We are here to find those who strive for excellence, go the extra mile, and crave continuous growth.

We’re an all-Australian cybersecurity firm helping some of the country’s biggest organisations stay ahead of cyber risk. Proudly recognised as a 2026 Great Place to Work®, we’ve built a culture that champions growth, celebrates initiative, and supports people who are motivated to make an impact. We’re looking for people who share our drive to learn relentlessly, act with integrity, and raise the bar for our clients and teammates alike – those seeking a place where your drive and expertise are met with equal enthusiasm and opportunity. Dive into a culture that treasures innovation and offers a growth platform that is as limitless as your ambition and work ethic.

The Opportunity

We are continuing to grow our Digital Forensics and Incident Response team and are looking for an experienced Digital Forensics & Incident Response (DFIR) Consultant to join our team.

This is a hands-on technical role supporting clients through some of their most challenging cybersecurity incidents, while also helping us continue to build and mature our DFIR capability. You’ll work across incident response, digital forensics, threat investigation and security improvement activities, working directly with client technology and security teams.

We’re a small, growing team, so this role offers the opportunity to make a genuine impact. You’ll bring the experience and technical depth to take ownership of engagements, mentor more junior consultants and help shape how we deliver DFIR services. For the right person, there is also an opportunity to take on a technical leadership role, helping to lead and grow the capability over time.

What You’ll Do

  • Lead and conduct digital forensic and incident response investigations, from initial triage through to containment, remediation and recovery
  • Investigate security incidents across endpoints, networks, Microsoft 365, Azure, identity platforms and other cloud environments
  • Analyse EDR, SIEM, endpoint, network, identity and other security telemetry to determine attacker activity, scope, impact and root cause
  • Conduct forensic acquisition and analysis, threat hunting and compromise assessments where required
  • Communicate technical findings clearly through investigation reports, client briefings and actionable remediation recommendations
  • Support the growth and maturity of our DFIR capability, including mentoring junior consultants and, for the right person, taking on technical leadership responsibilities

What You’ll Bring

  • Several years’ experience in digital forensics, incident response, cyber investigations, threat hunting, SOC or a closely related cybersecurity role
  • Proven experience conducting end-to-end incident response investigations and strong knowledge of digital forensic principles
  • Strong technical understanding of Windows, Active Directory, Microsoft 365, Azure/Entra ID, networking and common attacker techniques
  • Experience using EDR, SIEM and forensic/investigation tooling to identify, investigate and respond to security threats
  • Strong analytical, problem-solving and communication skills, with the ability to translate complex technical findings into clear advice for clients
  • A collaborative, self-directed approach, with experience mentoring others or leading technical engagements highly regarded

What You’ll Get

  • A technically excellent, collaborative team that delivers
  • Competitive base salary and flexibility to suit how you work best
  • Clear investment in your professional growth and long-term success

Ctrl is an equal opportunity employer committed to diversity, inclusion, and belonging. We value diversity and welcome applicants from all backgrounds, encourage anyone who meets most of the criteria to apply; even if you don’t tick every box.

If you need assistance accessing or reviewing the information on this website, need help submitting an application for employment or requesting an accommodation, please contact us at careers@ctrl.co for further help.