27 Information Security jobs in Australia
Information Systems Security Officer
Posted 1 day ago
Job Viewed
Job Description
Amentum is a leader in global engineering, project management and solutions integration, trusted to modernize the most critical missions anywhere in the world. Driven to create a safer, smarter, cleaner world, we innovate as a team of inventive doers passionate about making a difference. Underpinned by a strong culture of ethics, safety and inclusivity. Amentum is fiercely committed to operational excellence and successful execution.
Are you seeking a career that offers a healthy work-life balance, a friendly company culture, and engagement with a supportive community?
Amentum has an exciting opportunity for a **full-time** **Information Systems Security Office** to join their team in **Alice Springs, NT - Australia.**
**Applicants must be an USA citizen who have a TS/SCI and can retain the appropriate level of security clearance and medical clearance, applicable to each role.**
**THE ROLE**
**PURPOSE AND SCOPE**
The Information Systems Security Officer (ISSO) reports directly to the Information Systems security Manager and provides support to the ISSM in the development and management of operational information systems security implementation policy, procedures, and guidelines.
The ISSO is responsible for the preparation, review, and update of authorization packages. The ISSO ensures approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.
**ESSENTIAL RESPONSIBILITIES**
**Responsibilities/Duties**
+ Conduct periodic reviews of information systems to ensure compliance with the security authorization package, notify ISSM when changes occur that might affect the authorization determination of the information system(s)
+ Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
+ Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
+ Ensure all IS security-related documentation is current and accessible to properly authorized individuals, ensure audit records are collected, reviewed, and documented (to include any anomalies)
+ Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
+ Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
+ Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
+ Prepare reports on the status of security safeguards applied to computer systems
+ Ensure compliance with all site's environmental health and safety requirements
+ Any other reasonable duties as requested
**QUALIFICATIONS**
**Minimum Essential**
+ Bachelor's degree in a related field
+ CISSP, Security + or equivalent
+ MCSA or equivalent
**Desirable**
+ Drivers License
**EXPERIENCE AND SKILLS - Minimum Essential**
+ Minimum 2 years' experience - extensive work experience in a current ISSO role with IA Certifications may suffice for degree
+ Experience in Intelligence Community Directive 503 (ICD 503) and Risk Management Framework (RMF)
+ Meets DoD 8570.1 Certification Requirements as an Information Assurance Technical Category II (IAT II) minimum (for system and network administrators)
+ Linux experience preferred
+ Prior experience in roles such as System, Network Administrator or ISSO
+ Knowledge of databases, spreadsheets and technical report writing
+ Excellent communication skills and ability to brief at all levels to include Senior Leadership
+ Demonstrated ability to work as a member of a team
+ Ability to adapt to change and contribute to continuous improvement
+ Positive outlook and willingness to collaborate with others to achieve business outcomes
+ Demonstrated customer focus
+ Ability to demonstrate an understanding and commitment to the principles of workplace diversity and equity, and EH&S
**WORK ENVIRONMENT, PHYSICAL DEMANDS, AND MENTAL DEMANDS**
+ The ability to lift items up to 10kgs independently
+ The employee is frequently required to walk, sit, use hands to handle, or feel; reach with hands and arms; climb or balance; stoop, kneel, crouch, or crawl; and talk or hear. The employee is occasionally required to stand.
**SECURITY CLEARANCE REQUIREMENT**
It is a condition of employment that employees obtain and retain the appropriate level of security clearance and medical clearance applicable to each role. The employee must be a US citizen and will require a minimum TS/SCI with poly (U.S.) clearance.
**STATEMENT OF WORK REQUIREMENTS**
All personnel assigned shall be:
+ At least 18 years of age.
+ Able to fluently read, write and speak English
**EHS REQUIREMENT**
All Amentum personnel are responsible for understanding and complying with all site environmental, health and safety requirements. While Amentum is responsible for providing a safe workplace and is responsible for ensuring compliance with requirements of the EHS Handbook, each person is responsible for:
+ Completing work tasks in a safe manner
+ Reporting any unsafe acts or conditions to their supervisor and/or PMO/EHS Manager
+ Continuous adherence to the environmental, health and safety procedures outlined in the EHS Handbook during the performance of their work
+ Red-Carding a Job - Employee right and responsibility to "STOP WORK" if a job is unsafe or possess a danger to the environment
**QUALITY REQUIREMENT**
Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Program and carry out job activities in compliance with the Quality System documents and customer contracts. Each employee must read and understand their Quality Management and Customer Satisfaction responsibilities.
