Incident Handler

Incident Handler

£60000 - £100000 per annum

Incident Handler              –              UK          –              Up to 100k          –              Remote

A Boutique Consultancy is on the hunt for an Incident Handler to join the rapidly expanding IR team. This opportunity is ideal for individuals which possess a deep understanding of digital forensics and incident response. The successful candidate will have the pleasure of working within an agile security atmosphere with opportunities for personal development and internal role progression.
Ideally the Incident Handler will demonstrate extensive technical knowledge regarding Incident Response and Digital Forensics. As an Incident Handler you are expected to develop clients IR capabilities, carry out investigations for breaches occurred and provide mentorship to junior members within the Cyber Security Incident Response Team. This is a fantastic opportunity for an Incident Handler who is passionate about cyber and enjoys working within a rapid work environment.
Responsibilities of an Incident Handler:

  • Perform investigations for breaches which have occurred for clients
  • Carry out analysis on intrusion detection systems alerts and logs
  • Carry out malware analysis and identify the actions performed
  • Help develop the strategic direction for the CSIRT
  • Engagement with clients to provide consultation and SME to develop their IR capabilities
  • Offer mentorship to junior members within the CSIRT to develop organisational standards

Requirements of an Incident Handler:

  • 4 years previous experience working within an IR team or a similar role
  • Demonstrate strong technical knowledge and experience within IR
  • Ability to network effectively with clients
  • Experience developing incident management plan with external facing clients
  • Strong knowledge of network tools such as FTK, ENCASE, Volatality, SIFT and WireShark
  • Experience with forensic, log, malware and root cause analysis
  • Experience in digital evidence preservation
  • Right to work within the UK without visa sponsorship

Desirables for an Incident Handler:

  • Obtains a university degree
  • Incident Management certifications (preferably GIAC or SANS)
  • Digital forensics certifications (preferably GIAC or SANS)

If you or someone you know suits this role and is interested, please get in contact with me via email at

LT Harper is an equal opportunities employer, and we are firm believers that everyone has the right to feel valued and safe in their place of work. Therefore, we welcome the unique contributions that everyone can bring. All qualified applicants will be considered for employment irrespective of race, religion, nationality, sex, sexual orientation, gender identity, age and disability, or any other legally protected status.

Apply for this Job

Please enter your full name.

Enter a valid email address.

Upload your CV to accompany your application for this job.

Fields marked with * are required.

CyberArk Guardian Architect

  Fully remote role £700-800/day outside IR35 6 months rolling contract  I am currently looking for a well experienced CyberArk Guardian certified Senior Architect/Consultant to

Read More »
Sailpoint IdentityNow Engineers

I am currently looking for a well experienced SailPoint IdentityNow engineer to join a well-established technology and cyber-security consultancy based in Denmark.  Fully remote role

Read More »
ForgeRock Engineer

ForgeRock Engineer ForgeRock (Security Cleared) Engineer required for long-term Central Government Identity Access Management transformation project rolling out ForgeRock IAM platform.The government department is undertaking

Read More »
Checkpoint Engineer

My client is a Nationally recognized Managed Service Provider working with a number of market leading clients They are currently seeking a Fluent German Checkpoint

Read More »
Ping Developer

Ping Developer *Contract Opportunity* Remote working Outside IR35 Opportunity for travel Working with an international team of IT and business professionals Supportive environment with open

Read More »