40 Cloud Security jobs in Australia
Cloud Security Operations Senior Analyst, Global Information Security

Posted 2 days ago
Job Viewed
Job Description
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
**Job Description:**
As a Senior Cloud Operations Specialist, you will play a pivotal role in our organization's growth and evolution. You will be responsible for modernizing our existing and future cloud operations workflows to simplify, optimize and ensure consistency in quality and urgency of investigations within our organization and a well-defined decision matrix for escalations to our partner organizations. You will also collaborate with partner teams to continually identify opportunities to reduce event volume, to increase event fidelity, and to engineer detections for new threats and risks.
Additionally, you will support development and maintenance of innovate training programs to quickly upskill existing cybersecurity operations professionals to operate in an Azure cloud operations environment as well as to be a representative for the organization on cloud related operations in any audit or regulatory examinations.
**Key Responsibilities:**
+ Investigate security events and incidents within cloud environments, utilizing advanced tools and techniques to identify threats and vulnerabilities.
+ Design and implement comprehensive workflows for handling security events, ensuring timely and effective response procedures.
+ Collaborate with cross-functional teams to develop and refine security policies, procedures, and best practices tailored to Azure cloud security operations.
+ Provide guidance and mentorship to junior team members, fostering their professional development and enhancing overall team capabilities.
+ Stay abreast of emerging threats, vulnerabilities, and industry trends, continually updating skills and knowledge to maintain expertise in cloud security.
**Qualifications:**
+ Extensive experience (7+ years) in cybersecurity operations, with experience onmulti-cloud (AWS, Azure and Google) environments.
+ Proven expertise in investigating security events and incidents within cloud environments, demonstrating strong analytical and problem-solving skills.
+ Solid understanding of regulatory compliance requirements, particularly in highly regulated industries (e.g., healthcare, finance, government).
+ Experience in designing and implementing workflows for security event investigation and response.
+ Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams and mentor junior team members.
+ Ability to thrive in a fast-paced environment, managing multiple priorities and deadlines effectively.
**Required Skills:**
+ Understanding ofmulti-cloud (AWS, Azure and Google) environmentsand its associated technologies, both from Security and Cloud Ops perspective.
+ 8+ years relevant Cyber Security experience with at least five (5) years in Cloud SOC and/or Purple Team roles.
+ Experience designing and implementing technical solutions to enhance visibility, alerting capabilities, and reduce risk within Cloud IaaS, PaaS, and M365 environments.
+ Experience reviewing applications, infrastructure, and architectural designs to identify threats and vulnerabilities.
+ Experience with a range of Azure native services and tools.
+ Experience writing and modifying Analytic Rules.
+ Experience designing and implementing SOAR capabilities within Azure.
+ Deep understanding of Cyber Security control environments and their relationship to zero-trust networks.
+ Understanding of Terraform.
+ Understanding of threat frameworks, such as MITRE ATT&CK for Cloud and D3FEND.
+ Understanding of Risk Management principles.
+ Experience in building, configuring, operating and/or securing cloud infrastructure and applications with either native cloud service provider capabilities or 3rd party vendor tools.
+ Proven ability to leverage Cloud native capabilities to build custom reports and dashboards.
+ Ability to independently assess risks and identify vulnerabilities in infrastructure with an eagerness to suggest new processes, policies, and overall improvements to internal security controls.
+ Ability to perform root cause analyses.
+ Experience partnering with incident response teams, threat intelligence researchers, Red/Purple teams, and/or HUNT researchers.
+ Ability to support 24x7x365 global support through rotational on-call.
+ Highly organized and motivated self-starter who can deliver results with minimal direction.
+ Ability to navigate and collaborate effectively within a geographically complex and dispersed global corporation.
+ Excellent verbal and written communication skills with ability to distill key data points and effectively present information.
**Preferable Certifications:**
+ AZ-500: Azure Security Engineer Associate
+ CISSP
+ CISM
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Senior Technical Consultant: Cloud Security

Posted 23 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**The role:**
The Senior Technical Consultant: Cloud Security is an advanced subject matter expert involved in highly complex environments, focusing on design, deployment, integration, and configuration of cloud security solutions.
You will be responsible for providing expert-level guidance and strategic direction to clients in assessing, designing, and implementing cloud technologies from a security standpoint. This role emphasis deep technical expertise, technical leadership, whilst at the same time developing business acumen.
