Cybersecurity Incident Response Infrastructure

6 days ago


Auckland City, New Zealand Microsoft Full time

**Why Microsoft**

With over 18,000 employees worldwide, the Microsoft Customer Experience & Success (CE&S) organization is responsible for the strategy, design, and implementation of Microsoft’s end-to-end customer experience. Come join CE&S and help us build a future where customers come to us not only because we provide industry-leading products and services, but also because we provide a differentiated and connected customer experience.

The Detection and Response Team (DART) is looking for a Cybersecurity Incident Response Infrastructure Specialist to join the team. The DART team provides holistic security incident response leadership and investigations for its customers and helps our customers become cyber-resilient.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

**Responsibilities**:
**Responsibilities**:
This role is a crucial part of a collaborative team that works together to serve as infrastructure specialists and assist our customers collect data critical to the success of an investigation, containment and recovery in the midst of a cyber attack. You will also implement containment measures, and proactively address threats while also ensuring large-scale infrastructure recovery.

This role is flexible in that you can work up to 100% from home.

**Role Expectations**:
**Security Software Deployment**:

- Spearhead the large-scale deployment and setup of Microsoft Defender security solutions.
- Offer advanced support for identity platforms and identity management (IdM) solutions.
- Collaborate with development and product teams to enhance product capabilities.
- Resolve deployment-related issues for security tools.

**Threat Containment**:

- Formulate strategies to contain threats and prevent security incident escalation within Active Directory, network, and client environments.
- Coordinate with the incident response team for timely threat containment and mitigation.
- Enforce security protocols in line with Microsoft and industry benchmarks to safeguard both on-premises and cloud environments.

**Recovery**:

- Restore Active Directory Forests following cyber-attacks.
- Recover critical infrastructure components within Microsoft technologies, spanning both on-premises and cloud platforms.
- Reinstate authentication services, including Active Directory Federation Services and Active Directory Certificate Services.

**Threat Hunting**:

- Perform proactive threat hunting using indicators of compromise to detect potential breaches across networks.
- Lead incident response efforts within various cloud environments.
- Analyze attacker behavior to develop indicators of compromise and understand attack methodologies.
- Utilize EDR solutions and threat intelligence to identify and investigate security breaches.

**Troubleshooting Active Directory L300/400**:

- Diagnose and resolve complex Active Directory health issues within intricate environments.
- Manage support for multi-forest AD topologies.
- Develop and troubleshoot Group Policies in large, regulated settings.
- Detect and rectify AD service misconfigurations or defects.
- Troubleshooting Windows Server OS Roles:

- Restore production state by resolving issues with Server roles.
- Understand core networking technologies to troubleshoot related problems.

**Troubleshooting Virtualization Platforms**:

- Administer and troubleshoot virtualization platforms like VMware and Hyper-V.
- Implement backup and recovery processes for virtual environments.
- Managing and Configuring Endpoint Security Platforms:

- Administer various Endpoint Security Platforms like Microsoft Defender Suite.
- Configure Endpoint Security settings, including IOCs and agent deployment.
- Analyze security data using tools like KQL, Python, and Jupyter.

**Security Trends and Research Evaluation**:

- Assess the impact of security trends and research on Microsoft, sharing insights with partner teams.
- Utilize Threat Intelligence to enhance containment and harden customer environments, staying abreast of the evolving threat landscape.
- On-Call and Travel Requirements:

- Participate in an on-call rotation with potential off-time zone hours and weekend work.
- Be prepared for short-notice travel, which may exceed 40%, to meet customer and business needs.
- Flexibility in work location, accommodating a global position.

**Qualifications**:
**What skills do you need to have?**

There will be many opportunities for you to learn and grow into this role and Microsoft.

**Minimum qualifications**
- Minimum of 5 years in a relevant role.
- Exceptional communication skills, both verbal and written.
- Collaborative team player in customer-facing environ



  • Auckland City, New Zealand Canva Full time

    **Join the team redefining how the world experiences design. - Hey, g'day, mabuhay, kia ora,你好, hallo, vítejte!- Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.**Where and how you can work** - Our flagship campus is in Sydney, Australia...


  • Auckland, New Zealand Theia LTD Full time

    Reports to: Head of IT Development, General Manager Main Job Tasks and Responsibilities: The employee is to be employed as a Cybersecurity Specialist and will be responsible for the company’s cybersecurity policy and procedures, as well as to ensure the websites and software applications hosted for customers are protected from security threats and with...


  • Auckland, Auckland, New Zealand Theia LTD Full time

    Reports to: Head of IT Development, General ManagerMain Job Tasks and Responsibilities:The employee is to be employed as a Cybersecurity Specialist and will be responsible for the company's cybersecurity policy and procedures, as well as to ensure the websites and software applications hosted for customers are protected from security threats and with...


  • Auckland City, New Zealand Datacom Full time

    Our purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Datacom operates three Security Operations Centres (SOC’s) in Wellington, Auckland, and Brisbane from where we provide our managed SIEM and our full stack of Cybersecurity...


