25 Aug
|
Buckham & Duffy
|
Queensland
25 Aug
Buckham & Duffy
Queensland
Job Description
Buckham & Duffy (B&D;) is a Brisbane-based technology consulting and software delivery firm. We partner with government, international development organisations, industry associations, and mid-market enterprises to deliver technology strategy, custom SaaS products, and digital transformation programs.
n
We're a tight team of ~20 professionals who value sharp thinking, low ego, and getting things done. We're scaling our security and infrastructure practice, and we need a solid technical engineer to do it with us.
n
This is a hands on role with a lot of self-direction. You'll be working on our internal cyber capacity and hardening as well handling the
cyber/infrastructure
programs that we run for our clients. We develop a lot of custom internal tooling to assist with the delivering and maintenance of our infrastructure and cyber setups so we're looking for a creative thinker who looks to drive outcomes; not just run benchmark suites.
n
You'll need a solid Linux and AWS backing as all our digital assets are Linux OS based and cloud infrastructure is mostly AWS with a small amount of Azure. If you're the type of person that maintains a homelab, you'll fit in well here. We have a strong focus on maintainability so Terraform and Ansible are at the core of everything we do.
n
Key Responsibilities
n
Administer Linux servers and Proxmox virtualisation across multiple environments.
n
Deploy and manage self-hosted services (mostly docker compose stacks running FOSS platforms)
n
Harden and operate cloud environments across AWS, Microsoft 365 and Azure - identity, conditional access, tenant baselines, workload controls.
n
Apply CIS Benchmarks and equivalent hardening standards as the default baseline.
n
Operate and tune SIEM platforms: triage alerts, develop rules, manage log sources, report on posture.
n
Monitor and validate backups
n
Configure and maintain firewalls, VPNs, and network segmentation.
n
Run basic vulnerability scanning and penetration testing, validate findings, and drive remediation.
n
Lead incident response coordination with our development team
n
Drive monthly reporting to our clients on continuous improvement activities
n
About You
n
You'll have:
n
3+ years in a hands-on technical security or infrastructure engineering role.
n
Demonstrable experience hardening and operating AWS, Microsoft 365, and Azure environments.
n
Practical SIEM administration experience (rule tuning, log sources, alert triage).
n
Strong Linux administration skills - comfortable in the cli
n
Experience with Proxmox or a comparable virtualisation platform (VMware, Hyper-V, KVM).
n
Working knowledge of CIS Benchmarks or equivalent hardening standards.
n
Firewall and networking experience covering segmentation, VPNs, and rule management.
n
Familiarity with vulnerability scanning and basic penetration testing tooling and methodology.
n
Clear written and verbal communication, including the ability to brief non-technical stakeholders.
n
IAAS experience, ideally Terraform
n
Ansible
n
Security certifications (Security+, AZ-500, AWS Security Specialty, OSCP, SSCP, or equivalent).
n
Experience supporting government or regulated clients (IRAP, ISM, Essential Eight, ISO *****).
n
Prior consulting or MSP delivery experience.
#J-*****-Ljbffr
📌 Infrastructure & Cybersecurity Engineer (Queensland)
🏢 Buckham & Duffy
📍 Queensland