Senior Cyber Security AnalystClerk Grade 9/10, base salary ranging from $129,464 - $142,665 + superFull time temporary to 8 March 2028Located at Haymarket, Sydney (Hybrid Working)Closing date Friday 10th April 2026 @10amThe Team and the RoleThe Data Analytics Centre (DAC) exists to lead a whole-of-government approach to data analytics, to tackle some of the States most difficult policy challenges.As the Senior Cyber Security Analyst, you will be responsible for progressing a range of cyber security-focussed initiatives for the DAC. You will drive cyber security risk management, compliance, and incident response activities, while strengthening the platforms overall security posture across cloud and ICT environments.This is a hands-on role combining:Cloud security engineeringGovernance, risk and compliance (GRC)Incident responseSecurity uplift initiativesThis role requires strong technical capability across Azure security services, identity protection, monitoring, and incident response, as well as the ability to collaborate with Architecture, Engineering, DevOps, and Risk teams to uplift Azure Cyber Security posture, reduce vulnerability exposure, and establish repeatable best-practice operational controls.Your key accountabilities include:Threat Monitoring & Incident ResponseMonitor, detect and respond to cyber threats and vulnerabilities.Lead security incident investigations, including forensic analysis and remediation.Maintain comprehensive incident documentation and reporting.Deploy and tune Microsoft Defender for Cloud.Configure and optimize Microsoft Sentinel for cloud threat detection. Develop KQL-based detection rules and analyticsCloud & Platform SecurityAdminister and optimise security tools including:Microsoft Sentinel (SIEM) CrowdStrike (EDR) Qualys (Vulnerability Management) Strengthen Azure cloud security controls, including IAM (Entra ID).Oversee vulnerability scanning, patch management and penetration test responses.Implement and maintainsecure Azure architectures aligned to Zero Trust principles.Support implementation of network securitycontrols (NSGs, Azure Firewall, Private Endpoints, WAF).Automate security monitoring and remediation using Azure-native toolingImplement Infrastructure as Code (IaC) security validationIdentity & Access ManagementConfigure and manage Microsoft Entra ID security controls.Strengthen Conditional Access, MFA, PAM and Privileged Identity Management (PIM).Enforce least privilege and RBAC across Azure subscriptions.Governance, Risk & ComplianceLead and maintain ISO 27001 certification lifecycle activities.Ensure ongoing compliance with: NSW Cyber Security Policy Essential Eight PSPF Relevant NIST standardsConduct regular risk assessments and manage audit activities.Track remediation of audit findings and compliance gaps.Security Uplift & Continuous ImprovementDevelop and improve cyber security policies, standards and procedures.Lead security uplift initiatives and targeted remediation programs.Support business continuity and disaster recovery planning.Contribute to evaluation and selection of security technologies.Microsoft Purviewand DLP experienceStakeholder Engagement & ReportingProvide clear risk insights and security reporting to senior leadership.Prepare high-quality briefs and advice.Facilitate working groups and governance forums.Translate technical risks into actionable business recommendations.About you,To be successful, you will demonstrate:Technical ExpertiseStrong experience in Azure cloud security, including Entra ID and Microsoft Sentinel, KQLHands-on experience with EDR and vulnerability management tools (e.g., CrowdStrike, Qualys).Scripting (Bicep, PowerShell, Python, Azure CLI)Experience implementing security controls aligned to ISO 27001 and Essential Eight.Knowledge of DevSecOps and Infrastructure-as-Code security practices.Experience across Windows, Linux, cloud and server environments.Governance & Risk CapabilityStrong working knowledge of ISO 27001, NIST, Essential Eight and PSPF.Experience managing audit processes and remediation tracking.Ability to assess cyber threats and provide risk-based advice.Communication & LeadershipStrong written and verbal communication skills.Ability to brief senior stakeholders clearly and confidently.Experience leading projects or coordinating multi-team initiatives.Ability to operate effectively in fast-paced, evolving environments.CertificationISO 27001 Lead Implementer/Auditor certificationMicrosoft Certified: Azure Security Engineer Associate (AZ-500) Experience with OT / ICS / IACS security frameworksEssential Requirements:The successful applicant must have, or be able to attain and maintain, a baseline security clearance as a condition of employment.Why Join DAC?Work on high-impact government data platforms.Lead meaningful security uplift initiatives.Join a specialised team driving whole-of-government analytics capability.Flexible hybrid working environment.Salary Grade 9/10, with the base salary for this role starting at $129464 base plus superannuationClick Here to access the Role Description. For enquiries relating to recruitment please contact Meg Rapley via .Visit the Capability Application Toolto prepare for the recruitment process by accessing practice application and interview questions based on the focus capabilities listed in the role description. Careers at Department of Customer ServiceA career at the Department of Customer Service (DCS) gives you the opportunity to help improve government services and be part of reform that benefits people across NSW. We are focused on delivering excellent customer service, digital transformation, and regulatory reform. Come join us and influence the future of our great state.Belong in our diverse and inclusive workplace The strength of our workforce lies in its diversity and embracing difference, while the key to our success is leveraging the contributions of employees with different backgrounds and perspectives.You can view our full diversity and inclusion statement here.We want you to bring your best self to this application process. If you have any support or access needs that may require adjustments to allow you to fully participate in this selection process (including an alternate format of the application form) please contact or 02 9494 8351.For more information, please visitInformation on some of the different types of disabilities Information on adjustments available for the recruitment process
Job Title
Senior Cyber Security Analyst