Why This Role Stands Out
This role offers an exceptional opportunity to lead advanced cyber defense initiatives and significantly enhance an organization's security posture within a critical sector. You'll thrive here if you possess a passion for proactive threat hunting, enjoy mentoring junior analysts, and are driven to continuously improve cyber security operations. Apply to make a tangible impact on national security and grow your expertise in a highly respected environment.
Quick Overview
Job Description
Senior Cyber Threat Hunt and Emulation Specialist
LocationACT
Working ArrangementOn-site
Clearance requiredPositive Vetting (TSPV) AGSVA Security Clearance
Company overviewOur client operates within a highly regulated and security-focused environment, delivering critical capabilities and maintaining strong cyber security standards. The organisation is committed to protecting its networks, systems and information assets through advanced cyber defence, threat detection and incident response capabilities.
Job DescriptionWe are seeking an experienced Senior Cyber Threat Hunt and Emulation Specialist to provide technical leadership across security monitoring, threat detection, threat hunting, emulation, and incident response activities within a Security Operations Centre (SOC).
Reporting to the Deputy CISO, this role will lead the identification, analysis and response to sophisticated cyber threats and vulnerabilities while continuously enhancing detection capabilities, response processes and the organisation's overall cyber defence posture. The successful candidate will act as a senior escalation point for complex incidents, mentor junior analysts, and contribute to the ongoing maturity of cyber security operations.
Duties and Responsibilities- Lead the investigation and response to high-severity and complex cyber security incidents.
- Ensure effective containment, eradication and recovery activities during security incidents.
- Act as the primary escalation point for Level 1 and Level 2 SOC analysts.
- Provide technical guidance and expertise on advanced cyber threats and attack techniques.
- Develop, tune and optimise detection use cases, correlation rules and alerting mechanisms across SIEM and EDR platforms.
- Conduct proactive threat hunting activities to identify previously undetected threats.
- Perform threat emulation activities to assess organisational security posture.
- Analyse threat intelligence and integrate insights into detection and response strategies.
- Drive continuous improvement of incident response processes, playbooks and SOC procedures.
- Mentor and develop junior analysts to enhance team capability.
- Support the development of automation solutions to improve security operations.
- Bachelor degree and/or relevant industry certifications.
- Australian Citizenship with eligibility to hold and maintain a PV Security Clearance.
- Minimum 8 to 10 years of experience in cyber security roles, with significant experience in Security Operations Centre environments.
- Strong expertise in threat detection, incident response and digital forensics.
- Experience operating within highly regulated enterprise or government environments.
- Deep understanding of attacker tactics, techniques and procedures, including frameworks such as MITRE ATT&CK.
- Demonstrated experience conducting threat hunting activities.
- Proven ability to develop detection use cases and correlation rules.
- Strong knowledge of network protocols.
- Experience supporting Windows and Linux operating environments.
- Experience collecting, analysing and integrating threat intelligence into operational workflows.
- Strong scripting and automation skills, including Python and/or PowerShell.
- Advanced analytical and problem-solving capabilities.
- Excellent written and verbal communication skills.
- Ability to communicate complex technical concepts to both technical and non-technical stakeholders.
- Proven experience leading, mentoring and developing junior analysts.
- Familiarity with security frameworks and standards such as NIST and ISO 27001.
- Knowledge of security automation tools and frameworks is desirable.
- Opportunity to work in a highly specialised cyber security environment.
- Exposure to complex and advanced cyber threat investigations.
- Leadership and mentoring responsibilities within an established SOC capability.
- Ongoing professional development through mentoring and self-directed learning.
- Opportunity to contribute to the enhancement of enterprise cyber defence capabilities.
- Work alongside internal cyber security teams, IT operations teams and relevant government stakeholders.
We value diversity and are committed to creating an inclusive environment for all employees.
VeteransDefence and Federal Government industry experience is highly desirable We strong encourage veterans and individuals with Defence experience to apply. Your unique skills and background are highly valued, and we are committed to supporting your transition into this role.
Similar jobs
- GH
Cyber Security Engineer II
NewGBMC HealthCare
Adelaide🇦🇺A$79.5k - A$143.1k/yrHybrid1 hour agoEncryptionActive DirectoryHIPAA+2Technology - AV
Senior Cyber Defense Analyst - Hybrid Sydney
NewAvant
Sydney🇦🇺Hybrid1 hour agoTechnology - TH
Cyber Solutions Engineer - Pre-Sales & Tech Expert
NewThreatlocker Inc
Brisbane, Queensland🇦🇺Hybrid1 hour agoTechnology - SR
Cyber Security Engineer (IAM) - Hybrid
NewSuper Retail Group
Strathpine, Queensland🇦🇺Hybrid2 hours agoSAMLSSOREST+1Technology - TB
Autonomous Systems Security Engineer
NewThe Boeing Company
Brisbane, Queensland🇦🇺On-site2 hours agoTechnology - C&
Information Security Manager
NewCushman & Wakefield
Melbourne, Victoria🇦🇺Hybrid2 hours agoStakeholder ManagementAdministrative