Current jobs related to Cyber Risk Analyst - Melbourne, Victoria - CYOS Solutions


  • Melbourne, Victoria, Australia Geospatial And Cloud Analytics Inc Full time

    About the RoleWe are seeking a highly skilled Cyber Governance and Risk Analyst to join our team at Geospatial And Cloud Analytics Inc. As a key member of our organization, you will play a critical role in supporting the development and implementation of our cyber security strategy.Key ResponsibilitiesSupport the definition and development of group-level...


  • Melbourne, Victoria, Australia Geospatial And Cloud Analytics Inc Full time

    About the RoleWe are seeking a highly skilled Cyber Governance and Risk Analyst to join our team at Wesfarmers. As a key member of our Group Cyber Security team, you will play a critical role in leading strategy, architecture, and risk approaches for cyber security across the Wesfarmers Group.Key ResponsibilitiesSupport the definition and development of...


  • Melbourne, Victoria, Australia Geospatial And Cloud Analytics Inc Full time

    About the RoleWe are seeking a highly skilled Cyber Governance and Risk Analyst to join our team at Geospatial And Cloud Analytics Inc. This is an exciting opportunity to work with a leading organization in the field of geospatial and cloud analytics.Key ResponsibilitiesEstablish strong relationships with stakeholders across the organization to support the...


  • Melbourne, Victoria, Australia Medibank Private Limited Full time

    About the Role:We are seeking a highly skilled Cyber Security Risk Analyst to join our team at Medibank Private Limited. As a key member of our security team, you will play a vital role in safeguarding our systems and data.Key Responsibilities:Support and evaluate implemented IT security policies, standards, and procedures across the organization.Contribute...


  • Melbourne, Victoria, Australia PowerData Group Consulting Full time

    Job Title: Senior Cyber Security Systems AnalystWe are seeking a highly skilled Senior Cyber Security Systems Analyst to join our team at PowerData Group Consulting. As a key member of our team, you will play a critical role in the implementation and adoption of a secrets management solution to increase cyber security capability and reduce enterprise...


  • Melbourne, Victoria, Australia CYOS Solutions Full time

    Job Title: Senior Cyber Security AnalystCyber Secrets Management project is seeking a technical Senior Systems Analyst with cyber security specialisation to work on implementation and agency adoption of a secrets management solution (HashiCorp Vault) to increase cyber security capability and reduce enterprise risk.Key Responsibilities:Perform detailed...


  • Melbourne, Victoria, Australia Farm Credit Services Full time

    About the RoleWe are seeking a highly skilled Cyber Security Analyst to join our team at Farm Credit Services. As a key member of our IT department, you will play a critical role in protecting our systems and data from cyber threats.Key ResponsibilitiesPerform periodic vulnerability scans using automation tools to identify potential security risks.Analyze...

  • Cyber Defence Analyst

    2 weeks ago


    Melbourne, Victoria, Australia TeamLogic IT of Northeast Massachusetts Full time

    About the RoleWe are seeking a highly skilled Cyber Defence Analyst to join our team at TeamLogic IT of Northeast Massachusetts. As a key member of our cybersecurity team, you will be responsible for operating proactively to establish strong and effective relationships with a diverse range of stakeholders.Key ResponsibilitiesPerform cyber defence trend...


  • Melbourne, Victoria, Australia Geospatial And Cloud Analytics Inc Full time

    About the RoleWe are seeking a highly skilled Cyber Governance and Risk Analyst to join our team at Wesfarmers. As a key member of our Group Cyber Security team, you will play a critical role in leading strategy, architecture, and risk approaches for cyber security across the Wesfarmers Group.Key ResponsibilitiesSupport the definition and development of...


  • Melbourne, Victoria, Australia ignite Full time

    Exciting Cyber Security OpportunityWe are seeking a highly skilled Cyber Security Analyst to join our team in Canberra or Geelong. As a key member of our Cyber Security team, you will play a critical role in developing and delivering capabilities to protect our organization's assets.Key Responsibilities:Conduct threat analysis and mitigation to identify and...


