Cybersecurity SOC Analyst

Kirra Services

Canberra

On-site

AUD 90,000 - 120,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

SupplyNationCertified
Indigenous-owned

Job summary

Kirra Services, Canberra-based IT services provider, seeks a Cyber Security SOC Monitoring Analyst to monitor, detect, and respond to security events across enterprise systems, applications, and cloud environments.

You will triage incidents, perform initial forensic data gathering, and work with application teams to identify vulnerabilities while contributing to detection use cases and security improvements. On-site in Canberra with Australian citizenship and NV1 clearance preferred.

Qualifications

  • Experience in security monitoring, incident triage, or SOC operations in enterprise or government environments.
  • Strong understanding of application security concepts and secure development practices.
  • Hands-on experience with SIEM tools such as Microsoft Sentinel, Splunk, QRadar, or equivalent.

Responsibilities

  • Monitor, analyse, and triage security events, alerts, and incidents detected through SIEM, SOAR, endpoint protection, and cloud security tools.
  • Investigate suspicious activity across applications, networks, identities, and cloud environments to determine severity and potential impact.
  • Escalate verified security incidents to senior analysts and incident response teams, providing detailed analysis and recommended actions.
  • Conduct initial forensic data gathering to support incident investigation and containment activities.
  • Monitor application security events and work with application teams to identify vulnerabilities, misconfigurations, and emerging threats.
  • Support the development, tuning, and optimisation of detection use cases, SIEM rules, and automation workflows.
  • Assist in vulnerability assessment activities by analysing vulnerability reports, validating findings, and tracking remediation progress.
  • Contribute to threat intelligence enrichment and ensure relevant threat indicators are incorporated into monitoring platforms.
  • Maintain security monitoring documentation, runbooks, dashboards, and incident records.
  • Participate in continuous improvement of DSOC processes, detection capabilities, and response maturity.
  • Support compliance with security policies, standards, and regulatory requirements.

Skills

Security monitoring
Incident triage
SOC operations
Analytical thinking
Communication skills

Tools

Microsoft Sentinel
Splunk
QRadar
EDR/XDR

Job description

The Cyber Security SOC Monitoring Analyst is responsible for the continuous monitoring, detection, analysis, and triage of security events across enterprise systems, applications, and cloud environments. The role provides expertise in threat detection, incident escalation, vulnerability identification, and secure application practices. Operating within a Distributed Security Operations Centre (DSOC), the position ensures timely response to cyber threats and supports ongoing improvement of the organisation’s security posture.

Key Responsibilities
  • Monitor, analyse, and triage security events, alerts, and incidents detected through SIEM, SOAR, endpoint protection, and cloud security tools.
  • Investigate suspicious activity across applications, networks, identities, and cloud environments to determine severity and potential impact.
  • Escalate verified security incidents to senior analysts and incident response teams, providing detailed analysis and recommended actions.
  • Conduct initial forensic data gathering to support incident investigation and containment activities.
  • Monitor application security events and work with application teams to identify vulnerabilities, misconfigurations, and emerging threats.
  • Support the development, tuning, and optimisation of detection use cases, SIEM rules, and automation workflows.
  • Assist in vulnerability assessment activities by analysing vulnerability reports, validating findings, and tracking remediation progress.
  • Contribute to threat intelligence enrichment and ensure relevant threat indicators are incorporated into monitoring platforms.
  • Maintain security monitoring documentation, runbooks, dashboards, and incident records.
  • Participate in continuous improvement of DSOC processes, detection capabilities, and response maturity.
  • Support compliance with security policies, standards, and regulatory requirements.
Required Skills and Experience
  • Experience in security monitoring, incident triage, or SOC operations in enterprise or government environments.
  • Strong understanding of application security concepts, common vulnerabilities (e.g., OWASP Top 10), and secure development practices.
  • Hands‑on experience with SIEM tools such as Microsoft Sentinel, Splunk, QRadar, or equivalent.
  • Familiarity with SOAR platforms, EDR/XDR technologies, threat intelligence tools, and cloud security controls.
  • Ability to analyse logs, alerts, and telemetry across applications, endpoints, networks, and cloud platforms.
  • Understanding of security frameworks and standards such as ASD Essential Eight, ISO 27001, and NIST.
  • Strong analytical and problem‑solving skills with the ability to make sound judgements during security events.
  • Effective communication skills and the ability to collaborate with security, operations, and application teams.
  • Required Australian Citizenship and Mandatory AGSVA NV1 Clearance.
  • Must be able to work 5 days from client site in Canberra.
WHO WE ARE

Kirra Services is a leading provider of IT services and recruitment personnel, headquartered in Canberra, ACT. Award-winning winners of the Seek SARA 2025 Small Recruitment Company of the Year, we partner closely with a range of Federal Government agencies and are continuously seeking talented professionals to join our growing team.

Kirra Services is proudlySupplyNationCertified and majorityIndigenous-owned. We are committed to creating opportunities for all Australians and strongly encourage Aboriginal and Torres Strait Islander candidates to apply for all roles.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DSOC Cyber Threat Detection & Incident Analyst
DSOC Cyber Threat Detection & Incident Analyst

Kirra Services • Canberra

On-site
AUD 90,000 - 120,000
SupplyNationCertified
Indigenous-owned
SOC Analyst Canberra
SOC Analyst Canberra

NCC Group • Canberra

On-site
AUD 90,000 - 120,000
Security Operations Center (SOC) Level 2 Analyst
Security Operations Center (SOC) Level 2 Analyst

AC3 • City of Melbourne

Hybrid
AUD 90,000 - 120,000
Cyber Security SOC Analyst
Cyber Security SOC Analyst

C4I Solutions Pty • Council of the City of Sydney

On-site
AUD 110,000 - 160,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6
SOC Analyst L2
SOC Analyst L2

AC3 • City of Melbourne

On-site
AUD 148,000 - 157,000
CBD location
Start ASAP
12-month contract with renewal
+2
Security Operations Center Analyst
Security Operations Center Analyst

Kaizen Global Technologies • City of Melbourne

On-site
AUD 80,000 - 120,000
SOC Analyst - Team Lead
SOC Analyst - Team Lead

Anson McCade • Council of the City of Sydney

Hybrid
AUD 90,000 - 130,000
Security Analyst
Security Analyst

3020 NG Australia Pty Ltd. • Canberra

On-site
AUD 70,000 - 90,000
Professional development
Paid annual leave 2 weeks
Novated car lease
+4
Cyber Security Analyst
Cyber Security Analyst

Aplus Agency • Adelaide

On-site
AUD 90,000 - 120,000
SOC Analyst (Level 1, 2 & 3) - MSSP - Leading Cyber Security Provider!
SOC Analyst (Level 1, 2 & 3) - MSSP - Leading Cyber Security Provider!

Saul Recruitment • Council of the City of Sydney

Hybrid
AUD 90,000 - 180,000
Hybrid WFH
Training & Certifications
Referral bonus