Digital Forensic and Incident Response Investigator
Cognizant
Melbourne, Victoria
The Role
This position sits within a global cyber operations team, serving as a second-line escalation point for complex security incidents on a 9/5 basis with weekend on-call coverage. Day to day, the investigator leads end-to-end incident response — from triage and containment through to eradication, recovery, forensic investigation, and structured reporting.
Skills & Experience
Candidates require hands-on experience with forensic tools such as EnCase, FTK, and Volatility, alongside SIEM platforms including Splunk and QRadar, and EDR solutions such as CrowdStrike and Microsoft Defender. Strong network forensics knowledge, familiarity with MITRE ATT&CK, and scripting ability in Python, PowerShell, or Bash are essential.
Who It Suits
This role suits an experienced incident responder who is comfortable taking ownership of complex investigations and operating within a structured, globally distributed security function. Someone who combines technical depth across forensics and threat analysis with the communication skills needed to report clearly to multiple stakeholders will thrive here.
Typical advertised salary for Incident Response roles in Australia: A$95,000–A$129,000 (median A$100,000 — from 9 recent listings analysed by Forensic Focus).
Learn More/Apply





