Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Information security incident response analyst

London
NTT
Security
Posted: 30 March
Offer description

JOB DESCRIPTION

Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.

Job Description Summary

The Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role focuses on identifying indicators of compromise, reconstructing attacker activity, and communicating clear, actionable findings.

The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands‑on investigations and internal project work.

Job Description

Key Responsibilities

1. Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance.
2. Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause.
3. Supports clients through containment and recovery efforts by providing technical recommendations and clear communication.
4. Participates in the team’s on‑call rotation for urgent incident response needs.
5. Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support.
6. Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture.
7. Produces accurate documentation—including investigation notes, status updates, and final reports.
8. Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools.

Knowledge and Attributes

9. Solid understanding of digital forensics fundamentals, including host‑based analysis across major operating systems.
10. Working knowledge of network forensics, cloud log analysis (e.g., Azure, AWS, GCP), and common forensic tools.
11. Ability to clearly communicate technical findings to both technical and non‑technical audiences.
12. Strong analytical and problem‑solving skills, especially during time‑sensitive investigations.
13. Motivated to continuously learn deeper DFIR techniques and methodologies.

Required Experience

14. Proven experience in incident response and digital forensics, with capability in host‑based, image, and log analysis.
15. Experience using SIEM, EDR, IDS/IPS, and other security tools to triage, investigate, and respond to incidents.
16. Ability to perform network analysis using tools such as Wireshark, tcpdump, and other tools.
17. Experience in cybersecurity operations, consulting, DFIR services, or related technical security roles.

Academic Qualifications, Certifications

18. Bachelor’s degree or equivalent experience in Information Technology, Computer Science, Cybersecurity, or a related discipline (preferred).
19. Relevant cybersecurity certifications such as:SANS GIAC Security Essentials (GSEC) or equivalent preferred.SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.
20. Additional DFIR‑related certifications are considered a plus.

Additional UK‑Specific Role Requirements

UK Security Clearance

21. Active UK Security Clearance is required to deliver services within sensitive or regulated client environments.

Operational Technology (OT) Incident Response & Digital Forensics

22. Background and hands‑on experience in OT environments.
23. Experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure.
24. Ability to collect and analyze OT forensic artifacts, interpret OT protocols and system behavior, and assess the impact of cyber incidents on physical processes.

Certifications

25. SANS OT/ICS certifications such as GICSP or GRID, IEC 62443 or equivalent required.

Workplace type:

Remote Working

About NTT DATA
NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.

Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.

Third parties fraudulently posing as NTT DATA recruiters

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Principal technical safety consultant - london - energy
London
Stratus Recruitment & Search Limited
Safety consultant
£85,000 a year
Similar job
Security presales engineer
St Albans
XACT PLACEMENTS LIMITED
Security
£65,000 a year
Similar job
Accommodation warden
Dartford
Watts Farm
Warden
£30,000 a year
See more jobs
Similar jobs
Security jobs in London
jobs London
jobs Greater London
jobs England
Home > Jobs > Security jobs > Security jobs > Security jobs in London > Information Security Incident Response Analyst

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2026 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save