Secureworks – Senior Incident Response Consultant – DELL – Australia


Role Overview
The Incident Response Consultant is a senior level position working with
clients in the growing area of managing computer security incidents. This work
includes both preparing to effectively handle computer security incidents as
well as actually responding to incidents. Helping clients prepare for
incidents includes developing response plans- playbooks- delivering training-
and conducting exercises to test response plans. Responding to incidents
includes helping clients manage technical and non-technical aspects of
managing response to complex- large-scale incidents; conducting detailed
technical analysis to help the clients identify the scope and magnitude
security incident activity- develop timelines of activity- develop remediatio

recommendations and plans.

Role Responsibilities

– Serve as subject matter expert in incident response and digital forensics

– Perform complex incident response technical analysis and develop technical
conclusions based on analysis of evidence; review analysis and conclusions of
other consultants

– Document findings- develop incident response remediation recommendations
and present both orally and in written reports for clients

– Conduct assessments of client readiness to respond to incidents- including
designing and delivering incident response exercises to test client incident
response plans; review the assessments of other consultants

– Develop detailed incident response plans and playbooks based on client

– Design and deliver incident response exercises to test client incident
response plans; oversee the delivery of exercises by other consultants

– Interface with Counter Threat Unit (CTU) and Technical Testing (TT) teams

– Lead Targeted Threat Hunting project for APT incident


– Minimum of 3 yearsof advanced security- digital and network forensics

– Minimum of 1 year of experience with one or more of the following tools:
Encase- FTK- X-Ways- F-Response- Volatility- Open Source Forensics Tools

– Minimum of one or more of the following certifications: GREM-GCFA- GCFE-


– Malware analysis experience

– Understanding of vulnerabilities and tools used to discover- analyze- and
exploit vulnerabilities

– Bachelor|s degree in computer science- information systems- information
assurance- or equivalent work experience

– Familiar with tactics- techniques- and procedures commonly employed by
threat actors- and their motivations

– Understanding of at least one framework: ISO 27001/2- FISMA- PCI- HITRUST-
NIST 800-series- CoBIT- PCI- etc.

– Strong technical communication skills (oral and written) including
experience briefing executive management and desire to work with clients to
solve complex security issues- including at times in crisis situations

– Experience briefing senior-level leadership- and conveying technical
subject matter to audiences of varying backgrounds and skill levels

Job Family: Secureworks Job ID: R045512