Cyber Threat Investigator

5 days ago


Melbourne, Victoria, Australia Rapid7 Full time
About the Role

Rapid7's Threat Hunters are expert investigators who enjoy analyzing threats and trends, both novel and tried-and-true, and using their expertise to craft hypotheses that lead them on the hunt for malicious activity. The day-to-day of a Threat Hunter may include conducting research on threat actor Tactics, Techniques, and Procedures (TTPs), determining what types of activities may be worthy of hunting for, and formulating the best method by which to dig through customers' data in order to identify evidence of said TTPs.

Threat Hunters pay close attention to the activities observed in Incident Response engagements, identifying TTPs and Indicators of Compromise/Attack (IOCs/IOAs) that may be worth searching for in other customer environments, and glean insights from the Threat Intelligence and Detection Engineering (TIDE) team's latest and greatest detections to help craft hypotheticals potentially worthy of the hunt.

Key Responsibilities
  • Conduct ongoing hypothesis-based threat hunts utilizing new TTPs and IOCs/IOAs, discovered through proactive research as well as collaboration with other teams within the organization
  • Serve as a core component of the Rapid7 Emergent Threat Response (ETR) team to provide expertise and conduct hunts based on classified emerging threats across MDR customers
  • Develop new Velociraptor hunt packages based on research and findings
  • Work closely with engineering, endpoint, TIDE, Rapid7 Labs, and Velociraptor teams to prioritize roadmap items that improve threat hunting capabilities
  • Provide timely reporting and feedback to stakeholders
About You

You'll bring 2+ years of experience in a Digital Forensics and Incident Response (DFIR) role, primarily focused on endpoint forensics, along with a broad knowledge of threat actor groups and their TTPs. Your skills also include experience with SIEM platforms and querying/analyzing large data sets, as well as the ability to work with minimal oversight and prioritize efficiently.

We're looking for individuals who are strong analytical and research skills, able to think creatively and intuitively. Experience with SANS FOR508 or FOR608 certification, LEQL, Velociraptor, AWS Athena, InsightIDR SIEM/XDR platform, coding, engineering, and/or development experience, and data science and/or AI experience are considered assets but not required.



  • Melbourne, Victoria, Australia Rapid7 Full time

    Rapid7 is a leading provider of security data and analytics solutions. We are seeking an experienced Cyber Threat Investigator to join our team.This role is responsible for conducting proactive, hypothesis-driven threat hunts across all Managed Detection and Response (MDR) customers to identify emerging cyber threats and malicious activity on networks and...


  • Melbourne, Victoria, Australia Rapid7 Full time

    About Rapid7Rapid7 is a cybersecurity company that empowers organizations to defend against cyber threats.Job Description:We are seeking a highly skilled Cyber Threat Investigator to join our team. As a key member of our Threat Hunting team, you will be responsible for conducting proactive, hypothesis-driven threat hunts across all Managed Detection and...


  • Melbourne, Victoria, Australia Telstra Full time

    Job OverviewAn exciting opportunity has become available for a motivated and passionate Cyber Security Threat Investigator to join Telstra's Cyber Security team.The role operates on a 24/7 rotating shift pattern which is generated yearly to allow for advance notice of shift days.About the RoleWe are seeking individuals who can confidently demonstrate their...


  • Melbourne, Victoria, Australia Rapid7 Full time

    About the RoleRapid7 is seeking a skilled Cyber Threat Investigation Specialist to join our Managed Detection and Response (MDR) team. As a Threat Hunter, you will play a critical role in uncovering malicious activity that may have been missed by traditional security measures.Key Responsibilities:Conduct hypothesis-based threat hunts utilizing new Tactics,...


  • Melbourne, Victoria, Australia Launch Recruitment Full time

    Company OverviewLaunch Recruitment is a leading recruitment agency specialising in Cyber Security roles. We are working with a prominent Financial Services organisation to find a skilled Cyber Threat Intelligence Specialist.Job DescriptionAs a Cyber Threat Intelligence Specialist, you will play a crucial role in bolstering the Threat and Detection team of...


  • Melbourne, Victoria, Australia Bupa Full time

    Bupa, a leading international healthcare group, is seeking a highly skilled Cyber Threat Intelligence Manager to join their APAC Cyber Team. The successful candidate will oversee and coordinate the activities of the Cyber Threat Intelligence team, managing information analysis and intelligence relevant to threats facing Bupa's systems, infrastructure, and...


  • Melbourne, Victoria, Australia Launch Recruitment Full time

    Launch Recruitment is partnering with a leading financial services organisation to bolster their Threat and Detection team.Salary: AU$880 + GST per dayJob Description:We are seeking an experienced Cyber Threat Detection Specialist to develop and maintain advanced cyber threat detection capabilities across the organisation. This is an exciting opportunity to...


