Security Operations Analyst - Canberra, Australian Capital Territory
2 hours ago

Job description
The Security Operations Analyst role encompasses advanced monitoring, investigation, and incident response functions, along with threat‑hunting operations, intelligence analysis, vulnerability management, and contributing to security engineering initiatives. You will strengthen cyber resilience, manage complex security incidents, and enhance SOC processes and tooling in alignment with ISM, MITRE ATT&CK, and SOC‑CMM standards.
Details about the Client
ADF Careers is the largest workforce outsourcing solution in the southern hemisphere with over 80,000 applications received on average each year.
ADF Careers is on a mission to recruit the right people, in the right numbers, at the right time to support the Australian Defence Force to build, sustain and maximise Defence capability.
Our people are our greatest asset. We recognise and respect our people's need to work in ways that support their careers, families, and lifestyle. That's why we offer flexible working arrangements, learning pathways, additional leave entitlements and extensive corporate discounts across a variety of product and services. We want our people to be financially rewarded; to feel good and to go beyond what they thought possible at work.
Be you, and we'll be better together.
To find out more about our great employee benefits and what it's like to be part of the team, reach out to our friendly talent acquisition team.
Job Description
Reporting to the Cyber Security Technical Lead, you will be responsible for improving Adecco DFR organizational cyber resilience by responding to security incidents, proactively identifying emerging threats, enhancing detection and response capabilities, and delivering high‑quality intelligence reporting. In carrying out your duties, you will help shape and implement cyber security policies and procedures, and leverage your expertise to advise and guide IT functions across the broader organisation.
Key Responsibilities:
- Perform in-depth analysis of alerts and events escalated from Tier 1 analysts. This requires strong analytical skills with experience investigating security alerts across multiple platforms and data sources
- Lead end to end containment, remediation and recovery activities
- Identify and develop business threat detection use cases inline with a crown jewels analysis, SOC-CMM and MITRE ATT&ACK framework.
- Lead vulnerability management and remediation
- Develop post incident reports and drive remediations activities
- Perform security stack health checks and remediate coverage gaps
- Develop SOC Tier 1 process instruction and playbooks
- Develop and perform daily Sentinel Hunting query's and supporting dashboards
- Research daily emerging threats and corelate intelligence to detection capabilities
- Sentinel SIEM Administration and log onboarding
- Alert Engineering, tuning and hunting utilizing KQL
- Participate in internal and external cyber security exercises
- Identify and drive to completion security control, monitoring and process gaps
- Collaborate with It Operations streams to ensure effective resolution of security incidents and vulnerabilities
Candidate's Profile
Minimum 2 years' experience in a cybersecurity role with a strong understanding of the ISM and global security standards.
Bachelor's degree in Cyber Security, IT, Computer Science, Engineering, or Information Systems, Certificate IV in Cyber Security or relevant experience. Industry certifications such as Microsoft Security (SOC‑200, Azure Security Engineer Associate), EC-Council Certified SOC Analyst, GIAC Certified Incident Handler, or other security stack-specific certifications (Splunk, CrowdStrike, Tanium, McAfee, Cisco, Palo Alto) are highly desirable.
Your background will demonstrate:
- A passion for cyber security coupled with excellent written and verbal communication skills.
- Ability to work collaboratively within a SOC and with broader IT, security, and business teams.
- Strong analytical skills with experience investigating security alerts across multiple platforms and data sources.
- Demonstrated experience in Microsoft cloud security technologies or relevant EDR and SIEM technologies.
- Experience with query or scripting languages (e.g. KQL, SPL, SQL, PowerShell).
- Familiarity with threat intelligence platforms, vulnerability management and penetration testing concepts.
- Professional cyber security certification such as those provided by Microsoft, SANS or Offensive Security.
- Experience producing clear, accurate incident documentation and reports.
To apply for this position, you must be an Australian citizen and have the ability to maintain an Australian AGSVA security clearance.
How to apply
If eligible, please submit your resume; applications are open to all qualified Australian citizens regardless of their background, identity, experiences and beliefs.
