CrawlJobs Logo

Lead Cyber Security Analyst

Australia, Canberra · Job Posted March 21, 2026
Apply Position
Job Link Share

Job Description

FinXL is seeking an experienced Lead Cyber Security Analyst to play a key role in incident response, threat hunting, and the operationalisation of our client's security stack.

Job Responsibility

  • Assist with onboarding new systems and creating detection logic
  • Lead remediation efforts and undertake proactive threat hunt activities
  • Develop automated playbooks and collaborate with Threat Intelligence teams to evolve our countermeasures
  • Maintain and enhance the health of our core Cyber Security systems

Requirements

  • Must be Australian Citizen with minimum of NV1 Clearance
  • Experience as a Cyber Security Analyst
  • Proven track record in designing, implementing, and testing use cases for malicious activity detection
  • Hands-on experience in Incident Response and handling security events
  • Strong communication skills with the ability to maintain technical documentation
  • Familiarity with leveraging threat intelligence feeds

Nice to have

  • Experience with Microsoft Defender XDR and Defender for Cloud
  • Proficiency in Splunk SOAR (Playbook development) and Splunk RBA
  • Relevant certifications (CISSP, GCIH, GCIA) or Microsoft/Splunk technical qualifications

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Lead Cyber Security Analyst

8 matching positions

Lead Cyber Security Analyst

Our client has a long term contract opportunity for a highly accomplished Lead C...
Location
Location
Australia , Canberra
Salary
Salary:
Not provided
https://www.randstad.com Logo
Randstad
Expiration Date
June 27, 2026
Flip Icon
Requirements
Requirements
  • Demonstrated experience in toolsets including Azure and Sentinel
  • Demonstrated ability to effectively document findings and implement policies to meet organisational security requirements
  • Demonstrated ability in providing considered security advice to stakeholders, team members and Executive
  • Experience with ingesting logs, developing uses cases and tuning logs
  • Experience working within a Cyber team and taking direction
  • 5 years experience
  • PSPF, ISM, Essential Eight
  • Bachelor Degree
  • Must have NV1 clearance
Job Responsibility
Job Responsibility
  • Design, development, and implementation of log solutions for SIEM (log ingest, log storage, log querying)
  • Contribute to and develop comprehensive documentation around the technical solution and implementation of SIEM and logging systems
  • Identify capability gaps in alerting and detection within the Cyber space
  • Build alerting and detection capability across SIEM/SOAR toolsets
  • Identify gaps in security event logging
  • Fulltime
!
Read More
Arrow Right

Lead Cyber Security Analyst

Lead Cyber Security Analyst | Asset Manager | £140k + Bonus. You will take end-t...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience as a Cyber Lead in a small-to-mid sized organisation or Senior/Lead engineer from a cyber security vendor or MSP
  • Azure cloud experience is essential
  • Familiarity with Zero Trust networking concepts (Azure-based)
  • Broad knowledge of modern InfoSec tooling and practices
  • Exposure to AI and its impact on cyber security is a strong plus
Job Responsibility
Job Responsibility
  • Owning and evolving security policies, standards and procedures
  • Managing and challenging third party security vendors and MSPs
  • Leading audit and assurance activities
  • Oversight of DLP, penetration testing, vulnerability management, and incident response
  • Advising the business on emerging risks, including AI-driven security threats
What we offer
What we offer
  • Bonus
  • Fulltime
Read More
Arrow Right

Lead Cyber Security Analyst

e2e-assure is recruiting a Lead Cyber Security Analyst to work in our lively Oxf...
Location
Location
United Kingdom , Oxfordshire
Salary
Salary:
Not provided
e2e-assure.com Logo
e2e-assure
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Prior experience working in a cyber security-focused role, ideally SOC or Incident Response experience
  • Significant experience with log monitoring tools and SIEM platforms such as Splunk or Microsoft Sentinel
  • Experience with leading major incident investigations
  • Ability to train, coach, and mentor technical teams to help them achieve their potential
  • Advanced knowledge of cybersecurity and insight into recent and trends
  • Familiar with host and network based forensics and concepts
  • Experience of vulnerability management process
  • Experience with Log analysis / Log forensics (including PCAP analysis)
  • Endpoint artifact analysis (investigation packages etc)
  • Relevant computing or cyber university degree or Security certifications such as CompTIA Advanced Security Practitioner (CASP+), GIAC Certified Forensic Analyst, GIAC Cyber Threat Intelligence (GCTI), GIAC Open Source Intelligence (GOSI), GIAC Defending Advanced Threats (GDAT), GIAC Security Expert (GSE)
Job Responsibility
Job Responsibility
  • Improving the quality of detections and response/analysis routines and playbooks
  • Improving the quality of our threat intelligence platform, threat indicators and assist in optimisation of threat data
  • Supporting the SOC with wider cyber security expertise – advising, mentoring and coaching. Focusing on improving SOC efficiency by working across the business to bring down alert volume and collaborate on improvements, train SOC staff on investigations and rule tuning
  • Supporting the SOC team to achieve agreed SLAs and deliver high quality alerts, tickets, and incidents
  • Collating incident statistics and driving quality improvements
  • Lead and train the SOC on threat hunting, using this to drive improvements to detection capability
  • Lead the SOC to produce threat briefs for significant cyber events where customers need to take action
  • Proactively share knowledge within the team and the wider company, through training and mentoring sessions
  • Escalation point for the SOC for technical analysis
  • Incident Management Lead for the SOC
What we offer
What we offer
  • Contributory pension scheme
  • 25 days annual leave + Bank holidays (with additional for continued service)
  • private health insurance
  • enhanced maternity/ paternity/ sick pay
  • Cycle to Work scheme
  • Home and Tech purchase scheme
  • Employee assistance program
  • Fulltime
Read More
Arrow Right

