Current jobs related to Cloud Security Control Lead - Melbourne, Victoria - Commonwealth Bank – Technology


  • Melbourne, Victoria, Australia Kaizen Global Technologies Full time $120,000 - $180,000 per year

    Job Title:Security Team EngineerDuration: PermanentLocation: Melbourne OR Sydney, AustraliaSummary:We are seeking a skilledSecurity Team Engineerto join our team on a permanent basis inMelbourne or Sydney, Australia. This role is ideal for a security-focused professional with strong experience in cloud-native environments, and centralized logging and...

  • Lead Cloud Engineer

    6 days ago


    Melbourne, Victoria, Australia Restive Full time $120,000 - $180,000 per year

    This is open to Melbourne-based candidates only. The is a full-time role on a hybrid work arrangement, working two days in the office and three days remotelyAbout The RoleWe are looking for a highly skilled and motivatedLead Cloud Engineerto join our team. In this role, you will take ownership of designing, implementing, and supporting cloud solutions on AWS...


  • Melbourne, Victoria, Australia Heidi Full time $120,000 - $180,000 per year

    Who are Heidi?Heidi is on a mission to halve the time it takes to deliver world-class care.We believe that by 2050, every clinician will practice with AI systems that free them from administrative burdens and increase the quality and accessibility of care to patients across the world.Built for clinicians, by clinicians, at the core of Heidi is its people. We...


  • Melbourne, Victoria, Australia Heidi Health Full time $120,000 - $200,000 per year

    Who are Heidi?Heidi is on a mission to halve the time it takes to deliver world-class care.We believe that by 2050, every clinician will practice with AI systems that free them from administrative burdens and increase the quality and accessibility of care to patients across the world.Built for clinicians, by clinicians, at the core of Heidi is its people. We...


  • Melbourne, Victoria, Australia Vanguard Full time $80,000 - $120,000 per year

    Provides intermediate level technical support designing, implementing, and maintaining cloud security platforms. Identifies, resolves, or escalates security platform issues.About VanguardMore than 45 years ago, John C. Bogle had a vision to start an investment company that did things differently. A company with no external shareholders. Where all the profits...


  • Melbourne, Victoria, Australia Victorian Institute of Teaching Full time $131,053 - $153,213 per year

    Salary range $131,053 - $153,213 plus statutory super.Are you a cybersecurity expert looking to make a meaningful impact beyond just protecting systems? Can you stay ahead of evolving cyber threats while shaping the future of cloud governance in a purpose-driven organisation? Are you ready to bring your expertise to a forward-thinking regulator that values...


  • Melbourne, Victoria, Australia Vanguard Australia Full time $70,000 - $120,000 per year

    About VanguardMore than 45 years ago, John C. Bogle had a vision to start an investment company that did things differently. A company with no external shareholders. Where all the profits were invested back into the business and used to lower costs. Evidently, it was as bold as it was brilliant. To this day, Vanguard Group still has no external shareholders....


  • Melbourne, Victoria, Australia Victorian Government Full time $131,053 - $153,213 per year

    OverviewWork Type: Ongoing - Full-timeSalary: $131,053 - $153,213Grade: VIT6Occupation: IT and telecommunicationsLocation: Melbourne - CBD and Inner Metro suburbsReference: VG/3003The Victorian Institute of Teaching (VIT) is an independent statutory authority, whose primary function is to regulate members of the teaching profession. About usThe VIT's vision...

  • Security Officer

    2 days ago


    Melbourne, Victoria, Australia MSS Security Full time $60,000 - $80,000 per year

    About the CompanyAs one of Australia's leading security companies, MSS Security is built on teamwork, respect, and integrity. We provide long-term career paths, stability, and a workplace where your professionalism and dedication are genuinely valued. To find out more visit our website at.About the Role:MSS Security is currently seeking a vigilant and...


  • Melbourne, Victoria, Australia CyberCX Full time $120,000 - $180,000 per year

    *Position Summary & Primary Objectives*Reporting to the Team Lead – Cloud Operations, the Senior Cloud Engineer – Cloud Operations is responsible for engaging with customers to address their most complex cloud and cybersecurity challenges within a Managed Services context. This role involves providing innovative, scalable, and secure cloud solutions...

