Security Engineer (SIEM)

Client 1

City of Brisbane

Hybrid

AUD 140,000 - 180,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Private health insurance
Generous annual leave entitlements
Annual incentive programme
Paid parental leave
Life and disability insurance
Income protection insurance
Employee Assistance Programme
Novated leasing options

Job summary

Client 1 is seeking an experienced Security Engineer (SIEM) in Brisbane to design, implement and manage security monitoring within a classified Azure environment. You will improve threat detection and incident response, collaborating with security operations, infrastructure, and application teams to strengthen cyber defences.

The role emphasizes SIEM engineering, threat hunting, playbook automation, and detection improvements across cloud, network, and on‑prem surfaces.

Qualifications

  • Bachelor's degree in Cyber Security, IT, CS, Engineering, Information Systems or equivalent.
  • Baseline AGSVA clearance or above is required or can be obtained.
  • Minimum 5 years in cyber security, SIEM operations, or security monitoring.

Responsibilities

  • Administer and maintain Microsoft Sentinel in a classified Azure environment.
  • Design, implement and optimise SIEM detection use cases and analytics rules.
  • Tune alerts to reduce false positives and improve accuracy.
  • Develop automated response playbooks with Azure Logic Apps and Sentinel.
  • Conduct threat hunting using Sentinel, KQL and threat intel.
  • Investigate alerts and incidents; collaborate with infra and app teams.
  • Create dashboards, workbooks, and reporting for stakeholders.
  • Onboard new log sources across cloud and on‑prem environments.
  • Map detections to MITRE ATT&CK techniques and improve coverage.

Skills

SIEM administration
Threat hunting
Incident response
Security monitoring
Security operations

Education

Bachelor's degree in Cyber Security, IT, CS, Engineering, IS

Tools

Microsoft Sentinel
Azure Log Analytics
KQL
Logic Apps

Job description

Role Title

Security Engineer (SIEM)

Location

Brisbane, QLD (hybrid)

Working Arrangement

Full-time

Clearance Required

Baseline AGSVA clearance or above.

Company Overview

Our client is a leading organisation supporting national security and defence-related missions through advanced cyber, digital, and technology capabilities. Operating within highly secure and complex environments, they are committed to delivering innovative solutions that enhance resilience, security, and operational effectiveness.

Job Description

We are seeking an experienced Security Engineer (SIEM) to join a growing cyber security team in Brisbane. This position will be responsible for the design, implementation, optimisation, and ongoing management of security monitoring and detection capabilities within a classified Microsoft Azure environment.

The successful candidate will play a key role in enhancing visibility across the enterprise, improving threat detection capabilities, reducing risk, and supporting effective incident response. Working closely with security operations, infrastructure, and application teams, you will contribute to the continuous improvement of cyber defence capabilities through SIEM engineering, threat hunting, security automation, and detection engineering.

Duties and Responsibilities
  • Administer, configure, and maintain Microsoft Sentinel and supporting Azure security monitoring platforms.
  • Design, implement, and optimise SIEM detection use cases and analytics rules.
  • Tune alerts and detection logic to improve accuracy and reduce false positives.
  • Develop and maintain automated response playbooks using Azure Logic Apps and Sentinel automation capabilities.
  • Conduct threat hunting activities using Microsoft Sentinel, KQL, and threat intelligence sources.
  • Investigate security alerts, incidents, and suspicious activity.
  • Develop dashboards, workbooks, and operational reporting for stakeholders.
  • Integrate and onboard new log sources across cloud, infrastructure, network, and third-party platforms.
  • Map detections and use cases to MITRE ATT&CK techniques.
  • Collaborate with infrastructure and application teams to address security risks.
  • Improve monitoring coverage, incident response processes, and detection effectiveness.
  • Support cyber security audits, compliance activities, and security assessments.
Education/Certifications Required
  • Bachelor's degree in Cyber Security, Information Technology, Computer Science, Engineering, Information Systems, or equivalent industry experience.

