Our client operates within the national security and defence sector, delivering critical cyber security capabilities that protect Australiau2019s information systems, infrastructure and national interests. This opportunity sits within a highly specialised cyber security environment focused on threat detection, incident response and security operations.
Job Description
We are seeking experienced Lead Security Analysts to join a high-performing cyber defence team. Working within a Security Operations Centre (SOC) environment, you will be responsible for monitoring, analysing and strengthening organisational security posture through threat-led analysis, vulnerability assessment, incident monitoring and response planning.
This role requires strong technical expertise across cyber threat detection, security monitoring platforms and incident response processes. You will work closely with technical leadership and security teams to identify, investigate and respond to emerging cyber threats.
Duties and Responsibilities
- Conduct threat-driven security analysis across enterprise environments.
- Analyse cyber threat intelligence and assess system-specific threats.
- Monitor and investigate security events and incidents.
- Develop, maintain and execute incident response plans and playbooks.
- Identify security vulnerabilities and recommend remediation strategies.
- Review and assess existing security controls and frameworks.
- Develop procedures for monitoring, analysing and reporting security events.
- Support security testing, evaluation and assurance activities.
- Collaborate with technical teams and stakeholders to improve cyber resilience.
- Provide support and guidance to technical leadership teams as required.
Education/Certifications Required
- Relevant tertiary qualifications in Cyber Security,
Information Technology, Computer Science or a related discipline.
- Industry certifications highly regarded, including:
- CISSP
- GIAC certifications
- GCIA
- GCIH
- Splunk certifications
- Microsoft Security certifications
Knowledge/Skills Required
Essential:
- Demonstrated experience working within a Security Operations Centre (SOC).
- Strong experience using Splunk Enterprise Security.
- Experience with Endpoint Detection and Response (EDR) platforms.
- Experience with Network Detection and Response (NDR) platforms.
- Experience with Security Orchestration, Automation and Response (SOAR) platforms.
- Strong analytical and incident investigation capabilities.
- Ability to develop security monitoring procedures and response processes.
- Excellent stakeholder engagement and communication skills.
Desirable:
- Knowledge of Australian Government cyber security frameworks and policies.
- Understanding of the ASD Information Security Manual (ISM).
- Knowledge of the Essential Eight mitigation strategies.
- Experience working within Defence, Intelligence or Federal Government environments.
Employment Benefits
- Chance to work on nationally significant cyber security programs.
- Long-term contract with extension possibilities.
- Exposure to leading cyber defence technologies and capabilities.
- Collaborative and mission-focused team environment.
- Career growth within a highly specialised security domain.
Diversity and Inclusion
We welcome applications from people of all backgrounds and experiences. We are committed to fostering an inclusive workplace where diversity is valued and supported.
Veterans
Veterans and current or former ADF personnel with relevant cyber security experience are strongly encouraged to apply.
About Cleared
Cleared is a specialist recruitment partner supporting Australiau2019s Defence, National Security and Federal Government sectors. We connect security-cleared professionals with opportunities that contribute to Australiau2019s most critical missions.