**PROCEDURE COMPLIANCE**
Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to their job.
For further information contact
**Applicants will be required to undertake pre-employment checks which include referee checks, criminal History checks, a pre-employment medical assessment and drug test.**
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters ( .
Vice President, Senior Malware Reverse Engineer, Global Information Security, Australia

Posted 2 days ago
Job Viewed
Job Description
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
The Malware Defense Team's aim is to reduce risk across Bank of America by using existing or establishing robust cyber-hacking and malicious code containment activities for the security, safeguarding, continuity, and confidentiality of information of Bank of America. They are looking for an advanced-level analyst that has experience with threat actor tracking, malware analysis, and reverse engineering of malware.
Responsibilities include, but are not limited to:
+ Working with Malware Defense control owners to evolve malware control strategy and capabilities.
+ Mentioning and training other analysts, helping them to improve their malware analysis and reverse engineering skillsets.
+ In-depth analysis of malware, including authoring analysis reports.
+ Tracking malware campaigns, malicious actors, and related infrastructure.
+ Creation of tools and scripts to assist in the analysis of malware analysis.
Required Skills:
+ Strong direct experience of analyzing malware.
+ Intermediate to advanced malware analysis skills.
+ Intermediate to advanced experience reverse engineering tools such as IDA Pro, x64dgb, OllyDbg, Immunity Debugger and/or Ghidra.
+ Intermediate to advanced experience analyzing dissembled x86 and x64 code. Experience analyzing dissembled code for other architectures (ARM, MIPS, etc.) is a plus.
+ Intermediate to advanced experience reverse engineering malware code written in C, C++, VisualBasic, Java, .NET, Delphi, JavaScript, and VBScript.
+ Solid background in C++ programming and Win32 API's.
+ Experience creating malware analysis tools and scripts for use in tasks such accelerating malware analysis, unpacking malware, and extracting data (ex - configuration extraction).
+ Experience building and maintain scripts to emulate malware and parse c2 response traffic is a plus.
+ Experience in encryption/obfuscation and how to reverse it is desired.
+ Can create innovative ways to track progression of malware families, infrastructure and campaigns conducted by ecrime, and cyber espionage actors.
+ Experience with penetration testing and/or adversary emulation is a plus.
+ Background in network traffic analysis.
+ Knowledge of networking protocols: TCP/IP, HTTP/HTTPs, FTP, IRC etc.
+ GCIH, GREM, GCFA or CISSP is desired, but not required.
+ Able to work independently on tasks, but also work well within a team environment.
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
To view Bank of America's Drug-free Workplace and Alcohol Policy, CLICK HERE .
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
AI/ML Security Architect and Engineer
Posted 3 days ago
Job Viewed
Job Description
A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe. You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio; including Software and Red Hat. Curiosity and a constant quest for knowledge serve as the foundation to success in IBM Consulting. In your role, you'll be encouraged to challenge the norm, investigate ideas outside of your role, and come up with creative solutions resulting in ground breaking impact for a wide network of clients. Our culture of evolution and empathy centers on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.
**Your role and responsibilities**
About the Role
We are seeking a highly skilled and motivated AI Security Architect/Engineer to join our growing security team. In this role, you will design, develop, and deploy AI-driven solutions to detect, prevent, and respond to cyber threats and be responsible for securing AI/ML systems, models, and data pipelines against adversarial threats, ensuring compliance with security best practices, and collaborating with cross-functional teams to build robust, trustworthy AI solutions. You will work at the intersection of machine learning, data science, and security engineering to build intelligent systems that enhance our security posture.
Key Responsibilities
* Architect and implement scalable Generative AI features, including agentic workflows, conversational AI, and autonomous agents.
* Develop and deploy machine learning models for threat detection, anomaly detection, malware classification, and behavioural analysis.
* Apply best practices in AI security, including mitigation of hallucinations, prompt injection, and bias.
* Identify and mitigate risks related to adversarial machine learning, model inversion, data poisoning, and prompt injection.
* Analyse large-scale security datasets (e.g., logs, network traffic, endpoint telemetry) to identify patterns and build predictive models.
* Research and implement AI and Machine Learning techniques to improve detection accuracy and reduce false positives.
* Design and implement security controls for AI/ML systems, including model training, inference, and data pipelines.
* Collaborate with security analysts and incident response teams to integrate AI tools into existing workflows.
* Collaborate with data scientists, ML engineers, and DevOps teams to integrate security into the AI/ML lifecycle.
* Build automation pipelines for data preprocessing, model training, evaluation, and deployment.