Highly desirable certifications:

  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Azure Administrator Associate (AZ-104)
  • CompTIA Security+
  • CCSP, GCIA, GCDA, or other relevant cyber security certifications
Knowledge/Skills Required
  • Minimum 5 years' experience in cyber security, security operations, detection engineering, or SIEM administration.
  • Strong experience administering enterprise-scale SIEM platforms.
  • Hands‑on experience with Microsoft Sentinel, Azure Log Analytics, and Kusto Query Language (KQL).
  • Knowledge of Microsoft Defender suite technologies and Microsoft Entra ID.
  • Experience designing and maintaining analytics rules, workbooks, watchlists, data connectors, and monitoring dashboards.
  • Strong understanding of cyber security monitoring, threat detection, incident response, and security operations.
  • Experience with SOAR and security automation technologies.
  • Familiarity with MITRE ATT&CK and threat hunting methodologies.
  • Experience within Defence, Government, Critical Infrastructure, or highly regulated environments is highly regarded.
  • Knowledge of Australian security frameworks including ISM and PSPF is desirable.
  • Strong communication and stakeholder engagement skills.
Employment Benefits
  • Private health insurance
  • Generous annual leave entitlements
  • Annual incentive programme
  • Paid parental leave
  • Life and disability insurance
  • Income protection insurance
  • Employee Assistance Programme
  • Novated leasing options
Diversity and Inclusion

Our client is committed to creating an inclusive workplace where everyone can contribute and succeed. Applications are encouraged from individuals of all backgrounds, experiences, and perspectives. A fair, equitable, and accessible recruitment process is central to their values.

Veterans

Veterans, reservists, and transitioning Defence personnel are strongly encouraged to apply. Experience gained within military, intelligence, security, or operational environments is highly valued.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations Engineer | SIEM, XDR & Cloud
Senior Security Operations Engineer | SIEM, XDR & Cloud

c4isolutions • Sydney

On-site
AUD 150,000 - 190,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6
Azure Sentinel SIEM Engineer – Hybrid Brisbane
Azure Sentinel SIEM Engineer – Hybrid Brisbane

Client 1 • City of Brisbane

Hybrid
AUD 140,000 - 180,000
Private health insurance
Generous annual leave entitlements
Annual incentive programme
+5
Senior Security Operations Specialist
Senior Security Operations Specialist

GoSourcing • Adelaide

Hybrid
AUD 130,000 - 160,000
Security Operations (SecOps) Engineer
Security Operations (SecOps) Engineer

C4i Solutions • Sydney

On-site
AUD 120,000 - 180,000
Long Service Leave
Health & wellbeing allowance
First year leave
+7
Security Operations (SecOps) Engineer
Security Operations (SecOps) Engineer

C4I Solutions Pty • Sydney

On-site
AUD 140,000 - 180,000
Long Service Leave
Health & wellbeing allowance
Annual leave
+5
Senior Cyber Threat Hunt Specialist
Senior Cyber Threat Hunt Specialist

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1
Cyber GRC Analyst
Cyber GRC Analyst

Client 1 • City of Brisbane

On-site
AUD 110,000 - 160,000
Private health insurance
Generous annual leave entitlements
Annual incentive programme
+5
Security Operations Engineer
Security Operations Engineer

C4i Solutions • Council of the City of Sydney

On-site
AUD 140,000 - 180,000
Health & wellbeing allowance
Long Service Leave
First year leave (5 days)
+6
Cyber Defense SOC Analyst – Onsite Sydney, NV1 Eligible
Cyber Defense SOC Analyst – Onsite Sydney, NV1 Eligible

C4I Solutions Pty • Sydney

On-site
AUD 110,000 - 160,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6
Cyber Security SOC Analyst
Cyber Security SOC Analyst

C4I Solutions Pty • Sydney

On-site
AUD 110,000 - 160,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6