Security Siem Specialist And Detection Engineer

Vor 3 Tagen


Canberra, Österreich Bae Systems (New) Vollzeit

BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.
Role summary We are looking for a talented and enthusiastic individual with excellent technical and client-facing skills to act as a SIEM specialist who can design and deploy SIEM (Security Information and Event Management) / SOAR (Security Orchestration, Automation and Response) capabilities. They will also be responsible for working with clients to derive the security use cases across a range of platforms and systems to be monitored. These use cases will be based on appropriate MITRE frameworks and client defined insider, vulnerability, business, risk and policy enforcement requirements. The role will range from deploying new solutions and assessing existing capabilities to identify the exposure and coverage gaps.
This role is situated within our Government business, based in Canberra, with substantial time on client sites and will require a government security clearance at NV2 minimum, but candidates will be expected to undergo PV.
What you'll be doing Oversee deployment / implementation activities ensuring that entry criteria are met, all planned activities are completed and that rollback plans are initiated where required.Identify use cases, plan development, deployment, testing and release into production.Produce, update and maintain corresponding playbooks for detection and automation content.Develop, test and deploy updated and new content across the monitored estate in liaison with the client.Maintain existing detection content to ensure it remains current and relevant to the monitored estate, and that false positives are kept to a minimum.Assess the effectiveness of new / updated rules and analytics to feed into future development activities.Review and approve all required documentation as part of a release or change including design, deployment, configuration and administration guides.Support attack, threat and exposure modelling to identify new attack paths and determine suitable detection content to detect path being exploited.Support threat hunting and content enrichment.Integrate solutions with vulnerability and asset and configuration management and other tools to enrich efficacy of the solution.Obtain authorisation for implementing releases and changes through the Change Management process.The strategic focus of the role is to ensure that the detection and monitoring technology remains optimised, current and tailored to the changing threat landscape, client risk position and technology in use.The role is a cyber technical specialist with deep knowledge of the Cyber Monitoring technologies and cyber threat tools, tactics, techniques and procedures.What we're looking for Technical: Strong knowledge of how Azure and AWS security functions work as security controls as well as detection tools to protect large cloud estates.Production of content and playbooks on Sentinel and Splunk to detect security breaches and recognise the importance of threat led Use Cases.Knowledge of SIEM/SOAR tools (Splunk and Sentinel at a minimum) and other appropriate tooling e.g. SOAR, Threat Intelligence, traffic analysis tools etc. to identify signs of an intrusion, and advise where new/improved tooling could enhance the SOC operation.Deep knowledge and experience of operational ICT service delivery management.Working with a range of security tooling/technology.Strong understanding of security architecture, in particular networking.Detailed understanding of threat intelligence and threat actors, TTPs and operationalising threat intelligence.Understand TCP/IP component layers to identify normal and abnormal traffic.Experience of Splunk (with ES) &/or Sentinel.Experience developing SIEM/SOAR content desirable.Non-technical: Client side consulting, including stakeholder engagement and the ability to communicate insights and concepts to others, including briefing skills and report writing.Coaching mindset – helping and mentoring the team.Security process development.Able to understand and adapt to different cultures and hierarchical structures.Self-starter and capable of independent working.Team player and adept at working in multi-disciplinary and diverse teams.Life at BAE Systems Digital Intelligence We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day.
By embracing technology, we can interact, collaborate and create together, even when we're working remotely from one another. Hybrid Working allows for increased flexibility in when and where we work, helping us to balance our work and personal life more effectively, and enhance well-being.
Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.
Division overview: Capabilities At BAE Systems Digital Intelligence, we pride ourselves in being a leader in the cyber defence industry, and Capabilities is the engine that keeps the business moving forward. It is the largest area of Digital Intelligence, containing our Engineering, Consulting and Project Management teams that design and implement the defence solutions and digital transformation projects that make us a globally recognised brand in both the public and private sector.
As a member of the Capabilities team, you will be creating and managing the solutions that earn us our place in an ever changing digital world. We all have a role to play in defending our clients, and this is yours.

#J-18808-Ljbffr



  • Canberra, Österreich Bae Systems (New) Vollzeit

    BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.Role summaryWe are looking for a...


  • Canberra, Österreich Kirra Services Vollzeit

    Security clearance: Must have Negative Vetting Level 1 Security Clearance.This role requires in-depth knowledge of cyber security fundamentals to accurately determine impact and relevance of emerging and existing threats to operating environments. The CTD SIEM Specialist will draw upon their knowledge of detection methodologies and technologies, attack...


  • Canberra, Österreich Tideri Jobbörse Vollzeit

    Security clearance: Must have Negative Vetting Level 1 Security Clearance.This role requires in-depth knowledge of cyber security fundamentals to accurately determine impact and relevance of emerging and existing threats to operating environments.The CTD SIEM Specialist will draw upon their knowledge of detection methodologies and technologies, attack...


  • Canberra, Österreich Nri Australia & New Zealand Vollzeit

    Position: Cyber Monitoring SpecialistType: Full timeWe are seeking an experienced Cyber Monitoring Specialist to join our IT Consultancy team, working on critical cybersecurity projects for a government sector client.The role will involve advanced security monitoring, incident detection, and response within a sensitive government...


  • Canberra, Österreich Tideri Jobbörse Vollzeit

    Position: Cyber Monitoring Specialist Type: Full time We are seeking an experienced Cyber Monitoring Specialist to join our IT Consultancy team, working on critical cybersecurity projects for a government sector client.The role will involve advanced security monitoring, incident detection, and response within a sensitive government...


