
Principle Analyst, Cyber Security Incident Response
6 days ago
**Principle Analyst, Cyber Security Incident Response**
At NTT we believe that by using innovative technology we can solve global challenges and create a world that is sustainable and secure. We are looking for curious people, from diverse backgrounds, that are keen to work in a fast-paced and agile environment.
At NTT we trust our employees to do the right thing, even when no one is watching, which is why we offer flexibility in the workplace. The majority of our roles are hybrid, meaning we encourage a balance of working from home and our local office. Ask our recruitment team if this is a hybrid role.
**Want to be a part of our team?**
The Cyber Security Incident Response (CSIR) team is essential in providing an orchestrated and rapid security incident response capability with an oversight of security incident response across wider NTT Managed Security Services clients. The CSIR team utilise various security technologies to identify alerts, prioritize and investigate security issues in a fast-paced environment maintain the level of communication with internal and client stakeholders.
As the CSIR engineer, the typical day can vary greatly depending on the specific position. They may begin their day by looking over dashboards, reports from the previous day or shift, including checking for any new threats and identifying malware that may have infiltrated the system. also prepare for and respond to system breaches or attacks. These processes might differ between Clients, but they generally include responding to hacks or network insecurities and working to prevent new ones.
You will also be required to participate in a shift roster which may comprise of shifts business hours and after hours.
Prepares detailed incident reports and technical briefs for the IT security team.
**Working at NTT**
- Manage day-to-day operations of reviewing SIEM alert and other vulnerability management tools.
- Ensure that all the various environments within the Client have adequate scans and assessments performed.
- Research and recommend mitigation strategy for current and future threats relevant to the Clients environment.
- Combine outputs from the Cybersecurity Advisory with threat intelligence, to develop contextualised attack scenarios for testing Client’s cyber resilience. Prepares detailed incident reports and technical briefs for the IT security teams and Non-technical audience. Monitor the progress of attack simulations to validate the effectiveness of technical security controls, as well as people and processes, in the prevention, detection and response to real attack behaviours.
- Participate in security incident response process when required. Assist in Security Incident Response and provide insights on security incidents and threats.
- Proactively inform any misconfigurations to the Client team and raising tasks against the Clients Tech Domain using the Clients Service Management platform.
- Collaborate with Client to ensure alignment of Client security objectives with business priorities across Client Tech Domains and other 3rd party providers.
- Recommend enhancements to Client security controls or policy configurations to improve the security posture.
- Support the Security Management Lifecycle including: Real-time Monitoring Incident investigation. Research. Correlation. Trending. Remediation.
- Setup and configure SIEM, including data analysis, rule creation, establish thresholds, reference lists, and other duties.
- Setup, investigate, and advanced troubleshooting of log transport agents.
- Work with technology owners and platform leads to ensure vulnerabilities and issues are patched and remediated on time.
- Oversee the implementation and management of operational security reporting activities.
- Regularly, meet with the internal team to review security reports, status, review any risks, issues, incidents, and outstanding activities. Vulnerability Management, Malware analysis, Threat hunting and assist in forensic analysis.
- Managing stakeholder expectations and assisting in the reduction of the impact of a cybersecurity event or incident.
- Contribute to maintaining knowledge base/playbooks by updating procedural documentation.
- Actively participate in process improvement with other team members and Wider team.
- Maintain detailed knowledge of the clients’ environment(s), where applicable, by maintaining and updating relevant documentation.
- Provide proactive, constant, and clear communication on the status of incident/problem resolution between the client, NTT, and any other third-party supplier and vendors. #ownyourfuture
**What will make you a good fit for the role?**
Core skills and experience
- An Individual with curious mind, a problem solver, a good researcher with good presentation and documentation skills.
- Experience in working in Security Operation Centre with good understanding of NIST framework.
