Security Incident Response Engineer in Warrington

Security Incident Response Engineer in Warrington

Warrington Full-Time 50000 - 60000 € / year (est.) No home office possible
Alexander Mann Solutions - Public Sector Resourcing

At a Glance

  • Tasks: Design and develop Security Incident Response workflows and enhance incident handling processes.
  • Company: Join Sellafield Ltd, a leader in transforming the future with a 100-year mission.
  • Benefits: Hybrid working, competitive pay, and unmatched professional development opportunities.
  • Other info: Diversity-focused workplace committed to inclusion and continuous improvement.
  • Why this job: Be part of a vital project that impacts generations while working with industry experts.
  • Qualifications: Experience with ServiceNow SecOps and a solid understanding of cyber security.

The predicted salary is between 50000 - 60000 € per year.

On behalf of Sellafield, we are looking for a Security Incident Response Engineer (Outside IR35) for a 6 month contract. Hybrid working based in Warrington.

Work at Sellafield Ltd, and you're not just building a career. You're embarking on a mission. Joining 11,000 people on a 100-year project transforming the Sellafield site for all the generations that follow. We have the site at Sellafield (West Cumbria) and our office at Risley (near Warrington). Join us and you'll work shoulder-to-shoulder with industry-leading - sometimes world-leading - experts. There are generations and generations of knowledge here and people are only too willing to share it. Our culture of continuous improvement is underpinned by commitment to professional and personal development few can match. Our relentless pursuit of excellence is reflected in our health, safety, security, resilience, and environmental performance standards as well as the quality of the products and services we deliver to our customers.

As a Security Incident Response Engineer your main responsibilities will be to:

  • Design and develop ServiceNow Security Incident Response (SIR) workflows, including incident triage, escalation paths, case life cycle and evidence management.
  • Ensure workflows are aligned to Cyber Operations requirements, industry incident management frameworks and NCSC-aligned processes.
  • Configure and customise the SIR platform, including forms, fields, templates, routing rules and classification models.
  • Develop and maintain guided response actions and playbooks to support standardised incident handling.
  • Identify functional gaps within the platform and design enhancements in line with governance and architectural standards.
  • Integrate ServiceNow SIR with SIEM/SOC tools, threat intelligence feeds, SOAR platforms and ITSM processes.
  • Produce compliance-focused, audit-ready reporting and workflow analytics to support continuous improvement.
  • Create and maintain documentation including SOPs, user guides, technical configurations and integration maps.
  • Support the transition of SIR capabilities into Business-as-Usual (BAU) operations.

Essential:

  • An active SC Clearance is an essential requirement for this role; as a minimum you must be willing & eligible to undergo checks.
  • ServiceNow SecOps/SIR experience - Hands-on experience configuring and delivering ServiceNow Security Incident Response modules.
  • Cyber Security Domain Knowledge, with an understanding of incident response life cycles, SOC/CSOC operations and threat intelligence & detection workflows.
  • Stakeholder Management & Engagement skills, with a proven ability to engage across teams and stakeholders.

Desirable:

  • Experience with Microsoft Security technologies.

Please be aware that this role can only be worked within the UK and not Overseas.

Sellafield Ltd is committed to eliminating discrimination and encouraging diversity amongst its workforce.

Disability Confident

As a member of the Disability Confident Scheme, Sellafield guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. This scheme encourages candidates with a disability and/or neurodivergence to apply. In exceptional circumstances, we may also need to apply the desirable criteria in our shortlisting process which may include holding active security clearance.

Armed Forces Covenant

Sellafield guarantees to interview veterans or spouses/partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates/military spouses or partners, who meet all the essential criteria, we will interview the best candidates from within that group. In exceptional circumstances, we may also need to apply the desirable criteria in our shortlisting process which may include holding active security clearance.

Security Incident Response Engineer in Warrington employer: Alexander Mann Solutions - Public Sector Resourcing

At Sellafield Ltd, we offer a unique opportunity to be part of a transformative mission that spans generations, working alongside industry-leading experts in a culture that prioritises continuous improvement and professional development. Our hybrid working model based in Warrington allows for flexibility while you contribute to high standards in health, safety, security, and environmental performance. Join us to not only advance your career but also to make a meaningful impact on the future.

Alexander Mann Solutions - Public Sector Resourcing

Contact Detail:

Alexander Mann Solutions - Public Sector Resourcing Recruiting Team

StudySmarter Expert Advice🀫

We think this is how you could land Security Incident Response Engineer in Warrington

✨Tip Number 1

Network like a pro! Reach out to current or former employees at Sellafield on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.

✨Tip Number 2

Prepare for the interview by brushing up on your ServiceNow SecOps/SIR knowledge. Be ready to discuss specific workflows you've designed or enhanced, as this will show you're the right fit for the role.

✨Tip Number 3

Showcase your stakeholder management skills! Think of examples where you've successfully engaged with different teams. This is key for the role, so make sure to highlight it during your discussions.

✨Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're serious about joining the mission at Sellafield.

We think you need these skills to ace Security Incident Response Engineer in Warrington

ServiceNow Security Incident Response (SIR) experience
Cyber Security Domain Knowledge
Incident Response Life Cycles
SOC/CSOC Operations
Threat Intelligence & Detection Workflows
Stakeholder Management & Engagement skills
Configuration and Customisation of ServiceNow SIR

Some tips for your application 🫑

Tailor Your CV:Make sure your CV is tailored to the Security Incident Response Engineer role. Highlight your ServiceNow SecOps experience and any relevant cyber security knowledge. We want to see how your skills match what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about this role at Sellafield and how your background makes you a perfect fit. We love seeing enthusiasm and a personal touch.

Showcase Your Experience:When detailing your experience, focus on specific projects or tasks that relate to incident response workflows and stakeholder management. We want to know how you've tackled challenges in the past and what you've learned from them.

Apply Through Our Website:Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it helps us keep everything organised and efficient.

How to prepare for a job interview at Alexander Mann Solutions - Public Sector Resourcing

✨Know Your ServiceNow Inside Out

Make sure you brush up on your ServiceNow Security Incident Response (SIR) knowledge. Be ready to discuss your hands-on experience with configuring and delivering SIR modules, as well as how you've aligned workflows with Cyber Operations requirements.

✨Understand the Incident Response Life Cycle

Familiarise yourself with the incident response life cycle and SOC operations. Be prepared to explain how you’ve managed incidents in the past and how you would approach incident triage and escalation paths in this role.

✨Showcase Your Stakeholder Management Skills

This role requires strong stakeholder engagement skills. Think of examples where you've successfully collaborated across teams or influenced stakeholders. Be ready to share these experiences during your interview.

✨Prepare for Compliance and Reporting Questions

Since compliance-focused reporting is key, be ready to discuss how you've produced audit-ready reports and workflow analytics in previous roles. Highlight any experience you have with documentation, SOPs, and technical configurations.