- Salary
- £73k – £81k
- Location
- Edinburgh Sighthill North, United Kingdom · Bristol · Leeds · Manchester
- Workplace
- Hybrid
- Type
- Full-time
- Department
- Engineering
- Closing date
- Today
- Source
- Workday
Description
End Date
Tuesday 13 October 2026Salary Range
£72,702 - £80,780We support flexible working – click here for more information on flexible working options
Flexible Working Options
Flexibility in when hours are worked, Hybrid Working, Job ShareJob Description Summary
Help defend one of the UK's largest organisations against evolving cyber threats. As a Detection & Response Engineer in Lloyds Banking Group's Cyber Defence Centre, you'll play a key role in protecting the organisation from cyber threats by leading complex investigations, identifying malicious activity, and enhancing our detection and response capabilities.Working alongside experienced cyber defence professionals, you'll act as a technical specialist contributing to the identification, investigation, containment and remediation of security incidents whilst continuously improving how we detect and respond to threats. You'll combine deep expertise with a curious and analytical perspective to solve complex security challenges and strengthen the Group's cyber resilience.
Job Description
This role is an individual contributor and is ideal for an experienced cyber security professional with a passion for threat detection, incident response and continuous improvement. As a senior member of the team, you'll provide technical leadership through expertise, coaching and mentorship rather than formal line management responsibilities.
You'll partner closely with engineers across the Cyber Defence Centre, helping to raise technical standards, share knowledge, and support the development of less experienced colleagues. You'll have opportunities to influence how we detect and respond to threats while remaining hands-on in the investigation of complex security incidents and cyber defence activities.
What you'll do
Lead complex investigations into security alerts, incidents and emerging threats, driving effective containment, eradication and recovery activities.
Perform detailed analysis of security events, attacker behaviours and threat intelligence to identify risks and determine appropriate response actions.
Undertake threat hunting, forensic investigations and proactive cyber defence activities to identify previously unknown threats.
Contribute to the development and improvement of Cyber Defence by utilising the Continuous Detection Continuous Response (CD/CR) model.
Use automation, AI and modern security tooling to improve the effectiveness and efficiency of detection and response engineering.
Mentor and coach Detection & Response Engineers, providing guidance and technical support to help develop team capability.
Act as a technical role model within the team, sharing lessons learned to drive continuous improvement and engineering excellence.
What you'll need
Significant experience working within a Security Operations Centre (SOC), Cyber Defence, Incident Response, Threat Hunting or related cyber security function.
Strong understanding of threat detection lifecycle, attacker behaviour and Tactics, Techniques and Procedures (TTPs)
Experience leading complex security investigations and responding to security incidents using enterprise security tools and technologies.
Knowledge of one or more cyber defence fields such as Incident Response, Threat Hunting, Detection Engineering, Threat Analysis or Digital Forensics.
Strong analytical and problem-solving skills, with the ability to assess complex situations and determine appropriate actions.
Experience coaching, mentoring or developing technical colleagues
Ability to influence technical outcomes and drive improvements through expertise, collaboration and credibility.
Excellent written and verbal communication skills, including the ability to explain technical findings clearly to both technical and non-technical audiences.
This role will include a requirement to work as part of an on-call rota
Our continued dedication to helping Britain prosper means that as a colleague you can make a difference to customers, businesses and communities.
Together we have a key role to play in shaping the bank of the future, whilst the scale and reach of our Group means you'll continue to have opportunities to learn, grow and develop.
We're focused on crafting a values-led culture, and our approach to inclusion and diversity means that we all have the chance to create a real difference, together.
At Lloyds Banking Group, we're driven by a clear purpose; to help Britain prosper. Across the Group, our colleagues are focused on making a difference to customers, businesses and communities. With us you'll have a key role to play in shaping the financial services of the future, whilst the scale and reach of our Group means you'll have many opportunities to learn, grow and develop.
We keep your data safe. So, we'll only ever ask you to provide confidential or sensitive information once you have formally been invited along to an interview or accepted a verbal offer to join us which is when we run our background checks. We'll always explain what we need and why, with any request coming from a trusted Lloyds Banking Group person.
We're focused on creating a values-led culture and are committed to building a workforce which reflects the diversity of the customers and communities we serve. Together we’re building a truly inclusive workplace where all of our colleagues have the opportunity to make a real difference.