Setting the Scene
Our client is a well-established cybersecurity consultancy with 20+ years of experience delivering security solutions across Australia. Due to continued growth, they are seeking a technically capable Security Analyst to join their team and play a key role in monitoring, detecting and responding to cyber threats across client environments.
The Role
This role is ideal for someone with a strong technical foundation, particularly from a systems administration, infrastructure or engineering background, who has transitioned into cybersecurity and wants to develop further across SOC operations, SIEM, incident response and threat detection. Working within a small, collaborative security team, you will support Managed Detection and Response (MDR) and Managed SIEM services while contributing to threat hunting, security improvements and purple team activities.
Key responsibilities:
- Monitor and analyse security events across endpoint, identity, cloud, SaaS and network environments
- Investigate alerts and incidents using SIEM and MDR platforms
- Develop and refine detection rules and correlation searches within Splunk Enterprise Security
- Perform incident triage, investigation and response activities
- Conduct threat hunting and analyse emerging attack patterns
- Support vulnerability assessments, security reviews and purple team exercises
- Improve security processes through automation and tooling enhancements
- Communicate findings and recommendations with clients and internal teams
What you'll bring - A degree in Computer Science, Cyber Security, Information Technology or a related discipline
- A strong technical background in systems administration, infrastructure or engineering
- Experience in cybersecurity operations, SOC, MDR or SIEM environments
- Hands-on experience with Splunk, ideally Splunk Enterprise Security (ES)
- Strong Linux administration skills
- Experience analysing logs, writing searches and investigating security events
- Understanding of security monitoring, detection engineering and incident response
- Scripting or automation experience (Python highly regarded)
- Exposure to penetration testing, GRC or security assessments is advantageous
What’s in it for you? - Join a small, highly skilled cybersecurity team of around 8 professionals
- Brisbane CBD office close to public transport
- Hybrid working model- 3 days per week in the office (including Monday and Friday), 2 days per week from home after probation
- $120,000–$130,000 + Super
- Paid professional development and certifications
- Exposure across SOC operations, threat hunting, offensive security and compliance
- Supportive culture focused on learning, technical excellence and work-life balance
- Additional benefits including bonuses, team events and potential share options
How to apply Applications are treated with absolute confidentiality. Click APPLY or contact Clodagh at clodagh@decipherbureau.com for an informal conversation about your next career move. Equal opportunity and diversity are a priority. We encourage applicants from all backgrounds to apply.