
SOC Analyst
- Brisbane, QLD
- Permanent
- Full-time
- Triage and prioritise alerts, incidents, and threat intel outputs from hybrid IT/OT environments.
- Conduct in-depth investigations of suspicious activity, including OT-specific threats.
- Coordinate and escalate security incidents to specialist response teams.
- Lead initial containment and recovery actions for incidents across our environment.
- Perform root cause analysis and recommend solutions to reduce risk.
- Collaborate with the Detection Engineering team to enhance detection coverage and quality.
- Analyse the latest OT malware and vulnerabilities to bolster defences.
- Support threat hunting and proactive identification of attack vectors in OT/ICS environments.
- Maintain and enhance response playbooks, tools, and documentation.
- Participate in post-incident reviews and support continuous improvement initiatives.
- Participate in the on-call roster rotation.
- A relevant tertiary qualification in IT, Software Engineering, Networking or Cyber Security (mandatory).
- One or more SOC/IR certifications (e.g., CSA, CySA+, GCIH, E|CIH) (mandatory).
- 2+ years' experience in a SOC/Incident Response role.
- Proven ability to work across security incidents from detection to resolution.
- Scripting skills in PowerShell, Python or Bash (mandatory).
- Strong experience with:
- Splunk (including SPL and admin tasks)
- CrowdStrike EDR
- Nozomi for OT/ICS visibility
- Windows/Linux/Unix and/or Azure administration
- Network security fundamentals
- Experience with Microsoft Sentinel (preferred).
- Development and growth opportunities.
- Access to mentoring and development programs.
- Discounts on selected health insurance funds, personal travel, gyms, vehicles and retail brands.
- Parental leave program and super booster.
Applications close: 07 Sep 2025 E. Australia Standard Time