Locations: Melbourne | Sydney | Brisbane
Hybrid Work Model
We're not your typical cyber team. We're collaborative, curious, and customer-obsessed and we're looking for a Cyber Security Engineer specialising in Microsoft Sentinel to join our Cyber Engineering team. You'll work directly with customers, owning and delivering security engagements end to end, and providing expert guidance across Microsoft Sentinel and cloud-native security operations.
From scoping and kick-off through to deployment, configuration, and reporting, you'll help strengthen customer security postures while managing your own projects and building trusted advisory relationships across a diverse client base.
About Orro
We’re an Australian success story, now close to 500 people strong, delivering secure, end-to-end digital solutions across cloud, collaboration, cyber security, data services and network infrastructure, all backed by over 20 years of experience. Trusted by some of Australia’s biggest brands, Orro leads the way in designing, building and operating digital infrastructure that delivers greater efficiency, agility, performance and resilience. Our solutions take the stress out of tech for more than 400 businesses and over 20 million Australians every single day.
Our mission? To create “future now” solutions making it faster, simpler and safer for people to access, store and share information, wherever they are and whoever they’re with. But more than that, we know that real impact comes from connecting people, not just machines. That’s why we take the time to understand our clients; how they work, what matters to them, and where they’re headed so we can deliver not just what they need today, but what they’ll need next.
With offices in Sydney, Melbourne, Canberra, Brisbane and Perth, and teams across New Zealand, the Philippines and the UK, Orro is known for delivering future-ready solutions, backed by deep expertise, genuine human insight and lasting partnerships.
What You’ll Be Doing
In this role, you will take responsibility for delivering consulting-led cyber security services with a specialisation in Microsoft Sentinel across a range of customer environments. Working closely with the Cyber Security Engineering Manager and wider cyber team, you will plan and execute security engagements, manage delivery milestones, and provide hands-on implementation and advisory support across Microsoft's security and cloud platforms. You will balance deep technical expertise with strong customer engagement, ensuring each engagement is delivered efficiently, professionally, and to a high standard.
Lead customer engagements end to end, from scoping and kick-off through to delivery, as the trusted technical point of contact
Own assigned engagements, managing milestones, risks, and escalations with confidence
Design, deploy, configure, and optimise Microsoft Sentinel environments, including data connector integration, analytics rules, KQL detection logic, and custom alerting
Configure and manage SOAR automation, incident response playbooks, and automation rules within Sentinel
Build workbooks, dashboards, and UEBA configurations to enhance threat visibility and operational insight
Conduct security operations assessments and threat detection capability reviews, providing pragmatic best practice guidance
Produce clear technical documentation and customer-ready reports to a consistently high standard
Growth & Career Progression
Orro will provide additional on-the-job training to develop the necessary skills with customer-specific tools. As you grow in the role, you'll also have opportunities to broaden your expertise and explore career paths across key areas of our cyber function, including:
Security Analytics
Security Assurance and Testing
Security Consulting
Security Architecture
What You’ll Bring
Essentials
Minimum 2 years of experience in a customer-facing or consulting cyber security role, with strong communication skills and the ability to manage multiple engagements simultaneously
Hands-on experience with Microsoft Sentinel across data connector configuration, KQL-based detection, analytics rules, SOAR automation, and workbook or dashboard development
Solid understanding of Azure, cloud security fundamentals, and SIEM-based threat detection and incident response
Microsoft Certified: Security Operations Analyst Associate (SC-200) and Azure Security Engineer Associate (AZ-500)
Bonus Points
Scripting skills across KQL, PowerShell, Python, or Bash, and experience across Windows and Linux environments
Familiarity with security frameworks such as Essential 8, CIS 18, NIST, or ISO 27001, and exposure to vulnerability management platforms like Rapid7
Advanced threat hunting experience and working knowledge of adversary TTPs
Additional Microsoft certifications such as SC-100, SC-300, or SC-400
Even if you don’t tick every box, don’t let that hold you back. If this sounds like your kind of challenge, we’d genuinely love to hear from you!
Why Orro?
At Orro, we’re proud to support our people and the people who matter most to them in meaningful and inclusive ways. From public holiday swaps that embrace family and cultural diversity, to generous parental and caregiver leave, flexible work options, and company-wide mentoring, we’re here to help you thrive at every stage of life.
We also invest in the future through our Emerging Leaders Development Program, nurturing the next generation of talent from within. On top of that, you’ll enjoy 3 days of paid volunteer leave each year, novated leasing, employee discounts, and full access to our wellbeing platform packed with expert fitness plans, nutrition tips, and tools to help you feel your best, inside and out.
We value different perspectives and proudly celebrate the diversity of our people. We are committed to creating an inclusive workplace where everyone can thrive, including LGBTQI team members, people with disabilities and those on the autism spectrum. Your unique experience is not just welcomed here, it is valued.
Orro is deeply committed to sustainability and social responsibility. By joining us, you contribute to initiatives that support our communities and help create a better future.
*Note: The role is subject to state and federal police background checks.