- 3 Months initial contract (with a view to extend contract or convert to permanent depending on your preference)
- Hybrid role based in Central Sydney
We are seeking an experienced Cyber Security Incident Response Analyst to join a busy security operations setting on a 3 month initial contract. At the end of the initial contract there will be an opportunity to extend as a contractor or convert to permanent (depending on your preference).
This is a hands-on technical role focused on the investigation and containment of complex security incidents, threat hunting, and digital forensics. The successful resource will work closely with an established security team and report into senior security leadership.
Key Responsibilities
- Serve as a technical lead for cyber security incident response, coordinating activities across operational teams and keeping stakeholders informed throughout
- Conduct advanced technical investigations into complex security incidents using digital forensics and network analysis techniques
- Map threat actor activities, identify indicators of compromise, and lead containment and remediation efforts
- Provide expert guidance to the broader security team on incident response,
threat hunting, and threat intelligence activities
- Support the delivery of digital forensics services using both native OS tooling and specialised forensic platforms
- Contribute to the continuous improvement of incident response processes and procedures
Skills and Experience
- Minimum five years of experience in cyber security with a strong focus on incident response
- Hands-on experience with SIEM platforms, firewall analysis, and EDR tooling
- Solid understanding of threat actor techniques, tactics, and procedures
- Experience with digital forensics across Windows and Linux environments using native OS tooling
- Exposure to specialised forensics platforms such as Sleuthkit, Encase, or FTK is highly desirable
- Strong analytical and problem solving skills with the ability to work autonomously under pressure
- Excellent communication skills with the ability to brief both technical and non-technical stakeholders
- Relevant industry certifications such as GCIH, GCFE, GCFA, CISSP or equivalent are desirable
#J-18808-Ljbffr
📌 Cyber Security Incident Response Analyst (City of Sydney)
🏢 Data#3
📍 City of Sydney
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.