Skip to content

Open nowPosted 24 hours ago

Principal Consultant - Security

LAB316 open roles

Where
Australia
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowPrincipal Consultant - SecurityLAB3 · Australia
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on LAB3's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.8%1 day
  2. 3.6%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.0%30 days
This job: posted 24 hours ago

The posting

LAB3 is one of the largest Azure engineering practices in the Australasia region with a focus on Cloud & DevOps, Data, IoT & AI, Modern Workplace, Security, and Network services. We are looking for a Principal Consultant to join our Security Practice. You will be responsible for shaping, designing, and leading the delivery of enterprise‑grade Microsoft security solutions across cloud, hybrid, and identity platforms. The role combines deep technical expertise with strong client engagement and consulting capability. You will act as a trusted security advisor to clients, working across complex and high‑profile environments to uplift security maturity and enable secure transformation.   Role responsibilities:

Lead end-to-end Microsoft security engagements from strategy and architecture through to delivery and operational handover, owning technical direction, quality and outcomes across complex client programmes

Architect and build Microsoft Sentinel environments covering data onboarding, log source integration, analytics rule design, KQL-based threat detection and SOAR automation with the ability to conduct Sentinel assessments and produce actionable remediation roadmaps where required

Provide architectural leadership across Microsoft Defender XDR for Endpoint, Identity, Office 365 and Cloud Apps, and lead Defender for Cloud deployments covering CSPM, CWPP and Secure Score optimisation

Lead the design of hybrid and cloud identity security architectures across Active Directory and Microsoft Entra ID, including identity governance, passwordless authentication, Zero Trust alignment and least-privilege access models

Embed security controls into IaC and CI/CD pipelines through DevSecOps practices, define endpoint security and application control strategies including WDAC, and lead security automation and orchestration across cloud and identity platforms

Act as a trusted security advisor to senior client stakeholders, leading workshops, threat modelling sessions and security roadmap engagements, and producing high-quality deliverables for technical and executive audiences

Support pre-sales and engagement shaping, contribute to LAB3 security reference architectures and intellectual property, and mentor engineers and consultants to uplift capability across the Security Practice 

  Technical Skills:

Microsoft Cloud & Security Platforms 

 

Senior‑level technical leadership with the expectation that hands‑on engineering involvement may be required from time to time. 

Expert‑level knowledge of Microsoft Azure security services and cloud‑native security controls. 

Microsoft Defender for Cloud (CSPM & CWPP) including Secure Score optimisation, regulatory compliance, and workload protection. 

Azure Policy for governance, compliance enforcement, and security posture management. 

  Security Operations, SIEM & XDR 

Microsoft Sentinel (SIEM/SOAR) architecture, analytics design, KQL hunting, automation, and playbooks. 

Microsoft Defender XDR across Endpoint, Identity, Office 365, and Cloud Apps. 

Security operations leadership across hybrid and cloud environments. 

  Identity & Access Management 

Hybrid identity security across Active Directory and Microsoft Entra ID. 

Microsoft Entra ID Governance, including Joiner‑Mover‑Leaver processes, access packages, entitlement management, and access reviews. 

Microsoft Entra External ID (B2B, B2C, cross‑tenant access). 

Workload and service identities using managed identities, service principals, and least‑privilege access models. 

  Authentication & Zero Trust 

Passwordless and phishing‑resistant authentication (FIDO2, Windows Hello for Business, MFA). 

Application of Zero Trust principles across identity, device, application, and data layers. 

  Data Protection & Compliance 

Microsoft Purview for Data Loss Prevention (DLP) and Information Protection. 

Data discovery, classification, sensitivity labelling, and policy‑based protection controls. 

  Endpoint & Application Security 

Endpoint protection and hardening using Microsoft Defender technologies. 

Windows Defender Application Control (WDAC) strategy and policy design. 

  DevSecOps, Automation & Delivery 

  Security‑as‑code and CI/CD integration.

Security automation and orchestration using Microsoft tooling.

Delivery within Agile environments (Azure DevOps, Jira).  Strong architectural documentation and operational runbooks.

 

What’s in it for you?  

Be part of a team that leverages modern technologies to solve real problems and provides top level of customer satisfaction

Work with a Microsoft Partner of the Year award winner with multiple specialisations

Be supported by experienced peers and leaders that value technical expertise and encourage innovation, with clear career pathways and ongoing learning

Enjoy a supportive workplace that promotes inclusion, flexibility, diversity, and celebrates differences.

Take advantage of largely working from home in our remote/hybrid workplace and enjoy the flexibility to balance your life

Thrive in a community with strong values #BeTrue #TeamUp #StandOut #ThinkAhead #FearLessAchieveMore

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against LAB3's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on LAB3's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    LAB3's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.