Senior Analyst: Information Security Incident Response

NTT
Sydney
Full timeFunction: CybersecurityEducation: bachelorsSkills: ["Hands-on","Root cause analysis","Stakeholder management","Mentoring","Security automation"]

Serve as a hands-on Senior Cloud Security Incident Response Analyst supporting AWS and Azure environments. You’ll lead cloud security incident response and investigations, manage CSPM and CWPP/CWP capabilities, and operate and tune SIEM monitoring using Splunk, Microsoft Sentinel, and Palo Alto Cortex XSIAM. Build detections, automate security processes with Python/PowerShell and APIs, integrate security into CI/CD and Infrastructure-as-Code, and mentor L1/L2 team members while improving runbooks and operational documentation.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
NTT
NTT
6 days ago

Senior Analyst: Information Security Incident Response

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 10 hours agoStatus: Live

Job Summary

Serve as a hands-on Senior Cloud Security Incident Response Analyst supporting AWS and Azure environments. You’ll lead cloud security incident response and investigations, manage CSPM and CWPP/CWP capabilities, and operate and tune SIEM monitoring using Splunk, Microsoft Sentinel, and Palo Alto Cortex XSIAM. Build detections, automate security processes with Python/PowerShell and APIs, integrate security into CI/CD and Infrastructure-as-Code, and mentor L1/L2 team members while improving runbooks and operational documentation.
Location: Sydney
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Implement and manage Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWPP/CWP) solutions.
  • •Secure and support AWS and Azure environments, including compliance, workload protection, vulnerability management, and cloud security monitoring.
  • •Lead cloud security incident response and investigations, performing L3 troubleshooting and root cause analysis.
  • •Operate and support SIEM platforms (Splunk, Microsoft Sentinel, Palo Alto Cortex XSIAM), including detection rules, correlation searches, dashboards, and alerting.
  • •Integrate security into CI/CD pipelines and Infrastructure-as-Code deployments; secure Kubernetes/container workloads and develop automation using Python/PowerShell and APIs.

Key Requirements

  • •7-10 years of experience in IT, Cyber Security, or related disciplines, with at least 3 years in Cloud Security Engineering.
  • •Strong hands-on experience securing AWS and Azure environments.
  • •Experience with CSPM and CWPP/CWP platforms and cloud security monitoring capabilities.
  • •Hands-on Infrastructure-as-Code security experience using Terraform, CloudFormation, or similar tools.
  • •Scripting/automation experience using Python and/or PowerShell, plus experience with incident response and cloud threat detection.
Experience:Cloud securityIncident responseSIEMSOC operationsAWSAzure
Education:Bachelor's
Skills:Hands-onRoot cause analysisStakeholder managementMentoringSecurity automation
Certifications:AWS Security SpecialtyMicrosoft Azure Security EngineerCISSPCCSPKubernetesDevSecOpsSplunk certificationsMicrosoft SC-200Palo Alto Cortex XSIAM certifications
Tech Stack:AWSAzureCSPMCWPPCloud Workload ProtectionCWPP/CWPTerraformCloudFormationDevSecOpsCI/CDInfrastructure-as-CodeKubernetesDockerPythonPowerShellSplunkMicrosoft SentinelPalo Alto Cortex XSIAMSIEMIAM

Company Brief

NTT
Dimension Data, operating under NTT Ltd, provides managed IT services, cloud and data center solutions, networking, cybersecurity, and digital transformation services to enterprise customers worldwide.
Industry: Professional Services
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Established Company
Valuation: Public Company (Market Cap in USD)
Headquarters: London, United Kingdom
Founded: 1983
WebsiteLinkedIn