Cyber SOC Specialist

vor 4 Wochen


Sydney, Österreich Cyber Crime Vollzeit

BT Group From Ultra Fast Full Fibre broadband to TV & Mobile, BT helps UK families, communities & companies reach their potential. Find more BT products here.

View company page

Our purpose is to use the power of communication to make a better world. For each other, for our customers, for society and our communities.

Security incidents carry financial cost and can impact our brand and reputation. Proactively preventing, detecting and responding to incidents allows BT to reduce risk to the business and our customers. Any large organisation needs a centralised facility responsible for every aspect of Security, hardening the business posture from attack.Your role places real value in finding and adapting ways to protect and support our people, customers & communities.

Why this job matters

The SOC team’s goal is to detect, analyse, and respond to cybersecurity incidents using a combination of cutting edge technology and a strong set of processes. SOC staff work across the organisation, typically with incident response teams to ensure security issues are addressed quickly upon discovery. As a member of the Cyber Security Operations team you will respond to immediate complex security threats on BT and commercial networks across the globe, working in a 24x7 Security Operation Center (SOC) environment. You will monitor, analyse and defend against malicious or unusual activity that could be indicative of a security incident or compromise.

What I’ll be doing – your accountabilities

  • Manage the daily resource within the CySOC, ensuring operational workload is allocated and SLA’s are met
  • Investigate and qualify L3 incidents. Receive incidents from L2 and escalate if needed
  • When required, participate in STAG, Triage and PIR calls to direct workload, manage risk and act as an escalation for CySOC tasks
  • Ensuring the analytical approach applied by L1 & L2 Security Analysts is thorough, considered and comprehensive and conduct regular case reviews
  • Lead on knowledge management within the SOC on specific technologies and tools including runbooks, training sessions and knowledge calls
  • Liaise with L1-L3, Vendors and stakeholders in relation to cyber security issues, provide future recommendations and to identify advanced attacker tactics and techniques
  • Maintain compliance with relevant security requirements based in BT Policies, CySOC Policies and ISO27001.
  • Providing thought leadership to support the shaping of Security Analyst’s, with a mind-set of moving up the value chain in terms of experience, knowledge and skills.
  • Deliver and verify plans for monitoring, maintaining and improving the integrity of security processes and systems.
  • Deliver and verify the implementation and operational end to end delivery for a subset of an IT security service and for a subset of the IT Security strategy, policy, procedures, processes, systems, threat identification & response that provide IT security services and solutions for or on security infrastructure.
  • Responsible for performing highly detail-oriented work that involves performing deep security threat analysis of various malware and web attacks, Network attacks, relevant event data or forensic artefacts

Skills required for the job

  • Knowledge of various security methodologies and processes and can apply these to incidents investigations and management
  • Good understanding of Network Security. Including TCP/IP Protocols, network analysis, and network/security applications
  • Ability to provide relevant and timely analysis and recommendations to customers based on analysis of events from a range of platforms
  • Customer-facing, with good report-writing skills and strong communication skills at all levels
  • Ability to provide technical and service leadership to L1 and L2 analysts. Be a thought leader in the SOC
  • Ability to consistently deliver to deadlines while prioritising competing demands for time, without sacrificing quality
  • Good understanding of ITIL processes, including Change Management, Incident Management and Problem Management
  • Willingness to share information, improve documentation, and train other analysts
  • Knowledge of network technologies, Windows and Unix administration
  • Knowledge of typical security devices such as firewalls, intrusion detection systems, AV and End Point security, Web Application Firewalls, event correlation systems, etc.
  • Understanding of security threats, attack scenarios; analysis and intrusion detection skills
  • Proven analytical skills and out-of-the box thinking
  • Ability to apply non standard processes to incidents and investigations
  • Knowledge of at least one security methodologies as MITRE ATT&CK Framework.
  • Excellent management skills with the ability to build high performing, well motivated teams
  • Proficient in Microsoft Office Applications

Experience you would be expected to have

  • Experience working in a fast paced operational security environment
  • Experience of general incident management process
  • A background in data communications with particular knowledge on Internet working and IP skills. Vendor Security technologies: SIEM, IDS/IPS, Security Analytics & Correlation
  • CompTia Network+, Security+, CSA+ and/or CEH or equivalent
  • Experience working in a customer facing environment
  • Experience leading and coaching a team of technology professionals
  • Knowledge of Security management, network and information security, people security and running of one or more services within a Security Operations Centre.
  • Analysis & interpretation of data into useful management information
  • Incident communications to relevant parties – How, What, Who?
  • Team responsibilities and activities
  • Identification of Continuous Improvement opportunities
  • May involve management of a team in the delivery of a security service or solution.

