Security SOC Analyst
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
Employment Hero is on a mission to make employment easier and more valuable for everyone. Our Employment Operating System brings hiring, HR, payroll and benefits into an all-in-one solution. Since our inception in 2014, we've scaled to a $2 billion valuation and gained a presence in 6 countries globally. We now service over 300,000 businesses and more than 2 million employees. The EH Way At Employment Hero, we're proud of our unique DNA, which we call The EH Way . We are Mission First : Everything we do is driven by our Mission. We are Remote First : We champion a remote environment with a preference for asynchronous communication. We are AI First : AI is not just a tool; it's a fundamental part of how we operate and scale. We are Apolitical : We do not take a position on political or social topics. We Live by Our Values : We role model our values 100% of the time. We Expect High Performance : We set a high standard; there is no room for average performance here. This role: As our Security SOC Analyst, you'll be working with the wider security team to act as the front line of our security defense. You will be instrumental in protecting our community of 2 million+ users, ensuring our vector to 10 million users remains secure and unimpeded. Your key focus areas will be: Achieving 24/7 "Follow the Sun" coverage by bridging the gap between our AU and CA teams. Maintaining a high-velocity response rate to SOC alerts and internal security queries. Integrating and improving our "AI Analyst" to automate manual triage. This will include: Triage & Incident Response : Monitoring SIEM alerts and responding to events in real-time. Security Service Delivery : Resolving internal security tickets and troubleshooting tools like Netskope, Crowdstrike, and Abnormal Security. AI Collaboration : Working hand-in-hand with our AI Analyst to improve its accuracy and automation capabilities. Identity & Access Management : Configuring Google Workspace (IDP/SSO/Conditional Access) and MDMs (Intune, Jamf, Kandji). Threat Intelligence : Monitoring dark web mentions and compromised credentials. Vulnerability Support : Performing regular scans and providing remediation guidance.