Security Operations Analyst
Huntress
- Location
- Australia
- Work model
- Remote
- Level
- Mid
- Posted
- 2h ago
Skills
About this role
Reports to: Senior Manager, Security Operations Center
Location: Remote Australia
What We Do
Cybercrime is growing, and more businesses are getting hit by threats that used to target only the biggest organizations. That pushes defenders like us to operate at the highest level, and it deepens our need for good people who want to make a meaningful impact.
Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make enterprise-grade cybersecurity accessible to businesses of all sizes. We work closely with security teams and service providers protecting complex environments, often without the time or headcount to handle it all. That’s why we build our technology in-house and back it with a 24/7 human-led Security Operations Center (SOC). As a result, our platform is never disconnected from the experts who manage it, ensuring our customers' protection.
Huntress now secures more than 5M endpoints and 14M identities worldwide. Those numbers keep growing because more businesses rely on us to help carry the load and operate with more confidence. Every day, you can see that commitment in how we stand with our customers and how we show up for each other.
What You'll Do
You’re a hands-on SOC Analyst who thrives on detecting and responding to cybercrime. You’ll triage Active Hands-On Keyboard intrusions, track attackers through networks, and help remove them before they achieve their objectives. You’ll contextualise endpoint telemetry, analyse logs, leverage forensic artifacts, and understand malware to uncover the full scope of an intrusion.
You give a $ht about protecting customers and improving how the team operates, taking ownership of investigations and acting on the information available. You bring Warrior Spirit to complex incidents, staying resilient and composed under pressure. You are Outcome-Obsessed, measuring your work by the threats contained, customers protected, and actionable remediation delivered. Alongside alert triage and intrusion response, you’ll support sales, collaborate with Product to shape Huntress’ MDR service and platform, and have opportunities to contribute across Incident Response, Security Operations, Threat Hunting, and Detection Engineering. We’ll also support you in sharing your work through blogs, conference talks, webinars, and research publications that build your personal brand and the broader security community.
Responsibilities
• Triage, investigate, respond to, and remediate alerts generated by the Huntress platform.
• Review EDR/SIEM telemetry, log sources, and forensic artifacts to determine the root cause of attacks where possible and provide the remediation needed to remove the threat.
• Perform dynamic analysis of malware when required to extract indicators of compromise or determine a file’s malicious intent.
• Contribute to and refine detection capabilities and queue hygiene through crafting and tuning signals to address emerging threats.
• Investigate activity in Microsoft 365 and Google Workspace and deliver actionable remediation advice for compromised tenants.
• Continue to grow your skills and knowledge through real-world intrusion data, paid training opportunities, and responsible use of AI tools to support research, summarise findings, and accelerate routine analysis while validating outputs.
• Support customer success by assisting our SOC Support team with customer/partner escalations related to threat-related and SOC-relevant questions.
• Help through partnering with Product and Engineering Teams to continue to evolve Human Led Agentic workflows
What You Bring To The Team
• You have 2+ years of experience in SOC, Incident Response, Managed