Haystack
← Back to Jobs
Full time
Technology
FF

Digital Forensic and Incident Response Investigator

Forensic Focus LimitedMelbourne, Victoria🇦🇺AustraliaPosted 31 Aug 2026

Quick Overview

Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Melbourne, Victoria, Australia
SplunkBashPowerShellPythonTriage

Job Description

The Role

This position sits within a global cyber operations team, serving as a second-line escalation point for complex security incidents on a 9/5 basis with weekend on-call coverage. Day to day, the investigator leads end-to-end incident response - from triage and containment through to eradication, recovery, forensic investigation, and structured reporting.

Skills & Experience

Candidates require hands-on experience with forensic tools such as EnCase, FTK, and Volatility, alongside SIEM platforms including Splunk and QRadar, and EDR solutions such as CrowdStrike and Microsoft Defender. Strong network forensics knowledge, familiarity with MITRE ATT&CK, and scripting ability in Python, PowerShell, or Bash are essential.

Who It Suits

This role suits an experienced incident responder who is comfortable taking ownership of complex investigations and operating within a structured, globally distributed security function. Someone who combines technical depth across forensics and threat analysis with the communication skills needed to report clearly to multiple stakeholders will thrive here.

Similar jobs