17 Sep
|
NSW Department of Customer Service
|
Sydney
17 Sep
NSW Department of Customer Service
Sydney
Cyber SecOps Engineer
NSW Data Analytics Centre (DAC)
Clerk Grade: 7/8
Annual Salary Range: $116,981 - $129,492 plus superannuation
Employment Type: Temporary (12 months), Full time
Location: Haymarket, Sydney
Contribute to the development of cutting-edge digital platforms
About us
The NSW Data Analytics Centre (DAC) leads a whole-of-government approach to data analytics, connecting data, insights, and people to tackle the State's toughest challenges. DAC's Advanced Analytics Platform drives improved health, safety, and social outcomes for NSW citizens.
We're seeking a Cyber Security Operation Engineer who is passionate about cyber security, cloud security, and SecOps automation to strengthen DAC platforms, support ISO27001 compliance, and help drive security initiatives across an advanced cloud environment.
The Role
DAC is seeking a Cyber Security Operation Engineer to help in cloud security uplift program and elevate security posture across Azure Cloud, SaaS platforms, and identity systems.
Role is hands-on security operations role responsible for the design, implementation and remediation of cloud security controls across Microsoft Azure and key SaaS platforms including Okta and Snowflake.
The role will work closely with Architecture, Infrastructure, and Security teams to identify risks, remediate vulnerabilities, enhance security monitoring, and ensure Cloud and SaaS environments align with defined security standards.
Key Responsibilities
Azure Cloud Security
- Implement and remediate security recommendations from Microsoft Defender for Cloud, Azure Policy, and Cloud Security Posture Management (CSPM) tools.
- Assist in hardening Azure subscriptions and resources in alignment with CIS Benchmarks and organisational security standards.
- Configure and maintain Azure security services including Microsoft Defender for Cloud, Azure Policy, Conditional Access, and Privileged Identity Management (PIM).
- Support security assessments of new cloud solutions and projects by applying security baselines and secure-by-default configurations.
- Monitor cloud security alerts and investigate identified risks or misconfigurations.
SaaS Security
- Support security reviews and assessments of SaaS applications, including Okta, Snowflake, and other business-critical platforms.
- Remediate SaaS security findings identified through AppOmni, Okta Threat Insight, Snowflake Trust Centre, and other security assessment tools.
- Monitor SaaS security configurations and implement corrective actions where required.
- Assist with onboarding and ongoing administration of SaaS Security Posture Management (SSPM) solutions.
Identity & Access Hardening
- Support implementation of identity security controls across Entra ID and Okta.
- Configure and maintain Multi-Factor Authentication (MFA), Conditional Access Policies, and password less authentication capabilities.
- Assist with Privileged Access Management (PAM) and Just-In-Time (JIT) access processes.
- Review user access, privileged accounts, service accounts, and stale permissions, recommending and implementing remediation actions.
- Investigate identity-related security alerts and suspicious authentication activities.
Vulnerability Management
- Perform vulnerability scanning activities using Qualys Vulnerability Management, and other approved tools.
- Validate, prioritise, and apply patch across operating systems, cloud resources, web applications
- Support asset discovery, inventory management, and vulnerability reporting processes.
- Conduct regular cloud and SaaS security posture reviews to identify security gaps and weaknesses.
- Follow up with technology teams to ensure remediation activities meet agreed service level objectives.
Security Monitoring & Incident Response
- Monitor Microsoft Sentinel and other security platforms for threats, suspicious activities, and security events.
- Investigate security alerts and escalate incidents in accordance with established processes.
- Assist with incident response activities including evidence gathering, log analysis, containment, and remediation support.
- Support the development, tuning, and maintenance of detection rules, analytics, and monitoring use cases.
- Improve security visibility through onboarding data sources and validating log collection across Azure and SaaS environments.
Security Compliance & Governance
- Support implementation and operationalisation of security controls aligned to ISO 27001, CSP/Essential Eight, CIS Controls, and organisational policies.