**Key responsibilities:**
+ Consult with clients and design solutions across a broad range of cyber security topics to support clients' business strategies
+ Coordinate activities of engineers, leading by example and monitoring the quality of work when required
+ Write reports and proposals, complete and maintain project documentation
+ Act as a coach and mentor to junior engineers and consultants
+ Take ownership of relevant technologies within your domain or area of specialiszation
+ Engage with vendors to escalate critical issues or report bugs found during deployments
+ Collaborate with sales and presales teams to define project scope, delivery plans, and resource requirements aligned with client goals
+ Actively promote NTT DATA's services to support business growth
+ Perform any other related task as required
**To thrive in this role, you need to have:**
+ An advanced understanding and appreciation of technical design and business principles
+ Strong project fundamental and administration ability
+ Demonstrated expertise in project execution
+ Advanced customer engagement skills
+ Deep knowledge and specialisation in relevant technical domains
+ Excellent verbal communication skills
+ A client focus mindset with a a proactive approach to problem solving
+ Advanced ability to coach, mentor, and provide guidance to team members
+ The ability to take ownership as a technical lead throughout the project lifecycle
**Qualifications and Certifications:**
+ Bachelor's degree or equivalent in Information Technology, Computing or related field.
+ Cloud certifications (mandatory): AZ-500, MS-500, SC-100, SC-300, AWS Solution Architect/Security, or Google Professional Cloud Security Engineer
+ Additional certifications/experience (highly preferred): Cortex Cloud/Prisma Cloud, Wiz, or Defender for Cloud
+ Automation, Security Operations, and Network Security certifications (preferred): Azure Certified DevOps Engineer, Azure Certified Solutions Architect, Palo Alto Networks certifications, Cisco Security certifications
+ CISSP, CISM, CCSP, CISA, ITIL - highly preferred
**Required experience:**
+ Advanced experience in M365, Azure, AWS or GCP, including security patterns and best practices, design, and assessment.
+ Advanced experience with Defender for Cloud, or Prisma Cloud, or Wiz
+ Deep understanding of security frameworks and compliance standards such as NIST, ISO 27001, ISM, and ASD Blueprints
+ Advanced experience in configuration and management of cloud security controls.
+ Advanced experience in log collection configuration, MS Sentinel/Splunk/XSIAM configuration
+ Experience with various security technologies and solutions like Identity Management, Firewall, Endpoint Protection, SASE, API Protection.
+ Experience in Infrastructure as a Code (IaC), automation, and DevOps pipeline configuration.
+ Experience in scripting languages such as Python or PowerShell, and experience with automation tools like Ansible, Puppet, or Chef.
+ Experience in writing technical documentation, designing patterns, implementation and testing of cloud solutions, technical support to clients.
+ Experience in handling security incidents
#L1-APAC
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Senior Technical Consultant: Cloud Security

Posted 23 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**The role:**
The Senior Technical Consultant: Cloud Security is an advanced subject matter expert involved in highly complex environments, focusing on design, deployment, integration, and configuration of cloud security solutions.
You will be responsible for providing expert-level guidance and strategic direction to clients in assessing, designing, and implementing cloud technologies from a security standpoint. This role emphasis deep technical expertise, technical leadership, whilst at the same time developing business acumen.
**Key responsibilities:**
+ Consult with clients and design solutions across a broad range of cyber security topics to support clients' business strategies
+ Coordinate activities of engineers, leading by example and monitoring the quality of work when required
+ Write reports and proposals, complete and maintain project documentation
+ Act as a coach and mentor to junior engineers and consultants
+ Take ownership of relevant technologies within your domain or area of specialiszation
+ Engage with vendors to escalate critical issues or report bugs found during deployments
+ Collaborate with sales and presales teams to define project scope, delivery plans, and resource requirements aligned with client goals
+ Actively promote NTT DATA's services to support business growth
+ Perform any other related task as required
**To thrive in this role, you need to have:**
+ An advanced understanding and appreciation of technical design and business principles
+ Strong project fundamental and administration ability
+ Demonstrated expertise in project execution
+ Advanced customer engagement skills
+ Deep knowledge and specialisation in relevant technical domains
+ Excellent verbal communication skills
+ A client focus mindset with a a proactive approach to problem solving
+ Advanced ability to coach, mentor, and provide guidance to team members
+ The ability to take ownership as a technical lead throughout the project lifecycle
**Qualifications and Certifications:**
+ Bachelor's degree or equivalent in Information Technology, Computing or related field.
