About the Role
As a Senior Security Engineer - Architecture, you will play a key role in designing, implementing, and optimizing security services across Macquarie Government's Secure Internet Gateway (SIG) and managed cyber security environments. You will leverage technologies like Microsoft Sentinel and Splunk to strengthen detection and response capabilities, deliver security outcomes for customers, and drive continuous improvement across security platforms. This role offers the opportunity to work on complex government environments while influencing the future direction of cyber security services.
Responsibilities
- Design, implement, and support cyber security solutions for Australian Government customers.
- Lead customer onboarding and implementation activities, including solution design and technical documentation.
- Build, configure, and optimize Microsoft Sentinel and Splunk environments.
- Develop and tune security detections, analytics rules, dashboards, and reporting capabilities.
- Investigate cyber threats, identify trends, and implement preventative security controls.
- Support and enhance Secure Internet Gateway (SIG) infrastructure and managed security services.
- Collaborate with Security Operations, Infrastructure, and Customer Success teams to deliver exceptional outcomes.
- Drive automation, process improvements, and operational efficiencies through scripting and orchestration technologies.
- Provide technical guidance and escalation support for complex security incidents and customer enquiries.
Requirements
- 3+ years' experience in Security Engineering, Security Operations, or SIEM environments.
- Strong hands-on experience with Microsoft Sentinel and/or Splunk.
- Advanced Kusto Query Language (KQL) skills and/or Splunk SPL.
- Experience developing and tuning SIEM detections, analytics rules, and threat hunting use cases.
- Solid understanding of security operations, incident response, and cyber threat detection.
- Strong knowledge of networking fundamentals, firewalls, and security architecture principles.
- Understanding of log collection technologies including syslog and security telemetry.
- Experience working within environments aligned to Essential Eight, ISM, or similar security frameworks.
- Strong troubleshooting skills with the ability to analyze and interpret large volumes of security data.
- Excellent communication skills with a customer-focused mindset.
- Must be an Australian citizen to be eligible to obtain a security clearance.
- Requires security clearance for this role.
Skills
- Microsoft Sentinel
- Splunk
- Kusto Query Language (KQL)
- Splunk SPL
- SIEM
- Security Operations
- Incident Response
- Cyber Threat Detection
- Networking Fundamentals
- Firewalls
- Security Architecture
- Log Collection
- Syslog
- Security Telemetry
- Essential Eight
- ISM
- Troubleshooting
- SOAR platforms
- Security Automation
- Python
- Bash
Location
- Sydney
Work Type
- Hybrid
- Blended working arrangement (3 days in office, remote working from home)
Experience Level
- Senior
Education Level
- SC-100, SC-200, AZ-500 or equivalent security certifications
- Splunk Enterprise Security certification
Benefits
- Australia's Great Place to Work 2025 certified for 3 years in a row
- Gallup Exceptional Workplace Award winner
- Highest Net Promoter Score on the ASX
- World's best customer experience
- World Communications Awards winner
- Learning and development opportunities
- Gallup strengths-based training
- Defined career pathways
- Internal mobility opportunities
About the Company
- Macquarie Technology Group is passionate about doing things differently and challenging the industry.
- Macquarie Government is trusted by over 42% of Australian government agencies to protect them from cyber attackers.
- We have the highest Net Promoter Score on the ASX, the World's best customer experience & crowned in 2020 at the World Communications Awards.
