Cyber SecOps Engineer (New South Wales)

Cyber SecOps Engineer (New South Wales)

21 Sep
|
Department of Customer Service
|
New South Wales

21 Sep

Department of Customer Service

New South Wales

Cyber SecOps Engineer

NSW Data Analytics Centre (DAC)

Clerk Grade: 7/8

Annual Salary Range:$116,981 - $129,492 plus superannuation

Employment Type: Temporary (12 months), Full-time

Location: Haymarket, Sydney

Contribute to the development of cutting-edge digital platforms

About us

The NSWData Analytics Centre (DAC) leads a whole-of-government approach to dataanalytics, connecting data, insights, and people to tackle the State's toughestchallenges. DAC’s Advanced Analytics Platform drives improved health, safety,and social outcomes for NSW citizens.

We’reseeking a Cyber Security Operation Engineer who is passionate about cybersecurity, cloud security, and SecOps automation to strengthen DAC platforms,support ISO27001 compliance, and help drive security initiatives across anadvanced cloud environment.

The Role

DAC isseeking a Cyber Security Operation to help in cloud security upliftprogram and elevate security posture across Azure Cloud, SaaS platforms, andidentity systems.

Role ishands-on security operations role responsible for the design, implementationand remediation of cloud security controls across Microsoft Azure and key SaaSplatforms including Okta and Snowflake.

The rolewill work closely with Architecture, Infrastructure, and Security teams toidentify risks, remediate vulnerabilities, enhance security monitoring, andensure Cloud and SaaS environments align with defined security standards.

KeyResponsibilities

AzureCloud Security

- Implement and remediate security recommendations from Microsoft Defender for Cloud, Azure Policy, and Cloud Security Posture Management (CSPM) tools.
- Assist in hardening Azure subscriptions and resources in alignment with CIS Benchmarks and organisational security standards.
- Configure and maintain Azure security services including Microsoft Defender for Cloud, Azure Policy, Conditional Access, and Privileged Identity Management (PIM).
- Support security assessments of new cloud solutions and projects by applying security baselines and secure-by-default configurations.
- Monitor cloud security alerts and investigate identified risks or misconfigurations.

SaaSSecurity

- Support security reviews and assessments of SaaS applications, including Okta, Snowflake, and other business-critical platforms.
- Remediate SaaS security findings identified through AppOmni, Okta Threat Insight, Snowflake Trust Centre, and other security assessment tools.
- Monitor SaaS security configurations and implement corrective actions where required.
- Assist with onboarding and ongoing administration of SaaS Security Posture Management (SSPM) solutions.

Identity& Access Hardening

- Support implementation of identity security controls across Entra ID and Okta.




- Configure and maintain Multi-Factor Authentication (MFA), Conditional Access Policies, and password less authentication capabilities.
- Assist with Privileged Access Management (PAM) and Just-In-Time (JIT) access processes.
- Review user access, privileged accounts, service accounts, and stale permissions, recommending and implementing remediation actions.
- Investigate identity-related security alerts and suspicious authentication activities.

VulnerabilityManagement

- Perform vulnerability scanningactivities using Qualys Vulnerability Management, and other approvedtools.
- Validate, prioritise, and applypatch across operating systems, cloud resources, web applications
- Support asset discovery,inventory management, and vulnerability reporting processes.
- Conduct regular cloud and SaaSsecurity posture reviews to identify security gaps and weaknesses.
- Follow up with technology teamsto ensure remediation activities meet agreed service level objectives.

SecurityMonitoring & Incident Response

- Monitor Microsoft Sentinel and other security platforms for threats, suspicious activities, and security events.
- Investigate security alerts and elevate incidents in accordance with established processes.
- Assist with incident response activities including evidence gathering, log analysis, containment, and remediation support.
- Support the development, tuning, and maintenance of detection rules, analytics, and monitoring use cases.
- Improve security visibility through onboarding data sources and validating log collection across Azure and SaaS environments.

SecurityCompliance & Governance

- Support implementation and operationalisation of security controls aligned to ISO 27001, CSP/Essential Eight, CIS Controls, and organisational policies.
- Assist with security risk assessments, control reviews, and threat modelling workshops.
- Collect and maintain audit evidence for internal and external compliance activities.
- Maintain security documentation, procedures, standards, and operational runbooks.
- Support security awareness and continuous improvement initiative

What We’reLooking For

EssentialSkills:

- Hands-on experience with Microsoft Azure Security Services including Microsoft Defender for Cloud, Microsoft Sentinel, Entra ID, Azure Policy, Just In Time Access, and Privileged Identity Management (PIM).




- Experience implementing and supporting cloud security controls within Azure environments, including security hardening and remediation of security recommendations.
- Experience with identity and access management solutions, including Multi-Factor Authentication (MFA), Conditional Access, PIM, and privileged access management concepts.
- Experience with vulnerability management tools such as Qualys and Microsoft Defender Vulnerability Management, including vulnerability assessment, analysis, prioritisation, and remediation tracking.
- Experience with SIEM platforms (MS Sentinel), security monitoring, alert investigation, and incident response activities.
- Exposure to cloud and SaaS security, including platforms such as Okta and Snowflake.
- Understanding of SaaS Security Posture Management (SSPM) concepts and tools such as AppOmni.
- Working knowledge of security frameworks and standards including CIS Benchmarks, ISO 27001, Essential Eight, and Zero Trust principles.
- Familiarity with security assessments, risk identification, and remediation activities across cloud, identity, endpoint, and SaaS environments.
- Basic scripting or automation skills using PowerShell, Python, or similar technologies are desirable.
- Strong analytical, troubleshooting, problem-solving, and communication skills with the ability to work collaboratively across technology teams.
- Relevant certifications such as Microsoft Azure Security Engineer (AZ-500), Security Operations Analyst (SC-200), Identity and Access Administrator (SC-300), CompTIA Security+, ISC2 Certified in Cybersecurity (CC), or equivalent certifications are highly desirable.

Why JoinDAC?

- Work on cutting-edge digital platforms that drive real-world outcomes.
- Collaborate with a team of experts in a supportive,inclusive workplace.
- Make an impact on state-of-the-artcloud security initiatives.

Belong in our diverse and inclusive workplace

The strength of our workforce lies in its diversity and embracingdifference, while the key to our success is leveraging the contributions of employees with differentbackgrounds and perspectives.

You can view our full diversity and inclusion statement here.

We provide adjustments to the recruitment process for candidates, including individuals with disability. If you require an adjustment during the recruitment process, including alternate formats or have questions about the support available, please contact Talent Operations on 02 8276 8130 or [email protected].

Information on some of the different types of disabilities

Information on adjustments available for the recruitment process

Closing Date: Friday 25 September 2026 at 11:59pm

#J-18808-Ljbffr

📌 Cyber SecOps Engineer (New South Wales)
🏢 Department of Customer Service
📍 New South Wales

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: cyber secops engineer (new south wales) / new south wales

Subscribe to this job alert:

Get the latest job offers by email for: cyber secops engineer (new south wales) / new south wales