  • Melbourne, Victoria, Australia PRA Australia Full time

    About the RolePRA Australia is seeking a highly skilled Cyber Security Threat Analyst to join their team on a permanent basis.As a Cyber Security Threat Analyst, you will be responsible for monitoring, analyzing, and responding to security incidents. Your expertise will be invaluable in proactively identifying and mitigating potential risks.Key...


  • Melbourne, Victoria, Australia Geospatial And Cloud Analytics Inc Full time

    About the RoleWe are seeking a highly skilled Cyber Governance and Risk Analyst to join our team at Wesfarmers. As a key member of our Group Cyber Security team, you will play a critical role in leading strategy, architecture, and risk approaches for cyber security across the Wesfarmers Group.Key ResponsibilitiesSupport the definition and development of...


  • Melbourne, Victoria, Australia Divvy Cloud Corp. Full time

    About the RoleWe are seeking a highly motivated and detail-oriented Cyber Security Analyst to join our team at Divvy Cloud Corp. as an Associate Cyber Security Specialist.Key Responsibilities:Review alert data to identify malicious activity in customer environments.Investigate security incidents, including evidence acquisition and analysis, to identify...


  • Melbourne, Victoria, Australia Divvy Cloud Corp. Full time

    About the RoleWe are seeking a highly motivated and detail-oriented Cyber Security Analyst to join our team at Divvy Cloud Corp. as an Associate Cyber Security Specialist.Key Responsibilities:Review alert data to identify malicious activity in customer environments.Investigate security incidents, including evidence acquisition and analysis, to identify...


  • Melbourne, Victoria, Australia Capstone Recruitment Full time

    The OpportunityWe are seeking a highly skilled Cyber Security Analyst to join our team. As a key member of our security operations, you will be responsible for identifying and mitigating emerging security threats, improving incident response capabilities, and developing secure solutions that meet business needs while managing risk.Key ResponsibilitiesUplift...


  • Melbourne, Victoria, Australia Capstone Recruitment Full time

    The OpportunityWe are seeking a highly skilled Cyber Security Analyst to join our team. As a key member of our security operations, you will be responsible for identifying and mitigating emerging security threats, improving incident response capabilities, and developing secure solutions that meet business needs while managing risk.Key Responsibilities:Uplift...


  • Melbourne, Victoria, Australia XPT Software Australia Pty Ltd Full time

    Cyber Secrets Management ProjectThe Cyber Secrets Management project is focused on implementing and adopting a secrets management solution (HashiCorp Vault) to enhance cyber security capabilities and reduce enterprise risk. We are seeking a technical Senior Systems Analyst with cyber security specialisation to join our team.Key ResponsibilitiesPerform...


  • Melbourne, Victoria, Australia XPT Software Australia Pty Ltd Full time

    Cyber Secrets Management ProjectThe Cyber Secrets Management project is focused on implementing a secrets management solution (HashiCorp Vault) to enhance cyber security capabilities and reduce enterprise risk. We are seeking a technical Senior Systems Analyst with cyber security specialisation to join our team.Key ResponsibilitiesPerform detailed analysis...


  • Melbourne, Victoria, Australia PRA Australia Full time

    PRA Australia, a leading financial services company, is seeking a highly skilled Cyber Security Threat Analyst to join their team on a permanent basis.As a Cyber Security Threat Analyst, you will be responsible for monitoring, analyzing, and responding to security incidents. Your insights will be invaluable in proactively identifying and mitigating potential...


  • Melbourne, Victoria, Australia Grant Thornton Full time

    About the RoleWe are seeking a highly skilled Cyber Risk Specialist to join our Cyber and Technology Risk practice in Melbourne or Sydney. As a key member of our team, you will play a vital role in shaping the cyber risk landscape for our clients across diverse industries.Key ResponsibilitiesParticipate in and lead technical assessments of clients' IT...

Cyber Risk Analyst

3 months ago


Melbourne, Victoria, Australia CYOS Solutions Full time

Application closing date: Monday, 03 June 2024
• 11:59pm, Canberra time

Estimated start date: Monday, 01 July 2024

Location of work: VIC

Working arrangements: The work is to be performed at the offices of Services Australia in the respective city. Some remote working arrangements may be considered on a case to case basis.

