Security Specialist - Threat Detection & Response
Melbourne Support Centre
⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️
Australia Post
Australia Post provides reliable and affordable postal, retail, financial and travel services.General information
Press space or enter keys to toggle section visibility
Name Security Specialist - Threat Detection & Response Site / Location Melbourne Support Centre Ref # 12372643 Entity Australia Post Opening Date 21-Jul-2025 Suburb Richmond Work Type Permanent Full TimeDescription & Requirements
Press space or enter keys to toggle section visibility
Help us deliver like never before
We’re looking for a Security Specialist - Threat Detection & Response to join our diverse, talented and innovative digital technology team who together are helping our customers and communities build a better future. Together, we design, build and maintain products, services and experiences that Australian's love and trust, while delivering a sustainable future for Australia Post, and you could be part of that.
We're empowered to deliver for our teams and to delight our customers. We provide an inclusive and supportive environment that nurtures talented people, trusts our teams to deliver their best, and leverages modern work practices and technologies. It's an unexpectedly dynamic and collaborative culture that feels more like a start-up than a 213-year old icon.
What you’ll deliver with us
The Threat Detection & Response Security Specialist sits within our Cyber Defence team that work to protect Australia Post from cyber-attacks. Specifically, this role sits within the Threat Detection and Response team, within Cyber Defence. As part of this team, you will monitor our systems for attacks and intrusions and respond accordingly. You will conduct regular threat hunting activities as well as develop detection logic to identify attacker techniques, tactics, and procedures. A key part of this position is performing network and systems forensics, as well as malware and indicator analysis
Our security specialists participate in cyber incident response bridges and provide updates to senior stakeholders, Including General Managers, across the business. There is an expectaiton to prepare and present cyber incident updates and summaries to senior stakeholders, including General Managers across the enterprise. Externally you will liaise with vendors and contracted service providers to enhance cyber detection and response capabilities. Sharing and consuming threat intelligence with the external threat community, Industry peers, and government agencies such as the Australian Cyber Security Centre (ACSC) is part of the responsibilities when required.
You’ll also
- Identify and respond to security events across Australia Post Group.
- Perform investigations and analysis across a wide variety of events to determine whether they pose a threat to Australia Post.
- Participate in security incident detection and response activities including 24/7 on-call escalations.
- Work with teams across Australia Post to discover new detection capabilities and logging sources.
- Update cyber incident response plans and playbooks.
- Develop and enable security monitoring use cases for the detection of threats, anomalies, and security risks across the organisation.
- Assist in the architecture, design, evaluation, and implementation of new technologies across the organisation based on latest knowledge of the threat landscape.
About you
Ideally, we are looking for someone with excellent cloud skills who either has an interest in pivoting into cyber security or already has some experience working in cyber security. We are looking for a technical individual who is interested in developing and building SIEM. Part of this role includes building automations across identity, cloud and endpoints. You will be able to utilise your skills in cloud engineering, L2/3 SOC operations or incident response to solve complex investigations. We are interested in people who like to lead or contribute to the analysis of incidents and who can spearhead forensic investigations. If you can collaborate with remote team members and have delivery, remediation and incident response background then that is a bonus!
You’ll also need
- Experience detecting and responding to security events, vulnerabilties, and alerts in large complex environments
- A background in cloud engineering with experience or interest in cyber security is highly regarded
- Operational knowledge of EDR technologies, operating systems (Windows, Linux, UNIX), core technology services, common attack tools, and vulnerability detection/management tools
- Expertise with developing threat detection logic, threat hunting and forensically investigating complex data sets
- Understanding of cyber controls such as EDR (Endpoint Detection and Response), Firewall, Intrusion Systems, SIEM, Web and Email gateways is advantageous
- Exposure to malware analysis, scripting, cyber threat detection strategies and attack models
- Understanding of ISO, ISM (Information Security Manual), PSPF (Protective Security Policy Framework), PCI (Payment Card Industry) frameworks and Australian Privacy Principles
- Participate in a 24/7 operation and available to be on call periodically
If you do not hit 100% of these requirements, please apply anyway as we are looking to develop someone into this position and beyond!
How we’ll deliver for you
- Be part of a team protecting one of Australia’s most iconic brands.
- We’ve built our own SIEM, be part of that development!
- We deliver on our values of Trust, Inclusivity, Empowerment and Safety every day. They’re the TIES that bind our team together.
We’re delivering together
At Australia Post, we acknowledge the Traditional Custodians of the land on which we operate, live and gather as employees.
We believe our business should reflect the diverse communities we operate in and are proud to be an inclusive workplace for people from all walks of life. We encourage applications from people of all ages, genders and backgrounds including Aboriginal and Torres Strait Islander peoples, People with Disability, LGBTQIA+ and Refugees. We are one of the largest organisations in Australia to successfully achieve Disability Confident Recruiter status. We are committed to providing an inclusive and barrier-free recruitment process and workplace for those living with a disability and are committed to reviewing and removing bias in our processes to create a gender-equitable recruitment experience and workplace. If you have any questions about accessibility, please contact our Diversity & Inclusion team on inclusivecareers@auspost.com.au
See and hear what it's like to be part of our teams in digital tech:
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Cloud DART EDR Firewalls Forensics Incident response Linux Malware Monitoring Privacy Scripting SIEM SOC Threat detection Threat intelligence UNIX Windows
Perks/benefits: Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.