Specialist, Security Risk

2 weeks ago


Sydney, Australia NSW Government -Engineering & Maintenance Full time

**About us**

At Sydney Trains our vision is to keep Sydney moving by putting the customer at the centre of everything we do. We work at the heart of local communities and integrate cutting edge technology to deliver efficient rail services which exceed expectations and support a rapidly growing economy. Sydney Trains also operate the Rail Operations Centre and are responsible for the maintenance of assets including tracks, trains, signals, overhead wiring, stations and facilities. We conduct our operations in the community in compliance with the principles of ecologically sustainable development.

Our Operational Technology Unit within Network Maintenance is responsible for ensuring high availability and reliability of Control Systems, Wireless and Fixed voice and data networks, Condition Monitoring and Passenger Information infrastructure and Cyber Security of Operational Systems.

**The opportunity**

Right now, we have opportunities for a Specialist, Security Risk and Compliance and Specialist, Third Party Security to join us in the Operational Technology Unit to lead the way in ensuring cyber security risks are appropriately managed for our operational systems.

**Specialist, Security Risk and Compliance** is responsible for:

- Implementing the security risk strategy and providing cyber governance and risk management oversight
- Leading the security risk assessments and compliance programs, and developing key metrics to monitor risk management
- Leading the awareness of risk management standards, strategies, practices and procedures across the Branch
- Leading the regulatory compliance reporting obligations for NSW government Cyber Security Policy and the federal government Critical Infrastructure Act
- Managing the Cyber Security Management System (CSMS), cyber risk frameworks and maintaining the Cyber risk registers
- Leading the development of incident response plans and playbooks and desk top exercises to ensure appropriate readiness to events and continuous improvement

**Specialist, Third Party Security** is responsible for:

- Working with and conducting security assessments of all Third Parties and contractors.
- Working with Procurement teams on Request for Proposals (RFP) and contracts and advising on security issues
- Planning and conducting risk assessments of third parties with regards to their cyber security capabilities and maturity, with reference to ISO27001 and Cyber Security Management System (CSMS) framework
- Preparing and presenting third party and supply chain cyber risk reports and attestations to management, key committees, and other relevant stakeholders
- Developing risk remediation plans to address identified third party risks, working with security, technical and procurement teams

**About you**

For both roles you are tertiary qualified in a relevant Engineering, Technology or Cyber Security discipline with an understanding of IEC 62443 and ISO 27001 standards, looking for an opportunity that will give you exposure help shape Sydney Trains cyber security strategy.

Your strong stakeholder engagement and communication skills will ensure your ability to present highly technical information in an understandable manner, and then influence a variety of stakeholders to follow the required cyber security standards that will in effect drive improvement and change.

Ideally, you will also have a strong grasp of Cyber Security and Operational Technology and a demonstrated understanding of managing interface issues between various technical, production and operational disciplines.

You will have a strong understanding of cyber security risk management and the various cyber security standards and frameworks. Cyber Security and/or Risk Certifications such as CISSP, CISM, and CRISC, will be highly regarded.

**Interested?**

Right now is an exciting time to join our team as we prepare to meet the needs of customers with a world-class rail system.

**Salary and benefits**

RC Grade 7 $143,555 - $157,945 plus super & annual leave loading
- Sydney Trains offers its employees challenging and rewarding work with opportunities for career progression, learning and development and work-life balance. Other benefits include:

- Free travel on Government trains, buses and ferries
- Flexible work practices

**Need help?**

**Applications Close**: Sunday 7 August at 11:59pm

**We are the community we serve**

We are committed to being an inclusive, diverse and flexible workplace where differences are valued. We welcome people of all backgrounds, experience and abilities.

We enable our people to work in ways that work for them and their teams. Working virtually and from different locations including regional locations, staggering work hours and job sharing are just some of the ways our people can work flexibly.

Please contact the Talent Specialist if you require any adjustments to be made to how you interact with us throughout the recruitment process or would like to discuss flexible work options.



  • Sydney, New South Wales, Australia beBeeSecurityRisk Full time $100,000 - $150,000

    Job DescriptionWe are seeking a skilled Security Risk Specialist to play a vital role in safeguarding our environment and fostering a culture of inclusion and belonging.The Protective Services team is responsible for ensuring the physical safety and security of our people, spaces, and events.You will be instrumental in helping our teams work safely and...


  • Sydney, Australia Xero Full time

    Xero is a beautiful, easy-to-use platform that helps small businesses and their accounting and bookkeeping advisors grow and thrive. At Xero, our purpose is to make life better for people in small business, their advisors, and communities around the world. This purpose sits at the centre of everything we do. We support our people to do the best work of...


  • Sydney, New South Wales, Australia beBeeRisk Full time

    Job Role: Physical Security Risk Specialist">The role focuses on creating a safe environment for employees while embracing the company's values of inclusion and belonging.This involves identifying, assessing, and monitoring potential risks to the organization and supporting the implementation of programs to manage those risks.Key responsibilities include...


  • Sydney, New South Wales, Australia black Full time

    Company Description Job Description Join the team redefining how the world experiences design.Hey, g'day, mabuhay, kia ora,你好, hallo, vítejteThanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.Where and how you can workThis role is based...


  • Sydney, New South Wales, Australia black Full time

    Job Description Join the team redefining how the world experiences design.Hey, g'day, mabuhay, kia ora,你好, hallo, vítejteThanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.Where and how you can workThis role is based onsite at our flagship...


  • Sydney, New South Wales, Australia black Full time

    Job Description Join the team redefining how the world experiences design.Hey, g'day, mabuhay, kia ora,你好, hallo, vítejteThanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.Where and how you can workThis role is based onsite at our flagship...


  • Sydney, New South Wales, Australia black Full time

    Job Description Join the team redefining how the world experiences design.Hey, g'day, mabuhay, kia ora,你好, hallo, vítejteThanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.Where and how you can workThis role is based onsite at our flagship...


  • Sydney, New South Wales, Australia beBeeSecurity Full time $90,000 - $120,000

    Job SummaryWe are seeking a skilled Physical Security Risk Specialist to create and maintain a safe working environment.Main Responsibilities:Assess physical security risks and develop mitigation strategiesImplement security measures to prevent unauthorized accessConduct regular security audits to ensure compliance with regulationsRequired Skills and...


  • Sydney, Australia Reserve Bank of Australia Full time

    We have a 12 Month Contract opportunity for a motivated and knowledgeable security risk analyst to provide specialised skills in relation to security governance & compliance, risk and assurance to meet the requirements of the IT Department risk function. In this role you will provide assurance over the Bank’s controls for IT risk, as well continual...


  • Sydney, Australia NSAA Security Full time

    **Overview** NSAA Security is seeking a **Cybersecurity Sales Specialist** with strong technical expertise and a consultative approach to drive business growth across Australia and international markets. This role is ideal for professionals experienced in delivering impactful product demos, leading pilots, and engaging in high-level security discussions...