A complete application in a minute — tailored resume and cover letter, ready to send.
Hammerjack Pty Ltd is seeking a Security Analyst to perform detailed, repeatable security operations. The role focuses on monitoring SIEM environments, closing or escalating events, and maintaining incident documentation.
You will support the MDR team in detection, containment, and remediation activities. The candidate should have a Bachelor's degree in a related field and at least 1 year of MDR/SOC experience, with strong analytical and communication skills, and familiarity with SIEM tools such
The primary role of a Security Analyst is the detailed and repeatable execution of all operational tasks as documented in processes and subordinate procedures. Specifically, these analysts will be responsible for monitoring the SIEM tools for security events and closing or escalating those events as necessary. Security Analysts maintain the group email address and distribution lists, answer the main phone lines, and update all relevant documentation such as shift logs and tickets. Additionally, assist the MDR Analyst in an incident workflow and assist the MDR team in incident detection, remediation and communicate with external teams in proper incident resolution.
Rapidly identify, categorize, prioritize and investigate events as the initial cyber event detection group for the enterprise using all available security logs and intelligence sources to include but not limited to:
Continuously monitor SIEM and logging environments for security events and alerts to threats, intrusions, and/or compromises, including:
Validate alerts as they come in to eliminate false positives and use other internal and external data sources to enrich alerts with additional context.
Perform triage of service requests from customers and internal teams.
Use playbook procedures to carry out standard plays for routine event types and escalated alerts to Level 2 Analysts for further triage and remediation.
Assist with containment of threats and remediation of environment during or after an incident.
Act as a participant during Threat Hunting activities at the direction of one or more Incident Response Handlers.
Document event analysis and write comprehensive reports of incident investigations.
Proactively improve security-related operational processes and procedures.
Use available security tools for historical analysis purposes as necessary for detected events; for example, historical searches using SIEM tools.
Maintain operational shift logs with relevant activity from the Analyst's shift. Document investigation results, ensuring relevant details are passed to Level 2 or MDR Analysts for final event analysis.
Update/reference knowledgebase tool (e.g., Confluence) as necessary for changes to processes and procedures and ingest of daily intelligence reports and previous shift logs.
Conduct research and document events of interest within the scope of IT Security.