SOC Analyst
Summary
A SOC Analyst joins a new Security Operations capability in Canberra protecting mission-critical networks for a Defence intelligence agency, helping shape team structure, processes and detection as new systems go live over 12-18 months. Permanent, full-time, onsite role requiring NV2 clearance (TSPV preferred); pays $140,000 + super.
Full-time, permanent | Canberra, ACT | $140,000 + super | NV2 minimum (TSPV preferred)
About the opportunityA leading global Defence and technology prime is building out a new Security Operations capability. The team will protect mission-critical networks for a Defence intelligence agency.
This isn't a BAU SOC seat. Over the next 12-18 months several new systems go live, and the team structure, processes and detection capability are still being shaped. You'll join at a stage where you have a real hand in how it runs.
What you'll be doingYou'll report to the Security Operations Team Lead and work independently within your area of responsibility. You'll work across:
- Security monitoring, detection and incident response
- Vulnerability management
- Cyber threat intelligence
- Security engineering across SIEM, endpoint, network, gateway and detection
- Change review and approvals, and trusted advisory to stakeholders
- Writing security operations system requirements
- Building relationships with partner SOCs and security authorities inside and outside Defence
- 3-5+ years' experience in security operations, SOC or a closely related IT security role
- Hands-on experience with SIEM and EDR tools
- Confidence working independently on investigations and incidents
- Scripting or coding experience (e.g. Python, PowerShell) is highly regarded
- Experience in Defence or intelligence environments is highly desirable
- An interest in helping to build and mature a developing capability
- Australian Citizenship is mandatory
- An active TSPV is preferred
- Active NV2 holders will be considered if they're willing to uplift to TSPV
- You must be able to meet the agency's additional access requirements