Senior Cyber Threat Analyst

Client 1

Canberra

Hybrid

AUD 140,000 - 190,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Hybrid work arrangement

Job summary

Cleared in Canberra is seeking a Senior Cyber Threat Analyst to join a high‑performing SOC within a Federal Government environment. You will develop and maintain threat detection content, threat models and intelligence‑driven monitoring across enterprise security platforms.

Responsibilities include creating detection rules across SIEM/EDR, building threat models (STRIDE, MITRE ATT&CK) and collaborating with security, architecture and engineering teams to strengthen detection and response

Qualifications

  • Minimum five years in Cyber Security Operations.
  • Experience developing detections across SIEM/SOAR/EDR.
  • Knowledge of threat modelling methodologies including STRIDE, PASTA and MITRE ATT&CK.
  • Experience translating threat intelligence and threat modelling outcomes into actionable monitoring requirements.
  • Experience identifying and managing security risks associated with AI technologies and enterprise AI platforms.

Responsibilities

  • Develop detection use cases based on threat models, vulnerabilities, intelligence, incident reports, risk assessments and industry frameworks.
  • Create and maintain detection rules across SIEM and EDR technologies.
  • Develop playbooks to support alert validation and incident response processes.
  • Build and maintain threat models using STRIDE, MITRE ATT&CK and attack path analysis.
  • Assess emerging cyber threats associated with AI platforms, services and agents.
  • Develop monitoring and detection capabilities to identify AI-related misuse, prompt injection, model abuse and data leakage risks.
  • Collaborate with security operations, architecture and engineering teams to improve detection and response capabilities.
  • Maintain threat intelligence integrations across the SOC technology stack.
  • Conduct detection content research, testing and tuning activities.
  • Support incident response activities and security operations initiatives as required.

Skills

SIEM content development
SIEM/SOAR/EDR integrations
Threat modelling
Threat intelligence
AI security
Cyber security operations
Stakeholder engagement

Tools

Splunk
Microsoft Sentinel
QRadar
Elastic
CrowdStrike
Defender for Endpoint

Job description

Senior Cyber Threat Analyst

Location

Canberra, ACT

Working Arrangement

Hybrid

Security Clearance

Must be eligible to obtain a Baseline Security Clearance

Contract Duration
  • Initial term: 12 months
  • Up to 2 x 12-month extension options
Opportunity

An exciting opportunity is available for an experienced Senior Cyber Threat Analyst / Threat Detection Engineer to join a high-performing Cyber Security team within a Federal Government environment. Working within a mature Security Operations Centre (SOC), you will be responsible for developing and maintaining threat detection content, threat models, and intelligence-driven monitoring capabilities across enterprise security platforms.

Key Responsibilities
  • Develop detection use cases based on threat models, vulnerabilities, intelligence, incident reports, risk assessments and industry frameworks.
  • Create and maintain detection rules across SIEM and EDR technologies.
  • Develop playbooks to support alert validation and incident response processes.
  • Build and maintain threat models using methodologies such as STRIDE, MITRE ATT&CK and attack path analysis.
  • Assess emerging cyber threats associated with AI platforms, services and agents.
  • Develop monitoring and detection capabilities to identify AI-related misuse, prompt injection, model abuse and data leakage risks.
  • Collaborate with security operations, architecture and engineering teams to improve detection and response capabilities.
  • Maintain threat intelligence integrations across the SOC technology stack.
  • Conduct detection content research, testing and tuning activities.
  • Support incident response activities and security operations initiatives as required.
Essential Skills & Experience
  • Demonstrated experience developing detection content across multiple enterprise SIEM platforms such as Splunk, Microsoft Sentinel, QRadar or Elastic.
  • Experience implementing and maintaining detections across SIEM, SOAR and EDR technologies.
  • Strong understanding of threat modelling methodologies including STRIDE, PASTA and MITRE ATT&CK.
  • Experience transforming threat intelligence and threat modelling outcomes into actionable monitoring and detection requirements.
  • Experience identifying and managing security risks associated with AI technologies and enterprise AI platforms.
  • Minimum five years' experience within Cyber Security Operations.
  • Strong stakeholder engagement, communication and documentation skills.
Desirable Skills
  • Experience with Sigma detection rule development and rule translation between security platforms.
  • Knowledge of AI security frameworks and guidance including ASD/ACSC, NIST, MITRE ATLAS and OWASP LLM Top 10.
  • Experience with EDR technologies including CrowdStrike, Microsoft Defender for Endpoint and Carbon Black.
  • Scripting capability in Python and/or Bash.
  • Relevant industry certifications such as CISSP, GCIA, GCIH, GIAC, SANS or equivalent cyber security qualifications.
Diversity and Inclusion

We are committed to building a diverse and inclusive workforce and encourage applications from people of all backgrounds, cultures, abilities, genders and experiences. We believe that diversity strengthens teams, drives innovation and delivers better outcomes for our clients and the Australian community.

Veterans

Veterans and ex-serving members are strongly encouraged to apply. We recognise the valuable skills, leadership and experience gained through military service and welcome applications from individuals transitioning from the Australian Defence Force and related sectors.

About Cleared

Cleared is a specialist recruitment partner supporting Australia's Defence, National Security and Federal Government sectors. We connect highly skilled professionals with organisations delivering critical projects and capabilities that support Australia's national interests. Our team understands the unique requirements of security-cleared recruitment and is committed to providing an exceptional candidate experience throughout the hiring process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Cyber Security Analyst
Lead Cyber Security Analyst

Client 1 • Canberra

On-site
AUD 140,000 - 190,000
National significance projects
Long-term contract with extension
Exposure to leading cyber defence tech
+1
Senior Security Analyst - Threat and Investigation
Senior Security Analyst - Threat and Investigation

Client 1 • Canberra

On-site
AUD 110,000 - 140,000
Flexible working arrangements
Exposure to advanced digital forensics
Professional development
Cyber Security Threat Engineer
Cyber Security Threat Engineer

The Network Technology Recruitment • Canberra

On-site
AUD 140,000 - 170,000
Senior Cyber Threat Analyst & Detection Engineer
Senior Cyber Threat Analyst & Detection Engineer

Client 1 • Canberra

Hybrid
AUD 140,000 - 190,000
Hybrid work arrangement
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

e2 Cyber • Canberra

On-site
AUD 120,000 - 150,000
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

IT Alliance Australia • Canberra

On-site
AUD 140,000 - 190,000
Senior Cyber Threat Hunt Specialist
Senior Cyber Threat Hunt Specialist

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Pinaka Technology Solutions Pty Ltd • Canberra

Hybrid
AUD 150,000 - 190,000
Senior Threat Hunt & Emulation Lead (SOC, Govt)
Senior Threat Hunt & Emulation Lead (SOC, Govt)

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1
Lead Cyber Security Threat Analysts
Lead Cyber Security Threat Analysts

Whizdom • Canberra

On-site
AUD 120,000 - 160,000