Andurils Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Andurils critical defence technologies. As a SecOps analyst on the detection and response team youll be responsible for monitoring and responding to adversarial activity while helping incorporate key detection feedback loops with the detection engineering team. When not responding to threats youll be asking questions of our data sets conducting threat hunting and data normalisation operations across the organization to understand user behavior and identify anomalies.
WHAT YOULL DO
- Triage and respond to alerts / incidents covering multiple disciplines including but not limited to phishing endpoints cloud infrastructure and services and SaaS applications
- Build and optimise tailored detection signatures response playbooks and response automation using detection-as-code principles
- As the frontline of DNR you will lead the feedback loop for detections ensuring alerts are fine tuned to reduce false positives
- Participate in threat modeling scenarios with cross-functional partners to understand weaknesses across Cloud Mobile Endpoints and other environments incorporating findings into security controls and/or detection signatures
- Organise and conduct threat hunting and data baselines to identify anomalous patterns in data
- Participate in an on-call rotation responding to security events and conducting incident response investigations while effectively communicating findings to key stakeholders
- Proactively collaborate with a wide range of stakeholders
REQUIRED QUALIFICATIONS
- Experience in security monitoring log analysis and detection engineering within large data sets across endpoint network and a wide variety of application log sources
- Experience in Python development specifically contributing to a shared codebase used for automating SOC operations
- Must have experience with one or more SIEM languages (SPL KQL SQL)
- Broad range of practical security knowledge across the spectrum of endpoint network identity application and cloud infrastructure
- Knowledge of attacker tactics techniques and procedures (TTPs) across Windows Linux MacOS AWS/Azure etc.
- Strong communication skills and experience collaborating with internal and external stakeholders
- Eligible to obtain and maintain an Australian NV2 clearance
PREFERRED QUALIFICATIONS
- Experience conducting incident response in the Cloud (AWS Azure GCP)
- Digital Forensics and/or reverse engineering experience is a plus!
Although we list out what we generally look for we are very likely missing other attributes and skills that you have that could make you a great fit but are not currently listed. Research has shown this especially applies to women and other marginalised groups who tend to apply if they check 100% of every box versus men who apply if they hit roughly 60%. The point were getting at it doesnt hurt to take a chance and apply!
The salary range for this role is an estimate based on a wide range of compensation factors inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience education and/or training critical skills and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Andurils total compensation package. Additionally Anduril offers top-tier benefits for full-time employees including:
Healthcare Benefits
- US Roles:Comprehensive medical dental and vision plans at little to no cost to you.
- UK & AUS Roles:We cover full cost of medical insurance premiums for you and your dependents.
- IE Roles: We offer an annual contribution toward your private health insurance for you and your dependents.
Additional Benefits
- Income Protection: Anduril covers life and disability insurance for all employees.
- Generous time off: Highly competitive PTO plans with a holiday hiatus in December. Caregiver & Wellness Leave is available to care for family members bond with a new baby or address your own medical needs.
- Family Planning & Parenting Support: Coverage for fertility treatments (e.g. IVF preservation) adoption and gestational carriers along with resources to support you and your partner from planning to parenting.
- Mental Health Resources:Access free mental health resources 24/7 including therapy and life coaching. Additional work-life services such as legal and financial support are also available.
- Professional Development:Annual reimbursement for professional development
- Commuter Benefits:Company-funded commuter benefits based on your region.
- Relocation Assistance:Available depending on role eligibility.
Retirement Savings Plan
- US Roles:Traditional 401(k) Roth and after-tax (mega backdoor Roth) options.
- UK & IE Roles:Pension plan with employer match.
- AUS Roles:Superannuation plan.
The recruiter assigned to this role can share more information about the specific compensation and benefit details associated with this role during the hiring process.
Protecting Yourself from Recruitment Scams
Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. Weve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.
To ensure your safety and help you navigate your job search with confidence please keep the following critical points in mind:
No Financial Requests:Anduril will never solicit payment or demand personal financial details (such as banking information credit card numbers or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.
- Please always verify communications:
- Direct from Anduril: Our recruiters will only email you from an @ address.
- Via Agency Partner: If contacted by a recruiting agency for an Anduril role their email will clearly identify their agency. If you suspect any suspicious activity please verify the agencys authenticity by reaching out to .
Exercise Caution with Unsolicited Outreach:If you receive any communication that appears suspicious contains grammatical errors or makes unusual requests do not engage. Always confirm the senders email domain is @ before providing any personal information or clicking on links.
What to Do If You Suspect Fraud:Should you encounter any questionable or fraudulent outreach claiming to be from Anduril please report it immediately to. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.
Data Privacy
To view Andurils candidate data privacy policy please visit Experience:
Senior IC
Andurils Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Andurils critical defence technologies. As a SecOps analyst on the detection and response team youll be responsible for monitoring and responding to adversarial activity while helping incorpora...
