Incident Response Team Lead

1 week ago


Sydney, New South Wales, Australia Arctic Wolf Full time
About the Role

Arctic Wolf is seeking a highly experienced and technical Senior Engineer to join our Incident Response Team. As a key member of our team, you will play a critical role in helping our clients respond to and recover from cyberattacks.

Responsibilities
  • Perform as a senior member of the Incident Response and Restoration & Remediation teams and as a part of the greater Arctic Wolf Incident Response team.
  • Deep understanding of full life-cycle data breach investigations from end-to-end (triage, collections, securing the environment, restoring/rebuilding of systems and ensuring client functionality).
  • Technical expertise and ability to troubleshoot, diagnose and repair systems and networks.
  • Demonstrated abilities and professional experience with host-based and network-based security issues.
  • Actively participate in large scope high impact cyber breaches and manage Incident Response workflow and activities to support prompt response and remediation.
  • Self-starter committed to meeting tight deadlines with a strong work ethic.
  • Demonstrates professionalism, has a positive attitude, and is an extension of Arctic Wolf's brand in the marketplace.
  • Excellent verbal and written communication skills with an emphasis on customer service.
Qualifications
  • Advanced progression and professional experience involving work directly related to restoration, recovery, configuration, and troubleshooting of networks and general IT capabilities.
  • End-to-end understanding of engagements and steps within the IR workflow: initial triage, collections, imaging, securing, and hardening of the environment and overall security posture, restoring/rebuilding systems and getting the client functional.
  • Ability to respond to inquiries and work beyond normal business hours, provide mentorship to junior level team members and can be relied upon as a trusted resource.
  • Skilled with promoting new domain controllers, seizing Flexible Single Master Operations (FSMO) roles, DNS troubleshooting, rebuilding System Volumes (SYSVOL), and rebuilding Distributed File System Replication (DFSR) or File Replication Service (FRS).
  • Proficient with Active Directory/Exchange administration.
  • Expertise with rebuilding and recovering Exchange Systems from Server 2010 onwards.
  • Familiarity with /recover server switch on setup, rebuilding virtual directories, repairing databases, and using recovery databases.
  • Adept with supporting Microsoft Windows workstations and applications.
  • Expert with firewalls, VPN's, Active Directory, Group Policy, Linux, and Windows systems.
  • Professional work history and experience with Hypervisors, including ESXI / VMWare Hyper-V.
  • Provide well-thought-out findings and provide professional guidance, both in technical and non-technical terms, to help customers re-establish business operations.
  • Excellent relationship management, customer service, and communication skills in multiple forms (written, conference calls, in-person/virtual meetings).
  • Prior consulting experience within digital forensics or incident response.
About Arctic Wolf

At Arctic Wolf, we're cultivating a collaborative and productive work environment that welcomes a diversity of backgrounds, cultures, and ideas to make our teams even stronger as we grow globally.

We've been named one of the 50 Most Innovative Companies in the world for 2022 (Fast Company)—and the 2nd Most Innovative Security Company. This is in addition to consecutive awards from Top Workplace USA (2021, 2022), Best Places to Work - USA (2021, 2022) and Great Place to Work - Canada (2021, 2022).

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance.

We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community.

All wolves receive compelling compensation and benefits packages, including:

  • Equity for all employees.
  • Bonus or commission pay based on role.
  • Flexible time off, paid volunteer days and paid parental leave.
  • 401k/RRSP match.
  • Medical, Dental, and Vision insurance.
  • Health Savings and Flexible Spending Agreement.
  • Voluntary Legal Insurance.
  • Training and career development programs.
Security Requirements
  • Conducts duties and responsibilities in accordance with AWN's Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).
  • Background checks are required for this position.


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly experienced and technical Senior Engineer to join our Incident Response Team. As a key member of our team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams and as a...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the RoleArctic Wolf is seeking a highly skilled Senior Engineer, Incident Response to join our team. As a key member of our Incident Response team, you will play a critical role in helping our clients respond to and recover from cyberattacks.ResponsibilitiesPerform as a senior member of the Incident Response and Restoration & Remediation teams.Deep...


  • Sydney, New South Wales, Australia SecureWorks Australia Pty Ltd (7380) Full time

    Job SummaryWe are seeking a highly skilled Incident Response Specialist to join our team at SecureWorks Australia Pty Ltd (7380). As a key member of our Incident Response team, you will be responsible for delivering emergency incident response services to our customers.Key ResponsibilitiesManage the technical and non-technical aspects of incident response,...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleIBM is seeking an experienced Incident Response Deputy Lead to join our X-Force Incident Response team in the APAC region. As a key member of our team, you will be responsible for leading incident response efforts and providing strategic guidance to clients in the region.Key ResponsibilitiesLead incident response efforts for clients in the APAC...


