CrawlJobs Logo

Cyber Operations Specialist

Australia, Williamtown Employment contract · Job Posted June 29, 2026
Apply Position
Job Link Share

Job Description

At Boeing, we innovate and collaborate to make the world a better place. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us. The Opportunity: Are you an experienced cyber security professional ready to make a meaningful impact from day one? Do you want to apply your skills to a high-profile Defence program that supports Australia's national interests? Boeing Defence Australia (BDA) is seeking a Cyber Operations Specialist to join our team onsite in Williamtown, NSW. We are looking for someone who can step in quickly, manage incidents effectively, and help strengthen the cyber operations capability of the team. You will play an important role in delivering security outcomes, supporting operational resilience, and mentoring others to build capability across the function. As an equal opportunity employer committed to a diverse and safe workplace, BDA offers the opportunity to work with leading talent on cutting-edge projects that protect Australia and its national interests.

Job Responsibility

  • Support the execution of critical information and cyber security work statements
  • Manage and support cyber incidents, including stakeholder communications
  • Contribute to the development and maturity of cyber operations processes
  • Help identify opportunities to improve monitoring, detection, and vulnerability management
  • Mentor and support team members within a collaborative cyber operations environment
  • Work closely with stakeholders to deliver practical, effective security outcomes

Requirements

  • Underpinning knowledge and experience to effectively and confidently triage, prioritise and respond to incidents and detections
  • Depth of experience in cyber operations, including Detection engineering, monitoring and tuning SIEM and other solutions, and stakeholder support
  • Strong leadership capability, including the ability to mentor and guide others
  • A proactive and creative approach to problem-solving
  • Strong communication skills and the ability to explain complex security concepts clearly to customers and senior management
  • The ability to work collaboratively while maintaining accountability and focus on delivery
  • Demonstrated knowledge and experience performing or contributing to system accreditation, including execution of monitoring to maintain security outcomes in compliance to the Australian Defence Security Principles Framework and associated policies and procedures, including the Australian Government Information Security Manual
  • Experience developing and implementing information security practices in an engineering environment
  • Strong written and verbal communication skills, with the ability to engage a broad range of stakeholders
  • Strong project management capability and end-to-end accountability
  • Proficiency with Atlassian tools and cyber operations metrics
  • Experience with verification and validation for OT and ICT system security
  • Knowledge of system hardening and security best practices
  • Strong experience in continuous monitoring, incident response, and stakeholder communications
  • Ability to identify efficiency opportunities and anticipate future risks
  • Experience in developing threat-based monitoring and detection practices
  • Experience to assist in maturing vulnerability management practices
  • Experience mentoring or leading a small cyber analyst team
  • Demonstrated experience in line with Defence security and policy requirements
  • Holding or having the ability to obtain and maintain a Negative Vetting 2 security clearance is essential for this role
  • The preferred applicant must be willing to disclose all relevant information and must have lived in Australia, or have a checkable background, for at least the preceding ten years

Nice to have

  • Security Architecture, Design and Engineering
  • Cyber Governance, Risk and Compliance
  • Test Verification, Validation and Technical Assurance
  • Digital Forensics and Incident Response
  • Cyber Security Operations

What we offer

  • Competitive base pay and incentive programs
  • Industry-leading tuition assistance program pays your institution directly
  • Resources and opportunities to grow your career
  • Up to $10,000 match when you support your favorite nonprofit organizations

