Security Engineer, AWS Security

Amazon Web Services (AWS)

City of Melbourne

On-site

AUD 100,000 - 140,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Amazon Web Services Australia Pty Ltd in Melbourne is seeking a Security Engineer/SOC Analyst to monitor and respond to security threats within a global cloud environment. You will work with SIEM tools, threat intel and incident response processes to protect AWS infrastructure and customer data.

The role requires 3+ years in a SOC/defensive cyber role, strong analytical skills, and the ability to operate in a high-security environment with on-call duties and cross-team collaboration.

Qualifications

  • 3+ years experience as SOC Analyst or Defensive Cyber Role.
  • Experience with SIEM tools (Splunk, Microsoft Sentinel, Sumo Logic).
  • Understanding of incident response, threat detection, and security monitoring.
  • Knowledge of HTTP, DNS, TCP/IP.

Responsibilities

  • Hold or attain Australian Government Security Vetting Agency clearance.
  • Perform security event monitoring, incident management and response.
  • Develop, tune, and maintain SIEM detections, dashboards, and correlation rules.
  • Conduct proactive threat hunting and analysis to identify suspicious behaviour.
  • Investigate, respond and be the escalation point for security alerts and incidents.
  • Support the integration and optimisation of security data sources within SIEM platforms.
  • Contribute to continuous improvement of SOC processes and automation initiatives including authoring SOC SOP’s and runbooks.
  • Apply frameworks such as MITRE ATT&CK and NIST in concert with the ISM and PSPF to guide security operations.
  • Perform on-call duties as required, out of business hours.

Skills

SOC Analyst experience
Threat detection
Incident response
Security monitoring
SIEM tools
IP protocols
Analytical skills
Communication skills

Tools

Splunk
Microsoft Sentinel
Sumo Logic

Job description

Description

Applicants must be Australian citizens and hold or be eligible to obtain an Australian Government Security Clearance, with the ability to successfully complete an Organisational Suitability Assessment. For more information regarding security clearances please visit (https://www.agsva.gov.au/).

Amazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to large government customers, run their operations and applications on AWS’ highly secure infrastructure.

Key Responsibilities May Include
  • Hold or be able to attain an Australian Government Security Vetting Agency clearance (see https://www1.defence.gov.au/security/clearances)
  • Performing security event monitoring, incident management and response.
  • Develop, tune, and maintain SIEM detections, dashboards, and correlation rules
  • Conduct proactive threat hunting and analysis to identify suspicious behaviour
  • Investigate, respond and be the escalation point for security alerts and incidents.
  • Support the integration and optimisation of security data sources within SIEM platforms.
  • Contribute to continuous improvement of SOC processes and automation initiatives including authoring SOC SOP’s and runbooks.
  • Apply frameworks such as MITRE ATT&CK and NIST in concert with the ISM and PSPF to guide security operations.
  • Perform on-call duties as required, out of business hours.
A day in the life

A typical day for a Security Engineer may involve Responding to new detections: Monitor security alerts in real-time, investigate suspicious activities by analysing logs and network traffic, determine if incidents are legitimate threats or false positives, and coordinate immediate response actions including containment and remediation when threats are confirmed.

Write security detections: Develop and implement custom detection rules based on emerging threat intelligence, tune existing security signatures to reduce false positives while maintaining coverage, and create automated alerts for specific attack patterns or indicators of compromise relevant to the organization's environment.

Threat hunt: Proactively search through network logs, endpoint data, and system activities for signs of advanced persistent threats that may have evaded automated detection systems, using threat intelligence feeds and behavioural analysis to identify potential security breaches before they cause significant damage.

Work with service teams on security issues: Collaborate with IT, network, and application teams to remediate identified vulnerabilities, coordinate security patches and system hardening efforts, provide security guidance during incident response, and ensure proper implementation of security controls across all infrastructure components.

Generate metrics and dashboards: Create and maintain security performance indicators including incident response times, threat detection rates, and system availability metrics, develop executive-level reports summarizing security posture and trends, and build real-time dashboards for continuous monitoring of security operations effectiveness.

