SOC Incident Responder (New South Wales)

SOC Incident Responder (New South Wales)

16 Aug
|
Kbr
|
New South Wales

16 Aug

Kbr

New South Wales

Key Responsibilities

- Monitor and investigate security alerts from Taegis, Defender as well as user or third-party reported incidents.
- Perform initial triage and analysis of suspicious events and potential security incidents.
- Determine incident severity, scope, and business impact.
- Contain security incidents through actions such as:
- Device isolation
- IP and domain blocking
- Escalate complex or high-severity incidents to senior security personnel.
- Analyze endpoint, network, identity, and cloud telemetry.
- Correlate indicators of compromise (IOCs) with threat intelligence sources.
- Conduct malware investigations and support forensic analysis activities.
- Track attacker tactics, techniques, and procedures (TTPs) using frameworks such as MITRE ATT&CK.;
- Maintain detailed incident records and case documentation.
- Create incident reports detailing findings, actions taken, and business impact.
- Ensure evidence is collected, preserved, and documented appropriately.
- Participate in post-incident reviews and lessons-learned sessions.
- Coordinate with IT Operations, Service Desk, Infrastructure, Network, and Cloud teams during investigations.
- Support major incident response activities and virtual war room operations during significant security events.
- Contribute to development of SOC playbooks and response procedures.
- Recommend improvements to detection rules, monitoring coverage, and response workflows.
- Assist in threat hunting and security control validation activities.
- Stay current with emerging threats, vulnerabilities, and industry best practices.

Required Qualifications

Education

- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology,



or equivalent experience or,
- 2-5+ years of cybersecurity, SOC, incident response, or security operations experience.
- Familiarity with Windows, Linux, cloud platforms, and enterprise networking.

Technical Skills

- Familiarity with
- SIEM technologies
- Email security technologies
- Identity platforms such as Active Directory and Entra ID
- Network protocols and traffic analysis

Preferred Certifications

- Baseline Clearance, NV-1 Eligible or Existing NV-1 Preferred
- GCIA
- GCFA
- CISSP
- Security+
- CySA+
- SC-200 (Microsoft Security Operations Analyst)

Working Conditions

- Participation in a 24x7 SOC shift rotation and on-call coverage as required.
- Support for major cybersecurity incidents outside normal business hours.
- Ability to manage multiple concurrent security investigations.

Why Join KBR?

At KBR, our people are at the heart of everything we do. Our success is built on a culture of caring, collaboration, trust and continuous learning, where every team member feels safe, supported, valued and empowered to thrive.

We are committed to creating an inclusive setting where people can belong, connect and grow, while doing meaningful work that makes a lasting impact on communities across Australia. Through genuine collaboration and strong partnerships with our clients, we deliver innovative and sustainable solutions for a better tomorrow.

When you join KBR, you'll become part of a team that shares common values, works together towards a common purpose, and genuinely cares about the success and wellbeing of its people.

Benefits

- Industry leading salaries reviewed annually.
- Flexible work arrangements (start/finish times, WFH, Flex time)

#J-18808-Ljbffr

📌 SOC Incident Responder (New South Wales)
🏢 Kbr
📍 New South Wales

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: soc incident responder (new south wales) / new south wales

Subscribe to this job alert:

Get the latest job offers by email for: soc incident responder (new south wales) / new south wales