Incident Response Consultant

7 days ago


Sydney, New South Wales, Australia SecureWorks Australia Pty Ltd (7380) Full time
Job Posting

Secureworks (NASDAQ: SCWX) is a global cybersecurity leader that secures human progress with Secureworks TaegisTM, a SaaS-based, open XDR platform built on 20+ years of real-world threat intelligence and research, improving customers' ability to detect advanced threats, streamline and collaborate on investigations, and automate the right actions.

We enjoy competitive compensation and benefits packages, and reward and recognize our employees for exceptional results. A constant focus on continued learning and growth keeps our team members engaged and excited about "what's next." We offer flexible work options when available, and emphasize the importance of work-life balance. We know that when our people are rewarded, recognized, and rejuvenated, we win as a team.

Role Overview

The Secureworks Incident Response team is looking for a Senior Advisor, Incident Response Consultant who will work with various Secureworks teams and Incident Response\Readiness consultants to grow the Secureworks consulting practice. The Incident Response Consultant is primarily focused on the delivery of emergency incident response services. This involves supporting customers by managing the technical and non-technical aspects of incident response, conducting investigative analysis using digital forensics methods to determine the nature, scope, and root cause of cyber incident activity, formulating recommendations for security posture enhancement, and developing tailored remediation plans.

Additionally, the Incident Response Consultant may be required to deliver a range of proactive incident response services. These services include cyber threat hunting to help customers identify unknown compromise activity and gaps in their cybersecurity controls, as well as workshops, training courses, and exercises to help customers improve their incident response capabilities. The candidate will be expected to work on engagements with a minimum requirement of 65% billable work.

This position requires up to 20% travel.

This is a remote position.

Role Responsibilities

Serve as subject matter expert in digital forensics and incident response (DFIR) Perform complex incident response investigative analysis and develop assessments based on the analysis of host, network, and cloud digital artifacts Document analysis findings and develop recommendations to present both orally and in written reports to customers Develop tailored incident response remediation plans for major cyber incidents to direct customer containment and recovery efforts Manage urgent and critical interactions with customers Maintain professional, calming, and authoritative presence during a crisis Participate in a 24x7 on-call rotation for supporting requests from global incident response customers Travel as needed to assist customers with on-site incident response efforts

Requirements

Minimum five (5) years of cybersecurity experience in complex operating environments Minimum three (3) years in a customer facing support role (Security Engineer, Client Services, Consulting, Professional Services) Minimum of two (2) years of host forensics, network forensics, and cloud forensics experience for threat hunting and incident response efforts GCIH, GCFE, GCFA, GREM or similar certifications Strong communication skills (oral and written) Experience briefing senior-level leadership and conveying technical information to audiences of varying backgrounds and skill levels Ability to prioritize urgent tasks and work multiple consulting engagements concurrently Desire to work with customers to solve complex cybersecurity issues, including during crisis situations Theoretical and practical knowledge in the following areas:Windows and Linux operating systemsAWS, Azure (including Microsoft 365), and GCPExploits, vulnerabilities, intrusion vectors, and malwareTactics, techniques, and procedures (TTPs) commonly employed by threat actorsHost forensics, network forensics, and malware analysis techniquesNetwork traffic analysis, endpoint activity analysis, and log analysis techniquesEnterprise cyber incident management and response processesEnterprise cybersecurity controls and failure modesModern Enterprise Detection and Response (EDR) tools.

Secureworks is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at Secureworks are based on business needs, job requirements and individual qualifications, without regard to race, color, religion or belief, national, social or ethnic origin, sex (including pregnancy), age, physical, mental or sensory disability, HIV status, sexual orientation, gender identity and/or expression, marital, civil union or domestic partnership status, past or present military service, family medical history or genetic information, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Secureworks will not tolerate discrimination or harassment based on any of these characteristics.



  • Sydney, New South Wales, Australia CrowdStrike Holdings, Inc. Full time

    Incident Response Consultant (Weekends) page is loaded Incident Response Consultant (Weekends) Apply locations Australia - Sydney time type Full time posted on Posted Today job requisition id R17739 #WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading...


  • Sydney, New South Wales, Australia Crowdstrike Full time

    We Are Crowd Strike and our goal is to prevent security breaches. As a prominent player in the cybersecurity sector, our team has changed the rules of the game. With our cutting-edge cloud-native platform, we offer unmatched protection against advanced cyber threats.We are seeking individuals with boundless passion, an unwavering focus on innovation, and a...


