Soc Analyst

1 week ago


Melbourne, Victoria, Australia AARNet Full time

About AARNet:

Australia's Academic and Research Network (AARNet) was established in 1989 and is widely regarded as the founder of the Internet in Australia and renowned as the architect, builder and operator of world-class network infrastructure for research and education.

Nationally, AARNet interconnects Australian universities, the CSIRO, and other organisations who have a research and education mission.
These include hospitals, vocational training providers, schools and museums.

Internationally, AARNet interconnects the Australian Research and Education (R & E) community to the world – and continuously develops new capabilities and partnerships to facilitate seamless data access and transfer.

We are an organisation of innovators, doers, and courageous thinkers.

We are not constrained by traditional products and solutions, and we constantly strive to build the solutions that our customers will need tomorrow – today.

If you have the imagination, foresight and drive to build the future, why not come and join us?

The Role:

The Security Operations Centre (SOC) Analyst is a key member within the AARNet SOC, supporting the SOC Manager; you will be responsible for monitoring customer environments including AARNet to identify cyber threats, and performing investigation/response activities in line with documented processes whilst collaborating with both internal and external customer stakeholders.

As a SOC Analyst, you will have a strong hands-on and technical focus with broad security knowledge, experience and deep understanding of various SOC domains and incident stages (covering Preparation, Identification, Containment, Eradication, Recovery and Lessons Learned).

A critical success factor for this role will be the ability to effectively identify, triage and investigate an incident end to end including escalation and resolution with customers.

Between monitoring and responding to incidents, you will be focused on the ongoing uplift of the SOC service capability across people, process and technology.

To help in your development and aide the SOC's maturity you will be enabled to challenge the status quo, think outside the box and apply a growth mindset to develop new and innovative solutions to solve complex challenges.

This is supported by a focus on continuous training and exposure to leading security technologies, including a big data and analytics platform providing full flexibility to build advanced defences for cyber threats with the support of our SOC Engineers.


Responsibilities:

Conduct proactive monitoring, investigation, and escalation of security incidents; Recognise potential, successful, and unsuccessful intrusion attempts and compromises thorough correlation analysis of relevant event detail and summary information; Investigate malicious phishing e-mails, domains and IPs using open source and sector intelligence; Provide mitigation guidance and support in response to identified threats; Continuously working towards high confidence and high fidelity detection rules leveraging anomalous or suspicious events in collaboration with other SOC team members, including SOC Engineers and Operations; Actively contribute to the continuing development of SOC architecture, processes, procedures, standards and methodologies; Be a power user of the Security Orchestration, Automation and Response (SOAR) platform for case management and enrichment/response playbooks; Utilise techniques for investigating host and network-based intrusions using SOC technologies; Report false positives, detection rule issues and parsing issues to the SOC Engineers and vendors for remediation; Work in close partnership with both internal and external (i.e., customer and vendor) stakeholders; Act as the first point of contact for security incidents and requests into the SOC in line with set SLAs;and, Apply cybersecurity and privacy principles to organisational requirements.


Must-Have:

Minimum one year in a SOC environment; Experience with SIEM and UEBA technologies; Experience with SOAR technologies and playbook development (Demisto, Cortex XSOAR and/or Phantom would be advantageous); Experience with EDR technologies (such as Defender ATP, Crowd Strike); A thorough understanding of the MITRE ATT&CK framework and Cyber kill-chain; Ability to document and explain technical details clearly and concisely to both technical and non-technical audiences; Practical networking experience with a deep understanding of TCP/IP and other network protocols; Practical experience with Forensic Incident Response Triage and Investigation techniques and technologies; Experience with using and optimising a range of threat intelligence feeds; Excellent troubleshooting and analytical thinking skills;and, Strong documentation and communication skills.


Nice to have:

Prior experience in working Service provider (SP) or Managed Services provider (MSP); Technical Security Certifications such as SANS GCIA; Expertise on Windows Operating system, Active Directory.


Important Skills:

Security oriented & problem-solving mindset (like solving puzzles & finding ways into closed systems); High level of attention to detail, revision control, & configuration management practices; A passion for "finding evil" and "doing good", & ability to translate business concepts into the required technical system based events.


