Asd El1 Technical Lead – Cyber Threat Hunt

Asd El1 Technical Lead – Cyber Threat Hunt
Company:

Australian Signals Directorate


Details of the offer

ASD EL1 Technical Lead – Cyber Threat Hunt ASD EL1 Technical Lead – Cyber Threat Hunt Full time
ASD EL1 Technical Lead – Cyber Threat Hunt
The Role
We are seeking a Cyber Threat Hunt Technical Lead to lead technical work and projects within Hunt Section.
This is a technical role, requiring an aptitude for complex problem solving and the ability to conduct deep analysis of network communications and endpoint activities to unearth malicious tradecraft.
Successful applicants will hunt for sophisticated actors on priority networks by developing and implementing innovative detection capabilities and analytical tradecraft. We want you to join our team to assist ASD in defending against these advanced threats.
As a Hunt Technical Lead, you will direct technical work, collaborate with your peers and leverage your deep cyber security knowledge to lead effective and thorough hunt operations. This involves scoping hunt activities, technical problem solving during hunts and engagement with hunt customers. This role also has a leadership component – you will be expected to mentor and coach hunt analysts, assign them technical tasks and provide quality assurance of their work.
There are vacant Technical Lead positions across ASD's Brisbane, Canberra and Melbourne offices.
About our Team
ASD invites you to take the next step in your career.
We are looking for individuals with a passion for understanding, discovering and countering cyber threats impacting Australia and its interests.
The Technical Threats and Visibility (TTV) Branch in ASD's Australian Cyber Security Centre (ACSC) detects adversaries targeting or exploiting Australian networks by analysing their technical tools and tradecraft. The ACSC uses this deep understanding to defend and disrupt malicious activity that threatens Australia's national security.
TTV's Hunt Section conducts targeted, intelligence-led operations to detect sophisticated threat actors on Australian Government and Critical Infrastructure (CI) networks. Hunt uses custom tools, tailored detections and all-source intelligence in its pursuit of undetected compromises. Hunt works closely with other areas within ASD – as well as industry and international partners – to improve its capabilities and operational outcomes.
At ASD, we will strongly invest in your career by supplying you with rewarding opportunities, flexible working arrangements, comprehensive internal and external training, and a competitive employment package designed for skilled employees.
Our Ideal Candidate
We are looking for candidates who have strong experience in one or more of the following disciplines:
Operating system principles and their underlying features such as file system structures, process and thread linkages, and registry
Collection and analysis of host artifacts to discover anomalous or malicious behaviour
Adversary mindset, i.e. how an APT would manipulate operating systems
Host Forensics – Specialising in Windows memory forensics
Inner workings of memory including memory structures
Collection and analysis of memory artifacts like crashdumps, hibernation files or page/swap space identify anomalous or malicious activity
Adversary mindset, how would they manipulate memory
Structured and unstructured analysis
Collection and analysis of network traffic to discover anomalous or malicious behaviour
Network protocol analysis (e.g HTTP, DNS, SMTP) and how they are used and manipulated for malicious purposes.
In addition, for a Technical Lead EL1 role in ASD, applicants will need to demonstrate:
Experience leading technical people, projects or operations
Ability to communicate technical knowledge in a concise manner to non-technical audiences
An aptitude for building and sustaining relationships, and experience liaising with a range of stakeholders
Experience in providing quality assurance of technical outcomes
Capability to work in a dynamic environment with competing priorities
Ability to work independently with accountability for achieving technical outcomes.
Application Closing Date: Sunday 30 June, 2024
Don't provide your bank or credit card details when applying for jobs.

#J-18808-Ljbffr


Source: Allthetopbananas_Ppc

Requirements

Asd El1 Technical Lead – Cyber Threat Hunt
Company:

Australian Signals Directorate


Engineer - Mobile (Android)

Xero is a beautiful, easy-to-use platform that helps small businesses and their accounting and bookkeeping advisors grow and thrive. At Xero, our purpose is...


From Roman Health Pharmacy Llc - Australia

Published 17 days ago

Supervisory Program Specialist

The position is located in the Bureau of Global Talent Management, Talent Acquisition Directorate, Office of Recruitment and Student Programs, Student Progra...


From Department Of State - Australia

Published 17 days ago

Devops Engineer Intern | 2024 Summer Intake

bank Eclipse Trading is one of Asia's leading proprietary derivatives trading firms. Founded in 2007, we have over 100 employees across three office locatio...


From Onmygrad - Australia

Published 17 days ago

Azure Infrastructure Consultant - Hybrid

Work options: Hybrid Work on cutting-edge technologies using modern delivery principles Join a Microsoft Specialised Partner and winner of the 2023 Microsof...


From Arinco Trades As Arinco (Vic) Pty - Australia

Published 17 days ago

Built at: 2024-07-02T18:52:07.806Z