We are seeking a highly capable Cyber Security Engineer to support a mature Security Operations function within a large, globally distributed enterprise environment. This role plays a critical part in defensive cyber operations, combining hands-on incident response with automation, threat detection, and continuous improvement of security capabilities.
The successful candidate will apply advanced engineering skills to protect complex hybrid environments from malicious cyber activity while contributing to long-term operational uplift initiatives.
Key Responsibilities
As a Cyber Security Engineer, you will:
Contribute to security operations uplift initiatives and longer-term cyber capability roadmaps
Identify and implement automation opportunities to improve SOC efficiency, scalability, and consistency
Design, develop, and maintain security automation playbooks and workflows
Analyse security events, alerts, and logs to identify anomalous behaviour and emerging threats
Recommend and implement security enhancements and countermeasures
Perform incident response, containment, remediation, and post-incident analysis
Support Threat Hunting activities across enterprise environments
Maintain accurate technical documentation, operational procedures, and playbooks
Collaborate effectively within a team and actively share knowledge and lessons learned
Required Skills & Experience
Minimum 3 years’ experience working as a Cyber Security Engineer or equivalent role
Proven experience building and maintaining integrations between SIEM platforms and enterprise systems
Strong understanding of log ingestion and telemetry pipelines from hybrid environments, including:
Cloud platforms (e.g. Azure, AWS)
On‑prem and enterprise infrastructure
Hands-on experience designing, implementing, and testing security automation playbooks and workflows
Solid analytical skills for interpreting security data and identifying patterns of malicious or suspicious activity
Ability to work effectively within a team and contribute positively to a collaborative environment
Well-developed written communication skills, including experience maintaining technical and operational documentation
Administration or operational experience with eDiscovery or investigative data processing platforms
Experience developing security orchestration playbooks using industry-standard SOAR tools
Knowledge of risk-based alerting models within SIEM platforms
Relevant tertiary technical qualifications
Industry certifications such as:
CISSP
GCIH / GCIA
Cloud or SIEM platform certifications (e.g. Microsoft, Splunk)
If you’re interested in applying, please submit your application today. The role closes on 30/03/2026 before 05:00 pm, don’t miss out!
Feel free to reach out to me at teja.k@interpropeople.com or 0481 967 567 for a confidential chat about the role.