25 Sep
|
Everi Pty
|
Victoria
25 Sep
Everi Pty
Victoria
Job Description
Job Description n
We are seeking a Cyber Operations Security Expert as below
n
n
Role/s: EL1 Cyber Operations Security Expert
n
The Cyber Operations Security Expert, will undertake technical cyber security activities under
n
the leadership of the Director of Cyber Security Operations. The Cyber Operations Security
n
Expert,must possess and demonstrate technical competency in areas of cloud security
n
(Azure/AWS), endpoint and network security, threat intelligence and hunting, data loss
n
prevention, vulnerability management, and incident response. The Cyber Operations Security
n
Expert,will be required to support and contribute to the protection of the Agency's systems,
n
users, and data, to support NDIA's objectives to "build a world-leading National Disability
n
Insurance Scheme".
n
As part of the Cyber Security Operations team, the role will help ensure that NDIA has the
n
capability to build and protect cyber-resilient information technology platforms and support
n
strategic objectives.
n
Responsibilities n
The role will involve the key responsibilities:
n
n
Lead proactive monitoring, investigation, and mitigation of security incidents within security
n
tools (including Sentinel, Microsoft Defender 365 stack, Azure Security Centre, Splunk )
n
Analyse security event data and identifying
suspicious/malicious
activity from networks and systems
n
Lead incident response activities including initial and detailed investigation,
computer forensics, chain of custody implications
n
Respond to events and incidents using established Standard Operating Procedures (SOPs)
n
Be a point of escalation for complex incidents and act as a subject matter expert in areas of cloud security, active defence, and threat mitigation
n
Develop and manage phishing simulations
n
Research recent and evolving threats and vulnerabilities to the Agency's threat landscape
n
Conduct log analysis and develop visualisation and reporting within Splunk
n
Identify critical data sources required by cyber for ingestion and normalisation into the SIEMs
n
Collaborate with Security Operations and IT engineers to implement security controls
n
Supervise, mentor and develop junior staff, and identify areas of people, process, and defensive tool improvement
n
Produce and disseminate incident response reports, activity reports, and intelligence and threat briefs
n
About the Candidate n
n
Demonstrated familiarity with log aggregation and Security Incident and Event Management (SIEM) systems
n
Knowledge of the Information Security Manual (ISM) and cyber security concepts.
n
Demonstrated experience implementing and using Incident Response Frameworks (NIST SP ****** Incident Handling Guide, Mitre Frameworks)
n
Formal tertiary qualifications or industry certifications in a cyber security related field (e.g.Azure/AWS, Splunk Certified)
n
n
#J-*****-Ljbffr
📌 Cyber Operations Security Expert (Victoria)
🏢 Everi Pty
📍 Victoria