+ Cloud certifications (mandatory): AZ-500, MS-500, SC-100, SC-300, AWS Solution Architect/Security, or Google Professional Cloud Security Engineer
+ Additional certifications/experience (highly preferred): Cortex Cloud/Prisma Cloud, Wiz, or Defender for Cloud
+ Automation, Security Operations, and Network Security certifications (preferred): Azure Certified DevOps Engineer, Azure Certified Solutions Architect, Palo Alto Networks certifications, Cisco Security certifications
+ CISSP, CISM, CCSP, CISA, ITIL - highly preferred
**Required experience:**
+ Advanced experience in M365, Azure, AWS or GCP, including security patterns and best practices, design, and assessment.
+ Advanced experience with Defender for Cloud, or Prisma Cloud, or Wiz
+ Deep understanding of security frameworks and compliance standards such as NIST, ISO 27001, ISM, and ASD Blueprints
+ Advanced experience in configuration and management of cloud security controls.
+ Advanced experience in log collection configuration, MS Sentinel/Splunk/XSIAM configuration
+ Experience with various security technologies and solutions like Identity Management, Firewall, Endpoint Protection, SASE, API Protection.
+ Experience in Infrastructure as a Code (IaC), automation, and DevOps pipeline configuration.
+ Experience in scripting languages such as Python or PowerShell, and experience with automation tools like Ansible, Puppet, or Chef.
+ Experience in writing technical documentation, designing patterns, implementation and testing of cloud solutions, technical support to clients.
+ Experience in handling security incidents
#L1-APAC
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Senior Information Security Engineer
Posted 7 days ago
Job Viewed
Job Description
The Senior Information Security Engineer, as a key member of the Platform Support Administration team, is accountable for the administration, optimization, and continuous improvement of the ServiceNow platform, with a particular emphasis on SecOps applications. This role ensures the platform's stability and performance while aligning with organizational objectives. The individual will collaborate closely with end-users and stakeholders to provide timely and effective support.
**Key Responsibilities:**
+ Lead the day-to-day administration of the ServiceNow platform, including user and group management, access controls, data imports, and platform upgrades.
+ Develop tools in Python, bash, and/or JavaScript to replace manual work and improve customer maintenance experience.
+ Prepare to onboard new ServiceNow products. Provide training and knowledge transfer to the end users.
+ Use broad knowledge and experience of systems administration and networking principles to proactively prevent and address incidents while constantly improving documentation.
+ Participate in escalations and Root Cause Analysis of issues.
+ Configure and maintain core ServiceNow applications such as:
+ ITSM (Incident, Problem, Change, Request)
+ SecOps Applications (Vulnerability Response, Configuration Compliance Security Incident Response)
+ Serve as a lead technical expert for integrations between ServiceNow and third-party systems (e.g., via REST/SOAP APIs, MID servers).
+ Monitor platform health, performance, and security, implementing tuning and hardening measures as needed.
+ Evaluate and apply ServiceNow patches, upgrades, and hotfixes in accordance with release cycles.
+ Provide mentorship and oversight to internal and external teams.
+ Partner with stakeholders across internal Security, Digital transformation and other business units to gather requirements and implement scalable solutions.
**_Due to the nature of the role and regulatory requirements for this role, only candidates who are Australian citizens and on Australia soil can be considered._**
+ Bachelor's degree in computer science, Information Systems, or related field, or equivalent experience.
+ 5+ years of hands-on system administration experience in a complex enterprise environment.
+ Proficiency in scripting languages used in ServiceNow (e.g., JavaScript, GlideScript).
+ Experience with ServiceNow update sets, ACLs, client/server scripts, UI policies, and customizations.
+ Strong understanding of ITIL/ITSM processes.
+ Demonstrated experience managing ServiceNow upgrades and platform migrations.
**Preferred Skills:**
+ ServiceNow Certified System Administrator (CSA) certification.
+ SecOps Applications Specialist Certificate
+ AIOps experience
+ Familiarity with Agile or Scrum delivery methodologies.
+ Experience with automated testing tools in the ServiceNow ecosystem (e.g., ATF).
**Work Personas**
We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here ( . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.
**Equal Opportunity Employer**
ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.
**Accommodations**
We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact for assistance.
**Export Control Regulations**
For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.
From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.
Senior Information Security Analyst
Posted 3 days ago
Job Viewed
Job Description
The **ServiceNow Security Organisation** is dedicated to delivering **world-class, innovative security solutions** that minimize risk and protect both our company and our customers. By enabling the secure migration of sensitive data and workloads to the cloud, we help accelerate ServiceNow's position as the **most trusted SaaS provider** in the industry.
**About the Team - Global Security Support Center (GSSC)**
The **Global Security Support Center (GSSC)** at ServiceNow is a diverse and highly skilled team of security professionals who play a pivotal role in strengthening both our internal and external security posture. The team collaborates closely with various functions across the company and serves as a key interface with our customers on security-related matters.