  • Sydney, New South Wales, Australia CrowdStrike Full time

    About the Role:Join a top cybersecurity company shaping the futureIncident Response Consultant role availableCollaborative team stopping breaches worldwideSeeking individuals with energy and driveWork under pressure and across the APJ regionExperience in forensics, incident response, and cybersecurity preferredWhat you'll Do:Lead incident response...


  • Sydney, New South Wales, Australia The Decipher Bureau Full time

    Security (Information & Communication Technology)Company: We're partnering with a renowned global information security specialist expanding its presence in Australia.With a strong research focus and established nationwide offices, this consulting firm continues to go from strength to strength in the marketThe Role: In response to increasing demand and...


  • Sydney, New South Wales, Australia Palo Alto Networks Full time

    Principal Consultant, Incident Response (Unit 42) Palo Alto Networks Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelligence & Security Consulting. Cybersecurity Services & Education for CISO's, Head of Infrastructure, Network Security Engineers, Cloud... View company page At Palo Alto Networks everything...


  • Sydney, New South Wales, Australia Palo Alto Networks, Inc. Full time

    Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before.We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for...


  • Sydney, New South Wales, Australia Palo Alto Networks, Inc. Full time

    Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before.We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for...


  • Sydney, New South Wales, Australia Palo Alto Networks, Inc. Full time

    Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're...


  • Sydney, New South Wales, Australia Palo Alto Networks Full time

    Our MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for...


  • Sydney, New South Wales, Australia Palo Alto Networks Full time

    Our MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for...


  • Sydney, New South Wales, Australia Palo Alto Networks Full time

    Company Description Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...


  • Sydney, New South Wales, Australia Palo Alto Networks, Inc. Full time

    Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're...


  • Sydney, New South Wales, Australia Westpac Group Full time

    Sydney, NSW location:- Night shift work, 24/7 x 365 roster**:Join the Group Protective Services teamHow will I Help?Group Protective Services is part of the Corporate Services (Division) which provides services to the Westpac Group in the areas of Group Property, Group Procurement and Partnerships and Group Protective Services (GPS).GPS purpose is to protect...


  • Sydney, New South Wales, Australia Cisco Systems Full time

    Start Date: July months full-time)Location: This role will be 100% remoteOverview:The main purpose of this position is to gain experience while providing support to the Cisco Talos Incident Response (CTIR) Team functions. This position will support the global distributed team which analyses and responds to cyber incidents affecting any of our customersWhat...

  • Incident Response

    7 days ago


    Sydney, New South Wales, Australia Bank Of America Full time

    Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection.Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...

  • Incident Response

    7 days ago


    Sydney, New South Wales, Australia Bank of America Full time

    At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our teammates...


  • Sydney, New South Wales, Australia The Decipher Bureau Full time

    Company:We're partnering with a renowned global information security specialist expanding its presence in Australia. With a strong research focus and established nationwide offices, this consulting firm continues to go from strength to strength in the market. The Role:In response to increasing demand and ongoing expansion in Incident Response, our client...


  • Sydney, New South Wales, Australia Paxus Australia Pty Ltd Full time

    Posted 17 November 202- SalaryAU$ AU$ per annum LocationSydney Job type Permanent DisciplineIT General Reference263775Job description:Client:Embark on a rewarding career as a Cyber Defence and Incident Response Consultant. Join us in safeguarding organizations against cybersecurity threats. Be a key player in managing security incidents and enhancing cyber...


  • Sydney, New South Wales, Australia Amazon Full time

    AWS Incident Response Support Engineer, AWS Incident Response AWS Incident Response is at the heart of high availability of Amazon Web Services.We make customer impacting events shorter and less frequent by providing large scale event and incident management.Our automated tooling quickly identies the cause of an issue and helps mitigate its impact, and much...


  • Sydney, New South Wales, Australia Amazon Full time

    AWS Incident Response Support Engineer, AWS Incident ResponseAWS Incident Response is at the heart of high availability of Amazon Web Services. We make customer impacting events shorter and less frequent by providing large scale event and incident management. Our automated tooling quickly identies the cause of an issue and helps mitigate its impact, and much...