Plurilock Logo

Plurilock

SOC 2 Analyst

Posted 15 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Sydney, New South Wales
Senior level
In-Office or Remote
Hiring Remotely in Sydney, New South Wales
Senior level
The SOC 2 Analyst investigates security incidents, reviews threats, leads operations responses, and designs SIEM use cases while collaborating with stakeholders.
The summary above was generated by AI

SOC 2 Contract 

Through 2026

Supporting APAC Time zones

Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise , TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.

They have deep experience with SIEM tools specifically Crowdstrike SIEM, network data, host data, Identity and Access log data, developing SIEM use cases, reducing/tuning false alerts and leading investigations until issues have been resolved.  They will also monitor systems and events across different operating systems, such as Windows, macOS, and Linux.  

Must be proactive, problem solver and curious.

Must have 5+ years recent experience as Tier 2 or 3 analyst at a large organization; government and Critical Infrastructure company preferred.

Must have strong, demonstrated SIEM and data correlation experience

Must have demonstrated experience designing new SOC use cases and working with vendor on implementing new use cases.

Must have experience designing and implementing runbooks and use cases to mitigate security incidents

Experience designing Incident Response plan, including alert definition, runbooks, escalation, etc..

Must have extensive experience reviewing and managing alerts in Microsoft Defender, Splunk and or Crowdstrike

Must have experience conducting hunts across disparate data sets, to include host data, vulnerability data, threat data, network data, active directory data, among others to identify threats

Experience leading timely security operations response efforts in collaboration with stakeholders

Experience documenting incident response communications for technical and management audiences

Must have experience setting up alert rules and effective alert management

Demonstrated ability to create runbooks and conducting investigations with key application, IT Infra and other stakeholders

Experience designing custom SOC SIEM use cases in Defender, Splunk and CRWD

Experience conducting forensic work investigations


Most be a problem solver

Must be curious

Must be analytical, qualitative and quantitative abilities

Must be adaptive to dynamic environment

Strong security operations documentation abilities


Top Skills

Crowdstrike
Linux
macOS
Microsoft Defender
SIEM
Splunk
Windows

Similar Jobs

An Hour Ago
In-Office or Remote
Sydney, New South Wales, AUS
Mid level
Mid level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Build and maintain the Rovo mobile app using React Native and native iOS/Android tech. Collaborate with design and engineers to develop features, ship regular releases, perform code reviews, fix complex bugs, lead projects end-to-end, and mentor junior engineers.
Top Skills: React Native,Swift,Kotlin
An Hour Ago
In-Office or Remote
Sydney, New South Wales, AUS
Expert/Leader
Expert/Leader
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead Jira Service Management sales for Australia/New Zealand public sector: develop and execute territory strategy, close new business, drive Service Collection revenue, manage forecasts and funnels, collaborate with partners and cross-functional teams, represent Atlassian at events, and build long-term customer relationships.
Top Skills: Jira Service Management,Jira,Confluence,Align,Jpd,Itsm,Csm
An Hour Ago
In-Office or Remote
Sydney, New South Wales, AUS
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead a team of Enterprise Deal Managers across EMEA to manage quote-to-cash for strategic accounts: deal shaping, quoting, pricing, contracts, financial analysis, governance, process improvements, product operationalization, and compliance.
Top Skills: Excel,Cpq,Qtc,Salesforce,Oracle Fusion,Netsuite,Jira,Confluence,Docusign,Cloud Marketplaces

What you need to know about the Sydney Tech Scene

From opera to comedy shows, the Sydney Opera House hosts more than 1,600 performances a year, yet its entertainment sector isn't the only one taking center stage. The city's tech sector has earned a reputation as one of the fastest-growing in the region. More specifically, its IT sector stands out as the country's third-largest, growing at twice the rate of overall employment in the past decade as businesses continue to digitize their operations to stay competitive.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account