Cloud Security Control Lead

2 weeks ago


Melbourne, Victoria, Australia Commonwealth Bank – Technology Full time $180,000 - $250,000 per year

Cloud Security Control lead (Senior Manager)

  • Are you a cybersecurity risk and control professional with a background in cloud security control design and implementation?

  • We are one of the best and most advanced Cyber Security teams in Australia.

  • Together we can build the Cyber Controls Chapter Area and contribute to protecting the Group, its customers and community.

See yourself in our team:

The Cyber Controls Chapter Area plays an important function within the Group Security division being responsible for designing and deploying effective cyber control capabilities and overseeing continuous improvement of the Group's cyber risk profile.

As an organisation with a large IT estate servicing millions of customers everyday, we need to ensure effective mitigations are in place to defend our assets against an ever-evolving cyber threat environment. The Control Lead Cloud Security is tasked with ensuring control capabilities are in place to identify security weaknesses and mitigate cyber threats to cloud-based asset classes (IaaS, PaaS, SaaS, containers) across the Group.

We support our people with the flexibility to balance where work is done with at least half your time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work for you.

Do work that matters

Working with the Cyber Controls Chapter Area Lead and collaborating with peer Control Leads, the Control Lead Cloud Security will focus on:

Supporting Technology Crew Leads, Product Owners and Enterprise Architects in setting the control capability roadmap for cloud security, overseeing control operation, and delivery of control remediation to achieve target risk outcomes.

Establishing and maintaining cloud security standards and guidelines to align with changes in industry standards, technology strategy and threat intelligence.

Governing the Group's compliance with Cloud Security control requirements and supporting the business in tracking remediation of critical security weaknesses and improvement of overall risk posture.

Carry out control effectiveness assessments, identify control weaknesses and drive appropriate risk remediation across business-owned cloud-based assets.

Establish automated control performance monitoring capabilities to support cloud security assurance over business-aligned technology services.

We are interested in hearing from people who:

  • Embody the leadership principle of 'Curious and Humble' by being willing to speak up and challenge the status quo, and continually expand their skills and knowledge.
  • Have expertise in in Cloud governance

  • Are knowledgeable about cyber threats and vulnerabilities relevant to cloud-based technologies.

  • Can analyse threat intelligence, identify potential risks, prioritise vulnerabilities, and recommend appropriate mitigations (Identity & Access Management, Cryptography, Secure Configuration, Data Security, Vulnerability Management, CIEM, CNAPP, CSPM, SSPM).

  • Have experience working with cloud security enterprise solutions and implementing security tools in large and complex IT environments.

  • Can operate effectively in an agile working environment exemplifying high degrees of autonomy and self-initiative to achieve target outcomes.

  • Have demonstrated ability to engage and influence stakeholders to build rapport, obtain buy-in and achieve target outcomes.

Desirable technical Skills :

  • Understanding of hybrid and cloud-native environments (e.g. AWS, Azure) and how security controls apply to them.
  • Applied knowledge of ASD ISM, NIST CSF, CIS and ACSC Essential Eight cyber mitigation strategies.
  • Proficiency in SSPM, CSPM, CNAPP, CIEM.
  • Experience with vulnerability prioritisation frameworks (e.g., CVSS, EPSS).
  • Understanding of web application vulnerabilities (e.g., OWASP Top Ten).
  • Security certifications: AWS/Azure security; CISSP, CISM.

Whether you're passionate about customer service, driven by data, or called by creativity, a career here is for you.

Our people bring their diverse backgrounds and unique perspectives to build a respectful, inclusive and flexible workplace. We are working hard to build a team of people who represent the rich diversity of our customers and communities. If you're excited about this opportunity but you don't meet every single requirement, or your experience doesn't align perfectly, we still want to encourage you to apply. You may just be the perfect candidate for this opportunity or another within CommBank.

At CommBank we will inspire you with work that makes a difference, surround you with talented people that respect and value each other, and empower you to grow professionally and personally. Most of all, making a positive impact for customers, communities and each other is part of our every day.

We're determined to make a real difference for Australia's first peoples. We encourage all interested applicants to apply. If you're already part of the Commonwealth Bank Group (including Bankwest), you'll need to apply through Sidekick to submit a valid application. We're keen to support you with the next step in your career.