Talent.com
Cybersecurity Incident Responder
Cybersecurity Incident ResponderDatacom • Wellington, New Zealand
Cybersecurity Incident Responder

Cybersecurity Incident Responder

Datacom • Wellington, New Zealand
30+ days ago
Job description

Our Purpose

Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in.

Our Team

Datacom's Cybersecurity Defence Operations Centre (CDOC) operates across Australia & New Zealand where we provide a full stack of cybersecurity services including managed SOC / SIEM / EDR / XDR, threat intelligence, and digital forensics & incident response (DFIR).

Our Cybersecurity Defence Operations Centre is a well-established team made up of Cybersecurity Analysts, Platforms Engineers, Automation Specialists, Solutions Delivery Engineers, Threat Intel Analysts, Threat Hunters, & Incident Responders who have been managing customers, both commercial and government, for over 10+ years.

We partner with industry leaders to provide our services and to provide you with a broad technical skillset, certifications, and experience.

About The Role

We are currently looking for a highly skilled and motivated individual to join our Cybersecurity Incident Response Team (CSIRT) as a Cybersecurity Incident Responder.

CSIRT provide proactive and reactive expertise to help organisations respond to major cybersecurity incidents.

In this role you will be responsible for the delivery of digital forensics & incident response (DFIR) engagements, and proactive advisory engagements such as the delivery of tabletop exercises, compromise assessments & threat hunting, breach readiness assessments, threat intelligence briefings, & threat modelling.

We are seeking a candidate who has experience investigating and responding to major cybersecurity incidents, and possesses excellent communication, analytical, and problem-solving skills.

Please note that you will be expected to undertake DFIR engagements across either Australia or New Zealand.

What You'll Do

Conduct thorough investigations into major security incidents, determining root causes, impact, and mitigation strategies.

Providing expertise and support to contain, eradicate, and recover from such security incidents.

Conduct analysis of affected systems utilising forensic techniques to thoroughly examine system events and adversary activities.

Utilise security tooling such as EDR, SIEM, XDR, & Identity technologies to assist your investigation of confirmed or suspected compromises.

Undertake log & correlation analysis and construct a timeline of adversary activities.

Identify intrusion vectors & root causes and develop recommendation actions to prevent similar incidents.

Collect digital forensics evidence from affected systems in accordance with industry standards for image acquisition and preservation of digital evidence.

Produce comprehensive, detailed DFIR reports outlining the investigative steps undertaken, your findings, and recommendations.

Support the coordination of containment, eradication and recovery efforts based on available information and established processes.

Analysis of incident response effort, with feedback from the customer and third parties as part of Post Incident Reviews (PIRs) and Lessons Learned.

Deliver proactive incident response services which include tabletop exercises, threat hunting, compromise assessments, breach readiness assessments, threat intelligence briefings, and threat modelling.

Communicate with senior stakeholders within Datacom and our customers.

Work with other members of the CSIRT team, to develop the technical capabilities of the CSIRT - including improving the processes and technology to deliver successful outcomes to customers and stakeholders.

Participate in an on-call roster for major incident response.

Occasional planned or last-minute / urgent travel to customer sites will be required for certain customer facing engagements.

This may include a customer site in your home city, or travel to other customer sites within Australia and New Zealand.

What you'll bring

The mindset of an investigator.

We are looking for someone who is able to search for evidence of compromise and previously undetected adversary behaviour.

Confidence in communicating with a variety of senior stakeholders, including Senior Leadership teams in difficult / tense situations.

Experience in responding to high-profile cybersecurity incidents that have had significant operational or privacy impacts to the affected organisation such as ransomware & data breaches.

Experience in digital forensics & incident response (DFIR) with an understanding of key system & digital forensic artifacts and how they are useful in a cybersecurity investigation.

Experience using DFIR tools such as EnCase, X-Ways, Magnet Axiom, Velociraptor, KAPE, & THOR.

