Cyber Security Analyst, Enterprise Technology and Security Branch (Canberra)

Cyber Security Analyst, Enterprise Technology and Security Branch (Canberra)

29 Sep
|
Department of the Prime Minister and Cabinet
|
Canberra

29 Sep

Department of the Prime Minister and Cabinet

Canberra

Who We Are

PM&C;'s Digital Security and Workplace Operations Division (DSWOD) is in the exciting stage of establishing a new dedicated Cyber Security Operations Centre (CSOC) to uplift our cyber defence capabilities and enhance our ability to proactively detect and respond to cyber threats.

The Cyber Operations team forms part of the Digital, Security, and Workplace Operations Division. Our division delivers workplace and business services that support PM&C; and our shared service partners to operate effectively and deliver business outcomes. Our services span property, security, digital and information communications technology.

What You Will Do The Cyber Security Operations Centre Analyst supports the day-to-day operation of the CSOC by monitoring security events, analysing alerts and contributing to the investigation and response to suspicious activity and cyber incidents. Working as part of a cooperative, intelligence-led team, the analyst will use a contemporary Security Information and Event Management platform and a range of contemporary security tools to help protect departmental systems, information and services.

The role offers structured training, practical coaching and hands-on experience to build capability across alert triage, security monitoring, incident investigation, threat analysis and response processes. The successful candidate will be encouraged to develop their technical skills, contribute ideas and support continuous improvement while working with experienced cyber security professionals.

Key Responsibilities

- Provide guidance to junior team members.

- Monitor security events and coordinate the triage, investigation and response to cyber incidents.

- Proactive system monitoring.

- Assist the SOC Team Lead with continuous improvement of SOC processes, tooling, and service delivery.

- Analyse cyber threat intelligence feeds to identify and respond to relevant indicators.

- Collaborate with ICT, cyber governance, executive and external stakeholders to ensure effective security operations.

What You Will Bring

As an APS 5 Cyber Security Analyst , you have:

- Some experience in an IT, service desk or junior cyber security role, with an interest in building practical security operations capability

- Familiarity with, or a willingness to learn,



security technologies such as Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR) and email security gateways
- A collaborative approach and the ability to provide practical guidance and assistance to junior colleagues or end users, while seeking advice when required
- An awareness of the Information Security Manual and Essential Eight maturity model, with an interest in developing an understanding of how these are applied in practice

- Basic familiarity with YARA, Python, PowerShell or KQL - or a willingness to develop these skills - would be desirable

- Relevant qualifications, technical training or industry certifications would be desirable but are not essential.

As an APS 6 Cyber Security Analyst , you will have:

- Experience or an interest in monitoring security events and contributing to the triage, investigation, escalation and coordinated response to cyber incidents, with a willingness to exercise sound judgement in a fast-paced operational environment
- An understanding of, or an interest in, developing, maintaining and exercising practical incident response playbooks, and using lessons learned to improve team readiness and operational processes
- The ability to contribute to investigations escalated by junior analysts, analyse available evidence and support the development of proportionate containment, remediation and recovery options
- A collaborative and supportive working style, with an interest in mentoring junior analysts through clear guidance, constructive feedback and practical coaching that helps build confidence and capability

- Some familiarity with relevant languages or query tools - such as YARA, Python, PowerShell or KQL - or an interest in developing the ability to interpret and safely adapt scripts, rules or queries that support investigations and detection activities
- An awareness of the Information Security Manual and Essential Eight,



together with an interest in applying government cyber security guidance pragmatically to strengthen organisational resilience
- A genuine interest in cyber security, continuous learning and public service, with the initiative to raise emerging issues, balance competing priorities and contribute ideas that support team performance

- Relevant tertiary qualifications, technical training or industry certifications would be desirable but are not essential.

In line with our dedication to an inclusive and safe workplace culture we are seeking candidates who are respectful of people’s unique differences, backgrounds and cultures (including Aboriginal and Torres Strait Islander culture) particularly when communicating and working together.

Flexible Work

At PM&C; we recognise the broad benefits of offering flexibility in how, when and where work is performed. We consider flexibility first from a starting position of ‘how can we make this work?’ and consider individual circumstances and operational requirements in making genuine attempts to establish mutually beneficial arrangements. Please reach out to the contact officer if you would like to explore what flexibility might look like for you, such as part time work, variable start and finish times or working from home.

Eligibility

- Under section 22(8) of the Public Service Act 1999 , employees must be Australian citizens to be employed in the APS unless the Agency Head has agreed otherwise, in writing. At PM&C; to be eligible for this position you should be an Australian Citizen by the completion of the recruitment process , except under exceptional circumstances.

- The successful candidate must be able to obtain and maintain a security clearance, or hold a current security clearance of an appropriate level.

- The successful candidate will be assessed through our pre-employment screening checks, such as an Australian Criminal History Check, and will normally be subject to a six-month probation period if new to the APS or has not yet completed their probation period elsewhere in the APS.

Security Clearance Required

Negative Vetting Level 1 (Secret)

How To Apply

If this sounds like the opportunity you are looking for, we want to hear from you! Submit an online application through the Apply link by 11:30pm AEDT on Sunday 18 October.

📌 Cyber Security Analyst, Enterprise Technology and Security Branch (Canberra)
🏢 Department of the Prime Minister and Cabinet
📍 Canberra

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: cyber security analyst, enterprise technology and security branch (canberra) / canberra

Subscribe to this job alert:

Get the latest job offers by email for: cyber security analyst, enterprise technology and security branch (canberra) / canberra