Senior Investigator, Incident Response

Date:  26 Aug 2025
Location: 

Sydney, NSW, AU Melbourne, VIC, AU

Department:  Technology & Transformation
Description: 

Job Requisition ID: 39145 

  • We support flexibility and choice including flexible work arrangements and part-time options.
  • Learn from the best in the business 
  • Recognition culture to celebrate milestones and discounts at hundreds of retailers

  

Deloitte is currently seeking a Senior Investigator – Incident Response to join our Australian Cyber business in Active Cyber Defence.   

 

What will your typical day look like?

 

You will apply your skills to investigate what cyber criminals, or a state actor have done in an environment. You make a difference for clients by conducting sharp technical analyses and advising on targeted containment and eradication actions.  

 

With your CIR colleagues, you form a strong team that investigates a very wide variety of cyber incidents for our customers in Australia and the Pacific Region. In addition to cyber incidents, you use your skills as a CIR specialist for assignments such as Compromise Assessments, Purple teams, and Threat Hunts, giving you a good balance between planned projects and high-impact ad hoc assignments. 

 

Key responsibilities breakdown:  

  •     70% Technical Delivery on Incident Investigation, Threat Hunting
  •     20% Delivery IR related Professional Services
  •     10% Supporting Adjunct Capabilities (Cyber Threat Intelligence and Security Operations)

 

About the team

 

Our incident response team accountable for the management and leadership of high impact cyber security incidents for our customers. These incidents may range from small investigations across several endpoints, to enterprise-wide incident response and recovery efforts up to 6 months in duration. Team members are required to do limited international travel and maintain Australian Government Clearances.  

 

Enough about us, let’s talk about you.  

 

Requirements:

 

  • You’re able to maintain a degree of flexible working hours to support clients during major incidents
  • You’re able to travel, on short notice, within the pacific region
  • You’re able to maintain an NV2 clearance

 

Desired Experience / Qualifications:

 

  • Practical digital forensics experience involving field exploitation, field acquisition and support of intelligence-focused incident response efforts
  • Practical enterprise incident response experience, such as investigation of compromises by ransomware actors, organised criminals and state sponsored cyber crime actors 
  • Practical experience working in an L2/L3 SOC role 
  • Practical experience conducting threat hunting operations on enterprise networks
  • Industry qualifications such as GNFA, GCFA or GCFE
  • Government agency issued qualifications will also be considered

 

Why Deloitte?  

 

At Deloitte, we focus our energy on interesting and impactful work. We’re always learning, innovating and setting the standard; making a positive difference to our clients and our society. We put coaching at the heart of what we do, helping our people grow their careers in any direction – whether it be up, moving into something new, or even moving across the world.  

 

We embrace diversity, equity and inclusion. We have a diverse collection of people from different backgrounds, with different experiences, gender identities, abilities and thinking styles. What binds us together is a shared commitment to value everyone’s perspective and to cultivate inclusion; so that our work environment is a safe space we can all belong. 

  

We prioritise flexibility and choice. At Deloitte, you get trust on Day 1. We know our people get their best work done when they’re in control of where and how they work, designing their work week around their client, team and personal commitments.

 

We help you live and work well. To support your personal and professional life, we offer a range of perks and benefits, including retail discounts, wellbeing leave, paid volunteering days, twelve flexible working options, market-leading parental leave and return to work support package. 

 

Next Steps

Sound like the sort of role for you? Apply now, we’d love to hear from you!

 

 

 

 

By applying for this job, you’ll be assessed against the Deloitte Talent Standards. We’ve designed these standards so that you can grow in your career, and we can provide our clients with a consistent and exceptional Deloitte employee experience globally. The preferred candidate will be subject to background screening by Deloitte or by their external third-party provider.