Through expertise, communication, and a commitment to excellence, the GSSC team reinforces ServiceNow's reputation as a **security-first organization** , consistently demonstrating our commitment to protecting our platform, our data, and our customers.
**Responsibilities**
+ Represent security organization in customer-facing Security Incidents, cases, Security findings, tasks and questions and calls related to Security & Privacy.
+ Own, triage, investigate and respond to security matters of ServiceNow platform, ensuring timely communication, resolution and enhance customer experience and processes.
+ Act as the primary point of contact for all security-related matters in ServiceNow, supporting both internal and external stakeholders.
+ Facilitate the efficient workflow/triage of security-related incidents/cases by collaborating with customers and other internal ServiceNow teams.
+ Build and maintain a high level of customer trust and confidence through exceptional service and communication.
+ Customer Outreach Communications on Security & escalation handling.
+ Understand and deliver excellent capability maturity models to fine tune Security processes.
+ Create and enhance documentation and processes to strengthen security maturity and operational excellence.
+ Develop and deliver training/enablement programs on Security, for internal and external customers on security awareness and best practices.
+ Develop AI Solutions for automating repetitive activities & design new solutions leveraging AI.
+ Work with Legal on security/privacy-related matters & a global team spread across different time zones, so flexibility of times is **required** .
+ Provide support and be **available** as a responsible resource for the On-Call rotation (weekends, public holidays and after hours) as rostered.
**To be successful in this role you have**
+ Experience: A minimum of 5 years of professional experience in information security or application security roles.
+ Certifications: Relevant certifications are highly preferred, including but not limited to:
+ **Required** : ServiceNow Certified System Administrator (CSA)
+ **Preferred** (Two or more): Azure AI Fundamentals, AWS Certified AI Practitioner, Offensive Security Web Assessor (OSWA), GIAC Web Application Penetration Tester (GWAPT), GIAC Security Essentials Certification (GSEC), GIAC Certified Incident Handler (GCIH), CISSP, CISM.
+ Skills & Competencies
+ Technical Skills:
+ Solid understanding of cloud computing models and major hyperscaler cloud models.
+ Hands-on experience with using and understanding security tools and technologies, including: SIEM solutions, logging tools, load balancers, firewalls, WAFs, IDS/IPS, vulnerability management platforms, encryption techniques etc.
+ Basic to Intermediate-level programming knowledge in **Java/JavaScript** with the ability to read, interpret & understand to explain code effectively.
+ Intermediate to Advanced proficiency in using web proxy tools for security testing and assessments.
+ Application Security: In-depth understanding of web application vulnerabilities (e.g., OWASP Top Ten) and corresponding mitigation strategies.
+ Risk Management: Ability to clearly explain security risks to non-technical stakeholders using straightforward, non-technical language.
+ Compliance & Regulatory Knowledge: Good knowledge of key compliance and regulatory frameworks including: NIST, CIS, GDPR, HIPAA, PCI DSS, ISO standards etc.
+ Artificial Intelligence: Experience working with AI technologies and designing AI-based solutions.
+ Analytical Thinking: Strong analytical and problem-solving capabilities, with the ability to evaluate and address complex security challenges.
+ Communication: Excellent verbal and written communication skills, with the ability to convey technical information to non-technical audience.
+ Team Collaboration: Demonstrated ability to thrive in a team-oriented, collaborative environment working in a follow the sun model.
+ Security Concepts: Good understanding of Security concepts and articulating Security and risk in simple terms without using jargons and make sense to customers.
+ Education: Bachelor's degree in computer science or information security or relevant information security experience.
+ Preferred Additional Experience: Hands-on experience with web-based vulnerability exploitation and experience is a strong plus to succeed in this role.
_This Senior Information Security Analyst role is an exciting opportunity to join a dynamic and forward-thinking company. If you have the skills, experience, and passion for ensuring the security and integrity of information systems, we invite you to apply and become part of the ServiceNow team._
**Work Personas**
We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here ( . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.
**Equal Opportunity Employer**
ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.
**Accommodations**
We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact for assistance.
**Export Control Regulations**
For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.
From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.
Senior Information Security Officer - Defence Sector

Posted 23 days ago
Job Viewed
Job Description
Senior Information Security Officer - Defence Sector
Your KBR future - delivering solutions and changing the world
About KBR:
We are a company of innovators, thinkers, creators, explorers, volunteers and dreamers who all share one goal - to improve the world.
