Asd4, 5, 6 - Malware, Intrusion and Threat Hunter

3 weeks ago


Canberra, Australia Australian Signals Directorate Full time

**The Role**

Technical Threats and Visibility Branch is seeking Malware, Intrusion and Threat Hunter Analysts to join teams responsible for analysing network traffic and host activity to identify anomalous behaviour, and reverse engineering malware.

The teams develop and mature detection capabilities and analytical tradecraft to further the ACSC’s understanding of adversaries targeting Australia. We want you to join our team to assist the ACSC to defend against advanced threats.

These are technical roles, requiring an aptitude for complex problem solving and a curiosity for understanding the functionality, origin and potential impacts of malware. We want you to reverse-engineer malware, and develop analytic automation and tools to defend Australian networks against malicious threats.

While formal experience in incident management, malware or intrusion analysis is desirable, the ACSC is also interested in applicants looking at getting into this field with demonstrable experience in software development, programming, mathematics, or computer sciences, and are interested in solving puzzles.

Further enquiries about the position can be made to the Contact Officer on 02 5130 0214

**About the Team**

The ACSC invites you to take the next step in your career.

We are looking for individuals with a passion for understanding, discovering and countering cyber threats impacting Australia and its interests.

The Technical Threats and Visibility Branch in the Australian Cyber Security Centre (ACSC) detects adversaries targeting or exploiting Australian networks, and analysing the technical tools and tradecraft they employ. The ACSC uses this deep understanding to defend and disrupt malicious threats from cyber threat actors.

We have vacancies in specialist teams who:

- Reverse engineer malware and develop their own sophisticated tools to do so
- Hunt for cyber intrusions on priority Australian networks, using cutting-edge tools and detections
- Support the systems and processes required to collect, transform, enrich and distribute Cyber Threat Intelligence, including with Australian industry.

These teams are located across Brisbane, Canberra & Melbourne.

Further enquiries about the position can be made to the Contact Officer on 02 5130 0214.

We are looking for individuals who can demonstrate skills in one or more of the following areas:
**Intrusion and Threat Hunter Analysts**
- Understanding and experience with network traffic and protocol analysis; and ability to analyse network traffic and identify anomalous behaviour.
- Understanding of operating systems principles (such as Windows and Linux) and the underlying features such as file systems, memory, processes and threads, registry and scripting engines.
- Understanding and experience with extraction and analysis of host information to determine entity behaviour such as system or user interactions, malware infection and unauthorised behaviours.
- Understanding and experience in analysing large volumes of data to draw out useful information.
- The ability to communicate technical knowledge in a concise manner to a non-technical audience.
- An understanding of malware, how to identify, triage and perform dynamic analysis.
- An understanding of how an adversary would manipulate operating system features for malicious purposes.
- An understanding of obfuscation techniques, how an adversary would disguise data, behaviour or activity.

**Malware Analysis**
- Familiarity with Microsoft OS internals and APIs.
- Experience with assembly (in particular x86 and x64 instruction sets) or low level programming languages such as C.
- Experience in high level programming and scripting languages (Python preferred).
- Proficiency with reverse engineering tools (dissassemblers, debuggers, decompilers and Yara).
- Understanding of malware reverse engineering processes including unpacking, deobfuscation and code reconstruction.
- Ability to develop and enhance automation tools to assist the malware analysis process.
- Ability to develop and modify signatures to detect and hunt for malware at scale.

The following skills are desirable but not essential for the role:

- Experience and knowledge of malicious adversary lifecycles: MITRE ATT&CK framework, cyber kill chain etc.
- Experience with host-based forensic analysis and the ability to determine malicious behaviours on a system.
- Experience with information assurance practices: cyber hygiene and how to defend networks against attacks.
- Experience in any of these fields: intrusion detection, threat hunting, incident response, malware analysis, penetration testing.
- Experience in platforms other than Microsoft Windows (e.g Linux, Android, iOS, MacOS)
- Experience in instruction sets other than listed above e.g ARM, MIPS.
- Understanding and experience with DevOps processes and environment.

