Senior Cyber Analyst

4 weeks ago


Sydney, Australia Tal Services Limited Full time

Company Description

Welcome to This Australian Life. 

From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding excellence and retaining great talent.

We're always looking for people who want to go further with us. People who do what’s right, aim high, and work smart.  Why not see where we can go?

Job Description

The Senior Cyber Analyst is part of the Third-Party Tech & Cyber Risk which is part of the Technology & Cyber Risk function within the Technology Business Unit.  This role will support the manager in aligning to the strategy and execution of our third-party technology risk management, third party cyber security management, relevant technology and cyber clauses within the contractual management process and overall governance of technology third parties. This role is responsible for adhering to and identifying improvements to relevant frameworks, policies, practices and controls to maintain the risk posture within the appetite.

Key accountabilities:

  • Adhere to the Third-Party Technology & Cyber Risk Management Framework and support the delivery of associated strategy, target state roadmap, and supporting processes and procedures.
  • Conduct in-depth risk assessments and due diligence on potential and existing third-parties to identify risks and compliance gaps.
  • Engage third-parties based on the non-compliance and potential cyber security issues identified via continuous passive security posture management technologies. Conduct risk assessments and develop a plan with the third-parties to remediate non-compliance and/or potential security issues. 
  • Establish and maintain the governance structure for ongoing management of third-party relationships, including regular performance and compliance reviews. 
  • Collaborate with all technology teams to embed effective vendor management practices aligned to the TAL Procurement Procedure and Vendor Management Model.
  • Identifying potential areas for improvement for vendor governance, enhancement and upgrade by maintaining a good working knowledge of all services provided to TAL business units.
  • Collaborate with the Cyber Threat Management function and engage material and high risk third-parties to determine their exposure to critical and actively exploited external-facing vulnerabilities, as well as their security posture against emerging attacker tactics and techniques.
  • Assist with the assurance and compliance activities to demonstrate the effectiveness of Third-Party Technology & Cyber Risk Management function. Address the corrective actions and resolve gaps identified during the assurance and compliance activities.
  • Support and assist with the negotiation, implementation, and management of technology and cyber clauses in the third-party contracts with the Legal. Uplift those technology and cyber clauses in the contractual terms in line with regulatory and threat environment changes, as needed.
  • Monitor and report on third-party compliance with technology and security requirements as well as their performance against contracts, and coordinate the corrective action, as needed.
  • Stay abreast of regulatory changes and industry best practices related to Third-Party Technology and Cyber Risk management to ensure the policies and procedures are up-to-date.
  • Develop and deliver training to internal stakeholders on Third-Party Technology & Cyber Risk Management practices.
  • Collaborate with cross-functional teams, including Technology, Risk (Line 2), Audit, Legal, Compliance, and Procurement, to ensure a cohesive and integrated approach to Third-Party Technology & Cyber Risk Management.
  • Support the TAL Cyber Security Report to Group Partners to demonstrate TAL’s security posture on an annual basis. Lead the activities required to complete the Report, including but not limited to engaging various parts of Technology and the wider Business Units, collecting supporting evidence, leading interviews/workshops with the independent assessor.
  • Respond to technology risk and cyber security related questions raised by Group Partners through the Business Units on an ongoing basis, and attend periodic governance meetings with the Group Partners as a representative of Technology & Cyber Risk function.

Qualifications

  • Bachelor's degree in Business, Finance, Information Technology, or a related field. Relevant professional certifications (e.g., CISM, CRISC, CISSP) is a plus.
  • Minimum of 2 years of experience in Third-Party Risk Management, Technology Risk, Cyber Security, or a related field with proven experience of supporting, implementing and managing third party risk management programs.
  • Strong understanding of regulatory compliance standards relevant to third-party risk and security (e.g., APRA CPS234 / CPS230, SOX, ISO 27001, NIST CSF, Privacy Act, SOCI, etc.).
  • Strong communication skills with the ability to translate risk into business impact.
  • Self-starter with strong organisational skills in a highly-adaptive and a fast-paced environment.
  • Customer-oriented mindset and ability to apply collaborative approach to achieving business outcomes.
  • Thinker and doer with a pragmatic approach to make decisions and at the same time focused on outcomes.

