Senior Analyst: Information Security Incident Response

NTT DATA, Inc.

City of Melbourne

Hybrid

AUD 120,000 - 150,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

NTT DATA in Melbourne is seeking an experienced Senior Managed Services Information Security Analyst to monitor, analyze and report on client data for delivering security recommendations. You will operate within a 24/7 global Cyber Defense Centre and collaborate with client stakeholders to optimize detection and response.

The role focuses on security incident handling, threat hunting, tool tuning, and ensuring adherence to SOPs while continually improving services for clients and the company.

Qualifications

  • Bachelor's degree in Information Technology or Computing.
  • Security certifications such as AZ-500, SC-200, Security+, CISSP or similar.
  • Experience in SOC Analysis Operations.
  • Experience with SIEM investigations.
  • Experience with Firewall, IPS, IDS, Proxy.
  • Experience handling security incidents end to end.

Responsibilities

  • Monitor and analyze client security logs in a 24/7 global Cyber Defense Centre.
  • Tune MSSP platform and client SIEM for better detection and reporting.
  • Handle security incidents end to end across multiple vectors.
  • Conduct threat hunting across client estates and cross-client hunting.
  • Follow SOPs and Run Books; propose improvements to standards.
  • Document best practices and update knowledge articles as required.
  • Collaborate with client delivery teams and colleagues to share knowledge and improve services.

Skills

SOC Analysis
SIEM usage
Incident handling
Threat hunting
Security tooling
Windows
Linux
Network security
Teamwork

Education

Bachelor's degree in IT/Computing
Security certifications (AZ-500, SC-200, Security+)

Tools

SIEM platforms
EDR
IDS/IPS
Firewall

Job description

Make an impact with NTT DATA

Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.

Your day at NTT DATA

The Senior Managed Services Information Security Analyst is an advanced subject matter expert, responsible for monitoring, analyzing, interpreting and reporting on the incoming client data for the purpose of delivering security information and recommendations to the clients, enabling the organization to deliver the contracted security services.

This role includes performing tasks such as security incident detection and response, security event reporting, threat hunting, content maintenance (tuning) and interacting with clients to ensure their understanding of the information generated, recommending client system changes as well as answering security related queries from the clients.

Key responsibilities
  • Works as part of a global Cyber Defense Centre (CDC) team that works 24/7 on rotational shifts.
  • Works with client stakeholders and relevant internal teams to tune the MSSP platform and client SIEM to enable more efficient detection, analysis and reporting.
  • Monitors security tools to review and analyze security logs from client environments.
  • Generates continuous improvement ideas for supported security tools/technologies, to enable improvements to the company services, employee experience and client experience.
  • Adheres to SOPs, customer Run Books and standard processes to ensure a globally consistent delivery whilst also proposing changes and improvements to these standards.
  • Utilizes and documents best practices and amend existing documentation as required.
  • Identifies opportunities to make automations which will help the clients and security delivery teams.
  • Performs security incident handling and response from several vectors including End Point Protection and Enterprise Detection and response tools, attack analysis, malware analysis, network forensics, computer forensics.
  • Utilizes a broad range of skills in LAN technologies, Windows and Linux O/S’s, and general security infrastructure.
  • Ensures usage of knowledge articles in incident diagnosis and resolution and assists with updating as and when required.
  • Undertakes threat hunting activities across both individual client estates, as well as cross client hunting.
  • Works closely with client delivery teams to support their activities related to client delivery.
  • Cooperates closely with colleagues to share knowledge and build a cohesive and effective team environment, benefiting the individual, the business and the client.
  • Supports major incident management processes, and escalations into the team.
  • Performs any other related task as required.
To thrive in this role, you need to have
  • Advanced knowledge on implementation and monitoring of a company supported SIEM or security tools/technologies/concepts.
  • Advanced knowledge on security architecture, worked across different security technologies.
  • Advanced knowledge and understanding of the operation of modern computer systems and networks and how they can be compromised.
  • Displays excellent customer service orientation and pro-active thinking.
  • Displays problem solving abilities and is highly driven and self-organized.
  • Excellent attention to detail.
  • Excellent analytical and logical thinking.
  • Excellent spoken and written communication abilities.
  • Team player with the ability to work well with others and in group with colleagues and stakeholders.
  • Ability to remain calm in pressurized situations.
  • Ability to keep current on emerging trends and new technologies in area of specialization.
Academic qualifications and certifications
  • Bachelor's degree or relevant qualification in Information Technology or Computing or a related field.
  • Security certifications such as (but not limited to) AZ-500, SC-200, Security+, CEH, CISSP, CISM or similar Certification in different networking technologies such as CCNA, JNCIA, ACCA, PCNSA, CCSA is advantageous.
Required experience
  • Advanced experience in SOC Analysis Operations.
  • Advanced experience in SIEM usage for investigations.
  • Advanced experience in Security technologies such as (but not limited to) Firewall, IPS, IDS, Proxy.
  • Advanced experience in dealing with technical support to clients.
  • Advanced experience in handling security incidents end to end.
  • Advanced experience in configuring/managing security controls, such as SIEM, Firewall, IDS/IPS, EDR, NDR, UTM, Proxy, SOAR, Honeypots and other security tools.
  • Advanced experience in Security Analysis or Engineering preferably gained within a global services organization.
Workplace type

Hybrid Working

About NTT DATA

NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.

Equal Opportunity Employer

NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category.

Third parties fraudulently posing as NTT DATA recruiters

NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Analyst: Information Security Incident Response
Senior Analyst: Information Security Incident Response

NTT DATA, Inc. • Sydney

Hybrid
AUD 120,000 - 180,000
Principle Analyst Cybersecurity Incident
Principle Analyst Cybersecurity Incident

NTT DATA, Inc. • City of Melbourne

On-site
AUD 100,000 - 130,000
Senior Analyst: Information Security Incident Response
Senior Analyst: Information Security Incident Response

NTT Limited • Sydney

On-site
AUD 170,000 - 210,000
Microsoft Business Applications Solutions Architect
Microsoft Business Applications Solutions Architect

NTT America, Inc. • City of Brisbane

On-site
AUD 120,000 - 180,000
AI Inside Transformation Consultant
AI Inside Transformation Consultant

NTT DATA, Inc. • City of Brisbane

On-site
AUD 100,000 - 140,000
Technical Lead
Technical Lead

NTT DATA, Inc. • Canberra

On-site
AUD 140,000 - 170,000
Platform Engineer - NOC Level 2
Platform Engineer - NOC Level 2

NTT DATA, Inc. • Canberra

On-site
AUD 110,000 - 150,000
Technical Lead
Technical Lead

NTT Limited • Canberra

On-site
AUD 150,000 - 190,000
Sales Specialist Business Applications
Sales Specialist Business Applications

NTT DATA, Inc. • Council of the City of Sydney

Hybrid
AUD 110,000 - 170,000
Microsoft Applications AI Consultant
Microsoft Applications AI Consultant

NTT DATA, Inc. • Council of the City of Sydney

On-site
AUD 120,000 - 160,000