Cyber Security Analyst
- Cyber Security Analyst
- 24 months fixed term role
- Adelaide Based Position
The Cyber Security Analyst is responsible for providing proactive, operational and reactive support and guidance to the IT Staff and staff in all of the organisation’s Information Technology (IT) environments ensuring systems and hardware operate in a secure manner that meets the organisation’s needs.
As part of the Cyber Security Team, you will be responsible for operational expertise and orchestration across a wide range of cybersecurity solutions. This includes implementation, operations, maintenance and monitoring of key security services to provide the best insight, protection and value for the organisation and will also develop and recommend operational tactics and alignment with the cyber security initiatives and strategy.
Responsibilities:
- Support the Cyber Security Manager in implementing Cyber Security Strategy.
- Ensure cyber security threats are actively monitored and managed.
- Liaise with the various Business Unit stakeholders, MSSP, and cybersecurity vendors, with regards to provision and maintenance of operational and monitoring tools.
- Review information security alerts and perform security event analysis across multiple source systems and various log formats.
- Assist in the management of information security incidents, including investigation, reporting and recommendations for improvement of controls.
- Administer the corporate security tools, including the EDR/antivirus solution,, identifying potential threats and conducting risk assessments as to their likely impact.
- Engage with IT staff in their day-to-day activities and provide assistance from a cyber security perspective.
- Perform regular compliance controls testing across multiple systems and network solutions.
- Oversee the security training and awareness programmes.
- Develop and maintain various levels of documentation of cybersecurity operations including but not limited to executive reports, summaries, memos, runbooks, policies, plans, and procedures.
- Implement all changes in line with change management framework.
- Identify opportunities to improve the design, resilience or capabilities of IT systems.
- Participate in knowledge sharing to ensure key information is available and accessible to all, in line with
- Knowledge Management Framework and relevant processes.
- Assist in structured threat modelling activities for applications, infrastructure and business processes, by identifying potential threat scenarios and attack paths. Contributing to documented outcomes and remediation.
- Perform control gap assessments against the relevant frames works, identifying gaps, residual risk and control effectiveness
Qualifications and Experience:
- Minimum 3 years’ experience in information security.
- Experience in cyber security in an operational technology environment.
- Demonstrated operational expertise: Vulnerability management; Endpoint Detection and Response; Logging and Monitoring (SIEM, User Behaviour Analytics); Windows client, server and hyper-visor operating systems; Cloud architecture (security controls and configurations)
- Exposure to industry standard security frameworks (e.g., NIST CSF, ACSC E8, APRA CPS234, ISO, PCI DSS).
- A good working knowledge of Internet and network security systems and tools including firewalls (IDS/IPS), load balancers, WAFs, IDP, PKI, endpoint security and remote access systems.
- Experience with Microsoft and Linux Operating Systems.
- A good understanding of security incident response processes.
- Good working knowledge of current IT risks and experience implementing security solutions.
- Experience in developing and monitoring effective cybersecurity policies and procedures.
- Experience in conducting and completing third-party security assessments.
- Ability to learn and adapt to a constantly changing technology and threat landscape.
- A track record in analysing complex technical situations and articulating technical security issues and associated risks in business language.
- Excellent analytical and problem-solving skills.
- High level communication and interpersonal skills.
- Scripting and automation (API, powershell and/or python).
Apply now or reach out to Ivan Aureus at 0480 806 152.