Lead Cyber Security Analyst

Lead Cyber Security Analyst/InfoSec Officer | Asset Manager | £200k TC. I’m work...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience as a Cyber Lead in a small-to-mid sized organisation or Senior/Lead engineer from a cyber security vendor or MSP
  • Azure cloud experience is essential
  • Familiarity with Zero Trust networking concepts (Azure-based)
  • Broad knowledge of modern InfoSec tooling and practices
  • Exposure to AI and its impact on cyber security is a strong plus
Job Responsibility
Job Responsibility
  • Owning and evolving security policies, standards and procedures
  • Managing and challenging third party security vendors and MSPs
  • Leading audit and assurance activities
  • Oversight of DLP, penetration testing, vulnerability management, and incident response
  • Advising the business on emerging risks, including AI-driven security threats
  • Fulltime
Read More
Arrow Right

Senior Cyber Security Analyst – Incident Response & SOC

We don’t hang up the leash until the job is done. Senior Cyber Security Analyst ...
Location
Location
Salary
Salary:
Not provided
zeektek.com Logo
Zeektek
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Email security fundamentals (SPF, DKIM, DMARC)
  • Phishing and malware investigations
  • DFIR / forensic investigation skills
  • Deep incident response experience
  • Threat analysis across multiple log sources
  • Hands-on tooling knowledge (EDR, SIEM, malware analysis, endpoint/network forensics)
  • Strong troubleshooting and scenario-based thinking
  • Strong written and verbal communication skills
  • Working knowledge of Data Loss Prevention concepts/products, Data Encryption concepts, and endpoint management
  • Technical knowledge of common network protocols and design patterns including TCP/IP, HTTPS, FTP, SFTP, SSH, RDP, CIFS/SMB, NFS
Job Responsibility
Job Responsibility
  • Leading investigations and serving as a subject matter expert while correlating data across multiple log sources and systems
  • Continually improving cyber security procedures and documentation to enhance the security posture of the organization
  • Communicating with users, vendors, and other IT personnel on security-related issues, providing expert guidance and support
  • Staying up to date on evolving cyber threats, identifying their impact, and detecting them in our environment
  • Managing infrastructure security systems such as HIDS/NIDS, SIEM, NGAV, EDR, UBA, WAF, DLP, and vulnerability management tools to meet regulatory requirements
  • Collaborating with business groups to establish and maintain strong working relationships
What we offer
What we offer
  • Weekly Direct Deposit
  • 401K Matching
  • Competitive medical, dental and vision insurance
  • Consistent communication throughout your project
  • ZeekTek Referral Program
Read More
Arrow Right