Additional Information

At TAL we value diversity in all its forms and are committed to fostering an inclusive and equitable culture for all our people. We encourage Aboriginal and Torres Strait Islander people, individuals from all backgrounds, including those with caring responsibilities, people living with disability, and individuals from the CALD and LGBTQI+ communities to apply. Even if you don’t check every box in the criteria above, we encourage you to apply today or get in touch with us here.   

To provide you with the best experience, we can accommodate you at any stage of the recruitment process. Simply inform our Recruitment team at any time.  

TAL is recognised by the Workplace Gender Equality Agency as an Employer of Choice.  We are proud to be a member of Diversity Council Australia and the Australian Network on Disability. For information on our reconciliation journey, take a look at our Innovate Reconciliation Action Plan.  

We acknowledge the Traditional Custodians of the Land in which our Head Office is based, the land of the Gadigal people of the Eora Nation, and recognise their deep connections to the land, sea, and culture.  
We extend this acknowledgment to the many Traditional Lands that we operate across and pay our respects to Elders past, present, and emerging. 

Everyone at TAL has a responsibility to do the right thing and is accountable for the way they conduct themselves. Our expectations are that you follow the principles set out in our Code of Conduct when you come to work every day. Risk management is everyone’s responsibility.

If you are already a TAL employee please apply via the SmartRecruiters button in Workday and navigate to the Employee Portal. This is important to ensure that your application is recorded accurately.



  • North Sydney, Australia Fairfax Media. Full time

    Company Description Nine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and Digital. Nine’s assets...


  • Sydney, Australia BSI People Full time

    **Cyber Security Specialist AND Senior Cyber Security Analyst** If you are a technical cyber security specialist or Analyst with experience in some or all of the facets listed above. We want to hear from you. Positions based in Sydney, Canberra and Melbourne Australian Citizens due to security clearance requirements. To register interest and find out more...


  • Sydney, Australia AI Talent Full time

    We are seeking a highly skilled and experienced Senior Cyber Security Analyst to join our team. As a Senior Cyber Security Analyst, you will play a pivotal role in safeguarding our organization's systems, networks, and data from cyber threats. Your expertise in cybersecurity frameworks, risk assessment, incident response, and security operations will be...


  • Sydney, Australia Halcyon Knights Full time

    Job Title: Senior Cyber Security Risk Analyst Contract: 6 month contract Salary:  $87.51 - $93.45 per hour Responsibilities: Develop and implement improved assessment processes for maintaining an accurate risk picture of the ICT environment. Engage with stakeholders across the University, government organisations, and industry partners to ensure a...

  • Managing Analyst

    4 weeks ago


    Sydney, Australia CyberCX Full time

    At CyberCX we are building a uniquely Australia and New Zealand focused cyber intelligence capability. The Managing Analyst will lead a fast-growing team of Lead Analysts, Senior Analysts, Analysts and Associate Analysts to deliver assessments, reports and finished intelligence products for diverse stakeholders. They will spearhead continuous improvement of...


  • Sydney, Australia Zone IT Solutions Full time

    We are looking for Cyber Security Analyst to join a project. You will be part of a large support team who will be providing IT support to a large user base organization. **Requirements**: **Responsibilities Include**: - Administrative lead for Cyber Security Audits, - Setting up compliance software for audits, - Updating Cyber Security documentation, -...


  • Sydney, Australia Talent International Full time

    **Job Details**: **Location** Sydney **Salary** Negotiable **Job Type** Full Time **Ref** BBBH101737_1683872605 **Contact** Zane Khan **Posted** about 1 hour ago Talent International have partnered with one of the fastest growing systems integrators in the market and are currently looking for a Junior Cyber Security Analyst to join their highly...


  • Sydney, Australia NSW Government Full time

    **Cyber Security Analyst** - ** Role Type: 2 Ongoing, full-time opportunity.** - ** Clerk Grade: 07/08 The package includes a base salary range of $ 106,025 to $117,363 plus employer’s contribution to superannuation and annual leave loading.** - ** Location: Sydney or Bathurst** **About the Role** Cyber Security NSW is looking for an Operational...


