- Respond to and investigate cyber security incidents across Microsoft Sentinel and Microsoft Defender XDR.
- Develop, optimise and maintain detection rules, automated playbooks and threat hunting capabilities using KQL and SOAR technologies.
- Collaborate with cyber engineers, analysts and stakeholders to improve security monitoring, threat detection and incident response across the environment.
As the Senior Cyber Security Analyst, you will:
- Respond to and investigate cyber security incidents across Microsoft Sentinel and Microsoft Defender XDR.
- Develop, optimise and maintain detection rules, automated playbooks and threat hunting capabilities using KQL and SOAR technologies.
- Collaborate with cyber engineers, analysts and stakeholders to improve security monitoring, threat detection and incident response across the setting.
To be successful,
you will demonstrate experience in:
- Security Operations Centre (SOC) environments with strong incident response and cyber investigation capability.
- Microsoft Sentinel, Microsoft Defender XDR, Kusto Query Language (KQL), Logic Apps and detection engineering.
- Threat hunting, MITRE ATT&CK;, threat intelligence and cyber security automation using scripting tools such as Python or PowerShell.
Experience with Power BI, Azure technologies, GitHub Actions, security frameworks and relevant cyber security certifications will be highly regarded.
If you're looking for an opportunity to contribute to meaningful cyber security outcomes within a large Queensland Government environment, we'd love to hear from you.