Incident Response Team Lead

1 week ago


Sydney, New South Wales, Australia Arctic Wolf Full time
About the Role

Arctic Wolf is seeking a highly skilled Senior Engineer, Incident Response to join our team. As a key member of our Incident Response team, you will play a critical role in helping our clients respond to and recover from cyberattacks.

Responsibilities
  • Perform as a senior member of the Incident Response and Restoration & Remediation teams.
  • Deep understanding of full life-cycle data breach investigations from end-to-end.
  • Technical expertise and ability to troubleshoot, diagnose and repair systems and networks.
  • Demonstrated abilities and professional experience with host-based and network-based security issues.
Client Management
  • Actively participate in large scope high impact cyber breaches and manage Incident Response workflow and activities to support prompt response and remediation.
  • Self-starter committed to meeting tight deadlines with a strong work ethic.
  • Demonstrates professionalism, has a positive attitude, and is an extension of Arctic Wolf's brand in the marketplace.
  • Excellent verbal and written communication skills with an emphasis on customer service.
Qualifications
  • Advanced progression and professional experience involving work directly related to restoration, recovery, configuration, and troubleshooting of networks and general IT capabilities.
  • End-to-end understanding of engagements and steps within the IR workflow: initial triage, collections, imaging, securing, and hardening of the environment and overall security posture, restoring/rebuilding systems and getting the client functional.
  • Ability to respond to inquiries and work beyond normal business hours, provide mentorship to junior level team members and can be relied upon as a trusted resource.
  • Skilled with promoting new domain controllers, seizing Flexible Single Master Operations (FSMO) roles, DNS troubleshooting, rebuilding System Volumes (SYSVOL), and rebuilding Distributed File System Replication (DFSR) or File Replication Service (FRS).
  • Proficient with Active Directory/Exchange administration.
  • Expertise with rebuilding and recovering Exchange Systems from Server 2010 onwards.
  • Familiarity with /recover server switch on setup, rebuilding virtual directories, repairing databases, and using recovery databases.
  • Adept with supporting Microsoft Windows workstations and applications.
  • Expert with firewalls, VPN's, Active Directory, Group Policy, Linux, and Windows systems.
  • Professional work history and experience with Hypervisors, including ESXI / VMWare Hyper-V.
  • Provide well-thought-out findings and provide professional guidance, both in technical and non-technical terms, to help customers re-establish business operations.
  • Excellent relationship management, customer service, and communication skills in multiple forms (written, conference calls, in-person/virtual meetings).
  • Prior consulting experience within digital forensics or incident response.
About Arctic Wolf

At Arctic Wolf, we're committed to fostering a collaborative and productive work environment that welcomes a diversity of backgrounds, cultures, and ideas. We've been named one of the 50 Most Innovative Companies in the world for 2022 (Fast Company) and the 2nd Most Innovative Security Company.

We celebrate unique perspectives through our Pack Unity program, which creates a platform for all voices to be heard. We also believe in corporate responsibility and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community.

All wolves receive compelling compensation and benefits packages, including equity for all employees, bonus or commission pay based on role, flexible time off, paid volunteer days and paid parental leave, 401k/RRSP match, medical, dental, and vision insurance, health savings and flexible spending agreement, voluntary legal insurance, training and career development programs.

Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law.

We strive to make our entire employee experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible.

Conducts duties and responsibilities in accordance with AWN's Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information.

Background checks are required for this position.



  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly skilled Senior Engineer, Incident Response to join our team. As a key member of our Incident Response team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams.Deep...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly skilled Senior Engineer, Incident Response to join our team. As a key member of our Incident Response team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams.Deep...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly experienced and technical Senior Engineer to join our Incident Response Team. As a key member of our team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams and as a...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly experienced and technical Senior Engineer to join our Incident Response Team. As a key member of our team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams and as a...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly skilled Senior Engineer, Incident Response to join our team. As a key member of our Incident Response team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams.Deep...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    About the RoleWe are seeking a highly skilled Incident Response Manager to join our Cyber Detection and Response team. As a key member of our team, you will be responsible for leading and managing major and critical incidents, as well as guiding and mentoring Incident Responders across your crew.Key ResponsibilitiesAnalyse data and logs to establish context...


  • Sydney, New South Wales, Australia SecureWorks Australia Pty Ltd (7380) Full time

    Job Title: Incident Response ConsultantSecureworks is seeking a highly skilled Incident Response Consultant to join our team. As an Incident Response Consultant, you will be responsible for delivering emergency incident response services to our customers, including managing the technical and non-technical aspects of incident response, conducting...


