{"absolute_url":"https://job-boards.greenhouse.io/wpp/jobs/8826822002","data_compliance":[{"type":"gdpr","requires_consent":false,"requires_processing_consent":false,"requires_retention_consent":false,"retention_period":null,"demographic_data_consent_applies":true}],"internal_job_id":6533114002,"location":{"name":"Chennai, India"},"metadata":null,"id":8826822002,"updated_at":"2026-09-25T01:53:50-04:00","requisition_id":"11541","title":"Senior Security Incident Responder","company_name":"WPP","first_published":"2026-09-25T01:53:25-04:00","language":"en","application_deadline":null,"content":"\u0026lt;div class=\u0026quot;content-intro\u0026quot;\u0026gt;\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;WPP is the trusted growth partner for the world’s leading brands.\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;We unite cutting-edge media intelligence and data solutions, world-class creativity, next-generation production, transformative enterprise solutions and expert strategic counsel in a single company – powered by exceptional talent and our agentic marketing platform, WPP Open, to help our clients navigate change, capture opportunity and deliver transformational growth.\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;We work with the world\u0026#39;s most valuable brands and have global reach across 100+ markets, with deep local expertise.\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;Our people are the key to our success. We\u0026#39;re committed to fostering a culture of creativity, belonging and continuous learning, attracting and developing the brightest talent, and providing exciting career opportunities that help our people grow.\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;For more information, visit \u0026lt;a href=\u0026quot;https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwpp.com%2F\u0026amp;amp;data=05%7C02%7CErica.Durr%40wpp.com%7C9bf4566a65bc46a48ac008de749116ea%7C150b5e663d884dee83f6ed149b727a00%7C0%7C0%7C639076363668176216%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C\u0026amp;amp;sdata=Q9juosud56XGLThSFZ1NpPZd6FXpJPxV74OeRZWoh%2B4%3D\u0026amp;amp;reserved=0\u0026quot; target=\u0026quot;_blank\u0026quot;\u0026gt;WPP.com.\u0026lt;/a\u0026gt;\u0026lt;/strong\u0026gt;\u0026lt;br\u0026gt;\u0026lt;strong\u0026gt;\u0026amp;nbsp;\u0026lt;/strong\u0026gt;\u0026lt;/p\u0026gt;\u0026lt;/div\u0026gt;\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;text-decoration: underline;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Why we\u0026#39;re hiring:\u0026lt;/strong\u0026gt;\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;The Senior Security Incident Responder is a lead technical authority for incident response execution, responsible for handling the most complex, high-impact, and business-critical security incidents across WPP. The role does not have line management responsibility; people management remains with the Security Incident Management Lead.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;text-decoration: underline;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;What you\u0026#39;ll be doing:\u0026lt;/strong\u0026gt;\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;KEY RESPONSIBILITIES\u0026lt;/p\u0026gt;\n\u0026lt;ol\u0026gt;\n\u0026lt;li style=\u0026quot;font-weight: bold;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Advanced Incident Detection, Analysis \u0026amp;amp; Response\u0026lt;/strong\u0026gt;\u0026lt;/li\u0026gt;\n\u0026lt;/ol\u0026gt;\n\u0026lt;p\u0026gt;- Lead investigations for high-severity and complex security incidents.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Perform deep technical analysis using SIEM, SOAR, EDR/XDR, identity, email, and cloud telemetry.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Execute and oversee containment, eradication, and recovery actions.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Act as technical incident commander when delegated.\u0026lt;/p\u0026gt;\n\u0026lt;ol\u0026gt;\n\u0026lt;li style=\u0026quot;font-weight: bold;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Escalation Handling \u0026amp;amp; Stakeholder Coordination\u0026lt;/strong\u0026gt;\u0026lt;/li\u0026gt;\n\u0026lt;/ol\u0026gt;\n\u0026lt;p\u0026gt;- Serve as the primary escalation point for complex incidents.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Coordinate with Legal, Privacy, Risk, Technology Operations, and agency teams.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Provide clear technical updates to senior stakeholders.\u0026lt;/p\u0026gt;\n\u0026lt;ol\u0026gt;\n\u0026lt;li style=\u0026quot;font-weight: bold;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Forensics, Evidence Handling \u0026amp;amp; Assurance\u0026lt;/strong\u0026gt;\u0026lt;/li\u0026gt;\n\u0026lt;/ol\u0026gt;\n\u0026lt;p\u0026gt;- Lead forensic evidence collection, preservation, and analysis.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Ensure documentation and artefacts are audit-ready.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Support external forensic or law-enforcement engagement when required.\u0026lt;/p\u0026gt;\n\u0026lt;ol\u0026gt;\n\u0026lt;li style=\u0026quot;font-weight: bold;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Quality Assurance, Playbook Maturity \u0026amp;amp; Continuous Improvement\u0026lt;/strong\u0026gt;\u0026lt;/li\u0026gt;\n\u0026lt;/ol\u0026gt;\n\u0026lt;p\u0026gt;- Review incident handling quality and identify process or tooling gaps.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Improve incident response playbooks and SOPs.