Cyber Threat Intelligence Specialist

21 hours ago


Canberra n Capital Territory, Australia Leidos Australia Full time $80,000 - $120,000 per year

Description

  • We're a 'Family Friendly' certified workplace – we understand the often many and varied roles our team members need to play within their own unique family setting and actively support them.

Our team feel Leidos is a great place to work. Learn more about our culture and benefits by visiting us here

Do Work That Matters
Leidos Australia delivers IT and airborne solutions that protect and advance the Australian way of life. Our 2000 local experts, backed by our global experience and network of partners, are working to solve the world's toughest challenges in government, intelligence, defence, aviation, border protection and health markets.

Your New Role And Responsibilities
The Cyber Threat Intelligence Specialist is a technically focused role within the cross-functional Cyber Security team, responsible for leading the organisation's threat intelligence capability. This includes the operation and enhancement of the MISP platform, advanced analysis of external threat feeds, and the production of actionable intelligence to support vulnerability management, incident response, and strategic risk decisions.

You will maintain awareness of adversary tactics, indicators of compromise, and emerging vulnerabilities by correlating information from ACSC CTIS, CISA Known Exploited Vulnerabilities, the US National Vulnerability Database, and other curated MISP feeds. Intelligence outputs will directly inform the Security Risk Management Plan, threat models, and continual improvement cycles.

This is a hands-on position focused on platform operation, feed management, and threat analysis. You'll also be responsible for documenting intelligence products that are traceable, actionable, and relevant to the supported environment, while also contributing across broader security operations.

This role requires flexibility, collaboration, and a willingness to support team objectives across all areas of cyber defence while still focusing on Cyber Threat Intelligence.

Key Responsibilities

  • Operate and maintain the MISP threat intelligence platform, integrating structured threat feeds and known malware indicators, while tuning feeds to improve the relevance and quality of threat data.
  • Correlate threat intelligence with known vulnerabilities and incident data to support prioritised mitigation, patching, and risk-based decision-making across the environment.
  • Generate high-quality intelligence outputs, including threat profiles, risk narratives, contributions to the Security Risk Management Plan (SRMP) and other audit-ready documentation.
  • Provide enriched indicators of compromise and attribution context during incident response activities, supporting containment and recovery efforts in collaboration with internal and customer security teams.
  • Actively contribute to broader cyber security operations, supporting incident response, vulnerability management, endpoint security management, compliance activities, and continuous improvement initiatives as part of a small, cross-functional team.

Qualifications & Experience

  • Proven experience operating or administering MISP or a similar Threat Intelligence Platform (TIP) in a production environment, with a strong understanding of platform integration and maintenance.
  • Familiarity with cyber threat intelligence standards and frameworks such as STIX, TAXII, MITRE ATT&CK, and the Cyber Kill Chain, and their application in real-world threat analysis.
  • Practical experience working with structured threat feeds and enrichment sources (e.g., CVE/NVD, CTIS, CISA KEV), and applying this intelligence to support vulnerability and incident response workflows.
  • Strong written communication skills, with the ability to produce clear, actionable threat intelligence artefacts, technical documentation, and operational advisories for diverse audiences.
  • A collaborative and inclusive approach to cyber defence, with a passion for continuous learning, teamwork, and contributing to a shared security mission as part of a wider team.

This role does require the successful applicant to be an Australian Citizen and hold or be able to obtain an NV1 level security clearance.
Diverse Team Members, Shared Values and a Common Purpose
Providing our customers with smarter solutions takes an incredible team with diversity of thought, experience and perspectives driving innovation. Inclusion is at the heart of our culture and is one of our core values. It's about creating a workplace where everyone can do important work, feels welcome, valued, and respected, and has equal access to opportunities to thrive. Paul Chase – Chief Executive, Leidos Australia.
Leidos Australia is an equal opportunities organisation and is committed to creating a truly inclusive workplace. We welcome and encourage applications from Aboriginal and Torres Strait Islanders, culturally and linguistically diverse people, people with disabilities, veterans, neurodiverse people, and people of all genders, sexualities, and age groups.

Our five Advocacy Groups (Women and Allies Network, Young Professionals, Defence & Emergency Services, Action for Accessibility and Abilities and Pride+) provide an opportunity for team members to connect and collaborate on shared interests, and work to support and celebrate our diverse community.

