Digital Forensic Specialist

6 days ago


Brisbane, Australia Datacom Full time

Our Purpose
Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in.
Our Team
We partner with industry leaders to provide our services and to provide you with a broad technical skillset, certifications, and experience.
About The Role
In this role you will be responsible for the delivery of digital forensics & incident response (DFIR) engagements, and proactive advisory engagements such as the delivery of tabletop exercises, compromise assessments & threat hunting, breach readiness assessments, threat intelligence briefings, & threat modelling. You will be expected to lead DFIR engagements across either Australia or New Zealand.
What You’ll Do
- Conduct thorough investigations into major security incidents, determining root causes, impact, and mitigation strategies. Providing expertise and support to contain, eradicate, and recover from such security incidents.
- Conduct analysis of affected systems utilising forensic techniques to thoroughly examine system events and adversary activities.
- Utilise security tooling such as EDR, SIEM, XDR, & Identity technologies to assist your investigation of confirmed or suspected compromises.
- Undertake log & correlation analysis and construct a timeline of adversary activities.
- Identify intrusion vectors & root causes and develop recommendation actions to prevent similar incidents.
- Collect digital forensics evidence from affected systems in accordance with industry standards for image acquisition and preservation of digital evidence.
- Produce comprehensive, detailed DFIR reports outlining the investigative steps undertaken, your findings, and recommendations.
- Support the coordination of containment, eradication and recovery efforts based on available information and established processes.
- Analysis of incident response effort, with feedback from the customer and third parties as part of Post Incident Reviews (PIRs) and Lessons Learned.
- Deliver proactive incident response services which include tabletop exercises, threat hunting, compromise assessments, breach readiness assessments, threat intelligence briefings, and threat modelling.
- Communicate with senior stakeholders within Datacom and our customers.
- Work with other members of the CSIRT team, to develop the technical capabilities of the CSIRT - including improving the processes and technology to deliver successful outcomes to customers and stakeholders.
- Participate in an on-call roster for major incident response.
- Occasional planned or last-minute/urgent travel to customer sites will be required for certain customer facing engagements. This may include a customer site in your home city, or travel to other customer sites within Australia and New Zealand.

What you’ll bring
- Confidence in communicating with a variety of senior stakeholders, including Senior Leadership teams in difficult / tense situations.
- Proven experience in responding to high-profile cybersecurity incidents that have had significant operational or privacy impacts to the affected organisation such as ransomware & data breaches.
- Experience in digital forensics & incident response (DFIR) with an understanding of key system & digital forensic artifacts and how they are useful in a cybersecurity investigation.
- Experience using DFIR tools such as EnCase, X-Ways, Magnet Axiom, Velociraptor, KAPE, & THOR.
- Proven knowledge and experience of efficiently searching large datasets across multiple log sources and underlying platforms including XDR/EDR and SIEM products such as CrowdStrike, Microsoft Defender, Splunk, or Sentinel.
- A strong understanding of current and emerging attacker behaviours, tools, tactics, and techniques.
- An understanding of various security frameworks and methodologies such as NIST CSF, MITRE ATT&CK and D3FEND, Unified Kill Chain and OWASP Top 10.
- Basic scripting or automation skills are desirable (for example PowerShell, Bash, Python, or Ruby).
- SANS GCFA, GCFE, GCIH, or relevant DFIR certifications are desirable.

Why join us here at Datacom?
Datacom is one of Australia and New Zealand’s largest suppliers of Information Technology professional services. We have managed to maintain a dynamic, agile, small business feel that is often diluted in larger organisations of our size. It's our people that give Datacom its unique culture and energy that you can feel from the moment you meet with us.
We care about our people and provide a range of perks such as social events, chill-out spaces, remote working, flexi-hours and professional development courses to name a few. You’ll have the opportunity to learn, develop your career, connect and bring your true self to work. You will be recognised and valued for your contributions and be able to do your work in a collegial, flat-structured environment.
We operate at the forefront of technology to help Australia and New Zealand’s largest enterprise organisations ex



  • Brisbane, Australia Australian Taxation Office Full time

    Enterprise Solutions Technology, Information and Cyber Security - Brisbane,Melbourne,Sydney - Ongoing/non-ongoing, full-time/part-time, $81,478 - $86,376 + 15.4% super We are seeking motivated, service-driven digital forensics professionals to join our Cyber Governance and Operations branch. As a **Digital Forensics Officer**, you’ll support forensics...


