Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
NT

Information Security Incident Response Analyst

Nttlimited
Posted 6 hours ago
🇬🇧United Kingdom🏠Remote📁Engineering & Development
Is this job info correct?

Continue to make an impact with a company that is pushing the boundaries of what is possible. At NTT DATA, we are renowned for our technical excellence, leading innovations, and making a difference for our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can continue to grow, belong, and thrive. Your career here is about believing in yourself and seizing new opportunities and challenges. It’s about expanding your skills and expertise in your current role and preparing yourself for future advancements. That’s why we encourage you to take every opportunity to further your career within our great global team. Job Description Summary The Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role focuses on identifying indicators of compromise, reconstructing attacker activity, and communicating clear, actionable findings. The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands‑on investigations and internal project work. Job Description Key Responsibilities Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance. Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause. Supports clients through containment and recovery efforts by providing technical recommendations and clear communication. Participates in the team’s on‑call rotation for urgent incident response needs. Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support. Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture. Produces accurate documentation—including investigation notes, status updates, and final reports. Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools. Knowledge and Attributes Solid understanding of digital forensics fundamentals, including host‑based analysis across major operating systems. Working knowledge of network forensics, cloud log analysis (e.g., Azure, AWS, GCP), and common forensic tools. Ability to clearly communicate technical findings to both technical and non‑technical audiences. Strong analytical and problem‑solving skills, especially during time‑sensitive investigations. Motivated to continuously learn deeper DFIR techniques and methodologies. Required Experience Proven experience in incident response and digital forensics, with capability in host‑based, image, and log analysis. Experience using SIEM, EDR, IDS/IPS, and other security tools to triage, investigate, and respond to incidents. Ability to perform network analysis using tools such as Wireshark, tcpdump, and other tools. Experience in cybersecurity operations, consulting, DFIR services, or related technical security roles. Academic Qualifications, Certifications Bachelor’s degree or equivalent experience in Information Technology, Computer Science, Cybersecurity, or a related discipline (preferred). Relevant certifications such as: SANS GIAC Security Essentials (GSEC) or equivalent preferred. SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred. SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred. GICSP – GIAC Global Industrial Cyber Security Professional GRID – GIAC Response and Industrial Defense GCIP – GIAC Critical Infrastructure Protection ISA/IEC 62443 Cybersecurity Certificates (ISA/IEC 62443 Cybersecurity Fundamentals, etc.) IC32/IC33/IC34 Any additional DFIR‑related certifications. Additional UK‑Specific Role Requirements UK Security Clearance Active UK Security Clearance is required to deliver services within sensitive or regulated client environments. Operational Technology (OT) Incident Response & Digital Forensics Background and hands‑on experience in OT environments. Experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure. Ability to collect and analyze OT forensic artifacts, interpret OT protocols and system behavior, and assess the impact of cyber incidents on physical processes. Experience with any of the following tools: Claroty CTD, Nozomi Guardian, Dragos Platform , Tenable.ot and/or Forescout/SCADAfence. Workplace type: Remote Working Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Accelerate your career with us. Apply today

Similar jobs

Similar jobs

Control Risks logo

Embedded Cyber Detection and Response Analyst

Control Risks

🇬🇧United Kingdom4 weeks ago
Visa logo

Senior Engineering Manager - DevOps (Developer Experience)

Visa

🇬🇧United Kingdom3 hours ago
Hyra logo

Software Engineer

Hyra

🌍Germany, United Kingdom, United States4 hours ago
WI

Ground & Water UK & Ireland - Expression of Interest

WSP in the UK & Ireland

🌍Ireland, United Kingdom4 hours ago
tmGroup Ltd logo

Development Team Lead

tmGroup Ltd

🇬🇧United Kingdom4 hours ago
Businesssmartsolutions logo

Benefits Assessor (Capita One/Academy)

Businesssmartsolutions

🇬🇧United Kingdom1 hour ago