Next Steps

  • To apply for this role, follow the links or apply via our Careers page.
  • Recruitment process - virtual / face to face interview & background checks.
  • Applicants may also need to meet International Traffic in Arms Regulations (ITAR) requirements. In certain circumstances this can place limitations on persons who hold dual nationality, permanent residency or are former nationals of certain countries as per ITAR 126.1.
  • We are committed to making our recruitment process accessible to all candidates. Please contact our Careers team if you'd like to discuss any additional support during your application or throughout the recruitment process.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.



  • Canberra, Australia ASIO Full time

    **The Organisation** The Australian Security Intelligence Organisation (ASIO) protects Australia and Australians from threats to their security. In a complex, challenging and changing security environment, our success is built on the imagination and intelligence of our team. ASIO's people are ordinary Australians but they do extraordinary things - they are...


  • Canberra, n Capital Territory, Australia Azooa Full time $100,000 - $150,000 per year

    Cyber Security Professionals – RFQ PCS ACIC Project)Azooa Pty Ltd is preparing a response to theAustralian Criminal Intelligence Commission (ACIC)underRFQ PCS P25/171 Cyber Security Services).We're invitingExpressions of Interest (EOI)from experiencedcyber security professionalsfor multiple positions supporting ACIC's mission-critical cyber operations.If...


  • Canberra, Australia Experis ManpowerGroup Sp. z o.o. Full time

    Cyber Security Threat Hunter - Principal Level (EL2 Equivalent) Location: ACT | Work Type: Contract | Duration: 12 Months + Extensions Clearance: NV1 (Active) Required Are you a seasoned Cyber Security professional with a passion for proactive threat hunting and protecting critical infrastructure? We're seeking a Cyber Security Threat Hunter to join a...


  • Canberra, n Capital Territory, Australia Opes Cyber Security Full time $80,000 - $120,000 per year

    System Administrators – Top Secret PV Cleared | Defence Cyber OperationsLocation:Canberra, ACT (HMAS Harman, Russell Offices, and other sites as required)Clearance:Top Secret Positive Vetting (TSPV)Contract Type:12-month Contract with possible extensionsAre you a highly skilled System/Application Administrator ready to contribute to Australia's national...


  • Canberra, Australia Australian Secret Intelligent Service Full time

    Cyber Security Specialist Level 5-6 $105,013 - $133,968 plus superannuation ASIS is Australia’s overseas secret intelligence collection agency. Its mission is to protect and promote Australia’s vital interests through the provision of intelligence services as directed by the Government. Its work can involve collecting intelligence relating to...

  • Lead Analyst

    2 weeks ago


    Canberra, Australia CyberCX Full time

    At CyberCX we are building a uniquely Australia and New Zealand focused cyber intelligence capability. The Lead Cyber Intelligence Analyst is a key member of the Cyber Intelligence function and will maintain expertise in technologies, techniques and trends in cyber intelligence to continuously improve the team’s products and services; identify and develop...


  • Canberra, n Capital Territory, Australia People Connect ICT Solutions Full time $120,000 - $180,000 per year

    Department has a requirement for an ICT labour hire resource to fill the role ofCyber Governance, Risk and Compliance Assurance Specialist.CanberraNV112 months + 24 monthsThis role provides guidance on the application and operation of security controls, performing security risk and business impact analyses, and identifying risks from potential technical...


  • Canberra, n Capital Territory, Australia MITRE Australia Full time $120,000 - $150,000 per year

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • Canberra, n Capital Territory, Australia Cyber Governance Full time $90,000 - $120,000 per year

    New Year - New Career?At Cyber GV, we are all about helping our clients improve their security and resilience with effective governance, reduced risk and improved compliance.We are looking for the following 25 specialists to work with us on a major project tomigrate Applications to Cloudfor the Department of Foreign Affairs and Trade (DFAT), commencing...


  • Canberra, n Capital Territory, Australia Ignite Full time $120,000 - $180,000 per year

    Cyber Security EngineerLocation: CanberraSecurity Clearance: NV1Contract: 12 months with 2 x 12-month extension options Are you a seasoned cybersecurity expert ready to lead and innovate in a dynamic environment? CRB is seeking dedicated Principal Cyber Security Technical Professionals to play a pivotal role in enhancing and safeguarding our critical IT...