Senior Security Incident Responder
Quick Summary
Advanced Incident Detection, Analysis & Response. Lead investigations for high-severity and complex security incidents. Perform deep technical analysis using SIEM, SOAR, EDR/XDR, identity, email,
Why we're hiring:
The Senior Security Incident Responder is a lead technical authority for incident response execution, responsible for handling the most complex, high-impact, and business-critical security incidents across WPP. The role does not have line management responsibility; people management remains with the Security Incident Management Lead.
What you'll be doing:
- Advanced Incident Detection, Analysis & Response.
- Lead investigations for high-severity and complex security incidents.
- Perform deep technical analysis using SIEM, SOAR, EDR/XDR, identity, email, and cloud telemetry.
- Execute and oversee containment, eradication, and recovery actions.
- Serve as the primary escalation point for complex incidents.
- Coordinate with Legal, Privacy, Risk, Technology Operations, and agency teams.
- Provide clear technical updates to senior stakeholders.
- Lead forensic evidence collection, preservation, and analysis.
- Ensure documentation and artefacts are audit-ready.
- Support external forensic or law-enforcement engagement when required.
- Quality Assurance, Playbook Maturity & Continuous Improvement
- Improve incident response playbooks and SOPs.
- Lead or support post-incident reviews and ensure actions are tracked.
- Mentor Security Incident Responders without line management responsibility.
- Partner with Detection Engineering, Threat Intelligence, Automation, and VM teams.
- Identify opportunities for automation and response optimisation.
What you'll need:
- Extensive hands-on experience responding to enterprise-scale security incidents.
- Deep technical expertise across SIEM, SOAR, EDR/XDR, identity, email, and cloud platforms.
- Strong forensic, investigation, and root cause analysis skills.
- Ability to operate calmly under pressure and communicate clearly.
- Experience acting as incident commander or senior escalation point.
- Familiarity with MITRE ATT&CK and threat-led response.
- Relevant certifications (GCIH, GCFA, GCED, CISSP).
- Fluent in written and spoken English
Who you are:
What We Offer
~1 min readLocation & Eligibility
Listing Details
- Posted
- June 16, 2026
- First seen
- June 16, 2026
- Last seen
- June 16, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 67%
- Scored at
- June 16, 2026
Signal breakdown
Please let Wpp know you found this job on Jobera.
3 other jobs at Wpp
View all →Explore open roles at Wpp.
Similar Incident Responder jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.
