Triage Security Engineer 3
1 day ago
Location: Remote, based in Sydney
At Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on the Forbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60 lists, and we recently took home the 2024 CRN Products of the Year award. We're proud to be named a Leader in the IDC MarketScape for Worldwide Managed Detection and Response Services and earning a Customers' Choice distinction from Gartner Peer Insights. Our Aurora Platform also received CRN's Products of the Year award in the inaugural Security Operations Platform category. Join a company that's not only leading, but also shaping, the future of security operations.
Our mission is simple: End Cyber Risk. We're looking for a Triage Security Engineer to be part of making this happen.
The Triage Security Engineer will contribute to our Security Services department by supporting our customers through our Security Operations Centre.
About the Role:
As part of the Security Services team, the Triage Security Engineer (TSE) is a role that leverages your security expertise to identify, detect, and notify customers of security events ongoing within their environment. The TSE will be expected to have a deep knowledge of various threats and forms of attack while having demonstrated experience in highly technical security roles.
This role will have a high technical aspect and limited customer relationship function, in that you will managing security incidents and working with Concierge Security Teams to provide the post-incident remediation activities.
Arctic Wolf TSEs are accountable for the detection and notification of security incidents to our customers.
As a Triage Security Engineer you will get to:
Analyze incoming security events based on different data points; network, endpoint, and log sources expediently, consistently, and accurately
Prioritize incoming events exceptionally well
Willingness to run a security incident to completion; detect, work with team members, and communicate effectively with internal and external team parties throughout the process.
Steer complex investigations within your area of expertise, and leverage your security knowledge to engage the other experts within other disciplines appropriately
Prioritize task work according to understood and implied priorities
Conduct quality reviews on outgoing tickets, security engagements, and at a system level looking for areas of improvement
Contribute your security expertise using the development platform to elevate more precise signal with minimal noise
Ability to coach and mentor other team members to share knowledge and expertise
Continuously broaden your security expertise and depth within a set competency
Arctic Wolf is a fast-growing company, and all TSE candidates should expect to work with many teams within Arctic Wolf, including engineering, operations, sales, marketing, and executive management. A positive can-do attitude is a must. A willingness to learn and continuous self-improvement is critical. An ability to deal with uncertainty is a positive.
We are looking for someone who might have:
5+ years Industry experience; Information Security, Network Security, or Cyber Security roles focusing on threat hunting, incident response, or security analysis.
Threat Intelligence Analysis experience: Staying updated on the latest cyber threats, attack vectors, and industry trends through threat intelligence sources and analyzing threat data to identify potential risks to the organization.
Proactive Threat Hunting experience: Utilizing security tools, techniques, and methodologies to proactively search for signs of compromise and malicious activity within the network environment.
Incident Response experience: Collaborating with incident response teams to investigate and respond to security incidents promptly. Taking necessary actions to contain and eradicate threats, minimizing their impact on organizational assets.
Forensic Analysis experience: Conducting forensic analysis of security incidents to gather evidence, understanding attack methodologies, and improving threat detection capabilities.
Have deep technical competency in the following:
Networking – common protocols, server/client infrastructure, routers, switches, WAPs, etc
Perimeter – firewalls, IDS, IPS, UTM, WAF, Gateways, Proxys, Mail Servers, etc
Authentication – AD, SSO, MFA, etc
IaaS – cloud services, AWS, Azure, GCP
End Point – MDM, EDR, EPP, AV
SaaS – collaboration tools including O365, GSuite, Box, Salesforce, Workday, etc
Assist in the incident Response life cycle for Analysis; Containment, and Eradication
Ability to advise and coach clients during an active breach on how to remediate and secure their environment.
Create and audit new and existing detections for malicious activity
Analyze incoming security events in a SIEM based on network, endpoint, firewall, cloud, DNS and others as needed expediently, consistently, and accurately to determine if an event is malicious
Experience working in a Security Operation Center, security incident response teams, or in roles with security forensics or malware analysis disciplines.
Analyze log and system data from the above list and other IT systems
Know how to use one or more scripting tools and languages such as Python, Bash, and Power Shell
Great writing and speaking skills
A positive "can-do" attitude
A willingness to learn and continuous self-improvement
There are no specific degree or certification requirements but degrees in engineering or technology are a plus. Relevant certifications (e.g., CISSP, GIAC, CEH) are a plus.
