Cyber Security Analysts
Canberra, ACT, AU Perth, WA, AU Sydney, NSW, AU Melbourne, VIC, AU
Job Details
EMPLOYMENT TYPE - Ongoing Full time
LOCATION - ACT; NSW; VIC; WA
AFP BAND & SALARY - Band 07 ($123,420.00 - $132,185.00)
JOB REFERENCE NUMBER - 15930
This advertisement is to create a merit list for future ongoing or non-ongoing vacancies arising over the next 12 months.
Did you know?
The mission of the Australian Federal Police is to provide dynamic and effective law enforcement to the people of Australia. It provides policing throughout Australia in relation to the prevention and detection of crimes against the Commonwealth, its laws and integrity, and community police services to the Community of the ACT.
Working for the AFP provides you with a diverse and rewarding career. Whether you immerse yourself in a position on the frontline, or provide critical operational or professional support, the work you do makes a big impact on the people of Australia.
We’re committed to looking after you, with some of the best benefits and conditions in the industry – including (but not limited to):
- Six weeks (30 days) of paid annual leave per year + additional paid Christmas stand down
- 4 extra days of mandatory rest leave per year
- 18 days of paid personal leave per year
- Generous superannuation of 15.4%
- 18 weeks paid Parental Leave for Primary Caregiver (and 14 weeks for Secondary Caregiver) + additional unpaid leave entitlements for up until 24 months from the child’s date of birth or placement
- Generous salaries and incremental salary progression governed by the AFP Enterprise Agreement
- Flexible and hybrid working arrangements that support work-life balance
- Health & wellbeing services – with a focus on early intervention, education and prevention
- Access to ongoing training and professional development opportunities
What is the role?
The Technology Operations & Chief Information Officer Command (TOCIO) is seeking passionate, and suitably skilled and experienced Cyber Security Analysts to join our unified Security and Network Operations Centre (SNOC) in Cyber Defence with a strong team culture, where collaboration, trust, and shared accountability underpin how we operate. As a team member you will help protect the availability, integrity and security of AFP’s critical systems and services that enable policing operations and outcomes.
The SNOC is responsible for continuous integrated security and network monitoring, incident detection, triage, response and escalation of potential threats and operational incidents in real-time. The SNOC combines cyber security operations with network operations to provide end-to-end visibility of AFP’s ICT environments.
What will you do?
- Support and mentor junior staff to build operational capability and confidence.
- Monitoring Security Information and Event Management (SIEM) tools and other security and network monitoring platforms for threats, faults, and performance degradation.
- Detect, triage, investigate and respond to cyber security incidents and network events.
- Escalating incidents as required to the Hunt and Incident Response team for further investigation and action, in line with severity impact and playbooks.
- Escalating significant network performance issues and faults to the Network Operations team for analysis and remediation.
- Correlate security alerts with network and infrastructure telemetry to determine root cause.
- Resolving minor incidents and false positives.
- Maintain accurate incident records, logs and handover notes.
- Collecting, assessing and reporting threat intelligence to inform appropriate stakeholders and improve accuracy and effectiveness of monitoring efforts.
- Contribute to the development improvement of detection rules, alerts and playbooks.
- Work Collaboratively with cyber security, network, platform and applications teams.
- Identify recurring issues and recommend improvements to reduce operational risk.
- Participate in exercises, training and capability uplift activities.
- Adhere to operations, security and compliance requirements.
Essential Requirements
- You must be an Australian Citizen at the time of application.
- A Negative Vetting 1 (Secret) security clearance or the ability to obtain one.
- Demonstrated and hands-on experience with SIEM and SOAR platforms in a live environment.
- Sound understanding of enterprise networking concepts, protocols, and technologies.
- Strong analytical and problem-solving skills with the ability to work under pressure.
- Understanding of cyber security frameworks, threat vectors and attacker techniques.
- Ability to upskill and learn new tools as required.
Desirable Requirements
The following skills and/or experience would be highly regarded:
- Relevant qualification or extensive experience in Cyber Security, or Computer Science.
Additional Information
- Positions are available in Canberra, Sydney, Perth and Melbourne. Flexible and hybrid work arrangements will be considered.
- No feedback will be provided to candidates who do not progress to interview.
Selection Criteria
- Achieve results
- Communicates with influence
- Contributes to strategic thinking
- Cultivates productive working relationships
- Shows personal drive and integrity
- Technical knowledge and skills
Application
Please submit the following documents via our Jobs portal prior to the closing date and time:
- Resume/CV - This will form the basis for determining your suitability against the position requirements and give the panel a clear outline of your current knowledge and qualifications along with previous experiences. Please include your work history, responsibilities and achievements.
- Applicant pitch (maximum two pages). Ensure your pitch tells us why you are the best fit for the role, with examples that demonstrate your capabilities addressing the selection criteria, role requirements and work level standards for the role.
Only complete applications will be considered. Please review and ensure the uploaded documents are correct for this application after submitting your application.
Employment Suitability
Should you successfully progress from the application stage all applicants must:
- Complete an Employment Suitability Questionnaire (ESQ) and provide a traffic history check and proof of Australian citizenship. This aids in the assessment of your character and your ability to comply with the AFP's professional standards both in an official and private capacity. Please review our AFP Character Standards to ensure that you meet our requirements before you submit your application. Applicants will not receive feedback if they are unsuccessful at this gateway.
- Have your fingerprints taken if an offer of employment is made.
- Undertake mandatory drug testing for illicit drugs. This sample could include; urine, saliva or hair.
- Satisfactorily undertake a security clearance to the level specified for the position.
Recruitment Process
Applicants who have demonstrated their suitability for employment through their resume and application, may be asked to complete additional assessments or activities to determine suitability for the role. This may also include a formal interview. Using the relevant AFP work level standards as a guide, you may be asked a range of questions to demonstrate your skills and abilities. These could include behavioural based scenario questions. Read our guides for applicants to find out how to prepare for your interview.
Commitment to Diversity & Inclusion
We're all individuals and we love that. At the AFP we value the different perspectives, approaches and lived experiences of our people, and recognise that our collective intelligence and diversity is what makes us stronger. As such, we encourage applications from people from all walks of life, including people from culturally and linguistically diverse backgrounds, First Nations people, women, the LGBTQIA+ community and people with disability.
Contacts and Closing Information
Contact Officer: Tijana Delov
Contact Officer Phone: 02 5127 2525
Contact Officer Email: Tijana.delov@afp.gov.au
Applications Close: 11:59pm (AEST) 02/06/2026
To view other employment opportunities, please visit our career site.