Collect and analyse logs, packet captures, memory, and disk evidence from Cisco equipment to identify threat actor activity in customer networks.
Conduct in-depth research into security vulnerabilities and adversary TTPs, with a primary focus on how these impact or leverage Cisco infrastructure platforms.
Analyse and document how threat actors achieve initial compromise, establish persistence, move laterally, and exfiltrate data when operating within or targeting environments utilising Cisco technologies.
Produce clear, concise, and actionable threat intelligence reports, briefings, and advisories for internal stakeholders and potentially external customers, highlighting Cisco-specific implications and recommended mitigations.
Investigate and understand how vulnerabilities within Cisco products could be exploited by adversaries, contributing to proactive defence strategies.
Work closely with Cisco product teams, security engineers, incident responders, and other intelligence analysts to identify and fix vulnerabilities leading to active exploits.
Requirements
Australian Citizenship
Preferably a current Positive Vetting (TSPV) security clearance or be willing to obtain
Proven experience in digital forensic analysis, threat research, cybersecurity research, or a related field.
Strong understanding of adversary TTPs.
Demonstrable knowledge of Cisco networking, security, or collaboration platforms and their underlying technologies.
Experience with network and endpoint forensics
Familiarity with operational security principles and practices.
Tech Stack
Cyber Security
Benefits
Health insurance
Flexible work arrangements
Forensic Analyst – Technical Leader at Cisco | JobVerse