About The Team

AWS values diverse experiences.

Why Amazon Security

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

The team is comprised of security professionals with a cross section of national security and private sector experience, providing a range of perspectives required for creative problem solving. We value diversity of thought, creativity, and a strong Bias for Action and Earn Trust. We believe that there are no "perfect" security solutions and we develop and iterate using a continuous improvement process.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

Inclusive Team Culture

AWS values curiosity and connection. Our employee-led and company-sponsored affinity groups promote inclusion and empower our people to take pride in what makes us unique. Our inclusion events foster stronger, more collaborative teams. Our continual innovation is fueled by the bold ideas, fresh perspectives, and passionate voices our teams bring to everything we do.

Mentorship & Career Growth

We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.

Basic Qualifications
  • 3+ years experience as a SOC Analyst or Defensive Cyber Role.
  • Experience with SIEM tools (e.g., Splunk, Microsoft Sentinel, Sumo Logic, or similar).
  • Good understanding of incident response, threat detection, and security monitoring.
  • Good working knowledge of foundational systems and protocols e.g HTTP, DNS, TCP/IP.
  • Excellent analytical, problem-solving, and communication skills.
Preferred Qualifications
  • 5+ years experience as a SOC Analyst or Defensive Cyber Role.
  • Demonstrated experience and application of incident response, threat detection, and security monitoring high security environments.
  • Strong technical working knowledge of key security domains, e.g Cryptography, Identity & Access Management and Application Security.
  • Experience with AWS products and services
Acknowledgement Of Country

In the spirit of reconciliation Amazon acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.

IDE Statement

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information.

Company - Amazon Web Services Australia Pty Ltd

Job ID: A3128132

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Engineer, AWS Security
SOC Engineer, AWS Security

Amazon Web Services (AWS) • Council of the City of Sydney

On-site
AUD 120,000 - 160,000
Security Engineer, AWS Security Incident Response
Security Engineer, AWS Security Incident Response

Amazon Web Services (AWS) • Council of the City of Sydney

On-site
AUD 120,000 - 180,000
Data Centre Security Manager , Data Centre Security
Data Centre Security Manager , Data Centre Security

Amazon Web Services (AWS) • City of Melbourne

On-site
AUD 140,000 - 190,000
Learning & development
Private health insurance
Employee discounts
Security Consultant, Global ProServe Security
Security Consultant, Global ProServe Security

Amazon • City of Melbourne

On-site
AUD 140,000 - 180,000
Governance, Risk, and Compliance Specialist, AWS Security
Governance, Risk, and Compliance Specialist, AWS Security

Amazon Web Services (AWS) • Council of the City of Sydney

On-site
AUD 140,000 - 180,000
Learning & development
Health insurance
Employee assistance
Cyber Security Manager, AWS Security
Cyber Security Manager, AWS Security

Amazon • Melbourne

On-site
AUD 90,000 - 150,000
Flexible Working Hours
Training and Career Growth Opportunities
Work-Life Balance Initiatives
+1
Governance, Risk, and Compliance Specialist, AWS Security
Governance, Risk, and Compliance Specialist, AWS Security

Amazon • City of Melbourne

On-site
AUD 150,000 - 190,000
Learning & development
Health protection and life cover
Military differential pay
+3
Sr Security Engineer, Region Services
Sr Security Engineer, Region Services

Amazon Web Services (AWS) • Council of the City of Sydney

On-site
AUD 140,000 - 210,000
Learning & development support
Health, income protection & life cover
Military differential pay (Australia)
+3
Senior Security Technical Program Manager, AWS Security
Senior Security Technical Program Manager, AWS Security

Amazon Web Services (AWS) • City of Melbourne

On-site
AUD 180,000 - 240,000
Security Engineer, AWS Security
Security Engineer, AWS Security

Amazon • Melbourne

On-site
AUD 80,000 - 120,000