Length of contract: 12 months

Contract extensions: 2x 12 months

Security clearance: Must have Negative Vetting Level 1

Rates: $100 - $120 per hour (inc. super)

The Cyber Uplift and Safety Program (CUSP) is focussed on improving the maturity of cyber controls and identifying and mitigating vulnerabilities in the environment. CUSP is seeking a Cyber Risk Analyst to collaborate with the CUSP team to assess enterprise risk. Risks need to be appropriately documented and communicated to influence effective change. Assessment of risks should align with the Essential Eight, Protective Security Policy Framework (PSPF) and the Agency's risk framework.

The Cyber Risk Analyst will be required to undertake work that is highly complex or sensitive and operate under broad direction. They will exercise a considerable degree of independence and perform in a leadership level role. The Cyber Risk Analyst will exercise sound decision making and judgement to produce high level risk and assurance advice.

The following experience and knowledge is required:

  • Extensive experience with risk and information security frameworks, policies and standards, including the Federal Government PSPF and Information Security Manual (ISM), and international standards (ISO 27001/2).
  • Think strategically with the aim to reduce impact of enterprise risks.
  • Demonstrated working experience in security threat and risk assessment and development of documentation.
  • Demonstrated security experience within complex ICT environments.
  • Strong stakeholder management skills, and the ability to communicate security concepts to non-technical audiences both verbally and in writing.
  • Current and up to date knowledge of common threats and vulnerabilities used by threat actors.
  • Ability to transfer knowledge and develop capability within the team.
  • Tertiary or other relevant qualifications are advantageous.

Key duties may include, but are not limited to:

  • Identify, test, and assess applicable security controls in line with the Australian Government PSPF, ISM and agency policies and guidelines.
  • Assess the impact of risk against Enterprise Risk tolerance.
  • Collaborate widely to ensure risk is assessed at an enterprise level and all plausible remediation activities are identified.
  • Analyse and document security risk and recommend treatments and modifications to security practices and procedures using expertise and technical knowledge.
  • Undertake security risk assessments on key technology components and identify areas for remediation and appropriate remediation controls.
  • Work with the existing team members to analyse the cyber risks identified within the broader risk and controls environment to inform an assessment of the risk exposure.
  • Undertake the categorisation and prioritisation of cyber risks (and associated remediation actions) identified.
  • Document risk assessments within Service Australia templates.
  • Facilitate discussions with system owners and technical leads around the risks identified and the appropriate remediations.
  • Manage, develop, and support complex relationships with stakeholders to achieve work area goals.
  • Assist with the development and implementation of security policies, procedures, projects, and strategies.
  • Continuously work to improve the efficiency and effectiveness of the cyber security service.
  • Share knowledge and skills to identify and develop capability within the team.
  • Educate and inform departmental staff to promote understanding and ensure adherence to security policy and processes.

Essential Criteria

  • Extensive demonstrated experience with risk and information security frameworks, policies, and standards, including the Federal Government Protective Security Policy Framework (PSPF) and Information Security Manual (ISM), Essential Eight and international standards (ISO 27001/2).
  • Experience analysing risks associated with cyber vulnerabilities, external perimeter technologies (firewall and gateway services specifically) of complex environments.
  • Ability to transfer knowledge and build capability within the team.
  • Ability to document and communicate risk exposure to executive staff effectively to influence necessary change.

Desirable Criteria

  • Experience undertaking enterprise level cyber risk analysis at large Government departments on highly complex technology environments.
  • Experience working with system owners and business stakeholders to develop appropriate remediation plans that take into account the underlying business functions and requirements.
  • Strong verbal and written communication skills with the ability to convey complex technical concepts to non-technical senior stakeholders.
  • Demonstrated ability to think critically and solve complex problems
  • Strong stakeholder management skills, and the ability to communicate security concepts to non-technical audiences both verbally and in writing.
  • Relevant tertiary or other qualifications.