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Lead or support post-incident reviews and ensure actions are tracked.\u0026lt;/p\u0026gt;\n\u0026lt;ol\u0026gt;\n\u0026lt;li style=\u0026quot;font-weight: bold;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Technical Leadership \u0026amp;amp; Capability Uplift\u0026lt;/strong\u0026gt;\u0026lt;/li\u0026gt;\n\u0026lt;/ol\u0026gt;\n\u0026lt;p\u0026gt;- Mentor Security Incident Responders without line management responsibility.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Partner with Detection Engineering, Threat Intelligence, Automation, and VM teams.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Identify opportunities for automation and response optimisation.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;text-decoration: underline;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;What you\u0026#39;ll need:\u0026lt;/strong\u0026gt;\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;Essential:\u0026lt;/strong\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Extensive hands-on experience responding to enterprise-scale security incidents.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Deep technical expertise across SIEM, SOAR, EDR/XDR, identity, email, and cloud platforms.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Strong forensic, investigation, and root cause analysis skills.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Ability to operate calmly under pressure and communicate clearly.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;Desirable:\u0026lt;/strong\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Experience acting as incident commander or senior escalation point.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Familiarity with MITRE ATT\u0026amp;amp;CK and threat-led response.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;- Relevant certifications (GCIH, GCFA, GCED, CISSP).\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;text-decoration: underline;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;Who you are:\u0026lt;/strong\u0026gt;\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;You\u0026#39;re open\u0026lt;em\u0026gt;:\u0026lt;/em\u0026gt; \u0026lt;/strong\u0026gt;we are inclusive and collaborative; we encourage the free exchange of ideas; we respect and celebrate diverse views. We are open-minded: to new ideas, new partnerships, new ways of working.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;You\u0026#39;re optimistic\u0026lt;em\u0026gt;:\u0026lt;/em\u0026gt;\u0026lt;/strong\u0026gt; we approach all that we do with confidence: to try the new and to seek the unexpected.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;You\u0026#39;re extraordinary:\u0026lt;/strong\u0026gt; We are stronger together: through collaboration we achieve the amazing. We are creative leaders and pioneers of our industry; we provide extraordinary every day.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026amp;nbsp;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;text-decoration: underline;\u0026quot;\u0026gt;\u0026lt;strong\u0026gt;What we\u0026#39;ll give you:\u0026lt;/strong\u0026gt;\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;Passionate, inspired people\u0026lt;/strong\u0026gt; – we champion a culture of people that do extraordinary work\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;Scale and opportunity\u0026lt;/strong\u0026gt; – we offer the opportunity to create, influence and deliver projects at a scale that is unparalleled in the industry.\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;Challenging and stimulating work\u0026lt;/strong\u0026gt; – unique work and the opportunity to join a group of creative problem solvers.\u0026amp;nbsp;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026amp;nbsp;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;color: rgb(236, 240, 241);\u0026quot;\u0026gt;#LI-Hybrid\u0026amp;nbsp;\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\u0026lt;div class=\u0026quot;content-conclusion\u0026quot;\u0026gt;\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;We believe the best work happens when we\u0026#39;re together, fostering creativity, collaboration, and connection. That\u0026#39;s why we’ve adopted a hybrid approach, with teams in the office around four days a week. If you require accommodations or flexibility, please discuss this with the hiring team during the interview process.\u0026lt;/strong\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;strong\u0026gt;WPP is an equal opportunity employer and considers applicants for all positions without discrimination or regard to particular characteristics. We are committed to fostering a culture of respect in which everyone feels they belong and has the same opportunities to progress in their careers.\u0026lt;/strong\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;h4\u0026gt;\u0026lt;strong\u0026gt;Please read our Privacy Notice (\u0026lt;a href=\u0026quot;https://www.wpp.com/en/careers/wpp-privacy-policy-for-recruitment\u0026quot;\u0026gt;https://www.wpp.com/en/careers/wpp-privacy-policy-for-recruitment\u0026lt;/a\u0026gt;) for more information on how we process the information you provide.\u0026lt;/strong\u0026gt;\u0026lt;/h4\u0026gt;\u0026lt;/div\u0026gt;","departments":[{"id":4060820002,"name":"Technology \u0026 Innovation","child_ids":[],"parent_id":null}],"offices":[{"id":4042747002,"name":"Chennai","location":"Chennai, Tamil Nadu, India","child_ids":[],"parent_id":4040337002}],"ai_disclaimer":null,"include_ai_disclaimer":null,"ai_opt_out_request_url":null}