  • Sydney, Australia Commonwealth Bank Full time

    **You are **a forward thinking Cyber Security specialist with a key focus on building a future career in threat intelligence. - **We’re supportive **in development and growth providing security insights and expertise using open and closed source technology. - **Together we **contribute in securing and enhancing the financial well-being of people,...


  • Sydney, Australia Cuscal Full time

    Job DescriptionWe are looking for a Senior Cyber Security Analyst to join our Security Operations Centre. The SOC is responsible for proactively seeking out indicators of compromise that conventional information security controls cannot find, including tracking of threats and targeted security campaigns.What is this role about?As the Senior Cyber Security...


  • Sydney, Australia Cuscal Limited Full time

    Company DescriptionCuscal – where curiosity and expertise are rewarded. Be part of a smaller team taking on a bigger role – a role where your curiosity, your energy, your ambition is rewarded. You’ll grow with us in an unconventional way where sideways develops you as much as up; where voices are heard and ideas are tested, and new things are created...


  • Sydney, Australia ITplex Recruitment and Consultancy Full time

    **Job brief** Our Government client requires an experienced Cyber Security Analyst, working within a Security Operations Centre, to maintain and strengthen the Cyber Operations teams security monitoring and incident response capability. **Responsibilities** - Develop and document detection and alerting use cases specific to the Departments IT...


  • Sydney, Australia The Decipher Bureau Full time

    This ASX listed organisation have seen considerable growth and investment in their cyber and risk team over the years, with lots of new initiatives in the GRC space that need to be delivered specifically defining group wide cyber principles.You will be across a number of accountabilities including leading security risk assessments and analysis, defining...


  • Sydney, Australia Salt Recruitment Full time

    **CYBER SECURITY ANALYST** - Permanent opportunity - Attractive remuneration - Location: Sydney/Melbourne The Security Analyst will perform information security and process review to identify and develop business security and functional requirement specification. Reports to Head of Risk and Compliance **Responsibilities**: - Develops and understanding of...


  • Sydney, Australia Commonwealth Bank Full time

    **Your new team** The Cyber Attack Analysis Team (CAAT) is responsible for monitoring, triaging, and investigating cyber security events across the entire technology landscape for the Group. **Your new role** As a Cyber Security Analyst, you will: - Monitor the Group’s computer systems for suspicious activity using enterprise grade tools and critical...


  • Sydney, Australia Halcyon Knights Full time

    Higher Education Opportunity - 6 Month Contract - Sydney **Cyber Security Incident Response Analyst** *** Are you passionate about defending against cyber threats and safeguarding critical information assets? Do you have a deep understanding of cyber security practices and technologies? If so, we invite you to join our client’s team as a Cyber Security...


  • Sydney, Australia Hatch Full time

    ** This role is at Commonwealth Bank (not for Hatch)** Hatch is supporting Commonwealth Bank to find a great Cyber Intelligence Analyst to join their Business Operations and Strategy team. Hatch exists to level the playing field for people as they discover a career that’s right for them. We model this in our hiring process for our partners like...


  • Sydney, Australia Dynamo Recruitment Full time

    Baseline Clearance Required - Immediate Start - 6+ month SYD based / hybird This is a great opportunity, **Cyber Security Analyst working for a large reputable Govt organisation!** - **Exciting Project**: - **Hybird - office 2- 3 days**: - **SYD**: - **6+month contract** **Baseline Clearance Required** This is a great opportunity to join a leading...

  • Cyber Governance

    4 weeks ago


    Sydney, Australia AMP Limited Full time

    The Cyber Governance & Metrics Analyst is responsible for assisting with AMP’s internal processes that provide assurance to our stakeholders that their information assets are appropriately secured. **How you will make an impact** - Lead monthly governance meetings with senior stakeholders, to ensure they are meeting the Cyber metric targets for their...


  • Sydney, Australia Balance Recruitment Full time

    Our client is a wonderful organisation in the online and cyber security space. **They are currently looking for an entry level Cyber Security Analyst to work as part of an existing team.** The role will assist in analysing security practices and procedures in a very specialised area of work, dealing with sensitive information in a complex legal and policy...