Security isn’t always the first thing that comes to mind when you think of BT, but when it comes to keeping everyone safely connected, We Are The Protectors. We deal with thousands of cyber-attacks every day, so that millions of people can safely go about their daily lives and run their businesses. We deliver vital work at scale, with real breadth and impact. We connect for good.

This is an opportunity to play your part and protect our company, our customers and our communities from cyberattack. Be part of a dedicated team and get ready to be challenged every day to make the most of your skills and experience. You’ll learn from those around you, and from outstanding training and development resources to become even better at what you do. With the best technology at your fingertips, you'll be part of a friendly and flexible working environment where your contribution is always valued.

Security is one of the fastest growing parts of our global organisation. We areprotecting our networks from more than 6,500cyber attackseach day, investingover £40m in research each year - and in employing nearly 3,000 people, we’re alsothe largest private cyber employer in the UK.With incredible opportunities to learn,develop and grow your skills, we’ll invest in you, nurture your potential and shapeyour future – whatever your background or experience.

In today’s world, safe and secure digital connections have never been more vital.You’ll be joining a global company operating at the forefront of the information age:BT employs 90,000 people in 180 countries. With huge scale, we’re capable ofachieving great things, striving to be personal, simple, and brilliant for ourcustomers whilst creating an inclusive working environment where people from allbackgrounds can succeed. Play your part. Make a difference. We are the Protectors.

Although these roles are listed as full-time, if you’re a job share partnership, work reduced hours, or any other way of working flexibly, please still get in touch.

Studies have shown that women and people who are disabled, LGBTQ+, neurodiverse or from ethnic minority backgrounds are less likely to apply for jobs unless they meet every single qualification and criteria. We're committed to building a diverse, inclusive, and authentic workplace where everyone can be their best, so if you're excited about this role but your past experience doesn't align perfectly with every requirement on the Job Description, please apply anyway - you may just be the right candidate for this or other roles in our wider team.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • Sydney, Österreich Work in Rail Vollzeit

    Also known as: IT security specialist, IT security administrator, Cyber security administrator, Cyber security analyst Is this role right for you?New cyber threats are emerging every day. You’ll need to stay across the latest developments and be able to adapt to the changing threat environment. At times, you’ll need to think fast to prevent a...


  • Sydney, Österreich Ratp Dev Vollzeit

    ContextRATP Dev, a subsidiary of the RATP group, operates and maintains urban and interurban transport networks in 15 countries through more than 100 subsidiaries. Thanks to the professionalism of our 24,000 employees and the expertise of a world leader in public transport, our subsidiaries provide performance, dynamism and reliability to our customers and...

  • SOC Analyst Level 2

    vor 4 Wochen


    Sydney, Österreich Experis ManpowerGroup Sp. z o.o. Vollzeit

    Experis is working with our Global Cyber Security client, headquartered in Sydney CBD, to assist in sourcing a talented SOC Analyst Level 2 Support. Our client is a leader in the cybersecurity industry, with a commitment to safeguarding it's clients organisations' digital assets against evolving threats and vulnerabilities.The Role:Position: SOC Analyst...

  • Cyber Security Analyst

    vor 4 Wochen


    Sydney, Österreich Covestic Inc Vollzeit

    The Cyber Security Team Lead supports and manages day-to-day SOC, personnel, projects and issues. This person is responsible for coaching and offering feedback to Analysts, as well as the daily execution of the service. How You Will Make an Impact: Lead, develop and support the frontline SOC teamSet goals, develop action plans for service growth and areas of...


  • Sydney, Österreich Balancerecruitment Vollzeit

    Senior Cyber Security Analyst, DFIRGreat opportunity to join a global organisation and join a fantastic cyber security team - flex. locationPermanent opportunityHybrid work arrangementDFIR focusOur client is a very successful and well established global organisation and a powerhouse and leader in the integrated supply chain space, supporting multiple...


  • Sydney, Österreich ING Bank N.V. Vollzeit

    Maintaining security and being risk adverse are at the top of our priorities here at ING! The Security team provides security capabilities and consultancy that enable the entire organisation to be successful in a safe and secure way.With this in mind, we have a role for an experienced Cyber Security Specialist to join our Tech Security team to manage the...


  • Sydney, Österreich McGrathNicol Services Pty Ltd. Vollzeit

    McGrathNicol is a specialist Advisory and Restructuring firm, helping businesses improve performance, manage risk, and achieve stability and growth.Our Cyber team specialise in working with clients to proactively manage technology and information security risks.We help set governance strategies, design frameworks and respond to time critical cyber and...


