Senior Cyber Security Engineer - Blue Team
HybridSydney, New South Wales, Australia or Melbourne, Victoria, Australia
Job Summary
Senior Cyber Security Engineer (Blue Team) based in Melbourne or Sydney with a hybrid work model. Responsible for design, development, and maintenance of detection logic and rules (SIEM/XDR/log-management) to identify malicious activity across network, cloud, endpoint, and identity systems; configuring and managing security tooling (SIEM/XDR platforms, log management, IDS/IPS/NDR, firewalls, cloud-security tools); triaging and investigating alerts; performing vulnerability assessments, threat hunting, and tuning detection rules; participating in incident response; automating security operations with scripting and SOAR integrations; collaborating with IT/DevOps and business stakeholders to embed security best practices; maintaining policies, standards, access controls, and compliance; and producing documentation, dashboards, and run-books for ongoing security operations.
Required Qualifications
- Must-have
- Several years (e.g., 5–7+) of professional experience in cybersecurity engineering / operations, with hands-on experience in detection, SIEM/XDR, log management, incident response, and security tool administration.
- Strong technical knowledge in network security, cloud security (e.g., AWS, Azure, or similar), endpoint security, identity and access management (IAM), firewall/IDS/IPS, and intrusion detection/prevention.
- Proven ability to author, tune and review detection rules / alerts / log-parsing logic, and to perform advanced log analysis and event correlation.
- Familiarity with scripting or automation (e.g., Python, PowerShell, Bash), for building detection logic, automating response, or managing security tool configurations.
- Solid understanding of security frameworks, best practices, and threat-detection methodologies.
- Strong analytical, problem-solving, communication, and collaboration skills — able to work independently but also engage with IT/security stakeholders.
- Desirable
- Experience with cloud-native security environments and multi-cloud deployments.
- Familiarity with SOAR or security automation/orchestration platforms.
- Certifications such as CISSP, CISM, CEH, or other relevant credentials.
- Prior experience in a blue team / SOC / detection engineering / incident response role.
- Understanding of compliance, regulatory standards, and risk management best practices.
- Why Join Teneo’s Security Team
- At Teneo, you’ll be part of a committed security team helping protect a dynamic, global consulting company. This role offers the opportunity to influence and shape our security posture, contribute to designing and building detection capabilities from the ground up, and work autonomously with supp…
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.