824,647open jobs
53,159companies
134,960added this week
Browse all
Salary
≈ $67k – $150k per year (Estimated)
Location
In office (Sydney)
Seniority
Senior · 5+ years exp

Confirmed on the employer's own hiring board on Sep 27, 2026. First seen by Alion on Sep 22, 2026.

Overview
Company
Impact
Profile match
Microsoft is an American multinational technology corporation founded in 1975 by Bill Gates and Paul Allen and headquartered in Redmond, Washington. It built the personal computing era around the Windows operating system and the Office productivity suite, and now generates the largest share of its revenue from Azure cloud infrastructure and commercial subscriptions. The company also owns GitHub, LinkedIn and the Xbox gaming business, and has invested heavily in artificial intelligence through its partnership with OpenAI and the Copilot assistants embedded across its products.
Overview

With more than 45,000 employees and partners worldwide, the Customer Experience and Success (CE&S) organization is on a mission to empower customers to accelerate business value through differentiated customer experiences that leverage Microsoft's products and services, ignited by our people and culture. We drive cross-company alignment and execution, ensuring that we consistently exceed customers' expectations in every interaction, whether in-product, digital, or human-centered. CE&S is responsible for all up services across the company, including consulting, customer success, and support across Microsoft's portfolio of solutions and products. Join CE&S and help us accelerate AI transformation for our customers and the world.

Microsoft's Detection and Response Team (DART) is seeking a skilled and experienced SeniorCybersecurity Incident Coordinator to join the team. DART is the first port of call for many customers during a security incident. This pivotal, customer-facing position calls for an agile operational leader who can coordinate complex cybersecurity incidents, align stakeholders and ensure effective staffing and delivery of proactive and reactive engagements.

The successful candidate will combine deep cybersecurity fluency with sound judgement, clear communication and disciplined operational management. As part of a globally distributed, mission-driven team, you will work alongside investigation leads, threat hunters, reverse engineers and infrastructure engineers, helping shape the future of Defender Experts Cybersecurity Incident Response.

Microsoft's mission is to empower every person and every organization on the planet to achieve more. Employees are expected to demonstrate a growth mindset, innovation, collaboration, respect, integrity, accountability, and inclusion.

Responsibilities

As a Senior Cybersecurity Incident Coordinator, you will independently coordinate customer engagements and concurrent operational workstreams, keep stakeholders aligned, and enable technical specialists to deliver effective response outcomes.

Operational Management

  • Coordinate intake and pre-engagement scoping with customers and technical leads: clarify needs, desired outcomes, dependencies, resource requirements and delivery timelines.
  • Manage engagement staffing and capacity, including special-event support, matching available skills to demand and escalating resource gaps or conflicting priorities.
  • Maintain escalation pathways, direct issues to the appropriate delivery teams, track progress and promptly raise urgent, sensitive or unresolved matters to leadership.
  • Serve as an operational point of coordination for customers, technical teams, executives, consultants and partners; communicate priorities, decisions, dependencies and next steps clearly.
  • Coordinate multiple concurrent engagements and workstreams, prioritise and delegate operational tasks, and maintain accurate status, schedules, risks, decisions and action records.
  • Lead daily and weekly operational standups and status reporting, follow through on agreed actions, and provide clear follow-the-sun handovers with explicit ownership and outstanding risks.
  • Partner with technical leads to translate investigation findings and uncertainty into clear customer updates. Coordinate dependencies for evidence preservation, containment and recovery while leaving technical decisions and execution with the responsible specialists.
  • Collaborate with Legal, Security Research, Product Groups and other internal teams to address emerging issues and remove delivery blockers.
  • Maintain and improve incident management procedures and operational workflows; identify demand trends and recurring bottlenecks, and use lessons learned to improve delivery.

Qualifications

Required / Minimum Qualifications

  • A relevant degree in Computer Science, Computer Security, Statistics, Mathematics or a related field, or equivalent practical experience in cybersecurity, incident management or related operations AND 5+ years of industry experience
  • Demonstrated experience coordinating customer-facing cybersecurity incidents or complex security service delivery, including planning and stakeholder communications.
  • Demonstrated ability to manage multiple concurrent workstreams, prioritise competing demands, delegate tasks and align resources and stakeholders under time pressure.
  • Technical fluency in enterprise cybersecurity across endpoint, identity, cloud and network environments, sufficient to understand investigation findings, dependencies and uncertainty and communicate effectively with technical specialists and customers.
  • Evidence of sound operational judgement, accurate record keeping, clear written and verbal communication, and effective follow-the-sun handovers.
  • Flexibility to work shifts, including assignments during non-standard business hours that may include evening, nighttime, weekends, and/or holidays.

Preferred Qualifications

  • Experience coordinating high-pressure incident response at enterprise scale, including executive communications, competing customer priorities and globally distributed teams.
  • Experience in capacity planning, project management, process design and operational improvement, supported by relevant methodologies or frameworks.
  • Familiarity with NIST CSF, MITRE ATT&CK, ISO 27001, and the dependencies between investigation, containment and recovery.
  • Hands-on investigation, identity security, threat hunting, forensics, scripting, KQL or automation experience that strengthens coordination and operational efficiency; these are not mandatory entry requirements.
  • Relevant security or incident/project management certifications, or equivalent practical expertise; demonstrated stakeholder influence, mentoring and resilience.