Proven knowledge and experience of efficiently searching large datasets across multiple log sources and underlying platforms including XDR / EDR and SIEM products such as CrowdStrike, Microsoft Defender, Splunk, or Sentinel.

A strong understanding of current and emerging attacker behaviours, tools, tactics, and techniques.

An understanding of various security frameworks and methodologies such as NIST CSF, MITRE ATT&CK and D3FEND, Unified Kill Chain and OWASP Top 10.

Basic scripting or automation skills are desirable (for example PowerShell, Bash, Python, or Ruby).

SANS GCFA, GCFE, GCIH, or relevant DFIR certifications are desirable.

Why join us here at Datacom?

Datacom is one of Australia and New Zealand's largest suppliers of Information Technology professional services.

We have managed to maintain a dynamic, agile, small business feel that is often diluted in larger organisations of our size.

It's our people that give Datacom its unique culture and energy that you can feel from the moment you meet with us.

We care about our people and provide a range of perks such as social events, chill-out spaces, remote working, flexi-hours and professional development courses to name a few.

You'll have the opportunity to learn, develop your career, connect and bring your true self to work.

You will be recognised and valued for your contributions and be able to do your work in a collegial, flat-structured environment.We operate at the forefront of technology to help Australia and New Zealand's largest enterprise organisations explore possibilities and solve their greatest challenges, so you will never run out of interesting new challenges and opportunities.

We want Datacom to be an inclusive and welcoming workplace for everyone and take pride in the steps we have taken and continue to take to make our environment fun and friendly, and our people feel supported.

#J-

  • Ljbffr
Create a job alert for this search

Cybersecurity • Wellington, New Zealand

Related jobs
Manager Line One Risk

Manager Line One Risk

Kiwibank • Wellington, New Zealand
Manager Line One Risk – Kiwibank.Six month fixed term opportunity - covering parental leave.At Kiwibank, we're passionate about supporting Kiwi to thrive. As our Line One Risk Manager, you'll be at ...Show more
Last updated: 1 day ago • Promoted
Head of Insights

Head of Insights

black.ai • WorkFromHome, New Zealand
New Zealand (Remote), Wellington (Remote), Christchurch (Remote), Auckland (Remote), Tauranga (Remote), Hamilton (Remote). Ai, we’re building one of the world’s most advanced generative-AI platforms...Show more
Last updated: 15 hours ago • Promoted • New!
Intelligence Analyst

Intelligence Analyst

nzpolice • Wellington, Wellington, New Zealand
Intelligence Analyst - National Organised Crime Group.Stand at the stern of the canoe and feel the spray of the future biting at your face. The National Organised Crime Group (NOCG) is responsible f...Show more
Last updated: 15 hours ago • Promoted • New!
Remote Client Solutions Manager

Remote Client Solutions Manager

Business Development • WorkFromHome, Wellington, New Zealand
Career Opportunities with UniTrust Financial Group.Careers At UniTrust Financial Group.Current job opportunities are posted here as they become available. Full-Time | Monday—Friday (Flexible Hours)....Show more
Last updated: 15 hours ago • Promoted • New!
Senior Analyst, Information Requests

Senior Analyst, Information Requests

New Zealand Government • Wellington, Wellington, New Zealand
Help shape the future of education in New Zealand.We work to shape an education system that delivers equitable and excellent outcomes. Our organisation is made up of talented and committed people ar...Show more
Last updated: 11 days ago • Promoted
Analyst

Analyst

New Zealand Government • Wellington, Wellington, New Zealand
New Zealand Police is working with the community to keep New Zealanders safe.With over 16,000 staff, we provide policing services 24 hours a day. We operate by land, sea and air, manage over 860,000...Show more
Last updated: 30+ days ago • Promoted
Identity Resolver

