Security Analyst AUS
6 days ago
Business Unit:
Cubic Transportation Systems
Company Details:
When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people's lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our talented teams around the world, Cubic is committed to solving global issues through innovation and service to our customers and partners.
We have a top-tier portfolio of businesses, including Cubic Transportation Systems (CTS) and Cubic Defense (CD). Explore more on
Job Details:
Cubic Transportation Systems (CTS) is a global leader in intelligent transportation solutions, specializing in technologies that make public transit more efficient, accessible, and user-friendly. A significant feature is providing Fare and Payment card services to government and municipal customers across the globe.
Job Summary:
As a member of the Cubic Information Security Team, you will be responsible for supporting efforts to monitor security for Cubic systems and assist in the analysis and response to incidents. The successful candidate must be proficient at security monitoring using Tenable, Crowd Strike, Splunk, and Imperva and other security tools. Work will be on Windows and Linux assets in cloud or data centers. Analysts will be responsible for IT security tools and processes to manage and report operational security risks to operations teams for remediation. The analyst must have an intimate awareness of PCI security compliance expectations. The candidate will be a partner to support external audits to facilitate PCI-DSS, ISO 27001, and SOC compliance/audit efforts. Scanning operations will involve routine daily or weekly operations as well as support for pen testing or audit efforts. Findings must be risk rated and effectively escalated for remediation. Will be recognised internally as a subject matter expert. Works autonomously, able to assess and drive work priorities, with limited support or guidance needed.
Responsibilities
Essential Job Duties
and Responsibilities
Security Monitoring Configuration
- Design and implement security monitoring solutions using SIEM, EDR, NDR, CSPM, and cloud-native tools (e.g. Azure Cloud Defender, AWS Security Hub, Guard Duty, Inspector, and Cloud Watch).
- Integrate log sources from on-prem systems (firewalls, servers, endpoints, network devices) and cloud platforms (IaaS, PaaS, SaaS) into centralized monitoring systems.
- Develop and tune detection rules and correlation logic to identify suspicious behavior, policy violations, and potential threats.
- Tune detection rules to reduce false positives and improve signal-to-noise ratio.
- Maintain visibility across hybrid environments by ensuring telemetry coverage and log integrity.
Threat Detection and Analysis
- Monitor alerts and logs for indicators of compromise (IOCs) and suspicious activity.
- Correlate events across multiple sources to identify potential threats.
- Perform triage and initial investigation of alerts to determine severity, scope, and potential impact.
- Use threat intelligence feeds to enrich alerts and prioritize response.
Incident Escalation and Coordination
- Document and escalate validated security incidents to the appropriate operations or incident response teams.
- Provide detailed context, including affected systems, users, and potential impact.
- Collaborate with operations staff to ensure timely containment, eradication, and recovery.
- Track and report on escalated incidents, including root cause analysis and remediation status.
Continuous Improvement
- Review and refine detection logic based on incident post-mortems, false positives, emerging threats, and operational feedback.
- Participate in threat hunting and proactive analysis to identify gaps in monitoring coverage.
- Recommend and implement automation for alert triage and response workflows.
- Contribute to playbooks and standard operating procedures for alert handling and escalation.
- Stay current with emerging threats, vulnerabilities, and security technologies.
Compliance and Reporting
- Ensure monitoring configurations support regulatory and policy requirements (e.g., PCI, ISO 27001, GDPR, CIS, etc).
- Generate reports on security posture, alert trends, and incident metrics for leadership and governance teams.
- Assist with audits and provide evidence of monitoring controls and incident handling.
General Duties and Responsibilities:
- Reliably demonstrate accountability for work assignments and proactive communications about issues and status. A strong history of proactively identifying effective solutions for challenges.
- Able to work effectively and uphold professional standards, with the customer and system stakeholders.
- Self-motivated and able to work unsupervised
- Methodical and Attentive to detail
- Proactive in seeking advice from security subject matter experts when required
- Comfortable working with staff at all levels and in other geographical locations within the organization
- Comply with Cubic's Quality Management System
- Comply with Cubic's quality, health, safety, and security policies.
- Support the company's strategic objectives and collaborate across departments.
- Comply with Cubic Human Resources Procedures
Skills/Experience/Knowledge
Essential:
- Familiarity with PCI DSS 4, ISO , and/or SOC I/II requirements and audits.
- Experience installing, configuring and supporting Tenable, Crowd Strike, Splunk, and Imperva in Windows and Linux environments
- Experience performing monitoring in Azure and AWS cloud environments, as well as in data centers.
- In depth understanding and experience in network security. Strong preference for someone who has had experience working as a network security admin and/or cloud or systems security admin.
- Expert level experience collaborating with stakeholders and solution providers in a cross functional and matrixed IT organization. Able to adapt style efforts to persuade in delivering messages that relate to the wider business. Is frequently called on to advise others on complex matters and may be accountable through team for delivery of business targets.
- Exhibits advanced wide- ranging experience, using in- depth professional knowledge, acumen, concepts and company objectives to develop, resolve complex models and procedures. Provides solutions to issues in creative and effective ways. Understands the interrelationships of different disciplines. Directs the application of existing principles and guides development of new policies and ideas.
- Understands and works on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors. Determines methods and procedures on new assignments. Exercises judgment in selecting methods, evaluating, adapting complex techniques and evaluation criteria for obtaining results.