If you need assistance during our recruitment process, please email Sahar Khalid at for a confidential conversation.
To apply for this position, please submit your application online through our designated platform. The deadline for applications is 11:30 PM (AEST) on 8th March 2026. It's important to note that applications will be reviewed and processed as they are received.
Similar jobs
We are looking for a Security Operation Analyst based in Canberra to design and implement cyber security products and technologies. · Design and implement cyber security products and technologies · Mange Endpoint security, identity & access management tools · ...
3 weeks ago
We are looking for a Security Operation Analyst based in Canberra. This role is on-site working from customer office. · ...
3 weeks ago
This is a full-time on-site role located in Canberra for a Security Operations Center (SOC) Analyst. The SOC Analyst will monitor and respond to security incidents, analyze potential threats, and mitigate risks to ensure the organization's network security. · Monitor security ale ...
4 days ago
The Operations Analyst will be a leader within a Headquarters-based team working to plan and enable intelligence outcomes for ASIS. · ...
3 weeks ago
We are looking for a 24/7 Security Operations Analyst to join our team at Fujitsu Cyber. · Continuously monitor EDR, NDR, CASB, SIEM platforms and security telemetry for suspicious activity and indicators of compromise. · ...
3 days ago
The Senior Operational Risk Management Analyst plays a key role in overseeing first-line risk activities at Beyond Bank Australia.Be part of Beyond Bank a bank that is for and with you. · We are one of Australia's largest, 100% member owned mutual banks with a credit union herita ...
1 week ago
We are looking for a 24/7 Security Operations Analyst to join our team at Fujitsu Cyber. This role requires strong customer-centric approach emphasizing clear communication accurate documentation prompt escalation of security incidents. · ...
5 days ago
The Senior Operational Risk Management Analyst plays a key role in overseeing first-line risk activities ensuring that operational risks across the bank are accurately identified assessed and effectively mitigated. · ...
1 week ago
DIAKOB Enterprises is seeking a highly motivated and experienced Senior Research Analyst to join our growing research team and support global market research and expert network engagements. · ...
3 days ago
Our client is seeking Senior Cyber Threat Analysts to work on foreign signals intelligence. · ...
2 weeks ago
This is a senior Business Data & Reporting Analyst role operating at the intersection of business analysis, data architecture, and enterprise reporting within a Federal Government environment. · Analyse business processes to identify gaps. · Elicit requirements using best-practic ...
3 weeks ago
A national security agency requires multiple contractors with a TSPV clearance to work on a large-scale transformation program. · ...
1 month ago
At pFour Consulting we don't just support Defence programs — we are a trusted partner relied upon to implement change in sensitive and critical environments. · ...
3 weeks ago
The client is seeking a Service Desk Analyst to investigate and resolve IT incidents. · ...
1 week ago
The Network are excited to be seeking to fill multiple Cyber Security Specialists across contract engagements within a Government entity. · ...
1 month ago
We are seeking multiple Lead Cyber Threat Analysts (EL1 equivalent) to support a high-assurance cyber intelligence environment within Australian Signals Directorate.These roles are responsible for delivering advanced cyber threat intelligence, threat modelling, and operational re ...
2 weeks ago
Cyber Threat Analysts need to understand cyber intrusion activities then use their research skills to provide reporting on threat modelling and intelligence. · ...
6 days ago
The team is seeking experienced intelligence professionals who can immediately contribute to high priority assessment tasks. · This role requires someone who can take direction well, work autonomously, and contribute effectively to a collaborative, forward leaning team. · ...
1 month ago
This opportunity is a Canberra based role and you must hold NV1 clearance minimum. · ...
1 month ago
+Lead Cyber Threat Analyst (EL1 equivalent) · Responsible for preparing and delivering complex briefs and cyber threat intelligence reporting relating to ASD and national security issues. · +Technical skills: Diploma or Bachelor of Computer Science, Computer Systems Engineering o ...
2 weeks ago