Expoint - all jobs in one place

Finding the best job has never been easier

Limitless High-tech career opportunities - Expoint

Rapid7 Security Operations Analyst II - InfoSec 
Australia, Victoria, Melbourne 
979991445

28.07.2024

About the Role

The Security Operations Analyst will be responsible for reviewing alert data to identify evil activity in the Rapid7 environment. In this role you will be empowered to steer investigations such as evidence acquisition and analysis, figuring out how the intrusion began, identifying any malicious or unexpected activity related to the event, etc..

Based on this investigation you will be responsible for writing an Incident Report which includes your technical analysis, documented findings, and remediation recommendations. You will have fellow analysts who will be ready to help you if you encounter a problem or have a question, including Senior and Lead Analysts.

In this role, you will:

  • Deliver world-class threat detection services using traditional threat intelligence-based detection and user behavior analytics.

  • Work on the threat detection team in the Rapid7 SOC.

  • Conduct or assist with Rapid7 incident response investigations.

  • Assist in capturing and deploying knowledge of attack methodologies.

  • Drive research initiatives to further threat detection capabilities and brand reputation through media interaction, public speaking, and blogs.

  • Provide continuous input to the Rapid7 product development team.

The skills you’ll bring include:

  • 1-2 years of experience in an active hands on technical role

  • Problem solving, critical thinking, and ingenuity

  • A passion for cybersecurity with a keen curiosity and excitement to learn

  • Knowledge of Windows, Mac, and/or Linux operating systems

  • The ability to identify processes in need of improvement and implement solutions

  • Certifications such as Sec+ or GCIH, or actively pursuing

Nice to have:

  • Experience with forensic network investigations, endpoint investigations, malware analysis, incident response, threat hunting, or any other job functions normally found within a SOC

  • Endpoint detection experience