Cyber Security Engineer (5908)

Harrison McMillan · Barton ACT 2600 · Full time
+60d ago

Cyber Security Engineer (5908)

Harrison McMillan
Barton ACT 2600

·

Full time

$90k - $120k
KEY POINTS WE FOUND
  • Conduct defensive cyber security operations to protect the network.
  • Develop and maintain automated workflows and playbooks for security tasks.
  • Assist with incident response and threat hunting activities.

At Harrison McMillan, our mission is simple: to change lives, one placement at a time.

As a trusted recruitment partner to government and industry, we pride ourselves on connecting exceptional people with roles where they can truly make an impact. 

Harrison McMillan is seeking a Cyber Security Engineer (EL1 equivalent) to work with a Federal Government Department in Canberra.

Job details

The Cyber Operations Section within the Cyber Security, Cloud and Networks Branch of Department's Information Management and Technology Division is seeking a resource to fill the role of a Cyber Security Engineer. This position is vital to the Cyber Operations Section and involves the application of advanced engineering skills to conduct defensive cyber security operations, ensuring the protection of our global network from malicious actors.

Role

  • Contribute to longer-term security operations uplift initiatives and capability roadmaps.

  • Continuously assess emerging automation opportunities to improve SOC efficiency and consistency.

  • Develop and maintain playbooks and automated workflows to assist with Cyber Security tasks. 

  • Analyse security events and logs to identify patterns of potential anomalous activity, recommend security enhancements, and assist in developing countermeasures to prevent future incidents.

  • Undertake incident response and remediation functions.

  • Assist with Threat Hunt activities.

Essential

  • Minimum 3 years working as a Cyber Security Engineer.

  • Experience building and maintaining reliable integrations between SEIM platforms and enterprise systems.

  • Demonstrated knowledge of log ingestion from hybrid hosting platforms, including Azure and Amazon Web Services.

  • Experience designing, implementing and testing security automation playbooks and workflows.

  • Ability to work well and share knowledge within a team.

  • Well-developed writing skills and experience maintaining technical documentation.

Desirable

  • Experience administering Nuix to support eDiscovery or investigative data processing.

  • Experience using Splunk SOAR to develop Playbooks.

  • Knowledge of Splunk Risk Based Alerting (RBA).

  • Technical tertiary qualifications, Microsoft or Splunk certifications are highly desirable.

  • Relevant industry certifications such as CISSP, GCIH, GCIA, etc.

This role is based in Canberra and requires an NV1 clearance

Stay Safe While Job Hunting

We vet all employer accounts and do our best to keep job ads safe, but scams can still occur. Be cautious when sharing personal information — never provide financial details or make payments during the application process. For extra security, use the Apply button on our site when proceeding.

Skills

0 of 14 matched
AwsAzureCyber securityIncident responseLog ingestionNuixPlaybooksSecurity automationSeimSplunk risk based alertingSplunk soarTeamworkTechnical documentationThreat hunting

Licenses & certifications

0 of 5 matched
CisspGciaGcihMicrosoft certificationsSplunk certifications

Harrison McMillan

More details

Expiring date
Cyber Security Engineer (5908) | Harrison McMillan | Australian Ageing Agenda