KBR delivers science, technology and engineering solutions to governments and companies around the world. KBR employs approximately 34,000 people performing diverse, complex, and mission-critical roles in 33 countries.
For 65 years, KBR and its heritage companies are proud to have delivered some of Australia's largest and most complex projects.
With around 2,000 employees in 6 primary offices throughout Australia, we are committed to social and environmental sustainability and delivering projects with a digital mindset driving innovation within our business and for our customers.
We help ensure mission success on land, in the air, at sea, in space and cyberspace for our Defence customers. From individual technologies and services to comprehensive project delivery and mission execution, no other company can match the breadth and depth of KBR.
KBR comprises a talented team who provide a broad spectrum of capabilities across Australia and the Asia Pacific. Our proven project teams readily address complex and multi-disciplinary activities, providing low-risk and cost-effective solutions to the Defence force.
The Opportunity:
KBR is inviting expressions of interest from highly skilled and experienced Senior Information Security Officers to support critical Defence programs based in Brisbane or Canberra.
As a Senior Information Security Officer, you will play a vital role in ensuring the protection of Defence systems, information, and assets, supporting the ongoing delivery of secure, reliable, and compliant Defence capabilities. This is an exciting opportunity to contribute to national security outcomes and work with a diverse team of experts on high-impact Defence projects.
The key responsibilities of the role will include, but is not limited to:
+ Lead the development, implementation, and maintenance of Information Security Management Systems (ISMS) to ensure Defence compliance with ISO 27001, ACSC Essential 8, and Defence Security requirements.
+ Conduct risk assessments and vulnerability management, ensuring appropriate information security controls are in place to protect Defence systems and data across their lifecycle.
+ Develop and enforce information security policies, procedures, and best practices, ensuring Defence IT infrastructure and systems are protected against cyber threats and vulnerabilities.
+ Support the implementation and maintenance of cybersecurity frameworks and ensure compliance with national and international information security standards.
+ Provide expert advice to Defence stakeholders and project teams on information security best practices, emerging threats, and mitigation strategies.
+ Collaborate with cross-functional teams, including Defence security, engineering, and project management, to ensure robust security governance for all Defence programs.
+ Conduct security audits, assessments, and incident response activities to ensure the availability, integrity, and confidentiality of Defence information assets.
+ Maintain awareness of current cybersecurity trends and emerging threats, and continuously update security practices to protect Defence information systems.
As the ideal candidate you will bring:
+ Tertiary qualifications in Information Security, Computer Science, Information Technology, or a related discipline.
+ Minimum 5 years of experience in an Information Security role, ideally within Defence, Government, or similarly regulated industries.
+ Expertise in implementing and managing Information Security Management Systems (ISMS) and conducting security risk assessments.
+ Strong knowledge of Defence security policies, standards, and frameworks, including ISO 27001, NIST, ACSC Essential 8, and DEF(AUST) 3000.
+ Experience with security tools, such as SIEM, firewalls, endpoint protection, and vulnerability scanning tools.
+ Proven ability to communicate effectively with senior stakeholders, providing expert guidance on complex security issues.
+ Australian Citizenship is essential due to security clearance requirements.
+ NV1 security clearance (or the ability to obtain) is highly desirable.
Benefits of KBR
+ A workplace culture certified as a Great Place To Work (Aus, India, UK & US)
+ Flexible working conditions
+ Competitive salary (including annual reviews)
+ Paid Parental leave
+ Paid Reservist leave
+ Income protection
+ Corporate rewards
+ Salary packaging/Novated leasing
+ Discounted employee stock purchase plans
+ Flu shots, skin checks and private health insurance discounts
+ Career development: Online learning, mentorship and career pathways
If you're ready to shape tomorrow, let's get started. Apply Now!
KBR acknowledges the Traditional Custodians of Country throughout Australia and their continuing connections to land, sea, community and culture. We pay our respects to Elders past and present.
As a Major Service Provider of the Australian Defence Force, an AGSVA security clearance will be required and compliance to International Traffic in Arms Regulations (ITAR). As such, our hiring decisions are based on the key requirements of each role and candidates are selected based on their unique strengths and experiences.
#LI-JAW1
Senior Information Security Officer - Defence Sector

Posted 23 days ago
Job Viewed
Job Description
Senior Information Security Officer - Defence Sector
Your KBR future - delivering solutions and changing the world
About KBR:
We are a company of innovators, thinkers, creators, explorers, volunteers and dreamers who all share one goal - to improve the world.
