KPMG UK
Senior Manager, Global Cyber Security Incident Response (Global CSIRT)

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
About the role
KPMG International sets strategy, supports collaboration and protects the reputation of a global network of independent professional services firms. Within Global Digital, the Global Information Security Group provides trusted security services that support KPMG’s digital transformation and help protect the network and its clients from cyber threats.
The Global Cyber Security Incident Response Team forms part of Information Security Services and works alongside the Global Security Operations Centre to detect, investigate and support the remediation of potential threats. In this senior operational role, you will support the strategic direction, effectiveness and continued maturity of the global incident response capability. You will provide calm, credible leadership during major incidents, strengthen collaboration across member firms and deliver improvements that enhance cyber resilience and operational excellence. The role includes participation in an on-call rota and out-of-hours support for critical incidents when required.
Roles and responsibilities
- Lead major and crisis-level cyber security incident response, ensuring clear command, timely escalation, coordinated decision-making and effective service restoration.
- Act as deputy to the Global Cyber Security Incident Response Team Lead when required, representing the function and supporting strategic priorities and executive decisions.
- Coordinate technical, legal, privacy, risk, communications and operational stakeholders to deliver an effective global response to complex incidents.
- Strengthen governance, reporting and service quality so stakeholders have clear oversight of incident response performance, risks and improvement priorities.
- Drive capability improvements through automation, orchestration, artificial intelligence-enabled investigations, tooling enhancements and modern security operations practices.
- Build trusted relationships across KPMG member firms to improve consistency, collaboration and alignment in incident response approaches.
- Guide and influence incident response teams in the UK and US, promoting effective practices, operational excellence and continuous learning.
- Coach and mentor team members, support talent development and help create an inclusive, collaborative and high-performing environment.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Experience and skills needed
- Demonstrable leadership of complex cyber security incidents, including incident command, technical investigation oversight, cross-functional coordination, crisis communications and post-incident reviews.
- Experience leading an incident response, security operations centre or cyber defence function, with evidence of developing people and improving team capability.
- Experience advising and working with senior stakeholders across information security, technology, legal, privacy, risk, compliance and corporate communications during major incidents.
- Strong knowledge of cyber defence operations and incident response, including the use of endpoint detection and response, security information and event management, incident response management and case management platforms.
- Evidence of improving security operations through governance, service improvement, automation, orchestration, tooling or artificial intelligence-enabled investigation and response.
- Strong analytical, decision-making and stakeholder management skills, with the ability to remain composed, communicate clearly and lead with empathy under pressure.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Qualifications required
A bachelor’s degree, master’s degree or doctorate in computer science, computer engineering, information technology, cyber security or a related field, or equivalent relevant industry experience. Professional information security certifications such as CISM, CISSP, GCIA, GCIH, GREM or GCFA are desirable.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location