The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands-on technical role focused on identifying, analyzing, and responding to cyber threats across the client’s environment, working closely with Security Engineering and broader security stakeholders.This role will be a part of a global 24/7 team and will cover one of two shifts: Sunday-Thursday 08:00-16:00 or Tuesday-Saturday 08:00-16:00. This role will likely commence employment in October 2026.Responsibilities:Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.Support incident response activities including analysis, containment, remediation, and documentation.Execute established incident response playbooks and contribute to their continuous improvement.Perform threat hunting activities to identify potential compromises and gaps in detection coverage.Leverage threat intelligence to inform investigations and detection tuning.Collaborate with Security Engineering to tune detection logic and improve security controls.Produce clear, concise incident reports and support root cause analysis and remediation efforts.Support on-call rotations and escalation processes as part of a 24/7 detection and response capability.Requirements3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike).Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.Familiarity with threat hunting, malware analysis, or forensic investigation techniques.Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly.Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.Candidates will need to be be based in Australia and hold permanent work rights.
The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands-on technical role focused on identifying, analyzing, and responding to cyber threats across the client’s environment, working closely with Security Engineering and broader security stakeholders.
This role will be a part of a global 24/7 team and will cover one of two shifts: Sunday-Thursday 08:00-16:00 or Tuesday-Saturday 08:00-16:00. This role will likely commence employment in October 2026.
Responsibilities:
- Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.
- Support incident response activities including analysis, containment, remediation, and documentation.
- Execute established incident response playbooks and contribute to their continuous improvement.
- Perform threat hunting activities to identify potential compromises and gaps in detection coverage.
- Leverage threat intelligence to inform investigations and detection tuning.
- Collaborate with Security Engineering to tune detection logic and improve security controls.
- Produce clear, concise incident reports and support root cause analysis and remediation efforts.
- Support on-call rotations and escalation processes as part of a 24/7 detection and response capability.
Requirements
- 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.
- Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike).
- Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.
- Familiarity with threat hunting, malware analysis, or forensic investigation techniques.
- Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.
- Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly.
- Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.
- Candidates will need to be be based in Australia and hold permanent work rights.
Control Risks is a unique organisation to be a part of. Our ultimate success depends on recruiting and retaining talented people and stimulating their creativity and professionalism. Through our culture and the diverse nature and backgrounds of our employees we create an organisation in which you can be yourself in and can enjoy your work. Control Risks provides real benefit to many of the world’s leading organisations, and you can expect direct responsibility early on in your role, career development and the opportunity to work on some fascinating projects in a rewarding, innovative and inclusive environment.
Control Risks is a unique organisation to be a part of. Our ultimate success depends on recruiting and retaining talented people and stimulating their creativity and professionalism. Through our culture and the diverse nature and backgrounds of our employees we create an organisation in which you can be yourself in and can enjoy your work. Control Risks provides real benefit to many of the world’s leading organisations, and you can expect direct responsibility early on in your role, career development and the opportunity to work on some fascinating projects in a rewarding, innovative and inclusive environment.