Cyber Threat Investigator
5 days ago
Rapid7's Threat Hunters are expert investigators who enjoy analyzing threats and trends, both novel and tried-and-true, and using their expertise to craft hypotheses that lead them on the hunt for malicious activity. The day-to-day of a Threat Hunter may include conducting research on threat actor Tactics, Techniques, and Procedures (TTPs), determining what types of activities may be worthy of hunting for, and formulating the best method by which to dig through customers' data in order to identify evidence of said TTPs.
Threat Hunters pay close attention to the activities observed in Incident Response engagements, identifying TTPs and Indicators of Compromise/Attack (IOCs/IOAs) that may be worth searching for in other customer environments, and glean insights from the Threat Intelligence and Detection Engineering (TIDE) team's latest and greatest detections to help craft hypotheticals potentially worthy of the hunt.
Key Responsibilities- Conduct ongoing hypothesis-based threat hunts utilizing new TTPs and IOCs/IOAs, discovered through proactive research as well as collaboration with other teams within the organization
- Serve as a core component of the Rapid7 Emergent Threat Response (ETR) team to provide expertise and conduct hunts based on classified emerging threats across MDR customers
- Develop new Velociraptor hunt packages based on research and findings
- Work closely with engineering, endpoint, TIDE, Rapid7 Labs, and Velociraptor teams to prioritize roadmap items that improve threat hunting capabilities
- Provide timely reporting and feedback to stakeholders
You'll bring 2+ years of experience in a Digital Forensics and Incident Response (DFIR) role, primarily focused on endpoint forensics, along with a broad knowledge of threat actor groups and their TTPs. Your skills also include experience with SIEM platforms and querying/analyzing large data sets, as well as the ability to work with minimal oversight and prioritize efficiently.
We're looking for individuals who are strong analytical and research skills, able to think creatively and intuitively. Experience with SANS FOR508 or FOR608 certification, LEQL, Velociraptor, AWS Athena, InsightIDR SIEM/XDR platform, coding, engineering, and/or development experience, and data science and/or AI experience are considered assets but not required.
-
Cyber Threat Investigator
3 days ago
Melbourne, Victoria, Australia Rapid7 Full timeRapid7 is a leading provider of security data and analytics solutions. We are seeking an experienced Cyber Threat Investigator to join our team.This role is responsible for conducting proactive, hypothesis-driven threat hunts across all Managed Detection and Response (MDR) customers to identify emerging cyber threats and malicious activity on networks and...
-
Cyber Threat Investigator
1 week ago
Melbourne, Victoria, Australia Rapid7 Full timeAbout Rapid7Rapid7 is a cybersecurity company that empowers organizations to defend against cyber threats.Job Description:We are seeking a highly skilled Cyber Threat Investigator to join our team. As a key member of our Threat Hunting team, you will be responsible for conducting proactive, hypothesis-driven threat hunts across all Managed Detection and...
-
Cyber Security Threat Investigator
2 weeks ago
Melbourne, Victoria, Australia Telstra Full timeJob OverviewAn exciting opportunity has become available for a motivated and passionate Cyber Security Threat Investigator to join Telstra's Cyber Security team.The role operates on a 24/7 rotating shift pattern which is generated yearly to allow for advance notice of shift days.About the RoleWe are seeking individuals who can confidently demonstrate their...
-
Cyber Threat Investigation Specialist
2 weeks ago
Melbourne, Victoria, Australia Rapid7 Full timeAbout the RoleRapid7 is seeking a skilled Cyber Threat Investigation Specialist to join our Managed Detection and Response (MDR) team. As a Threat Hunter, you will play a critical role in uncovering malicious activity that may have been missed by traditional security measures.Key Responsibilities:Conduct hypothesis-based threat hunts utilizing new Tactics,...
-
Cyber Threat Intelligence Specialist
5 days ago
Melbourne, Victoria, Australia Launch Recruitment Full timeCompany OverviewLaunch Recruitment is a leading recruitment agency specialising in Cyber Security roles. We are working with a prominent Financial Services organisation to find a skilled Cyber Threat Intelligence Specialist.Job DescriptionAs a Cyber Threat Intelligence Specialist, you will play a crucial role in bolstering the Threat and Detection team of...
-
Cyber Threat Intelligence Manager
1 month ago
Melbourne, Victoria, Australia Bupa Full timeBupa, a leading international healthcare group, is seeking a highly skilled Cyber Threat Intelligence Manager to join their APAC Cyber Team. The successful candidate will oversee and coordinate the activities of the Cyber Threat Intelligence team, managing information analysis and intelligence relevant to threats facing Bupa's systems, infrastructure, and...
-
Cyber Threat Detection Specialist
4 days ago
Melbourne, Victoria, Australia Launch Recruitment Full timeLaunch Recruitment is partnering with a leading financial services organisation to bolster their Threat and Detection team.Salary: AU$880 + GST per dayJob Description:We are seeking an experienced Cyber Threat Detection Specialist to develop and maintain advanced cyber threat detection capabilities across the organisation. This is an exciting opportunity to...
