Leidos logo

Advanced Threat Hunter / SOC Engineer

Leidos

On-site
Canberra, ACT
Full-time
Mid Level
Senior
2+ yrs
Salary not listedPosted 4w ago

Real job — pulled straight from Leidos’s careers page · Verified July 15, 2026 · No reposts.

Job description

Leidos is hiring a Advanced Threat Hunter / SOC Engineer — a full-time, based in Canberra, ACT role. Apply directly on Leidos's careers page below.

Advanced Threat Hunter / SOC Engineer

Location: Canberra, Australian Capital Territory, Australia

Time Type: Full time

Job Description

Advanced Threat Hunter / SOC Engineer

  • Leidos Life Hub provides access to discount offers or cashback rewards with over 400 Australian and International retailers.
  • Due to the nature of the role, you must be an Australian Citizen and hold either a NV-1 or NV-2 Security Clearance
  • Location: Canberra, Harman

Our team feel Leidos is a great place to work. Learn more about our culture and benefits by visiting us here https://www.leidos.com/company/global/australia/careers

Do Work That Matters

Leidos Australia delivers IT and airborne solutions that protect and advance the Australian way of life. Our 2000 local experts, backed by our global experience and network of partners, are working to solve the world’s toughest challenges in government, intelligence, defence, aviation, border protection, and health markets.

Your New Role and Responsibilities

Leidos Australia is expanding our 24x7x365 Central Processing Cyber Security Operations Centre (CP SOC) capability with the Department of Defence. CP SOC works collaboratively with the Defence Security Operations Centre (DSOC) to assist in defending one of the largest and most complex ICT networks in the southern hemisphere.

We seek Cyber Security Analysts to work on a rotating shift roster (typically 12-hour shifts) onsite at HMAS Harman in Canberra.

The roles and responsibilities extend to:

  • Monitor and Analyse Security Events: Continuously monitor networks and endpoints for security alerts, threats, and intrusions using SIEM tools, IDS/IPS, and endpoint protection systems.
  • Incident Response and Management: Triage, investigate, and manage security incidents end-to-end, including escalation and reporting as required.
  • Threat and Vulnerability Management: Assess emerging threats and vulnerabilities, develop custom detection signatures, and implement measures to mitigate risks.
  • Security Tool Administration and Process Improvement: Maintain and support security tools, review and improve operational processes, and ensure the health of deployed security systems.
  • Stakeholder Communication and Reporting: Collaborate with internal teams and stakeholders, produce reports, and contribute to the development of SOC tactics, techniques, and procedures.

Core Skills & Knowledge:

  • Performs advanced malware analysis and memory forensics
  • Leads threat hunting and long-term mitigation
  • Refines policies and collaborates with external stakeholders
  • Reverse engineering malware.
  • Threat intelligence integration (STIX/TAXII, YARA).
  • SIEM tuning and automation (SOAR, Python scripting).
  • Vulnerability management and threat modelling.

Key Tasks:

  • Develop detection rules.
  • Lead SOC uplift projects/tasks
  • Automate workflows.
  • Lead post-incident reviews and mentor junior analysts.

What You’ll Bring to Make an Impact

  • Proven Experience: You will bring ideally 2-5 years proven experience working in the same or similar role
  • Technical Cyber Security Knowledge: Working knowledge of industry and government cybersecurity frameworks, SIEM tools, IDS/IPS, and endpoint security solutions.
  • Analytical and Problem-Solving Skills: Ability to identify, analyse, and resolve complex security issues with a proactive and self-starting approach.
  • Incident Response Expertise: Experience in detecting, responding to, and mitigating cyber threats using adversary TTPs and IOCs.
  • Communication and Stakeholder Management: Strong verbal and written communication skills for incident reporting and stakeholder engagement.
  • Adaptability and Continuous Learning: Willingness to rapidly upskill, work in a 24/7 rotating shift environment, and stay updated on evolving cyber threats.

Don’t worry if you don’t tick all the boxes – if you meet most of them, we encourage you to submit your application. We’re most interested in your strengths, what you want to learn and how far you want to go.

Diverse Team Members, Shared Values and a Common Purpose

Providing our customers with smarter solutions takes an incredible team with diversity of thought, experience and perspectives driving innovation. Inclusion is at the heart of our culture and is one of our core values. It’s about creating a workplace where everyone can do important work, feels welcome, valued, and respected, and has equal access to opportunities to thrive. Paul Chase – Chief Executive, Leidos Australia.

Leidos Australia is an equal opportunities organisation and is committed to creating a truly inclusive workplace. We welcome and encourage applications from Aboriginal and Torres Strait Islanders, culturally and linguistically diverse people, people with disabilities, veterans, neurodiverse people, and people of all genders, sexualities, and age groups.

Our five Advocacy Groups (Women and Allies Network, Young Professionals, Defence & Emergency Services, Action for Accessibility and Abilities and Pride+) provide an opportunity for team members to connect and collaborate on shared interests, and work to support and celebrate our diverse community.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Get Advanced Threat Hunter / SOC Engineer jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
BBVA logo

BBVA

New

Information Security Specialist

Las Condes, Region Metropolitana de Santiago
✓ From careers page· 54m ago
BBVA logo

BBVA

New

Information Security Operations Center

Ciudad de Mexico, Miguel Hidalgo
✓ From careers page· 55m ago
CoinDesk logo

Manager, Security Operations & Cyber Defense

$185k–$235kNew York, NY
✓ From careers page· 58m ago
Shipt logo

Security Engineer

$65k–$110kBirmingham, AL
✓ From careers page· 2h ago

Frequently asked questions

What skills are required for Advanced Threat Hunter / SOC Engineer at Leidos?

The required skills for Advanced Threat Hunter / SOC Engineer at Leidos include: SIEM, Python.

What is the seniority level for Advanced Threat Hunter / SOC Engineer at Leidos?

Advanced Threat Hunter / SOC Engineer at Leidos is a Mid Level / Senior level position.

How do I apply for Advanced Threat Hunter / SOC Engineer at Leidos?

You can view the full description and apply for Advanced Threat Hunter / SOC Engineer at Leidos on EchoJobs: https://echojobs.io/job/leidos-advanced-threat-hunter-soc-engineer-jw8hd.