  • Melbourne, Victoria, Australia Rapid7 Full time

    Cyber Threat Research SpecialistAt Rapid7, we are passionate about innovating the way cybersecurity is delivered.We are seeking a highly skilled Cyber Threat Research Specialist to join our team of expert threat hunters. This role offers the opportunity to work with cutting-edge technology and collaborate with a talented group of professionals who share your...


  • Melbourne, Victoria, Australia Green Light Full time

    Job Overview:We are seeking a seasoned cybersecurity professional to join our team as a Level 3 SOC Analyst on a 3-month contract with potential extension.About the Role:Develop in-depth understanding of incident response frameworks and best practices.Lead investigations and responses to security incidents, triage security alerts, and develop containment...


  • Melbourne, Victoria, Australia TESSERENT Full time

    **Job Overview**Tesserent's Security Operations Centre (SOC) is seeking a skilled Cybersecurity Threat Investigator to monitor, investigate, and respond to security threats. As a key member of our team, you will play a critical role in ensuring the confidentiality, integrity, and availability of our systems.In this role, you will be responsible for actively...


  • Melbourne, Victoria, Australia TESSERENT Full time

    Tesserent: A Leader in Cybersecurity SolutionsWe are seeking a highly skilled Cyber Threat Detection Specialist to join our team at Tesserent. As a Cyber Threat Detection Specialist, you will be responsible for collecting, analyzing, and producing threat detection implementations within various security systems and platforms.Key Responsibilities:Stay...


  • Melbourne, Victoria, Australia XPT Software Australia Pty Ltd Full time

    Job DescriptionXPT Software Australia Pty Ltd is seeking a skilled Cyber Security Threat Responder to join our team.The successful candidate will have the opportunity to work in a dynamic environment, responding to cyber-security threats, vulnerabilities, events and incidents.Key Responsibilities:Act as a technical contributor during major security...

  • Cyber Threat Lead

    1 month ago


    Melbourne, Victoria, Australia Technology People Australia Full time

    Job Title: Cyber Threat LeadThe OrganisationTechnology People Australia is working with a large critical infrastructure organisation on a role to lead their Threat Intelligence, Vulnerability Management and Threat Hunting functions.This organisation's security capability is mature, with very smart practitioners, best in breed tools and buy in from the board...


  • Melbourne, Victoria, Australia Davidson Full time

    Our client in Melbourne CBD is seeking a proactive Cyber Threat Management Specialist to join their team.Position Overview:The successful candidate will work closely with internal teams and third-party vendors, overseeing threat intelligence, vulnerability assessment, and risk reduction efforts across both IT and OT environments.Key Responsibilities:Conduct...


  • Melbourne, Victoria, Australia Davidson Full time

    Cyber Threat Management Position OverviewDavidson is seeking a skilled Cyber Threat and Vulnerability Management Specialist to join their team. The role is pivotal in protecting critical infrastructure by identifying, analyzing, and coordinating the remediation of security vulnerabilities.Key Responsibilities:Conduct vulnerability assessments and prioritize...


  • Melbourne, Victoria, Australia Launch Recruitment Full time

    About the RoleWe are working with a leading financial services organization to bolster their threat and detection team. The initial 6-month contract will provide an excellent opportunity for a skilled professional to make a significant impact.Location: Melbourne, AustraliaJob DescriptionDevelop and maintain advanced cyber threat detection and hunting...


  • Melbourne, Victoria, Australia FourQuarters Recruitment Full time

    Job Description:We are seeking a highly skilled Cyber Security Threat Analyst to join our Security Operations team. As a key member of the team, you will be responsible for providing major incident response, vulnerability management, and engineering services to support our clients.About the Role:Provide major incident response as part of a small team, as an...


  • Melbourne, Victoria, Australia Launch Recruitment Full time

    Launch Recruitment is working with a leading financial services organisation to bolster their threat detection team. The role is initially for 6 months.Job Description:The Cyber Threat Detection and Hunting Specialist will develop and maintain cyber threat detection and hunting capabilities across the business.Develop attack & use case models against the...


  • Melbourne, Victoria, Australia TESSERENT Full time

    Company OverviewTesserent is a leading provider of cybersecurity solutions, seeking a highly motivated and experienced Cybersecurity Threat Investigator to join our Security Operations Centre (SOC) team.We are looking for someone to become a trusted and valued member of our team. The ideal candidate will have a solid understanding of various cybersecurity...


  • Melbourne, Victoria, Australia Latitude IT Full time

    Latitude IT is seeking a talented Cyber Security Strategist to join our team. As a Cyber Security Strategist, you will work on the development and enhancement of cyber security strategies, collaborating with internal teams to address current and emerging threats.Key Responsibilities:Develop and enhance cyber security strategies; identify and prioritize...