
Control Lead Security Posture Management
2 days ago
Control Lead Security Posture Management ( Senior Manager)
You are a cyber security risk and control professional with a background in Vulnerability Management control design and implementation
We are one of the best and most advanced Cyber Security teams in Australia
Together we can build the Cyber Controls Chapter Area and contribute to protecting the Group, its customers and community.
See yourself in our team: The Cyber Controls Chapter Area plays a crucial function within the Group Security division, being responsible for designing and deploying effective cyber control capabilities and overseeing continuous improvement of the Group's cyber risk profile.
As a large, tech‑driven organisation serving millions of customers daily, we must continuously harden our environment against an evolving threat landscape. This role leads the enterprise‑wide Secure Configuration Management (SCM) control capability, ensuring secure baselines are defined, deployed, monitored and continuously improved across all major asset classes. You'll also provide rules‑based security posture management oversight (CSPM/SSPM/KSPM/Network/Posture-as-Code) and drive timely, risk‑informed remediation of baseline exceptions.
We support our people with the flexibility to balance where work is done with at least half your time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work for you.
Do work that matters Providing subject-matter expertise to Technology Crew Leads and Product Owners in setting the strategic roadmap for Security Configuration Management, Cloud Security Posture Management, SaaS Security Posture Management and API Vulnerability Management capabilities, overseeing control operation, and supporting delivery of control remediation to achieve target risk outcomes.
Establishing and maintaining control standards and guidelines to align with changes in industry standards, technology strategy and threat intelligence.
Governing the Group's compliance with Security Configuration Management control requirements and supporting the business in tracking remediation of critical security weaknesses and improvement of overall risk posture.
You will also:
Ensure Security Configuration and Posture Management operation adheres to the Group Operational Risk Management Framework.
Define the control testing approach to support automated control performance monitoring.
Carry out annual control effectiveness assessments and drive appropriate risk remediation to address identified control weaknesses.
Assist the CTO CIO for Technology and GTS Infrastructure Transformation teams to achieve their goals, who are responsible for the operation of vulnerability remediation across the Group's critical applications and infrastructure.
Maintain positive stakeholder engagement with product owners, security engineers, and adjacent cyber security teams in relation to the development and lifecycle of secure configuration baselines and posture rulesets.
We are interested in hearing from people who have:
Security Standards & Frameworks
Applied knowledge of ASD ISM, NIST, CIS, and Essential Eight mitigation strategies.
Familiarity with vulnerability prioritisation frameworks like CVSS and EPSS.
Security certifications such as CISSP, CISM, or CRISC are highly desirable.
Tools & Technologies
Hands-on experience with policy compliance and security posture tools (e.g., Qualys, Wiz, NoName, Obsidian).
Skilled in hardening endpoints and cloud services.
Strong understanding of system security principles and automation for continuous compliance and reporting.
Threat & Vulnerability Management
Ability to analyse threat intelligence, identify risks, prioritise vulnerabilities, and recommend mitigations.
Experience implementing patch management programs and working with enterprise vulnerability management solutions.
If you're already part of the Commonwealth Bank Group (including Bankwest, x15ventures), you'll need to apply through Sidekick to submit a valid application. We're keen to support you with the next step in your career.
We're aware of accessibility issues on this site; if you require additional support please contact HR Direct on 1800 989 696.
#J-18808-Ljbffr
-
Control Lead Security Posture Management
1 day ago
Sydney, New South Wales, Australia Commonwealth Bank Full timeOverviewControl Lead Security Posture Management ( Senior Manager)You are a cyber security risk and control professional with a background in Vulnerability Management control design and implementationWe are one of the best and most advanced Cyber Security teams in AustraliaTogether we can build the Cyber Controls Chapter Area and contribute to protecting the...
-
Vulnerability Posture Management Lead
6 days ago
Sydney, New South Wales, Australia beBeeSecurity Full time $120,000 - $180,000Job SummaryThe Reserve Bank of Australia seeks a seasoned professional to lead and deliver a comprehensive vulnerability posture management program, ensuring alignment with the organisation's cybersecurity strategy.Key ResponsibilitiesDevelop and mature the Reserve Bank of Australia's Vulnerability Posture Management program, defining its scope and...
-
Leading Cybersecurity Posture Management
10 hours ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time $104,999 - $154,999Job Title: Cybersecurity Posture Management LeadAbout the RoleDevelop and lead a comprehensive cybersecurity posture management program, ensuring alignment with our overall security strategy.This is a mid-senior level position requiring a minimum of 3 years' experience in a dedicated vulnerability or posture management role. Key skills include:Familiarity...
-
Senior Information Security Manager
4 days ago
Sydney, New South Wales, Australia beBeeVulnerability Full time $120,000 - $180,000Vulnerability Posture Management OpportunityJob Overview:We are seeking a seasoned security professional to lead our vulnerability posture management efforts.Key Responsibilities:Vulnerability Posture StrategyDevelop and Maintain Proactive Approach: Identify, assess, and mitigate potential security risks through proactive measures.Collaborate with...
-
Senior Vulnerability Posture Manager
2 days ago
Sydney, New South Wales, Australia beBeeVulnerability Full time $180,000 - $230,000Job Title: Senior Vulnerability Posture ManagerWe are seeking an experienced Senior Vulnerability Posture Manager to join our team.About the Role:The Senior Vulnerability Posture Manager will be responsible for leading and delivering a comprehensive vulnerability posture management program, ensuring alignment with our cybersecurity strategy. This role...
-
Manager, Vulnerability Posture Management
5 days ago
Sydney, New South Wales, Australia Reserve Bank of Australia Full timeManager, Vulnerability Posture Management (VPM)Join to apply for the Manager, Vulnerability Posture Management (VPM) role at Reserve Bank of AustraliaManager, Vulnerability Posture Management (VPM)5 days ago Be among the first 25 applicantsJoin to apply for the Manager, Vulnerability Posture Management (VPM) role at Reserve Bank of AustraliaGet AI-powered...
-
Manager, Vulnerability Posture Management
1 week ago
Sydney, New South Wales, Australia Reserve Bank of Australia Full timeManager, Vulnerability Posture Management (VPM)Join to apply for the Manager, Vulnerability Posture Management (VPM) role at Reserve Bank of AustraliaManager, Vulnerability Posture Management (VPM)5 days ago Be among the first 25 applicantsJoin to apply for the Manager, Vulnerability Posture Management (VPM) role at Reserve Bank of AustraliaGet AI-powered...
-
Security Posture Specialist
2 days ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time $100,000 - $140,000Cybersecurity Governance Analyst RoleSteadfast Group is the largest general insurance broker network and underwriting agency group in Australasia, with growing international operations.We were founded on the idea that a network of brokers would be stronger together. This philosophy has been at the core of our culture since inception.We believe that no single...
-
Cloud Security Control Lead
1 day ago
Sydney, New South Wales, Australia Commonwealth Bank Full timeCloud Security Control lead ( Senior Manager) Are you a cyber security risk and control professional with a background in cloud security control design and implementation ? We are one of the best and most advanced Cyber Security teams in Australia. Together we can build the Cyber Controls Chapter Area and contribute to protecting the Group, its customers and...
-
Cloud Security Control Lead
3 days ago
Sydney, New South Wales, Australia Commonwealth Bank Full timeCloud Security Control lead ( Senior Manager) Are you a cyber security risk and control professional with a background in cloud security control design and implementation ? We are one of the best and most advanced Cyber Security teams in Australia. Together we can build the Cyber Controls Chapter Area and contribute to protecting the Group, its customers and...