Senior Cyber Threat Analyst

e2 Cyber

Canberra

On-site

AUD 120,000 - 150,000

Full time

9 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

e2 Cyber is seeking a Threat Detection Engineer to join a high-performing cybersecurity team in Canberra, ACT. The role focuses on developing detection content, threat models and intelligence integrations within a modern SOC stack, spanning SIEM, SOAR and EDR platforms, while working in ITIL and Agile environments.

You will build detection rules, playbooks and uplift monitoring and response capabilities across cloud and on-premises environments, collaborating with cyber defence analysts and

Responsibilities

  • Develop detection use cases informed by threat models, vulnerabilities, intelligence and incident reports.
  • Build and maintain detection rule syntax across SIEM and EDR platforms.
  • Create playbooks to support alert validation and incident response workflows.
  • Maintain threat models using STRIDE, ATT&CK, attack path analysis.
  • Assess threats related to AI platforms and develop monitoring controls for misuse and data leakage.
  • Collaborate with architecture and engineering teams to translate threat modelling into monitoring requirements.
  • Maintain threat intelligence integrations across the SOC technology stack.
  • Support incident response activities under direction of the Incident Manager.

Job description

Threat Detection Engineer Location: Canberra, ACT Clearance: NV1 (minimum) Engagement: Contract / Long-term opportunity

A large federal government environment is seeking an experienced Threat Detection Engineer (TDE) to join a high-performing cybersecurity team. This role is ideal for a detection-focused security professional who enjoys deep technical problem-solving, building high-fidelity detection content, and uplifting enterprise monitoring and response capabilities.

About the Role:

The Threat Detection Engineer is responsible for developing and maintaining detection content, threat models, and intelligence integrations across a modern SOC technology stack. Working across SIEM, SOAR and EDR platforms, the TDE researches, engineers and tunes detection rules, builds playbooks, and ensures threat modelling outcomes translate into actionable monitoring and response controls.

The role operates within an ITIL and Agile environment and collaborates closely with cyber defence analysts, architecture teams and engineering stakeholders across cloud and on-premises environments.

Key Responsibilities:
  • Develop detection use cases informed by threat models, vulnerabilities, intelligence, incident reports and industry frameworks.
  • Build and maintain detection rule syntax across SIEM and EDR platforms.
  • Create playbooks to support alert validation and incident response workflows.
  • Maintain and enhance threat models using STRIDE, ATT&CK, attack path analysis and related methodologies.
  • Assess emerging threats associated with AI platforms and develop monitoring controls for AI misuse, data leakage, prompt injection, model abuse and adversarial activity.
  • Collaborate with architecture and engineering teams to translate threat modelling outcomes into monitoring and detection requirements.
  • Maintain threat intelligence integrations across the SOC technology stack.
  • Conduct research and analysis to develop new detection content and uplift existing rules.
  • Support incident response activities under direction of the Incident Manager.
  • Assist with onboarding new data sources to meet detection requirements.
  • Provide feedback to improve intelligence production and reporting.
  • Contribute to cyber exercises, planning activities and time-sensitive operations.
About the Environment:

You will be joining a fast-paced, digitally-focused government environment undergoing significant uplift in cyber maturity, technology modernisation and security operations capability. The cyber team works across governance, operations, advisory and engagement streams, collaborating to strengthen organisational resilience and protect critical assets.

We are an inclusive employer committed to fostering a diverse and accessible workplace. We encourage applications from Aboriginal and Torres Strait Islander peoples, people with disabilities, LGBTQIA+ individuals, people of all ages, and those from culturally and linguistically diverse backgrounds.

#SCR-payton-vercoe

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Threat Engineer
Cyber Security Threat Engineer

The Network Technology Recruitment • Canberra

On-site
AUD 140,000 - 170,000
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Client 1 • Canberra

Hybrid
AUD 140,000 - 190,000
Hybrid work arrangement
Senior Cyber Threat Analyst
Senior Cyber Threat Analyst

Pinaka Technology Solutions Pty Ltd • Canberra

Hybrid
AUD 150,000 - 190,000
Threat Detection Engineer - AI/SIEM Specialist (Canberra)
Threat Detection Engineer - AI/SIEM Specialist (Canberra)

The Network Technology Recruitment • Canberra

On-site
AUD 140,000 - 170,000
Threat Detection Architect (SIEM/EDR)
Threat Detection Architect (SIEM/EDR)

e2 Cyber • Canberra

On-site
AUD 120,000 - 150,000
Senior Cyber Threat Hunt Specialist
Senior Cyber Threat Hunt Specialist

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1
Senior Threat Hunt & Emulation Lead (SOC, Govt)
Senior Threat Hunt & Emulation Lead (SOC, Govt)

Client 1 • Canberra

On-site
AUD 150,000 - 190,000
Specialised cyber security environment
Exposure to advanced investigations
Leadership and mentoring
+1
Senior Security Analyst - Threat and Investigation
Senior Security Analyst - Threat and Investigation

Client 1 • Canberra

On-site
AUD 110,000 - 140,000
Flexible working arrangements
Exposure to advanced digital forensics
Professional development
Cyber Security Engineer-Must have Negative Vetting Level 1
Cyber Security Engineer-Must have Negative Vetting Level 1

Darumatic Cloud Native • Canberra

On-site
AUD 120,000 - 150,000
EL1 Cyber Operations Security Expert
EL1 Cyber Operations Security Expert

Peoplebank • City of Melbourne

Hybrid
AUD 150,000 - 190,000