Defend360 Operations

SOC Analyst (Level 2)

Triage and investigate security alerts across the Defend360 managed client base, escalating to incident response where needed.

The role

The Defend360 SOC monitors managed clients around the clock. As a Level 2 analyst you will own alert triage, investigation and tuning, working closely with the incident response and engineering teams.

What you'll do

  • Triage and investigate SIEM and EDR alerts
  • Tune detection rules to reduce false positives
  • Escalate confirmed incidents with full investigation notes

What you'll bring

  • 2+ years in a SOC or security operations role
  • Working knowledge of Microsoft Sentinel and Defender XDR
  • Australian citizenship or permanent residency

Nice to have

  • SC-200 or equivalent certification
  • Scripting experience (PowerShell, Python)