Cyber Security Engineer (Hybrid/Flexible - Canberra Based)

Commonwealth Superannuation Corporation

Canberra

Hybrid

AUD 110,000 - 140,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible and hybrid work options
Enhanced parental leave

Job summary

Commonwealth Superannuation Corporation (CSC) seeks a Cyber Security Engineer to operate, maintain and uplift CSC's cyber security services. The role focuses on administration of security toolsets, collaborating with Technology teams, and stakeholder engagement from Canberra.

The engineer will contribute to cloud security, Defender, SIEM, and risk assessments. The role emphasizes day-to-day maintenance, design and improvement of security controls, and alignment with essential security standards.

Qualifications

  • Tertiary qualifications in Cyber Security, Computer Science or a related discipline.
  • Relevant industry security certifications (CEH, CISM, CISSP, GSEC etc.).
  • Hands on experience implementing, configuring, and managing Microsoft Defender (for endpoint, email, Cloud, identities and Cloud apps) and Intune
  • Hands on experience implementing, configuring, and managing SIEM, preferably Splunk or Sentinal, as well as firewalls and web proxy
  • Security compliance in financial and government environments e.g. APRA 231/234 and ISM.
  • Demonstrated knowledge of multiple security frameworks (e.g. NIST, PSPF) and of security best practices for cloud services (IaaS, PaaS & SaaS) particularly AWS and Azure security configuration.
  • Demonstrated knowledge of industry good practices such as OWASP, PCI DSS, ISO27001/2, ASD E8, NIST CSF.
  • Experience in the enterprise design of contemporary technologies such as Identity and Access Management, End Point Protection, DDoS Protection, Data Loss Prevention.
  • Complex threat and risk assessments and security incident investig.
  • Demonstrated ability to provide expert security advice, develop quality cyber security controls, processes and policies.
  • Demonstrated ability to build and maintain collaborative relationships.
  • Highly developed written and oral communication and presentation skills
  • Highly developed liaison and negotiation skills.

Responsibilities

  • Design, implement, and manage cyber security infrastructure, toolsets & rulesets including areas of Cloud security (Azure and AWS), Microsoft Defender & Intune , firewalls, SIEM, Application Control, PAM, email security, etc.
  • Support, maintain and provide advice on uplift and enhancement activities, including ACSC’s Essential Eight.
  • Review existing security configurations and provide recommendations on improvements.
  • Produce security documentation, plans, and procedures on tooling and processes.
  • Assess the relevance of new and emerging Cyber Security Suppliers and Technologies.
  • Contribute to the Security team meeting its overall responsibilities including where required.
  • Assist with cyber security incident response by completing Investigations and remediations.
  • Assist with Security Threat & Risk Assessments and relevant tasks.

Skills

Cyber security
Azure
AWS
Microsoft Defender
Intune
SIEM
Firewalls
PAM
APRA 231/234
ISM
NIST
PSPF
OWASP
PCI DSS
ISO27001/2
ASD E8
NIST CSF
Identity and Access Management
End Point Protection
DDoS Protection
Data Loss Prevention
Threat & Risk Assessments
Incident Investigations

Education

Tertiary qualifications in Cyber Security, Computer Science or related discipline
Security certifications (CEH, CISM, CISSP, GSEC)

Tools

Splunk
Sentinel

Job description

Job Type: Permanent - Full Time

Location: Canberra

Job Category: Information & Communication Technology

About The Role

The Cyber Security Engineer will operate, maintain and support CSC Cyber Security services in order to protect CSC financial and information assets. The incumbent will collaborate with project and BAU Technology teams to support day-to-day maintenance and uplift activities, primarily through the administration and configuration of security toolsets. A key responsibility in this role will also be stakeholder management and business engagement.

Job Description
Key responsibilities
  • Design, implement, and manage cyber security infrastructure, toolsets & rulesets including areas of Cloud security (Azure and AWS), Microsoft Defender & InTune , firewalls, SIEM, Application Control, PAM, email security, etc.
  • Support, maintain and provide advice on uplift and enhancement activities, including ACSC’s Essential Eight.
  • Review existing security configurations and provide recommendations on improvements.
  • Produce security documentation, plans, and procedures on tooling and processes.
  • Assess the relevance of new and emerging Cyber Security Suppliers and Technologies.
  • Contribute to the Security team meeting its overall responsibilities including where required.
  • Assist with cyber security incident response by completing Investigations and remediations.
  • Assist with Security Threat & Risk Assessments and relevant tasks.

Specific duties, deliverables and reporting lines may vary from time to time dependant on business needs and priorities. Key objectives and measurements will be captured in the Performance & Development planning cycle, established annually and adapted as needed.