  • Canberra, Österreich Paxus - Technology + Digital Talent Vollzeit

    Our Federal Government client is seeking an experienced Cyber Monitoring Specialist.This is a 12 month contract with up to 24 month extension option.The role is open to Australian citizens with an active NV1 clearance.12 month contract with up to 24 month extension option.Australian citizens with an active NV1 clearance.Hybrid role (3 days from office and 2...

  • Cyber Security Engineer

    vor 2 Monaten


    Canberra, Österreich Zone It Solutions Vollzeit

    We are looking for a skilled Cyber Security Engineer. In this role, you will be instrumental in safeguarding our organization's IT infrastructure, ensuring the highest levels of security and compliance.Responsibilities:Design, implement, and maintain security systems and policies to safeguard data and infrastructure.Conduct security assessments, audits, and...


  • Canberra, Österreich To Report Vollzeit

    An exciting opportunity for a Senior Cyber Security Engineer to work with cross-functional teams to design, implement, and maintain security systems.03rd December, 2024About UsAdvanced Design Technology (ADT) is a progressive, privately owned Australian company specialising in the design, development, manufacture of complex electronic systems.We excel at...


  • Canberra, Österreich MACRO Recruitment Vollzeit

    For Cyber Security Engineer to enhance critical electoral systems for the Australian Electoral Commission in Canberra.A 3 year contract full-time role within a high-stakes cyber security environment.Requires: Experience using Sentinel or similar SIEM solution and have or held a NV1 clearance Salary guide: Hourly rate up to $150.00.Location: Canberra Region...


  • Canberra, Österreich Fujitsu Vollzeit

    FujitsuOur Purpose: make the world more sustainable by building trust in society through innovation.We use technology to make happier lives. We are a global leader in technology and business solutions that transform organizations and the world around us. We have a long heritage of bringing innovation and expertise, continuously working to contribute to the...


  • Canberra, Österreich Netier Vollzeit

    Due to the nature of our business we require security clearances. Unfortunately if you're unable to obtain these your application has been deemed unsuccessful. Job DescriptionAs a Cyber Security Engineer, you will understand the demands of the position, working closed with the Senior Cyber Security Engineer, you will be a champion of our vision and values,...


  • Canberra, Österreich Tideri Jobbörse Vollzeit

    CSIRO acknowledges the Traditional Owners of the land, sea and waters, of the area that we live and work on across Australia.We acknowledge their continuing connection to their culture and pay our respects to their Elders past and present.View our vision towards reconciliation.Child safety CSIRO is committed to the safety and wellbeing of all children and...


  • Canberra, Österreich Fujitsu Vollzeit

    FujitsuOur Purpose: make the world more sustainable by building trust in society through innovation.We use technology to make happier lives.We are a global leader in technology and business solutions that transform organizations and the world around us.We have a long heritage of bringing innovation and expertise, continuously working to contribute to the...


  • Canberra, Österreich Netier Vollzeit

    Due to the nature of our business we require security clearances.Unfortunately if you're unable to obtain these your application has been deemed unsuccessful. Job Description As a Cyber Security Engineer, you will understand the demands of the position, working closed with the Senior Cyber Security Engineer, you will be a champion of our vision and values,...


  • Canberra, Österreich Clearcompany Vollzeit

    Canberra or Melbourne CBD12 month Federal Government contract + extensionsMust have Negative Vetting Level 1Our client who is a vital Federal Government agency and member of Australia's national security community, is seeking experienced, senior Cyber Security Specialist's to join their team.Duties/Skills: Undertake assessments of Government entities and...


  • Canberra, Österreich Csiro Vollzeit

    CSIRO acknowledges the Traditional Owners of the land, sea and waters, of the area that we live and work on across Australia. We acknowledge their continuing connection to their culture and pay our respects to their Elders past and present. View our vision towards reconciliation.Child safetyCSIRO is committed to the safety and wellbeing of all children and...


  • canberra, Österreich Tideri Jobbörse Vollzeit

    CSIRO acknowledges the Traditional Owners of the land, sea and waters, of the area that we live and work on across Australia.We acknowledge their continuing connection to their culture and pay our respects to their Elders past and present.View our vision towards reconciliation.Child safety CSIRO is committed to the safety and wellbeing of all children and...


  • Canberra, Österreich Leidos- Vollzeit

    Company DescriptionWe're a large scale systems integration company, committed to delivering trusted solutions that help to safeguard Australia. With over 20 years' local experience and the backing of a 32,000 global network, we currently have 1,500 employees mainly in Canberra and Melbourne. We're growing fast and are building a business that is focused and...


  • Canberra, Österreich Leidos- Vollzeit

    Company Description We're a large scale systems integration company, committed to delivering trusted solutions that help to safeguard Australia.With over 20 years' local experience and the backing of a 32,000 global network, we currently have 1,500 employees mainly in Canberra and Melbourne.We're growing fast and are building a business that is focused and...


  • Canberra, Österreich Tideri Jobbörse Vollzeit

    An exciting opportunity for a Senior Cyber Security Engineer to work with cross-functional teams to design, implement, and maintain security systems.03rd December, 2024 About UsAdvanced Design Technology (ADT) is a progressive, privately owned Australian company specialising in the design, development, manufacture of complex electronic systems.We excel at...