Operational Information and Security Lead

4 weeks ago


Brisbane, Australia EDL Full time

EDL owns and operates a global portfolio of power stations in Australia, North America and Europe. Our vision is to be the leading global producer of sustainable distributed energy. At EDL, we are playing a key role in the world's transition from traditional energy sources to decarbonised solutions.

The successful individual will lead the Operational Information and OT Cyber Security function under Group Engineering. Responsible for maintenance, administration, support, enhancements of the various Engineering Applications, including the company’s AVEVA PI production historian, and design, deployment, commissioning, operations, maintenance and support of the OT cyber security plan.

**Key Areas of Responsibility**:

- Management of the Engineering Applications such as Management of Change (MOC) system, Document Management System, Engineering Planning tool, Desk Booking, Engineering SharePoint subsite, Password Vault.
- Management of the OT End-Point security platform.
- Management of the AVEVA PI Production historian. Maintenance, enhancement, support of the PI platform and its Azure located servers.
- Implement and Manage OT Security Measures.
- Design, implement, and manage cybersecurity measures to safeguard Operational Technology infrastructure.
- Conduct regular risk assessments and vulnerability assessments on OT systems.
- Alignment with EDL Cyber Security Strategy and maintain the strategy outlining key objectives and action plan from an OT cyber security responsibility.
- Ensure compliance with industry cybersecurity standards, including AESCSF, NIST, and IEC62443.
- Stay abreast of updates and changes to relevant standards and incorporate them into EDL’s cybersecurity framework.
- Develop, implement and maintain incident response plans and activities for OT security incidents.
- Coordinate with cross-functional teams to address and mitigate cybersecurity incidents in a timely manner.
- Collaborate with IT and OT teams to ensure a holistic approach to cybersecurity.
- Communicate effectively with internal stakeholders, providing clear and concise updates on cybersecurity initiatives and potential risks.
- Support project delivery teams to ensure OT cyber security measures are considered in development of projects.
- Actively work with 3rd party and vendors to maximise value from products and services.
- Maintain security awareness and training programs to OT and Operational Staff to promote cybersecurity culture in conjunction with EDL cybersecurity awareness and training programs.
- Stay informed about emerging threats and vulnerabilities and disseminate relevant information to the team

**Person Specification**:

- Proficient in managing potential safety implications of engineering decisions and use of risk management practices to control hazards to ALARP (As Low As Reasonably Practicable).
- Excellent written and verbal communication skills with a high level of attention to detail.
- Ability to confidently present to both technical and business audiences.
- Demonstrated initiative, motivation, and high personal work standards to achieve Company and team objectives.
- Be able to lead a small team and support them and provide career development and training.
- Demonstrated ability in organising, developing and working with multi-disciplinary teams.
- Willingness to work flexibly, to undertake interstate and overseas trips as necessary and to work out of hours as and when reasonably required.
- Collaborate with stakeholders and build positive working with relationships with others such as Information Technology group, Operational Technology team, Engineering, Operations, Global Control Centre, and Analytics in the development of pragmatic cyber security initiatives.
- Appreciate the differences between IT and OT.
- Work in a dynamic, changeable environment, including management of conflicting priorities in high pressure situations.

**Qualifications and Experience**:

- Minimum 8 Years of proven experience in the field of cybersecurity, with a minimum of 5 years of relevant work experience as a lead in an OT environment.
- Previous experience in the power generation, utility or Major Hazard Facility industry.
- In-depth knowledge of cybersecurity standards such as AESCSF, NIST, and IEC62443.
- Experience implementing and maintaining security controls in alignment with these standards.
- Demonstrated experience working within a cyber security risk management framework.
- Demonstrated hands on experience with IP Networking, Next Gen Firewalls, IPS/IDS and Network traffic monitoring.
- Strong knowledge and experience with Continuous Threat Monitoring platforms.
- Ability to convey complex technical information to both technical and non-technical stakeholders.
- Demonstrated ability to work collaboratively in a team-oriented environment.
- Experience collaborating with cross-functional teams, including IT and OT personnel.

**Cyber Security industry Certifications which are a nice to have include**



  • Brisbane, Australia Infront Security Full time

    **Job Information**: Industry **Security and Surveillance** *** Work Experience **1-3 years** *** City **Brisbane** *** Province **Qld** *** Country **Australia** *** Postal Code **4001** *** **Security Operations Administrator** Are you passionate about protecting valuable assets and ensuring the safety and security of an organisation's...


  • Brisbane, Queensland, Australia Infront Security Full time

    Job Information:IndustrySecurity and Surveillance***Work Experience1-3 years***CityBrisbane***ProvinceQld***CountryAustralia***Postal Code4001***Security Operations AdministratorAre you passionate about protecting valuable assets and ensuring the safety and security of an organisation's premises? Do you possess strong expertise in asset security, monitoring,...

  • Platform Lead

    4 weeks ago


    Brisbane, Australia Just People Information Security Full time

    Type: Full time - Salary: up to $175,000 + super + Bonus - WFH: Hybrid As the Azure Data Platform Lead, you will be responsible for overseeing the development and implementation of our data lake and Azure data platform, ensuring that it meets the needs of the organization and drives innovation and efficiency across all aspects of...


  • Brisbane, Queensland, Australia Transport and Main Roads Full time

    As the Manager, Information Security, Risk & Governance, your accountabilities will include:Lead and operate the ISMS according to TMR's business and operational objectives ensuring alignment with TMR's obligations under legislation, regulations, and policies. Liaise and coordinate with diverse stakeholders to drive the implementation and adoption of the...


