SOC Analyst

21 hours ago


Sydney, Australia Snow Software Full time

**Job Description**:
The SOC Analyst is responsible for monitoring and responding to the security events and risks of the business and documenting their research, triage, and mitigation efforts. They are expected to assess the effectiveness of detections, risk management controls, and policies used to prevent security threats. They are involved in the development of policies and detections and are encouraged to provide recommendations based on their analysis and engage in threat hunting exercises, penetration testing, and phishing campaign simulations.

The SOC Analyst will report to the SOC Lead and is an involved member of the Security Operations and Information Security Team. This role is expected to display familiarity of Cybersecurity best practices and frameworks (MITRE, ISO27001, SOC2), as well as being an active contributor to the continued maturation of current security tools and systems. As a SOC Analyst you are empowered to take the appropriate response actions to mitigate risks and remediate threats to Snow Software and our clients.

Key Responsibilities:

- Work in a 24x5 Security Operations environment, working primarily day shift
- Monitor SIEM, mailbox, and ticket requests; ensuring a timely response
- Works with security information and event management (SIEM) to manage/tune the system, create/manage the detection content and actively watch for alerts
- Conducts proactive threat hunting and uses findings to recognize detection gaps
- Responsible for Security Incident Response actions and escalation of critical severity incidents
- Provides incident response support, including mitigating actions to contain activity and facilitating forensics analysis when necessary
- Perform file analysis and digital forensics** **based on alerts received and in support of investigations
- Conduct maturity improvements for information security and cybersecurity tools and systems
- Conduct pen testing and vulnerability management exercises as well as red/blue team events
- Discuss and present major events and initiatives with SOC members during a daily handover session
- Maintain a strong awareness of the current threat landscape

**Qualifications**:

- Knowledge of and experience with SIEM/SOAR technology, and EDR tools
- Knowledge of and experience with Windows, MacOS, and Linux operating systems
- Proven experience of ability to analyze event logs and recognize signs of cyber intrusions/attacks
- Understanding of query languages and/or scripting languages
- Experience in a relevant field such as IT audit, risk management, penetration testing, red team/blue team, or as a security operations analyst
- Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
- Is a confident, energetic self-starter, with strong interpersonal skills

Additional qualifications
- Working knowledge with Kusto, SQL, or other query/programming languages
- Working knowledge with Azure Sentinel and Microsoft Defender
- 1-2 or more years working in a Security Operations Center, internally or with a service provider (MSSP)
- Experience in vulnerability analysis and remediation
- Experience with security tool implementation

**You must be able to provide evidence of Australian work rights.**

Additional Information

**Company Description**

Snow Software is the global leader in technology intelligence solutions, ensuring the trillions spent on all forms of technology is optimized to drive maximum value. More than 4,000 organizations around the world rely on Snow's platform to provide complete visibility, optimize usage and spend, and minimize regulatory risk. Headquartered in Stockholm, Snow has more local offices and regional support centers than any other software asset and cloud management provider, delivering unparalleled results to our customers and partners.

As an inclusive employer, Snow strives not discriminate on the grounds of age, disability, sex, sexual orientation, gender identity or expression, marriage, civil partnership, pregnancy, maternity, race (including colour and ethnic or national origins), religion, Veteran status or belief.

This is not just a generic ‘equal opportunities disclaimer’ for us - we are truly committed to creating a workplace where our team members thrive.

If you have a disability or special need that requires us to adjust the recruiting process, please do advise us when contacted.

LI-MC1


  • Senior SOC Analyst

    19 hours ago


    Sydney, New South Wales, Australia Hamilton Barnes Full time $120,000 - $180,000 per year

    Our client is a fast-growing Australian Managed Security Service Provider delivering cybersecurity solutions to enterprise and mid-market organisations. 100% Australian owned and operated, they partner with customers across financial services, healthcare, technology, and government.They are building a next-generation SOC capability to deliver world-class...

  • SOC Analyst

    11 hours ago


    Sydney, New South Wales, Australia Robert Half Full time $120,000 - $180,000 per year

    THE COMPANYThis company is a successful and growing mid-sized Superannuation firm who employ circa 180 staff across Australia.What's on offer?Mainly remote working - 6 days in the office / month.Mid-sized and growing Financial Services organisation who are expanding and uplifting their internal Cybersecurity capabilities.Flat organisational structure where...

  • Senior SOC Analyst

    2 days ago


    Sydney, New South Wales, Australia N2S Full time

    Experience Required:7–8 YearsDepartment:Cybersecurity / Security Operations Center (SOC)Reports To:SOC Manager / Cybersecurity LeadEmployment Type:Full-TimeJob SummaryWe are seeking a highly skilled and experiencedSenior SOC Analystwith deep expertise inPalo Alto Networks' Cortex suite (XDR/XSOAR)to join our Security Operations Center. The ideal candidate...

  • SOC Monitoring

    4 weeks ago


    Sydney, Australia Ayan Infotech Full time

    Overview Ayan Infotech are looking for multiple SOC Monitoring & Incident Response Analysts for a long term contract job opportunity in Sydney. All applicants must have full unrestricted work rights in Australia. Role Title: SOC Monitoring & Incident Response Analysts (multiple positions) Location: Sydney Type: Contract (6 months +) Nature of work:...

  • SOC Monitoring

    3 weeks ago


    Council of the City of Sydney, Australia Ayan Infotech Full time

    Overview Ayan Infotech are looking for multiple SOC Monitoring & Incident Response Analysts for a long term contract job opportunity in Sydney. All applicants must have full unrestricted work rights in Australia. Role details - Title: SOC Monitoring & Incident Response Analysts (multiple positions) - Location: Sydney - Type: Contract (6 months +) - Nature...


  • Sydney, Australia HUMANISED GROUP Full time

    **Job Purpose**: A new opportunity has become available for Junior-Mid Level SOC Analyst to join a reputable and enterprise organization. In this role you will be responsible for monitoring the environment to identify cyber threats and performing investigations while liaising with internal and external stakeholders. **Main Responsibilities**: - Act as the...


  • Sydney, Australia Just People Information Security Full time

    Perm role / Career building - Reputable and enterprise organization - Great team environment/hybrid working **Job Purpose**: A new opportunity has become available for Junior-Mid Level SOC Analyst to join a reputable and enterprise organization. In this role you will be responsible for monitoring the environment to identify cyber threats and performing...

  • SOC Team Lead

    1 week ago


    Greater Sydney Area, Australia Robert Walters Full time $120,000 - $150,000 per year

    Opportunity to lead a team of SOC analysts acting at the 2IC to the SOC Manager * $140-$157K + Super + Bonus + Phone Allowance * Flexible working arrangementsThe CompanyOur client is a leading Australian based MSP, you will work closely with the Government & Financial Services sector as well as Healthcare, Retail, Manufacturing & Media.The RoleAs the Cyber...


  • Council of the City of Sydney, Australia LGT Group Full time

    Cyber Security Analyst / SOC Analyst Sydney (AU) LGT is the largest Private Banking and Asset Management group in the world to be owned by an entrepreneurial family. As the family office of the Princely House of Liechtenstein, we have years of experience in the management of sizeable sums of assets. Your responsibilities Security Monitoring and Incident...

  • SOC Analyst

    3 days ago


    Sydney, Australia Talent International Full time

    australia sydney permanent package + benefitsWe have a newly created opportunity for a Security Operations Centre Analyst to step up into an Incident Commander role as part of a growing Global Cyber Information Security team. Working for a leading, global insurance firm this person will have the proud responsibility of protecting all company divisions...