
Cyber Security Engineer
- Rhodes, NSW
- Permanent
- Full-time
- Implement, configure, manage, and monitor security tools including PAM, SIEM, VAPT and DLP solutions ensuring ongoing operational effectiveness and compliance.
- Conduct vulnerability scans and manage penetration testing, security assessment results to work towards remediation and address potential risks and weaknesses.
- Review existing IT Platforms and provide technical guidance on enhancing and ensuring the ongoing security of infrastructure and related services.
- Monitoring security systems, tools, and logs to detect and respond to security incidents and anomalies.
- Responsible for ongoing IT key security control design and operating effectiveness. Ability to automate control testing and assurance on an ongoing basis.
- Hands on experience with implementing, configuring, and managing security tooling including SIEM and PAM, preferably LogRhythm, Delinea and Qualys across an enterprise providing resilient and highly available solutions.
- Hands on experience implementing, configuring, and managing DLP solutions.
- Hands on experience with Vulnerability scanning tools preferably Qualys or Tenable, including the analysis and reporting of the data to provide recommendations and action plans to management for remediation.
- Hands on experience with providing technical guidance for security hardening and best practices for Infrastructure platforms including Windows, Linux, VMWare, SQL, Cisco, F5s and Fortinet.
- Experience with SQL TDE encryption, encryption tools, certificate management, key management services, and data-at-rest/transit protection.
- Responsible for Incident response, initial triage and handling security incidents.
- Experience with industry standards such as ISO 27001 and NIST Cybersecurity Framework.
- Ability to analyze and resolve security challenges in high-pressure environments.
- Strong communication skills to engage with technical and non-technical stakeholders effectively.
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field.
- Relevant certifications such as CISSP, CISM, CEH, or CompTIA Security+ are highly desirable.