On-Camera Policy
To support a fair, transparent, and engaging interview experience, candidates interviewing remotely are expected to be on camera during all video interviews. Being on camera fosters authentic connection, improves communication, and allows for full engagement from both candidates and interviewers.We understand that technical, bandwidth, or location-related challenges may occasionally prevent video use. If this applies, candidates are required to notify us in advance so we can explore appropriate accommodations.
You will be required to attend trainings, seminars, or webinars relevant to job role to enhance current knowledge base and skill set in order to improve job performance and efficiency. Attend at least one event in a year and should not impact job/project deliverables.
At Arctic Wolf, we foster a collaborative and inclusive work environment that thrives on diversity of thought, background, and culture. This is reflected in our multiple awards, including Top Workplace USA , Best Places to Work – USA , Great Place to Work – Canada , Great Place to Work – UK (2024), and Kununu Top Company – Germany Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction, with over 7,000 customers worldwide and more than 2,000 channel partners globally. As we continue to expand globally and enhance our technology, Arctic Wolf remains the most trusted name in the industry.
Our Values
Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people's and organizations' sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good.
We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.
We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.
Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire employee experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodations by emailing
Security Requirements
- Conducts duties and responsibilities in accordance with AWN's Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).
- Background checks are required for this position.
- This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations ("EAR"). Please note that, if applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations.
-
Triage Security Analyst
2 weeks ago
Remote, Australia Arctic Wolf Full time $60,000 - $120,000 per yearAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on the Forbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60 lists, and we...
-
Manager, Security Operations
1 day ago
Remote - AUS - New South Wales, Australia Arctic Wolf Full time $120,000 - $180,000 per yearAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on the Forbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60 lists, and we...
-
Manager, Security Operations
1 day ago
Remote - AUS - New South Wales, Australia Arctic Wolf Networks Full time $120,000 - $180,000 per yearAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on the Forbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60 lists, and we...
-
Security Engineer
1 week ago
Mortdale, New South Wales, Australia Hays Full time $43,000 - $93,600 per yearSecurity & Systems AdministratorYour new companyJoin a well-established, family-owned business located in South West Sydney that values its people and fosters a supportive, close-knit culture. With underground parking, a company phone, and access to company accommodation to enjoy a time away and access to this organisation offers more than just a job—it...
-
Security Operations Analyst
3 days ago
Remote Australia Huntress Full time $80,000 - $120,000 per yearReports to: Manager, Security Operations Center Location: Remote Australia Compensation Range: $110,000 to $140,000 AUD base plus bonus and equity. What We Do: Huntress is a fully remote, global team of passionate experts and ethical badasses on a mission to break down the barriers to cybersecurity. Whether creating purpose-built security solutions,...
-
SOC Analyst
1 day ago
Sydney, New South Wales, , Australia XPT Software Australia Pty Full time $90,000 - $120,000 per year· Experience& Qualifications:· Weneed to append EDR experience / exposure and strong understanding of the threatlandscape to the below JD. o Experience:Minimum of 3 years of hands -on experience working in a Security OperationsCenter (SOC) environment, with a strong focus on incident monitoring, triage,and response.o ...
-
DevOps Engineer
1 day ago
Remote, Australia GE Vernova Full time $120,000 - $180,000 per yearJob Description SummaryJob DescriptionEngage with our utility clients to solve for the Energy Transition.The DevOps Engineer role is responsible for streamlining the software development and deployment lifecycles by automating processes, managing infrastructure, and fostering collaboration between development and operations teams. They build and manage...
-
Security Engineer, AWS Security
1 day ago
Melbourne, Victoria, AUS, Australia Amazon Full time $80,000 - $120,000 per yearAmazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to large government customers, run their...
-
Remote, Australia GitLab Full time $80,000 - $120,000 per yearGitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. When everyone can contribute, consumers become contributors, significantly accelerating human progress. Our...
-
Level 2/3 Helpdesk Engineer
3 days ago
Moore Park, New South Wales, Australia Hays | Technology Full time $80,000 - $120,000 per yearLevel 2/3 Engineer | Permanent Role Your new companyAn exciting new opportunity is available for a Level 2/3 Engineer at a Market-Leading Managed Service Provider. This is a permanent position, located in the Eastern Suburbs of Sydney. Your new roleYou will be responsible for resolving escalated tickets from Level 1/2 technicians and supporting the team in...