Cyber Operations Security Expert

Everi Pty

City of Melbourne

Hybrid

AUD 120,000 - 160,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Everi Pty in Melbourne seeks a Cyber Operations Security Expert to lead proactive monitoring, investigation and mitigation of security incidents within the Cyber Security Operations team.

The role requires expertise in cloud security (Azure/AWS), SIEM tools, endpoint and network security, and threat intelligence, with responsibility for incident response, forensics, and mentoring junior staff. Formal cyber security qualifications or certifications are preferred.

Qualifications

  • Familiar with log aggregation and SIEM systems.
  • Knowledge of the Information Security Manual (ISM) and cyber security concepts.
  • Experience implementing Incident Response Frameworks (NIST SP 800-61, MITRE).
  • Formal tertiary qualifications or industry certifications in cyber security (Azure/AWS, Splunk Certified).

Responsibilities

  • Lead proactive monitoring, investigation, and mitigation of security incidents.
  • Analyse security event data and identify suspicious activity.
  • Lead incident response including forensics and chain of custody.
  • Respond to events using established SOPs.
  • Mentor junior staff and improve defensive tools.
  • Produce incident reports and threat briefs.

Skills

SIEM familiarity
Cyber security concepts
Incident response frameworks

Education

Cyber security degree/certifications

Tools

Azure
AWS
Splunk

Job description

Job Description

We are seeking a Cyber Operations Security Expert as below

  • Role/s: EL1 Cyber Operations Security Expert
  • The Cyber Operations Security Expert, will undertake technical cyber security activities under
  • the leadership of the Director of Cyber Security Operations. The Cyber Operations Security
  • Expert,must possess and demonstrate technical competency in areas of cloud security
  • (Azure/AWS), endpoint and network security, threat intelligence and hunting, data loss
  • prevention, vulnerability management, and incident response. The Cyber Operations Security
  • Expert,will be required to support and contribute to the protection of the Agency's systems,
  • users, and data, to support NDIA's objectives to "build a world-leading National Disability
  • Insurance Scheme".
  • As part of the Cyber Security Operations team, the role will help ensure that NDIA has the
  • capability to build and protect cyber-resilient information technology platforms and support
  • strategic objectives.
Responsibilities

The role will involve the key responsibilities:

  • Lead proactive monitoring, investigation, and mitigation of security incidents within security
  • tools (including Sentinel, Microsoft Defender 365 stack, Azure Security Centre, Splunk )
  • Analyse security event data and identifying suspicious/malicious activity from networks and systems
  • Lead incident response activities including initial and detailed investigation, computer forensics, chain of custody implications
  • Respond to events and incidents using established Standard Operating Procedures (SOPs)
  • Be a point of escalation for complex incidents and act as a subject matter expert in areas of cloud security, active defence, and threat mitigation
  • Develop and manage phishing simulations
  • Research new and evolving threats and vulnerabilities to the Agency's threat landscape
  • Conduct log analysis and develop visualisation and reporting within Splunk
  • Identify critical data sources required by cyber for ingestion and normalisation into the SIEMs
  • Collaborate with Security Operations and IT engineers to implement security controls
  • Supervise, mentor and develop junior staff, and identify areas of people, process, and defensive tool improvement
  • Produce and disseminate incident response reports, activity reports, and intelligence and threat briefs
About the Candidate
  • Demonstrated familiarity with log aggregation and Security Incident and Event Management (SIEM) systems
  • Knowledge of the Information Security Manual (ISM) and cyber security concepts.
  • Demonstrated experience implementing and using Incident Response Frameworks (NIST SP 800-61 Incident Handling Guide, Mitre Frameworks)
  • Formal tertiary qualifications or industry certifications in a cyber security related field (e.g.Azure/AWS, Splunk Certified)
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Cyber Operations Security Expert
Lead Cyber Operations Security Expert

Leaders • Canberra

On-site
AUD 180,000 - 240,000
Cyber Operations Security Expert
Cyber Operations Security Expert

Recruitment Hive • Canberra

Hybrid
AUD 120,000 - 180,000
EL1 Cyber Operations Security Expert
EL1 Cyber Operations Security Expert

Peoplebank • City of Melbourne

Hybrid
AUD 150,000 - 190,000
Lead Cyber Operations Security Expert
Lead Cyber Operations Security Expert

Peoplebank • City of Brisbane

On-site
AUD 170,000 - 230,000
Threat Detection Engineer
Threat Detection Engineer

Everi Pty • Canberra

Hybrid
AUD 120,000 - 180,000
Hybrid work arrangement
Cyber Threat Investigator
Cyber Threat Investigator

Velan Consulting Pty Ltd • Canberra

Hybrid
AUD 120,000 - 190,000
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Pinaka Technology Solutions Pty Ltd • Canberra

Hybrid
AUD 150,000 - 190,000
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Canberra, Australian Capital Territory, Australia Department of Industry, Science and Resources • Canberra

Hybrid
AUD 110,000 - 150,000
Lead Cyber Security Officer
Lead Cyber Security Officer

IT Alliance Australia • Australia

On-site
AUD 120,000 - 150,000
Lead Cyber Security Advisor with NV1
Lead Cyber Security Advisor with NV1

ZSoft Technologies Pty Ltd • Canberra

On-site
AUD 110,000 - 140,000