Live opening · Posted 10 hours ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Position Summary
We are seeking a hands-on Security Incident Response Engineer to deploy, configure, integrate, and optimize the tools used to detect, investigate, and respond to security incidents. The role combines ownership of incident response platforms with incident investigation, detection tuning, and response automation.
Key Responsibilities
Deploy and manage SIEM, EDR, IDS/IPS, and digital forensic tools in a large enterprise environment.
Configure data collection, tune detection rules and alerts, and improve tool performance and detection effectiveness.
Integrate security platforms and automate investigation and response workflows using Python or PowerShell.
Investigate complex security incidents, perform root cause analysis, and recommend remediation actions.
Maintain platform health through troubleshooting, patching, upgrades, and configuration management.
Document configurations and response procedures; support post-incident reviews and mentor junior team members.
Required Qualifications
5–7 years of cybersecurity experience, including hands-on incident response and security platform administration.
Strong experience deploying, configuring, and optimizing SIEM and EDR platforms—for example, Splunk, QRadar, Microsoft Sentinel, CrowdStrike, or Carbon Black.
Experience with IDS/IPS and forensic tools, such as Snort, Suricata, EnCase, or FTK.
Proficiency in Python or PowerShell for automation and tool integration.
Strong understanding of network security, endpoint security, threat detection, and forensic investigation.
Ability to troubleshoot platform issues, communicate investigation findings, and collaborate with security operations and IT teams.
Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or a related field, or equivalent experience.
Preferred Qualifications
Relevant certifications such as GCIH, GCFA, GREM, CISSP, or ECIH.
Experience leading security tool upgrades, migrations, and continuous improvement initiatives.
Work arrangement
Yes
More openings worth a look
Recently tracked roles with full details and direct application links.