
1001 - 5000 employees
Founded 1985
đ Cybersecurity
đ° Private Equity Round on 2021-05
Cybersecurity
BeyondTrust is a company that specializes in providing cybersecurity solutions. They focus on offering products and services that protect organizations from internal and external threats, and their solutions often involve privileged access management to secure and manage the identities and credentials of users accessing critical systems and data.
đ April 27
đŚđş Australia â Remote
â° Full Time
đ˘ Junior
đĄ Mid-level
đĄď¸ Security Operations
đŤđ¨âđ No degree required
đť Ghost score 46%
Improve your chances of getting an interview by checking your resume score before you apply.

1001 - 5000 employees
Founded 1985
đ Cybersecurity
đ° Private Equity Round on 2021-05
Cybersecurity
BeyondTrust is a company that specializes in providing cybersecurity solutions. They focus on offering products and services that protect organizations from internal and external threats, and their solutions often involve privileged access management to secure and manage the identities and credentials of users accessing critical systems and data.
⢠Monitor and triage security alerts across SIEM, EDR, and CSPM platforms covering corporate and product environments ⢠Investigate alerts to determine scope, severity, and escalation requirements ⢠Use AI-assisted triage and enrichment tools to accelerate analysis and reduce mean time to detect ⢠Classify, document, and track alerts through their lifecycle using ticketing and case management systems ⢠Participate in or lead incident response from detection through remediation, including evidence collection, forensic analysis, root cause determination, and stakeholder communication ⢠Conduct investigations across SIEM, EDR, CSPM, identity provider logs, cloud audit trails, and network flow data ⢠Execute incident response runbooks across identity, endpoint, cloud, and email workflows ⢠Manage or assist with evidence handling, forensic artifact collection, and chain-of-custody procedures ⢠Produce incident summaries and post-incident reports for technical and leadership audiences ⢠Design, implement, and tune SIEM and EDR detection rules ⢠Translate threat intelligence into actionable detection content and maintain MITRE ATT&CK-mapped coverage ⢠Validate detection logic through hypothesis-driven threat hunts ⢠Evaluate, integrate, and optimize AI and automation capabilities, including prompts, agent workflows, or LLM-based pipelines ⢠Partner with engineering teams to improve log ingestion, data quality, and tool integrations ⢠Maintain operational notes and shift handoff documentation ⢠Refine IR runbooks, playbooks, and standard operating procedures ⢠Participate in after-hours on-call incident escalation, tabletop exercises, purple team activities, and post-incident reviews ⢠Track MTTD, MTTR, MTTC, and false positive rate metrics and identify improvements
⢠2+ years of experience in a SOC, security operations, or incident response role ⢠Understanding of MITRE ATT&CK, network protocols, and endpoint behavior ⢠Experience with at least one SIEM platform and familiarity with writing search or detection queries ⢠Familiarity with EDR platforms and cloud environments; IaaS preferred ⢠Comfort using AI systems, including LLM-based assistants, copilots, or AI-driven analysis tools, in security workflows ⢠Strong written communication skills and ability to document findings clearly for technical and non-technical audiences
⢠Culture of flexibility, trust, and continual learning ⢠Growth recognition and opportunities to make an impact ⢠Diversity and inclusion-focused workplace ⢠On-call rotation participation (compensated arrangement not otherwise specified)
Apply Now