12 часов назад
SOC Incident Responder (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
SOC Incident Responder (Cybersecurity): Identifying, investigating, containing, and documenting cybersecurity incidents across systems, networks, cloud environments, and users with an accent on rapid triage, threat analysis, and coordinated response. Focus on malware investigations, forensic evidence preservation, MITRE ATT&CK tracking, and improving SOC playbooks and detection coverage.
Location: Sydney, New South Wales, Australia
Company
delivers innovative and sustainable solutions through collaboration and partnerships with clients across Australia.
What you will do
- Monitor and investigate alerts from Taegis, Microsoft Defender, users, and third parties.
- Perform incident triage, determine severity and business impact, and contain threats through account disablement, password resets, session revocation, device isolation, and IP or domain blocking.
- Analyze endpoint, network, identity, and cloud telemetry, correlate indicators of compromise with threat intelligence, and investigate malware.
- Maintain incident records, create reports, and collect and preserve evidence for forensic analysis.
- Coordinate investigations with IT Operations, Service Desk, Infrastructure, Network, and Cloud teams, including virtual war room operations.
- Improve SOC playbooks, detection rules, monitoring coverage, and response workflows while supporting threat hunting and security control validation.
Requirements
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or equivalent experience.
- 2–5+ years of experience in cybersecurity, SOC, incident response, or security operations.
- Familiarity with Windows, Linux, cloud platforms, enterprise networking, SIEM technologies, and EDR/XDR platforms.
- Knowledge of email security, Active Directory, Entra ID, network protocols, and traffic analysis.
- Ability to participate in a 24x7 SOC shift rotation, on-call coverage, and after-hours major incident response.
- Ability to manage multiple concurrent security investigations and communicate findings clearly.
Nice to have
- Baseline Clearance or NV-1 eligibility; existing NV-1 clearance is preferred.
- GCIH, GCIA, GCFA, CISSP, Security+, CySA+, or SC-200 certification.
Culture & Benefits
- Collaborative, inclusive environment focused on trust, continuous learning, and employee wellbeing.
- Flexible work arrangements, including flexible start and finish times, work from home, and flex time.
- Annual salary reviews, salary packaging, and novated leases.
- Paid professional membership fees and life and health insurance discounts.
- Employee stock purchase plans, career development plans, and growth opportunities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Senior SOC Analyst (Cybersecurity)
4 часа назад
Sr. Incident Response Analyst (AI Security)
6 дней назад
Senior Channel Solutions Engineer (Cybersecurity)
6 дней назад
SOC Analyst (Cybersecurity)
6 дней назад
SOC Analyst (AI)
6 дней назад
Manager, Incident Response (Cybersecurity)
132 410 - 165 510$