Posted 01 August, 2026
Senior SOC Analyst - based in Wellington or Auckland
Bastion Security Group
Wellington, WGN, NZ
Full Time
Reference: 15a8b76a4a62026c
Job Description
Senior SOC Analyst - based in Wellington or Auckland Bastion Security Group - Wellington Central, North Island Ready to join a team built on excellence? At Bastion, our international team of cyber security experts deliver world class results, with industry leading tools, and a commitment to end to end protection of our clients, from our offices in Wellington and Auckland. This role is based in Wellington; however, we are open to applicants from Auckland. We empower our people to assess, detect, respond, and recover before threats become crises. If you're someone who thrives in a dynamic environment and enjoys being responsible for finding solutions for your clients. Whether your expertise is hands on and technical or rooted in strategy, operations, or client support, you’ll be part of a collaborative group committed to safeguarding businesses, government agencies, and communities. Join us as we build a safer, more resilient digital and physical world. You are technically savvy and can work collaboratively with others. As a Senior SOC Analyst, you will be uplifting our service capabilities, more junior team members, and client security posture. In addition to reviewing, triaging and responding to security events within a Managed Security Service. We are seeking an experienced cyber security Senior Analyst who is currently working in security operations. You will bring a minimum of 3 years cyber experience and a desire to grow your skills and expertise within a global consultancy. Ideally you already have demonstrated experience using the following tools, and capability uplift: CrowdStrike Falcon, Microsoft Defender Extended Detection and Response, and Microsoft Sentinel. The role As a Senior SOC Analyst, you’ll be supporting an exciting range of customers across New Zealand and afar, from small kiwi-owned businesses to well-known public sector organisations. The main responsibilities of the role are: Supporting the implementation, management, and operation of our security solutions and the Managed Security service. Delivering Advanced Detection and Response Capabilities by leading investigation of complex and high severity security events. Performing deep analysis across a range of security tooling and telemetry sources to determine impact, scope and root cause, executing and guiding containment and remediation actions. Interfacing with the DFIR team to support investigations. Conducting pro-active security operations such as Security Detection Engineering and Tuning, Threat Hunting, and SOC capability uplift. Presales engagements and cross selling of Managed Security Services. Act as a primary escalation point for SOC analysts. Contribute to the evolution of our processes and procedures. Who we’re looking for A results orientated, high performer established in their SOC career who can add exceptional value to the clients you work with. You are already based in New Zealand, with a valid work visa or permanent right to work. Supportive and collaborative, keeping up to date and certified on relevant technologies. These are the main skills and experience we’re looking for: Security Operations Experience, Penetration Testing, Security Engineering, or adjacent domains. Preferred Experience as a Security Operations Analyst, Security Operations Analyst - Tier 2 or above. Extensive experience reviewing, triaging and responding to detections from security solution and other security tooling, in a commercial environment. Demonstrated experience with two or more of the following: LogRhythm, Azure Sentinel, CrowdStrike Falcon, Microsoft Defender Extended Detection and Response. Experience configuring and tuning EDR solutions and other security tooling to reduce false positives. Solid foundational and technical knowledge in security, web technologies, networking, and cloud infrastructure. Demonstrated experience working with service level agreements and proudly meeting their expectations. Ideally you are experienced in programming/ scripting languages (Python preferred). Ideally you are experienced in automation practices and tooling e.g. Security Orchestration and Response (SOAR) and you bring an automation first mindset. Enjoy coaching more junior members of the team. Due to the nature of our work, this role requires a clean criminal record. Successful applicants will be required to complete a criminal record check during the onboarding process. Benefits of working for Bastion You will work alongside a diverse group of people who are dedicated to protecting others from cyber harm. The perks of being part of the Bastion team include: A collaborative, thoughtful team who do meaningful work and keep learning Supportive work environment, great team culture and regular social events Training budget, study time allowance, regular training sessions and internal mentor programme Competitive remuneration Half yearly bonus scheme Additional leave after 2 years Access to a gymwithin a short walk of the office. About us Bastion Security Group provides best-in-class cybersecurity services through a high-performance culture built on quality, excellence and collaboration. Our skilled and empowered team is dedicated to achieving meaningful security outcomes and delivering lasting value for our clients. ‘Assess & Improve’, ‘Detect & Respond’, ‘Protect & Secure’, ‘Advise & Empower’ and stay ahead of evolving threats. We deliver security services across strategy, architecture, operations and compliance. Whether it’s advising on board-level risks, embedding into your teams, or responding to incidents, our experts provide actionable insight grounded in real threats and real solutions. To learn more about our New Zealand operation, visit https://bastionsecurity.co.nz/. Our Australian offices - https://www.cythera.com.au/; https://www.seamlessintelligence.com.au/; https://www.phronesissecurity.com/; https://www.astralas.com/ Applications close 3rd August 2026. We'll be reviewing applications on an ongoing basis as they come in, and depending on application volume, may close the advert early. If this is your ideal next role, we'd encourage you to get in touch today! For a confidential conversation, email Tracy at *******@bastionsecurity.co.nz. #J-18808-Ljbffr