SOC Lead - Cyber Security Operations

We are seeking an experienced SOC Lead to head Vodafone’s Security Operations Ce...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years in security operations, including at least 4+ years in a SOC leadership or senior incident response role
  • Proven leader of 24x7 SOC teams, with a strong track record of improving MTTT/MTTR, triage quality, and operational performance
  • Technical authority in incident response, capable of leading complex investigations and making sound decisions under pressure
  • Highly experienced with SIEM platforms such as Splunk, Microsoft Sentinel, Google SecOps, ArcSight, or QRadar, and familiar with EDR/NDR technologies
  • Skilled in driving SOC automation, SOAR, and AI-enabled capabilities, with a clear understanding of governance and responsible use
  • Knowledgeable across network, endpoint, and cloud security, with a strong grasp of attacker techniques and the MITRE ATT&CK framework
  • Analytical decision-maker who balances risk, speed, and business impact in ambiguous situations
  • Passionate about developing people and building sustainable SOC capability for the future
  • Educated to degree level in Cyber Security, Computer Science, Information Technology, or a related discipline (or equivalent practical experience)
  • Holder of relevant certifications such as GIAC, CISSP, or vendor-specific SOC certifications
Job Responsibility
Job Responsibility
  • Lead and manage 24x7 SOC operations, ensuring consistent, high-quality alert monitoring, triage, and incident response across all markets
  • Own and drive SOC service performance against key KPIs including MTTT, MTTR, triage quality, and SLA adherence, delivering measurable improvements in detection quality, response speed, and efficiency
  • Oversee the full alert lifecycle, ensuring accurate investigation, containment, escalation, and high-quality incident reporting
  • Continuously enhance detection capabilities by improving SIEM use cases, alert logic, and playbooks, reducing false positives and increasing coverage across priority threat scenarios
  • Drive the adoption of automation, SOAR, and AI-assisted capabilities to improve speed, consistency, and scalability, with appropriate governance and human oversight
  • Lead SOC transformation initiatives focused on reducing alert fatigue, streamlining workflows, and improving analyst productivity
  • Build, coach, and develop a high-performing SOC team through structured capability development, performance management, and knowledge sharing
  • Act as the final escalation point for complex or high-risk incidents, applying expert judgement to validate and close cases
  • Deliver clear, data-driven SOC performance and incident reporting to senior leadership
  • Foster a culture of continuous improvement through post-incident reviews, detection retrospectives, and operational learning
What we offer
What we offer
  • The opportunity to lead a globally impactful SOC function within a recognised Cyber Defence Centre of Excellence
  • Exposure to large-scale, complex cyber defence operations across multiple international markets
  • The chance to shape and influence the future of SOC operations through automation and AI-driven transformation
  • A collaborative, inclusive environment that supports professional growth and continuous learning
  • The ability to work with advanced security technologies and experienced cyber defence professionals
  • Fulltime
Read More
Arrow Right

Information Security Lead Analyst

Location
Location
Hungary , Budapest
Salary
Salary:
17157800.00 - 28767800.00 HUF / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years of relevant experience
  • Additional technical certifications are preferred
  • Demonstrated ability to research and apply current information regarding the IS field
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Bachelor's degree/University degree or equivalent experience
  • Master's degree preferred
Job Responsibility
Job Responsibility
  • Develop corrective action language for Information Security (IS) gaps and ensure risk closure meets Citi requirements or industry best practices
  • Facilitate the implementation of approved IS tools and identify/recommend new or improved security solutions or emerging technologies
  • Mitigate risk by analyzing the root cause of issues, impacts to business, and required corrective actions and develop security solutions
  • Ensure IS compliance and seek opportunities to enhance the efficiency of IS policies and procedures
  • Identify significant IS threats and vulnerabilities, and define appropriate controls for discovered threats, documenting the business response
  • Disseminate changes to IS regulations and standards to Business and Program owners
  • Provide Information Security advice and counsel as needed
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Senior Cyber Security Analyst

We are supporting a leading international organisation in the search for a Senio...
Location
Location
United Kingdom , London
Salary
Salary:
600.00 - 601.00 GBP / Day
welovesalt.com Logo
Salt
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8-15+ years in Cyber Security
  • Strong focus on Application Security and DevSecOps
  • Experience working closely with engineering and platform teams
  • Strong stakeholder engagement and communication skills
  • Experience within regulated or enterprise environments preferred
  • Financial services, government, or large-scale enterprise experience highly desirable
  • Application Security & Secure SDLC (OWASP Top 10 / ASVS, Secure coding practices, Threat modelling (STRIDE / MITRE ATT&CK), Security architecture and design reviews, Vulnerability management and remediation, Secure Software Development Lifecycle (SSDLC))
  • DevSecOps & CI/CD Security (Integration of security tooling into CI/CD pipelines, Experience with GitHub, GitLab, Jenkins, Azure DevOps, Hands-on experience with SAST, DAST, SCA, Secrets scanning, Container security)
  • Cloud & Platform Security (AWS and/or Azure security, Kubernetes / Docker / container security, API security, IAM / Identity Federation / SSO, WAF and cloud-native security tooling, Infrastructure-as-Code security (Terraform / Checkov / tfsec))
  • Security Tooling (SonarQube, Checkmarx, Veracode, Fortify, OWASP ZAP, Burp Suite, Snyk, Aqua, Wiz, Prisma Cloud, Defender for Cloud, Sentinel)
Job Responsibility
Job Responsibility
  • Perform security risk assessments, secure design reviews, and threat modelling exercises for applications, APIs, and cloud platforms
  • Define and implement secure-by-design principles across software engineering and DevOps teams
  • Embed security controls into CI/CD pipelines using modern DevSecOps practices
  • Lead and support SAST, DAST, SCA, and container security integration activities
  • Conduct application and infrastructure security assessments aligned to OWASP, NIST, and industry best practices
  • Work closely with development teams to triage vulnerabilities and support remediation activities
  • Define security requirements for modern application architectures including APIs, Microservices, Kubernetes / Containers, Cloud-native platforms
  • Support secure architecture reviews across AWS and/or Azure environments
  • Collaborate with stakeholders across Security, Engineering, DevOps, Risk, and Architecture teams
  • Support vulnerability management, security governance, and secure delivery processes
Read More
Arrow Right