9 часов назад
Security Operations Centre Specialist (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Operations Centre Specialist (SIEM/Cybersecurity): Operating and improving security monitoring capabilities for Optus Enterprise and its clients with an accent on SIEM administration, threat detection, incident investigation, and cloud web proxy management. Focus on correlating complex security data, developing detection use cases, responding to incidents, and strengthening operational security controls.
Location: Macquarie Park, NSW, Australia; hybrid arrangement with three days in the office and two days remote or from home. Applicants must be Australian citizens.
Company
is an Australian telecommunications company delivering mobile, broadband, and digital services to more than 11 million customers.
What you will do
- Investigate complex security cases by correlating SIEM data and other security sources to identify threats and anomalies.
- Configure, maintain, upgrade, and optimize SIEM platforms, including Splunk and DEVO, as well as detection use cases, alerts, dashboards, and reports.
- Manage Cloud Web Proxy platforms such as Zscaler and support log onboarding, detection baselines, and monitoring improvements.
- Participate in incident response and red team exercises, resolve security issues, and help prevent recurrence.
- Develop security monitoring processes, documentation, reporting frameworks, and operational security reports.
- Collaborate with technical, account, security, and SIEM vendor teams to provide recommendations and strengthen the security posture.
Requirements
- Australian citizenship is required due to security clearance requirements.
- 3–5 years of experience in security operations with strong analytical and problem-solving skills.
- Advanced hands-on experience with SIEM technologies, especially Splunk, including logging, monitoring, triage, alert reporting, and use-case development.
- Experience with incident classification, investigation, remediation, vulnerability management, network security, endpoint protection, and tools such as Tenable, Symantec Endpoint Protection, and Firepower IPS/IDS.
- Knowledge of AWS, Azure, or GCP, plus awareness of ISO 27001 and SOC 2 standards and experience supporting audits.
- Familiarity with NIST, PSPF, and the Australian ISM; scripting knowledge for reporting is desirable.
Culture & Benefits
- Flexible hybrid working with three office days and two remote or home-working days.
- Competitive remuneration, employee discounts, an AUD 80 monthly credit, and retail partner discounts.
- Additional Connected leave days and up to 16 weeks of inclusive, carer-neutral paid parental leave.
- Professional development through U micro-credentials developed with La Trobe and Macquarie Universities.
- Access to employee-led diversity networks, inclusion initiatives, and 24/7 counselling and wellbeing support.
- Office campus amenities include cafes, a gym, GP, childcare centre, convenience store, and collaboration and relaxation areas.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →