Cybersecurity Incident Response Infrastructure
6 months ago
**Why Microsoft**
With over 18,000 employees worldwide, the Microsoft Customer Experience & Success (CE&S) organization is responsible for the strategy, design, and implementation of Microsoft’s end-to-end customer experience. Come join CE&S and help us build a future where customers come to us not only because we provide industry-leading products and services, but also because we provide a differentiated and connected customer experience.
The Detection and Response Team (DART) is looking for a Cybersecurity Incident Response Infrastructure Specialist to join the team. The DART team provides holistic security incident response leadership and investigations for its customers and helps our customers become cyber-resilient.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
**Responsibilities**:
**Responsibilities**:
This role is a crucial part of a collaborative team that works together to serve as infrastructure specialists and assist our customers collect data critical to the success of an investigation, containment and recovery in the midst of a cyber attack. You will also implement containment measures, and proactively address threats while also ensuring large-scale infrastructure recovery.
This role is flexible in that you can work up to 100% from home.
**Role Expectations**:
**Security Software Deployment**:
- Spearhead the large-scale deployment and setup of Microsoft Defender security solutions.
- Offer advanced support for identity platforms and identity management (IdM) solutions.
- Collaborate with development and product teams to enhance product capabilities.
- Resolve deployment-related issues for security tools.
**Threat Containment**:
- Formulate strategies to contain threats and prevent security incident escalation within Active Directory, network, and client environments.
- Coordinate with the incident response team for timely threat containment and mitigation.
- Enforce security protocols in line with Microsoft and industry benchmarks to safeguard both on-premises and cloud environments.
**Recovery**:
- Restore Active Directory Forests following cyber-attacks.
- Recover critical infrastructure components within Microsoft technologies, spanning both on-premises and cloud platforms.
- Reinstate authentication services, including Active Directory Federation Services and Active Directory Certificate Services.
**Threat Hunting**:
- Perform proactive threat hunting using indicators of compromise to detect potential breaches across networks.
- Lead incident response efforts within various cloud environments.
- Analyze attacker behavior to develop indicators of compromise and understand attack methodologies.
- Utilize EDR solutions and threat intelligence to identify and investigate security breaches.
**Troubleshooting Active Directory L300/400**:
- Diagnose and resolve complex Active Directory health issues within intricate environments.
- Manage support for multi-forest AD topologies.
- Develop and troubleshoot Group Policies in large, regulated settings.
- Detect and rectify AD service misconfigurations or defects.
- Troubleshooting Windows Server OS Roles:
- Restore production state by resolving issues with Server roles.
- Understand core networking technologies to troubleshoot related problems.
**Troubleshooting Virtualization Platforms**:
- Administer and troubleshoot virtualization platforms like VMware and Hyper-V.
- Implement backup and recovery processes for virtual environments.
- Managing and Configuring Endpoint Security Platforms:
- Administer various Endpoint Security Platforms like Microsoft Defender Suite.
- Configure Endpoint Security settings, including IOCs and agent deployment.
- Analyze security data using tools like KQL, Python, and Jupyter.
**Security Trends and Research Evaluation**:
- Assess the impact of security trends and research on Microsoft, sharing insights with partner teams.
- Utilize Threat Intelligence to enhance containment and harden customer environments, staying abreast of the evolving threat landscape.
- On-Call and Travel Requirements:
- Participate in an on-call rotation with potential off-time zone hours and weekend work.
- Be prepared for short-notice travel, which may exceed 40%, to meet customer and business needs.
- Flexibility in work location, accommodating a global position.
**Qualifications**:
**What skills do you need to have?**
There will be many opportunities for you to learn and grow into this role and Microsoft.
**Minimum qualifications**
- Minimum of 5 years in a relevant role.
- Exceptional communication skills, both verbal and written.
- Collaborative team player in customer-facing environ
-
Cybersecurity Analysts
6 months ago
Auckland City, New Zealand Datacom Full timeOur purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Datacom operates three Security Operations Centres (SOC’s) in Wellington, Auckland, and Brisbane from where we provide our managed SIEM and our full stack of Cybersecurity...
-
Senior Cybersecurity Technical Architect
7 months ago
Auckland City, New Zealand Datacom Full timeOur Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. About the Role (your why) We are seeking an experienced and dynamic Senior Cybersecurity Technical Architect to join our team. In this role, you will be...
-
Cybersecurity Analyst L2 Wellington
2 days ago
Wellington City, New Zealand Datacom Full timeOur purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Datacom Cybersecurity Defence Operations Centre operates out of three SOC locations; Wellington, Auckland, and Brisbane from where we provide a full stack of Cybersecurity...
-
Cybersecurity Consultant
4 months ago
Wellington City, New Zealand Datacom Full time**Position**: Cybersecurity Consultant **Datacom Location**: Wellington Only due to Client Requirements Our Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help them to use the power of tech to innovate and grow. About the Role (Your Why) The Cybersecurity Consultant role is...