What We’re Looking For
  • Tertiary qualifications in Cyber Security, Computer Science or a related discipline
  • Relevant industry security certifications (CEH, CISM, CISSP, GSEC etc.).
  • Hands on experience implementing, configuring, and managing Microsoft Defender (for endpoint, email, Cloud, identities and Cloud apps) and Intune
  • Hands on experience implementing, configuring, and managing SIEM, preferably Splunk or Sentinal, as well as firewalls and web proxy
  • Security compliance in financial and government environments e.g. APRA 231/234 and ISM.
  • Demonstrated knowledge of multiple security frameworks (e.g. NIST, PSPF) and of security best practices for cloud services (IaaS, PaaS & SaaS) particularly AWS and Azure security configuration.
  • Demonstrated knowledge of industry good practices such as OWASP, PCI DSS, ISO27001/2, ASD E8, NIST CSF.
  • Experience in the enterprise design of contemporary technologies such as Identity and Access Management, End Point Protection, DDoS Protection, Data Loss Prevention.
  • Complex threat and risk assessments and security incident investig.
  • Demonstrated ability to provide expert security advice, develop quality cyber security controls, processes and policies.
  • Demonstrated ability to build and maintain collaborative relationships.
  • Highly developed written and oral communication and presentation skills
  • Highly developed liaison and negotiation skills.
Why join CSC?
  • Permanent role with flexible and hybrid work options
  • Enhanced parental leaves
  • An opportunity to create an impact in a newly created role
What you’ll get in return
A career where you belong

At CSC, we’re committed to more than super — we’re committed to people. That means creating a workplace that values diversity, promotes equity, and fosters inclusion across everything we do.

Our gender equality strategy is more than a promise — it’s a plan. We're actively increasing representation in our workforce, removing barriers to career progression, and creating pathways for all employees to grow and succeed.

We welcome candidates of all genders, cultural backgrounds, ages, sexualities, and abilities. We offer flexible work, inclusive policies, and development opportunities designed to support you at every stage of your career.

We’re proud to be an equal opportunity employer — and proud of the progress we’re making. Join a workplace where you can thrive, grow, and belong.

Learn more about CSC and our benefits on our career site - Careers

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cyber Defence and Resilience
Manager, Cyber Defence and Resilience

Commonwealth Superannuation Corporation • Australia

Hybrid
AUD 140,000 - 170,000
Hybrid work arrangements
Cyber Engineer
Cyber Engineer

e2 Cyber • Brindabella

On-site
AUD 80,000 - 120,000
Operational Risk and Resilience Consultant - (Canberra/Sydney)
Operational Risk and Resilience Consultant - (Canberra/Sydney)

Commonwealth Superannuation Corporation • Canberra

Hybrid
AUD 140,000 - 190,000
Flexible work options
Hybrid work arrangement
Enhanced parental leave
Operational Risk and Resilience Consultant - (Canberra/Sydney)
Operational Risk and Resilience Consultant - (Canberra/Sydney)

Commonwealth Superannuation Corporation • Sydney

On-site
AUD 130,000 - 180,000
Enhanced parental leave
Hybrid work options
Operational Risk and Resilience Consultant - (Canberra/Sydney)
Operational Risk and Resilience Consultant - (Canberra/Sydney)

Commonwealth Superannuation Corporation • Sydney

Hybrid
AUD 150,000 - 190,000
Enhanced parental leaves
Hybrid work options
Hybrid Cyber Security Engineer — Cloud, SIEM & Defenses
Hybrid Cyber Security Engineer — Cloud, SIEM & Defenses

Commonwealth Superannuation Corporation • Canberra

Hybrid
AUD 110,000 - 140,000
Flexible and hybrid work options
Enhanced parental leave
Cyber GRC Specialist
Cyber GRC Specialist

Client 1 • Canberra

On-site
AUD 120,000 - 150,000
14% superannuation
6 weeks paid annual leave
Mentoring & professional development
Lead Cyber Security Officers
Lead Cyber Security Officers

Experis ManpowerGroup Sp. z o.o. • Canberra

On-site
AUD 120,000 - 180,000
Operational Risk and Resilience Consultant - (Canberra/Sydney)
Operational Risk and Resilience Consultant - (Canberra/Sydney)

CSC Commonwealth Superannuation Corporation • Sydney

On-site
AUD 150,000 - 190,000
Flexible, hybrid work
Enhanced parental leaves
Impact in a newly created role
Senior Cloud Security Consultant
Senior Cloud Security Consultant

CyberCX Pty Ltd • Australia

On-site
AUD 90,000 - 130,000
Leave entitlements + additional paid/
Health insurance discounts
Gym membership discounts
+2