Logo for Plurilock

SOC 2 Analyst

Role overview

Qualifications

  • 5+ years recent experience as Tier 2 or 3 analyst at a large organization
  • Strong demonstrated SIEM and data correlation experience
  • Experience designing Incident Response plan including alert definition and runbooks
  • Extensive experience managing alerts in Microsoft Defender, Splunk, and Crowdstrike

Responsibilities

  • Investigate security incidents and determine root causes
  • Review incidents escalated by Tier 1 analysts
  • Monitor systems and events across different operating systems
  • Lead timely security operations response efforts in collaboration with stakeholders

Key facts

  • Remote from: Australia
  • Freelance
  • Senior (5-10 years)
  • English

Other skills

  • Problem Solving
  • Curiosity
  • Analytical Skills
  • Adaptability

About the company

Plurilock logo

Plurilock

Plurilock sells cybersecurity solutions to the United States and Canadian Federal Governments and to Global 2000 companies. Through these relationships, Plurilock sells its Plurilock AI platform and its unique brand of critical servicesβ€”leveraging our expertise to aid clients in defending against, detecting, and preventing costly data breaches and cyberattacks.

Company details

Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

SOC 2 Contract 

Through 2026

Supporting APAC Time zones



Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise , TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.

They have deep experience with SIEM tools specifically Crowdstrike SIEM, network data, host data, Identity and Access log data, developing SIEM use cases, reducing/tuning false alerts and leading investigations until issues have been resolved.  They will also monitor systems and events across different operating systems, such as Windows, macOS, and Linux.  

Must be proactive, problem solver and curious.

Must have 5+ years recent experience as Tier 2 or 3 analyst at a large organization; government and Critical Infrastructure company preferred.

Must have strong, demonstrated SIEM and data correlation experience

Must have demonstrated experience designing new SOC use cases and working with vendor on implementing new use cases.

Must have experience designing and implementing runbooks and use cases to mitigate security incidents

Experience designing Incident Response plan, including alert definition, runbooks, escalation, etc..

Must have extensive experience reviewing and managing alerts in Microsoft Defender, Splunk and or Crowdstrike

Must have experience conducting hunts across disparate data sets, to include host data, vulnerability data, threat data, network data, active directory data, among others to identify threats

Experience leading timely security operations response efforts in collaboration with stakeholders

Experience documenting incident response communications for technical and management audiences

Must have experience setting up alert rules and effective alert management

Demonstrated ability to create runbooks and conducting investigations with key application, IT Infra and other stakeholders

Experience designing custom SOC SIEM use cases in Defender, Splunk and CRWD

Experience conducting forensic work investigations

 

Most be a problem solver

Must be curious

Must be analytical, qualitative and quantitative abilities

Must be adaptive to dynamic environment

Strong security operations documentation abilities

 

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Related jobs

Other jobs at Plurilock

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.