-
Cybersecurity Architect
6 months ago
Auckland City, New Zealand Datacom Full timeAbout the Role We have a new opportunity for a seasoned Cybersecurity Consultant or Senior Consultant to join our Cybersecurity Architecture and Technical Services Team. As a Cybersecurity Consultant with Datacom, you will work with a growing, national consulting and advisory team to support a variety of engagements ranging from large government agencies...
-
Cybersecurity Analyst
6 months ago
Wellington City, New Zealand Datacom Full timeOur Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. Our team Datacom operates three Cybersecurity Defence Operations Centres (SOC’s) in Wellington, Auckland, and Brisbane from where we provide our managed SIEM...
-
Cybersecurity Engineer
2 weeks ago
Auckland, New Zealand Workday Full timeWorkday Workday unites HR and finance on one AI-first platform to help elevate humans and supercharge work to keep business moving forever forward. At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. Our culture is driven by...
-
Security Architect
6 months ago
Auckland City, New Zealand Datacom Full timeAbout The Role A very rare opportunity to join a Leading Technology Partner in Australasia, in house, with our Group Cybersecurity Team. This role will see you manage and support our wider business as it continuously evolves to meet our complex business needs in the most exciting industry on the planet. We bring together the very best for our teams to keep...
-
Cybersecurity Engineer
3 weeks ago
Auckland, New Zealand Workday Full timeWorkdayWorkday unites HR and finance on one AI-first platform to help elevate humans and supercharge work to keep business moving forever forward.At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. Our culture is driven by...
-
Cybersecurity Engineer
4 days ago
Auckland, New Zealand Workday Full timeWorkday Workday unites HR and finance on one AI-first platform to help elevate humans and supercharge work to keep business moving forever forward. At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. Our culture is driven by...
-
Cybersecurity Engineer
3 weeks ago
Auckland City, New Zealand Workday Full timeYour work days are brighter here. At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. And when we began to rise, one thing that really set us apart was our culture. A culture which was driven by our value of putting our...
-
Cybersecurity Engineer
3 weeks ago
Auckland, New Zealand Workday Full timeWorkday Workday unites HR and finance on one AI-first platform to help elevate humans and supercharge work to keep business moving forever forward.At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. Our culture is driven by...
-
Security Architect
6 months ago
Wellington City, New Zealand Datacom Full timeOur Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. About The Role A very rare opportunity to join a Leading Technology Partner in Australasia, in house, with our Group Cybersecurity Team. This role will see you...
-
Threat & Incident Response Coordinator
8 months ago
Wellington City, New Zealand New Zealand Government Full timeThe secret to our success is our people. While we are ordinary people, we are not all the same. We welcome diversity, in all its forms, in fact we consider it a strength. Join us and work at the heart of national security to protect New Zealand and New Zealanders. Whether straight from secondary school, university or seeking a career shift, join our team as...
-
Threat & Incident Response Analyst
8 months ago
Wellington City, New Zealand New Zealand Government Full timeThe secret to our success is our people. While we are ordinary people, we are not all the same. We welcome diversity, in all its forms, in fact we consider it a strength. Join us and work at the heart of national security to protect New Zealand and New Zealanders. Join our team as a Threat & Incident Response Analyst, where responding to cyber security...
-
Senior Solutions Delivery Engineer
6 months ago
Auckland City, New Zealand Datacom Full timeThe Role We are seeking a highly skilled and experienced Senior Cybersecurity Solutions Delivery Engineer to join our team. In this role, you will be responsible for delivering chargeable security services to our clients, focusing on the consultation, design, build, and delivery of cybersecurity solutions. Your technical expertise and leadership will be...
-
Cyber Incident Responder
4 months ago
Wellington City, New Zealand New Zealand Government Full timeJoin our diverse and talented people and work at the heart of national security, providing essential intelligence to the NZ government to protect New Zealand and its people. About us The National Cyber Security Centre (NCSC) is the heart of Aotearoa New Zealand's cyber defence. We fulfil the cyber security responsibilities of the Government Communications...
-
Senior Cybersecurity Engineer
6 months ago
Auckland CBD, New Zealand Datacom Full timeOur Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. About the Role The Cybersecurity Engineer, will be a member of our Group Technology Cybersecurity team located in any Datacom office. We are looking for someone...
-
Cyber Incident Responder
4 months ago
Wellington City, New Zealand Government Communications Security Bureau Full timeJoin our diverse and talented people and work at the heart of national security, providing essential intelligence to the NZ government to protect New Zealand and its people. About us The National Cyber Security Centre (NCSC) is the heart of Aotearoa New Zealand's cyber defence. We fulfil the cyber security responsibilities of the Government Communications...
-
Cybersecurity Specialist
6 months ago
Auckland City, New Zealand Theia LTD Full time**Reports to**:Head of IT Development, General Manager **Main Job Tasks and Responsibilities**: **Develop and Implement Security Measures**: - Develop and enforce policies for information security within the web development lifecycle. - Conduct regular security audits and vulnerability assessments on software and websites. **Monitor Security...