Andurils Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Andurils critical defence technologies. As a SecOps analyst on the detection and response team youll be responsible for monitoring and responding to adversarial activity while helping incorporate key detection feedback loops with the detection engineering team. When not responding to threats youll be asking questions of our data sets conducting threat hunting and data normalisation operations across the organization to understand user behavior and identify anomalies.
WHAT YOULL DO
- Triage and respond to alerts / incidents covering multiple disciplines including but not limited to phishing endpoints cloud infrastructure and services and SaaS applications
- Build and optimise tailored detection signatures response playbooks and response automation using detection-as-code principles
- As the frontline of DNR you will lead the feedback loop for detections ensuring alerts are fine tuned to reduce false positives
- Participate in threat modeling scenarios with cross-functional partners to understand weaknesses across Cloud Mobile Endpoints and other environments incorporating findings into security controls and/or detection signatures
- Organise and conduct threat hunting and data baselines to identify anomalous patterns in data
- Participate in an on-call rotation responding to security events and conducting incident response investigations while effectively communicating findings to key stakeholders
- Proactively collaborate with a wide range of stakeholders
REQUIRED QUALIFICATIONS
- Experience in security monitoring log analysis and detection engineering within large data sets across endpoint network and a wide variety of application log sources
- Experience in Python development specifically contributing to a shared codebase used for automating SOC operations
- Must have experience with one or more SIEM languages (SPL KQL SQL)
- Broad range of practical security knowledge across the spectrum of endpoint network identity application and cloud infrastructure
- Knowledge of attacker tactics techniques and procedures (TTPs) across Windows Linux MacOS AWS/Azure etc.
- Strong communication skills and experience collaborating with internal and external stakeholders
- Eligible to obtain and maintain an Australian NV2 clearance
PREFERRED QUALIFICATIONS
- Experience conducting incident response in the Cloud (AWS Azure GCP)
- Digital Forensics and/or reverse engineering experience is a plus!
Although we list out what we generally look for we are very likely missing other attributes and skills that you have that could make you a great fit but are not currently listed. Research has shown this especially applies to women and other marginalised groups who tend to apply if they check 100% of every box versus men who apply if they hit roughly 60%. The point were getting at it doesnt hurt to take a chance and apply!
The salary range for this role is an estimate based on a wide range of compensation factors inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience education and/or training critical skills and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Andurils total compensation package. Additionally Anduril offers top-tier benefits for full-time employees including:
Healthcare Benefits
- US Roles:Comprehensive medical dental and vision plans at little to no cost to you.
- UK & AUS Roles:We cover full cost of medical insurance premiums for you and your dependents.
- IE Roles: We offer an annual contribution toward your private health insurance for you and your dependents.
Additional Benefits
- Income Protection: Anduril covers life and disability insurance for all employees.
- Generous time off: Highly competitive PTO plans with a holiday hiatus in December. Caregiver & Wellness Leave is available to care for family members bond with a new baby or address your own medical needs.
- Family Planning & Parenting Support: Coverage for fertility treatments (e.g. IVF preservation) adoption and gestational carriers along with resources to support you and your partner from planning to parenting.
- Mental Health Resources:Access free mental health resources 24/7 including therapy and life coaching. Additional work-life services such as legal and financial support are also available.
- Professional Development:Annual reimbursement for professional development
- Commuter Benefits:Company-funded commuter benefits based on your region.
- Relocation Assistance:Available depending on role eligibility.
Retirement Savings Plan
- US Roles:Traditional 401(k) Roth and after-tax (mega backdoor Roth) options.
- UK & IE Roles:Pension plan with employer match.
- AUS Roles:Superannuation plan.
The recruiter assigned to this role can share more information about the specific compensation and benefit details associated with this role during the hiring process.
Protecting Yourself from Recruitment Scams
Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. Weve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.
To ensure your safety and help you navigate your job search with confidence please keep the following critical points in mind:
No Financial Requests:Anduril will never solicit payment or demand personal financial details (such as banking information credit card numbers or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.
- Please always verify communications:
- Direct from Anduril: Our recruiters will only email you from an @ address.
- Via Agency Partner: If contacted by a recruiting agency for an Anduril role their email will clearly identify their agency. If you suspect any suspicious activity please verify the agencys authenticity by reaching out to .
Exercise Caution with Unsolicited Outreach:If you receive any communication that appears suspicious contains grammatical errors or makes unusual requests do not engage. Always confirm the senders email domain is @ before providing any personal information or clicking on links.
What to Do If You Suspect Fraud:Should you encounter any questionable or fraudulent outreach claiming to be from Anduril please report it immediately to. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.
Data Privacy
To view Andurils candidate data privacy policy please visit Experience:
Senior IC
View more
View less