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Cyber Operations Specialist

8 matching positions

Product Security Analyst - Cyber Operations & Compliance Specialist

Entry-level position offering a fantastic opportunity to learn and grow in a sup...
Location
Location
Australia , Williamtown
Salary
Salary:
Not provided
boeing.com Logo
Boeing
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Genuine interest in cybersecurity and a desire to learn
  • Solid understanding of information security practices (certifications preferred but not required)
  • Strong written and verbal communication skills
  • Willingness to work as part of a dynamic team
  • Willingness to work on site at our location in Williamtown NSW
  • Hold or have the ability to obtain a minimum NV1 Security Clearance
  • Must be willing to disclose all relevant and required information and MUST have lived in Australia, or have a checkable background, for at least the preceding Ten years
  • Applicants must be Australian Citizens to meet Defence security requirements
Job Responsibility
Job Responsibility
  • Work as part of a team responsible for implementation of information security requirements, policies, standards, guidelines and procedures
  • Monitor and analyze network traffic and event logs to identify potential threats and vulnerabilities
  • Assist in the continuous monitoring and assessment of security controls
  • Participate in vulnerability assessments and audits to identify weaknesses
  • Support incident response activities and post-incident analysis
  • Collaborate with the team to implement information security policies and procedures
  • Help create security policies, audits, and assessments in support of the maintenance of Security Accreditation documentation
What we offer
What we offer
  • Flexible working options
  • Study assistance
  • Salary packaging
  • Employee Incentive Program
  • Global opportunities
Read More
Arrow Right

Cyber Security Operations Specialist

A Cyber Security Operations Specialist is a professional responsible for protect...
Location
Location
Congo, the Democratic Republic of the , Kinshasa
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 3-5 years of experience in Security Operations and Threat hunting
  • Bachelor's degree in computer science, information technology, cyber security, or a related field
  • Proficiency in security tools (e.g., SIEM, IDS/IPS, firewalls)
  • Knowledge of networking protocols and architecture
  • Familiarity with operating systems (Windows, Linux) and cloud environments
  • Strong analytical and problem-solving abilities to assess risks and respond effectively to incidents
  • Excellent analytical and problem-solving skills
  • Strong communication skills to effectively convey technical information to non-technical stakeholders. [French and English]
  • Ability to work independently and as part of a team in a fast-paced environment
  • A keen eye for detail to detect anomalies in data and logs
Job Responsibility
Job Responsibility
  • Continuously monitor security systems and networks for unusual activity or potential threats
  • Analyse security alerts and logs to identify and respond to incidents
  • Investigate security incidents and breaches to determine their cause and impact
  • Coordinate the response to security incidents, including containment, eradication, and recovery
  • Maintain a concise, audit-ready Incident Response Plan that defines severity matrix, escalation paths, decision authority, evidence handling, and communications (internal, executive, legal, regulator)
  • Own a version-controlled repository of actionable playbooks (phishing, business email compromise, ransomware, webshell, data exfiltration, insider risk, credential theft, cloud token abuse)
  • Ensure that logs from servers, cloud apps, domain controllers, proxies, domain controllers, email and smtp gateways, PUAM, firewalls are collected, easy to read, time-synchronized, and stored securely
  • Build and maintain smart alert rules that spot real attacks (based on MITRE ATT&CK) and reduce noisy false alarms
  • Create dashboards and weekly reports that show what we’re seeing and how fast we respond
  • Stay updated on the latest cyber threats, vulnerabilities, and attack vectors
Read More
Arrow Right

