Sr SOC Analyst

BeyondTrust
Australia
Workplace: RemoteFull timeFunction: CybersecurityExperience: 2+ yearsSkills: ["Analytical thinking","Written communication","Documentation","Collaboration","Evidence handling"]

Serve as a front-line SOC Analyst protecting BeyondTrust and customer product environments. Monitor and triage alerts across SIEM, EDR, and CSPM, investigate events using cloud and identity logs, and execute incident response runbooks including evidence handling and forensic analysis. Contribute to detection engineering by tuning rules, translating threat intelligence into detections, mapping coverage to MITRE ATT&CK, and supporting an AI-augmented operating model.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
BeyondTrust
BeyondTrust
4 months ago

Sr SOC Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 6 hours agoStatus: Live

Job Summary

Serve as a front-line SOC Analyst protecting BeyondTrust and customer product environments. Monitor and triage alerts across SIEM, EDR, and CSPM, investigate events using cloud and identity logs, and execute incident response runbooks including evidence handling and forensic analysis. Contribute to detection engineering by tuning rules, translating threat intelligence into detections, mapping coverage to MITRE ATT&CK, and supporting an AI-augmented operating model.
Location: Australia
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Monitor and triage security alerts across SIEM, EDR, and CSPM platforms for corporate and product environments.
  • •Investigate alerts to determine scope, severity, and whether escalation is warranted, using AI-assisted triage and enrichment tools.
  • •Participate in or lead incident response from detection through remediation, including evidence collection, forensics, root cause analysis, and stakeholder communication.
  • •Contribute to detection engineering by designing, implementing, and tuning detection rules to reduce false positives and improve coverage gaps.
  • •Use AI-driven tools for alert triage, enrichment, and investigation; help evaluate and integrate AI/automation into detection, triage, and response workflows.

Key Requirements

  • •2+ years of experience in a SOC, security operations, or incident response role.
  • •Understanding of MITRE ATT&CK, network protocols, and endpoint behavior.
  • •Experience with at least one SIEM platform and familiarity with writing search or detection queries.
  • •Familiarity with EDR platforms and cloud environments (IaaS preferred).
  • •Comfort using AI systems (e.g., LLM-based assistants or AI-driven analysis tools) in security workflows.
Experience:2+ yearsSOCSecurity operationsIncident responsePrivileged access managementCybersecurity SaaS
Skills:Analytical thinkingWritten communicationDocumentationCollaborationEvidence handling
Languages:English
Tech Stack:SIEMEDRCSPMMITRE ATT&CKCVECISAIdentity provider logsCloud audit trailsNetwork flow dataLLM-based assistantsAI-driven analysis toolsPythonPowerShellSOARDetection-as-codeTicketingCase management

Company Brief

BeyondTrust
Provides privileged access management, vulnerability management, and secure remote access solutions to help organizations protect credentials, manage privileges, and secure endpoints across on-premises and cloud environments.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Funding: Private Equity Backed
Headquarters: Phoenix, United States
WebsiteLinkedIn