Principal Cyber Hunt and Incident Response

5 days ago


Sydney, Australia Reserve Bank of Australia Full time

Play an important part shaping the future of our iconic Australian institution- Hybrid work environment- Permanent position- Join a team focused on remaining at the forefront of technology

About the Role

As the principal, you’ll be responsible for the following:
- Mature the Reserve Bank of Australia’s Cyber Hunt and Incident Response program in a modern Cyber Defence Operations Centre environment- Produce and disseminate contextualised, relevant and timely strategic, operational and tactical (technical) cyber incident reports to internal stakeholders- Work closely with IT Security Services teams, Infrastructure teams, and additional stakeholders during cyber incident response events, providing expert technical guidance, leadership, and analysis throughout all stages of a cyber security incident- Support staff training initiatives, mentoring team members to foster a culture of growth and accountability, and closely monitor their progress to bring out their best potential- Contribute to the development and maintenance of the Bank’s Cyber Incident Management process- Support cross-functional responsibilities and other duties as strategically directed by the Chief Information Security Officer (CISO)

About You- A minimum of 5 years' experience in a dedicated cyber security role (with a focus on incident response and technical domains)- Experience in an adjacent (cyber security or information technology) discipline will be highly regarded- Extensive cyber incident response experience, including the ability to lead and coordinate response efforts during cyber security incidents- A deep understanding of general cyber security and information technology topics, principles, and regulations relevant to a modern enterprise environment- Outstanding presentation, written and verbal communication skills, with the ability to convey complex security concepts to non-technical stakeholders- Demonstrable experience managing key stakeholder relationships, and an ability to build and maintain relationships with key stakeholders- Considerable experience using relevant incident response and digital forensics tooling such as Magnet Axiom, Velociraptor, Flare VM, SIEM (Sentinel), SOAR, and XDR (Defender)- Understanding of threat hunting methodologies and demonstrated experience- Extensive digital forensics experience and knowledge of core concepts- Tertiary qualification in a relevant field, or equivalent practical experience- Vendor specific certifications- Security Blue Team Level 2- SANS/GIAC Incident Response, Digital Forensics, Threat Hunting certifications- Certified Information Systems Security Professional (CISSP) or Certified Information Systems Manager (CISM)

Be More

Working for an organisation that truly makes a difference to the people of Australia, we can offer development and career opportunities in a collaborative environment that supports your growth, wellbeing and promotes flexibility. Your individual growth and success drives the RBA forward as an organisation. Be more means you can do more, for yourself and for Australia.

Why RBA?

The RBA makes an important contribution to the Australian economy through the pursuit of national economic policy objectives and associated activities in financial markets and banking. We also issue Australia's banknotes and operate infrastructure critical to the payments system, all of which contribute to the welfare of the Australian people.

Made up of specialists across a wide range of fields, our people, values, and culture play a critical role in achieving our objectives. Striving to be Open & Dynamic, we consider and incorporate different perspectives, work across teams and are transparent with each other, whilst delivering quality together effectively and focusing on outcomes by prioritising, testing, learning, and refining as we go.

Our people conduct themselves with a high degree of integrity, while striving for excellence in the work they perform and the outcomes they achieve. We encourage intelligent inquiry, and we treat one another with respect while promoting the public interest through our efforts.

We know it is the growth and success of our people that drives the RBA forward. Come and make a bigger contribution while you build and develop your own skills too, because being more means you can do more, for yourself and for Australia.

Application Close:
August 14, 2025

.



  • Sydney, Australia Westpac Group Full time

    Create your best future and join Westpac as an Information Security Principal Consultant. The Principal Information Security Consultant is responsible for providing expert technical support to the SOC, with a focus on threat hunting. A technical specialist and escalation point for the SOC, the Principal Information Security Consultant mentors junior staff,...


  • Sydney, Australia Commonwealth Bank Full time

    **_You are _**_a problem solver with a strong technical background in Incident Responds (IR) and or Security Operations Centre (SOC). _ - **_We are _**_one of the largest Cyber Security Practices in the Southern Hemisphere. _ - **_Together we can _**_contribute to protecting the Group, Customers and Community. _ **Do work that matters**: We're building...


  • Sydney, New South Wales, Australia Deloitte Services Pty Ltd Full time $120,000 - $150,000 per year

    Job Requisition ID: 39145 We support flexibility and choice including flexible work arrangements and part-time options. ​Learn from the best in the business ​Recognition culture to celebrate milestones and discounts at hundreds of retailersDeloitte is currently seeking a Senior Investigator – Incident Response to join our Australian Cyber business...


  • Sydney Eastern Suburbs, Australia Robert Half Full time

    Join this large & recognisable global firm in a newly created role to lead the execution & coordination of IR processes, automation, and cloud IR. - Newly created role in a well-known global firm - Lead CSIRT activities in the region - Full time permanent role | Hybrid working **THE COMPANY** This large and well-known organisation employs more than 70,000...


  • Sydney, New South Wales, Australia Hope Global School Full time $183,000 per year

    Job DescriptionThe Cyber Incident Responder & Threat Intel Manager is responsible for detecting, analyzing, and mitigating cybersecurity threats while managing incident response activities. The role involves leading investigations, coordinating with stakeholders, and developing proactive threat intelligence strategies to strengthen organizational resilience....


  • Sydney, Australia NTT Full time

    **Is innovation part of your DNA? Do you want to enable a connected future for people, organizations, and society?** Join our growing global NTT team and you’ll be part of the world’s largest ICT company (by revenue). We’ve combined the capabilities of 28 remarkable companies to become one, leading technology services provider. Together, we help our...


  • Sydney, Australia NSW Department of Customer Service Full time

    Role: Manager, Cyber Response Role type: Temporary, EOI up to January 30th, 2026 Salary: DCS clerk grade 11/12 **About Us**: The Department of Customer Service (DCS) is transforming the way NSW Government agencies interact with its customers. We aim at putting the customers at the centre of everything we do and adopting new technologies to make...


  • Sydney, Australia NSW Government -Department of Customer Service Full time

    **Principal Cyber Intelligence Strategist** - Clerk Grade 11/12 salary starting at $139,787 - $161,663 + superannuation and leave loading - Temporary 11- month opportunity parental leave cover (full time hours, 35hr work week) - Location: Sydney, Hybrid working environment **About the Role** The Principal Cyber Intelligence Strategist leads the intelligence...


  • Council of the City of Sydney, Australia Singtel Group Full time

    Select how often (in days) to receive an alert: Optus is an Australian telecommunications company, delivering more than 11 million services to our customers every day across mobile, broadband and digital solutions. The Principal Cyber Defence Engineer is a critical technical leadership role within our Cyber Defence team. You’ll drive the evolution of...


  • Sydney, New South Wales, Australia Reserve Bank of Australia Full time $120,000 - $180,000 per year

    Senior Cyber Security Analyst (Cyber Hunt and Incident Response Team)Play an important part shaping the future of our iconic Australian institution.Hybrid work environment.Permanent position.Join a team focused on remaining at the forefront of technology.About the RoleThe Reserve Bank of Australia is hiring for a Senior Cyber Security Analyst to join a newly...