Conditions of Employment:
AARNet is committed to diversity & providing equal opportunity to all.
We're a great place to work if you want to make a difference.
Remuneration will be based on skills & experience.

We also offer:

  • 17% superannuation;
  • Flexible work options;
  • 2 days paid Women's Wellness Leave per month;
  • 24 weeks paid – Maternity Leave;
  • 24 weeks paid - Adoption Leave;
  • 16 weeks paid - Paternity Leave;
  • 2 days paid Family Wedding Leave;
  • 5 days paid Natural Disaster Leave;
#J-18808-Ljbffr
  • SOC Analyst

    1 week ago


    Melbourne, Victoria, Australia Bluefin Resources Full time

    The Company:An industry leading service provider comprising of innovative minds and courageous thinkers, the business strives to create solution for tomorrow, today.A day In the Life of a SOC AnalystA key aspect of this role is monitoring customer environments to identify cyber threats, investigate response activities in line with policies.This role relies...

  • SOC Analyst

    1 week ago


    Melbourne, Victoria, Australia opentext Full time

    OPENTEXT - THE INFORMATION COMPANYAs the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital. Be part of a winning team that leads the way in Enterprise Information Management.OpenText enables the digital world by simplifying, transforming, and accelerating enterprise...

  • Soc Analyst

    1 week ago


    Melbourne, Victoria, Australia LZ Security & Service GmbH Full time

    Responsibilities Include: Proactive monitoring, investigation, and escalation of security incidents Utilizing advanced technologies for case management and playbook development Collaborating with SOC team members and stakeholders for effective incident response Applying cybersecurity and privacy principles to organizational requirements As the team is...

  • SOC Analyst

    1 week ago


    Melbourne, Victoria, Australia Talenza Full time

    Responsibilities Include: Proactive monitoring, investigation, and escalation of security incidents Utilizing advanced technologies for case management and playbook development Collaborating with SOC team members and stakeholders for effective incident response Applying cybersecurity and privacy principles to organizational requirements As the team is...

  • SOC Analayst

    1 week ago


    Melbourne, Victoria, Australia HUMANISED GROUP Full time

    Job Purpose:A new opportunity has become available for a Mid-Senior Level SOC Analyst to join a fast growing and highly successful NFP organization.In this role you will be responsible for monitoring customer environments to identify cyber threats and performing investigations while liaising with internal and external stakeholders. You will also be focused...


  • Melbourne, Victoria, Australia Talent International Full time

    australia melbourne permanent au$ au$140000 per annum- Permanent opportunity Genuine opportunities for growth International insurance organizationJob Summary:Our client is an international insurance organization who is looking SOC Analyst level - Incident Commander, to play a crucial role in protecting the organization's digital assets and infrastructure...

  • SOC Analyst Tier 2

    1 week ago


    Melbourne, Victoria, Australia CGI Full time

    SOC Analyst Tier 2:Category: Cyber SecurityMain location: Australia, MelbournePosition ID:JEmployment Type: Full TimePosition Description: Work for a global IT and Business Consulting firm Expand your knowledge of security through handson experience Accelerate your learning, through exposure to a multitenanted SOC environment Be exposed to a range of...

  • SOC Analyst Tier 1

    1 week ago


    Melbourne, Victoria, Australia CGI Group, Inc. Full time

    Position Description: Work for highly performing global IT and Business Consulting firm Expand your knowledge of security through handson experience Accelerate your learning, through exposure to a global multitenanted SOC environment Be exposed to a range of cybersecurity technologies, security events and responses Training and certification opportunities to...


  • Melbourne, Victoria, Australia Rapid7 Full time

    We are seeking someone with a passion for cyber security to join us in Melbourne. As a SOC Analyst with Rapid7 you will work with Rapid7's advanced tools to investigate and triage high priority security events. Rapid7's SOC are responsible for our APAC customers as part of our global 24/7 managed services. As an experienced SOC analyst you will have the...


