Incident Response Lead

2 months ago


Sydney, Australia Brennan IT Full time

**Why work for Brennan?**
At Brennan, we aim to lead, not follow. One of the ways we do this is through an open diverse culture that values performance, where anyone in the team can bring new ideas to the table and see them thrive. Our people are empowered, unique, considerate, supportive, trusting, and accepting being the cornerstone of the business. Because of this approach, we have now become the largest Australian-owned systems integrator in Australia.

**Brennan offers an excellent remuneration package and benefits including**:

- An environment that embraces learning and development of all employees
- A focus on health and well-being - social club, sporting teams, health checks, trivia nights and more
- Discounted IT hardware and software products
- A strong culture underpinned by values that are truly lived every day
- Flexibility to work in the way that brings out the best in you
- Plenty more...

**Your Role**:
**Your Responsibilities**:

- Lead and manage the incident response team, ensuring effective and timely response to cybersecurity incidents.
- Develop and implement incident response strategies, plans, and playbooks.
- Oversee the investigation and analysis of security incidents to determine root causes, impacts, and remediation steps.
- Coordinate with internal and external stakeholders, including IT, legal, and compliance teams, during incident response activities.
- Provide guidance and mentorship to incident response team members.
- Conduct post-incident reviews and develop recommendations for improving incident response processes.
- Ensure compliance with regulatory requirements and industry standards.
- Prepare and present detailed incident reports to senior management and other stakeholders.

**Key Experience and Qualifications required**:
To succeed in this role, you will have the following experience and competencies.
- Experience with SIEM tools, EDR solutions, and forensic software.
- Knowledge of scripting languages such as Python or PowerShell.
- Familiarity with regulatory requirements and industry standards (e.g., SOCI, CPS234, ISO27001).
- Proven experience in security operations and threat hunting
- Strong leadership and communication skills
- Ability to manage multiple priorities and meet deadlines
- Results-oriented with a focus on continuous improvement

**Note**: As part of our hiring process, you will be required to undertake a Technical Assessment and National Criminal History Check.



  • Sydney, New South Wales, Australia Dynatrace Full time

    System Reliability and Resilience EngineerAt Dynatrace, we're shaping the future of software intelligence and performance monitoring.We're seeking an exceptional System Reliability and Resilience Engineer to join our team as a Critical Incident Response Lead. This is a critical role where you'll lead incident response efforts, ensuring timely resolution and...

  • Digital Forensics

    6 months ago


    Sydney, Australia Decipher Bureau Full time

    Remote WFH Australia-wide / HQ in Sydney - Permanent Position: Up to $200k + super (negotiable) - Access to the best training & development for career growth **Company**: We're partnering with a renowned global information security specialist expanding its presence in Australia. With a strong research focus and established nationwide offices, this...


  • Sydney, New South Wales, Australia Australian Energy Market Operator Full time

    About the RoleWe are seeking a Cyber Security Specialist - Threat Detection and Response to join our team at the Australian Energy Market Operator (AEMO). The successful candidate will be responsible for taking a technical leadership role in cyber defence and response activities.Investigate security incidents and provide response and containment against...


  • Sydney, Australia Commonwealth Bank Full time

    **_You are _**_a problem solver with a strong technical background in Incident Responds (IR) and or Security Operations Centre (SOC). _ - **_We are _**_one of the largest Cyber Security Practices in the Southern Hemisphere. _ - **_Together we can _**_contribute to protecting the Group, Customers and Community. _ **Do work that matters**: We're building...


  • Sydney, New South Wales, Australia NCC Group Full time

    The Opportunity: As a Principal Cyber Incident Response Consultant at NCC Group, you will be part of a well-established team that collaborates with various divisions within our business. You will work closely with the Cyber Incident Response Team, Threat Intelligence teams, Security Operations Centre teams, and our esteemed Red Team.Key...


  • Sydney, Australia Healthdirect Australia Full time

    This role focuses on critical incident and business continuity management. - Grow with an organisation dedicated to helping Australians improve their health. - Sydney based role in our Haymarket office, near Central station - Hybrid working **About us** Healthdirect Australia is a government-owned, not-for-profit organisation who works with purpose and...


  • Sydney Eastern Suburbs, Australia Robert Half Full time

    Join this large & recognisable global firm in a newly created role to lead the execution & coordination of IR processes, automation, and cloud IR. - Newly created role in a well-known global firm - Lead CSIRT activities in the region - Full time permanent role | Hybrid working **THE COMPANY** This large and well-known organisation employs more than 70,000...

