Senior Information Security Analyst

4 weeks ago


Brisbane, Australia 2094 Cubic Transportation Systems (Australia) Pty Limited Full time

Business Unit:

Cubic Transportation Systems

Company Details:

When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people’s lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our talented teams around the world, Cubic is committed to solving global issues through innovation and service to our customers and partners.

We have a top-tier portfolio of businesses, including Cubic Transportation Systems (CTS) and Cubic Defense (CD). Explore more on Cubic.com.

Job Details:

Manages vendor-supplied penetration tests across Cubic customer programs to meet contractual and project requirements. Maintains current knowledge of malware attacks, and other cyber security threats. Help creates test cases using in-depth technical analysis of risks and typical vulnerabilities. Interprets, executes and documents testing procedures using agreed methods and standards. Records and analyses actions and results. Reviews test results and suggest modified tests if necessary. Provides reports on progress, anomalies, risks and issues associated with the overall project. Reports on system quality and collects metrics on test cases. Provides specialist advice to support others. This position will work under general supervision and guidance.

Essential Job Duties and Responsibilities:

  • Manages information security penetration testing for new and existing business applications, IT infrastructure and/ or Company products, and provides advice and guidance on scope of penetration testing to meet relevant technical security controls (e.g. ISO27001 and/or the PCI security standards)
  • Ensures penetration tests meet information security requirements
  • Ensure that all VM Sec Ops processes are followed and ensure that all Security tools are maintained
  • Develop and maintain VM Sec Ops reports and dashboards
  • Ability to explain tool sets to auditors and customers alike.
  • Expert knowledge of SIEM tools, vulnerability scanners
  • Ensures all residual risk is documented for agreement by business service owners.
  • May be required to work on other global Cubic sites and data centres

Minimum Job Requirements:
Qualifications

Essential:

  • Bachelor’s degree in a relevant subject (e.g. information security, encryption, computer science, maths, engineering) or equivalent qualifications/experience
  • Certification as an Information Security professional (e.g. IISP/CISA/CISM/CISSP/CCSP)

Desirable:

  • Master’s degree in a relevant subject (e.g. information security, encryption, computer science, maths, engineering)
  • Payment Card Industry Security Standards Council certification (ISA/ QSA/ QSA P2PE)
  • HMG IA qualifications/ CLAS/ CISPM
  • ITIL v4/ Prince2 foundation level/ TOGAF 9 certifications
  • Security and IT infrastructure/ networking vendors’ certifications

Skills/Experience/Knowledge

Essential:

  • Demonstrable experience in managing penetration tests
  • Demonstrable experience supporting PCI-DSS certified solutions
  • Experience supporting secure development lifecycles (SDL)
  • Good understanding of enterprise-scale security management process and infrastructure
  • Detailed knowledge of enterprise IT infrastructure and tools (e.g. Microsoft, Cisco, Oracle Solaris, Linux)
  • Superior network infrastructure and protocol knowledge
  • Knowledge of cryptographic services, current ciphers and key management systems
  • Experience of quality management systems and external audit standards e.g. ISO 9001, ISAE3402
  • Able to support an "on-call" out-of-business-hours service on a rotating basis with this responsibility spread across team members

Desirable:

  • Demonstrable experience supporting architecture/ compliance programs for information security, audit, risk and compliance standards and legislation e.g. PCI-P2PE, PCI-POI-PTS, ISO 22301, ISO27005, ISO31000, NIST security and risk frameworks, GDPR
  • Experience of application security testing tools and DevOps frameworks, e.g. Sonarqube, JIRA, static & dynamic code analysis/ “fuzzing”
  • Ability to provide and report key performance indicator metrics demonstrating product and/or security architecture compliance within DevOps and waterfall project methods, product development
  • Coding skills within development tools/ environments; Java, Visual Studio, C#
  • Experience of transactional revenue, embedded, smartcards and mobile payment systems
  • Knowledge / experience of security architecture of major public cloud services e.g. Microsoft Azure, Amazon Web Services, Google Cloud, Cloud Access Service Brokers e.g. Okta
  • In depth understanding of information security operations tools, e.g. Tenable.IO, Nessus, Qualys, Splunk, Trend Micro DeepSecurity, Imperva, TripWire, Cisco IPS, McAfee, Barracuda

Personal Qualities

  • Must be able to work effectively and uphold professional standards and confidentiality with Cubic internal and external customers as well as staff at all levels of the organisation. The role will also be required to work with security vendors, Cubic suppliers and customers.
  • Must be able to travel globally at reasonable notice and be based internationally for assignments for several weeks’ duration
  • Strong communication skills and able to rapidly acquire new knowledge and learn on the job
  • Self-motivated, able to work on own initiative

Condition of Employment:

Successful outcome of a National Police Check

The description provided above is not intended to be an exhaustive list of all job duties, responsibilities and requirements. Duties, responsibilities and requirements may change over time and according to business need.

Worker Type:

Employee


  • Security Analyst

    4 weeks ago


    Brisbane, Australia Gateway Synergy Recruitment Full time

    Experience with analysing gateway & network security monitoring solutions - Brisbane based, must have Baseline security clearance Gateway Synergy is looking for highly experienced Security Analyst contractor. The security infrastructure analyst will have experience in performing current state analysis, requirements analysis definition and implementation of...

  • Security Analyst

    4 weeks ago


    Brisbane, Australia Perigon Group Full time

    12 month fixed term contract with extension options - Competitive salary - Hybrid working arrangement Currently seeking a highly motivated Security Analyst to join a large and culture orientated not for profit. The Security Analyst will be responsible for identifying, assessing business processes/requirements and audit security treatments for information...

  • IT Security Analyst

    4 weeks ago


    Brisbane, Australia CYOS Solutions Full time

    **Application closing date**: Wednesday, 19 July 2023 - 11:59pm, Canberra time (in Canberra) **Estimated start date**: Tuesday, 01 August 2023 **Location of work**: QLD **Length of contract**: 5 Months **Contract extensions**: 2 x 6 months **Security clearance**: Must have Baseline **Rates**: $110 - $140 per hour (inc. super) The security...


  • Brisbane, Australia Cubic Corporation Full time

    Business Unit: Cubic Transportation Systems Company Details: When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people’s lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our...


  • Brisbane, Australia 2094 Cubic Transportation Systems (Australia) Pty Limited Full time

    Business Unit:Cubic Transportation SystemsCompany Details:When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people’s lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our...

  • Data Support Analyst

    4 weeks ago


    Brisbane, Australia Just People Information Security Full time

    An amazing opportunity for any Data Support Analyst who wants to work within a cloud-based enterprise environment while using the latest technologies. This position is with a well-known global technology company within the resource sector. Our client offers the potential for career advancement within the international Information Systems and Data...


  • Brisbane, Australia BOQ Full time

    About the Role An exciting new opportunity for a Senior Cyber Security Analyst to join our Cyber Detection and Response team. Reporting to the Manager of Cyber Incident Response team (CIR), the Senior Cyber Security Analyst works proactively to ensure the integrity, confidentiality and availability of the Bank’s information systems and assets. Your...

  • IT Security Analyst

    4 weeks ago


    Brisbane, Australia Powerlink Full time

    **About the role**: Are you a dedicated and skilled Cybersecurity Analyst looking to make an impact on the security of critical national infrastructure? Do you have a passion for safeguarding essential services and ensuring the resilience of Australia's energy sector? If so, we invite you to join our dynamic team and play a role in achieving and maintaining...


  • Brisbane, Australia Experis Full time

    **Cyber Security Analyst** - Requirement - Australian Citizen - Hybrid working environment 3 days in the office (**Open roles in Brisbane or ACT location)**: - Long Term contract role This opportunity is sitting with our leading Federal government client. Our client is seeking a motivated & experienced Senior Cyber Security Analyst to join their team based...


  • Brisbane, Australia Talent International Full time

    australia brisbane contract including superTalent International is searching for an experienced **Cyber Security Analyst** to join our client a **Not for Profit Organisation** based in **Milton, Brisbane** on an **8 Month Contract.** // **8 Month Contract** // **2 Days WFH Per Week** // **Milton, Brisbane Location** The role: The Cyber Security Analyst...


  • Brisbane, Australia Emanate Technology Full time

    CYBER SECURITY ANALYST x 3 Job Summary:E2 Cyber has been engaged by an Australian Federal entity to hire 3 GRC analysts to support the organisations growth and maturity within the cyber security space. These roles will be part of an existing team who work very collaboratively together, enjoy focusing and achieving goals whilst being led by a respectful,...


  • Brisbane, Australia Just People Information Security Full time

    Large State Government Department - 12 month initial contract - Attractive salary The Cyber Security Program plays a crucial role in delivering information security priorities to enable modern healthcare delivery while maintaining the highest level of information security. We are currently seeking an experienced Technical Delivery Manager to join our team...


  • Brisbane City, Australia TEKsystems Full time

    Job Summary WFH Flexibility 12 Months contract with 12 months extensions Working on a Massive program of working having an impact Nation wide. Your New Role We are looking for a Senior Systems Analyst to be part of our Federal Clinets who will be optimizing systems, streamlining processes, and achieving business objectives. The aim of the...


  • Brisbane, Australia Boeing RIV Site Full time

    Do you aspire to help build something better? Would you like to work for a company that employs the best talent to develop and deliver world class capabilities and systems to protect Australia and its national interests? Would you like to work on cutting edge projects? Then we would like to talk to you. As an equal opportunity employer that promotes a...


  • Brisbane, Australia BOEING Full time

    At Boeing, we innovate and collaborate to make the world a better place. From the seabed to outer space, you can contribute to work that matters with a company where diversity, equity and inclusion are shared values. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for...


  • Brisbane, Australia Children, Youth Justice and Multicultural Affairs Full time

    **The role of the Principal Information Security Officer is to**: - Develop, implement, and continuously improve information security policies aligned with IS18 and ISO27001/ISO27002 standards, ensuring senior-level oversight and approval. Ensure strict adherence to IS18, Essential Eight and ISO27001/ISO27002 compliance requirements, conducting regular...


  • Brisbane, Australia Troocoo Full time

    About the role: You will have a lead role in initiatives to mature Information Management (IM) compliance associated with key functions including records management and information security, including the achievement and maintenance of ISO27001 certification for the Agency. What will you be doing? ...


  • Brisbane, Australia Hudson Australia Full time

    Using the latest tools and technology assist in driving information protection standards, creating maximum impact and protection. We're looking for someone who is excited to innovate, aren't afraid to do things differently, and are motivated to make a difference with the work they do. This role will suit someone who has a strong technical knowledge, can...

  • Analyst

    4 weeks ago


    Brisbane, Australia Children, Youth Justice and Multicultural Affairs Full time

    **The Analyst key responsibilities are**: - Produce regional performance reports utilising diverse data sources including ICMS, BIS and external sources to assist senior management identify regional trends and issues and to guide service delivery planning. - Provide advice, support and guidance to regional staff in relation to good practice, systems...


  • Brisbane, Australia Empire Careers Full time

    Contact Name : Ben Croft Contact Phone : 07 3231 1217 Location : Brisbane Job Type : Fixed Term/ Temp Job Salary : $150000 - $200000 per annum Contract Opportunity | Government | 6 Months The Role The Principal Information Analyst reports to the Manager, Digital Capability and will plan, implement and evaluate information management initiatives as...