Skip to main content
AfterDuty

Senior SOC Analyst L3

Deloitte · Brisbane, Queensland

Type
Full-time
Posted
6 days ago

Overview

Your incident command and multi-agency coordination experience maps to SOC leadership.

About this role

Description

Job Requisition ID: 41774

  • Tackle big issues like cyber, trust, resilience and digital transformation
  • Be part of market-leading projects with global scale and complexity
  • Mentoring, coaching and leadership programs to help you make an impact that matters

What will your typical day look like?

Be part of the SOC leadership team, help make decisions that define our strategy, drive change and provide better services for our clients. Help us do something that really matters - keep Australian people and Australian companies safe – while enjoying work and the fast paced environment that rewards you for your efforts, encourages your ideas and recognises that work life balance is important.

Reporting to the Security Operations Centre (SOC) Team Lead, the L3 Security Analyst fills a leadership role in the Deloitte 24x7 SOC. Our mandate is to provide fully managed detection and response capability to a suite of international clients. The role will be part of the L3 escalation roster, providing first class incident response capability to identified threats and alerts using the latest tools, processes, and techniques.

This senior role fills two critical functions in the SOC

  • Incident Response - Acting as an escalation point for L1 and L2 SOC Analysts and a technical point of contact for our clients during Incident Responses both within and outside business hours. Using defensive measures and telemetry collected from a variety of sources to provide guidance to junior SOC members to identify, analyse, and report events that occur or might occur within client networks in order to protect information, information systems, and networks from threats.
  • Lead a Capability area – Work with a dedicated subset of analysts to shape process and improve delivery outcomes for a select group of high profile clients. Enjoy flexibility to drive the agenda and move the needle on day to day operations.

Enough About Us, Let's Talk About You

You may have all or some of the following skills/experiences:

  • Experience as an escalation point to ensure timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.
  • Analysis of security events from multiple sources including but not limited to events from the Security Information and Event Management tool, network intrusion systems and Host based Intrusion Prevention tools
  • Analyse identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
  • Determine tactics, techniques, and procedures (TTPs) for intrusion sets.
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack.
  • Collaborate with other L3s to ensure Threat Hunting, Threat Intel, Detections, Tuning and other L3 tasks are completed as required
  • Provide knowledge and expertise to L1 and L2 Analysts including night shift Analysts to upskill where possible
  • Creation and tuning of detections in response to new or observed threats within customer environments
  • Review and document and improving processes to contribute to the overall security of the environment
  • Must be an Australian citizen and must be able to attain and maintain an Australian Federal Government security clearance at the NV1 level or higher.

Why Deloitte?

At Deloitte, we focus our energy on interesting and impactful work. We’re always learning, innovating and setting the standard; making a positive difference to our clients and our society. We putcoaching at the heart of what we do, helping our people grow their careers in any direction – whether it be up, moving into something new, or even moving across the world.

We embrace diversity, equity and inclusion. We have a diverse collection of people from different backgrounds, with different experiences, gender identities, abilities and thinking styles. What binds us together is a shared commitment to value everyone’s perspective and to cultivate inclusion; so that our work environment is a safe space we can all belong.

We value in-person connection with our clients and our colleagues. We offer several ways for you to work flexibly so that you can serve your clients, stay connected with your team, and manage your personal priorities.

We help you live and work well. To support your personal and professional life, we offer a range of perks and benefits , including retail discounts, wellbeing leave, paid volunteering days, twelve flexible working options, market-leading parental leave and return to work support package.

Next Steps

Sound like the sort of role for you? Apply now, we’d love to hear from you!

By applying for this job, you’ll be assessed against the Deloitte Talent Standards. We’ve designed these standards so that you can grow in your career, and we can provide our clients with a consistent and exceptional Deloitte employee experience globally. The preferred candidate will be subject to background screening by Deloitte or by their external third-party provider.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Brisbane

Why this fits a police background

  • Police experience explicitly valued
  • Incident command & response
  • Security operations
  • Training & coaching delivery
  • Team & shift leadership

More cyber security & digital forensics jobs for ex-police

  • GRC Principal

    CyberCX · Brisbane

    Full-time

    About CyberCX CyberCX has united Australia and New Zealand’s most trusted cyber security companies to deliver the most comprehensive end-to-end cyber security services offering to enterprises and governments.

    Posted 6 days ago

  • Your incident command and risk assessment experience from policing directly supports security governance and incident management.

    Posted 6 days ago

  • Security Analyst

    Auto & General Australia · Brisbane

    Full-time

    Your investigative mindset and digital evidence handling experience directly apply to cyber incident response.

    Posted 7 days ago

  • Manager - GRC

    CyberCX · Brisbane

    Full-time

    About CyberCX CyberCX is the leading independent cyber security services organisation in Australia and New Zealand. We bring together the region’s most trusted cyber security companies to deliver end-to-end services to enterprise and government.

    Posted 8 days ago