  • Principal Consultant

    6 months ago


    Sydney, Australia Palo Alto Networks Full time

    Company Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...


  • Sydney, Australia The Decipher Bureau Full time

    The Company  Join an ASX-listed organisation that has one of Australia’s largest cybersecurity practices, which are expanding their new cyber defence team. Following the recent high-profile incidents in Australia, this organisation has taken a proactive approach, identifying the need to build a new cloud security capability. Just 18 months later, this...


  • Sydney, New South Wales, Australia Dynatrace Full time

    We are seeking an experienced Incident Commander to lead our incident management team in ensuring best-in-class reliability and shaping incident response for our customers.Key Responsibilities:Incident Coordination: Manage high-severity incidents, leading temporary response teams to ensure timely resolution and minimal business impact.Analysis and...


  • Sydney, New South Wales, Australia Clyde & Co Full time

    We are seeking an ambitious and highly motivated lawyer with 2 or more years post qualification experience to join our market leading cyber incident response team in Sydney.As a Cyber Incident Response Specialist, you will be responsible for managing the lifecycle of a cyber incident, related investigations and litigation. A key component is providing crisis...


  • Sydney, New South Wales, Australia Clyde & Co Full time

    Company OverviewClyde & Co is an international law firm, with a leading cyber incident response practice in the Asia Pacific region. The team advises clients across Australia and New Zealand on a range of incidents, as well as assisting them on matters of privacy compliance and cyber resilience.About This OpportunityWe are seeking a highly motivated lawyer...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the Role:Arctic Wolf, a leading provider of security operations in the rapidly growing cybersecurity industry, seeks an experienced and skilled Senior Incident Response Specialist to join its esteemed team. This role presents an exceptional opportunity for individuals with a strong background in IT and a desire to transition into digital forensics.The...


  • Sydney, New South Wales, Australia NCC Group Full time

    The OpportunityWe are seeking a seasoned Cybersecurity Incident Response Consultant to join our esteemed team at NCC Group. In this role, you will be part of a well-established team that collaborates with various divisions within the business, including Cyber Incident Response Team, Threat Intelligence teams, Security Operations Centre teams, and our Red...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About Arctic WolfArctic Wolf is a leading security operations company in the fast-growing industry of cybersecurity. We have received numerous awards for our excellence in security operations and are dedicated to providing an industry-leading customer and employee experience.Estimated Salary$120,000 - $180,000 per year, depending on location and...


  • North Sydney, Australia Amazon Support Services Pty Ltd Full time

    AWS Incident Response is at the heart of high availability of Amazon Web Services. We make customer impacting events shorter and less frequent by providing large scale event and incident management. Our automated tooling quickly identies the cause of an issue and helps mitigate its impact, and much of our engineer time is spent on projects to improve the...

  • Digital Forensics

    6 months ago


    Sydney, Australia Sustainability Consulting Full time

    Permanent Position / up to $150k inc sup *Salary Negotiable - WFH Remote in Australia (Sydney Preference) - Fantastic Culture + Career Development Opportunities Join one of Australia’s leading cybersecurity providers driving real innovation in cybersecurity and incident response. An exciting time to join an organisation going through expansive growth and...


  • Sydney, New South Wales, Australia Clyde & Co Full time

    About the RoleWe are seeking an ambitious lawyer with a strong interest in cyber and privacy law to join our dynamic team in Sydney. As a Cyber Incident Response Lawyer, you will play a key role in helping clients manage the lifecycle of a cyber incident, from initial response to post-incident reviews.This is a fantastic opportunity to develop your skills...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    Arctic Wolf is a leading provider of security operations in the fast-growing cybersecurity industry.We're seeking a Senior Engineer, Incident Response to join our team and help us deliver exceptional customer experiences.About the Role:We're looking for highly experienced and technical Sr. Engineers for our Incident Response Team. This team is comprised of...


  • Sydney, Australia Atlassian Full time

    Overview: **Working at Atlassian** Atlassians can choose where they work - whether in an office, from home, or a combination of the two. That way, Atlassians have more control over supporting their family, personal goals, and other priorities. We can hire people in any country where we have a legal entity. Interviews and onboarding are conducted virtually,...