- This position typically works under limited supervision and direction. Candidates for this position will regularly exercise discretionary and substantial decision-making authority.
Desirable:
- Deep understanding of security risks and threats as they relate to the company's operating environments.
Qualifications
Essential:
- Minimum 8 years' experience in services or IT systems in a mission critical setting.
- University degree in Computer Science, Engineering, or other technical fields, or Business Administration with relevant IT work experience.
- At least 5 years' experience working in IT security and/or Payment Card processing systems. Strong understanding of technical concepts, as well as demonstrated ability to understand complex internally developed systems.
- The candidate must reside within commuting distance from CTS offices in Brisbane QLD, Sydney NSW or Wellington NZ, and be able to periodically travel within the region.
Desirable
- Certification as an Information Security professional (e.g. ISACA CISA/CISM/CRISC, ISC(2) CISSP, BCS CISMP/IISP)
- Payment Card Industry Security Standards Council certification (ISA/ QSA)
Condition of Employment:
Successful outcome of a National Police Check
The description provided above is not intended to be an exhaustive list of all job duties, responsibilities and requirements. Duties, responsibilities and requirements may change over time and according to business need.
Worker Type:
Employee
-
IT Security Analyst
1 week ago
Brisbane, Queensland, Australia Robert Walters Full time $100,000 - $120,000 per yearRobert Walters inBrisbaneare seeking aCyber Security Analystfor a Cyber Security Consultancy in Brisbane. ThisFull-time, Permanentrole presents an exciting opportunity to make a meaningful impact by protecting critical systems and data from emerging threats. You will be part of a supportive environment that values your expertise and encourages ongoing...
-
Security Analyst
6 days ago
Brisbane, Queensland, Australia Cubic Corporation Full time $80,000 - $120,000 per yearBusiness Unit:Cubic Transportation SystemsCompany Details:When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people's lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our...
-
Cyber Security Junior Analyst
1 week ago
Brisbane, Queensland, Australia WorkCover Queensland Full time $60,000 - $90,000 per yearWe have multiple Cyber Security Junior Analyst opportunities for 2-Year maximum term contracts.WorkCover Queensland is entering an exciting new chapter, with a renewed strategic focus and strong executive leadership guiding our organisation's 2030 Strategy. We're embarking on an enterprise-wide transformation that will enable us to continue making a positive...
-
Cyber Security Analyst
1 week ago
Brisbane, Queensland, Australia Data#3 Full time $90,000 - $120,000 per yearWe're seeking Cyber Security Analyst/Engineer. Whether you're just starting or you're a seasoned expert, you'll help build and run our Microsoft Sentinel and Azure-based security monitoring and automation capability.What You'll Work OnOnboarding & Transition : Bring new and existing log sources into our SIEM/SOAR environment (Microsoft Sentinel)Azure &...
-
Cyber Security GRC Analyst
10 hours ago
Brisbane, Queensland, Australia Aurizon Full timeJob Number: Work type:Permanent - Full TimeLocation:BrisbaneCategories:Information Technology, Business ProfessionalRole: Cyber Security GRC AnalystLocation: Brisbane (Hybrid)Remuneration/Benefit: Negotiable up to a $120, Total renumeration, including superannuation)About the role: We're seeking an up-and-coming cybersecurity GRC analyst to help implement...
-
Senior Analyst Cyber Security
12 hours ago
Brisbane, Queensland, Australia eHealth Queensland Full timeJoin our Cyber Security Group to play a key role in the technical success of our Vulnerability Management Systems. In this hands-on Senior Analyst Cyber Security role, you will assist in the design, deployment and management of our VMS platform, manage its complete technical lifecycle, and ensure Queensland Health resilience against emerging threats.This...
-
Senior Security Vetting Analyst
11 hours ago
Brisbane, Queensland, Australia Connect3i Full timeConnect3i.We assure the workforces of the future and build people capability.Our mission is to provide Australia's best security vetting services built on people and quality with real meaningful purpose for our national security.We have immediate opportunities for Senior Security Vetting Analysts. We would love to hear from candidates who:have current or...
-
Data and Reporting Analyst
17 hours ago
Brisbane, Queensland, Australia Risk & Security Management Pty Ltd Full time $80,000 - $120,000 per yearAbout UsRisk & Security Management (RS) is a leading provider of end-to-end receivables and mercantile services, delivering innovative solutions and expert advice to clients across multiple industry sectors. We provide a range of trusted services to major banks, large financiers, insurers, government departments, global corporations, and legal firms. As we...
-
Security Specialist
9 hours ago
Brisbane, Queensland, Australia Department of Customer Services, Open Data and Small and Family Business Full time $90,000 - $120,000 per yearAs a Security Specialist, you will:• Support the delivery of SOC services by monitoring, triaging, and investigating security alerts and incidents using advanced security tools and technologies.• Act as an escalation point for SOC Analysts, providing advanced analysis and guidance on complex security incidents.• Assist in managing and coordinating...
-
Security Specialist
9 hours ago
Brisbane, Queensland, Australia Children's Health Queensland Hospital and Health Service Full time $90,000 - $120,000 per yearThis role offers an exciting opportunity to work in a dynamic and fast-paced environment, tackling challenging security issues and contributing to the protection of critical systems and data. You will also have the opportunity to develop your technical expertise and play a vital role in the success of a high-performing team.As a Security Specialist, You...