SOC Analyst
Sydney | Melbourne | Brisbane | Hybrid Work Model | Competitive base + super + benefits
Some SOC roles keep you on one platform, working the same queue every day. This one puts you across SIEM, XDR, EDR, Microsoft security and Linux, on customer environments that are never the same twice. We are looking for a SOC Analyst to join our Security Operations Centre, working across detection, response and continuous improvement.
You will analyse complex events, lead incident response, hunt for emerging threats and shape the detections that keep our customers protected, while mentoring junior analysts and lifting capability across the team. If you are ready to take on more, not just more of the same, this is the role.
About Orro
We’re an Australian success story, now close to 500 people strong, delivering secure, end-to-end digital solutions across cloud, collaboration, cyber security, data services and network infrastructure, all backed by over 20 years of experience. Trusted by some of Australia’s biggest brands, Orro leads the way in designing, building and operating digital infrastructure that delivers greater efficiency, agility, performance and resilience. Our solutions take the stress out of tech for more than 400 businesses and over 20 million Australians every single day.
Our mission? To create “future now” solutions making it faster, simpler and safer for people to access, store and share information, wherever they are and whoever they’re with. But more than that, we know that real impact comes from connecting people, not just machines. That’s why we take the time to understand our clients; how they work, what matters to them, and where they’re headed so we can deliver not just what they need today, but what they’ll need next.
With offices in Sydney, Melbourne, Canberra, Brisbane and Perth, and teams across New Zealand, the Philippines and the UK, Orro is known for delivering future-ready solutions, backed by deep expertise, genuine human insight and lasting partnerships.
What You’ll Be Doing
You will sit inside our Security Operations Centre, working across daily operations, threat analysis and proactive defence for a broad customer base. Your work moves between the immediate and the strategic, triaging and resolving live events one moment, then improving the detections that catch the next one. You will work closely with your SOC peers to strengthen detection capability and deliver outcomes customers can see. There is real scope here to shape how we detect, not just how we respond.
Investigate SIEM events, track emerging threats and uncover intrusion attempts
Own incident response from triage through escalation to resolution
Analyse phishing activity, suspicious domains and IP addresses to identify genuine risk quickly
Lead threat hunting and vulnerability assessments across customer environments
Build high fidelity detections through alert tuning, rule creation and system improvements
Mentor junior analysts and lift capability across the wider SOC
What You’ll Bring
The Essentials
3+ years working with modern detection and response tooling including SIEM, XDR and EDR
Solid grounding in Microsoft security technologies, with confidence working across Linux or Unix environments
Background in enterprise scale security operations, with exposure to incident response and digital forensics
Working knowledge of frameworks such as MITRE ATT&CK, NIST and ISO 27000
A clear communicator who can translate technical detail for any audience
Bonus Points
Broad understanding of cloud, networking and firewall technologies
Experience with vulnerability management tooling such as Rapid7, Tenable or Qualys
Familiarity with ITSM platforms and processes
Even if you don’t tick every box, don’t let that hold you back as we have a number of positions at varying levels. If this sounds like your kind of challenge, we’d genuinely love to hear from you!
Why Orro?
At Orro, we’re proud to support our people and the people who matter most to them in meaningful and inclusive ways. From public holiday swaps that embrace family and cultural diversity, to generous parental and caregiver leave, flexible work options, and company-wide mentoring, we’re here to help you thrive at every stage of life.
We also invest in the future through our Emerging Leaders Development Program, nurturing the next generation of talent from within. On top of that, you’ll enjoy 3 days of paid volunteer leave each year, novated leasing, employee discounts, and full access to our wellbeing platform packed with expert fitness plans, nutrition tips, and tools to help you feel your best, inside and out.
We value different perspectives and proudly celebrate the diversity of our people. We are committed to creating an inclusive workplace where everyone can thrive, including LGBTQI team members, people with disabilities and those on the autism spectrum. Your unique experience is not just welcomed here, it is valued.
Orro is deeply committed to sustainability and social responsibility. By joining us, you contribute to initiatives that support our communities and help create a better future.
Note: The role is subject to state and federal police background checks. Applicants must have the unrestricted right to work in Australia. Visa sponsorship is not available for this position.
- Department
- ANZ Orro Cyber Team
- Locations
- Sydney HQ, Melbourne, Brisbane
- Remote status
- Hybrid