EL1 Lead Cyber Operations Security Expert
Core
Lead proactive monitoring, investigation, and mitigation of security incidents within security tools including Sentinel, Microsoft Defender 365 stack, Azure Security Centre, and Splunk.
Role type
Senior IC cyber operations security expert
Builds
Cyber-resilient information technology platforms for the National Disability Insurance Scheme (NDIA)
Domain
Cybersecurity, Cloud Security, Threat Intelligence
Required skills
Incident response, Cloud security (Azure/AWS), Endpoint security, Network security, Threat intelligence, Data loss prevention, Vulnerability management, Log analysis, SIEM management, Phishing simulation, Forensics, Team leadership
Preferred skills
Active defence, Threat mitigation, SOP development, Security control implementation
Technologies
Sentinel, Microsoft Defender 365, Azure Security Centre, Splunk, Azure, AWS
Responsibilities
Lead incident response activities including initial and detailed investigation and computer forensics; Analyse security event data to identify suspicious activity; Develop and manage phishing simulations; Research new and evolving threats; Conduct log analysis and develop visualisation and reporting within Splunk; Supervise and mentor junior staff; Produce incident response reports and intelligence briefs
Seniority
Senior, hands-on IC with leadership responsibilities