Incident Response Consultant

4 weeks ago


Sydney, Australia CrowdStrike Australia Pty Limited Full time

​​#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.

About the Role

As an Incident Response Consultant, you will be responsible for delivering services engagements across the region. You will be a member of a highly collaborative industry leading team that thrives on the daily challenges of stopping breaches from the world's most sophisticated adversaries. This is an individual contributor, senior technical consulting role that requires hands-on technical expertise and ability to communicate effectively with both technical and business stakeholders.

The right individual for our team should have excellent energy, drive and a real desire to help organisations respond to security incidents. The ability to work in a high stress, high pressure situation is a must as well as the ability to work together with the team around the APJ region. If you have forensics, incident response, and cyber security experience you are encouraged to apply.

What you'll Do

  • Lead incident response engagements. This is an excellent opportunity for someone to 'own' their role and operated independently.

  • Perform advanced host and/or network-based forensics across Windows, Mac, and Linux platforms.

  • Advise organizations while they respond to threat actor activity.

  • Produce high-quality written and verbal reports, presentations, recommendations, and findings to customer management.

  • Present technical material to non-technical and technical audiences

  • Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.

What You’ll Need

Required

  • Must be able to work on weekends. Standard working days will be Thursday through Monday or something similar (discussion welcome).

  • Incident Response: experience conducting or managing incident response investigations for organizations, investigating targeted threats such as the Advanced Persistent Threat, Organized Crime, and Hactivists.

  • Computer Forensic Analysis: a background using a variety of forensic analysis tools in incident response investigations to determine the extent and scope of compromise.

  • Communication: exceptional written and oral communication skills. Ability to write and present technical content, including being able to present to senior executives.

Preferred

  • Network Forensic Analysis: strong knowledge of network protocols, network analysis tools, and ability to perform analysis of associated network logs.

  • Incident Remediation: deep understanding of targeted attacks and able to create customized tactical and strategic remediation plans for compromised organizations.

  • Threat Intelligence: familiarity with threat intelligence, adversary attribution and its application to Incident response

Bonus Points

  • Qualifications: following certifications preferred but not required GIAC Certified Forensics Analyst (GCFA), GIAC Certified Incident Handler (GCIH) or similar

#LI-JC1

Benefits of Working at CrowdStrike:

  • Remote-first culture

  • Market leader in compensation and equity awards with option to participate in ESPP in eligible countries

  • Competitive vacation and flexible working arrangements

  • Physical and mental wellness programs

  • Paid parental leave, including adoption

  • A variety of professional development and mentorship opportunities

  • Access to CrowdStrike University, LinkedIn Learning and Jhanna

  • Offices with stocked kitchens when you need to fuel innovation and collaboration

  • Birthday time-off in your local country

  • Work with people who are passionate in our mission and Great Place to Work certified across the globe

We are committed to fostering a culture of belonging where everyone feels seen, heard, valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.

CrowdStrike is committed to maintaining an environment of Equal Opportunity and Affirmative Action. If you need reasonable accommodation to access the information provided on this website, please contact Recruiting@crowdstrike.com​, for further assistance.



  • Sydney, Australia Latitude IT Full time

    Collaborative, supportive, Values driven environmentGreat coffee (and a variety of tea) and fresh fruitAvoid the traffic: we are outside the CBD and close to public transportEnhance cyber threat monitoring and incident response strategies.Coordinate intelligence sharing efforts across divisionsSupport the improvement of incident response capabilities and...


  • Sydney, Australia Amazon Full time

    DESCRIPTIONAWS Incident Response is at the heart of high availability of Amazon Web Services. We make customer impacting events shorter and less frequent by providing large scale event and incident management. Our automated tooling quickly identies the cause of an issue and helps mitigate its impact, and much of our engineer time is spent on projects to...


  • North Sydney, Australia Amazon Support Services Pty Ltd Full time

    AWS Incident Response is at the heart of high availability of Amazon Web Services. We make customer impacting events shorter and less frequent by providing large scale event and incident management. Our automated tooling quickly identies the cause of an issue and helps mitigate its impact, and much of our engineer time is spent on projects to improve the...


  • Sydney, Australia Halcyon Knights Full time

    Higher Education Opportunity - 6 Month Contract - Sydney **Cyber Security Incident Response Analyst** *** Are you passionate about defending against cyber threats and safeguarding critical information assets? Do you have a deep understanding of cyber security practices and technologies? If so, we invite you to join our client’s team as a Cyber Security...


  • Sydney, Australia Healthdirect Australia Full time

    This role focuses on critical incident and business continuity management. - Grow with an organisation dedicated to helping Australians improve their health. - Sydney based role in our Haymarket office, near Central station - Hybrid working **About us** Healthdirect Australia is a government-owned, not-for-profit organisation who works with purpose and...


  • Sydney Eastern Suburbs, Australia Robert Half Full time

    Join this large & recognisable global firm in a newly created role to lead the execution & coordination of IR processes, automation, and cloud IR. - Newly created role in a well-known global firm - Lead CSIRT activities in the region - Full time permanent role | Hybrid working **THE COMPANY** This large and well-known organisation employs more than 70,000...

