Senior Cybersecurity Incident Responder

4 weeks ago


Sydney, Australia Macquarie Full time

Join Macquarie's Digital Bank as a part of our Cybersecurity team. As a key member of our team, you will leverage our deep institutional knowledge and global reach to detect and respond to security threats.

At Macquarie, we are working to create lasting value for our communities, our clients and our people. We are a global financial services group operating in 34 markets and with 54 years of unbroken profitability. You’ll be part of a supportive team where everyone – no matter what role – contributes ideas and drives outcomes.

What role will you play?

In this role, you will work in an agile environment with the flexibility to transition from managing incidents to reporting and presenting to senior management. You will have the opportunity to develop tools and use modern technologies to detect and respond to security threats.

Your key responsibilities will include:

  • Actively responding to security and fraud events from detection through to coordinating various stakeholders in incident recovery.
  • Participating in on-call roster as a senior escalation point of contact for the SOC.
  • Building security alerts and dashboards to monitor Macquarie BFS’ externally facing and Cloud hosted services and Fraud events of interest.
  • Supporting cross-functional post-incident reviews to drive continuous improvement of detection and prevention.
  • Preparing and maintaining incident response documentation such as playbooks and procedures.
  • Proactively running threat hunting exercises and table-tops to identify anomalous behaviors on Macquarie BFS’ systems.
  • Developing tools for security incident alerting, management, communication, and response.
  • Reporting and presenting to senior technical and business stakeholders.

What you offer

You will bring the following skills and experience:

  • Prior experience in incident response and threat hunting.
  • Expertise in using Logging and SIEM platforms (Sumologic, Splunk or Splunk Enterprise Security).
  • Ability to coordinate multiple teams and stakeholders during an incident, and take decisive actions as needed for containment.
  • Experience in security consulting and advice to secure applications to prevent recurrence of cyber security incidents (e.g. OWASP).
  • (Preferred) Prior experience in incident response on cloud services such as Google Cloud and AWS. 

It’s a bonus if you have:

  • Ability to program in scripting languages such as Python, Bash or Golang.
  • Prior experience in security engineering to automate tasks for incident response detection and containment.
  • Security Certifications - CISSP, SANS GIAC, OSCP, OSWP.
  • Cloud Certification - CCSK, AWS, GCP.

Benefits

  • Hybrid and flexible working arrangements.
  • Wellbeing and service leave.
  • Up to 20 weeks paid parental leave for primary carers.
  • Paid volunteer leave and donation matching.
  • Range of benefits to support your physical, psychological and financial wellbeing.

About the Corporate Operations Group

In our Corporate Operations Group, you will work at the heart of Macquarie. Join a collaborative team who accelerate digitalisation, sustainability and social impact for the benefit of our people, customers, shareholders and communities. Our teams include technology, digital transformation and data, operations, human resources, business services, corporate strategy and solutions and the Macquarie Group Foundation.

Our commitment to Diversity, Equity and Inclusion 

We are committed to providing a working environment that embraces diversity, equity, and inclusion. We encourage people from all backgrounds to apply for a role regardless of their identity, including gender, race, ethnicity, cultural identity, nationality, age, sexual orientation, gender identity, intersex status, marital or family status, neurodiversity, religion or belief, disabilities, or socio-economic background.

If you require adjustments to your working arrangements or the recruitment process, please let us know when applying.



  • Sydney, New South Wales, Australia Macquarie Bank Limited Full time

    Join Macquarie's Digital Bank as a part of our Cybersecurity team, working in the Security Operations Centre on security incident responses. At Macquarie, our advantage is bringing together diverse people and empowering them to shape all kinds of possibilities.We are a global financial services group operating in 34 markets and with 54 years of unbroken...

  • Head of Attack

    3 weeks ago


    North Sydney, Australia TPG Telecom Full time

    **Work options**: Hybrid We’ve only just begun, but what a beginning. In a once in a generation moment, we’ve brought together powerful brands to create one united force. TPG Telecom has a powerhouse of brands which include Vodafone, TPG, iiNet, Internode, Lebara, AAPT and felix. The latest technology and brave thinking let us connect our people and...

  • Incident Responder

    1 week ago


    Sydney, Australia Quigly Cyber Full time

    Diverse, inclusive and supportive team - Proudly making a difference with the transition to renewable energy - You love Cyber Security Quigly are a boutique consultancy with a great network of clients across many industries. **Company Overview** Join one of Australia's top organizations. Our client improves the lives of millions - from lighting up sports...


  • Sydney, New South Wales, Australia Transgrid Full time

    Select how often (in days) to receive an alert: Location: Sydney - Eastern Creek, NSW, Australia Company: TransGrid High performing, diverse, inclusive, and supportive team Proudly making a difference with the transition to renewable energy Access to corporate discounts | Fitness Passport | EAP The Opportunity This is an exciting opportunity for a...


