LAB3
Posted 2w ago

Security Analyst (Managed Services: Security Operations Centre)

LAB3
Sydney or Canberra or Melbourne or Australia
HybridFull Time
Responsibilities
  • monitoring security
  • investigating incidents
  • escalating issues
Requirements
  • NV1 clearance or ability to obtain
  • Australia-based
  • SOC experience (Azure preferred)
  • Rotating-shift availability
  • Skills in incident investigation
  • SIEM monitoring
  • KQL/SQL querying, and Azure security tooling
Technical tools mentioned
Microsoft SentinelAzure Log AnalyticsAzure Security CentreKQLSQLSIEMSplunkKibanaMITRE ATT&CKOSINTEDRMS Defender for Cloud

Job description

LAB3 is one of the largest Azure engineering practices in the Australasia region with a focus on Cloud & DevOps, Data, IoT & AI, Modern Workplace, Security, andNetwork services. 

The role:

We have a great opportunity for a L1 SOC analyst on our managed services team ideally with NV1 clearance (or Australian citizenship so we can help you obtain one) to join LAB3’s 24/7 Security Operations Centre (SOC). You will be working on shifts and once a fortnight from office to support, monitor, and maintain high security standards and manage incident responses & controls and for our clients.

 
  • Play a fundamental role in the analysis, investigation, logging, monitoring and escalation of cyber security events produced by the SIEM 24/7.  
  • Promote and support the security process, outcomes, and value proposition to internal and external clients. Manage the governance processes to promote effective oversight and solution quality within security business areas.  

Cyber Security event handling such as:

  • Security alert monitoring and response on your shift, ensuring 24/7 coverage 
  • Investigation, escalation, and ownership of incidents 
  • Track tactical issues in execution of SOC responsibilities and process.  
  • Ticket logging: ensure the investigation process and chain of custody for evidence handling and gathering is followed.
  • Ensuring incidents are addressed in a timely manner using available reporting and metrics. 
  • Monitoring Level 1 Analyst events  
  • Work closely with our clients, support the reporting & communication regarding incidents and their follow up. 
  • Maintaining SOC documentation and analytic playbooks  
  • Demonstrate an ability to perform incident investigation and triages confidently. 
  • Identifying opportunities for tuning noisy alerts and automation  
  • Undertake client governance and reporting tasks  
  • Partner with teams across the organization, to ensure the security, availability, and site reliability of our infrastructure. 
  • Analyse, troubleshoot and respond to potential threats where necessary using Microsoft Sentinel, Azure Log Analytics and Azure Security Centre. 

Our ideal candidate:

  • NV1 Clearance or Australian citizenship & the ability to obtain NV1 clearance
  • Based in Australia
  • Experience in a SOC, ideally in a Microsoft/ Azure environment
  • Ability to work on a rotating shift
  • Mindset: Client-centric, collaborative, and passionate about secure automation and continuous improvement
  • Communication skills: Ability to communicate effectively
  • Technical Skills & knowledge:  Cloud Security, Cybersecurity operations , SOC analytic skills, familiarity with cyber security policies and compliance standards, knowledge of cyber security threats and tactics, threat intelligence within Azure, Investigation theory, SOC Wiki (maintenance and documentation creation), Azure Security Centre, Detection Rules, Analytical investigation & Coding skills (Query language like KQL or SQL), SIEM - Azure Sentinel (preferred) or Splunk, Kibana or equivalent SIEM product, MITRE ATT&CK framework techniques and tactics. OSINT, EDR, MS Defender for Cloud 

What’s in it for you?  

  • Be part of a Managed Services team that truly leverages modern technologies to solve real problems and provides top level of customer satisfaction
  • Work with a Microsoft Partner of the Year award winner with multiple specialisations, consistently punching above our weight on the global technology stage  
  • Be supported by experienced peers and leaders, with clear career pathways and ongoing learning, including Microsoft and HashiCorp certifications, all in a community that values technical expertise, and encourages innovation and practical experimentation with automation and AI  
  • Enjoy a supportive workplace that values inclusion, flexibility, diversity, and differences. We actively encourage and embrace all cultural backgrounds, genders, abilities, and circumstances  
  • Take advantage of largely working from home in our remote/hybrid workplace and enjoy the flexibility to balance your life  
  •  Thrive in a community with strong values #BeTrue #TeamUp #StandOut #ThinkAhead #FearLessAchieveMore 

   

Apply now, call or connect for further information.

