Talent.com
This job offer is not available in your country.
Cybersecurity Incident Responder

Cybersecurity Incident Responder

DatacomAuckland, Auckland, NZ
2 days ago
Job type
  • Quick Apply
Job description

Our Purpose

Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in.

Our Team

Datacom’s Cybersecurity Defence Operations Centre (CDOC) operates across Australia & New Zealand where we provide a full stack of cybersecurity services including managed SOC / SIEM / EDR / XDR, threat intelligence, and digital forensics & incident response (DFIR).

Our Cybersecurity Defence Operations Centre is a well-established team made up of Cybersecurity Analysts, Platforms Engineers, Automation Specialists, Solutions Delivery Engineers, Threat Intel Analysts, Threat Hunters, & Incident Responders who have been managing customers, both commercial and government, for over 10+ years.

We partner with industry leaders to provide our services and to provide you with a broad technical skillset, certifications, and experience.

About The Role

We are currently looking for a highly skilled and motivated individual to join our Cybersecurity Incident Response Team (CSIRT) as a Cybersecurity Incident Responder. CSIRT provide proactive and reactive expertise to help organisations respond to major cybersecurity incidents.

In this role you will be responsible for the delivery of digital forensics & incident response (DFIR) engagements, and proactive advisory engagements such as the delivery of tabletop exercises, compromise assessments & threat hunting, breach readiness assessments, threat intelligence briefings, & threat modelling. We are seeking a candidate who has experience investigating and responding to major cybersecurity incidents, and possesses excellent communication, analytical, and problem-solving skills.

Please note that you will be expected to undertake DFIR engagements across either Australia or New Zealand.

What You’ll Do

As a Cybersecurity Incident Responder, you will :

  • Conduct thorough investigations into major security incidents, determining root causes, impact, and mitigation strategies. Providing expertise and support to contain, eradicate, and recover from such security incidents.
  • Conduct analysis of affected systems utilising forensic techniques to thoroughly examine system events and adversary activities.
  • Utilise security tooling such as EDR, SIEM, XDR, & Identity technologies to assist your investigation of confirmed or suspected compromises.
  • Undertake log & correlation analysis and construct a timeline of adversary activities.
  • Identify intrusion vectors & root causes and develop recommendation actions to prevent similar incidents.
  • Collect digital forensics evidence from affected systems in accordance with industry standards for image acquisition and preservation of digital evidence.
  • Produce comprehensive, detailed DFIR reports outlining the investigative steps undertaken, your findings, and recommendations.
  • Support the coordination of containment, eradication and recovery efforts based on available information and established processes.
  • Analysis of incident response effort, with feedback from the customer and third parties as part of Post Incident Reviews (PIRs) and Lessons Learned.
  • Deliver proactive incident response services which include tabletop exercises, threat hunting, compromise assessments, breach readiness assessments, threat intelligence briefings, and threat modelling.
  • Communicate with senior stakeholders within Datacom and our customers.
  • Work with other members of the CSIRT team, to develop the technical capabilities of the CSIRT - including improving the processes and technology to deliver successful outcomes to customers and stakeholders.
  • Participate in an on-call roster for major incident response.
  • Occasional planned or last-minute / urgent travel to customer sites will be required for certain customer facing engagements. This may include a customer site in your home city, or travel to other customer sites within Australia and New Zealand.

