Triskele Labs
Cybersecurity
See how your profile stacks up against this role.
We compared the job requirements to your profile to show where you're strong and where you fall short.
About the company
Triskele Labs is one of Australia’s leading sovereign cyber security firms, delivering Managed Detection & Response (MDR), Digital Forensics & Incident Response (DFIR), Offensive Security, and Governance, Risk & Compliance (GRC) services to regulated enterprises, government, and the higher education sector. Built over more than a decade, founder-led and independently owned, we partner with clients operating under some of Australia’s most demanding regulatory regimes.
Our Security Operations Centre runs 24x7x365 and remains completely onshore in Melbourne, and we are the largest CREST Registered Penetration Testing company in the city. Sovereign Australian ownership, deep technical capability, and front-line threat intelligence from one of the most active DFIR practices in the country sit at the centre of how we differentiate.
About the role
We are hiring Level 1 Security Analysts into our Melbourne Security Operations Centre. This is the front line of our MDR service: the first set of eyes on every alert raised across our clients’ environments, at every hour of the day and night.
You will work a rotating roster as part of a team that monitors, triages and responds to security events across a broad client base spanning financial services, government, health and higher education. You will learn the craft properly: real telemetry, real incidents, real clients, with senior analysts, detection engineers, threat hunters and a genuine DFIR team sitting alongside you.
This is a deliberate entry point into defensive security. We hire for aptitude, curiosity and work ethic rather than years on a résumé, and we fund the certifications that take you from L1 to a credible security professional. What we ask in return is that you take the roster seriously, care about the quality of what you hand to the next shift, and want to get better every month.
This is not a Monday-to-Friday role, and it is not a remote role. It is not a detection engineering, penetration testing or GRC role. Analysts who join us wanting to be somewhere else within six months tend not to enjoy it, analysts who want to become genuinely good at investigation and response tend to thrive.
Key Responsibilities
Monitoring and triage
Service operations
Reporting and client support
Learning and improvement
About you
Application Process
A cover letter is optional, but it is read and will put you in high regard. If you write one, tell us about something you have investigated, broken, built or learned in security outside of formal study or employment. Three honest sentences about a home lab or a Blue Team Labs challenge beat a page of generic cover letter.
Requirements
The first six of these are conditions of the role and we cannot move on them. The rest describe where you need to be starting from, not where we expect you to be. Nobody joins us at L1 already able to do this job: you will be trained and mentored into it by the analysts sitting next to you, and we fund the certifications along the way. Bring the curiosity and the attention to detail, and we will build the rest with you.
Highly Regarded
Benefits
A genuine entry point into defensive cyber security with a clearly defined path to L2 and beyond.
Funded certifications; CompTIA CySA+ and BTL1 in your first year, with further certification support after that.
Onshore, Melbourne-based SOC. You will be in the room with the senior analysts, detection engineers and DFIR consultants you are learning from.
Exposure to real incidents across a broad and demanding client base, not a single environment.
Shift loading and a published, predictable roster.
A team that backs each other, with leaders who work the floor rather than manage from a distance.
Team culture is everything to Triskele Labs and it is the reason we exist. We are a forward-thinking company, always looking for ways to strengthen our culture and be a destination employer, and we survey our team regularly to find ways to improve their experience here.
A fantastic office in the heart of the Melbourne CBD.
Frequent events organised by our People & Culture team.
Access to Triskele Labs benefits program.
If you are early in your cyber career but ready to take the next step, we want to hear from you.
Working Arrangements
The role operates on a 24x7x365 rotating roster, including nights, weekends and public holidays and requires on-site attendance at our Melbourne office.
Five weeks of annual leave per year while working the rotating shift roster.
Interview process
Initial informal discussion.
Technical discussion with the SOC Manager or a Level 3 Analyst.
A technical challenge.
After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.
Marcus Rivera
Chief Revenue Officer

water IT Security & Defense

Arkose Labs

MGIS

TekRecruiter

hCaptcha