
Posted 2 days ago
Cyber Security Engineer
AI Summary
A Security Engineer in the SOC who onboards and tunes log sources in Splunk, develops detection logic, investigates alerts, and supports incident triage and response for client environments.
About this role
The Opportunity
We're looking for a Security Engineer to join our growing cyber security team in Canberra. This opportunity is ideal for someone with around 18 months to 4 years' experience in a SOC or cyber security environment who has hands-on experience with Splunk log onboarding, use case development, detection engineering and security monitoring.
You'll play a key role in onboarding and normalising log sources, building and tuning detections, investigating alerts, and supporting incident triage and response activities across customer environments. We're looking for someone who understands how security data flows into a SIEM, can work through detection logic, and enjoys improving visibility and security outcomes through well-designed use cases and analytics.
Working alongside experienced cyber professionals, you'll continue to develop your skills across Splunk, detection engineering, threat monitoring and incident response while supporting environments that genuinely matter. If you're curious, proactive, and eager to grow your technical capability in a high-performing team, this could be a great next step in your cyber security career.
What You'll Be Doing
- Monitoring, triaging, investigating, and responding to security alerts and incidents within our Security Operations Centre (SOC)
- Onboarding and integrating new log sources into Splunk, including writing and tuning data inputs, parsing configurations, field extractions, and validating data quality
- Developing, refining, and optimising Splunk searches, dashboards, alerts, and detection logic to improve threat detection capability
- Investigating security events, identifying patterns, determining severity, and escalating incidents in line with established playbooks and procedures
- Contributing to the continuous improvement and uplift of SOC processes, runbooks, and detection logic
- Collaborating with internal cloud, network, endpoint, and engineering teams to improve log coverage and security monitoring across environments
- Keeping up with the evolving threat landscape and bringing practical ideas to improve the team’s capability
About You
- A degree in Cyber Security, Information Technology, Computer Science, or a related field
- 18 months to 4 years of hands-on SOC experience, including practical experience onboarding, validating, and tuning log sources in Splunk
- Strong working knowledge of common attack techniques, threat indicators, and the MITRE ATT&CK framework, with the ability to apply this knowledge during investigations
- Experience working with security technologies such as firewalls, IDS/IPS, endpoint detection tools, cloud security platforms, and related monitoring tools
- Confident analytical and problem-solving skills, with the ability to assess complex security events and make sound escalation decisions
- Clear written and verbal communication skills, with the ability to explain incidents, risks, and findings to both technical and non-technical stakeholders
Nice To Have
- Splunk certifications (e.g., Splunk Core Certified User or Power User)
- Exposure to SOAR platforms or security automation
- Experience with cloud environments (AWS, Azure, or GCP)
- Relevant industry certifications such as CompTIA Security+, CySA+, or equivalent
Skills
Explore related jobs
More jobs at Macquarie Technology Group
Billings Consultant2 Market Street, Sydney NSW 2000
Project Director2 Market Street, Sydney NSW 2000
Senior Talent Acquisition Partner2 Market Street, Sydney NSW 2000
Senior Security Engineer - Architecture2 Market Street, Sydney NSW 2000
Cyber Security Architect2 Market Street, Sydney NSW 2000
Head of Sales Governance and Enablement2 Market Street, Sydney NSW 2000
Similar AWS jobs
Jobs in Canberra
Managing Consultant – Data & Analytics | CanberraAltis · Canberra, Australian Capital Territory
AUS Seasonal Casual Retail Sales AssistantMountain Group · Canberra (CAB)- Threat Labs SpecialistTelstra Limited · Canberra
- Crew - Westfield BelconnenGuzman y Gomez · Canberra, ACT
- Shift Leader Casual - GYG Westfield BelconnenGuzman y Gomez · Canberra, ACT
- Defence Growth Director – CanberraAECOM · Canberra, ACT
Browse these categories
Market data for security engineer roles
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.