Senior Incident Responder; GSOC
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Location: New York
Role Purpose
The Senior Incident Response role is part of a global Incident Response team that sits within the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and enhancing the defensive capabilities of the GSOC.
LSEG GSOC is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response.
Key Responsibilities- Serve as a focal technical lead on cyber security events and incidents.
- Provide technical, hands‑on incident investigation and support and serve as a main point of contact with management.
- Conduct complex digital forensics and advanced malware analysis investigations.
- Facilitate, document and manage root cause analysis and post‑incident review process, including tracking all action items and lessons learned through to implementation.
- Preserve, harvest, and analyse data from computer systems including desktops, servers (virtual/physical) and appliances.
- Handle the chain of custody for all evidence collected during incidents, security, and forensic investigations.
- Build and improve defensive capabilities using monitoring technologies including SIEM and EDR.
- Perform proactive threat hunting and threat modelling to identify cyber threats.
- Coach and mentor incident responders in the steps to take to investigate and resolve computer security incidents.
This role has impact across all parts of the business, as it is responsible for ensuring that cyber‑attacks impacting LSEG are appropriately responded to. Impacts include financial, economic, regulatory, customer and brand.
The Global Security Operations Centre (GSOC) where this role sits has responsibility for defending the entire group against cyber‑attacks, parts of which are defined by different nations governments as Critical National Infrastructure (CNI).
The role is key to addressing regulatory concerns for all our regulated entities related to cyber security and cyber resilience.
Technical / Job Functional Knowledge- Experience performing complex digital forensic and incident response investigations.
- Deep knowledge of common operating systems (e.g. macOS, Windows, Unix, Linux) and their associated file systems.
- Proficient with industry‑standard incident response toolsets such as Axiom, X‑Ways, FTK and Volatility.
- Knowledge of cloud technologies and cloud infrastructures such as AWS, GCP, Azure, O365.
- Experience with conducting log analysis across different components of a typical organisation estate (e.g. OS, network, cloud).
- Deep understanding of advanced cyber adversary tools, techniques and procedures.
- Good understanding of Security Operations Centre (SOC) practices, processes and procedures.
- Good understanding of incident response processes and procedures, including common frameworks (e.g. NIST, MITRE ATT&CK, etc).
- Automating and refining incident response procedures/playbooks to improve SOC efficiencies.
- Policies, standards and security frameworks, NIST, CIS.
Must have extensive experience of working in incident response such as within SOCs, digital forensics, or equivalent roles.
Preferred experience and knowledge of cyber security in global financial services and/or regulated environments.
Compensation/BenefitsInformation: LSEG is committed to offering competitive Compensation and Benefits. The anticipated base salary for this position is $105,900 - $176,500. Please be aware base salary ranges may vary by geographic location, city and state. In addition to our offered base salary, this role is eligible for our Annual Incentive Plan (AIP/"bonus plan"). Target AIP rates will be commensurate with role level and posted career stage.
Individual salary will be reflective of job related knowledge, skills and equivalent experience. LSEG roles (excluding internships and part‑time roles of less than 20 hours per week) are typically eligible for inclusion in our LSEG Benefits program, which includes offerings of:
Annual Wellness Allowance, Paid…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).