SIEM Analyst (Splunk) with MITRE ATT&CK Focus

TPG Telecom

Sydney

Hybrid

AUD 110,000 - 150,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Flexible hybrid work
Stay Connected Mobile plan
Stay Connected NBN plan
Extra annual leave
Learning Hub access
Corporate discounts

Job summary

TPG Telecom is seeking a Cyber Security SIEM Specialist to own the Splunk Enterprise Security platform, onboard new technologies, and develop detection use cases and data models to boost monitoring and threat response across the Australian environment. You will lead integration efforts, test correlation content, and map CIM sources while aligning with MITRE ATT&CK.

The role emphasizes playbook creation for Splunk SOAR and ongoing improvement of security monitoring capabilities in a hybrid work

Qualifications

  • 3+ years of SIEM integration, administration and use case development with Splunk ES.
  • Experience across security operations, incident analysis and log management.
  • Familiarity with CIM standards and ATT&CK mapping.

Responsibilities

  • Lead security tech integration to enable timely threat identification and mitigation.
  • Develop and test security event correlation content and use cases.
  • Improve and support the SIEM platform amidst evolving threat landscape.
  • Assist with security assessments, audits and reviews.
  • Map log sources to CIM and strengthen ATT&CK coverage.
  • Create playbooks for Splunk SOAR and automation.

Skills

Splunk Enterprise Security
MITRE ATT&CK framework
SIEM integration & use case dev
Threat monitoring & incident response
CIM mapping & log sources

Education

Tertiary IT/Engineering

Tools

Splunk Enterprise Security
Splunk SOAR

Job description

TPG Telecom is seeking a Cyber Security SIEM Specialist to own the Splunk Enterprise Security platform, onboard new technologies, and develop detection use cases and data models to boost monitoring and threat response across the Australian environment. You will lead integration efforts, test correlation content, and map CIM sources while aligning with MITRE ATT&CK.

The role emphasizes playbook creation for Splunk SOAR and ongoing improvement of security monitoring capabilities in a hybrid work

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection Engineer — SIEM Rule Author & Threat Telemetry
Detection Engineer — SIEM Rule Author & Threat Telemetry

Jobtailor • Sydney

On-site
AUD 110,000 - 170,000
SOC Security Operations Lead — Threat Detection & SIEM
SOC Security Operations Lead — Threat Detection & SIEM

Optus • Sydney

Hybrid
AUD 120,000 - 180,000
Flexible working arrangements
Parental Leave up to 16 weeks
U learning micro-credentials
+2
Hybrid Cyber Security Analyst — SOC & Threat Hunting
Hybrid Cyber Security Analyst — SOC & Threat Hunting

Thales • Sydney

Hybrid
AUD 90,000 - 140,000
ThalesFlex – Hybrid work environment
Fitness Passport
Employee discounts
+4
Hybrid Detection Engineer: SIEM Expert (Sentinel, Splunk)
Hybrid Detection Engineer: SIEM Expert (Sentinel, Splunk)

Orro Pty Ltd • Sydney

Hybrid
AUD 120,000 - 165,000
Public holiday swaps and flexible work
Paid volunteer leave (3 days/year)
Novated leasing
+3
Principal Technical Specialist - Splunk
Principal Technical Specialist - Splunk

Queensland Health • City of Brisbane

On-site
AUD 150,000 - 190,000
Senior Splunk ES Engineer for Threat Detection and IR
Senior Splunk ES Engineer for Threat Detection and IR

Avance Consulting • Sydney

On-site
AUD 100,000 - 130,000
SIEM & SOAR Architect
SIEM & SOAR Architect

Accenture Infrastructure and Capital Projects, LLC • Canberra

On-site
AUD 120,000 - 180,000
18 weeks paid parental leave
Flexible work arrangements
Career development program
+1
Senior SOC Analyst: Threat Hunting & Incident Response
Senior SOC Analyst: Threat Hunting & Incident Response

Jobtailor • Sydney

On-site
AUD 90,000 - 130,000
SIEM Validation Engineer
SIEM Validation Engineer

Accenture Australia • Council of the City of Sydney

Hybrid
AUD 90,000 - 130,000
Competitive salary
Flexible work arrangements
Training and certifications
+4
Senior Detection Engineer, SOC & Threat Hunting Lead
Senior Detection Engineer, SOC & Threat Hunting Lead

High Growth Ventures • City of Melbourne

On-site
AUD 140,000 - 190,000
Retail discounts
Health & wellbeing
Learning & growth
+1