
Control Lead Security Posture Management
1 week ago
Control Lead Security Posture Management (Senior Manager)
You are a cybersecurity risk and control professional with a background in Security Posture Management control design and implementation.
We are one of the best and most advanced Cyber Security teams in Australia
Together we can build the Cyber Controls Chapter Area and contribute to protecting the Group, its customers and community.
See yourself in our team:
The Cyber Controls Chapter Area plays a crucial function within the Group Security division being responsible for designing and deploying effective cyber control capabilities and overseeing continuous improvement of the Group's cyber risk profile.
As a large, tech‑driven organisation serving millions of customers daily, we must continuously harden our environment against an evolving threat landscape. This role leads the enterprise‑wide Secure Configuration Management (SCM) control capability, ensuring secure baselines are defined, deployed, monitored and continuously improved across all major asset classes. You'll also provide rules‑based security posture management oversight (CSPM/SSPM/KSPM/Network/Posture-as-Code) and drive timely, risk‑informed remediation of baseline exceptions.
We support our people with the flexibility to balance where work is done with at least half your time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work for you.
Do work that matters
- Providing subject-matter expertise to Technology Crew Leads and Product Owners in setting the strategic roadmap for Security Configuration Management, Cloud Security Posture Management, SaaS Security Posture Management and API Vulnerability Management capabilities,
Overseeing control operation, and supporting delivery of control remediation to achieve target risk outcomes.
Establishing and maintaining control standards and guidelines to align with changes in industry standards, technology strategy and threat intelligence.
Governing the Group's compliance with Security Configuration Management control requirements and supporting the business in tracking remediation of critical security weaknesses and improvement of overall risk posture.
You will also:
Ensure Secure Configuration and Posture Management operation adheres to the Group Operational Risk Management Framework.
Define the control testing approach to support automated control performance monitoring.
Carry out on-going control effectiveness assessments and drive appropriate risk remediation to address identified control weaknesses.
- Assist the Technology teams responsible for maintaining the secure posture of the Group's critical applications and infrastructure to achieve their goals.
- Maintain positive stakeholder engagement with product owners, security engineers, and adjacent cyber security teams in relation to the development and lifecycle of secure configuration baselines and posture rulesets.
We are interested in hearing from people who have:
Hands-on experience with policy compliance and security posture tools (e.g., Qualys, Wiz, NoName, Obsidian).
Skilled in hardening endpoints and cloud services.
Strong understanding of system security principles and automation for continuous compliance and reporting.
Security Standards & Frameworks
Applied knowledge of ASD ISM, NIST, CIS, and Essential Eight mitigation strategies.
Familiarity with vulnerability prioritisation frameworks like CVSS and EPSS.
Security certifications such as CISSP, CISM, or CRISC are highly desirable.
Threat & Vulnerability Management
- Ability to analyse threat intelligence, identify risks, prioritise vulnerabilities, and recommend mitigations.
Whether you're passionate about customer service, driven by data, or called by creativity, a career here is for you.
Our people bring their diverse backgrounds and unique perspectives to build a respectful, inclusive and flexible workplace. We are working hard to build a team of people who represent the rich diversity of our customers and communities. If you're excited about this opportunity but you don't meet every single requirement, or your experience doesn't align perfectly, we still want to encourage you to apply. You may just be the perfect candidate for this opportunity or another within CommBank.
At CommBank we will inspire you with work that makes a difference, surround you with talented people that respect and value each other, and empower you to grow professionally and personally. Most of all, making a positive impact for customers, communities and each other is part of our every day.
We're determined to make a real difference for Australia's first peoples. We encourage all interested applicants to apply. If you're already part of the Commonwealth Bank Group (including Bankwest), you'll need to apply through Sidekick to submit a valid application. We're keen to support you with the next step in your career.
-
Cloud Security Control Lead
6 days ago
Eveleigh, New South Wales, Australia Commonwealth Bank – Technology Full time $120,000 - $180,000 per yearCloud Security Control lead (Senior Manager) See yourself in our team: The Cyber Controls Chapter Area plays an important function within the Group Security division being responsible for designing and deploying effective cyber control capabilities and overseeing continuous improvement of the Group's cyber risk profile. As an organisation with a large IT...