Senior Cyber Incident Management, Operations & Response Specialist - VOIS

We are seeking a Senior Cyber Incident Management, Operations and Response Speci...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in a Security Operations Centre, operating at senior analyst level
  • Strong expertise in SIEM platforms (such as ArcSight, Splunk, QRadar or LogRhythm)
  • Proven experience in security incident investigation, response and management
  • Understanding of malware behaviour, advanced persistent threats and complex attack techniques
  • Skilled in SIEM correlation logic, rule tuning and detection optimisation
  • Ability to create structured workflows, playbooks and triage processes
  • Confident mentoring, coaching and motivating analysts within the team
  • Strong written and verbal communication skills, including the ability to present technical findings to senior stakeholders
  • Degree in Computer Science, Information Technology, Engineering or a related field
  • Prior experience in cloud technologies and the information security domain
Job Responsibility
Job Responsibility
  • Investigate, analyse and accurately triage security alerts and incidents across CSOC platforms
  • Perform deep-dive incident analysis, identify root causes and assess business risk
  • Lead daily stand-ups and act as an escalation point for functional and technical queries from Cyber Defence Analysts
  • Produce clear, high-quality technical and operational reports for stakeholders
  • Maintain and continuously enhance alert triage quality and operational deliverables
  • Develop, document and maintain playbooks, runbooks, SOPs, KEDB articles and knowledge base content
  • Proactively fine-tune detection rules and identify opportunities for alert reduction and effort optimisation
  • Monitor and protect digital systems against unauthorised access, modification or data loss
  • Analyse security breaches and recommend appropriate tools, controls and countermeasures
  • Collaborate closely with Local Market CSIRT teams to manage ongoing cases and reduce backlog
What we offer
What we offer
  • Opportunity to work at the forefront of cyber defence within a global telecommunications organisation
  • Exposure to complex threat landscapes and enterprise-scale security environments
  • A role that combines technical depth with leadership, mentoring and operational ownership
  • The ability to influence detection strategy, incident response quality and process maturity
  • Fulltime
Read More
Arrow Right
New

Siem Content Development Specialist - Cyber Defence - Vois

We are seeking a SIEM Content Development Specialist to strengthen Cyber Defence...
Location
Location
India , Pune
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experienced professional with 10+ years in SOC operations, SIEM content development, threat hunting, or security engineering
  • Skilled in SIEM technologies, particularly Elastic/ELK, with knowledge of platforms such as Splunk, Sentinel, ArcSight, or Chronicle
  • Proficient in programming and scripting (e.g., Python, SQL, JavaScript, PowerShell, KQL, ES|QL)
  • Strong understanding of cloud environments (AWS, Azure, GCP) and associated telemetry
  • Experienced in developing detection use cases and threat scenarios aligned with MITRE ATT&CK and cyber kill chain frameworks
  • Competent in Regex and data analysis techniques
  • Knowledgeable in networking concepts (TCP/IP, CIDR, subnets) and security tools (IDS/IPS, firewalls, AV systems)
  • Strong analytical, problem-solving, and communication skills
  • Able to work independently, prioritise tasks, and collaborate effectively across teams
  • Certifications such as CISSP or SANS (e.g., GCIH, GCIA) are advantageous
Job Responsibility
Job Responsibility
  • Design, develop, and optimise SIEM detection content across existing and new platforms
  • Lead and contribute to SIEM content engineering initiatives, applying SDLC and Agile methodologies
  • Continuously refine detection rules and logic to improve SOC efficiency and effectiveness
  • Develop and integrate threat response workflows and playbooks
  • Conduct threat analysis to design behavioural and indicator-based detection use cases
  • Collaborate with log source owners to translate business and technical requirements into actionable SIEM content
  • Deliver cyber security reports and advisories to key stakeholders
  • Perform post-incident analysis and drive improvements through actionable insights
  • Support EDR/XDR detection engineering and tuning activities
  • Create and maintain technical documentation, workflows, and operational playbooks
What we offer
What we offer
  • Opportunity to work at the core of global cyber defence operations
  • Exposure to advanced SIEM, EDR, and XDR technologies and large-scale security environments
  • Collaboration with global cyber security experts and stakeholders
  • Continuous learning through evolving threat landscapes and modern security frameworks
  • Opportunity to contribute to meaningful risk reduction initiatives across Vodafone
Read More
Arrow Right

