Senior Security Consultant; Incident Response
Birmingham, West Midlands, B1, England, UK
Listed on 2026-09-01
-
IT/Tech
Cybersecurity, IT Consultant, Information Security & Data Protection
Job
Location:
UK :
Home Based
Position Category:
Consulting
Position Type:
Employee Regular
At LRQA our focus has always been on excellence in cyber security. We have teams that offer world class services in red teaming, penetration testing, threat intelligence, research and development, detection and response, governance, risk, and compliance, and plenty more. Our business is global and so are our clients. We work closely with central banks, central and local government, critical national infrastructure, large retailers, and plenty more besides!
We're an award-winning provider of cyber security services and we're at a very exciting stage of development. We are looking for the right people to join us as we embrace the challenges thrown up by the advancements within the IT industry and within the threats faced. LRQA will be at the forefront of this arena and we want to seek the right people to join the team and make it happen.
You can find out more about us at
The RoleThis is a new, exciting opportunity for a Senior Security Consultant to join LRQA's existing dynamic Cyber Incident Response Team.
LocationThis role follows a hybrid working arrangement and will involve working on client sites and from the office from time to time. We support remote work across the UK; however, the main office is in Birmingham. Applicants are required to be resident in the UK.
What You'll Be DoingThe successful candidate will be responsible for responding to and leading cyber incidents within LRQA Group and LRQA's professional service and Defensive Security Service (DSS) customers, providing education (internally and externally) and improving the team's capability, in line with managerial direction.
The role will lead a team of responders, as well as conduct solo incident investigations, where the actor operates with a high level of sophistication (Organised Crime or above) using agreed mitigation, preparedness, and response and recovery approaches, as needed, to minimise the impact of a cyber-incident.
They will design and execute training engagements that will prepare all levels of stakeholders for a cyber-incident, and keep up to date with the latest CTI industry developments, security developments, vulnerabilities, attacks, news and techniques aligned to Mitre ATT&CK and use this to further the team's capability.
They are expected to operate autonomously using judgement to escalation issues to senior management when appropriate.
They must continue to maintain a relevant industry level certification preferably the CREST CCIM and at least one other CREST Certified level certification in the Incident Response field, for which LRQA will provide support.
Key Role Responsibilities- In conjunction with the Customer Engagement Manager and Cyber Incident Manager, manage the collective technical response to customer cyber incidents.
- In conjunction with the DSS leadership, develop and drive the IR strategy.
- In conjunction with the DSS leadership, develop, refine and monitor IR policies, procedures and technical capability.
- Conduct analysis and investigation of cyber security events across Windows, Linux, Cloud and Hybrid environments.
- Conduct digital imaging and forensic investigation tasks on Windows and Linux hosts.
- Conduct initial triage on suspicious artefacts using both commercial and bespoke tools
- Provide customer training engagements to develop internal and external stakeholder preparedness for dealing with cyber incidents.
- Provide written and verbal reports to the wider IR team, senior business partners (internal and external).
- Conduct ongoing research around the threat landscape, including threat actors, TTPs and develop IR actions, investigation strategies and tooling.
- A team-first, collaborative approach working across all relevant technical teams to identify opportunity for improvement in detection sets.
- Excellent problem-solving skills and self-motivated to learn and upskill regularly.
- A strong desire to continually challenge and develop yourself as part of a fast-paced, high-performing team.
- Demonstrably strong incident management and analytical skills.
- Demonstrably strong written and speaking English skills.
- D…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: