Analyst - Security Operations Analyst (L1)

Quezon City, PH

Applications have closed

ANZ Banking Group Limited

ANZ offers a range of personal banking services such as internet banking, bank accounts, credit cards, home loans, personal loans, travel and international, investment and insurance. Learn about easy and secure ways to manage your money.

View all jobs at ANZ Banking Group Limited

About Us


At ANZ, we're applying new ways technology and data can be harnessed as we work towards a common goal: to improve the financial wellbeing and sustainability of our millions of customers.

About the Role


As an Analyst in our Security Operations Centre (SOC), you’ll play a key role in helping to identify and respond to Computer Security Incidents which have been identified within the ANZ environment.  This role requires the individual to work as part of the Global Security Operations Centre and be able to action a series of steps to perform initial assessment, investigation, remediation and where necessary escalate complex incidents for remediation or resolution.
 

The role will provide Basic to Intermediate level expertise in Security Incident Response and Management in his day-to-day work. The successful candidate is expected to monitor health of the security tools and platforms to ensure availability of event source logging, other security controls and tools, and coordinate with platform teams issues that impacts Security Operations Center's Incident Response and Management. Lastly, role requires that the individual work across rotating shifts to support 24x7 Security Incident Response and management Service.

 

Banking is changing and we’re changing with it, giving our people great opportunities to try new things, learn and grow. Whatever your role at ANZ, you’ll be building your future, while helping to build ours.

 

Role Type: Permanent, Full-time
Role Location: MDC 100 Building, Eastwood QC
Work Hours: 24x7 Shifting Schedules

What will your day look like?


As an Analyst, you are accountable to:

 

  • Provide basic to intermediate expertise in triage, investigation and response to security incidents and actively monitor and protect the environment. This includes handling of computer security related incidents occurring at ANZ with specific focus on incidents originating from within the ANZ network and impacting or threatening other ANZ internal systems or threats which are identified outside of the ANZ environment and specifically targeting ANZ.
  • Participates in continuous improvement initiatives to uplift and mature the Security Operations Centre (Level 1) function. 
  • Identification and propose updates to playbook, work instructions or processes which needed to be updated for day-to-day process optimization or regulatory requirements.
  • Investigating major security compromises end-to-end and coordinating a cohesive response involving multiple teams across ANZ.
  • Participates in the on-going uplift and maintenance of rulesets in the various security toolsets operating within ANZ by providing feedback on required detection tuning.

What will you bring?

 

To grow and be successful in this role, you will ideally bring the following:

 

  • Beginner to Intermediate experience working in Threat Hunting, Security Operations, Incident Response or Threat Intelligence.
  • Beginner to Intermediate Experience in responding to Security incidents or Major Security Incidents by performing host based and network forensics as well investigation of security appliance and application logs to determine what activities an attacker has performed in order to: (1) ensure the attacker is successfully removed from the network and (2) provide an understanding of exposure to senior executives where it is required e.g Representing SOC in Event Incident Technical Bridge
  • Basic to Intermediate understanding of best practices in network security, security operations, systems security, policy, and incident response
  • Basic to Intermediate Technical understanding of application security, infrastructure security, digital forensics, malware analysis, or some combination
  • Basic to Intermediate Understanding of security vulnerabilities, attacker exploit techniques, and methods for their remediation.
  • Basic to Intermediate scripting skills (e.g., Python, C, C++, Java, Ruby, or PowerShell) 
  • General Knowledge on Cyber/Information Security concepts, particularly security in the cloud

 

You’re not expected to have 100% of these skills. At ANZ a growth mindset is at the heart of our culture, so if you have most of these things in your toolbox, we’d love to hear from you.

So why join us?

 

ANZ provides banking and financial services and operates across more than 30 markets. We are among the top 4 banks in Australia, the largest banking group in New Zealand and Pacific, and among the top 50 banks in the world. With more than 2,000 people, our team in Manilla play a critical role in executing our strategy and deliver what matters most to our customers and the bank. We continue to grow our professional services capabilities to support our customers around the world.  Our expertise and services make us a bank, and our people, purpose, and culture makes us ANZ. We're proud of the inclusive culture we're renowned for where 90 percent of our people feel they belong. 

 

We provide our people with a range of benefits including access to health and wellbeing services.  We also have flexible working options so that our people can 'make work, work for them'.

 

We welcome applications from everyone and encourage you to talk to us about any adjustments you may require to our recruitment process or the role itself. If you are a candidate with a disability, let us know how we can provide you with additional support.

 

To find out more about working at ANZ visit  https://www.anz.com/careers/. You can apply for this role by visiting ANZ Careers and searching for reference number 73769.

 

Posting will end on 17 September 2024

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  4  0  0

Tags: Application security Banking C Cloud Exploit Forensics Incident response Java Malware Network security PowerShell Python Ruby Scripting SOC Strategy Threat intelligence Vulnerabilities

Perks/benefits: Flex hours Health care Team events

Region: Asia/Pacific
Country: Philippines

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.