Information Security Operations Specialist - Incident Response

We are looking for an experienced security specialist to strengthen incident res...
Location
Location
United States , Enfield
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Cybersecurity, Information Technology, or a closely related discipline
  • At least 3-5 years of experience in security operations, cyber incident response, or a comparable information security setting
  • Hands-on background with Microsoft Purview Insider Risk Management and data classification or sensitivity labeling tools
  • Experience creating incident response playbooks and facilitating tabletop exercises for operational readiness
  • Ability to prepare security metrics, reporting packages, and program-level status updates for stakeholders
  • Familiarity with partnering across legal and HR functions on insider risk investigations or related case management
  • Working knowledge of common compliance and governance frameworks relevant to cybersecurity and data protection
Job Responsibility
Job Responsibility
  • Lead the investigation and coordination of security incidents, ensuring timely containment, analysis, and resolution of potential threats
  • Develop, refine, and maintain incident response procedures while guiding response exercises to improve organizational preparedness
  • Administer and support insider risk and data protection capabilities, including monitoring policies, classifications, and sensitivity controls
  • Produce meaningful security metrics and operational reports that help stakeholders track trends, risks, and program effectiveness
  • Work closely with legal and human resources partners on insider risk matters that require careful handling and documented escalation
  • Align daily security operations with applicable regulatory and compliance expectations to support governance and audit readiness
  • Evaluate security events and file-related risks to identify patterns, recommend improvements, and strengthen protective controls
What we offer
What we offer
  • Medical, vision, dental, and life and disability insurance
  • 401(k) plan
  • Fulltime
Read More
Arrow Right

Specialist, Cyber Threat Intelligence

The Specialist, Cyber Threat Intelligence is responsible for proactively identif...
Location
Location
Canada , Toronto
Salary
Salary:
Not provided
aircanada.com Logo
Air Canada
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A relevant University degree/technical certification, and/or relevant experience commensurate to the role
  • 5+ years of hands-on professional experience in Cyber Threat Intelligence and Threat Hunting within large enterprise or critical infrastructure environments
  • Deep, applied understanding of adversary tradecraft, including intrusion kill chains, MITRE ATT&CK, Diamond Model, malware families, exploitation techniques, persistence mechanisms, and threats targeting aviation and critical infrastructure sectors
  • Demonstrated experience conducting intelligence-led and hypothesis-driven threat hunts
  • Strong hands-on experience with threat intelligence platforms (TIPs), including IOC ingestion, enrichment, scoring, aging, and operational deployment
  • Proven ability to perform malware and campaign analysis, correlating samples, infrastructure, C2 patterns, payload behavior, delivery mechanisms, and underground chatter into cohesive adversary assessments
  • Experience with dark web monitoring, closed forums, leak sites
  • Advanced log analysis and data correlation skills to identify low-signal, stealthy, or novel adversary activity
  • Hands-on experience developing automation pipelines, scripts, or tooling (Python, PowerShell, APIs, SOAR, etc.) to support intelligence collection, normalization, enrichment, and dissemination
  • Experience with query languages and analytics (KQL, SPL, SQL, etc.) to support threat hunting, detections, and investigations
Job Responsibility
Job Responsibility
  • Collect, analyze, validate, and contextualize cyber threat intelligence from multiple sources including OSINT, dark web forums, commercial feeds, ISACs, industry partners, and internal telemetry to identify emerging threats, adversary TTPs, and sector-specific risks
  • Drive and continuously mature the strategy, governance, and operational execution of the Cyber Threat Intelligence (CTI) program, establishing a formal intelligence lifecycle that ensures actionable intelligence is effectively collected, enriched, analyzed, disseminated, and operationalized within security functions
  • Track, profile, and conduct deep analysis of threat actors targeting the organization’s industry, technology stack, and supply chain, including long-term campaign tracking, infrastructure reuse, malware evolution, and adversary behavior patterns
  • Conduct intelligence-led and hypothesis-driven threat hunting across enterprise systems to identify stealthy, advanced, or previously undetected adversary activity
  • Support and participate in incident response, forensic analysis, and post-incident investigations, providing adversary attribution assessments, likely next-step analysis, and intelligence-based scope expansion
  • Serve as a bridge between fraud prevention, SOC, and intelligence teams to ensure comprehensive coverage of threats. Facilitate information sharing and collaboration to strengthen the organization’s overall security posture
  • Create detailed technical reports, threat advisories, and early warning alerts on emerging threats and incidents for technical and non-technical stakeholders
  • Fulltime
Read More
Arrow Right