  • Sydney, New South Wales, Australia Palantir Technologies Full time

    About the RolePalantir Technologies is seeking a highly skilled Incident Management Engineer to join our team. As an Incident Management Engineer, you will play a critical role in ensuring the stability and reliability of our software products.Key ResponsibilitiesDevelop a deep understanding of Palantir's product and delivery ecosystem.Collaborate with...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleIBM is seeking an experienced Incident Response Deputy Lead to join our X-Force Incident Response team in the APAC region. As a key member of our team, you will be responsible for leading incident response efforts and providing strategic guidance to clients in the region.Key ResponsibilitiesLead incident response efforts for clients in the APAC...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleWe are seeking an experienced Incident Response Lead to join our X-Force team in Australia and New Zealand. As a key member of our team, you will be responsible for leading incident response efforts and providing strategic guidance to clients.Key ResponsibilitiesLead incident response efforts for clients in Australia and New ZealandProvide...


  • Sydney, New South Wales, Australia Lifeworks Full time

    About the Role:We are seeking a skilled Critical Incident Response Specialist to join our team at Lifeworks. As a Critical Incident Response Specialist, you will provide group Critical Incident Response to our organizational clients, working closely with our Trauma department to manage administrative requirements.Key Responsibilities:Provide Critical...


  • Sydney, New South Wales, Australia IBM Full time

    About the RoleAs a key member of the X-Force Incident Response team, you will play a critical role in helping IBM customers globally with their Digital Forensics and Incident Response needs. This includes proactive projects such as running tabletop exercises or improving IR documentation, as well as reactive engagements involving expert-level forensic...


  • Sydney, New South Wales, Australia Wisetech Global Limited Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Incident Response Specialist to join our CSIRT team at WiseTech Global Limited. As a key member of our cybersecurity team, you will play a critical role in protecting the data of our clients and ensuring the security of our SaaS platform.Key ResponsibilitiesAssist in building out a new CSIRT...


  • Sydney, New South Wales, Australia Macquarie Full time

    {"title": "Cyber Incident Simulation Coordinator", "description": "About the RoleAt Macquarie, we're committed to providing a working environment that embraces diversity, equity, and inclusion. We're seeking a skilled Cyber Incident Simulation Coordinator to enhance our cyber incident preparedness and response capabilities.As a key member of our Cyber Threat...


  • Sydney, New South Wales, Australia LifeWorks Full time

    About the Role:We are seeking a highly skilled and experienced Critical Incident Response Specialist to join our team at LifeWorks. As a Critical Incident Response Specialist, you will be responsible for providing group Critical Incident Response to our organizational clients.Key Responsibilities:Provide Critical Incident Response to our organizational...


  • Sydney, New South Wales, Australia LifeWorks Full time

    Job SummaryWe are seeking a skilled Critical Incident Response Counsellor to join our team at LifeWorks. As a critical incident response specialist, you will provide group critical incident response to our organizational clients.Key ResponsibilitiesDeliver critical incident response services to our clients, providing support and guidance during times of...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    About UsThe Commonwealth Bank is a leading financial institution that delivers innovative banking solutions to its customers. Our Technology division is responsible for ensuring the highest levels of customer service through world-class process excellence and technology innovation.About the RoleWe are seeking a highly skilled Cloud Security Incident Response...


  • Sydney, New South Wales, Australia CommBank Full time

    About UsAt CommBank, we're one of the largest Cyber Security teams in the southern hemisphere, dedicated to protecting our customers and the bank from theft, losses, and risk events. Our Technology division delivers world-class process excellence and technology innovation to ensure the highest levels of customer service.About the RoleWe're seeking a Cloud...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the Role:Arctic Wolf is seeking a highly experienced and technical Cybersecurity Engineer to join our Incident Response Team. As a key member of our team, you will be responsible for responding to and resolving complex cybersecurity incidents, conducting thorough investigations, and providing expert guidance to our clients.Responsibilities:Perform as a...


  • Sydney, New South Wales, Australia Arctic Wolf Full time

    About the Role:Arctic Wolf is seeking a highly experienced and technical Cybersecurity Engineer to join our Incident Response Team. As a key member of our team, you will be responsible for responding to and resolving complex cybersecurity incidents, conducting thorough investigations, and providing expert guidance to our clients.Responsibilities:Perform as a...


  • Sydney, New South Wales, Australia CommBank Full time

    About UsWe are a leading financial institution, dedicated to delivering exceptional customer service through world-class process excellence and technology innovation.Our Technology division is responsible for delivering the Group's information technology and banking operations functions, ensuring the highest levels of customer service.About the RoleWe are...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    About UsThe Commonwealth Bank is a leading financial institution that delivers innovative banking solutions to its customers. Our Technology division is responsible for ensuring the highest levels of customer service through world-class process excellence and technology innovation.About the RoleWe are seeking a highly skilled Cloud Security Incident Response...


  • Sydney, New South Wales, Australia CommBank Full time

    About the RoleWe are seeking a highly skilled Cloud Security Incident Response Senior Analyst to join our team. As a key member of our Cyber Defence Operations team, you will play a critical role in guiding solutions, services, and project initiatives within AWS and Azure environments.Key ResponsibilitiesAct as the technical cloud security SME and escalation...