-
Manager Network Engineering
2 weeks ago
Eveleigh, New South Wales, Australia Department of Education Full time $149,739 - $173,174 per yearCompany description: The Department of Education is the largest provider of public education in Australia with responsibility for delivering high-quality public education to two-thirds of the NSW student population. For more information about the Department of Education, please visit Job description: Ongoing Full-TimeLocation: Eveleigh with flexible...
-
Facility Manager
2 days ago
Eveleigh, New South Wales, Australia MIRVAC Full time $90,000 - $120,000 per yearMirvac is a brand that creates and curates better experiences. We are more than developers or builders – we are visionaries, and our ability to see the world differently drives us to be bold, embrace innovation and diversity, and lead with optimism.As creators of positive change, we see each new project as an opportunity to leave a lasting legacy,...
-
Senior Change Manager
6 days ago
Eveleigh, New South Wales, Australia Randstad - Business Support Full time $120,000 - $180,000 per yearWe are seeking a Senior Change Manager with a proven track record of rapidly assimilating complex program contexts and swiftly delivering impactful change outcomes within dynamic, high-pressure environments. If you are a self-starter with a bias for action and the ability to manage multiple workstreams concurrently, we want to hear from you.You will be the...
-
Facility Manager
4 days ago
Eveleigh, New South Wales, Australia Mirvac Full time $90,000 - $120,000 per yearMirvac is a brand that creates and curates better experiences. We are more than developers or builders - we are visionaries, and our ability to see the world differently drives us to be bold, embrace innovation and diversity, and lead with optimism. As creators of positive change, we see each new project as an opportunity to leave a lasting legacy,...
-
Principal Platform Engineer
6 days ago
Eveleigh, New South Wales, Australia Commonwealth Bank of Australia Full time $150,000 - $175,000 per yearYou Are… A seasoned Platform Engineer with deep expertise in PostgreSQLWe Are… A forward-thinking team building world-class toolsTogether We Can… Revolutionise the future of banking technologySee Yourself in the TeamCommBank's Technology team is globally recognised for engineering excellence and AI leadership, delivering award-winning solutions that...
-
Principal Site Reliability Engineer
2 days ago
Eveleigh, New South Wales, Australia Commonwealth Bank Full time $120,000 - $180,000 per yearYou are passionate about SRE and systems engineeringWe are undergoing one of Australia's largest digital transformationsTogether we can reimagine banking for millions of customersDo work that mattersWe're accelerating our digital strategy with an ambition to provide customers with one of the best digital experiences of any company globally. Site Reliability...
-
Manager - Technology Strategy
4 days ago
Eveleigh, New South Wales, Australia Commonwealth Bank - Group Strategic Development Full time $120,000 - $180,000 per yearDo work that matters: We are seeking a Manager, Technology Strategy to craft Board and ELT strategy papers, research emerging technology trends, frame strategic options, and influence senior decision‑making across the Group. The role reports to the Executive Manager, Technology Strategy, and partners closely with Group Strategy and strategy teams across...
-
Senior Software Engineer
1 week ago
Eveleigh, New South Wales, Australia Commonwealth Bank – Technology Full time $120,000 - $180,000 per yearSenior Software EngineerWe're embarking on an engineering transformation with a key focus in building robust, secure, and highly scalable services to our customers.You have knowledge that spans both development and operations, including coding, infrastructure management, system admin/engineering, and DevOps Toolchains.Together we will build tomorrow's bank...
-
Revenue Management Coordinator
2 days ago
Eveleigh, New South Wales, Australia Seven Full time $60,000 - $100,000 per yearAre you ready to play a pivotal role in maximising revenue opportunities? Want to be part of a dynamic team at one of Australia's leading media companies?The OpportunityWe're looking for a driven Revenue Management Coordinator to join our team and help deliver accurate reporting, efficient processes, and effective inventory management strategies.In this...