×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Incident Response Engineer

Job in Greater London, London, Greater London, W1B, England, UK
Listing for: Luxoft
Full Time position
Listed on 2026-02-28
Job specializations:
  • IT/Tech
    Cybersecurity, Data Security
Salary/Wage Range or Industry Benchmark: 80000 - 100000 GBP Yearly GBP 80000.00 100000.00 YEAR
Job Description & How to Apply Below
Location: Greater London

Project description

Continuously monitor open-source intelligence (OSINT), dark web, and threat feeds for emerging threats relevant to JLR. Analyse TTPs (Tactics, Techniques, and Procedures) of threat actors with a focus on those targeting the automotive, manufacturing, and connected vehicle sectors. Provide real-time threat context and attribution during active incident investigations. Collaborate with CDOC, SOC and detection engineering teams to enrich alerts and improve detection capabilities.

Produce high quality, actionable intelligence reports tailored for both technical and executive leadership/ Maintain threat profiles, dashboards and intelligence repositories to support strategic decision making. Engage with industry peers, ISACs, and government bodies to share and receive threat intelligence. Support JLR's participation in national and international cyber resilience initiatives. Leverage and maintain threat intelligence platforms such as MISP, OpenCTI, and integrate with security tooling.

Develop scripts and automation to streamline intelligence collection, enrichment and dissemination.

Responsibilities
  • Continuously monitor open-source intelligence (OSINT), dark web, and threat feeds for emerging threats relevant to JLR. Analyse TTPs (Tactics, Techniques, and Procedures) of threat actors with a focus on those targeting the automotive, manufacturing, and connected vehicle sectors. Provide real-time threat context and attribution during active incident investigations. Collaborate with CDOC, SOC and detection engineering teams to enrich alerts and improve detection capabilities.

    Produce high quality, actionable intelligence reports tailored for both technical and executive leadership/ Maintain threat profiles, dashboards and intelligence repositories to support strategic decision making. Engage with industry peers, ISACs, and government bodies to share and receive threat intelligence. Support JLR's participation in national and international cyber resilience initiatives. Leverage and maintain threat intelligence platforms such as MISP, OpenCTI, and integrate with security tooling.

    Develop scripts and automation to streamline intelligence collection, enrichment and dissemination.
Skills Must have
  • Proven experience in a CTI, SOC, threat hunting, or cyber investigation's role. Strong understanding of MITRE ATT&CK, NIST CSF, cyber kill chain, and threat modeling methodologies. Hands‑on experience with threat intelligence platforms, SIEMs, and data enrichment tools. Deep knowledge of IT infrastructure, with working familiarity in OT and IoT environments, including ICS/SCADA systems and connected devices. Strong analytical and investigative mindset with the ability to connect disparate data points into meaningful intelligence.

    Excellent communication and presentation skills, capable of translating complex threats into business‑relevant insights
  • SANS/GIAC, CompTIA CySA+, or similar certifications.
  • Experience in automotive or manufacturing environments.
  • Knowledge of geopolitical and supply chain risks affecting cyber posture.
Nice to have

Proven experience in a CTI, SOC, threat hunting, or cyber investigation's role. Strong understanding of MITRE ATT&CK, NIST CSF, cyber kill chain, and threat modeling methodologies. Hands‑on experience with threat intelligence platforms, SIEMs, and data enrichment tools. Deep knowledge of IT infrastructure, with working familiarity in OT and IoT environments, including ICS/SCADA systems and connected devices. Strong analytical and investigative mindset with the ability to connect disparate data points into meaningful intelligence.

Excellent communication and presentation skills, capable of translating complex threats into business‑relevant insights
• SANS/GIAC, CompTIA CySA+, or similar certifications.
• Experience in automotive or manufacturing environments.
• Knowledge of geopolitical and supply chain risks affecting cyber posture.

#J-18808-Ljbffr
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary