Назад
Company hidden
12 часов назад

SOC Incident Responder (Cybersecurity)

Формат работы
remote (только Australia)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Australia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SOC Incident Responder (Cybersecurity): Identifying, investigating, containing, and documenting cybersecurity incidents across systems, networks, cloud environments, and users with an accent on rapid triage, threat analysis, and coordinated response. Focus on malware investigations, forensic evidence preservation, MITRE ATT&CK tracking, and improving SOC playbooks and detection coverage.

Location: Sydney, New South Wales, Australia

Company

hirify.global delivers innovative and sustainable solutions through collaboration and partnerships with clients across Australia.

What you will do

  • Monitor and investigate alerts from Taegis, Microsoft Defender, users, and third parties.
  • Perform incident triage, determine severity and business impact, and contain threats through account disablement, password resets, session revocation, device isolation, and IP or domain blocking.
  • Analyze endpoint, network, identity, and cloud telemetry, correlate indicators of compromise with threat intelligence, and investigate malware.
  • Maintain incident records, create reports, and collect and preserve evidence for forensic analysis.
  • Coordinate investigations with IT Operations, Service Desk, Infrastructure, Network, and Cloud teams, including virtual war room operations.
  • Improve SOC playbooks, detection rules, monitoring coverage, and response workflows while supporting threat hunting and security control validation.

Requirements

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or equivalent experience.
  • 2–5+ years of experience in cybersecurity, SOC, incident response, or security operations.
  • Familiarity with Windows, Linux, cloud platforms, enterprise networking, SIEM technologies, and EDR/XDR platforms.
  • Knowledge of email security, Active Directory, Entra ID, network protocols, and traffic analysis.
  • Ability to participate in a 24x7 SOC shift rotation, on-call coverage, and after-hours major incident response.
  • Ability to manage multiple concurrent security investigations and communicate findings clearly.

Nice to have

  • Baseline Clearance or NV-1 eligibility; existing NV-1 clearance is preferred.
  • GCIH, GCIA, GCFA, CISSP, Security+, CySA+, or SC-200 certification.

Culture & Benefits

  • Collaborative, inclusive environment focused on trust, continuous learning, and employee wellbeing.
  • Flexible work arrangements, including flexible start and finish times, work from home, and flex time.
  • Annual salary reviews, salary packaging, and novated leases.
  • Paid professional membership fees and life and health insurance discounts.
  • Employee stock purchase plans, career development plans, and growth opportunities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →