Skip to main content
AfterDuty

Security Operations Center (SOC) Level 2 Analyst

AC3 · Melbourne, Victoria

Type
Contract
Posted
9 days ago

Overview

Your incident investigation and analytical skills from policing transfer directly to managing cyber security incidents through the full lifecycle.

About this role

DISCLAIMER: Must be an Australian Citizen

About Our Client Our client is a global cybersecurity services provider delivering advanced managed security solutions to enterprise organisations across multiple industries.

Their 24x7 Security Operations Centre provides threat detection, incident investigation and end-to-end incident response across multiple customer environments. The team works closely with security engineers, threat intelligence specialists and consulting teams to deliver comprehensive cyber defence capabilities.

What You Will Do As a SOC Analyst, you will work within a 24x7 Security Operations Centre, taking ownership of security incidents through the full investigation and response lifecycle.

This is not purely an alert-monitoring role. You will be expected to investigate incidents from initial detection through to resolution, including:

  • Triage – analyse and validate alerts, determine severity and investigate potential security incidents
  • Containment – identify affected systems/accounts and support actions to contain active threats
  • Eradication & Remediation – investigate root cause, remove threats and work with relevant teams to remediate vulnerabilities or compromised systems
  • Lessons Learned – contribute to post-incident reviews, document findings and recommend improvements to prevent recurrence
  • Monitor and investigate alerts across SIEM, SOAR, EDR/XDR and cloud security platforms
  • Analyse logs from firewalls, endpoints, servers, identity platforms and cloud environments
  • Document investigations, actions and outcomes accurately
  • Support threat intelligence enrichment and vulnerability monitoring
  • Participate in shift handovers and continuous SOC improvement

The role operates on a 4 days on / 3 days off roster, with day shifts in the office and night shifts from home.

What Our Client Is Looking For

  • Australian Citizenship is mandatory
  • Hands-on SOC / Cyber Security Operations experience
  • Demonstrated experience investigating security incidents through the full incident lifecycle – triage, containment, eradication/remediation and lessons learned
  • Strong incident investigation and analytical skills
  • Experience with SIEM and EDR/XDR technologies
  • Understanding of network security, Windows/Linux environments, firewalls and cloud environments
  • Ability to analyse security logs and determine root cause
  • Understanding of incident response processes and escalation procedures
  • Strong communication and incident documentation skills
  • Ability to work effectively within a 24x7 SOC environment

Security certifications such as Security+, CySA+, SC-200 or relevant vendor certifications are advantageous but not essential.

Benefit

  • Convenient CBD location
  • Start ASAP
  • Work with a global cybersecurity services provider
  • Exposure to complex enterprise security incidents and multiple customer environments
  • 12-month contract with potential renewal
  • 4 days on / 3 days off roster
  • $800 - $850 per day

If you have strong hands-on SOC experience and can confidently manage investigations beyond initial alert triage through containment, remediation and post-incident review, we would like to hear from you.

Apply now to learn more.

About security roles for ex-police

Security management, operations and consultancy roles. Years of operational policing — command, incident response, public order — translate directly into corporate security, and employers in this sector actively rate police experience.

See all security jobs in Melbourne

Why this fits a police background

  • Intelligence & OSINT
  • Incident command & response
  • Investigative casework
  • Security operations
  • Team & shift leadership

More security jobs for ex-police

  • Security Operations Orchestration Manager

    Corrs Chambers Westgarth · Melbourne

    Full-time

    Your incident command, crisis management and multi-agency coordination experience directly maps to leading security operations and incident response.

    Posted 7 days ago

  • Technical Director Security - SCEC

    Mott MacDonald · Melbourne

    Full-time

    Your security clearance, command experience and incident management are directly transferable to leading secure infrastructure projects.

    Posted 8 days ago

  • Loss Prevention Specialist

    Hanes Brands Australasia · Melbourne

    Full-time

    Your investigative skills and incident-handling experience translate directly to loss prevention audits and investigations.

    Posted 9 days ago

  • Security Supervisor

    Western Health Newfoundland · Melbourne

    Full-time

    Your incident command, conflict management and risk-assessment experience maps directly to supervising hospital security operations.

    Posted 10 days ago