Cyber Threat Detection & Response Analyst
Job Summary
We are looking for a Cyber Threat Detection & Response Analyst to identify analyse and respond to cybersecurity threats that may impact Cuscal.
What is this role about
As the Cyber Threat Detection & Response Analyst you will play a critical part in safeguarding Cuscals digital assets and ensuring the resilience of its systems against cyberattacks. The analyst will utilise advanced threat detection techniques and tools to detect investigate and mitigate potential security incidents collaborating closely with internal teams and external stakeholders to provide timely responses to emerging threats.
Responsibilities:
- Monitor security alerts and events generated from multiple sources including Security Information and Event Management (SIEM) systems Endpoint Detection and Response (EDR) tools and other detection technologies.
- Conduct proactive threat hunting activities to identify suspicious activity within the environment.
- Analyse network traffic and system logs to identify patterns trends and potential threats.
- Build complex KQL queries to hunt for sophisticated file-less and living-off-the-land techniques across SIEM and EDR platforms.
- Develop custom detection rules use cases and threat models based on current threat intelligence and organisational needs. Tune and refine detection logic to reduce false positives while maintaining high sensitivity to true-positive TTPs (Tactics Techniques and Procedures).
- Conduct post-mortem analyses on missed threats to pivot findings into robust resilient new detection logic.
- Respond to security incidents by conducting thorough investigations and coordinating with relevant teams for remediation.
- Provide containment eradication and recovery actions to minimise the impact of security incidents.
- Operationalise threat intelligence feeds IOCs (Indicators of Compromise) and TTPs directly into actionable detection engineering.
- Analyse emerging threat actor campaigns and map them to the MITRE ATT&CK framework to identify and close telemetry gaps.
Qualifications :
- 5 years of experience in cybersecurity with a focus on threat detection incident response and threat intelligence in the payments industry.
- Strong understanding of security principles authentication authorisation and access control mechanisms.
- Expertise with security monitoring and incident response tools (e.g. SIEM EDR SOAR Threat intelligence platforms).
- Deep demonstrable expertise in Kusto Query Language (KQL) for Microsoft Sentinel Defender XDR or Azure Data Explorer.
- Strong knowledge of common attack vectors malware and exploitation techniques.
- Proven ability to translate intelligence reports and threat actor profiling into engineering requirements.
- Experience with scripting and automation (Python PowerShell etc.) to streamline detection and response activities.
- Proven experience leading high-severity incident responses in a fast-paced environment.
- Practical experience with purple teaming Atomic Red Team or executing MITRE ATT&CK-aligned validation tests.
- ATM/EFT/POS technology experience in mission-critical environments.
- Knowledge of security frameworks and standards such as ISO 27001 NIST CPS234 ASD Essential 8 etc.
- Understanding of legal regulatory privacy and security matters associated with the Banking and Finance Industry.
Additional Information :
Why Cuscal
At Cuscal youll find a strong successful company thats reimagining the future. And our team is right there at the heart of it all.
Here youll deliver ground-breaking work that has real impact - on Australias financial services sector and the millions of customers it serves. Youll innovate alongside skilled smart connected teams. And youll build an impressive fulfilling career that continues to grow.
Youll also enjoy a range of benefits including:
Work in a hybrid model that supports your lifestyle and goals
We celebrate success: Our IGNITE program recognises individual and team achievements.
Wellbeing focus: We support your physical mental and financial health with holistic initiatives and access to discounts via Cuscal Advantage.
Join us and reimagine the future:
If this role excites you wed love to explore your potential and vision for the future. For further information about this role please contact Nicola Liney at
Cuscal is an equal opportunity employer committed to an equitable diverse and socially inclusive work environment and a positive barrier-free recruitment process. We welcome applicants from an Aboriginal and Torres Strait Islander heritage people living with a disability LGBTQIA and people from culturally diverse backgrounds to explore career opportunities with Cuscal.
Note: Cuscal does not accept unsolicited resumes from recruitment agencies or search firms.
#LI-NL1
Remote Work :
No
Employment Type :
Full-time
About Company
Empower Australia’s Payments Future with Cuscal At Cuscal, your skills drive change and make a real impact. Whether you’re supporting our clients’ customers in our Fraud Operations Contact Centre or delivering innovative solutions in Product Delivery, your contribution helps shape the ... View more