
Incident Responder Specialist
2 weeks ago
A skilled and experienced System Security Expert is needed to support our IR capabilities in-country and oversee both our response to incidents as and when they occur, but also the growth and development of the capability to ensure it remains equipped and prepared to respond to incidents whenever and wherever they occur.
This role requires a government security clearance at NV1 (minimum), with potential expectation to undergo higher clearances.
Key Responsibilities:- Lead the investigation of cyber-attacks against our customers as part of the global Incident Response team, with a particular focus on Australia-based customers.
- Monitor SIEM platforms for security concerns, provide tuning based on system performance, and develop new detection content based on changes in the threat environment.
- Develop tools, tradecraft, playbooks, and other materiel to support the response to, and investigation of, cyber security incidents.
- Support the triage and containment of cyber security incidents as and when they occur and support recovery and remediation efforts to restore systems to operational states.
- Conduct forensic analysis of Windows, Linux, and macOS devices. Gather and perform analysis of relevant log files such as operating system, firewall, proxy, and DNS logs.
- Provide assessment and analysis of attacker tools, techniques, and procedures of different actors from hacktivist to criminal to nation state.
- Supervise and mentor junior security consultants and support the development of their incident response skillsets.
- Help grow and evolve our delivery capability by documenting the delivery processes, feeding back lessons learned, and working with the wider team in establishing best practices and repeatable processes.
- Demonstrable experience in leading and supporting the response and investigation of cyber security incidents across a range of system and technology types.
- Experience working with Splunk, including platform configuration, event review, and detection content development.
- Experience using forensic tools such as EnCase, Axiom, and Cellebrite UFED and their use in gathering and preserving digital forensic artefacts to facilitate or support investigative activities.
- Awareness of EDR tools such as Crowdstrike, Carbon Black, Microsoft Defender for Endpoint, and Cylance.
- Ability to write Incident Response reports concisely and proficiently, as well as use (or generate) graphics to illustrate scenarios or datasets.
- Detailed knowledge of the cyber security product landscape, including familiarity with Azure and Amazon Web Services.
- Experience in developing, maintaining, and exercising incident response plans, playbooks, and other tradecraft.
- Familiarity with the Australian Government Information Security Manual (ISM).
- Experience working with large groups of varied stakeholders, coordinating resources, and achieving shared goals.
- Experience with working with end users and clients offering advice, guidance, and thought leadership. Ability to communicate complicated technical challenges in business language for a range of stakeholders from IT teams to C-level executives.
- Excellent verbal and written communication and client-facing skills, including Microsoft Office suite use (Word/Excel/PowerPoint/Visio), ensuring a clear and professional quality of written materials.
- Time management and organizational skills to independently manage multiple delivery projects concurrently.
- Detail-oriented approach.
- Self-starter with ability to identify problems early and come up with solutions using own initiative.
- Familiarity with the threat landscape and knowledge of threat actors and campaigns.
- Splunk Core Certified Power User
- SANS FOR508 Digital Forensics & Incident Response in person 6 days/or online
- Other certifications such as GIAC (GCFE, GCFA, GNFA, GCIH or GREM) or CREST (CCIM, CCHIA, CCNIA or CCMRE).
-
EL1 Lead Senior Incident Responders
2 weeks ago
Canberra, ACT, Australia Softtest Pays Pty Ltd Full time $90,000 - $120,000 per yearJob Description: Australian Citizens residing in Australia only respond. must have NV1 clearance. Essential criteria 1. 5 years experience in a similar Cyber Security Incident response type of role. 2. Minimum 5 years experience in cyber incident management working with the toolsets and platforms noted under the technical skills section. 3. Must have...
-
Incident Response Specialist
5 days ago
Canberra, ACT, Australia beBeeCybersecurity Full time $10,900 - $99,000Incident Response SpecialistThis role involves providing specialist incident response expertise to contribute to the implementation of a security operations capability. Key responsibilities include delivering incident/threat detection and response activities for clients, reviewing current technical capabilities, implementing tools and technologies for...
-
Cybersecurity Incident Responder
1 week ago
Canberra, ACT, Australia beBeeResponder Full time $120,000 - $170,000Incident Response RoleThe selected candidate will be part of a global team, leading investigations and triaging security incidents to ensure efficient recovery.Responsibilities:Lead complex incident response efforts across various systems and technology types.Conduct forensic analysis of Windows, Linux, and macOS devices to gather and analyze relevant log...
-
Incident Response Specialist
1 week ago
Canberra, ACT, Australia beBeeCybersecurity Full time $856,700 - $1,272,250Incident Response SpecialistThis is a challenging role for an experienced cybersecurity professional to join our Threat Management team.As an Incident Response Specialist, you will be responsible for coordinating and responding to cyber incidents, providing technical analysis and remediation, and developing strategies to contain the incident and recover...
-
Canberra, ACT, Australia beBeeTrauma Full time $90,000 - $120,000Trauma and Critical Incident Response SpecialistPartner with a leading mental health services provider to support diverse clients in trauma management.This part-time, fixed-term role involves assessment and response work, combining onsite and phone-based interventions.About the RoleThis specialist will provide critical incident response services, including...
-
Digital Threat Responder
1 week ago
Canberra, ACT, Australia beBeeIncidentResponse Full time $80,000 - $85,000Job OpportunityBecome part of a dynamic work environment that values diversity, integrity and merit. In this role, you will have the opportunity to grow and develop your skills.About the PositionWe are seeking an experienced Incident Response professional to join our Security team. The selected candidate will be responsible for developing and implementing...
-
Incident Response Specialist
1 week ago
Canberra, ACT, Australia Bae Systems Full timeBAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.**Incident Response...
-
Incident Response Specialist
1 week ago
Canberra, ACT, Australia Bae Full timeBAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts.We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.Incident Response Specialist Role...
-
Incident Management Specialist
1 week ago
Canberra, ACT, Australia beBeeincident Full time $90,000 - $125,000Reportable Incidents Handling OfficerThis role involves supporting the implementation, operation and monitoring of a reportable incidents handling function.The successful candidate will assist with managing a caseload of incidents reported to the Commission by providers, including engaging with providers on incidents and supporting the Assistant Director in...
-
Incident Response Specialist
2 weeks ago
Canberra, ACT, Australia BAE Systems Full timeBAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.Incident Response SpecialistRole...