About this role
SOC Analyst Canberra (Remote) at NCC Group. Location: Canberra or Sydney. Role: triaging alerts, remediating endpoints, tuning detections Requirements: 2+ years SOC experience, hands-on with Splunk, Microsoft Sentinel, SentinelOne, CrowdStrike and Microsoft Defender; skilled in KQL and SPL, threat hunting (MITRE ATT&CK), incident investigation, and producing stakeholder reports; on-call every 3 weeks. Category: Information Technology Seniority: Entry Level Tools: Splunk, Microsoft Sentinel, SentinelOne, CrowdStrike Falcon, Microsoft Defender for Endpoint, KQL, SPL, MITRE ATT&CK, SIEM, EDR Cert