Cyber Grc Analyst

2 weeks ago


Ballarat, Victoria, Australia Grampians Health Full time

Location:
Western Region | Ballarat

Job type:
Full time

Organisation:
Grampians Health

Salary:
Salary not specified

Occupation:
IT and Telecommunications, Planning

Reference: 18003

Cybersecurity Governance, Risk and Compliance (GRC) Analyst
Full Time - Permanent
80 hours a fortnight with monthly ADO

About Grampians Health


Grampians Health was established 1 November 2021, bringing together Edenhope and District Memorial Hospital, Stawell Regional Health, Wimmera Health Care Group and Ballarat Health Services to deliver safe, sustainable, healthcare tailored to changing workforce and community needs, for the long term.

This partnership follows years of strong collaboration and close partnerships between the four health services. Together, we will deliver better healthcare, enhance services and advance careers, closer to home, now and into the future.


A career with Grampians Health means you are connected and are part of a team providing quality healthcare to rural and regional communities.

Our communities are diverse, as is our workforce, with expert clinical staff from across the world choosing to live and work in our beautiful region.

Grampians Health provides acute, maternity, mental health, allied health, aged care, administration and support services. This means your career will be as diverse and rewarding as you strive to be.

About the role


The Grampians Rural Health Alliance (GRHA) provides IT services to multiple health services across the Grampians region including Grampians Health.

We seek an enthusiastic and experienced Cybersecurity Governance, Risk and Compliance Analyst to join our growing team, to support the success of the cyber program.


The Cyber GRC Analyst will role works closely with ICT and business stakeholders to develop and implement effective Cybersecurity policies & procedures, to implement controls to manage cyber risks and protect sensitive data and systems from cyber threats, and develop reporting relevant for senior leadership and business audiences.


This role will also assist with conducting information security risk assessments (including third-party vendors and auditors), improving and managing the security awareness program, designing and managing security control testing, and developing our evidencing framework in alignment with best practices.


Key Responsibilities

  • Ensure GH/GRHA IT security is kept at a high standard by ensuring that all work completed is done so by incorporating appropriate security controls in alignment with the Department of Health Cybersecurity program when designing or updating any system
  • Lead the development of the GH/GRHA Cybersecurity Strategy and Action Plan to achieve control maturity targets and audit recommendations
  • Work with the Infrastructure (Systems and Network) teams to develop implementation/test plans for relevant security controls, including establishing a cadence for internal audits as necessary
  • Ensure compliance of endpoint devices, and effectiveness of backup & recovery systems is maintained
  • Performing regular monitoring and reporting activities of the M365/Azure environments, with attention to producing accurate secure scores and actioning recommendations

Skills and experience

  • Tertiary degree in cyber security, information technology, computer science or computer systems engineering discipline,
    or Relevant Industry Certifications such as MCSE,

MCITP:
EA, CEH, CompTIA Security+, CISSP, CISM, CISA, CRISC, CASP+, etc.
or 4+ Years relevant industry experience

  • Practical experience in developing Cyber controls and assurance of controls
  • Understanding of compliance with security frameworks (ISM, Essential 8, NIST, and CIS)
  • Understanding and experience with risk management frameworks (VGRMF, ISO27001, SOCI, NIST)
  • Proven ability to analyse data and trends, develop and implement GRC strategies, and identify and mitigate risks

Grampians Health Culture & Benefit
At Grampians Health, we recognise our staff are our greatest asset.

We are committed to providing a safe and healthy environment for our staff, patients, residents, visitors, volunteers and contractors at all sites.


  • Salary packaging for living expenses such as rent/mortgage plus meals, entertainment & holidays
  • Access to discounted health club membership
  • Staff rewards and recognition programs
  • 5 weeks annual leave per year

Ballarat Region
Ballarat is the largest centre in Western Victoria and the states fastest growing inland city. Dubbed Australia's most liveable city in 2020, Ballarat is home to first class education, fine dining and boutique shopping.

Uniquely located within easy access to Melbourne, Geelong, Bendigo and the Western district, Ballarat is blessed with some of Australia's most significant heritage buildings and natural landscapes.


How to apply
Click
APPLY or contact Bernhard Heemann, Director of Cybersecurity, on for a confidential discussion.

All employees m

  • Ballarat, Victoria, Australia Council of Australasian Museum Directors Full time

    This is a part time role, for a fixed term of 18 months. There may be an opportunity for a future ongoing role. Location Contact name Contact email The Sovereign Hill Museums Association is a not-for profit community-based organisation that includes: Sovereign Hill Outdoor Museum, Sovereign Hill Hotel, AURA and Narmbool, the Australian Centre for Rare...

  • Cyber Grc Analyst

    7 days ago


    Ballarat, Australia Grampians Health Full time

    Location: Western Region | Ballarat Job type: Full time Organisation: Grampians Health **Salary**: Salary not specified Occupation: IT and Telecommunications, Planning Reference: 18003 **Cybersecurity Governance, Risk and Compliance (GRC) Analyst** Full Time - Permanent 80 hours a fortnight with monthly ADO **About Grampians Health** Grampians Health...


  • Ballarat, Australia TRIUMPH TECH Full time

    **Your duties will include but are not limited to**: This role is responsible for working within a Security Operations Centre and delivering exceptional analysis services; - Keep up to date with the latest security and technology developments. - Research/evaluate emerging cyber security threats and ways to manage/mitigate them. - Plan for disaster recovery...