We’re seeking a
Technical Lead – Cyber Defence Specialist to support the delivery of a major cyber security uplift program across both
enterprise IT and operational technology (OT) environments.
This role will provide
deep technical leadership and hands-on expertise across SOC capability uplift, SIEM engineering, threat detection, vulnerability management and incident response. Working within a major cyber program, you’ll help strengthen detection and response capabilities while ensuring solutions align with enterprise cyber strategy and industry frameworks.
You’ll collaborate closely with architects, cyber leaders, and delivery teams to design and implement security capabilities that improve organisational resilience and monitoring across complex environments.
What you’ll be doing
- Leading SOC uplift initiatives, including SIEM engineering and detection capability improvement
- Designing and implementing threat detection use cases, log onboarding and telemetry strategies
- Supporting threat hunting, threat modelling and incident response playbook development
- Delivering vulnerability management solutions across IT and OT environments
- Integrating security tooling including SIEM, XDR, firewalls and security gateways
- Producing technical designs, architecture documentation and implementation plans
- Working with vendors, architects and internal teams to deliver secure, integrated cyber solutions
- Ensuring alignment with cyber frameworks such as ACSC Essential Eight and NIST CSF
What we’re looking for
- Strong background in SOC architecture and cyber defence operations
- Deep hands-on experience with Microsoft Sentinel SIEM
- Experience developing detection use cases, log ingestion strategies and analytics rules
- Experience with threat hunting, threat modelling and MITRE ATT&CK
- Expertise in vulnerability management, ideally including OT or industrial environments
- Experience implementing or enhancing SIEM, SOAR, XDR or security monitoring platforms
- Strong understanding of ACSC Essential Eight, NIST CSF and critical infrastructure security
- Ability to communicate complex technical concepts to both technical and business stakeholders
Experience required
- ~10+ years experience across infrastructure, networks or enterprise technology
- ~5+ years focused in cyber security engineering, operations or cyber defence
- Experience delivering cyber initiatives within structured delivery frameworks
- Relevant certifications such as CISSP, CEH, SC-100 or similar