Information Security Incident Response Analyst
NTT DATA, Inc.
London, England
The Role
This position sits within a global DFIR team, conducting technical investigations across host, disk, memory, network, and cloud environments. Day to day, the analyst reconstructs attacker timelines, supports clients through containment and recovery, contributes to readiness assessments, and produces clear investigation reports, including participation in an on-call rotation.
Skills & Experience
Candidates require hands-on forensic analysis experience across Windows, Linux, and macOS platforms, including the ability to identify indicators of compromise and determine root cause. Familiarity with cloud forensics, network analysis, and emerging attacker techniques is expected, alongside strong written communication skills for producing accurate client-facing documentation.
Who It Suits
This role suits an analytically minded security professional who thrives in a fast-paced, client-facing environment and enjoys working across varied incident types. Someone eager to deepen their DFIR expertise through real-world investigations, collaborative global teamwork, and continuous learning will find this position particularly rewarding.
Typical advertised salary for Incident Response roles in United Kingdom: £53,000–£85,000 (median £68,000 — from 24 recent listings analysed by Forensic Focus).
Learn More/Apply





