Security Operations Center Analyst Iii
2 weeks ago
About Us:
Welcome to Gallagher - a global leader in insurance, risk management, and consulting services. With a growing team of more than 45,000 professionals worldwide, we empower businesses, communities, and individuals to thrive. At Gallagher, you can build a career whether it’s with our brokerage division, our benefits and HR consulting division, or our corporate team. Experience The Gallagher Way, a culture fueled by shared values and a collective passion for excellence. Join one of our dynamic teams, where you'll play a pivotal role in shaping Gallagher's future and unlocking unparalleled opportunities for both clients and yourself.
Overview:
**Gallagher** is one of Australia’s and the world’s largest Insurance broking and risk management companies with over 35,000 employees globally. We pride ourselves on being a socially responsible, ethical and collaborative organisation expressed through our Shared Values, The Gallagher Way. We are also proud to be on the **Forbes World’s Best Employers list** as the only Insurance brokerage.
As a SOC Analyst III - (Incident Commander), you will play a crucial role in protecting our organization's digital assets and infrastructure from cyber threats. You will be responsible for promptly detecting, analysing, and responding to security incidents to minimize their impact and prevent future occurrences. This position requires a deep understanding of security operations, incident response methodologies, and advanced threat detection techniques. You will collaborate with cross-functional teams to investigate incidents, perform root cause analysis, and develop proactive measures to enhance our overall security posture.
This role reports into the APAC IT Security Manager, with a dotted line into the global Cyber Incident commander.
**Key Responsibilities**
**Incident Response Management**:
- Lead and coordinate the organization's incident response activities, ensuring swift and effective incident resolution in accordance with global SOC response procedures
- Monitor security alerts and incidents to identify potential threats, vulnerabilities, and indicators of compromise.
- Perform in-depth analysis of security incidents, including the identification and containment of threats, and recommend appropriate response actions.
- Conduct detailed forensic analysis and investigations to determine the root cause and impact of security incidents.
- Develop and maintain incident response playbooks, standard operating procedures, and communication protocols.
**Threat Detection and Analysis**:
- Utilize security monitoring tools and technologies to identify potential security incidents and breaches.
- Perform proactive threat hunting activities to detect advanced threats and vulnerabilities in the environment.
- Conduct analysis of security events and logs to identify patterns, trends, and emerging threats.
- Collaborate with threat intelligence teams to incorporate external intelligence into detection and response strategies.
**Incident Mitigation and Recovery**:
- Execute timely and effective containment, eradication, and recovery activities in response to security incidents.
- Coordinate with IT teams to isolate affected systems, patch vulnerabilities, and implement corrective actions.
- Assist in system and network hardening activities to improve the overall security posture of the organization.
- Support business continuity and disaster recovery plans to ensure resilience in the event of a security incident.
**Incident Reporting and Documentation**:
- Prepare accurate and detailed incident reports, including the description of events, actions taken, and lessons learned.
- Maintain comprehensive documentation of incident response activities, including evidence collection and preservation.
- Collaborate with legal and compliance teams to ensure adherence to regulatory requirements and incident reporting obligations.
**Required skills and experience**
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Minimum of 6 years of experience in a dedicated incident response role within a Security Operations Centre (SOC) environment.
- Strong knowledge of incident response methodologies, tools, and industry frameworks (e.g., NIST CSF, MITRE ATT&CK).
- Knowledge of malware analysis techniques, digital forensics, and memory analysis.
- Familiarity with cloud security concepts and technologies (e.g., AWS, Azure and GCP).
- Excellent analytical and problem-solving skills, with the ability to think critically under pressure.
- Strong communication, stakeholder engagement and interpersonal skills to effectively collaborate with cross-functional teams,.
- Relevant certifications such as CISSP, GCIH, GCIA, or similar are highly desirable.
- Knowledge of security frameworks and standards such as ISO 27001, Australian Government PSPF / ISM., NIST, GDPR, PCI DSS.
- IT framework knowledge: COBIT, ITIL
**Gallagher** offers great benefits and career
- 
					
