Powered by pgvector · cosine kNN
Plurilock
SOC 2 Contract Through 2026 Supporting APAC Time zones Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are res…
Your match
See how you fit
Scored against this job in seconds
Your account
Sign in to apply
Your profile and your match for this job appear right here.
sign in above to apply · via plurilock.bamboohr.com
About the role
SOC 2 Contract
Through 2026
Supporting APAC Time zones
Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise , TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.
They have deep experience with SIEM tools specifically Crowdstrike SIEM, network data, host data, Identity and Access log data, developing SIEM use cases, reducing/tuning false alerts and leading investigations until issues have been resolved. They will also monitor systems and events across different operating systems, such as Windows, macOS, and Linux.
Must be proactive, problem solver and curious.
Must have 5+ years recent experience as Tier 2 or 3 analyst at a large organization; government and Critical Infrastructure company preferred.
Must have strong, demonstrated SIEM and data correlation experience
Must have demonstrated experience designing new SOC use cases and working with vendor on implementing new use cases.
Must have experience designing and implementing runbooks and use cases to mitigate security incidents
Experience designing Incident Response plan, including alert definition, runbooks, escalation, etc..
Must have extensive experience reviewing and managing alerts in Microsoft Defender, Splunk and or Crowdstrike
Must have experience conducting hunts across disparate data sets, to include host data, vulnerability data, threat data, network data, active directory data, among others to identify threats
Experience leading timely security operations response efforts in collaboration with stakeholders
Experience documenting incident response communications for technical and management audiences
Must have experience setting up alert rules and effective alert management
Demonstrated ability to create runbooks and conducting investigations with key application, IT Infra and other stakeholders
Experience designing custom SOC SIEM use cases in Defender, Splunk and CRWD
Experience conducting forensic work investigations
Most be a problem solver
Must be curious
Must be analytical, qualitative and quantitative abilities
Must be adaptive to dynamic environment
Strong security operations documentation abilities
sign in above to apply · via plurilock.bamboohr.com
Your job hunt, handled
Ask about any role and get a straight answer on your fit. Then stop searching: new matches land in your WhatsApp the moment they’re listed.
Free for jobseekers
C4i Solutions
Be you with us – Shape the future of Defence and Technology C4i Solutions is a leading Technology, ICT, and Digital Solutions company, delivering real outcomes for our Defence, Government, and Industry partners. We're…
C4i Solutions
About The Job Cyber Security SOC Analyst Be you with us – Shape the future of Defence and Technology C4i Solutions is a leading Technology, ICT, and Digital Solutions company, delivering real outcomes for our Defence,…
BeyondTrust
BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio. Our culture of flexibility, trust, and continual learning …
NCC Group
Position Title: SOC Analyst Location: Canberra, ACT - Australia Role Purpose : Join our Australian SOC team as a SOC Analyst. In this role, you will be the "engine room" of our security operations, moving beyond basic…
Inforcer
About Us inforcer is one of the fastest growing technology organisations in the world and a leading provider of cutting-edge cybersecurity and AI solutions to support to the SMB market. We provide MSPs (Managed Servic…
CyberCX
14th August, 2026 The Role This is a hands-on operational security role within our Security Operations team. You will work closely with experienced analysts and engineers to investigate threats, respond to incidents, …