CareerPlanSign in

EL1 Lead Cyber Operations Security Expert

Canberra, Australian Capital Territory💼 Full-time🗓 2026-09-17 → 2026-09-28

Core

Lead proactive monitoring, investigation, and mitigation of security incidents within security tools including Sentinel, Microsoft Defender 365 stack, Azure Security Centre, and Splunk.

Role type

Senior IC cyber operations security expert

Builds

Cyber-resilient information technology platforms for the National Disability Insurance Scheme (NDIA)

Domain

Cybersecurity, Cloud Security, Threat Intelligence

Required skills

Incident response, Cloud security (Azure/AWS), Endpoint security, Network security, Threat intelligence, Data loss prevention, Vulnerability management, Log analysis, SIEM management, Phishing simulation, Forensics, Team leadership

Preferred skills

Active defence, Threat mitigation, SOP development, Security control implementation

Technologies

Sentinel, Microsoft Defender 365, Azure Security Centre, Splunk, Azure, AWS

Responsibilities

Lead incident response activities including initial and detailed investigation and computer forensics; Analyse security event data to identify suspicious activity; Develop and manage phishing simulations; Research new and evolving threats; Conduct log analysis and develop visualisation and reporting within Splunk; Supervise and mentor junior staff; Produce incident response reports and intelligence briefs

Seniority

Senior, hands-on IC with leadership responsibilities

Sourced via viewjobs · Listed on CareerPlan, which tracks 844,000+ jobs from 20+ sources.