About LAB3

Delivering automated Microsoft Azure cloud and AI engineering solutions.

Similar jobs

Security Analyst roles near Sydney, New South Wales
2w
Save
Mark Applied
Hide
Security Analyst- AU Citizen with Security Clearance
Sydney, New South Wales, Australia
HybridFull Time
Accenture
AccentureNYSE: ACN: Global professional services firm providing consulting and technology solutions.
2+ YOERequires strong security principles and risk management knowledge, SIEM and incident response experience, vulnerability management, cloud security knowledge, and familiarity with compliance frameworks.
SIEM, Azure, AWS, GCP
2w
Save
Mark Applied
Hide
Security Analyst- AU Citizen with Security Clearance
Sydney, New South Wales, Australia
HybridFull Time
Accenture
AccentureNYSE: ACN: Global provider of management consulting and technology services.
Requires security principles, risk management, monitoring, SIEM, incident response, vulnerability management, security testing, cloud security, and compliance framework experience.
SIEM, Azure, AWS, GCP
2w
Save
Mark Applied
Hide
Security Analyst (Managed Services: Security Operations Centre)
Sydney or Canberra or Melbourne or Australia
HybridFull Time
Lab3
Lab3: Azure-focused engineering and digital transformation consultancy services.
NV1 clearance or Australian citizenship required/eligible, SOC experience (Microsoft/Azure preferred), ability to work rotating shifts, skills with Sentinel/Azure Log Analytics/KQL/SQL and SIEM investigation and escalation.
Microsoft Sentinel, Azure Log Analytics, Azure Security Centre, KQL, SQL, Splunk, Kibana, MITRE ATT&CK, OSINT, EDR, MS Defender for Cloud, SIEM
1mo
Save
Mark Applied
Hide
Senior Security Analyst
Eveleigh, New South Wales, Australia
OnsiteFull Time
Commonwealth Bank
Commonwealth BankASX: CBA: Provides comprehensive retail, business, and institutional financial services.
Experience administering Jira Service Management and SharePoint, background in cyber security or security engineering, strong governance, reporting and stakeholder engagement skills.
Jira Service Management (JSM), SharePoint
1mo
Save
Mark Applied
Hide
Security Analyst
Symonston or Mascot
OnsiteFull Time
Northrop Grumman
Northrop GrummanNYSE: NOC: Develops and manufactures advanced aerospace, defense, and space systems.
1+ YOEAustralian citizenship required; 1+ year SOC or IT experience; understanding of networking, incident response and common attack techniques; motivated to develop cyber defence skills.
M365, IPS, EDR, SIEM
1d
Save
Mark Applied
Hide
Information Security Analyst
Sydney or Melbourne
HybridFull Time
Australian Red Cross
Australian Red Cross: Humanitarian organization providing emergency relief and community support.
3+ YOERequires 3+ years of cybersecurity operations experience, security platform administration, incident response, risk assessment, automation, and a bachelor's degree or equivalent industry experience.
SIEM, EDR, Email Security, Secure Web Gateway, Microsoft Security, SC-200, SC-100, CompTIA CySA+, CompTIA Security+, BTL1, GIAC, GCIH, GCIA, ISO 27001, CISSP, CISM, IAM
1d
Save
Mark Applied
Hide
Information Security Analyst
Sydney or Melbourne
HybridFull Time
Australian Red Cross
Australian Red Cross: Provides humanitarian aid and community support services throughout Australia.
3+ YOERequires 3+ years of cybersecurity operations experience, security platform administration, incident response, risk assessment, automation, and a relevant bachelor's degree or equivalent industry experience.
Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Microsoft Security, CompTIA CySA+, CompTIA Security+, BTL1, GIAC, GCIH, GCIA, ISO 27001, CISSP, CISM, IAM
2w
Save
Mark Applied
Hide
IT Security Analyst
Sydney, New South Wales, Australia
HybridFull Time
Diraq
Diraq: Builds scalable quantum processors using silicon CMOS technology.
Experience in IT/security operations, Linux and/or Windows administration, security monitoring/SIEM, vulnerability management, identity and access controls, and effective communication with technical and non-technical stakeholders.
Linux, Windows, SIEM