Cyber Security Operations Analyst

Australian Secret Intelligence Service

Canberra

On-site

AUD 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Australian Secret Intelligence Service is seeking a Cyber Security Operations Analyst in Canberra. You will monitor, detect, and respond to cyber activity to protect confidentiality, integrity and availability of ASIS ICT systems and data.

The role focuses on log analysis, threat hunting, incident response, and developing detection capabilities, with mentorship to peers and ongoing improvements to security coverage.

Qualifications

  • Experience in cyber security operations including monitoring, detection and response.
  • Proficiency with SIEM and data analytics tools; knowledge of query languages (SQL, SPL, Python, PowerShell).
  • Incident response experience and ability to manage investigations are highly valued.
  • Certifications in cyber security will be looked upon favorably.
  • Bachelor's degree in Cyber Security/CS/IT is preferred but not essential.
  • 3+ years of cyber security operations or analyst experience in enterprise or government environments.

Responsibilities

  • Monitor, detect and respond to malicious cyber activity targeting ASIS ICT environment.
  • Analyse logs from applications, hosts and network traffic using SIEM and hunt threats.
  • Prepare for and manage cyber incident response activities, containing and eradicating threats.
  • Develop dashboards, use cases and threat detection capabilities to identify gaps.
  • Leverage intelligence and data holdings to provide actionable insights for other teams.
  • Mentor and coach team members on cyber security operations best practices.

Skills

Risk management
Incident response
Security analytics
PSPF/ISM knowledge
Communication skills
Autonomy

Education

Bachelor's degree in Cyber Security/Computer Science/Information Technology

Tools

SIEM
Data analytics platforms
SQL
Python
PowerShell
SPL

Job description

Join us as a Cyber Security Operations Analyst and play a pivotal role in safeguarding ASIS's ICT environment. In this dynamic position, you will monitor, detect, and respond to malicious cyber activity, working to protect the confidentiality, integrity, and availability of our systems and sensitive data.

The key duties of the position include:
  • Monitor, detect, and respond to malicious cyber activity targeting ASIS's ICT environment to protect the confidentiality, integrity, and availability of systems and data
  • Analyse log data from applications, hosts, and network traffic using SIEM software and conduct proactive cyber threat hunting activities
  • Prepare for and manage cyber incident response activities, working to quickly identify, contain, and eradicate threats
  • Develop dashboards, use cases, and threat detection capabilities to improve cyber security, and proactively identify and remediate capability and coverage gaps across the ICT environment
  • Leverage advanced technologies, intelligence analysis, and data holdings to provide actionable insights and support other business areas
  • Mentor and coach team members on cyber security operations best practices
Core skills
  • Familiarity with risk management, incident response, and investigative best practices, including experience in security analytics and developing reporting for various customers.
  • Demonstrated understanding of Australian Government cyber security frameworks, including the Protective Security Policy Framework (PSPF) and Information Security Manual (ISM).
  • Strong background in cyber security capabilities and tools, including SIEM, data analytics platforms, and query/coding languages such as SQL, SPL, Python, and PowerShell.
  • Demonstrated understanding of at least one technology domain, such as infrastructure, virtualisation, databases, software development, data analytics or machine learning.
  • Proven ability to work under limited direction with reasonable autonomy, demonstrating initiative, judgment, and strategic thinking to solve complex problems and manage workflows.
  • Excellent communication and stakeholder engagement skills, with the ability to provide detailed technical and policy advice, articulate cyber best practices, and manage sensitive issues.
Education and qualification requirements
  • Proven experience in cyber security operations, including monitoring, detecting, and responding to malicious cyber activity
  • Proficiency in Security Information and Event Management (SIEM) software, data analytics platforms, and query/coding languages (e.g., SPL, SQL, Python, PowerShell) is highly desirable
  • Previous incident response experience, such as digital forensics, malware analysis and incident investigations will be highly valued
  • Professional certifications along with demonstrated application of knowledge will be highly regarded
  • Bachelor's degree in Cyber Security, Computer Science, or Information Technology (not essential)
  • 3+ years of experience in a cyber security operations or analyst role, preferably within an enterprise or government environment
Eligibility
  • Be an Australian citizen
  • Be assessed as suitable to hold and maintain a TOP SECRET-Privileged Access security clearance

For more information on eligibility please see the Protective Security Policy Framework which is publicly accessible at https://protectivesecurity.gov.au, section 12 provides information on Eligibility and suitability.

The position is Canberra based, with conditions similar to those in the Australian Public service including superannuation.

Notes

ASIS values workplace diversity and is committed to providing a supportive, inclusive and respective work environment. We encourage applications from Aboriginal and Torres Strait Islander people, Women, people with disabilities, people that identify as LGBTIQ+ and people from culturally and linguistically diverse backgrounds.

ASIS is committed to fostering a diverse and inclusive environment for candidates to participate in all stages of the selection process. Please let us know if you require any additional assistance or reasonable adjustments during any stage of the recruitment process and we will work with you to manage this throughout. If you are successful in gaining employment, reasonable adjustments can also be made available to you in performing your role.

Please note: ASIS does not provide feedback to unsuccessful applicants

Getting to know the Australian Secret Intelligence Service

ASIS is Australia’s overseas secret intelligence collection agency. Its mission is to protect and promote Australia’s vital interests through the provision of intelligence services as directed by the Government. Its work can involve collecting intelligence relating to national security, international relations and economic issues. It also contributes to Australia’s coordinated national efforts against terrorism, proliferation of weapons of mass destruction, and trans-national issues such as people smuggling.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Operations Technical Lead
Cyber Security Operations Technical Lead

Australian Secret Intelligence Service • Canberra

On-site
AUD 180,000 - 240,000
Cyber Security Operations Analyst L5 - L6
Cyber Security Operations Analyst L5 - L6

Australian Secret Intelligence Service • Canberra

On-site
AUD 90,000 - 130,000
Cyber Defense & Incident Response Analyst
Cyber Defense & Incident Response Analyst

Australian Secret Intelligence Service • Canberra

On-site
AUD 120,000 - 180,000
AE5 Team Member - Intelligence Response Centre - Shift Work
AE5 Team Member - Intelligence Response Centre - Shift Work

Australian Security Intellegence Organisation • Canberra

On-site
AUD 100,000 - 108,000
Shift penalty 38.95%
TOP SECRET security clearance bonus/2
Security clearance allowance 7.5%
+4
Cyber Threat Lead Security Analyst
Cyber Threat Lead Security Analyst

ASJ Tech Pty Ltd • Canberra

On-site
AUD 120,000 - 180,000
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Client 1 • Canberra

Hybrid
AUD 140,000 - 190,000
Hybrid work arrangement
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Informatech Pty Ltd • Canberra

On-site
AUD 120,000 - 180,000
PD allowance
Training leave
Client exposure
+1
AE5 Team Member, Intelligence Response Centre - Shift work
AE5 Team Member, Intelligence Response Centre - Shift work

Um Holdings • Canberra

On-site
AUD 90,000 - 115,000
Shift penalty 38.95%
TOP SECRET clearance allowance
Superannuation 15.4%
+4
ICT Software Delivery Manager EL1
ICT Software Delivery Manager EL1

Australian Secret Intelligence Service • Canberra

On-site
AUD 140,000 - 190,000
Senior Cyber Security Operations Analyst
Senior Cyber Security Operations Analyst

Australian Secret Intelligence Service • Canberra

On-site
AUD 90,000 - 130,000