Lead Cyber Operations Security Expert

Leaders

Canberra

On-site

AUD 180,000 - 240,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Leaders IT in Canberra seeks a Lead Cyber Operations Security Expert to lead complex security investigations, identify threats, and drive improvements across security operations. You will work with cyber security, infrastructure, and technology teams as a key escalation point for significant incidents.

You will provide expert guidance on modern cyber threats, defensive strategies, and cloud security controls, mentor junior team members, and produce incident reports and threat intelligence

Qualifications

  • Minimum 7 years' experience in cyber security or IT, including experience operating in senior or lead-level roles.
  • Proven experience leading cyber incident investigations, threat hunting, and crisis response activities.
  • Strong experience with SIEM and security operations platforms such as: Microsoft Sentinel, Microsoft Defender Suite, Splunk, EDR/XDR technologies.
  • Experience working within Azure and/or AWS cloud environments.
  • Knowledge of Zero Trust Security Architecture principles.
  • Strong understanding of vulnerability management, endpoint security, and network security.
  • Experience working with threat intelligence frameworks and MITRE ATT&CK methodologies.
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to mentor technical teams and provide cyber security leadership.

Responsibilities

  • Lead the monitoring, investigation, and remediation of cyber security incidents.
  • Analyse security events and identify suspicious or malicious activity across networks, endpoints, and cloud platforms.
  • Conduct incident response activities, including investigations, digital forensics, and evidence management.
  • Perform proactive threat hunting and threat intelligence activities.
  • Develop and manage phishing simulation exercises and user awareness initiatives.
  • Conduct log analysis and create dashboards, reporting, and visualisations using SIEM platforms.
  • Research emerging threats, vulnerabilities, and attack techniques.
  • Support the onboarding, ingestion, and normalisation of security data sources.
  • Collaborate with security operations, cloud, and infrastructure teams to improve security controls.
  • Act as a technical escalation point for complex cyber incidents.
  • Mentor and develop junior cyber security team members.
  • Produce incident reports, threat intelligence briefings, and operational security reporting.

Skills

Security leadership
Incident investigations
Threat hunting
Cloud security
SIEM platforms
Azure/AWS
Mentoring
Threat intel

Tools

Microsoft Sentinel
Microsoft Defender
Splunk
EDR/XDR

Job description

About the Role

As the Lead Cyber Operations Security Expert, you will be responsible for leading complex security investigations, proactively identifying cyber threats, and driving improvements across security operations capability.
Working closely with cyber security, infrastructure, and technology teams, you will serve as a key escalation point for significant incidents and provide expert guidance on modern cyber security threats, defensive strategies, and cloud security controls.

Key Responsibilities
  • Lead the monitoring, investigation, and remediation of cyber security incidents.
  • Analyse security events and identify suspicious or malicious activity across networks, endpoints, and cloud platforms.
  • Conduct incident response activities, including investigations, digital forensics, and evidence management.
  • Perform proactive threat hunting and threat intelligence activities.
  • Develop and manage phishing simulation exercises and user awareness initiatives.
  • Conduct log analysis and create dashboards, reporting, and visualisations using SIEM platforms.
  • Research emerging threats, vulnerabilities, and attack techniques.
  • Support the onboarding, ingestion, and normalisation of security data sources.
  • Collaborate with security operations, cloud, and infrastructure teams to improve security controls.
  • Act as a technical escalation point for complex cyber incidents.
  • Mentor and develop junior cyber security team members.
  • Produce incident reports, threat intelligence briefings, and operational security reporting.
Skills & Experience
  • Minimum 7 years' experience in cyber security or IT, including experience operating in senior or lead-level roles.
  • Proven experience leading cyber incident investigations, threat hunting, and crisis response activities.
  • Strong experience with SIEM and security operations platforms such as:
    • Microsoft Sentinel
    • Microsoft Defender Suite
    • Splunk
    • Endpoint Detection and Response (EDR/XDR) technologies
  • Experience working within Azure and/or AWS cloud environments.
  • Knowledge of Zero Trust Security Architecture principles.
  • Strong understanding of vulnerability management, endpoint security, and network security.
  • Experience working with threat intelligence frameworks and MITRE ATT&CK methodologies.
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to mentor technical teams and provide cyber security leadership.
Highly Regarded
  • Experience with digital forensics and incident handling frameworks.
  • Knowledge of the Information Security Manual (ISM).
  • Experience implementing NIST, ISO 27001, or Essential Eight controls.
  • Relevant certifications such as:
    • CISSP
    • GIAC Certifications
    • Azure Security Certifications
    • AWS Security Certifications
    • Splunk Certifications
    • Microsoft Security Certifications

Peoplebankand Leaders ITare committed to creating a diverse and inclusive workplace where everyone belongs. We welcome applications from people of all backgrounds, identities, and experiences. If you need adjustments to the recruitment process due to your circumstances, please let us know—we’re here to support you.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Cyber Operations Security Expert
Lead Cyber Operations Security Expert

Peoplebank • City of Brisbane

On-site
AUD 170,000 - 230,000
Senior Cyber Incident Response Specialist
Senior Cyber Incident Response Specialist

Peoplebank • Sydney

On-site
AUD 170,000 - 250,000
Cyber Operations Security Expert
Cyber Operations Security Expert

Everi Pty • City of Melbourne

Hybrid
AUD 120,000 - 160,000
EL1 Cyber Operations Security Expert
EL1 Cyber Operations Security Expert

Peoplebank • City of Melbourne

Hybrid
AUD 150,000 - 190,000
Cyber Security Analyst
Cyber Security Analyst

cleared • Canberra

Hybrid
AUD 90,000 - 130,000
Hybrid work culture
Training opportunities
Lead Security Engineer
Lead Security Engineer

Morgan McKinley • Sydney

On-site
AUD 140,000 - 170,000
Cyber Security Lead
Cyber Security Lead

Emanate Technology Pty Ltd • Adelaide

Hybrid
AUD 180,000 - 240,000
Hybrid work arrangements
Senior Cyber Threat Hunt Specialist
Senior Cyber Threat Hunt Specialist

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1
Lead Cyber Operations & Threat Hunting
Lead Cyber Operations & Threat Hunting

Peoplebank • City of Brisbane

On-site
AUD 170,000 - 230,000
Senior Threat Hunt & Emulation Lead (SOC, Govt)
Senior Threat Hunt & Emulation Lead (SOC, Govt)

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1