Remote job
Intermediate Security Engineer, Security Incident Response Team (SIRT)
Job details
About this role
Role overview
An intermediate-level engineering role embedded in a Security Incident Response Team (SIRT), focused on detecting, investigating, and resolving security incidents. The position is fully remote and based in Australia.
Responsibilities
- Triage, investigate, and respond to alerts and active security incidents across the environment - Conduct root-cause analysis and produce clear incident documentation, timelines, and remediation notes - Help develop, refine, and tune detection rules, playbooks, and response procedures - Coordinate with engineering, infrastructure, and product teams to contain threats and deliver lasting fixes - Track emerging attacker techniques and translate them into improved defensive coverage
Requirements
- Hands-on experience in incident response, security operations, or a closely related defensive security function - Familiarity with common attack patterns, adversary tactics, and modern threat landscapes - Working proficiency in at least one scripting or programming language for analysis and automation - Strong written and verbal communication skills for incident write-ups and stakeholder coordination - Comfort operating independently in a fully remote, distributed environment