Join a team where you help customers use the latest technology, where you receive cutting edge training and where you’re empowered to make a difference. We need an enthusiastic person to provide technical direction to our customers to help them realise their full potential. We need you to help them ensure their IT environments are secure, optimised and healthy.

UNIFY Solutions provide technical direction to customers who are deploying, maintaining or innovating solutions using the latest technology. The ideal candidate will have the ability to combine their technical passion, creativity and customer focus to deliver great solutions to our customers and ensure they get the best out of our technologies and solutions.

Position Details

UNIFY is looking for a Security Operations Centre (SOC) Level 3 Analyst. This position supports the SOC as an advanced escalation point identifying and addressing potential information security incidents.

The SOC Level 3 Analyst also serves as a technical trainer and mentor to junior analysts for multiple SOC technologies providing guidance and leadership as required.

Responsibilities

Service Delivery

  • Oversee completion of day-to-day checklist(s), including log review, management report scheduling & running, alert analysis, and escalation follow up activity status
  • Remain current on cyber security trends and intelligence (open source and commercial) in order to guide the security analysis & identification capabilities of the SOC team
  • Perform advanced event and incident analysis, including baseline establishment and trend analysis
  • Provide timely advice and guidance on the response action plans for events and incidents based on incident type and severity
  • Ensures that all identified events are promptly validated and thoroughly investigated
  • Identify opportunities for SOC and client system tuning
  • Serve as the escalation point for junior analysts
  • Follow detailed operational processes and procedures to analyse, escalate, and support the remediation of critical information security incidents
  • Document and report changes, trends and implications concerning the design and integration of evolving systems and solutions
  • Oversee documentation owned by the SOC team including but not limited to Standard Operating Procedures (SOPs) and Operational Level Agreements (OLAs)
  • Manage incidents up to the preliminary forensics processes

Business Development and Relationship Management

  • Improve and develop new content based on observed and measured SOC activity
  • When necessary, and with the SOC Managers approval, devise and document new operational procedures
  • Responsible for identifying training needs and providing input to the development of junior analysts
  • Provide leadership, support and guidance to junior analysts in daily operations
  • Fulfil SOC Manager responsibilities in the absence of the SOC Manager

Collaboration

  • Collaborate with technical architects and partners to identity and validate emerging opportunities

Best Practice and Personal Development

  • Utilise best practice and industry standards in performing daily operations
  • Work with customers and internal leads and architects in the delivery and ongoing management of secure Azure solutions

Reporting

  • Prepare full, detailed and accurate security reports as required by the SOC Manager
  • Other relevant duties as required by the SOC Manager

Selection Criteria

Qualifications and Experience

  • Bachelor’s degree in Computer Science, Information Technology or equivalent educational or professional experience and/or qualifications;
  • Minimum 4 years’ of information security related experience, in areas such as: security operations, incident analysis, incident handling, and vulnerability management or testing, log analysis, intrusion detection;
  • Minimum 2 years’ experience in a Level 2 SOC Analyst role;
  • Knowledge related to Microsoft security recommendations (e.g. Securing Privileged Access, Credential Theft Mitigations);
  • Experience with SOC ticketing systems and proven SOC process knowledge;
  • Basic understanding of Azure Security Services (e.g. Azure Advanced Threat Protection, Azure Information Protection, Azure Security Center, Azure Log Analytics);
  • In depth, hands-on experience with at least two of the following technologies:
    • Azure Security;
    • Windows Server Administration
    • (Azure) Active Directory;
    • Windows Workstation;
    • Routers /Switches Management;
    • Unix administration, Firewall Management; or
    • SANS/NAS, Web servers, IAM/AAA, IDS/IPS, System vulnerability scanning tools, Application/Database vulnerability scanning tools, mobile device analysis or Secure coding.

Values and Communication

  • Exceptional communication skills and the ability to communicate appropriately across all levels (e.g. executives through to technical teams);
  • Superior analytical and problem-solving skills;
  • Excellent organisational, coordination, interpersonal skills;
  • Self-motivated to improve knowledge and skills;
  • Strong attention to detail;
  • Demonstrated leadership, team-building abilities, support and mentor others;
  • Works well both in a team environment as well as autonomously; and
  • A strong desire to understand the ‘what’ as well as the ‘why’ and the ‘how’ of security incidents.

Desirable Criteria

  • In depth experience with the following technologies:
    • Leading SIEM solutions (e.g. Azure Sentinel);
    • IDS/IPS, network- and host- based firewalls;
    • Data Loss Prevention (DLP);
    • Database Activity Monitoring (DAM);
  • In depth understanding of attack vectors such as network probing/ scanning, DDOS, malicious code activity and possible abnormal activities, such as worms, Trojans, viruses, etc.;
  • Advanced knowledge in system security architecture and security solutions;
  • Advanced knowledge in networking, message transport, and endpoint security; and
  • Advanced level technical certifications or equivalent experience:
    • CISSP;
    • GSEC; or
    • GCIH

Other Requirements

  • Ability to work in Australia or New Zealand
  • An understanding of and commitment to compliance of Occupational Health and Safety requirements
To enquire about this role, please enter the form below.
Looks good!
Please enter your e-mail address so we can contact you.
Looks good!
Please enter some details about your interest in the role.
This form uses ReCaptcha to ensure interactions with our site are from legitimate users. Please accept the use of recommended storage before submitting the form. Find out more at the Privacy Center.