Citizenship & Citizenship Verification

This position requires verification of Australian citizenship due to citizenship-based legal restrictions. Specifically, this position supports Australian government agency customers and is subject to certain citizenship-based restrictions where required or permitted by applicable law. To meet this legal requirement, citizenship will be verified via a valid passport.

Security Clearance Requirements

Ability to meet Microsoft, customer and / or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire / transfer and every two years thereafter.

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
824,647 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Sydney
≈ $72k – $175k per year (Estimated) • In office • Full-Time • 3+ years exp • Melbourne
DevOps
AWS
Incident Management
Apply
≈ $94k – $211k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Sydney
Python
C++
YARA
DevOps
GCP
Cybersecurity
Snort
Suricata
YARA
Threat Modeling
Apply
≈ $76k – $201k per year (Estimated) • In office • Full-Time • PhD • Australia
DevOps
Incident Management
Management
ServiceNow
ITIL
Microsoft Office
Apply
≈ $21k – $46k per year (Estimated) • In office • 1+ year exp • George Town
Cybersecurity
ISO 27001
NIST CSF
Apply
SOC Analyst 2 days ago
≈ $58k – $141k per year (Estimated) • In office • Full-Time • 3+ years exp • London
DevOps
Splunk
Linux
Unix
Cybersecurity
Qualys Cloud Platform
Microsoft Sentinel
ISO 27001
SentinelOne
Microsoft Defender
NIST CSF
SIEM
Management
ITSM
Apply
≈ $28k – $60k per year (Estimated) • In office • Full-Time • 6+ years exp • India
Python
JavaScript
TypeScript
C#
Node JS
C#
.NET
AI/ML
Anomaly Detection
Frontend
React.js
DevOps
Splunk
GCP
New Relic
OpenTelemetry
Datadog
Dynatrace
Azure
CI/CD
AWS
Grafana
Self-Healing
AppDynamics
AIOps
Incident Management
Apply
≈ $41k – $72k per year (Estimated) • In office • 2+ years exp • Bachelor's Degree • Seattle
Management
Smartsheet
Outlook
Agile
Microsoft Office
Apply
$135k – $155k per year • Remote (United States) • 6+ years exp • Bachelor's Degree
JavaScript
TypeScript
Frontend
Vue.js
Tailwind CSS
Angular
Bootstrap
React.js
Storybook
Sass
DevOps
Git
Design
Adobe Photoshop
Figma
Sketch
Adobe XD
Management
Agile
Apply
$155k – $175k per year • Remote (United States) • 6+ years exp • Bachelor's Degree
Python
PowerShell
Bash
DevOps
Terraform
Puppet
Ansible
GCP
Azure DevOps
GitHub Actions
Chef
CloudFormation
GitLab CI
Azure
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Blue-Green Deployment
SRE
Platform Engineering
Chaos Engineering
Service Mesh
Configuration Management
Linux
Cybersecurity
ISO 27001
PCI DSS
SOC 2
HIPAA
Management
Agile
Apply
$160k – $180k per year • Remote (United States) • 6+ years exp • Bachelor's Degree
Python
SQL
Databases
Snowflake
Databricks
Apache Kafka
Google BigQuery
BigQuery
AI/ML
Hadoop
Spark
MLFlow
Reinforcement Learning
Scikit-learn
Computer Vision
Kubeflow
TensorFlow
Pandas
NumPy
PyTorch
Explainable AI
Feature Store
Recommender Systems
Machine Learning
DevOps
GCP
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Analytics
ETL/ELT
Management
Agile
Apply
≈ $71k – $182k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Australia
DevOps
Incident Management
Management
Agile
Apply
Security Engineer 2 days ago
$85k – $168k per year • In office • 2+ years exp • Bachelor's Degree • United States
C++
DevOps
Windows
Apply
Security Engineer 2 days ago
$102k – $202k per year • In office • 5+ years exp • Bachelor's Degree • Washington
AI/ML
Anomaly Detection
Cybersecurity
PKI
SIEM
Apply
$81k – $144k per year • In office • 8+ years exp • High School Diploma • Quebec
C++
DevOps
Windows
Apply
$60k – $140k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Redmond
Python
PowerShell
C#
C++
Scala
AI/ML
AI Agents
LLM
DevOps
TCP/IP
DNS
Cybersecurity
Microsoft Sentinel
Threat Modeling
Magnet AXIOM
SIEM
Apply
≈ $92k – $208k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Sydney
Apply
≈ $51k – $151k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Sydney
Apply
≈ $80k – $221k per year (Estimated) • In office • 8+ years exp • Sydney
Apply
Remote (Australia, New Zealand) • Sydney
Go
Go
Chi
DevOps
Self-Healing
Cybersecurity
Zero Trust
Marketing
Salesforce
YouTube
Apply
≈ $46k – $127k per year (Estimated) • In office • 3+ years exp • Sydney
Apply
See all jobs
This is one of many
824,647 more open roles from verified company boards, updated every day.