It is highly desirable that you have computer science related tertiary qualifications.

**At the ASD 4 level**, you must demonstrate ex


  • Penetration Tester

    2 weeks ago


    Canberra, ACT, Australia Malware Security Full time

    Company: Malware Security (MalSec)Location: ACT, in-person onlyEstimated Start Date: 6 November 2023Contract Duration:11 Months with possible extensionDo you want to play a pivotal role in protecting Australia's critical infrastructure and keeping Australians safe from cyber threats?Malware Security is assisting an Australian Federal Government agency in...


  • Canberra, Australia Australian Signals Directorate (ASD) Full time

    $74,796 - $102,719 ( plus super) - Canberra - ACT **The Role** The Integrated Cyber Effects team has several vacancies for Signals Intelligence Analysts to drive and carry out the development, implementation and execution of complex analysis in support of ASD’s mission. We are currently recruiting for these positions at ASD 4, 5 and 6 classification...


  • Canberra, ACT, Australia Apple Full time

    Canberra, Australian Capital Territory, Australia Summary Posted: May 2, 2024 Role Number: Why Apple?Billions of people globally depend on the security of Apple's products.Our team protects our users from malware and improves the security & privacy of our operating systems.This work is complex, challenging, and directly impactful to your friends, family, and...


  • Canberra, Australia Malware Security Full time

    Company: Malware Security (MalSec) Location: ACT, VIC, WA Estimated Start Date: 01 July 2024 Employment type: Contract (12 Months with possible extension) The Australian Signal's Directorate's (ASD) Australian Cyber Security Centre (ACSC) is seeking Control System Cyber Security Specialists to join their Critical Infrastructure Operational Technology...


  • Canberra, Australia Malware Security Full time

    Job Title: IT Security Specialist - Cyber Analyst Company: Malware Security (MalSec) Location: ACT (flexible work arrangements, may require occasional travel to ACT) Estimated Start Date: As soon as possible Employment type: Full-time Contract type: 12 Months with possible extension Do you want to play a central role in keeping Australia's critical...


  • Canberra, ACT, Australia CyberCX Full time

    Based on-site in Canberra (not remote) Must be a United States citizen Deliver a patented new approach to cybersecurityAbout the companyCyberCX is joining forces with one of the most exciting cyber security companies from the United States to deliver projects for the Australian market.You will be trained to deliver a patented, groundbreaking new approach to...


  • Canberra, Australia Australian Signals Directorate (ASD) Full time

    $71,919 - $84,537 ( plus super) - Canberra - ACT **The Role** Within the Administration function an ASD4 Executive Assistant is accountable under direction to perform and achieve moderately complex administrative support work within an integrated workforce. They are accountable to have a good understanding of and compliance to relevant legislative...

  • Asd 4, 5

    2 weeks ago


    Canberra, ACT, Australia Department of Social Services (DSS) of the Australian Government Full time

    Salary- $74,796 to $102,719Opportunity Type Full-TimeOpportunity Status Ongoing;Non-OngoingOpportunity Employment Type Specified TermAPS Classification APS Level 4, APS Level 5, APS Level 6Closing Date 09/06/2023Job Category Communication, Customer service, Call centre, Info/Comm Tech (ICT), IntelligenceOffice arrangement On SitePosted: 29/05/2023Australian...

  • Cyber Threat Analyst

    2 weeks ago


    Canberra, ACT, Australia CyberCX Full time

    Must be based in Canberra (not remote) Must be a United States citizenAbout the companyCyberCX is joining forces with one of the most exciting cyber security companies from the United States to deliver projects for the Australian market.You will be trained to deliver a patented, groundbreaking new approach to cybersecurity that identifies, stops, and...


