Talent.com
Countersight Proprietary Limited
Cyber Security Operations Analyst (SIEM Detection Engineering)Countersight Proprietary Limited • Canberra, Australian Capital Territory, Australia
Cyber Security Operations Analyst (SIEM Detection Engineering)

Cyber Security Operations Analyst (SIEM Detection Engineering)

Countersight Proprietary Limited • Canberra, Australian Capital Territory, Australia
8 days ago
Job description

Who we are

Countersight is a specialist cybersecurity company delivering security research capability development and consulting services to clients within government and across the private sector. We are independent Australian and Canberra based but with the flexibility to operate Australia wide.

Our team works on interesting problems across the entire technology stack from embedded systems to web and mobile applications finding creative ways to deliver the capability our clients need.

The Role

Role Title: Senior Cyber Security Operations Analyst (SIEM / Detection Engineering)

Location: Canberra ACT

Hours: Full-time

Salary: $100000 $180000 (plus super) based on experience

Our Senior Cyber Security Operations Analysts work closely with client Cyber Security OperationsCentres(CSOCs) to ensure SIEM and supporting security platforms are operationaloptimised and continuously improving.

This role is focused on hands-on SIEM engineering and operations including onboarding log sources improving data quality tuning detection content andoptimisingplatform performance and cost.

Working as an embedded subject matter expert within client environments you will collaborate with infrastructure cloudapplicationand business teams to ensure security telemetry is fit-for-purpose and supports effective detection and response outcomes.

Typical responsibilities include:

  • Monitoring and maintaining SIEM platform health ensuring availability and fitness for use by SOC analysts
  • Onboarding and integrating log sources across network endpointcloudand application environments
  • Improving log fidelity structure and consistency tomaximisedetection effectiveness
  • Monitoring andanalysinglog ingestion rates and trends
  • Identifyingand implementingoptimisationopportunities to improve performance and reduce storage/ingestion costs
  • Developing and tuning correlation rules alertsdashboardsand reports to reduce false positives and improve detection coverage
  • Maintainingand enhancing SIEM integrations including threat intelligence feeds and API-based connections
  • Supporting incident response and remediation activities in collaboration with SOC teams
  • Developing andmaintainingstandard operating procedures for cyber security tooling
  • Engaging with system owners and stakeholders to uplift logging maturity and support ongoing capability improvements

What we are looking for

We are looking for experienced cyber security professionals with a strong background in SIEM security operations or detection engineering particularly those who enjoy working at the intersection of security operations data engineering and platformoptimisation.

Must-have:

  • 3 years hands-on experience in SIEM engineering SOC operations or cyber security operations roles.
  • Strong experience onboarding parsingnormalising and structuring logs from diverse sources.
  • Experience designing building and maintaining SIEM content including correlation rules dashboards reportsalertsand detection logic.
  • Experience monitoring and managing log ingestion data quality and platform performance.
  • Ability toanalyseingestion trends andidentifyoptimisationopportunities.
  • Strong stakeholder engagement and communication skills.
  • Australian Government security clearance (NV1 minimum) or the ability tomaintainone.

Nice-to-have:

  • Experience with Google SecOps Chronicle or similar SIEM platforms.
  • Experience with logforwardingand pipelines ( or equivalent).
  • Understanding of detection engineering practices and threat-informed defence.
  • Familiarity with threat tacticstechniquesand procedures (TTPs).
  • Experience supporting incident response and threat hunting.
  • Exposure to EDR XDRSOARand related technologies.
  • Understanding of cloud platforms APIs and modern application architectures.
  • Familiarity with Australian Government environments and compliance frameworks.

Why work for Countersight

As a small company we prioritise supporting our team and fostering a positive flexible and enjoyable work culture. Collaboration continuous learning and the latitude to experiment are the heart of our approach.

Our main office is located a short walk from Braddon and some of Canberras most popular cafes restaurants breweries and coffee roasters and is also convenient for public transport including light rail.

Our work and client focus allows us to directly contribute to the security and success of our community and we believe that security is the key ingredient in opening up the promise of technology.

We thrive on deep technical challenges and relish the opportunity to extend our knowledge and explore the limits of the technologies we work with.

We enjoy what we do and we think you will too.

Eligibility

To be eligible to apply for this position you must meet the below eligibility criteria:

  • Be an Australian Citizen.
  • Hold or be eligible to hold a NV1 security clearance (minimum).
  • Satisfy pre-employment screening.

Application Procedure

Please provide a current resume along with a covering letter highlighting your relevant experience and any publicly available examples of your work.

