experience DonePlus is supporting a leading investment management environment in hiring a Market Data Administration & Vendor Operations Analyst to work…

View Details
Posted 2026-05-12

Online History Tutor - Flexible Part-Time Role (UK) |...

FindTutors
London

We are looking for a passionate and motivated History Tutor to join the FindTutors team. This is a flexible opportunity to support students in understanding historical events, improving academic …

View Details
Posted 2026-04-18

SAP IBP role

Infosys Consulting - Europe
London

About Us Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients' most important challenges? We are growing and are looking for p…

View Details
Posted 2026-04-30

Influencer Executive

Fabric Social
London

The Role We are looking for an influencer Executive to join our team. This is a hands-on execution role: you will support the delivery of influencer and social campaigns from sourcing talent throu…

View Details
Posted 2026-02-27

Hospitality Assistant

Compass Group UK
London

Job Details We're currently recruiting a dedicated Hospitality Assistant (Zero Hours) to help ensure the smooth running of the operations in Universities on a permanent casual basis, contracted to…

View Details
Posted 2026-06-03

SEN 1:1 Support Assistant | Havering

Marchant Recruitment
Havering, Greater London

We are looking for a compassionate, patient, and dedicated SEN 1:1 Support Assistant to join a supportive and inclusive primary school in Havering. This is a highly rewarding role for someone who is …

View Details
Posted 2026-01-21