Haystack
← Back to Jobs
Full time
Technology

Lead Cyber Security Operations Analyst

Informatech Pty LtdCanberra, Australian Capital Territory🇦🇺AustraliaPosted 31 Jul 2026

Why This Role Stands Out

This hybrid Lead Cyber Security Operations Analyst role offers significant career growth within a nationally recognized, rapidly expanding company, allowing you to directly enhance critical government security capabilities. You’ll thrive here if you possess extensive experience in incident response and SIEM/XDR engineering, and you'll benefit from an attractive salary package and the flexibility of a hybrid work environment. Apply now to join a leading team and make a real impact!

Quick Overview

Work Type
Hybrid
Schedule
Full Time
Level
Mid Senior

Job Description

Informatech is a leading ICT consultancy with over 240 professionals specialising in Technical Services, Testing, Project Delivery, and Cyber Security. Our success is recognised nationally, we were named the Sub-Contractor of the year at the Defence Connect Awards and ranked for a third consecutive year on the AFR's Fast 100 list, which highlights our consistent growth and success.

Security clearance: Australian citizenship, and a Baseline clearance minimum

Role overview

We are supporting a federal government department in strengthening their security operations capability. This role focuses on configuring and optimising detection capabilities across SIEM and EDR platforms, including automation, workflows, policy management, tuning, and platform health. This role will support in developing effective security controls, incident response capabilities, and governance frameworks.

We are ideally looking for a permanent employee for this role, with an attractive salary package on offer.

The role will be responsible for
  • Monitoring security systems and responding to security incidents, including root cause analysis
  • Monitoring and validating security controls, ensuring vulnerabilities are detected and mitigated
  • Monitoring vendor security notifications to assess potential impacts
  • Maintaining current and accurate cyber security incident response procedures and playbooks
  • Engineering and tuning detections and use cases across numerous SIEM and EDR tools, including Sentinel and Defender
To be successful, you will have extensive experience in
  • Cyber Security incident response
  • Engineering of SIEM and XDR tools
  • Development, automation and tuning of response and detection tools, including rules, use cases and playbooks
  • Experience in conducting technical security assessments, including threat and vulnerability assessments.
Perks of the role
  • $5000 annual training allowance for Permanent staff
  • Additional 5 days of paid training leave for Permanent staff
  • Opportunity to gain exposure to various client sites and large government projects
  • $500 annual allowance for anything relating to your Health and Wellbeing

If you are interested, then we encourage you to apply! We will assess each and every application.

Similar jobs