RFQ No: LH-07370 EL1 Cyber Security last date to apply Tuesday, 11 August 2026. — RFQ DOWNLOAD
Job details:
This position is for a dedicated Security Engineer within the IT Security Team is a hands-on role pivotal to uplifting our security operations maturity.
The Security Engineer will be a skilled cybersecurity professional responsible for uplifting Microsoft Sentinel, security tooling and security operations processes.
The successful candidate will thrive in a small team environment where they can shape strategy initiatives and be hands on in implementing outcomes. As such, they have experience managing end-to-end cyber security operations and will have a strong understanding of all components of cyber security management, particularly in the government context.
Our ideal candidate will be an expert collaborator and will see themselves as mentors to junior team members, partners to the business, project teams and other areas of IT, as well as with ACMA and cross-government counterparts to deliver effective outcomes.
Key duties and responsibilities:
- Configure and troubleshoot log source integrations into the SIEM.
- Develop alerting rules and threat response playbooks for systems integrating with Microsoft Sentinel.
- Build and refine KQL queries to support investigations, threat hunting, and traffic analysis.
- Administer, and maintain cybersecurity tooling including SIEM, WAF, DLP, vulnerability scanners, Proxy, Application Whitelisting, including integration of new data sources and automation of threat responses.
- Ensure alignment of our security practises to standard government frameworks such as ISM, PSFP, and E8.
- Foster collaboration and knowledge sharing through proactive mentorship of junior colleagues, promoting a culture of continuous improvement.
