19 Aug
|
SWU Consultation
|
Canberra
19 Aug
SWU Consultation
Canberra
Our client is seeking an experienced Cyber Defence Engineer to join their Canberra/Sydney office.
Initial contract is 6 months.
The Cyber Defence Engineer plays a critical role in operating and enhancing cybersecurity services to protect financial and information assets.
The contractor will work within a team of specialists, focusing on Incident Response, SIEM Engineering, Application Security, Vulnerability Management, Threat Intelligence, and Security Awareness.
The Cyber Defence Engineer will enhance prevention, detection, triage, and remediation of security events through automation.
The contractor in this role will provide guidance, coaching, and support to junior cybersecurity staff while working in collaboration with the broader team.
Key responsibilities
:
Incident Response: Conduct cyber incident response, including investigation, remediation, post-incident root cause analysis and security incident reporting.
Detection Engineering: Create and fine-tune cyber detection use cases, analyse security data for anomalies, and continuously improving detection capabilities using frameworks like MITRE ATT&CK; to enhance threat detection and response.
Automation Development: Develop automated incident response workflows via SIEM platforms (Splunk or Sentinel) for effective triaging and incident handling, reducing manual effort and improving response time.
Assist with Security Threat Intelligence monitoring including Identification of security threats to the orgsnization and its customers and collaborating with information sharing groups (government and industry).
Support audit and regulatory compliance efforts, addressing security findings and recommendations.
Partner with cross-functional teams to help shape and develop future DevSecOps capability.
Develop and maintain security documentation, including processes, procedures,
and technical reports.
Work in close partnership with the Cyber Defence Lead and act as their delegate when required.
Specific duties, deliverables and reporting lines may vary from time-to-time dependant on business needs and priorities.
Key objectives and measurements will be captured in the Performance & Development planning cycle, established annually and adapted as needed.
Essential criteria:
Tertiary qualifications in Cyber Security, Computer Science or related discipline.
Relevant industry security certifications (CISSP, CISM, GSEC, CEH etc.)
5+ years' experience in Cyber Security Operations, including but not limited to: Incident Response, Detection Engineering, SIEM Engineering, or Security Automation etc.
Hands-on experience with cyber detection engineering, security system integration or security incident response automation.
Good scripting skills in Python, Bash, or PowerShell.
Strong analytical, problem-solving, and stakeholder management skills.
Desirable:
Ability to build and maintain collaborative relationships.
Well-developed written and oral communication and presentation skills.
Knowledge of multiple security frameworks e.g. NIST, PSPF, CSF, OWASP, ASD E8
Vulnerability management & Malware security products.
Enterprise implementation and operation of security technologies such as: Identity and Access Management, End Point Protection, DDoS Protection, Data Loss Prevention.
Security compliance in financial and government environments e.g. APRA ******* and ISM.
Security configuration and operation of Windows and Linux, Email gateway appliances & technology, and Firewalls
Good understanding of Application Security Testing (SAST, DAST, SCA) and secure coding best practices in cloud environments.
How to apply:
Please send through your resume as soon as possible through Seek.
📌 1 X Cyber Defence Engineer (Canberra)
🏢 SWU Consultation
📍 Canberra