- Assist with security risk assessments, control reviews, and threat modelling workshops.
- Collect and maintain audit evidence for internal and external compliance activities.
- Maintain security documentation, procedures, standards, and operational runbooks.
- Support security awareness and continuous improvement initiative
What We're Looking For
Essential Skills:
- Hands-on experience with Microsoft Azure Security Services including Microsoft Defender for Cloud, Microsoft Sentinel, Entra ID, Azure Policy, Just In Time Access, and Privileged Identity Management (PIM).
- Experience implementing and supporting cloud security controls within Azure environments, including security hardening and remediation of security recommendations.
- Experience with identity and access management solutions, including Multi-Factor Authentication (MFA), Conditional Access, PIM, and privileged access management concepts.
- Experience with vulnerability management tools such as Qualys and Microsoft Defender Vulnerability Management, including vulnerability assessment, analysis, prioritisation, and remediation tracking.
- Experience with SIEM platforms (MS Sentinel), security monitoring, alert investigation, and incident response activities.
- Exposure to cloud and SaaS security, including platforms such as Okta and Snowflake.
- Understanding of SaaS Security Posture Management (SSPM) concepts and tools such as AppOmni.
- Working knowledge of security frameworks and standards including CIS Benchmarks,
ISO 27001, Essential Eight, and Zero Trust principles.
- Familiarity with security assessments, risk identification, and remediation activities across cloud, identity, endpoint, and SaaS environments.
- Basic scripting or automation skills using PowerShell, Python, or similar technologies are desirable.
- Strong analytical, troubleshooting, problem-solving, and communication skills with the ability to work collaboratively across technology teams.
- Relevant certifications such as Microsoft Azure Security Engineer (AZ-500), Security Operations Analyst (SC-200), Identity and Access Administrator (SC-300), CompTIA Security+, ISC2 Certified in Cybersecurity (CC), or equivalent certifications are highly desirable.
Why Join DAC?
- Work on cutting-edge digital platforms that drive real-world outcomes.
- Collaborate with a team of experts in a supportive, inclusive environment.
- Make an impact on state-of-the-art cloud security initiatives.
How to Apply
To apply, submit your application online and provide:
- An up-to-date resume outlining your skills, experience and relevant achievements.
- A brief cover letter (maximum two pages) explaining your interest in the role and how your skills and experience align with the position requirements.
Salary Grade 7/8, with the base salary for this role starting at $116,981 base plus superannuation
Click Here to access the Role Description .
For enquiries relating to recruitment please contact Meg Rapley via **********@customerservice.nsw.gov.au.
Visit the Capability Application Tool to prepare for the recruitment process by accessing practice application and interview questions based on the focus capabilities listed in the role description.
A talent pool may be created as part of this recruitment process and will be valid for up to 18 months. The talent pool may be used to fill future ongoing or temporary vacancies of the same or similar role.
Closing Date: Friday 25 September 2026 at 11:59pm
Careers at Department of Customer Service
A career at the Department of Customer Service (DCS) gives you the opportunity to help improve government services and be part of reform that benefits people across NSW. We are focused on delivering excellent customer service, digital transformation, and regulatory reform. Come join us and influence the future of our great state.
Belong in our diverse and inclusive workplace
The strength of our workforce lies in its diversity and embracing difference, while the key to our success is leveraging the contributions of employees with different backgrounds and perspectives.
You can view our full diversity and inclusion statement here.
We provide adjustments to the recruitment process for candidates, including individuals with disability. If you require an adjustment during the recruitment process, including alternate formats or have questions about the support available, please contact Talent Operations on 02 8276 8*** or *************@customerservice.nsw.gov.au.
For more information, please visit
Information on some of the different types of disabilities
Information on adjustments available for the recruitment process
📌 Cyber SecOps Engineer (Sydney)
🏢 NSW Department of Customer Service
📍 Sydney