KBR delivers science, technology and engineering solutions to governments and companies around the world. KBR employs approximately 34,000 people performing diverse, complex, and mission-critical roles in 33 countries.
For 65 years, KBR and its heritage companies are proud to have delivered some of Australia's largest and most complex projects.
With around 2,000 employees in 6 primary offices throughout Australia, we are committed to social and environmental sustainability and delivering projects with a digital mindset driving innovation within our business and for our customers.
We help ensure mission success on land, in the air, at sea, in space and cyberspace for our Defence customers. From individual technologies and services to comprehensive project delivery and mission execution, no other company can match the breadth and depth of KBR.
KBR comprises a talented team who provide a broad spectrum of capabilities across Australia and the Asia Pacific. Our proven project teams readily address complex and multi-disciplinary activities, providing low-risk and cost-effective solutions to the Defence force.
The Opportunity:
KBR is inviting expressions of interest from highly skilled and experienced Senior Information Security Officers to support critical Defence programs based in Brisbane or Canberra.
As a Senior Information Security Officer, you will play a vital role in ensuring the protection of Defence systems, information, and assets, supporting the ongoing delivery of secure, reliable, and compliant Defence capabilities. This is an exciting opportunity to contribute to national security outcomes and work with a diverse team of experts on high-impact Defence projects.
The key responsibilities of the role will include, but is not limited to:
+ Lead the development, implementation, and maintenance of Information Security Management Systems (ISMS) to ensure Defence compliance with ISO 27001, ACSC Essential 8, and Defence Security requirements.
+ Conduct risk assessments and vulnerability management, ensuring appropriate information security controls are in place to protect Defence systems and data across their lifecycle.
+ Develop and enforce information security policies, procedures, and best practices, ensuring Defence IT infrastructure and systems are protected against cyber threats and vulnerabilities.
+ Support the implementation and maintenance of cybersecurity frameworks and ensure compliance with national and international information security standards.
+ Provide expert advice to Defence stakeholders and project teams on information security best practices, emerging threats, and mitigation strategies.
+ Collaborate with cross-functional teams, including Defence security, engineering, and project management, to ensure robust security governance for all Defence programs.
+ Conduct security audits, assessments, and incident response activities to ensure the availability, integrity, and confidentiality of Defence information assets.
+ Maintain awareness of current cybersecurity trends and emerging threats, and continuously update security practices to protect Defence information systems.
As the ideal candidate you will bring:
+ Tertiary qualifications in Information Security, Computer Science, Information Technology, or a related discipline.
+ Minimum 5 years of experience in an Information Security role, ideally within Defence, Government, or similarly regulated industries.
+ Expertise in implementing and managing Information Security Management Systems (ISMS) and conducting security risk assessments.
+ Strong knowledge of Defence security policies, standards, and frameworks, including ISO 27001, NIST, ACSC Essential 8, and DEF(AUST) 3000.
+ Experience with security tools, such as SIEM, firewalls, endpoint protection, and vulnerability scanning tools.
+ Proven ability to communicate effectively with senior stakeholders, providing expert guidance on complex security issues.
+ Australian Citizenship is essential due to security clearance requirements.
+ NV1 security clearance (or the ability to obtain) is highly desirable.
Benefits of KBR
+ A workplace culture certified as a Great Place To Work (Aus, India, UK & US)
+ Flexible working conditions
+ Competitive salary (including annual reviews)
+ Paid Parental leave
+ Paid Reservist leave
+ Income protection
+ Corporate rewards
+ Salary packaging/Novated leasing
+ Discounted employee stock purchase plans
+ Flu shots, skin checks and private health insurance discounts
+ Career development: Online learning, mentorship and career pathways
If you're ready to shape tomorrow, let's get started. Apply Now!
KBR acknowledges the Traditional Custodians of Country throughout Australia and their continuing connections to land, sea, community and culture. We pay our respects to Elders past and present.
As a Major Service Provider of the Australian Defence Force, an AGSVA security clearance will be required and compliance to International Traffic in Arms Regulations (ITAR). As such, our hiring decisions are based on the key requirements of each role and candidates are selected based on their unique strengths and experiences.
#LI-JAW1
Be The First To Know
About the latest Cloud security Jobs in Australia !
Vice President, Senior Malware Reverse Engineer, Global Information Security, Australia

Posted 23 days ago
Job Viewed
Job Description
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
The Malware Defense Team's aim is to reduce risk across Bank of America by using existing or establishing robust cyber-hacking and malicious code containment activities for the security, safeguarding, continuity, and confidentiality of information of Bank of America. They are looking for an advanced-level analyst that has experience with threat actor tracking, malware analysis, and reverse engineering of malware.
