Security Incident Management Analyst-Active SC Clearance
Quick Overview
Job Description
We are a Global Recruitment specialist that provides support to the clients across EMEA, APAC, US and Canada. We have an excellent job opportunity for you.
Role Title: Security Incident Management Analyst-Active SC Clearance
Location: Inverness or Preston | 5 days onsite
Duration: 16/04/2027 + possible extension
Role Description:
The Security Incident Management Analyst operates within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, supporting the governance and coordination of security incident management activities across suppliers.
The role assists in ensuring security incidents are identified, tracked, escalated, and reported in accordance with client policies and agreed service levels.
Working closely with suppliers, service management teams, and security stakeholders, the consultant supports incident visibility, reporting, governance activities, and audit readiness.
This is a governance and coordination role and does not perform Security Operations Centre (SOC) monitoring, threat hunting, incident response, or technical remediation activities.
If you are successfully offered this position, you will go through a series of pre-employment checks, including identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service)
Key Responsibilities:
Incident Tracking & Coordination
Support the monitoring of security incidents throughout their life cycle
Ensure incident records are maintained and updated by suppliers
Track incident progress from identification through to closure
Escalate overdue, recurring, or high-impact incidents through agreed governance channels
Supplier Engagement (SIAM Model)
Coordinate with suppliers to obtain incident updates and status reports
Support the collection and validation of supplier incident reporting
Ensure incident data standards and reporting requirements are applied consistently
Identify gaps in ownership, reporting, or evidence
Incident Reporting & Visibility
Produce routine security incident reports and dashboards
Assist in monitoring:
Incident volumes
Resolution performance
SLA compliance
Escalation trends
Support governance forums through accurate reporting and status updates
Governance & Process Compliance
Support adherence to agreed incident management processes
Ensure supplier activities align with client security policies and standards
Assist with documenting lessons learned and improvement actions
Support maintenance of incident governance documentation
Assurance & Evidence Support
Collect and organise incident management evidence
Support assurance and audit activities
Ensure incident records remain complete, traceable, and audit-ready
Assist in demonstrating process compliance and effectiveness
Your skills and experience
Essential
Experience in cyber security, service management, operational governance, or support roles
Understanding of security incident management processes
Awareness of:
Incident severity classifications
Escalation processes
Major incident management principles
Strong organisational and reporting skills
Ability to coordinate multiple stakeholders
Desirable
Exposure to SIAM or multi-supplier environments
Familiarity with incident management tooling and reporting outputs
Understanding of ITIL Incident Management concepts
Experience in regulated, government, or defence environments
Key Deliverables
Incident reporting packs
Supplier incident performance metrics
Incident status tracking and governance records
Audit-ready incident evidence
Inputs to governance and operational review forums
Role Definition
The role supports the governance and visibility of security incident management activities across suppliers, ensuring incidents are consistently tracked, reported, and evidenced without performing operational incident response activities.
What This Role Does/Does Not Do
Does
Track and coordinate incidents
Support governance and reporting activities
Validate supplier information
Maintain incident visibility and status reporting
Does Not
Operate SOC tooling
Perform threat hunting
Conduct incident response
Own technical remediation activities
If you are interested in this position and would like to learn more, please send through your CV and we will get in touch with you as soon as possible.
Please note, candidates are often Shortlisted within 48 hours.
Similar jobs
- M&
Advanced Cyber Threat Analyst - M&G plc.
NewM&G plc.
Edinburgh🇬🇧Hybrid12 hours agoAzureTechnology - ME
Senior Information System Security Officer
NewMorson Edge
Warton, Lancashire🇬🇧Hybrid52 minutes agoTechnology - ME
SOC Analyst
NewMorson Edge
Hereford, Herefordshire🇬🇧Hybrid1 hour agoSplunkTechnology - HJ
Cyber Security Engineer / Architect
NewHowdens Joinery
Northampton, Northamptonshire🇬🇧On-site1 hour agoPCI DSSZero TrustTechnology - AK
Network Security Engineer
NewAkkodis
Stevenage, Hertfordshire🇬🇧£40k - £50k/yrHybrid1 hour agoTechnology - HA
Cyber Threat Management Analyst, Specialist
NewHackajob Ltd
Charing Cross, Central London🇬🇧Hybrid12 hours agoTechnology