  • Sydney, New South Wales, Australia SecureWorks Australia Pty Ltd (7380) Full time

    Job SummaryWe are seeking a highly skilled Incident Response Specialist to join our team at SecureWorks Australia Pty Ltd (7380). As a key member of our Incident Response team, you will be responsible for delivering emergency incident response services to our customers.Key ResponsibilitiesManage the technical and non-technical aspects of incident response,...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleIBM is seeking an experienced Incident Response Deputy Lead to join our X-Force Incident Response team in the APAC region. As a key member of our team, you will be responsible for leading incident response efforts and providing strategic guidance to clients in the region.Key ResponsibilitiesLead incident response efforts for clients in the APAC...


  • Sydney, New South Wales, Australia Palantir Technologies Full time

    About the RolePalantir Technologies is seeking a highly skilled Incident Management Engineer to join our team. As an Incident Management Engineer, you will play a critical role in ensuring the stability and reliability of our software products.Key ResponsibilitiesDevelop a deep understanding of Palantir's product and delivery ecosystem.Collaborate with...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleIBM is seeking an experienced Incident Response Deputy Lead to join our X-Force Incident Response team in the APAC region. As a key member of our team, you will be responsible for leading incident response efforts and providing strategic guidance to clients in the region.Key ResponsibilitiesLead incident response efforts for clients in the APAC...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleWe are seeking an experienced Incident Response Lead to join our X-Force team in Australia and New Zealand. As a key member of our team, you will be responsible for leading incident response efforts and providing strategic guidance to clients.Key ResponsibilitiesLead incident response efforts for clients in Australia and New ZealandProvide...


  • Sydney, New South Wales, Australia Australian Energy Market Operator Full time

    About the RoleWe are seeking a highly skilled Cyber Incident Response Specialist to join our team at the Australian Energy Market Operator (AEMO). As a key member of our Cyber Incident Response team, you will play a critical role in protecting our organization from cyber threats and ensuring the reliability and security of our energy systems.Key...


  • Sydney, New South Wales, Australia Lifeworks Full time

    About the Role:We are seeking a skilled Critical Incident Response Specialist to join our team at Lifeworks. As a Critical Incident Response Specialist, you will provide group Critical Incident Response to our organizational clients, working closely with our Trauma department to manage administrative requirements.Key Responsibilities:Provide Critical...


  • Sydney, New South Wales, Australia Lifeworks Full time

    Job SummaryWe are seeking a skilled Critical Incident Response Counsellor to provide group critical incident response services to our organizational clients.Key ResponsibilitiesProvide critical incident response to our clientsWork/travel to on-site locationsManage administrative requirements as dictated by our Trauma departmentRequirementsMaster's degree in...


  • Sydney, New South Wales, Australia Wisetech Global Limited Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Incident Response Specialist to join our CSIRT team at WiseTech Global Limited. As a key member of our cybersecurity team, you will play a critical role in protecting the data of our clients and ensuring the security of our SaaS platform.Key ResponsibilitiesAssist in building out a new CSIRT...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleAs a key member of the X-Force Incident Response team, you will play a critical role in helping IBM customers globally with their Digital Forensics and Incident Response needs. This includes proactive projects such as running tabletop exercises or improving IR documentation, as well as reactive engagements involving expert-level forensic...


  • Sydney, New South Wales, Australia Macquarie Full time

    About the RoleWe are seeking a highly skilled Cyber Incident Simulation Coordinator to enhance our cyber incident preparedness and response capabilities. As a key member of our Cyber Threat and Incident Response team, you will play a critical role in testing and validating incident response playbooks, assessing the efficiency of processes, systems, and...


  • Sydney, New South Wales, Australia Macquarie Full time

    About the RoleWe are seeking a highly skilled Cyber Incident Simulation Coordinator to enhance our cyber incident preparedness and response capabilities. As a key member of our Cyber Threat and Incident Response team, you will play a critical role in testing and validating incident response playbooks, assessing the efficiency of processes, systems, and...


  • Sydney, New South Wales, Australia Macquarie Full time

    About the RoleWe are seeking a highly skilled Cyber Incident Simulation Coordinator to enhance our cyber incident preparedness and response capabilities.In this role, you will have the opportunity to test and validate incident response playbooks, assess the efficiency of processes, systems, and services, and ensure compliance with geographical regulations...