Skip to main content
AfterDuty

Cyber Detection and Response Analyst, Asia Pacific

Control Risks · Sydney, New South Wales

Type
Contract
Posted
6 days ago

Overview

Your investigative mindset and evidence-handling discipline apply, but this role demands deep technical cybersecurity skills you likely lack.

About this role

The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands-on technical role focused on identifying, analyzing, and responding to cyber threats across the client's environment, working closely with Security Engineering and broader security stakeholders.

This role will be a part of a global 24/7 team and will cover one of two shifts: Sunday-Thursday 08:00-16:00 or Tuesday-Saturday 08:00-16:00. This role will likely commence employment in October 2026.

Responsibilities

  • Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.
  • Support incident response activities including analysis, containment, remediation, and documentation.
  • Execute established incident response playbooks and contribute to their continuous improvement.
  • Perform threat hunting activities to identify potential compromises and gaps in detection coverage.
  • Leverage threat intelligence to inform investigations and detection tuning.
  • Collaborate with Security Engineering to tune detection logic and improve security controls.
  • Produce clear, concise incident reports and support root cause analysis and remediation efforts.
  • Support on-call rotations and escalation processes as part of a 24/7 detection and response capability.

Requirements

  • 3-5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.
  • Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike).
  • Intermediate proficiency in Python.
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques.
  • Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.
  • Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly.
  • Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.
  • Candidates will need to be be based in Australia and hold full permanent work rights.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Sydney

Why this fits a police background

  • Intelligence & OSINT
  • Incident command & response
  • Investigative casework

More cyber security & digital forensics jobs for ex-police

  • Contract

    The Infrastructure Engineer will be a key technical support resource in all aspects of Infrastructure BAU support and operations within the APAC & HK regions. This role will be assisting with various BAU related activities within the on premise and cloud environments in APAC & Hong Kong.

    Posted 5 days ago

  • IT Engineer, Support

    Future Secure AI · Sydney

    Full-time

    Your experience with identity access management and security operations in policing transfers directly to this in-house build role.

    Posted 5 days ago

  • Head of Technology Risk & AI

    Profusion · Sydney

    Full-time

    Head of Technology Risk & AI Financial Services | Risk Leadership | Melbourne or Sydney Australians considering a return home are encouraged to apply Company Overview Our client is a large, well-established Australian financial services organisation operating within the superannuation sector.

    Posted 5 days ago

  • Full-time

    Your experience managing risk registers, audit actions, and compliance frameworks in policing transfers directly to this governance role.

    Posted 6 days ago