  • North Sydney Council, Österreich Nine Vollzeit

    Nine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and Digital.Nine’s assets include the 9Network, major...


  • Sydney, Österreich Cuscal Vollzeit

    Cuscal – where curiosity and expertise are rewarded.Be part of a smaller team taking on a bigger role – a role where your curiosity, your energy, your ambition is rewarded. You’ll grow with us in an unconventional way where sideways develops you as much as up; where voices are heard and ideas are tested, and new things are created in fast-paced and...


  • North Sydney Council, Österreich Nine Vollzeit

    Nine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and Digital.Nine’s assets include the 9Network, major...


  • Council of the City of Sydney, Österreich Inview Consulting Vollzeit

    Security (Information & Communication Technology) We have a fantastic opportunity for an Information Security Specialist focused around GRC. Responsibilities will include:Providing risk assessment (both internally and externally to clients)Managing regular reviews, penetration testing, compliance programs and auditsManaging and contributing to compliance...

  • Security Consultant

    vor 4 Wochen


    Sydney, Österreich InfoTrust Co. Vollzeit

    Security Consultant (Penetration Tester) SydneyExciting development opportunities and a competitive package working in the fast-growing Cyber Security IndustryWorking for a young and innovative company that believes in working hard and celebrating successExcellent centrally located modern offices in Sydney CBDAbout the companyInfoTrust’s mission is the...


  • Sydney, Österreich Workforce Australia for Individuals Vollzeit

    Centre of Excellence Lead Merchants Go To MarketExecutive Manager ?Payments Technical SalesYour BusinessBusiness Banking (BB) manages relationships with Commonwealth Bank?s small-medium enterprise customers, mid-market corporate customers, and regional and agribusiness customers, providing a wide range of financial services and solutions. It also services...


  • Sydney, Österreich Stickmancyber Vollzeit

    Interested in joining us on our mission for a safer digital world? View our available positions below. Position: Principal Cybersecurity Consultant Location: Sydney, AustraliaRole Type: HybridStickmancyber is a leading Cybersecurity as a Service (CSaaS) company based in Sydney, Australia. We are committed to providing comprehensive cybersecurity services and...

  • Finance Manager

    vor 1 Woche


    Sydney, Österreich Workforce Australia for Individuals Vollzeit

    ?At CommBank we are proud to support flexibility, let?s discuss what this means for you?The Commonwealth Bank of Australia (Bank) is Australia's leading provider of integrated financial services. They are committed to continuously improving governance practices and ensuring that they are aligned with business, stakeholders and customers? needs.The Financial...


  • Sydney, Österreich Turner & Townsend Vollzeit

    Principal Consultant – Management Consultant Turner & Townsend A global consultancy business serving clients in the real estate, infrastructure and natural resources sectors. View company page Are you interested in working on some of the world’s most exciting projects, with some of the world’s leading businesses?At Turner & Townsend we’re...


  • Sydney, Österreich Turner & Townsend Vollzeit

    Turner & Townsend A global consultancy business serving clients in the real estate, infrastructure and natural resources sectors. View company page Are you interested in working on some of the world’s most exciting projects, with some of the world’s leading businesses?At Turner & Townsend we’re passionate about making the difference. That means...


  • Sydney, Österreich Infoblox Vollzeit

    It’s an exciting time to be at Infoblox. Named a Top 25 Cyber Security Company by The Software Report and one ofInc. magazine’s Best Workplaces for 2020, Infoblox is the leader in cloud-first networking and security services. Our solutions empower organizations to take full advantage of the cloud to deliver network experiences that are inherently simple,...


  • Sydney, Österreich Kennedys Law LLP Vollzeit

    Kennedys is looking an Associate to join our General Insurance practice in Sydney. The successful applicant(s) will work across 2-3 Partners & seniors on a range of complex general insurance & litigation matters, involving coverage, financial lines, D&O and PI defence. There may also be scope to work on commodities and multi-party Supreme court...

  • Head of Legal

    vor 1 Woche


    Council of the City of Sydney, Österreich Greenfields Executive Recruitment & Search Vollzeit

    Head of Legal - Property Funds (2- 3 Days Per Week) Greenfields Executive Recruitment & Search Mid-market fund manager rapidly scaling up in size is looking for a Head of Legal to further build out the in-house legal function.  This newly created role will work closely with the Executive Leadership Team, providing advice on capital transactions and fund...