Security Operations Center Analyst
4 days ago
Sydney, New South Wales, Australia ITbility Full time $60,000 - $120,000 per yearSOC Monitoring & Incident Response AnalystSydneyContract - 3 + MonthsOur client inSydneyis looking for SOC Monitoring & Incident Response Analyst this is aContract for 3 + Monthsrole. Please email me at for more information.Experience: Minimum of 3 years of hands-on experience working in a Security Operations Center (SOC) environment, with a strong focus on...
 - 
					
						Security Operations Center
2 weeks ago
Sydney, Australia Illuvium Full time**About Illuvium**: **Responsibilities**: - Design, build, hire, train and manage a team of analysts in the context of a 24/7-running Security Operations Center - Establish 24/7/365 continuous monitoring of security event feeds - Establish SLAs and performance metrics for the SOC - Be the central point of contact for suspected security incident on our...
 - 
					
						Lead Cyber Security Operations Center
2 weeks ago
Sydney, Australia TikTok Full time**Responsibilities**: About the Team Our Cyber Security Operations Center (CSOC) team is the frontline of defense, responsible for protecting the organization from evolving cyber threats with precision, urgency, and purpose. We’re a mission-driven team that thrives in a high-tempo environment—where curiosity, accountability, and continuous improvement...
 - 
					
						Security Operations Analyst
6 days ago
Sydney, Australia Charterhouse Full time**_Cyber Security Operations Analyst - NSW Government department_** - **Sydney CBD, hybrid flexibility**: - **6 Months Contract with possibility of extension**: - **Rewarding program**: - **Collaborative Environment working with multiple stakeholders** I am currently supporting a client within NSW Government in their search for a Security Operations...
 - 
					
						Security Safety Officers
2 weeks ago
Sydney, Australia Operations Full time**About Capella Hotels and Resorts** Capella Sydney is the culmination of a stunning transformation of the heritage-listed Department of Education sandstone building, into a luxury Hotel that welcomes guests and patrons alike into the impressive building for the first time in history. Delivering a guest experience unlike any other, paired with lavish...
 - 
					
						Data Center Security Specialist
2 days ago
Sydney, Australia Amazon Corporate Services Pty Full time1+ year of experience working in a standards-based professional work environment - 1+ year of experience collecting, analyzing, and utilizing data to drive process and system improvement, and effect quality assurance - 1+ year of experience with Microsoft Office tools Job summary Amazon Web Services (AWS) is looking to hire a highly motivated,...
 - 
					
						Security Operations Center Analyst
4 days ago
Sydney, Australia CareCone Australia Full timeMust have full working rights. No sponsorship available. - Resource with minimum 8+ years of total IT Experience, with 5+ yrs. in **SIEM Design** & Implementation with Handling Ops. escalations. - Experience in handling L2 task related to Security Incident Handling across different **SIEM Platform**(Primary skill, ArcSight, Secondary, Splunk) - Proven...
 - 
					
						Cyber Security Analyst
6 days ago
Sydney, Australia Commonwealth Bank Full time**You are**a problem solver with a strong IT and or engineering background. - **We are**one of the best and most advanced Cyber Security teams in Australia. - **Together we**can contribute to protecting the Group, Customers and Community **Do work that matters**: The Technology division delivers the Group’s information technology and banking operations...
 - 
					
						Security Operations Analyst
1 week ago
Sydney, Australia LGT Gruppe Holding AG Full timeCategory - Information Technology - Workload - Full Time ( 80%) - Posted on - 17 January 2025 ***: LGT is the largest Private Banking and Asset Management group in the world to be owned by an entrepreneurial family. As the family office of the Princely House of Liechtenstein, we have years of eperience in the management of sizeable sums of assets. **Your...
 - 
					
					
Sydney, Australia Amazon.com Full timeDESCRIPTION AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation...