Attack Surface Reduction Analyst

4 days ago


Sydney, New South Wales, Australia Wsp Australia Full time

**Work options**: Flexible

This role can be based anywhere in Australia

**The Opportunity**:
The Attack Surface Reduction Analyst will play a critical role in enhancing our organization's cybersecurity posture by identifying, assessing, and mitigating vulnerabilities and threats across our digital environment. This role involves a combination of strategic analysis, hands-on implementation, and collaboration with various teams to reduce our attack surface and improve our overall security resilience.

**A Day in the Life**:
Specific areas of responsibility may fall into any one of the following areas of Attack Surface Reduction:

- Mitigation Strategies: Develop and implement strategies and controls to reduce attack vectors and minimize potential entry points for malicious activities.
- Risk Evaluation: Continuously evaluate emerging threats and vulnerabilities and assess their impact on our attack surface.
- Incident Response Support: Collaborate with the Incident Response team to address and resolve security incidents related to identified vulnerabilities or attack vectors.
- Collaboration: Work closely with I&O, Risk, SOC, SecDevOps, and other relevant teams to integrate security practices into the development and deployment processes.
- Security Tools: Utilize and configure security tools and technologies for vulnerability scanning, threat intelligence, and attack surface monitoring.
- Documentation & Reporting: Maintain detailed documentation of vulnerabilities, risk assessments, and mitigation actions. Prepare and present reports to stakeholders on security posture and risk status.
- Continuous Improvement: Stay current with industry trends, threat intelligence, and emerging technologies to continually enhance our attack surface reduction strategies.

**Leadership and People Responsibilities**
- Develop positive working relationships with other team members and business partners and partners across teams to align with WSPs internal and external client demands.
- Provide feedback on the governance process for continued improvement.

**Finance/Budgetary Responsibilities**
- Provide feedback on tooling and identify additional needs
- Plan for expanse of security tools to cover ongoing needs
- Evaluation of license usage and potential growth

**What you'll bring to WSP**:
**Required**
- 7-+ years related experience in Security Operations, Network Security, Vuln. Management or similar position.
- Bachelor's degree or equivalent in Information Technology, Computer Science, Engineering, Data Sciences, or related field
- Strong knowledge of security assessment tools, vulnerability scanning, and penetration testing
- Proficiency in security tools: Microsoft Defender, Microsoft Defender EASM, BitSight, Cybel Angel and others.
- Strong analytical skills with a keen eye for detail and accuracy
- Effective communication skills, with the ability to clearly convey technical concepts to both technical and non-technical stakeholders
- Experience with IT Governance frameworks such as COBIT, ITIL, NIST and ISO 2700x
- Experience with risk management, including risk analysis, mitigation, and monitoring

**What sets you apart**
- Master's degree in information technology, Computer Science, Engineering, Data Sciences or related field
- Security+, CISSP, or other related certifications.

**About WSP**:
WSP is one of the world's leading engineering professional services firms, bringing together approximately 6,000 talented people across 15 offices in Australia. We are technical experts who design and provide strategic advice on sustainable solutions and engineer Future ReadyTM projects that will help societies grow for lifetimes to come.

At WSP, we want you to embrace your curiosity and work in a culture celebrating different perspectives. With access to global scale and reach, you'll connect with the brightest minds in the field to make the best work of your life.

We believe that in imagining a better future for us all, you'll imagine a better future for you.

To find out more about our commitment to the health and wellbeing of our people, and the programs we've designed to help you thrive, go to our Benefits page.

WSP. With us, you can.

Video



  • Sydney, New South Wales, Australia beBeeattack Full time $180,000 - $220,000

    ">Attack Surface Reduction SpecialistWe are seeking an experienced Attack Surface Reduction Specialist to play a critical role in enhancing our organization's cybersecurity posture.",


  • Sydney, New South Wales, Australia beBeeCybersecurity Full time $150,000 - $170,000

    Job Title: Cyber Security ProfessionalWe are seeking a highly skilled and dedicated Cyber Security Professional to join our team. As a key member of our security infrastructure, you will play a critical role in protecting our systems and data from cyber threats.The ideal candidate will have a strong background in computer science and cybersecurity, with...


  • Sydney, New South Wales, Australia beBeeCostOptimisation Full time $130,000 - $165,000

    Cost Optimisation Specialist OpportunitySeeking a skilled Business Analyst to lead cost reduction initiatives in Retail Banking. This role focuses on procurement, driving significant savings.Key Responsibilities:Confirm and quantify potential cost savings in procurementDevelop detailed plans for implementing cost-cutting measuresCollaborate with clients to...


  • Sydney, New South Wales, Australia Bebeecybersecurity Full time

    At the forefront of cybersecurity, our team requires fearless innovators who can develop and contribute to a comprehensive security stack.The ideal candidate will be passionate about operational efficiency and automation, with experience in multiple areas such as network security, cloud security, and application security. They will have a strong ability to...

  • Protecting Assets

    1 day ago


    Sydney, New South Wales, Australia beBeeSecurity Full time $150,000 - $170,000

    Job Opportunity:We are seeking a skilled Security Specialist to join our team. As a Security Specialist, you will be responsible for developing and implementing security solutions to protect our infrastructure.The ideal candidate will have experience in multiple security domains, including network security, cloud security, and application security.Key...


  • Sydney, New South Wales, Australia beBeeSecurity Full time $120,000 - $170,000

    Cybersecurity ExpertWe are seeking a skilled Cybersecurity Expert to join our team. In this role, you will be responsible for designing and implementing secure infrastructure solutions.Key Responsibilities:Automate processes and procedures to create a highly resilient security framework.Implement and make recommendations based on threat assessments at the...


  • Sydney, New South Wales, Australia beBeeCybersecurity Full time $160,000 - $170,000

    At the forefront of cybersecurity, our team requires fearless innovators who can develop and contribute to a comprehensive security stack.The ideal candidate will be passionate about operational efficiency and automation, with experience in multiple areas such as network security, cloud security, and application security. They will have a strong ability to...


  • Sydney, New South Wales, Australia beBeeSpecialist Full time $150,000 - $170,000

    Security Infrastructure Specialist\Job Summary\\_You will be responsible for designing and implementing a highly resilient security infrastructure by automating processes and procedures.\Develop and recommend threat assessments at the network, server, and endpoint levels to ensure optimal security.Play a key role in Threat, Vulnerability Management and...


  • Sydney, New South Wales, Australia beBeeSecurity Full time $140,000 - $170,000

    Job Description:We are seeking an accomplished Chief Security Automation Specialist to join our team. As a key member of our security group, you will play a pivotal role in enhancing our infrastructure's resilience through automation.Key Responsibilities:- Develop and implement process automation to create a highly secure environment.- Conduct threat...


  • Sydney, New South Wales, Australia WiseTech Global Full time

    Senior Security Analyst in Sydney at WiseTech GlobalWiseTech Global is a world-leading software company building software for the global logistics industry. We are united in our mission to create breakthrough products that enable and empower those who own and operate the supply chains of the world. Our software products are relied upon by the top 25...