Lead Detection & Response Engineer

Lloyds Bank plcEdinburgh, ScotlandHybridContractListed 1 week ago

Apply now

About this role

End Date
Tuesday 13 October 2026

Salary Range
£72,702 - £80,780

We support flexible working – click here for more information on flexible working options

Flexible Working Options
Flexibility in when hours are worked, Hybrid Working, Job Share

Job Description Summary
Help defend one of the UK's largest organisations against evolving cyber threats. As a Detection & Response Engineer in Lloyds Banking Group's Cyber Defence Centre, you'll play a key role in protecting the organisation from cyber threats by leading complex investigations, identifying malicious activity, and enhancing our detection and response capabilities.

Working alongside experienced cyber defence professionals, you'll act as a technical specialist contributing to the identification, investigation, containment and remediation of security incidents whilst continuously improving how we detect and respond to threats. You'll combine deep expertise with a curious and analytical perspective to solve complex security challenges and strengthen the Group's cyber resilience.

Job Description

This   role is i deal for an experienced cyber security   profe ssional with a passion for threat detection, incident   response   and continuous improvement.   Y ou'll   provide technical leadership th rough   e xpertise ,   whilst also undertaking management of Security Engineers across the team.

You'll   partner closely with engineers across the Cyber   Defence   Centre, helping to raise technical standards, share knowledge, and support the development of less experienced colleagues.   You'll   have opportunities to influence how we detect and respond to threats while   remaining   hands-on in the investigation of complex security incidents and cyber   defence   activities .

What   you’ll   do:

- Investigate   security alerts, incidents and   emerging   threats, driving effective containment,   eradication   and recovery activities.

- Perform detailed analysis of security events, attacker behaviours and threat intelligence to   identify   risks and determine   appropriate response   actions.

- Undertake threat hunting, forensic   investigations   and proactive cyber   defence   activities to   identify   previously unknown threats.

- Contribute to the development and improvement of Cyber   Defence   by   utilising   the Continuous Detection Continuous Response (CD/CR) model.

- Use automation,   AI   and modern security tooling to improve the effectiveness and efficiency of detection and response engineering.

- Take a leading role in managing Detection and Response Engineers, from performance management, defining tailored   objectives   and goals and recruitment activities .

- Act as a technical role model within the team, sharing lessons learned to drive continuous improvement and engineering excellence.

What   you'll   need:

- Strong experience working within a Security Operations Centre (SOC), Cyber   Defence , Incident Response, Threat   Hunting   or related cyber security   function .

- Strong leadership and mentoring capabilities with the ability to foster a high-performance, inclusive team culture

- Strong understanding of threat detection lifecycle, attacker   behaviour   and Tactics, Techniques and Procedures (TTPs)

- Experience with security investigations and responding to security incidents using enterprise security tools and technologies.

- Knowledge of one or more cyber   defence   fields such as Incident Response, Threat Hunting, Detection Engineering, Threat Analysis or Digital Forensics.

- Strong analytical and problem-solving skills, with the ability to assess complex situations and determine   appropriate actions .

- Ability to influence technical outcomes and drive improvements through   expertise ,   collaboration   and credibility.

- Excellent written and verbal communication skills, including the ability to explain technical findings clearly to both technical and non-technical audiences.

- This role will include a requirement to work as part of an on-call   rota .

Our continued commitment to helping Britain prosper means that as a colleague you can make a difference to customers,   businesses   and communities.

Together we have a key role to play in shaping the bank of the future, whilst the scale and reach of our Group means   you'll   continue to have opportunities to learn, grow and develop.

W e're   focused on creating a values-led culture, and our approach to inclusion and diversity means that we all   have the opportunity to   make a real difference, together .

At Lloyds Banking Group, we're driven by a clear purpose; to help Britain prosper. Across the Group, our colleagues are focused on making a difference to customers, businesses and communities. With us you'll have a key role to play in shaping the financial services of the future, whilst the scale and reach of our Group means you'll have many opportunities to learn, grow and develop.

We keep your data safe. So, we'll only ever ask you to provide confidential or sensitive information once you have formally been invited along to an interview or accepted a verbal offer to join us which is when we run our background checks.  We'll always explain what we need and why, with any request coming from a trusted Lloyds Banking Group person.

We're focused on creating a values-led culture and are committed to building a workforce which reflects the diversity of the customers and communities we serve. Together we’re building a truly inclusive workplace where all of our colleagues have the opportunity to make a real difference.