  • Auckland City, New Zealand Datacom Full time

    Our Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. About the Role (your why) We are seeking an experienced and dynamic Senior Cybersecurity Technical Architect to join our team. In this role, you will be...


  • Wellington City, New Zealand Datacom Full time

    Our purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Datacom operates three Cybersecurity Defence Operations Centres (CDOC’s) in Wellington, Auckland, and Brisbane from where we provide our managed SIEM and our full stack of...


  • Auckland, Auckland, New Zealand Datacom Full time

    Our WhyDatacom works with organisations and communities across Australia and New Zealand to make a difference in people's lives and help organisations use the power of tech to innovate and grow.About the Role (your why)We are seeking an experienced and dynamic Senior Cybersecurity Technical Architect to join our team. In this role, you will be pivotal in...

  • Cybersecurity Analyst

    3 weeks ago


    Wellington City, New Zealand Necta Full time

    Cybersecurity Analyst - Permanent - Wellington Salary: NZD 80,000 - 100,000 per annum **Responsibilities**: - Monitor and analyze network traffic for signs of intrusion - Conduct vulnerability assessments and recommend mitigations - Assist in incident response and investigation - Develop and maintain security policies and procedures **Requirements**: -...

  • Cybersecurity Analyst

    3 weeks ago


    Auckland City, New Zealand Datacom Full time

    Our purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Datacom Cybersecurity Defence Operations Centre (CDOC) operates out of three locations Wellington, Auckland, and Brisbane from where we provide our full stack of Cybersecurity...


  • Wellington City, New Zealand Datacom Full time

    Our purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Datacom operates three Cybersecurity Defence Operations Centres (CDOC’s) in Wellington, Auckland, and Brisbane from where we provide our managed SIEM and our full stack of...


  • Auckland City, New Zealand Workday Full time

    Your work days are brighter here. At Workday, it all began with a conversation over breakfast. When our founders met at a sunny California diner, they came up with an idea to revolutionize the enterprise software market. And when we began to rise, one thing that really set us apart was our culture. A culture which was driven by our value of putting our...


  • Auckland City, New Zealand Datacom Full time

    About the Role We have a new opportunity for a seasoned Cybersecurity Consultant or Senior Consultant to join our Cybersecurity Architecture and Technical Services Team. As a Cybersecurity Consultant with Datacom, you will work with a growing, national consulting and advisory team to support a variety of engagements ranging from large government agencies...


  • Auckland City, New Zealand Datacom Full time

    About the Role We have a new opportunity for a seasoned Cybersecurity Consultant or Senior Consultant to join our Cybersecurity Architecture and Technical Services Team As a Cybersecurity Consultant with Datacom, you will work with a growing, national consulting and advisory team to support a variety of engagements ranging from large government agencies...

  • Security Architect

    2 weeks ago


    Auckland City, New Zealand Datacom Full time

    About The Role A very rare opportunity to join a Leading Technology Partner in Australasia, in house, with our Group Cybersecurity Team. This role will see you manage and support our wider business as it continuously evolves to meet our complex business needs in the most exciting industry on the planet. We bring together the very best for our teams to keep...

  • Cybersecurity Analyst

    2 weeks ago


    Wellington City, New Zealand Datacom Full time

    Our Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. Our team Datacom operates three Cybersecurity Defence Operations Centres (SOC’s) in Wellington, Auckland, and Brisbane from where we provide our managed SIEM...


  • Auckland City, New Zealand Datacom Full time

    Our purpose Here at Datacom we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. About The Role The Cybersecurity Consultant role is an oversight and trusted advisor role with a strong focus on planning and delivery of Managed Security Service where there are...


  • Auckland City, New Zealand Datacom Full time

    Our purpose Here at Datacom, we connect people and technology in order to solve challenges, create opportunities and discover new possibilities for the communities we live in. Our team Our Cyber Defence Operation Centre (“CDOC”) runs across Auckland, Wellington and Brisbane from where we provide our full stack of Cybersecurity Managed services. We...


  • Auckland, Auckland, New Zealand Datacom Full time

    Our Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people's lives and help organisations use the power of tech to innovate and grow.About the Role (your why)Our Cyber Security Platforms & Solutions Team help our clients to navigate and take control of digital disruption for their businesses...


  • Wellington City, New Zealand New Zealand Government Full time

    The secret to our success is our people. While we are ordinary people, we are not all the same. We welcome diversity, in all its forms, in fact we consider it a strength. Join us and work at the heart of national security to protect New Zealand and New Zealanders. Whether straight from secondary school, university or seeking a career shift, join our team as...

  • Security Architect

    3 weeks ago


    Wellington City, New Zealand Datacom Full time

    Our Why Datacom works with organisations and communities across Australia and New Zealand to make a difference in people’s lives and help organisations use the power of tech to innovate and grow. About The Role A very rare opportunity to join a Leading Technology Partner in Australasia, in house, with our Group Cybersecurity Team. This role will see you...