Responsibilities include, but are not limited to:
+ Working with Malware Defense control owners to evolve malware control strategy and capabilities.
+ Mentioning and training other analysts, helping them to improve their malware analysis and reverse engineering skillsets.
+ In-depth analysis of malware, including authoring analysis reports.
+ Tracking malware campaigns, malicious actors, and related infrastructure.
+ Creation of tools and scripts to assist in the analysis of malware analysis.
Required Skills:
+ Strong direct experience of analyzing malware.
+ Intermediate to advanced malware analysis skills.
+ Intermediate to advanced experience reverse engineering tools such as IDA Pro, x64dgb, OllyDbg, Immunity Debugger and/or Ghidra.
+ Intermediate to advanced experience analyzing dissembled x86 and x64 code. Experience analyzing dissembled code for other architectures (ARM, MIPS, etc.) is a plus.
+ Intermediate to advanced experience reverse engineering malware code written in C, C++, VisualBasic, Java, .NET, Delphi, JavaScript, and VBScript.
+ Solid background in C++ programming and Win32 API's.
+ Experience creating malware analysis tools and scripts for use in tasks such accelerating malware analysis, unpacking malware, and extracting data (ex - configuration extraction).
+ Experience building and maintain scripts to emulate malware and parse c2 response traffic is a plus.
+ Experience in encryption/obfuscation and how to reverse it is desired.
+ Can create innovative ways to track progression of malware families, infrastructure and campaigns conducted by ecrime, and cyber espionage actors.
+ Experience with penetration testing and/or adversary emulation is a plus.
+ Background in network traffic analysis.
+ Knowledge of networking protocols: TCP/IP, HTTP/HTTPs, FTP, IRC etc.
+ GCIH, GREM, GCFA or CISSP is desired, but not required.
+ Able to work independently on tasks, but also work well within a team environment.
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Cloud Solution Architect (CSA) - Security

Posted 2 days ago
Job Viewed
Job Description
We are looking for a Cloud Solution Architect (CSA), specializing in Security who is passionate about driving our customers' security & AI transformation on the Microsoft Platform. This is a customer-facing role, owning the technical relationship between the customer and Microsoft, helping customers to leverage their Microsoft investments through architecture, implementation, and operational health engagements.
Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
**Responsibilities**
+ You will drive positive Customer Satisfaction and become a trusted advisor and provide feedback and insights from customers/partners and be the Voice of Customer to share insights and best practices, connect with Global Security teams at Microsoft, Engineering and Product teams to remove blockers and influence the solution roadmap.
+ You will land an end-to-end value prop for Security (i.e., Zero Trust) which spans the breadth of Microsoft Security offerings, and with focus on Threat Protection, ID + Access Management and Cloud Security.
+ You will support customers through the adoption lifecycle, through planning, adoption, deployment and optimization as you support increasing drive of Microsoft security products utilization as you lead technical solutioning and nurturing across the customer journey.
+ You will deliver technical presentations & demos and propose high-level solutions and work with key Microsoft and Partner resources to drive deployment & customer adoption and help to identify cross sell/upsell/Unified opportunities through customer engagement.
+ You will align your individual skilling to team/area demands and Customer Success goals and accelerate customer outcomes - Share expertise, contribute to IP creation & re-use to accelerate customer outcomes.
+ Run Architectural Design Session to build a plan for implementing the solution - governing design in line with customer business goals and their technical environment. Outcome is consensus on solution design and next steps toward production.
+ Collaborate and orchestrate with other Cloud Solution Architects and MS stakeholders including FastTrack, partner, and Microsoft Consulting in developing complex end-to-end Enterprise solutions with the Microsoft Security platform.
**Qualifications**
**Required** :
+ Bachelor's Degree in Computer Science, Information Technology, Engineering, Business, or related field AND 4+ years experience in cloud/infrastructure technologies, information technology (IT) consulting/support, systems administration, network operations, software development/support, technology solutions, practice development, architecture, and/or consulting
+ OR equivalent experience
**Preferred** :
+ Bachelor's Degree in Cyber Security, Computer Science, Information Technology, Engineering, Business, or related field AND 8+ years experience in cloud/infrastructure technologies, information technology (IT) consulting/support, security operations, systems administration, network operations, software development/support, technology solutions, practice development, architecture, and/or consulting
+ OR Master's Degree in Cyber Security, Computer Science, Information Technology, Engineering, Business, or related field AND 6+ years experience in cloud/infrastructure technologies, technology solutions, practice development, architecture, and/or consulting
+ OR equivalent experience
+ 4+ years experience working in a customer-facing role (e.g., internal and/or external)
+ 4+ years experience working on technical projects
+ Technical Certification in Cloud Technologies (e.g., Azure, Amazon Web Services, Google, security agnostic certifications)
+ Certification in one or more of the following technologies preferred: Microsoft Security Fundamentals (SC-900), Microsoft Security Operations (SC-200), Microsoft Cybersecurity Architect (SC-100), Certified Cloud Security Professional (CCSP), Certified Ethical Hacker (CEH), GIAC Security Essentials (GSEC).