  • Incident Responder

    7 days ago


    Sydney, Australia Commonwealth Bank Full time

    **_You are _**_a problem solver with a strong background in IR and or Security Operations Centre (SOC) _ - **_We are _**_one of the best and most advanced Cyber Security teams in Australia. _ - **_Together we can _**_contribute to protecting the Group, Customers and Community _ **Your business**: The Technology division delivers the Group’s information...


  • Sydney, Australia WiseTech Global Full time

    **About the Role**: Level up your career and revolutionize the world of logistics with WiseTech Global! Due to our organic and acquisitional growth, we are seeking an IS Incident Manager in Sydney to join our IS team. This is your chance to join a global leader and become responsible for minimizing the impact of incidents on both customer and business...

  • Service Manager

    4 weeks ago


    Sydney, Australia AC3 Full time

    Develop your career in a leading Australian owned MSP - Voted #4 Best Place to Work in Australia - Largest Australian IT Service Provider for NSW Government **About the company** At AC3, our purpose is to make technology real, and as the leaders in secure multi-cloud solutions, we get to do this for our customers every day. We are an Australian owned ICT...


  • Sydney, Australia Commonwealth Bank Full time

    **Provide visible leadership in Major Incident Management** - **Drive collaboration and strategy in key service areas** - **Access to world leading technology and tools** **Do work that matters** We move at pace and push the boundaries to deliver industry-leading solutions. The size and scale of our business means that with us, you’ll work on real-life...


  • Sydney, Australia Carecone Pte Ltd Full time

    Role: Major Incident Management Location: Sydney, NSW Position: Permanent MM (Major incident Management) - Manager (immediate Requirement) - Onsite Sydney (2 days in the office) Consultant who has a good understanding of MIM Needs to have good understanding of Project Management Experience working with remote teams and...


  • Sydney, Australia WiseTech Global Full time

    About the Role Level up your career and revolutionize the world of logistics with WiseTech Global! Due to our organic and acquisitional growth, we are seeking an IS Incident Manager in Sydney to join our IS team. This is your chance to join a global leader and become responsible for minimizing the impact of incidents on both customer and business...


  • Sydney, Australia WiseTech Global Full time

    About the Role Level up your career and revolutionize the world of logistics with WiseTech Global! Due to our organic and acquisitional growth, we are seeking an IS Incident Manager in Sydney to join our IS team. This is your chance to join a global leader and become responsible for minimizing the impact of incidents on both customer and business...

  • SOC Analyst

    4 weeks ago


    Sydney, Australia Talent International Full time

    **Job Details**: **Location** Sydney **Salary** + Super + Benefits **Job Type** Full Time **Ref** BBBH102910_1686894656 **Contact** Catherine Wiggett **Posted** about 2 hours ago We have a newly created opportunity for a Security Operations Centre Analyst to step up into an Incident Commander role as part of a growing Global Cyber Information...


  • Sydney, Australia 86 400 Full time

    We are flexible - Hybrid working model - Supportive and collaborative team environment - Career growth and multiple development opportunities **About us** At ubank, we want to empower the digital generation to be more successful with money. Think of us more as a daily money companion. One that brings together the ability for customers to see their money in...

  • IT Incident Manager

    4 weeks ago


    Sydney, Australia AC3 Full time

    Largest Australian IT Service Provider for NSW Government - Career progression and development opportunities - Voted 4th Best Place to Work in Australia - **Largest Australian IT Service Provider for NSW Government**: - **Career progression and development opportunities**: - **Voted 4th Best Place to Work in Australia**: - **Based in Sydney - Hybrid...


  • Sydney, Australia Commonwealth Bank Full time

    _We are one of the largest Cyber Security teams in the Southern Hemisphere _ - _Together we will build tomorrow’s bank today, using world-leading engineering, technology, and innovation _ **See yourself in our team** The Cyber Security team protects the bank and our customers from theft, losses and risk events, through effective and proactive management...


  • Sydney, Australia Qantas Airways Limited Full time

    Opportunity to join our Airline IT business and to join our Cyber Security function - Be part of a team that values great cyber security principles and practices - Permanent opportunity based at our Head Office in Mascot At Qantas, we represent Australia to the world. Our diverse country is known for its unique spirit, mateship, and a can-do attitude....


  • Sydney, Australia The Cyber Hunters Embassy Full time

    Get ready to reimagine the possible and achieve a safer digital world. - Identify, analyse, prioritise and remediate cyber incidents, globally. - Sydney based. Highly driven fast paced team. Excellent Benefits. In the rapidly evolving landscape of cyber threats, this global brand stands at the forefront of defending against malicious activities that put our...


  • North Sydney, Australia Zurich Insurance Full time

    A new adventure awaits- At Zurich we’re on a journey, even though we are 150 years young, we are lighting the way to a brighter future. A brighter future for you - focused on your career, your wellbeing, and your community - as well as our customers and the planet.- This exciting adventure will drive positive impact. So, if you want to be part of a values...