Grc Specialist – Cyber Resilience

Are you passionate about governance, risk, and compliance in the field of cybers...
Location
Location
Belgium , Brussels
Salary
Salary:
Not provided
apollo-solutions.com Logo
Apollo Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3–7+ years of experience in GRC, cybersecurity governance, or ICT risk management
  • Strong knowledge of cyber resilience principles and control frameworks (ISO 27001, NIST, COBIT, etc.)
  • Experience with regulatory environments (e.g., financial services, critical infrastructure, or public sector) is a plus
  • Understanding of operational resilience, business continuity, and incident response governance
  • Strong analytical, documentation, and stakeholder management skills
  • Fluency in English (French or Dutch is an asset)
Job Responsibility
Job Responsibility
  • Conduct cyber resilience and GRC maturity assessments
  • Develop and implement governance frameworks aligned with industry standards and regulatory requirements
  • Perform enterprise and ICT risk assessments
  • Design and maintain policies, procedures, and control documentation
  • Support business continuity, incident management, and resilience testing initiatives
  • Assess and manage third-party risk and supply chain resilience
  • Provide strategic advisory support to executive leadership and boards
  • Monitor evolving cybersecurity and resilience-related regulatory developments
What we offer
What we offer
  • Competitive salary and benefits package
  • Flexible hybrid working model in Brussels
  • Ongoing professional development and certification support
Read More
Arrow Right

Information Security Operations Specialist Advisor - Cybersecurity Delivery Projects

The Information Security Operations Specialist Advisor will oversee financial op...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 7+ years of experience in Commercial Operations, Finance Operations, or a similar role, with proven experience in P&L management and financial tracking
  • A Bachelor's degree in Finance, Accounting, Business Administration, or a related field (MBA or a relevant professional certification is a plus)
  • Strong analytical and financial modeling skills, with expertise in budgeting, forecasting, variance analysis, and interpreting data to drive actionable insights
  • Familiarity with project management software, CRM systems (e.g., Salesforce), time tracking tools, and financial/ERP systems
  • An understanding of cybersecurity delivery operations, principles, and frameworks (e.g., NIST, ISO 27001) is desirable
  • Excellent leadership and communication skills, with the ability to influence and manage cross-functional teams
  • Strong problem-solving abilities and a data-driven mindset
  • High attention to detail and strong organizational skills
  • Ability to work in a fast-paced, dynamic environment and manage multiple priorities effectively
Job Responsibility
Job Responsibility
  • Drive and manage the profit and loss (P&L) for the cyber delivery operations portfolio, performing financial analysis and ensuring alignment with business goals
  • Oversee the end-to-end billing process, including resolving billing issues and ensuring accuracy in client invoices
  • Implement and manage robust time-tracking mechanisms for resources, ensuring accurate allocation of effort against projects and tasks
  • Develop and manage Work Breakdown Structures (WBS) and related project/cost codes to effectively track project progress, costs, and deliverables
  • Identify, assess, and mitigate operational and financial risks across all delivery projects, implementing effective risk management strategies
  • Generate regular, detailed reports on project performance, financial metrics (KPIs), budget variances, and operational efficiency for senior management and stakeholders
  • Continuously identify operational inefficiencies and implement process improvements and re-engineering to increase performance, automation, and standardization within the delivery operations
  • Serve as the primary interface between the delivery, finance, sales, and management teams, ensuring clear communication and alignment on project status and financial performance
  • Ensure all commercial operations adhere to internal policies, industry regulations (e.g., specific cybersecurity frameworks like NIST or ISO), and compliance standards
Read More
Arrow Right