+ Subject matter expert in 3 or more of the following areas:
+ Threat protection, SIEM and Incident Response; Extended Detection and Response (XDR); Security Orchestration, Automation, and Response (SOAR); Security Operation Center Management; Identity and Access Management; Cloud Security; Data Security.
#ANZMCAPSFY26
Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations ( .
Cloud Solution Architect (CSA) - Security

Posted 3 days ago
Job Viewed
Job Description
We are looking for a Cloud Solution Architect (CSA), specializing in Security who is passionate about driving our customers' security & AI transformation on the Microsoft Platform. This is a customer-facing role, owning the technical relationship between the customer and Microsoft, helping customers to leverage their Microsoft investments through architecture, implementation, and operational health engagements.
Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
**Responsibilities**
+ You will drive positive Customer Satisfaction and become a trusted advisor and provide feedback and insights from customers/partners and be the Voice of Customer to share insights and best practices, connect with Global Security teams at Microsoft, Engineering and Product teams to remove blockers and influence the solution roadmap.
+ You will land an end-to-end value prop for Security (i.e., Zero Trust) which spans the breadth of Microsoft Security offerings, and with focus on Threat Protection, ID + Access Management and Cloud Security.
+ You will support customers through the adoption lifecycle, through planning, adoption, deployment and optimization as you support increasing drive of Microsoft security products utilization as you lead technical solutioning and nurturing across the customer journey.
+ You will deliver technical presentations & demos and propose high-level solutions and work with key Microsoft and Partner resources to drive deployment & customer adoption and help to Identify cross sell/upsell/Unified opportunities through customer engagement.
+ You will align your individual skilling to team/area demands and Customer Success goals and accelerate customer outcomes - Share expertise, contribute to IP creation & re-use to accelerate customer outcomes.
+ Run Architectural Design Session to build a plan for implementing the solution - governing design in line with customer business goals and their technical environment. Outcome is consensus on solution design and next steps toward production.
+ Collaborate and orchestrate with other Cloud Solution Architects and MS stakeholders including FastTrack, partner, and Microsoft Consulting in developing complex end-to-end Enterprise solutions with the Microsoft Security platform.
**Qualifications**
**Required Qualifications**
+ Bachelor's Degree in Computer Science, Information Technology, Engineering, Business, or related field AND 4+ years experience in cloud/infrastructure technologies, information technology (IT) consulting/support, systems administration, network operations,software development/support, technology solutions, practice development, architecture, and/or consulting
OR equivalent experience
**Preferred Qualifications**
+ Bachelor's Degree in Cyber Security, Computer Science, Information Technology, Engineering, Business, or related field AND 8+ years experience in cloud/infrastructure technologies, information technology (IT) consulting/support, security operations, systems administration, network operations,software development/support, technology solutions, practice development, architecture, and/or consulting
+ OR Master's Degree in Cyber Security, Computer Science, Information Technology, Engineering, Business, or related field AND 6+ years experience in cloud/infrastructure technologies, technology solutions, practice development, architecture, and/or consulting
+ OR equivalent experience
+ 4+ years experience working in a customer-facing role (e.g., internal and/or external)
+ 4+ years experience working on technical projects
+ Technical Certification in Cloud Technologies (e.g., Azure, Amazon Web Services, Google, security agnostic certifications)
+ Certification in one or more of the following technologies preferred: Microsoft Security Fundamentals (SC-900), Microsoft Security Operations (SC-200), Microsoft Cybersecurity Architect (SC-100), Certified Cloud Security Professional(CCSP), Certified Ethical Hacker (CEH), GIAC Security Essentials (GSEC).
+ Subject matter expert in 3 or more of the following areas:
+ Threat protection, SIEM and Incident Response; Extended Detection and Response (XDR); Security Orchestration, Automation, and Response (SOAR); Security Operation Center Management; Identity and Access Management; Cloud Infrastructure; Cloud Security; Data Security;
#ANZMCAPSFY26
Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations ( .