  • Brisbane, Queensland, Australia Queensland Police Service Full time

    The role is split between leadership and technical hands-on incident response, threat hunting and forensic investigation work.You will lead and improve the incident response capability, collaborating with the wider security operations team to build and automate enterprise detections and response whilst offering advice to stakeholders to support the...

  • Platform Lead

    2 weeks ago


    Brisbane, Queensland, Australia Just People Information Security Full time

    Type: Full time Salary: up to $175,000 + super + BonusWFH: HybridAs the Azure Data Platform Lead, you will be responsible for overseeing the development and implementation of our data lake and Azure data platform, ensuring that it meets the needs of the organization and drives innovation and efficiency across all aspects of operations.Responsibilities:...


  • Brisbane, Australia Transport and Main Roads Full time

    Provide a platform for QGCDG's information security risks to be managed according to the implementation of a practical Information Security Management System (ISMS) that is compliant with required Queensland Government standards. Manage the development and implementation of information security strategies, security standards, procedures, controls and...


  • Brisbane, Queensland, Australia Transport and Main Roads Full time

    Provide a platform for QGCDG's information security risks to be managed according to the implementation of a practical Information Security Management System (ISMS) that is compliant with required Queensland Government standards. Manage the development and implementation of information security strategies, security standards, procedures, controls and...


  • Brisbane, Australia Queensland Police Service Full time

    We are looking for a highly skilled and experienced Cyber Security Incident Response Lead to head up a small team of technical individuals. The role is split between leadership and technical hands-on incident response, threat hunting and forensics investigation work. You will lead and continually improve the incident response capability, collaborating with...


  • Brisbane, Australia Challenger Security Full time

    **Full Time Employment** **Competitive Salary** **Join the Team at Challenger Security: Elevate Your Career in Security Excellence!** Welcome to Challenger Security, as a leader in the industry, we are renowned for delivering top-tier security services to our global clients. Our commitment to unwavering excellence has established us as a trusted leader in...


  • Brisbane, Australia Queensland Fire and Emergency Services Full time

    About us As a department our purpose is to help the community to prevent, prepare for, respond to and recover from the impact of fire and emergency events. Queensland Fire and Emergency Services (QFES) is the primary provider of fire, rescue and emergency management programs and services throughout Queensland. The department encompasses the Fire and Rescue...


  • Brisbane, Australia Queensland Police Service Full time

    The role is split between leadership and technical hands-on incident response, threat hunting and forensic investigation work. You will lead and improve the incident response capability, collaborating with the wider security operations team to build and automate enterprise detections and response whilst offering advice to stakeholders to support the...


  • Brisbane, Queensland, Australia Queensland Fire and Emergency Services Full time

    About usAs a department our purpose is to help the community to prevent, prepare for, respond to and recover from the impact of fire and emergency events.Queensland Fire and Emergency Services (QFES) is the primary provider of fire, rescue and emergency management programs and services throughout Queensland. The department encompasses the Fire and Rescue...


  • Brisbane, Queensland, Australia Net-Security-Training Srl Full time

    QUT is seeking a Associate Professor/Professor Information Security to join School of Computer Science, Faculty of Science, Academic Division.The successful candidate will be expected to lead and make strategic contributions to teaching and research in the field of Information Security.The position holder will lead, promote and foster an inclusive high...


  • Brisbane, Australia Communities, Housing and Digital Economy Full time

    **As Manager, Security Operations you will**: - Lead a review of QSS cyber and information security arrangements and oversee the development and implementation of an action plan to improve the organisation's cyber and information security maturity. - Implement the Australian Signals Directorate Cyber Security Essential 8 Framework within QSS including...


  • Brisbane, Queensland, Australia Net-Security-Training Srl Full time

    About the Opportunity:QUT is on the lookout for an Associate Professor/Professor in Information Security to become part of the School of Computer Science within the Faculty of Science.The ideal candidate will play a vital role in leading and making strategic contributions to both teaching and research in the realm of Information Security.As a leader, the...


  • Brisbane, Queensland, Australia Energy and Public Works Full time

    We are looking for someone with strong technical information security, communication and project management skills who is interested in an opportunity to work with both business units and operational technology teams to securely deliver business objectives for the department.This role offers:- permanent government position- flexible working options-...


  • Brisbane, Queensland, Australia KAPSCH Full time

    Your Responsibilities Develop, operate and monitor the security and risk management program (according to ISO27001) to ensure the integrity, confidentiality and availability of information owned, controlled or processed by the organization. Propose and support the definition of security risk mitigation measures (technical, procedural or organizational...


  • Brisbane, Australia Just People Information Security Full time

    Large State Government Department - 12 month initial contract - Attractive salary The Cyber Security Program plays a crucial role in delivering information security priorities to enable modern healthcare delivery while maintaining the highest level of information security. We are currently seeking an experienced Technical Delivery Manager to join our team...


  • Brisbane, Australia Children, Youth Justice and Multicultural Affairs Full time

    **The role of the Principal Information Security Officer is to**: - Develop, implement, and continuously improve information security policies aligned with IS18 and ISO27001/ISO27002 standards, ensuring senior-level oversight and approval. Ensure strict adherence to IS18, Essential Eight and ISO27001/ISO27002 compliance requirements, conducting regular...