More jobs:
Regional Information Security Manager - Incident Response
Job in
Birmingham, West Midlands, B1, England, UK
Listed on 2026-05-20
Listing for:
KPMG Careers
Full Time, Contract
position Listed on 2026-05-20
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Regional Information Security Manager – Incident Response
Location: Birmingham, Bristol, Glasgow, London, Manchester, Milton Keynes, Reading, Watford
Capability: International
Experience Level: Senior Manager
Type: Full Time
Business Area: KPMG International
Contract type: Permanent
About the TeamGlobal Information Security Group (GISG) is a domain within KPMG’s Global Digital group that provides information protection and technology infrastructure and services to secure KPMG’s technology environment and connect its network of member firms.
Role Summary- Advise member firms on the implementation of KPMG information risk and security standards / requirements related to Incident Management.
- Recommend and support member firms to enforce defined security policies and global technology standard.
- Maintain an up-to-date knowledge base following global incident trends, security advisories and alerts, information on global standard and best practices.
- Vulnerability management and controls validation: evaluate and select vulnerability assessment and other security assessment capabilities, and deploy, operate and maintain these technologies and adjacent processes.
- Closely follow security trends and vulnerabilities, cyber security threats and provide feedback to Global security. Actively communicate and keep abreast of the latest trends in threat intelligence and incident response.
- Advise member firms how to best manage local incident response training to ensure readiness across regions.
- Advise and support member firms in improving the effectiveness of their event and incident management operation.
- Monitor and report a consolidated regional view of global technology standard adoption status and take action by following up on findings.
- Lead the assessment and provide recommendations on any exceptions to policies or standards.
- Lead and oversee regional incident triage activities and tracking of critical cybersecurity incidents from initial detection through final resolution.
- Lead and oversee incident escalation towards member firms and global teams.
- Work with Global security on red / blue teaming activities on regional level.
- Setting up and leading a community with the EMA region with respect to technical trends, vulnerabilities and incidents.
- Lead and oversee compliance with any applicable regulatory requirements for cyber incident.
- Advise member firms on Global security standards for incident response and issues (adopting, monitoring).
- Deliver security reporting for incident response, escalations, and opportunities into Regional Information Security Officer (RISO).
- Facilitate meetings with Member Firms on implementation incident management processing and tools, including best practices.
- Capture specific Member Firm requirements for services and act as a conduit into RISO to recommend service updates.
- Provide support into Member Firms on incident management related matters.
- Support Security Incident Response processes across the Region.
- Bachelor’s degree in Computer Science, Information Security, Information Systems, Computer Engineering, or a related field is required.
- Proven experience developing or managing an enterprise level of security programs (focus on Incident Management).
- At least one industry certification preferred (e.g. CISSP, CISA, CISM, CRISC, ISAAP).
- Background working on large-scale international services and the ability to manage multiple processes and service delivery at once while building constructive working relationships across the different teams, functions, cultures, genders and demonstrating KPMG behaviours and values.
- Security Operations / Incident Management / Managed Security Services experience preferred.
- Working knowledge of multiple security topics such as threat intelligence, vulnerability management products, firewall management or endpoint protection.
- Deep knowledge of cyber kill chain and understanding of threat intelligence lifecycle.
- Strong knowledge of computer networking concepts and protocols (including OSI and TCP/IP layer models) and network security methodologies.
- Strong knowledge of intrusion detection methodologies and techniques for…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×