The Opportunity
The successful candidate will be part of a team of skilled cyber security analysts who will deliver specialist Cyber Security capability to contracted customers. This consists of a number of security logging, security monitoring and security operations services, designed to detect external and internal cyber-attacks on the customers IT and network infrastructure.
Responsibilities
- Deliver security-based operational support for Managed Service customers, in line with documented process and timeframe
- Researchers on Threat or Security related news that could potentially impact a client
- Proactive hunting in large volumes of data depending on IOCs or TTPs, threat profiling and validation
- Receives escalations from customer or management of related to Incident Response which may lead to deeper analysis. Tasks will include creation of a timeline, provide tactical and strategic recommendations, prepare the post incident report and after-action review
- Coordinates tasks to determine goal and status of investigation
- Handles communication to a mix of technical and non-technical client audience
- Compute and then create scan schedule for vulnerability management, coordinated remediation including ad-hoc requests
- Creates custom reports based on the data gathered on a weekly/monthly basis
- Develop use case and operational playbooks
- Documents encountered processes for SOC users
- Providing analytical and technical support to solve a wide range of complex security issues
- Participate in open communication between team members
- Creates the SOC schedule based on operational demand while fulfilling the employees request of a leave
- Perform performance assessment and merit for the team members
- Understudy the SOC Manager and be prepared to fill that role when required
Key Competencies & Experience:
- Degree in computer science or equivalent
- 3-5 years of Cyber Security experience
- With SOC / CIRT / Vulnerability Management / Threat Intel / Security Administration experience
- Good understanding of the cyber security landscape and security concepts
- Understanding the different occurrences of incidents, different scenarios and situations
- Knowledge in using at least 2 SIEMs is a plus
- Preferably has Security related certifications
Skills and Attitudes:
- Willing to work in 24 x 7 environment.
- Commitment to continual education, personal development and willingness to learn
- Strong troubleshooting skills and ability to manage issues through to resolution
- Maintains strong attention to detail in high-pressure situations
- Very good ability to explain in written and spoken English
- Strong ambition and ability to develop and expand cyber security services and product support
- Ability to motivate and positively influence a high performing team
- Ability to negotiate with team members to ensure fairness and equal opportunity
- Demonstrates potential for management roles
How to Apply
Please send resumes to: pauline.tabirara@infotrust.com.au