The Microsoft Cloud and Security Engineer will play an important role in supporting the Department of Energy, Environment and Climate Action’s (DEECA) cloud-based infrastructure, and protecting DEECA against evolving cyber threats, as well as assisting the team with daily administrative tasks across M365, Entra ID and Purview. This position is responsible for implementing and maintaining robust security measures, implementing policies and standards across the various cloud platforms. They will collaborate across the Groups and have tight linkages with the Cyber Security Team to identify and mitigate cloud-specific security risks whilst staying current with emerging threats and industry best practices.
Specialist/Technical Expertise/Qualifications
Experience in information security, with a focus on cloud security.
5+ years of experience working with Microsoft 365 and Entra ID.
Microsoft Azure administration experience would be an advantage.
Strong understanding of cloud computing technologies, the major cloud providers and their associated security challenges.
Knowledge of security tools and technologies such as intrusion detection/prevention systems, SIEM, and endpoint protection.
Experience working with Microsoft technologies, including Data Loss Prevention, Purview Compliance Manager and eDiscovery as well as Defender products across Azure and M365.
Knowledge of AWS technologies including CloudTrail, Security Hub and Amazon Guard Duty would be an advantage.
Good knowledge of modern security concepts such as common attack vectors (MITRE ATT&ACK framework), malware, security analytics, threat intelligence and trends.
Able to communicate technical ideas and strategies effectively to non-technical audiences, including executive leadership, via multiple mediums (e.g., written communications, verbal communications, presentations, etc.).
Builds effective relationships with third party providers, customers, suppliers, and partners.
Able to work independently and prioritise work to manage conflicting deadlines.
Relevant degrees and certifications (e.g., CISSP, CISM, CCSP, AWS, Azure) are highly desirable.
This is an ongoing position. The work location for this position is flexible within Victoria with hybrid work arrangements available.
To be considered for this position, applicants are encouraged to submit a resume and cover letter (no longer than 2 pages) summarising their skills and relevant experience.
Please refer to the Key Selection Criteria provided in the Position Description , including the mandatory requirements.
How to Apply:
If you are a current DEECA employee, please apply via DEECA Careers.
Applications close 11.59pm on Wednesday, 5 August 2026.
All applications must be submitted through the online portal. We are unable to consider email or manual applications at this time.
Other relevant information:
Preferred candidates will be required to undertake pre-employment screening, including a Declaration and Consent form and a Nationally Coordinated Criminal History Check.
To be eligible for appointment to this role, applicants will possess corresponding work rights for the advertised employment period. Appointment to an ongoing position is only available to an Australian/New Zealand citizen or an Australian Permanent Resident.
An inclusive, culturally safe and flexible workplace
DEECA fosters an inclusive workplace culture and is committed to a fair, accessible, and equitable recruitment process.
We strongly encourage Aboriginal and or Torres Strait Islander people to apply. We recognise the strengths, knowledge and perspectives First Nations people bring and DEECA is committed to a culturally safe and respectful workplace. If you need support to participate, please contact
[email protected] .
We support flexible working arrangements, including hybrid work, varied hours, part-time work and job sharing. For more information about our recruitment processes, visit applying for a role with us .