This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Harrington Starr are currently hiring for a Security Engineer to work for a major global organisation. The role will be part of a small, but specialist APAC team based in Sydney, and also working with teams in EMEA and the US.
Job Responsibility:
Oversee daily security operations, proactively identifying threats, investigating alerts, and responding to incidents across cloud and on-prem environments
Strengthen Microsoft 365 and Entra ID security through Conditional Access, MFA, PIM, and Microsoft Defender tools, ensuring robust tenant configurations
Design and implement automation using Python and PowerShell to minimise manual processes and enhance detection and response
Leverage APIs (Graph API, REST, etc.) to integrate systems and optimise security workflows
Identify vulnerabilities, assess system configurations, and deliver practical, risk-based remediation strategies
Play an active role in incident response, from investigation through to containment and recovery
Partner with engineering, technology, and business stakeholders to drive a strong security-first culture
Requirements:
5+ years’ experience in information security engineering roles
Strong analytical skills with the ability to solve technical problems in fast-paced environments
Proficient in Windows and Linux, with knowledge of core security technologies (e.g., firewalls, endpoint protection, logging, vulnerability scanning, network security)
Scripting experience in PowerShell and/or Python
Understanding of identity management, authentication, and modern access control principles
Experience with security tools such as EDR, SIEM, SOAR, and CASB
Knowledge of securing on-prem (bare metal/container) and IaaS-based workloads
Familiarity with identity lifecycle management, RBAC, PAM, and privileged access controls
Understanding of vulnerability management tools (e.g., Nessus, Tenable, RunZero) and secure configuration standards