Intermediate Security Engineer, Security Incident Response Team (SIRT)
J
JobgetherSecurity & IT
Australia, Sunday–Wednesday shifts supporting 24/7/365 security coverage.Full-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Required Skills
- AWSPythonGCP
Requirements
- Demonstrated ability to learn and independently lead security incident response processes.
- Experience working with SIEM platforms and security logging tools.
- Experience with cloud environments, particularly GCP and/or AWS.
- Python programming skills or a strong willingness and ability to develop them.
- Strong technical writing and documentation skills, with a genuine interest in maintaining clear operational documentation.
- A proactive and investigative mindset when identifying and analyzing security threats.
- Interest or experience in forensic analysis of compromised or infected hosts.
- Experience with, or a strong desire to learn, cloud-based security investigations.
- Ability to remain calm and analytical in high-pressure situations while following established procedures and runbooks.
- Strong collaboration skills and the ability to work effectively across geographically distributed teams.
Responsibilities
- Lead security incident response activities within a 24/7 global rotation, from initial detection through containment and recovery.
- Investigate and analyze security events using security monitoring, logging, and incident response tools.
- Create, maintain, and improve incident response documentation, including runbooks and standard operating procedures.
- Conduct root cause analysis and post-incident reviews to identify lessons learned and strengthen future response.
- Design and implement automated security processes that improve operational efficiency and reduce manual intervention.
- Identify security gaps and implement improvements to detection and response capabilities.
- Collaborate with engineering and other internal teams on technical projects that enhance security infrastructure and capabilities.
- Contribute to proactive security measures by identifying emerging threats and opportunities to improve defensive controls.
View Full Description & ApplyYou'll be redirected to the employer's site