Security Operations Engineer / Specialist
Indexed description
Laneway is recruiting on behalf of our client, a government organisation, for an experienced Security Operations Engineer / Specialist to join their cyber security team.
This is a 12-month contract offering flexibility to work from anywhere in Australia, with an expectation of 2 days per week in the office.
This is a strongly hands-on technical role focused on actively monitoring, detecting and responding to cyber security threats across enterprise and cloud environments.
The successful candidate will work closely with Cyber Security, DevOps and Technology Development teams to strengthen the organisation’s security posture, improve detection capabilities and respond to cyber incidents.
Key responsibilities include:
- Monitoring, detecting and responding to cyber security threats and incidents
- Configuring, managing and optimising security monitoring platforms
- Developing and tuning analytics rules, dashboards and alerting use cases
- Developing detection use cases and KQL queries
- Conducting proactive threat hunting using available telemetry and threat intelligence
- Investigating security alerts, events and logs across cloud and enterprise environments
- Supporting incident response, including investigation, containment, eradication and recovery
- Conducting root cause analysis and implementing remediation actions
- Developing and maintaining security automation playbooks and scripts
- Identifying, assessing and prioritising vulnerabilities
- Working with DevOps and development teams on security remediation
- Managing and utilising threat intelligence to improve detection and threat hunting
- Configuring, maintaining and optimising security tools and platforms
- Supporting the integration and automation of security capabilities
- Maintaining operational documentation, incident records and runbooks
- Supporting alignment with Australian Government security policies and controls
Key skills and experience:
- Hands-on cyber security operations experience across monitoring, incident response, threat analysis and investigation
- Strong experience with SIEM/SOAR platforms, preferably Microsoft Sentinel
- Experience developing analytics rules, KQL queries, alert tuning and dashboards
- Strong incident detection and response capabilities
- Experience triaging alerts and investigating security events
- Security automation and scripting experience
- Experience working in cloud environments, preferably Microsoft Azure
- Strong understanding of cloud logging, monitoring and security controls
- Experience with threat hunting and detection engineering
- Understanding of cyber security frameworks and best practices
- Familiarity with Australian Government security requirements, including the ISM and Essential Eight
- Strong communication, documentation and stakeholder engagement skills
The successful candidate must have obtain Negative Vetting Level 1 (NV1) security clearance.
This is a hands-on technical cyber security opportunity suited to someone who enjoys working directly with security platforms, investigating threats, developing detections and improving an organisation’s ability to prevent and respond to cyber incidents.
Laneway
We value diverse perspectives, backgrounds, and experiences, and encourage applications from people of all identities, communities, and career journeys.
If you’re available now (or soon), we’d like to hear from you.
Interested?
Apply ASAP or contact Keith on 0448 908 279 for a confidential discussion.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search