Senior Manager – Associate Director Technical Incident Responder, Cyber Incident Response

Company: Deloitte
Apply for the Senior Manager – Associate Director Technical Incident Responder, Cyber Incident Response
Location: London
Job Description:

Overview

In this role, you will drive Cyber Incident Response (CIR) within Deloitte’s Technology and Transformation practice, leading investigations and coordinating incident teams to quickly identify root causes and remove threats. You’ll work with cross-functional colleagues and high-profile clients to mature security postures and develop cyber services. The role blends hands-on technical work with advisory duties, coaching, and service development, enabling you to influence client resilience at scale. You’ll engage on-call rotations, travel when needed, and contribute to a collaborative, inclusive culture that values growth and integrity.

Pay / Benefits

  • hybrid working options (Deloitte Works)
  • professional development and mentoring
  • career growth opportunities
  • inclusive culture and wellbeing
  • flexible working arrangements
  • competitive benefits

Responsibilities

  • Lead and coordinate incident response efforts, guiding both technical and non-technical team members
  • Deliver cyber engagements with clients and collaborate with colleagues across functions
  • Contribute to training, coaching, and development of teams
  • Help create new cyber-related services and enhance existing offerings
  • Engage with high-profile clients to raise the eminence of Deloitte Cyber practice
  • participate in on-call rotations and travel to client sites as required

Key requirements

  • Proven incident response leadership and team supervision
  • Experience in network forensics focused on detecting malicious activity
  • Experience with security intelligence, data analytics, IR, and forensic investigations
  • Forensic and memory analysis experience on Windows and/or Unix/Linux
  • IR experience in cloud environments (AWS, GCP, Azure)
  • Tool-agnostic malware analysis capability
  • Knowledge of modern hacking techniques, vulnerabilities, and data breaches
  • Excellent written and verbal communication; ability to tailor messages to diverse audiences
  • Strong interpersonal skills and relationship-building, consultancy experience preferred
  • Willingness to operate on an on-call roster; readiness to travel on UK/EMEA client assignments
  • Relevant industry qualifications (e.g., CISSP, CISM, GCFE, GCFA, GREM, GCIH, CCIM, GCIA, CCNIA, CCHIA, CCMRE) or equivalent
  • Hold or willingness to undergo Government Security clearance
  • Strong communication
  • Interpersonal relationship-building
  • Collaborative mindset
  • Incident Response (IR) leadership
  • Network forensics
  • Security analytics and data interpretation

…

Posted: October 3rd, 2026