  • Canberra, Australia Australian Signals Directorate (ASD) Full time

    $77,787.84-$106,827.76 (plus 15.4% superannuation) - Canberra - ACT **The Role** ASD is seeking applicants at the ASD 4, 5, and 6 levels: **ASD 4/5 Assistant Northeast Asia Strategy and Partnerships Officers** undertake a combination of the following tasks: Demonstrate knowledge of legislative, policy and security frameworks. - Ability to ingest and...


  • Canberra, Australia Secureworks Full time

    We enjoy competitive compensation and benefits packages, and reward and recognize our employees for exceptional results. A constant focus on continued learning and growth keeps our team members engaged and excited about “what’s next.” We offer flexible work options when available, and emphasize the importance of work-life balance. We know that when our...


  • Canberra, Australia Secureworks Full time

    We enjoy competitive compensation and benefits packages, and reward and recognize our employees for exceptional results. A constant focus on continued learning and growth keeps our team members engaged and excited about “what’s next.” We offer flexible work options when available, and emphasize the importance of work-life balance. We know that when our...


  • Canberra, ACT, Australia Australian Signals Directorate Full time

    The RoleOur section is a part of ASD's MD Division, Data Foundations Branch. We are responsible for the delivery of end-user products and services for intelligence analysts to achieve mission objectives. Every day provides us with an opportunity to use our skills and experience to solve complex problems and to transform the way that ASD does business. You...


  • Canberra, Australia Microsoft Full time

    Overview The mission of Microsoft Security Response Center (MSRC) is to enable Microsoft to build the most trusted devices and services, while keeping our company safe and our data protected. ​As part of the Microsoft Security organization, and a steward of Microsoft and our customer’s data, a core function of MSRC is ensuring the security of every...


  • Canberra, Australia Australian Signals Directorate Full time

    **The Role** - ASD4 Administration Officer_ As an ASD4 Administration Officer you will play a vital role in your team’s delivery of operational and business outcomes for ASD. ASD4’s are accountable for organising their own workload, making decisions within defined parameters relating to area of responsibility and seeking guidance when required. You...


  • Canberra, ACT, Australia Secureworks Full time

    We enjoy competitive compensation and benefits packages, and reward and recognize our employees for exceptional results. A constant focus on continued learning and growth keeps our team members engaged and excited about "what's next." We offer flexible work options when available, and emphasize the importance of work-life balance. We know that when our...


  • Canberra, ACT, Australia Australian Signals Directorate Full time

    The Role ASD4 Administration Officer_As an ASD4 Administration Officer you will play a vital role in your team's delivery of operational and business outcomes for ASD.ASD4's are accountable for organising their own workload, making decisions within defined parameters relating to area of responsibility and seeking guidance when required. You will provide...


  • Canberra, ACT, Australia Department of Defence of Australia Full time

    As an ASD4, ASD5 or ASD6 Network Engineer, you will be responsible for the design, build and support of the Organisation's IP based Wide Area Networks, Local Area Networks, firewalls and supporting ASD systems in a period of technological change. Administer and maintain specific security procedures as required by ASD and organisation policy to maintain...


  • Canberra, ACT, Australia Defense Threat Reduction Agency Full time

    Summary This position is part of the Department of Defense . The incumbent will serve as the DTRA Australia Integrator, who plans for and performs extensive analysis and reviews of issues that are of interest to DTRA, and other U.S. agencies and organizations.Responsibilities As a SUPERVISORY AUSTRALIA INTEGRATOR you will be responsible for the following...


  • Canberra, ACT, Australia Defense Threat Reduction Agency Full time

    Summary This position is part of the Department of Defense . The incumbent will serve as the DTRA Australia Integrator, who plans for and performs extensive analysis and reviews of issues that are of interest to DTRA, and other U.S. agencies and organizations.Responsibilities As a SUPERVISORY AUSTRALIA INTEGRATOR you will be responsible for the following...