Csirt Analyst

2 weeks ago


Sydney, New South Wales, Australia Experis Full time

Role:
CSIRT Analyst

Locations:
ACT, NSW, VIC, QLD, SA, WA, and TAS

Contract:
till 30th November 2023 with a possibiltiy of an extension


The client is looking for an experienced Cybersecurity Response (CSIRT) Analyst to join an advanced team that drives proactive identification of threats within the organization, provide rapid response, monitors user activity, network events, and signals from security tools to identify events that merit attention, prioritization, and investigation.

They are seeking a talented individual responsible for cybersecurity threat incidents including forensic investigations, and analysis in support of cyber incidents that are reported into the Incident Response team.

This role will require the ability to triage and conduct thorough examinations of all information technology systems across diverse cloud environments, the ability to determine containment and/or remediation activities that may be required as well as identify potential threats.

Reporting and collaborating with the different areas of business is required.

Responsibilities include:

  • At least 5 years of experience in IT Security Digital Forensics
  • At least 5 years of experience in Incident Response in a global corporate enterprise
  • Demonstrated computer forensic investigations experience.
  • Excellent technical writing and presentation skills.
  • Expertlevel knowledge of common attack vectors and penetration techniques.
  • Solid working knowledge of networking technology and tools, firewalls, proxies, IDS/IPS and encryption.
  • Demonstrated knowledge of forensic tools (Encase, FTK, Axiom Magnet, Black Bag, SIFT, Kali)
  • Experience with malware analysis (reverse engineering).
  • Experience managing large and smallscale cyber security incidents.
  • Demonstrated understanding of database structures and SQL.
  • Conduct examination of digital media (hard drives, network traffic, images, etc.).
  • Capture / analyze network traffic for indications of compromise.
  • Review logbased data, both in raw form and utilizing SIEM or aggregation tools.
  • Perform live network assessments using leading packet capture and analysis software tools.
  • Establish timelines and patterns of activity based on multiple data sources.
  • Identify, document, and prepare reports on relevant findings.
  • Strong understanding of networking protocols
  • Experience with programming or scripting languages (Python, Ruby, Powershell)
  • Demonstrated system administration skills.

Preferred Certifications (any two of the following)

  • ACE (Access Data Certified Examiner)
  • EnCe (EnCase Certified Examiner)
  • AWS Security
  • GCFE (GIAC Certified Forensics Examiner)
  • GNFA (GIAC Network Forensics Analyst)
  • GCIA (GIAC Certified Intrusion Analyst)
  • GCIH (GIAC Certified Intrusion Handler)
  • GREM (GIAC Reverse Engineering Malware)
  • OSCP (Offensive Security Certified Professional)

_ Please note, due to the nature of the work Australian Citizenship is mandatory_

_ Interested?? Please hit APPLY NOW Button or you can also call on __ _
_ for a confidential discussion._

Shwetha Bhaskar

  • Aboriginal and Torres Strait Islander people are encouraged to apply._
  • Experis Pty Ltd is a wholly owned subsidiary of ManpowerGroup_

State:
QLD, licensee/s Manpower Services (Australia) Pty Ltd, LHL-02026-D5L4Q

State:
QLD, licensee/s Experis Pty Ltd, LHL-02014-Y5F6D

State:
SA, licensee/s Manpower Services (Australia) Pty Ltd, LHS 288856
  • Csirt Team Lead

    2 weeks ago


    Sydney, New South Wales, Australia Kyndryl Full time

    Who We AreAt Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.The RoleAre you...


  • Sydney, New South Wales, Australia NTT Full time

    Manager: Security Incident and Vulnerability ManagementIn a constantly changing world, we work together with our people, clients and communities to enable them to fulfill their potential to do great things. We believe that by bringing everyone together, we can solve problems using innovative technology that can create a world that is sustainable and secure....

  • Csirt Analyst

    4 weeks ago


    Sydney, Australia Experis Full time

    **Role**: CSIRT Analyst **Locations**: ACT, NSW, VIC, QLD, SA, WA, and TAS **Contract**: till 30th November 2023 with a possibiltiy of an extension The client is looking for an experienced Cybersecurity Response (CSIRT) Analyst to join an advanced team that drives proactive identification of threats within the organization, provide rapid response,...


  • Sydney, Australia WiseTech Global Full time

    WiseTech Global is a world-leading software company building software for the global logistics industry. We are united in our mission to create breakthrough products that enable and empower those who own and operate the supply chains of the world. We’re an Engineer lead company, with a focus on building secure, scalable products. It goes without saying...


  • Sydney, Australia Kyndryl Australia Pty Ltd Full time

    **Why Kyndryl** Kyndryl was spun-off of IBM IT infrastructure services in 2021. Our global base of customers includes 75 of the Fortune 100 companies. With 88,449 skilled professionals operating from over 100 countries, we are committed to the success of our customers, collaborating with them, and helping them to realise their ambitions. We help our...

  • Junior Csirt Analyst

    3 weeks ago


    Sydney, Australia Kyndryl Full time

    Who We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role The...

  • Csirt Team Lead

    3 weeks ago


    Sydney, Australia Kyndryl Full time

    Who We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role Are...


  • Sydney Eastern Suburbs, Australia Robert Half Full time

    Join this large & recognisable global firm in a newly created role to lead the execution & coordination of IR processes, automation, and cloud IR. - Newly created role in a well-known global firm - Lead CSIRT activities in the region - Full time permanent role | Hybrid working **THE COMPANY** This large and well-known organisation employs more than 70,000...


  • Sydney, Australia NTT Full time

    **Manager: Security Incident and Vulnerability Management** In a constantly changing world, we work together with our people, clients and communities to enable them to fulfill their potential to do great things. We believe that by bringing everyone together, we can solve problems using innovative technology that can create a world that is sustainable and...


  • Sydney, Australia Kyndryl Australia Pty Ltd Full time

    **Why Kyndryl** Kyndryl was spun-off of IBM IT infrastructure services in 2021. Our global base of customers includes 75 of the Fortune 100 companies. With 88,449 skilled professionals operating from over 100 countries, we are committed to the success of our customers, collaborating with them, and helping them to realise their ambitions. We help our...


  • Sydney, Australia BNP Paribas Full time

    VULNERABILITY MANAGEMENT ANALYST (FTC TO 17.08.2024) (JOB NUMBER: ITO002489) As the leading European Union bank, and one of the world’s largest financial institutions with an uninterrupted presence in the region since 1860, BNP Paribas offers a wide range of financial services for corporate, institutional and private investors spanning corporate and...