  • Brisbane, Australia Australian Taxation Office Full time

    Enterprise Solutions and Technology, Cyber Operations - Brisbane CBD,Melbourne CBD,Sydney CBD - Ongoing/non-ongoing, full-time/part-time, $120,704 - $131,594 + 15.4% super We are seeking experienced and supportive leaders to join our Cyber Operations, Program and Strategy branch. As a **Digital Forensics Lead**, you’ll lead our specialist digital...


  • Brisbane, Australia Australian Taxation Office Full time

    Enterprise Solutions and Technology, Cyber Operations - Brisbane CBD,Melbourne CBD,Sydney CBD - Ongoing/non-ongoing, full-time/part-time, $94,235 - $108,200 + 15.4% super We are seeking motivated, service-driven professionals to join our Cyber Operations, Program and Strategy branch. As a **Digital Forensics Officer**, you’ll provide specialist digital...


  • Brisbane Central Business District, Australia Australian Taxation Office Full time

    Enterprise Solutions Technology, Information and Cyber Security - Brisbane CBD, Melbourne CBD, Sydney CBD - Ongoing/non-ongoing, full-time/part-time, $87,972 - $101,008 + 15.4% super We are seeking energetic, service-driven digital forensics professionals to join our Cyber Governance and Operations branch. As a **Digital Forensics Officer**, you’ll...


  • Brisbane, Australia Australian Taxation Office Full time

    Enterprise Solutions Technology, Cyber Governance and Operations - Brisbane,Melbourne,Sydney - Ongoing/non-ongoing, full-time/part-time, $73,086 - $79,323 + 15.4% super We are seeking energetic, service-driven Digital Forensics Officers to join our Cyber Governance and Operations branch. As a **Digital Forensics Officer**, you’ll support forensic...


  • Brisbane, Australia BOEING Full time

    At Boeing, we innovate and collaborate to make the world a better place. From the seabed to outer space, you can contribute to work that matters with a company where diversity, equity and inclusion are shared values. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for...


  • Brisbane, Australia Queensland Health Full time

    Metro South Health is Australia's first digital health service and one of the largest in Queensland, with an estimated residential population of approximately one million people or 23 per cent of Queensland's population. This is your opportunity to join the dedicated team of professionals at Metro South Health and be part of a world-class, dynamic and...


  • Brisbane, Australia Queensland Health Full time

    About the role The Forensic Liaison Officer will coordinate, support, monitor and report on the care and management of consumers under Forensic Orders within West Moreton's Community and Acute Mental Health Service. This position will coordinate and provide direct care and management of consumers under Forensic Orders (as identified in the Mental Health Act...


  • City of Brisbane, Australia Digital Preservation Coalition Full time

    Vacancy for Collection Management Archivist (Digital) at Queensland State Archives 17 March 2023 Brisbane $92,658 - $100,498 Fixed Term We are looking for an archivist to join the Digital Archives team in this exciting and rewarding role. You will be analyzing and preparing born-digital records for ingest into the digital archive and undertaking...


  • Brisbane, Australia KordaMentha Full time

    **Company Description** At KordaMentha, you’ll make an impact from day one. We’re looking for ambitious, well-rounded individuals ready to tackle real-world business challenges. Join a team that thrives on creativity, collaboration, and bold thinking. We go beyond the standard approach—asking ‘what if?’ and ‘why not?’ to uncover innovative...