Please feel free to get in touch with any questions you may have about this role via


Required Experience:

Manager


Employment Type : Full-Time
Experience: years
Vacancy: 1

Create a job alert for this search

Cyber Security Operations Analyst (SIEM Detection Engineering) • Canberra, Australian Capital Territory, Australia

Similar jobs

Cyber Security Engineer

TalentCanberra, AU

Experience with Entra ID, Active Directory, AD FS, Azure AD Connect, Certificate Management and PowerShell automation.Must be an Australian Citizen with ability to obtain NV1 clearance.Our client i... Show more

 • Promoted

Principal IRAP Assessor/Cyber Security Specialist

Centorrino TechnologiesCanberra, AU

Join Centorrino Technologies: Innovate, Grow, and Thrive with Us!.At Centorrino Technologies (CT), we’re more than just tech—we’re a community that goes beyond expectations.We’ve been recognised as... Show more

 • Promoted

Cybersecurity Vulnerability Assessor - Infinite Consulting

Infinite ConsultingACT, AU

Long term Contract role – Federal Govt.Australian Citizenship with NV2 Clearance.A high‑profile Federal Government program is seeking multiple experienced.Senior Vulnerability Assessors.ICT securit... Show more

Cyber Security Specialists, Analysts & Advisors - Threat Intelligence & Advisory - FED GOVT

HiTech GroupACT, AU

Long term contract delivering national cyber security initiatives.Multiple roles across senior and lead levels.Collaborative, high-performing team environment.A high-profile Federal Government agen... Show more

Senior Cyber Threat Analysts

Infinite ConsultingACT, AU

Long term Contract role – Federal Govt.Australian Citizenship with NV2 Clearance.A high‑profile Federal Government program is seeking multiple experienced.These roles involve analysing cyber intrus... Show more

Principal IRAP & Cyber Security Specialist

Centorrino TechnologiesCanberra, AU

A leading technology solutions provider is seeking a Principal IRAP Assessor/Cyber Security Specialist to join their team in Canberra or Melbourne.This role involves providing expert guidance and a... Show more

 • Promoted

Cybersecurity Consultant - IAM / Saviynt Specialist

DatacomCanberra, AU

Datacom's Australian Cybersecurity Consulting team is growing, and we're looking for an experienced Cybersecurity Consultant with deep IAM expertise to join us permanently in Melbourne.This is a ge... Show more

 • Promoted

Cybersecurity Lead Analyst - Infinite Consulting

Infinite ConsultingACT, AU

Long term Contract role – Federal Govt.Australian Citizenship with NV2 Clearance.A high‑profile Federal Government program is seeking multiple experienced.ICT security across a highly secure enviro... Show more

Lead SIEM & Cloud Security Engineer — Hybrid

CompasCanberra, AU

A leading recruitment firm is seeking a talented Lead Cyber Security Operations Engineer to enhance SIEM detection in a hybrid environment.You will develop and optimize security tools while providi... Show more

 • Promoted

Threat Intelligence and Threat Hunting Lead - Security Operations Centre

EYCanberra, AU

The SOC Threat Intelligence and Threat Hunting Engineering Lead is a senior security professional responsible for leading advanced cyber threat intelligence and threat hunting functions for a prote... Show more

 • Promoted

Lead Cyber Threat Analyst

Infinite ConsultingACT, AU

Long term Contract role – Federal Govt.Australian Citizenship with NV2 Clearance.A high‑profile Federal Government program is seeking multiple experienced.Lead complex research and analysis of cybe... Show more

Cyber Security Assurance Analyst – IRAP & Cloud Compliance

Bridge IT EngineeringCanberra, AU

Bridge IT Engineering seeks a skilled Security Analyst in Canberra to provide cyber security assessment and authorization advice.The role involves engaging with key stakeholders and producing syste... Show more

 • Promoted

Cyber Threat Analyst

Experis AustraliaCanberra, AU

This range is provided by Experis Australia.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Direct message the job poster from Experis Australia... Show more

 • Promoted

Principal Cyber Threat Analyst

Experis AustraliaCanberra, AU

Cyber Security Threat Hunter – Principal Level (EL2 Equivalent).Work Type: Contract | Duration: 12 Months + Extensions | Clearance: NV1 (Active) Required.Conduct proactive threat hunts across enter... Show more

 • Promoted

Cyber Security Operations Engineer

CompasCanberra, AU

Lead Cyber Security Operations Engineer – SIEM Detection & Cloud Security.Join a major ICT labour hire engagement supporting a high-impact cyber security uplift in a hybrid environment.You’ll take ... Show more

 • Promoted

Lead Security Analyst Cyber Threat Analysts - Intelligence - Fed Govt

HiTech GroupACT, AU

Exciting opportunity within a leading Federal Government Agency.A leading Federal Government organisation is seeking.Lead Security Analyst Cyber Threat Analysts.These roles will play a critical par... Show more

SAP Cyber Security Specialist / Infrastructure Engineer

M&T ResourcesCanberra, AU

SAP Cyber Security Specialist / Infrastructure Engineer.Join to apply for the SAP Cyber Security Specialist / Infrastructure Engineer role at M&T Resources.Onsite (flexible arrangements may be cons... Show more

 • Promoted

SAP Cyber Security & Infra Engineer - Onsite Canberra

M&T ResourcesCanberra, AU

A technology consulting firm in Canberra is looking for an experienced SAP Cyber Security Specialist / Infrastructure Engineer.You will manage identity provisioning, implement secure authentication... Show more

 • Promoted

Threat Hunter & SIEM Specialist — Hybrid

Experis AustraliaCanberra, AU

A leading recruitment firm is seeking a skilled Cyber Threat Analyst for a federal government project in Canberra.The role involves threat hunting, log analysis, and utilizing cutting-edge SIEM too... Show more

 • Promoted

Cyber Threat Analyst - Infinite Consulting

Infinite ConsultingACT, AU

Long term Contract role – Federal Govt.Australian Citizenship with NV2 Clearance.A high‑profile Federal Government program is seeking multiple experienced.These roles involve analysing cyber intrus... Show more