What you’ll bring

  • The mindset of an investigator. We are looking for someone who is able to search for evidence of compromise and previously undetected adversary behaviour.
  • Confidence in communicating with a variety of senior stakeholders, including Senior Leadership teams in difficult / tense situations.
  • Experience in responding to high-profile cybersecurity incidents that have had significant operational or privacy impacts to the affected organisation such as ransomware & data breaches.
  • Experience in digital forensics & incident response (DFIR) with an understanding of key system & digital forensic artifacts and how they are useful in a cybersecurity investigation.
  • Experience using DFIR tools such as EnCase, X-Ways, Magnet Axiom, Velociraptor, KAPE, & THOR.
  • Proven knowledge and experience of efficiently searching large datasets across multiple log sources and underlying platforms including XDR / EDR and SIEM products such as CrowdStrike, Microsoft Defender, Splunk, or Sentinel.
  • A strong understanding of current and emerging attacker behaviours, tools, tactics, and techniques.
  • An understanding of various security frameworks and methodologies such as NIST CSF, MITRE ATT&CK and D3FEND, Unified Kill Chain and OWASP Top 10.
  • Basic scripting or automation skills are desirable (for example PowerShell, Bash, Python, or Ruby).
  • SANS GCFA, GCFE, GCIH, or relevant DFIR certifications are desirable.
  • Why join us here at Datacom?

    Datacom is one of Australia and New Zealand’s largest suppliers of Information Technology professional services. We have managed to maintain a dynamic, agile, small business feel that is often diluted in larger organisations of our size. It's our people that give Datacom its unique culture and energy that you can feel from the moment you meet with us.

    We care about our people and provide a range of perks such as social events, chill-out spaces, remote working, flexi-hours and professional development courses to name a few. You’ll have the opportunity to learn, develop your career, connect and bring your true self to work. You will be recognised and valued for your contributions and be able to do your work in a collegial, flat-structured environment.  We operate at the forefront of technology to help Australia and New Zealand’s largest enterprise organisations explore possibilities and solve their greatest challenges, so you will never run out of interesting new challenges and opportunities.

    We want Datacom to be an inclusive and welcoming workplace for everyone and take pride in the steps we have taken and continue to take to make our environment fun and friendly, and our people feel supported.

    Create a job alert for this search

    Cybersecurity • Auckland, Auckland, NZ

    Related jobs
    • Promoted
    Intelligence Capability Officer

    Intelligence Capability Officer

    New Zealand Intelligence CommunityWorkFromHome, Auckland, New Zealand
    The secret to our success is our people.While we are ordinary people, we are not all the same.We welcome diversity, in all its forms, in fact we consider it a strength. Join us and work at the heart...Show moreLast updated: 3 days ago
    • Promoted
    Graduate Program - ICT & Security Engineering (Feb 2027)

    Graduate Program - ICT & Security Engineering (Feb 2027)

    SANITI - Student Association of Nelson-Marlborough Institute of Technology IncAuckland, Auckland, New Zealand
    Pre-register now to get updates when our 2027 Graduate Program applications go live!.At AECOM, you will work in a dynamic environment where your integrity and pioneering mindset are championed.What...Show moreLast updated: 1 day ago
    • Promoted
    Penetration Tester Auk

    Penetration Tester Auk

    Synack Solutions PtyAuckland, New Zealand
    SynAck Solutions provides comprehensive risk management and expert advice with a highly skilled team of professionals.With careers at SynAck, you can make a real impact in a rapidly growing, cuttin...Show moreLast updated: 8 days ago
    • Promoted
    • New!
    Graduate Program - ICT & Security Engineering (Feb 2027)

    Graduate Program - ICT & Security Engineering (Feb 2027)

    Prosple PtyAuckland, Auckland, New Zealand
    Pre-register now to get updates when our 2027 Graduate Program applications go live!.At AECOM, you will work in a dynamic environment where your integrity and pioneering mindset are championed.What...Show moreLast updated: 14 hours ago
    • Promoted
    Intelligence Capability Officer

    Intelligence Capability Officer

    New Zealand GovernmentWorkFromHome, Auckland, New Zealand
    Intelligence Capability Officer at NZ Security Intelligence Service (NZSIS), Auckland## Mō tēnei tūranga mahi | About this role •The secret to our success is our people. While we are ordinary people,...Show moreLast updated: 4 days ago
    • Promoted
    Asset Protection Administrator