-
Cyber Threat Research Specialist
2 weeks ago
Melbourne, Victoria, Australia Rapid7 Full timeCyber Threat Research SpecialistAt Rapid7, we are passionate about innovating the way cybersecurity is delivered.We are seeking a highly skilled Cyber Threat Research Specialist to join our team of expert threat hunters. This role offers the opportunity to work with cutting-edge technology and collaborate with a talented group of professionals who share your...
-
Cybersecurity Threat Investigator
3 days ago
Melbourne, Victoria, Australia Green Light Full timeJob Overview:We are seeking a seasoned cybersecurity professional to join our team as a Level 3 SOC Analyst on a 3-month contract with potential extension.About the Role:Develop in-depth understanding of incident response frameworks and best practices.Lead investigations and responses to security incidents, triage security alerts, and develop containment...
-
Cybersecurity Threat Investigator
2 weeks ago
Melbourne, Victoria, Australia TESSERENT Full time**Job Overview**Tesserent's Security Operations Centre (SOC) is seeking a skilled Cybersecurity Threat Investigator to monitor, investigate, and respond to security threats. As a key member of our team, you will play a critical role in ensuring the confidentiality, integrity, and availability of our systems.In this role, you will be responsible for actively...
-
Cyber Threat Detection Specialist
4 weeks ago
Melbourne, Victoria, Australia TESSERENT Full timeTesserent: A Leader in Cybersecurity SolutionsWe are seeking a highly skilled Cyber Threat Detection Specialist to join our team at Tesserent. As a Cyber Threat Detection Specialist, you will be responsible for collecting, analyzing, and producing threat detection implementations within various security systems and platforms.Key Responsibilities:Stay...
-
Cyber Security Threat Responder
2 weeks ago
Melbourne, Victoria, Australia XPT Software Australia Pty Ltd Full timeJob DescriptionXPT Software Australia Pty Ltd is seeking a skilled Cyber Security Threat Responder to join our team.The successful candidate will have the opportunity to work in a dynamic environment, responding to cyber-security threats, vulnerabilities, events and incidents.Key Responsibilities:Act as a technical contributor during major security...
-
Cyber Threat Lead
1 month ago
Melbourne, Victoria, Australia Technology People Australia Full timeJob Title: Cyber Threat LeadThe OrganisationTechnology People Australia is working with a large critical infrastructure organisation on a role to lead their Threat Intelligence, Vulnerability Management and Threat Hunting functions.This organisation's security capability is mature, with very smart practitioners, best in breed tools and buy in from the board...
-
Cyber Threat Management Specialist
3 weeks ago
Melbourne, Victoria, Australia Davidson Full timeOur client in Melbourne CBD is seeking a proactive Cyber Threat Management Specialist to join their team.Position Overview:The successful candidate will work closely with internal teams and third-party vendors, overseeing threat intelligence, vulnerability assessment, and risk reduction efforts across both IT and OT environments.Key Responsibilities:Conduct...
-
Melbourne, Victoria, Australia Davidson Full timeCyber Threat Management Position OverviewDavidson is seeking a skilled Cyber Threat and Vulnerability Management Specialist to join their team. The role is pivotal in protecting critical infrastructure by identifying, analyzing, and coordinating the remediation of security vulnerabilities.Key Responsibilities:Conduct vulnerability assessments and prioritize...
-
Melbourne, Victoria, Australia Launch Recruitment Full timeAbout the RoleWe are working with a leading financial services organization to bolster their threat and detection team. The initial 6-month contract will provide an excellent opportunity for a skilled professional to make a significant impact.Location: Melbourne, AustraliaJob DescriptionDevelop and maintain advanced cyber threat detection and hunting...
-
Cyber Security Threat Analyst
4 weeks ago
Melbourne, Victoria, Australia FourQuarters Recruitment Full timeJob Description:We are seeking a highly skilled Cyber Security Threat Analyst to join our Security Operations team. As a key member of the team, you will be responsible for providing major incident response, vulnerability management, and engineering services to support our clients.About the Role:Provide major incident response as part of a small team, as an...
-
Melbourne, Victoria, Australia Launch Recruitment Full timeLaunch Recruitment is working with a leading financial services organisation to bolster their threat detection team. The role is initially for 6 months.Job Description:The Cyber Threat Detection and Hunting Specialist will develop and maintain cyber threat detection and hunting capabilities across the business.Develop attack & use case models against the...
-
Cybersecurity Threat Investigator
3 days ago
Melbourne, Victoria, Australia TESSERENT Full timeCompany OverviewTesserent is a leading provider of cybersecurity solutions, seeking a highly motivated and experienced Cybersecurity Threat Investigator to join our Security Operations Centre (SOC) team.We are looking for someone to become a trusted and valued member of our team. The ideal candidate will have a solid understanding of various cybersecurity...
-
Cyber Security Strategist
4 weeks ago
Melbourne, Victoria, Australia Latitude IT Full timeLatitude IT is seeking a talented Cyber Security Strategist to join our team. As a Cyber Security Strategist, you will work on the development and enhancement of cyber security strategies, collaborating with internal teams to address current and emerging threats.Key Responsibilities:Develop and enhance cyber security strategies; identify and prioritize...