  • Sydney, New South Wales, Australia Fti Consulting, Inc Full time

    FTI Consulting is the number one global expert firm for organisations facing crisis, transformation and moments of truth.The Cybersecurity Practice within FTI Consulting is a leading provider of independent cybersecurity and risk management advisory services with a core offering focused on (but not limited to) Cyber Readiness, Incident Response and Complex...


  • Sydney, New South Wales, Australia The Decipher Bureau Full time

    Company:We're partnering with a renowned global information security specialist expanding its presence in Australia. With a strong research focus and established nationwide offices, this consulting firm continues to go from strength to strength in the market. The Role:In response to increasing demand and ongoing expansion in Incident Response, our client...


  • Sydney, Australia The Decipher Bureau Full time

    Company:We're partnering with a renowned global information security specialist expanding its presence in Australia. With a strong research focus and established nationwide offices, this consulting firm continues to go from strength to strength in the market.  The Role:In response to increasing demand and ongoing expansion in Incident Response, our client...


  • Sydney, New South Wales, Australia FTI Consulting, Inc Full time

    FTI Consulting is the number one global expert firm for organisations facing crisis, transformation and moments of truth. The Cybersecurity Practice within FTI Consulting is a leading provider of independent cybersecurity and risk management advisory services with a core offering focused on (but not limited to) Cyber Readiness, Incident Response and Complex...


  • Sydney, New South Wales, Australia The Decipher Bureau Full time

    Security (Information & Communication Technology)Company: We're partnering with a renowned global information security specialist expanding its presence in Australia.With a strong research focus and established nationwide offices, this consulting firm continues to go from strength to strength in the marketThe Role: In response to increasing demand and...


  • Sydney, Australia TikTok Full time

    Responsibilities About TikTok U.S. Data Security TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and...

  • Incident Responder

    3 weeks ago


    Sydney, Australia Commonwealth Bank Full time

    **_You are _**_a problem solver with a strong background in IR and or Security Operations Centre (SOC) _ - **_We are _**_one of the best and most advanced Cyber Security teams in Australia. _ - **_Together we can _**_contribute to protecting the Group, Customers and Community _ **Your business**: The Technology division delivers the Group’s information...

  • Security Manager

    1 week ago


    Sydney, Australia Michael Page Full time

    About Our Client A very successful organisation setting up their offices in Abu Dhabi. Job Description Lead the implementation of physical security measures, including CCTV systems, access control systems, and visitor management protocols. Coordinate with third-party vendors to ensure effective deployment and management of physical security...

  • Incident Responder

    1 week ago


    Sydney, New South Wales, Australia Commonwealth Bank Full time

    _You are __a problem solver with a strong background in IR and or Security Operations Centre (SOC) _- _We are __one of the best and most advanced Cyber Security teams in Australia. _- _Together we can __contribute to protecting the Group, Customers and Community _Your business:The Technology division delivers the Group's information technology and banking...


  • Sydney, Australia Canva Full time

    **Join the team redefining how the world experiences design. - Hey, g'day, mabuhay, kia ora,你好, hallo, vítejte!- Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.**Where and how you can work - Our flagship campus is in Sydney. We also have...


  • Sydney, New South Wales, Australia SecureWorks Australia Pty Ltd (7380) Full time

    Job Posting Secureworks (NASDAQ: SCWX) is a global cybersecurity leader that secures human progress with Secureworks TaegisTM, a SaaS-based, open XDR platform built on 20+ years of real-world threat intelligence and research, improving customers' ability to detect advanced threats, streamline and collaborate on investigations, and automate the right actions....


  • Sydney, New South Wales, Australia CrowdStrike Holdings, Inc. Full time

    Incident Response Consultant (Weekends) page is loaded Incident Response Consultant (Weekends) Apply locations Australia - Sydney time type Full time posted on Posted Today job requisition id R17739 #WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading...


  • Sydney, New South Wales, Australia Crowdstrike Full time

    We Are Crowd Strike and our goal is to prevent security breaches. As a prominent player in the cybersecurity sector, our team has changed the rules of the game. With our cutting-edge cloud-native platform, we offer unmatched protection against advanced cyber threats.We are seeking individuals with boundless passion, an unwavering focus on innovation, and a...

  • Digital Forensics

    4 days ago


    Sydney, Australia Decipher Bureau Full time

    Remote WFH Australia-wide / HQ in Sydney - Permanent Position: Up to $200k + super (negotiable) - Access to the best training & development for career growth **Company**: We're partnering with a renowned global information security specialist expanding its presence in Australia. With a strong research focus and established nationwide offices, this...


  • Sydney, New South Wales, Australia Dynamo Recruitment Full time

    Australian Citizen ACT based Hybrid Long 12+ month contractWe have an exciting new role "Documentation Specialist - Cybersecurity & Assurance - long 12month contract working for a reputable Govt body on an innovative project Must be a Australian Citizen to apply Immediate start ACT based HybridThe Documentation Specialist - Cybersecurity & Assurance is...


  • Sydney, New South Wales, Australia Palo Alto Networks, Inc. Full time

    Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before.We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for...