Incident Response & Threat Containment Specialist
Posted 8 months ago · 0 proposals
Budget
$20.00 /hr
~15 hrs
Level
MidLevel
Location
Australia
Posted
Dec 02, 2025
Proposals
0
Job Type
Hourly Rate
We detected unusual spikes in outbound traffic from one of our production servers, along with suspicious login attempts from unknown IP ranges. Our SIEM has flagged several anomalies, but we currently lack the internal expertise to verify, contain, and investigate the incident.
We need an Incident Response professional to perform an urgent investigation.
Current Challenges:
- Unverified signs of compromise
- Suspicious outbound network traffic
- Several failed login attempts from foreign location
- No incident timeline or event correlation
- Lack of a documented IR playbook
- No post-incident recovery guidelines
Required Deliverables:
- Full forensic investigation of servers and logs
- Identification of root cause and attack vector
- Containment and eradication of active threats
- Hardening recommendations for preventing recurrence
- Development of an Incident Response Playbook for future attacks
- A final forensic report with all artifacts and findings
Required Expertise:
- DFIR (Digital Forensics & Incident Response)
- SIEM analysis (Splunk, ELK, etc.)
- Threat containment
- Malware detection & server forensics
- Hands-on mitigation skills
Michael O'Connor
Client · Australia
We are seeking a highly skilled Network Security Consultant to design and implement robust security...
We are seeking a highly skilled Cybersecurity Specialist to conduct comprehensive assessments and pe...
We are seeking a certified Penetration Tester to conduct a comprehensive security audit on our web a...
are building a Security Operations Center (SOC) and need a Cybersecurity Consultant to guide its arc...
Login as a freelancer to apply
Michael O'Connor
Australia