We're seeking an experienced Senior Cyber Security Analyst to join a high-performing cyber security team focused on improving cyber resilience, reducing security risk and responding to emerging threats across a complex enterprise environment. Based in Sydney, this role offers the opportunity to work on large-scale security uplift initiatives that directly contribute to the protection of critical systems and services.
The Opportunity
You'll be part of a specialised Vulnerability & Posture Management function, working closely with Cyber Security, Infrastructure, Cloud, Identity and Technology teams to drive vulnerability remediation, security hardening and exposure reduction activities across the enterprise. The role will see you assessing vulnerabilities, coordinating remediation efforts, supporting threat responses and helping to strengthen security governance, compliance and reporting capabilities.
Key Responsibilities
- Drive vulnerability management activities including identification, assessment, prioritisation and remediation governance
- Support responses to critical vulnerabilities, emerging threats and large-scale exposure events
- Improve security posture management and compliance assessment processes
- Provide expertise across vulnerability management platforms including Tenable and related technologies
- Partner with infrastructure, cloud, identity and technology teams to reduce cyber risk
- Support security hardening initiatives and secure configuration standards
- Develop metrics, reporting and operational processes that support cyber risk management
- Contribute to enterprise-wide cyber security uplift and resilience programs
About You
You'll bring experience working in cyber security within complex enterprise environments and have a strong understanding of vulnerability management, security posture management and cyber risk reduction.
- Experience with vulnerability management platforms such as Tenable, Qualys, Rapid7 or similar
- Strong understanding of vulnerability management and system hardening practices
- Experience with exposure management, attack surface management or risk-based vulnerability management
- Knowledge of frameworks including Essential Eight, ASD ISM, NIST CSF and CIS Benchmarks
- Strong analytical, reporting and stakeholder engagement skills
- Experience supporting audits, compliance activities and cyber risk programs
- Ability to communicate technical risks to both technical and non-technical stakeholders
Highly Desirable
- CISSP, CISM, CRISC, GIAC or equivalent certifications
- Relevant tertiary qualifications in Cyber Security, Information Technology or related disciplines
What's On Offer
- Sydney-based hybrid working arrangement
- Opportunity to work within a mature cyber security function
- Exposure to enterprise-scale security uplift and emerging threat response initiatives
- Collaborative and highly skilled security team
Don't Tick Every Box?
We're keen to hear from cyber security professionals who have strong experience in vulnerability management and cyber risk reduction, even if you haven't worked across every technology listed. If you've worked within large enterprise environments and can demonstrate a genuine passion for improving security outcomes, we'd encourage you to apply.
#J-18808-Ljbffr- Locations
- Sydney, New South Wales, Australia
- Timezones
- Australia