    Asset Protection Administrator

    Watercare Services LimitedAuckland, Auckland, New Zealand
    He kōrero mō mātou | About Watercare.Ki te ora te wai, ka ora te whenua, ka ora te tangata.When the water is healthy, the land and the people are healthy. Now is an exciting time to join Watercare, ...Show moreLast updated: 1 day ago
    • Promoted
    Senior Security Technician

    Senior Security Technician

    Alpha Personnel Recruitment LtdAuckland - other, Auckland, New Zealand
    Our client is a respected security integration provider, working with top-tier clients across Auckland.Their staff retention is high, and they have a work culture to be envious of.My client doesn't...Show moreLast updated: 22 days ago
    • Promoted
    Network And Security Consultant

    Network And Security Consultant

    Comspek InternationalAuckland, New Zealand
    Network Security Consultant – Permanent | North Shore, Auckland.We're looking for an experienced.You'll play a key role in delivering network and security projects, providing expert advice, and sup...Show moreLast updated: 4 days ago
    • Promoted
    Network and Security Consultant

    Network and Security Consultant

    Comspek InternationalAuckland, Auckland, New Zealand
    Network Security Consultant – Permanent | North Shore, Auckland.We’re looking for an experienced.You’ll play a key role in delivering network and security projects, providing expert advice, and sup...Show moreLast updated: 4 days ago
    • Promoted
    Cyber / Security Engineer (Soc / Siem), 12+ Months Contract

    Cyber / Security Engineer (Soc / Siem), 12+ Months Contract

    NeedusAuckland, New Zealand
    OverviewSenior Cyber / Security Engineer (SOC / SIEM) for a 12+ months contract.This role focuses on the deployment and migration of SIEM solutions, working with clients to deliver quick wins while onb...Show moreLast updated: 9 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Tribe RecruitmentAuckland, New Zealand
    OverviewThis organisation is a well-established technology and security services provider with a strong presence in New Zealand. They deliver specialised solutions to help clients enhance their secu...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Technician

    Lead Security Technician

    Alpha Personnel Recruitment LtdAuckland - other, Auckland, New Zealand
    Our client is a respected security integration provider, working with top-tier clients across Auckland.Their staff retention is high, and they have a work culture to be envious of.My client doesn't...Show moreLast updated: 4 days ago
    • Promoted
    • New!
    Intermediate Security Analyst - Cyber

    Intermediate Security Analyst - Cyber

    Kiwi Health JobsWorkFromHome, Auckland, New Zealand
    Health New Zealand | Te Whatu Ora is the country's largest employer, delivering universal public healthcare to 5 million New Zealanders. We provide essential hospital, specialist, and community heal...Show moreLast updated: 14 hours ago
    • Promoted
    SAP Security - Fixed-Term

    SAP Security - Fixed-Term

    Robert Walters New ZealandAuckland, Auckland, New Zealand
    We’re currently seeking an experienced SAP Security Specialist for a fixed-term opportunity with a large, well-established organisation based in Auckland. This role focuses on managing user accounts...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Analyst - L1

    Cybersecurity Analyst - L1

    DatacomAuckland, New Zealand
    This range is provided by Datacom.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Position : Cybersecurity Analyst L1Datacom Location : Auckland O...Show moreLast updated: 9 days ago
    • Promoted
    Technical Security Consultant

    Technical Security Consultant

    Consult RecruitmentAuckland, New Zealand
    Our client is a prominent player in the financial services sector, well-known for innovation, customer-centricity, and digital transformation. With a strong focus on compliance and resilience, they ...Show moreLast updated: 11 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    PeblWorkFromHome, Auckland, New Zealand
    Get AI-powered advice on this job and more exclusive features.Pebl puts a world of talent at your fingertips.With our AI-powered Global Work Platform™, companies can hire, pay, and manage employees...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer

    Security Engineer

    Auckland TransportKumeu, Auckland, New Zealand
    Te Whiwhinga mahi | The opportunity.Auckland Transport is seeking a talented Security Engineer to protect our computer systems, networks, and data from cyber threats and unauthorized access.You’ll ...Show moreLast updated: 3 days ago