Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Incident response engineer

Reading (Berkshire)
Microsoft
Engineer
£60,000 - £80,000 a year
Posted: 1 October
Offer description

Incident Response Engineer


Reading, Berkshire, United Kingdom

Date posted

Sep 29, 2025

Job number

1882800

Work site

0 days / week in-office - remote

Travel

0-25%

Role type

Individual Contributor

Profession

Technical Support

Discipline

Technical Support Engineering

Employment type

Full-Time


Overview


Interested in security and incident response? Then come join the Cybersecurity Incident Response Team (CIRT) at Microsoft as an Incident Response Engineer responsible for helping customers investigate security incidents in their environment.

With more than 45,000 employees and partners worldwide, the Customer Experience and Success (CE&S) organization is on a mission to empower customers to accelerate business value through differentiated customer experiences that leverage Microsoft's products and services, ignited by our people and culture.

Within CE&S, the Customer Service & Support (CSS) organization builds trust and confidence for every person and organization through delivering a seamless support experience. In CSS, we are powered by Microsoft's AI technology to help consumers, businesses, partners, and more, resolve their issues quickly and securely, helping prevent future problems from occurring and achieving more from their Microsoft investment.

As an Incident Response engineer, you will be an elite member of a customer facing security support team leading incident response investigations for Microsoft's enterprise customers. You have experience in analysing, triaging, scoping, containing, providing guidance for remediation, and determining the root cause of security incidents. You are familiar with collecting and analysing security incident related data to identify indicators of attack and compromise.

In the Customer Service & Support (CSS) team we are looking for people with a passion for delivering customer success. As an Incident Response Engineer, you will own, troubleshoot, and solve complex customer technical issues. This opportunity will allow you to accelerate your career growth, hone your problem-solving, collaboration and research skills, and deepen your technical proficiency.

This role is flexible in that you can work up to 100% from home.

Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.


Qualifications


Required/Minimum Qualifications (RQs/MQs)

* Demonstrated experience in customer-facing roles (Customer support experience is preferred).
* Practical experience managing and troubleshooting Network, Windows Server, Windows Client, and Active Directory environments.
* Working knowledge of Entra ID and Microsoft 365 management and troubleshooting experience.
* Experience or passion in Cybersecurity and Security Incident Response.
* Ability to manage complex Incident Response situations with a focus on deep technical troubleshooting and empathetic customer engagement.
* Experience supporting large and complex geographically distributed enterprise environments with 1000+ users.
* Bachelor's degree in Computer Science, Information Technology (IT), or related field AND demonstrated experience of technical support, technical consulting experience, or information technology experience.

Additional or Preferred Qualifications (PQs)

* Experience in Security Incident Response with recent operational security experience (Indicator of Attack / Indicator of Compromise deep investigation, On-Premises data and Cloud log investigation, Malware Analysis, Threat Analytics, Threat Intelligence, endpoint security, etc.)
* Experience in Network Security Administration, and/or Systems Administration with experience in Windows Server, Windows Client, and Active Directory Administration
* Experience in Cloud investigations with Entra ID, Microsoft 365 and Microsoft Defender solutions
* Experience with any Microsoft Defender solutions
* Experience in Azure Identity management and troubleshooting
* Kusto Query Language knowledge
* Cloud experience with any of the major cloud providers, including cloud security, networking, and migration of multi-cloud or hybrid deployments
* Automation (PowerShell and/or Python, Java, or a similar language, can be a beginner to intermediate level)
* Preferred IT Industry certifications (Microsoft Certifications On-Prem or Cloud, SANS GCIH, CISSP, CEH, Amazon AWS, etc.)
* Preferred Bachelor's degree or higher in a technical field, or relevant work experience

Language Qualification

English Language: fluent in reading, writing and speaking.

Ability to meet Microsoft, customer and / or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire / transfer and every two years thereafter.


Responsibilities


Responsibilities:

* Scope customer security incidents.
* Understand and identify indicators of attack and indicators of compromise.
* Investigate root cause of complex security incidents.
* Analyse incident data from threat analytics tools.
* Collaborate with the Security and Threat Intelligence teams by providing indicators of compromise and samples of malware from the customer's environment.
* Coordinate a response to the security incident with other Microsoft security and consulting teams.
* Develop, document, and implement runbooks, capabilities, and techniques for Incident Response.
* Perform security triage and analysis on endpoint, server, and network infrastructure.
* Perform activities necessary for immediate containment and short-term resolution of incidents.
* Maintain current knowledge and understanding of the threat landscape, emerging security threats, and vulnerabilities.
* Maintain a high level of confidentiality.
* Participate in the on-call rotation as required.

Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.



Industry leading healthcare



Educational resources



Discounts on products and services



Savings and investments



Maternity and paternity leave



Generous time away



Giving programs



Opportunities to network and connect

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Senior engineer – product safety
Farnborough (Hampshire)
Bae Systems
Engineer
Similar job
Mass properties engineer
Farnborough (Hampshire)
Bae Systems
Engineer
Similar job
Senior engineer – product assurance (combat systems)
Farnborough (Hampshire)
Bae Systems
Engineer
See more jobs
Similar jobs
Microsoft recruitment
Microsoft jobs in Reading (Berkshire)
Engineering jobs in Reading (Berkshire)
jobs Reading (Berkshire)
jobs Berkshire
jobs England
Home > Jobs > Engineering jobs > Engineer jobs > Engineer jobs in Reading (Berkshire) > Incident Response Engineer

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2025 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save