This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
FinXL is seeking an experienced Lead Cyber Security Engineer to design automated workflows, manage SIEM integrations, and strengthen The client's incident response capabilities.
Job Responsibility:
Developing and maintaining playbooks and automated workflows
Identifying patterns in logs/events to develop proactive countermeasures
Leading incident response, remediation, and threat hunting activities
Contributing to security uplift initiatives and emerging tech assessments
Requirements:
Proven experience building integrations between SIEM platforms and enterprise systems
Knowledge of log ingestion from hybrid environments (Azure and AWS)
Experience designing, implementing, and testing security automation playbooks
Strong technical documentation skills and a collaborative, team-first mindset
Must have be Australian Citizen with minimum of NV1 Clearance
Nice to have:
Experience with Splunk SOAR (Playbook development) and Splunk RBA
Familiarity with Nuix for eDiscovery or investigative processing
Relevant certifications: CISSP, GCIH, GCIA, or Microsoft/Splunk technical certs