Identity Resolver

New Zealand Ministry Of Economic Development • Wellington, New Zealand
Select how often (in days) to receive an alert : .Be part of a high performing team and develop a career in identity management. Manage identity, detect fraud, and help maintain immigration integrity....Show more
Last updated: 15 days ago • Promoted
Manager Enterprise Security

Manager Enterprise Security

Department Of Internal Affairs • Wellington, New Zealand
Type : PermanentHours : FulltimeLocation : WellingtonBusiness Group : Information SecurityBranch : Digital Services | Te Punaha MatihikoSalary : $166,725 - $207,480. The Manager Enterprise Security provid...Show more
Last updated: 1 day ago • Promoted
Senior iOS Engineer

Senior iOS Engineer

black.ai • WorkFromHome, New Zealand
New Zealand (Remote), Tauranga (Remote), Auckland (Remote), Wellington (Remote), Christchurch (Remote), Hamilton (Remote). Ai is an Australian startup on a mission to unleash the world’s creativity ...Show more
Last updated: 8 days ago • Promoted
Identity & Access Management (Idam) Service Lead

Identity & Access Management (Idam) Service Lead

Nz Qualifications Authority • Wellington, New Zealand
Position Title – Identity & Access Management (IDAM) Service Lead.Fixed Term – Through till 30 / 06 / 2026.NZQA is embarking on a once-in-a-generation transformation through our Strategic Technology En...Show more
Last updated: 3 days ago • Promoted
SOC Analyst

SOC Analyst

WatchGuard Technologies, Inc. • WorkFromHome, Wellington, New Zealand
WatchGuard is an industry leading cybersecurity company.Our market leading, award-winning offering is a Managed Detection and Response (MDR) service that combines cybersecurity experts with sophist...Show more
Last updated: 15 hours ago • Promoted • New!
Network Operations

Network Operations

Wellington Water • Porirua, Wellington, New Zealand
The Network Operations Group's purpose is to oversee the operation, maintenance, and repair of water networks to ensure consistent service delivery, high-quality customer support, rapid response to...Show more
Last updated: 30+ days ago • Promoted
Manager Risk Rules

Manager Risk Rules

Ministry Of Business, Innovation And Employment • Wellington, New Zealand
Discover a career with purpose at MBIE.Be at the forefront of immigration risk targeting and rule deployment.Lead a team of technical specialists delivering high-impact solutions.Collaborate across...Show more
Last updated: 8 days ago • Promoted
Regional Safety Operations specialist

Regional Safety Operations specialist

Veolia | Australia and New Zealand • Lower Hutt, Wellington, New Zealand
Veolia Australia & New Zealand is the only global company to provide a full range of environmental services in the fields of water, waste management and energy solutions. With the global expertise g...Show more
Last updated: 8 days ago • Promoted
iOS Architect / Developer (IM Chat)

iOS Architect / Developer (IM Chat)

Binance • WorkFromHome, Wellington, New Zealand
Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by over 280 million people in 100+ countrie...Show more
Last updated: 15 hours ago • Promoted • New!
Senior Investigator

Senior Investigator

Department of Internal Affairs • New Zealand
Regulatory and Identity Services.Are you passionate about integrity, accountability, and making a difference in the charitable sector? Join. We’re looking for a highly skilled and experienced.This i...Show more
Last updated: 8 days ago • Promoted
Project Manager

Project Manager

Continuity Global Solutions • New Zealand
Guard Force Project Manager - Security Operations.Embassy - Wellington, New Zealand.Consulate General - Auckland, New Zealand. Embassy is seeking a qualified and experienced Project Manager (PM) to ...Show more
Last updated: 8 days ago • Promoted
Site Traffic Management Supervisor

Site Traffic Management Supervisor

Fulton Hogan Ltd • Lower Hutt, Wellington, New Zealand
Site Traffic Management Supervisor page is loaded## Site Traffic Management Supervisorlocations : Lower Hutttime type : Full timeposted on : Posted Todaytime left to apply : End Date : December ...Show more
Last updated: 15 hours ago • Promoted • New!