- Hands-on experience in managing Splunk, other SIEM logging solution like Microsoft
-
Lead Cyber Security Incident Response Analyst
2 weeks ago
Sydney Eastern Suburbs, Australia Robert Half Full timeJoin this large & recognisable global firm in a newly created role to lead the execution & coordination of IR processes, automation, and cloud IR. - Newly created role in a well-known global firm - Lead CSIRT activities in the region - Full time permanent role | Hybrid working **THE COMPANY** This large and well-known organisation employs more than 70,000...
-
SOC Analyst
2 days ago
Sydney, Australia Genesis IT&T Pty Ltd Full time**9 Months Contract (with the view to extend)**: - **Global Technology Company**: - **Experience in Healthcare industry is mandatory** A leading global technology company is currently seeking for an experienced SOC Analyst to be responsible for ensuring the detection and resolution of cyber security incidents, exposures, and vulnerabilities across all...
-
Cyber Security Analyst
2 weeks ago
Sydney, Australia AI Talent Full timeWe are looking for a seasoned and highly capable Senior Cyber Security Analyst to join our team. In this key role, you will be responsible for protecting the organisation’s systems, networks, and data against evolving cyber threats. Your deep knowledge of cyber security frameworks, risk management, incident response, and operational security will be...
-
Cyber Security Analyst
1 week ago
Sydney, Australia AI Talent Full timeWe are seeking a highly skilled and experienced Senior Cyber Security Analyst to join our team. As a Senior Cyber Security Analyst, you will play a pivotal role in safeguarding our organization's systems, networks, and data from cyber threats. Your expertise in cybersecurity frameworks, risk assessment, incident response, and security operations will be...
-
Sydney, New South Wales, Australia beBeeCybersecurity Full time $140,000 - $168,000Job DescriptionWe are seeking highly motivated and self-driven Cyber Security Analysts to join our team. Our virtual security operations center offers a wide variety of experiences, detecting and responding to incidents in real-time for our customers.
-
Cyber Security Analyst
4 weeks ago
Sydney, New South Wales, Australia findapprenticeship.service.gov - Jobboard Full timeAs a Cyber Security Analystyou will ensure that the business is protected against cyber security threats and that data is always kept secure.This will mean proactive planning, rapid responses to all security threats and incidents and serving as an escalation point for the other members of the team.You will work collaboratively with the business and wider IT...
-
Cyber Security Incident Response Leader
4 days ago
Sydney, New South Wales, Australia beBeeSecurity Full time $170,000 - $200,000Job Title: Cyber Security Incident Response ManagerAbout the RoleWe are seeking an experienced Cyber Security Incident Response Manager to lead our high-performing team in enhancing our organisation's security posture and response capabilities.Lead a team of cyber security professionals, ensuring effective incident detection, response, and resolution.Manage...
-
Incident Response Cyber Security Manager
6 days ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time $170,000 - $200,000Lead Cyber Security Incident ResponseWe are seeking a seasoned cyber security professional to oversee the management of incident response within an esteemed institution.Direct, mentor and develop a team of cyber security specialists, ensuring timely and effective incident detection, response and resolution.Coordinate and manage complex security incidents...
-
Cyber Security Analyst
2 weeks ago
Sydney, Australia NSW Government -Department of Customer Service Full time**Cyber Security Analyst** **Role type**:Ongoing, Full-time opportunity **Salary**: DCS Clerk grade 7/8, annual base salary starting at $101,947 plus employer’s contribution to superannuation and annual leave loading **Location**: Hybrid opportunity, Head Office Haymarket Sydney **About the Role** We are currently looking for a Cyber Security Analyst to...
-
Cyber Security Incident Response Manager
4 days ago
Sydney, New South Wales, Australia Talent Full timeCyber Security Incident Response ManagerJoin or sign in to find your next jobJoin to apply for the Cyber Security Incident Response Manager role at TalentCyber Security Incident Response Manager1 day ago Be among the first 25 applicantsJoin to apply for the Cyber Security Incident Response Manager role at TalentGet AI-powered advice on this job and more...