CyberSecurity Operations Engineer (SOC L2) | Defender, Azure, Google SecOps, CyberArk >> IT Solutions Provider

Summary

Investigate cyber threats, respond to security incidents, and improve defenses for an organization’s Security Operations Centre using SIEM, EDR/XDR, and cloud security tools.

YOUR NEW JOB

You'll be part of the Security Operations Centre (SOC), investigating cyber threats, responding to security incidents, and helping strengthen the organisation's security posture. This is an L2 SOC role suited to someone who enjoys hands-on investigation and threat analysis.

This is a 12-month renewable contract role. Work will be onsite at One-North, Mon – Fri office hours.

WHAT YOU'LL BE DOING

  • Investigate & triage security alerts across SIEM, EDR/XDR, cloud, identity, email & network platforms
  • Investigate phishing, malware, account compromise & other cyber incidents
  • Perform threat hunting using threat intelligence & MITRE ATT&CK
  • Identify root cause, scope & business impact of security incidents
  • Support containment, remediation & recovery activities
  • Improve SOC playbooks, detection rules & operational processes
  • Assist with onboarding new security tools & technologies
  • Work independently while collaborating with the wider cybersecurity team

WHAT IS NEEDED FROM YOU

  • At least 3 years of SOC or Cyber Security Operations experience
  • Hands-on experience investigating security incidents
  • Experience with SIEM & EDR/XDR platforms
  • Good understanding of MITRE ATT&CK, threat hunting & incident response
  • Able to work independently in a fast-paced SOC environment
  • Able to obtain the required security clearance
  • Diploma or Degree in Cybersecurity, IT or a related discipline

WHAT WILL MAKE YOU STAND OUT

  • Experience with Microsoft Defender
  • Experience with Microsoft Azure Security
  • Experience with Google SecOps
  • Experience with CyberArk