  • Melbourne, Victoria, Australia Triskele Labs Full time

    The Level 1 SOC Analyst is responsible for ongoing monitoring and triaging of Triskele Labs Security Operations Centre (SOC) clients on a 24x7x365 basis. This includes monitoring of SIEM technologies, Vulnerability Management and Threat Intelligence Management to identify and report on potential threats within a client network.In addition to raising threats...


  • Melbourne, Victoria, Australia Triskele Labs Full time

    The Level 1 SOC Analyst is responsible for ongoing monitoring and triaging of Triskele Labs Security Operations Centre (SOC) clients on a 24x7x365 basis. This includes monitoring of SIEM technologies, Vulnerability Management and Threat Intelligence Management to identify and report on potential threats within a client network.In addition to raising threats...


  • Melbourne, Victoria, Australia Triskele Labs Global Pty Full time

    The Level 1 SOC Analyst is responsible for ongoing monitoring and triaging of Triskele Labs Security Operations Centre (SOC) clients on a 24x7x365 basis. This includes monitoring of SIEM technologies, Vulnerability Management and Threat Intelligence Management to identify and report on potential threats within a client network.In addition to raising threats...

  • SOC Analyst Tier 2

    1 week ago


    Melbourne, Victoria, Australia CGI Group, Inc. Full time

    Position Description: Work for a global IT and Business Consulting firm Expand your knowledge of security through handson experience Accelerate your learning, through exposure to a multitenanted SOC environment Be exposed to a range of technologies, security events and responses Training and certification opportunities to support you career development...


  • Melbourne, Victoria, Australia Triskele Labs Full time

    The Level 1 SOC Analyst is responsible for ongoing monitoring and triaging of Triskele Labs Security Operations Centre (SOC) clients on a 24x7x365 basis. This includes monitoring of SIEM technologies, Vulnerability Management and Threat Intelligence Management to identify and report on potential threats within a client network.In addition to raising threats...


  • Melbourne, Victoria, Australia Triskele Labs Full time

    Triskele Labs At Triskele Labs, we work with you to understand your risks, goals, challenges and culture to develop Cyber Security solutions tailored to your business. View company page The Level 1 SOC Analyst is responsible for ongoing monitoring and triaging of Triskele Labs Security Operations Centre (SOC) clients on a 24x7x365 basis. This includes...


  • Melbourne, Victoria, Australia eFinancialCareers Ltd. Full time

    Consultant - Security Operations Analyst - Level - Technology Consulting (SL)Consultant - Security Operations Analyst - Level - Technology Consulting (SL)EYMelbourne, AustraliaConsultant - Security Operations Analyst - Level - Technology Consulting (SL)EYMelbourne, AustraliaPosted 2 days agoPermanentCompetitiveConsultant - Security Operations Analyst - Level...


  • Melbourne, Victoria, Australia CircuIT Recruitment Group Full time

    Up to $150,000 + super + 10% bonus Melbourne LocationJob Title: Senior Security AnalystMy client is seeking a GRC Security Analyst to join their team of cybersecurity experts. If you have a strong background in IT security, risk management, and compliance, along with a passion for staying ahead of the curve, then please applyResponsibilities: Conduct...

  • Grc Analyst

    1 week ago


    Melbourne, Victoria, Australia Anson McCade Full time

    Manage Security Compliance Standards Lead Audit and Review Processes Mentor Junior AnalystsOur client is looking for a GRC Analyst who will work closely with the Technology team and report to the Technology Risk & Security Manager. This role will focus on ensuring adherence to internal and external security standards and requirements such as ISO 27001, PCI...


  • Melbourne, Victoria, Australia SG Fleet Full time

    WHO WE ARE WHO WE ARE.. We are a financial services company that specialises in fleet management, vehicle leasing and salary packaging, with a presence across Australia, the UK and NZ. A total portfolio under management of $2.5 Billion and over 1200 employees. SOME OF OUR PERKS INCLUDE.. Recharge and relax with up to four extra days of leave each year. We...


  • Melbourne, Victoria, Australia Rapid7 Full time

    About the TeamOur Information security team is tasked with enhancing our security posture and elevating customer confidence in Rapid7 products. Together, we lead the effective delivery of business outcomes, and program maturation through standardization and iterative improvement. As part of our team, you'll work with highly engaged and capable colleagues to...