Digital Forensics + Incident Response (DFIR) Analyst
Robert Half
Posted 12 hours ago
THE COMPANY
An International NYSE listed marketing company expanding their Cyber Security team in APAC.
Benefits:
- Join a new team within an established environment (DFIR)
 - Hybrid working- 3 days in office, 2 days WFH
 - Focus on uplift and automation
 
THE ROLE
This is a specialist role focused on Cyber Incident Response and Digital Forensics across the entire global business.
You will be directly responsible for responding to and containing cyber incidents as well as post-incident reviews to understand and determine IOC's and TTP's to better inform and craft remediation and learning activities.
This is a specialist role working as part of a wider global SOC who operate in a follow-the-sun model.
Responsibilities:
- Respond to sophisticated cyber incidents across the global network.
 - Collect, preserve and analyse digital evidence.
 - Conduct root cause analysis to understand events.
 - Enact incident containment measures and actionable recommendations.
 - Implement greater automation and improvement across IR frameworks, SOAR playbooks, cloud IR etc.
 - Mon-Fri - normal business working hours
 
YOUR PROFILE
Ideal for a SOC/ CSIRT Analyst with Incident Response and Digital Forensics experience.
Will suit someone looking to enhance their specialisation in DFIR, working on sophisticated events in a global organisation.
Required:
- Proven SOC experience in Cyber Incident Response and Digital Forensics.
 - Knowledge of SIEM, EDR and Threat Intelligence tools to monitor, detect and investigate possible threats.
 - Proven experience responding to sophisticated cyber incidents.
 - Experience in collecting, preserving, and analysing digital evidence from compromised systems, endpoints, and networks.
 - Previous use of forensic tools (e.g., EnCase, FTK, X-Ways, Autopsy, Magnet Axiom, Volatility) to examine disk, memory, and network data.
 
Personal attributes:
- Attention to detail to translate written security procedures into SOAR playbooks that can be automated.
 - Forward thinking when it comes to automation through scripting (PowerShell, Python etc).
 - Australian citizenship is required for ability to obtain NV1 clearance.
 
This is a full-time permanent role with hybrid working offering $130,000 - $150,000 (plus super) - depending on experience
This is a hybrid position.
By clicking 'apply', you give your express consent that Robert Half may use your personal information to process your job application and to contact you from time to time for future employment opportunities. For further information on how Robert Half processes your personal information and how to access and correct your information, please read the Robert Half privacy notice: https://www.roberthalf.com/au/en/privacy. Please do not submit any sensitive personal data to us in your resume (such as government ID numbers, ethnicity, gender, religion, marital status or trade union membership) as we do not collect your sensitive personal data at this time.
About Robert Half
This company does not have any further information provided at this time. We encourage you to research the company by searching for them to learn more about the company or role in question before applying.
Digital Health Analyst
NSW Health Pathology
Senior Incident Response Analyst (DFIR)
Emanate Technology Pty Ltd
Lead Cyber Security Analyst
AbiShar Technologies Pty Ltd
Digital Forensics & Incident Response Specialist
Robert Half
SOC Analyst
Robert Half
Senior Cyber Risk Analyst
NSW Department of Customer Service
Senior Identity Analyst - SailPoint
Talenza
SOC Analyst
NewyTechPeople