Cyber Security Engineer
On-siteSydney, New South Wales, Australia
Job Summary
Cyber Security Engineer in ASX's Security Operations Centre. You will maintain and configure security tools (EDR, SIEM, proxy, email gateway, WAF) to ensure operational readiness, build and optimise detections, automate security tasks (artifact collection, threat intelligence integration), assist in incident response, and contribute to governance by updating policies, procedures, metrics, and use cases. The role involves advancing the security posture through new controls, supporting security testing (vulnerability scanning, phishing simulations, red/purple team exercises), and collaborating with internal and external assurance functions. Strong hands-on experience with Kubernetes (GKE/EKS/Helm), Elasticsearch SIEM (ECK), IaC (Terraform/Ansible), Python, cloud platforms (GCP/AWS), and familiarity with security frameworks (NIST, ASD, Swift CSP) are highly valued. Candidates should have senior SOC experience, OS familiarity (Windows/Linux), and the ability to work in Australia with potential for a flexible, hybrid arrangement.
Desired Qualifications
- Senior security operations centre experience
- Hands-on Kubernetes (GKE, EKS, Helm)
- Elasticsearch SIEM using ECK
- Terraform/Ansible or IaC experience
- Python programming
- Cloud platforms (GCP, AWS)
- Understanding of security frameworks (NIST, ASD, Swift CSP)
- Penetration testing and vulnerability scanning experience
- Operating systems: Windows and Linux; familiarity with AD/Exchange/SQL
- Legally authorised to work in Australia on a permanent basis
- IT degree with focus on IT Security (nice to have)
- Certifications such as GCFA, GCFR, GCTI, GCIH (nice to have)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.