* Monitor model performance and retrain models as needed to adapt to evolving threats.
* Stay current with emerging threats, vulnerabilities, and research in AI security and adversarial machine learning.
* Ensure compliance with data privacy regulations (e.g., GDPR, HIPAA) and AI governance frameworks.
* Ensure AI systems are explainable, auditable, and aligned with ethical and regulatory standards.
**Required technical and professional expertise**
* Experience in full AI project lifecycle, from research and prototyping to deployment in production environments.
* Familiarity with Agile development methodologies
* Proficiency in Python and ML libraries such as TensorFlow, PyTorch, Scikit-learn, or similar.
* Experience with AI and/or data governance
* Experience with building automation solutions with AI/ML.
* Knowledge of AI ethics, fairness, and explainability.
* Strong understanding of cybersecurity principles, threat landscapes, and common attack vectors.
* Experience with threat modeling and securing cloud-based AI infrastructure (e.g., AWS, Azure, GCP).
* Experience with data engineering and working with large-scale datasets.
* Be an Australian Citizen
**Preferred technical and professional experience**
* Experience with Ansible, Red Hat OpenShift, Kubernates and CI/CD Pipelines.
* Experience with secure MLOps practices and tools (e.g., MLflow, Kubeflow, SageMaker).
* Experience with LangChain, OpenAI APIs, or similar LLM frameworks (highly desirable).
* Knowledge of RAG (Retrieval-Augmented Generation), vector databases, and custom embeddings.
* Experience with vector DB's or open file formats like parquet, avro or orc
* Familiarity with cloud platforms (AWS, Azure, GCP) and security tools (SIEM, EDR, IDS/IPS).
* Excellent problem-solving and communication skills.
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
AI/ML Security Architect and Engineer
Posted 3 days ago
Job Viewed
Job Description
A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe. You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio; including Software and Red Hat. Curiosity and a constant quest for knowledge serve as the foundation to success in IBM Consulting. In your role, you'll be encouraged to challenge the norm, investigate ideas outside of your role, and come up with creative solutions resulting in ground breaking impact for a wide network of clients. Our culture of evolution and empathy centers on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.
**Your role and responsibilities**
About the Role
We are seeking a highly skilled and motivated AI Security Architect/Engineer to join our growing security team. In this role, you will design, develop, and deploy AI-driven solutions to detect, prevent, and respond to cyber threats and be responsible for securing AI/ML systems, models, and data pipelines against adversarial threats, ensuring compliance with security best practices, and collaborating with cross-functional teams to build robust, trustworthy AI solutions. You will work at the intersection of machine learning, data science, and security engineering to build intelligent systems that enhance our security posture.
Key Responsibilities
* Architect and implement scalable Generative AI features, including agentic workflows, conversational AI, and autonomous agents.
* Develop and deploy machine learning models for threat detection, anomaly detection, malware classification, and behavioural analysis.
* Apply best practices in AI security, including mitigation of hallucinations, prompt injection, and bias.
* Identify and mitigate risks related to adversarial machine learning, model inversion, data poisoning, and prompt injection.
* Analyse large-scale security datasets (e.g., logs, network traffic, endpoint telemetry) to identify patterns and build predictive models.
* Research and implement AI and Machine Learning techniques to improve detection accuracy and reduce false positives.
* Design and implement security controls for AI/ML systems, including model training, inference, and data pipelines.
* Collaborate with security analysts and incident response teams to integrate AI tools into existing workflows.
* Collaborate with data scientists, ML engineers, and DevOps teams to integrate security into the AI/ML lifecycle.
* Build automation pipelines for data preprocessing, model training, evaluation, and deployment.
* Monitor model performance and retrain models as needed to adapt to evolving threats.
* Stay current with emerging threats, vulnerabilities, and research in AI security and adversarial machine learning.
* Ensure compliance with data privacy regulations (e.g., GDPR, HIPAA) and AI governance frameworks.
* Ensure AI systems are explainable, auditable, and aligned with ethical and regulatory standards.
**Required technical and professional expertise**
* Experience in full AI project lifecycle, from research and prototyping to deployment in production environments.
* Familiarity with Agile development methodologies
* Proficiency in Python and ML libraries such as TensorFlow, PyTorch, Scikit-learn, or similar.
* Experience with AI and/or data governance
* Experience with building automation solutions with AI/ML.
* Knowledge of AI ethics, fairness, and explainability.
* Strong understanding of cybersecurity principles, threat landscapes, and common attack vectors.
* Experience with threat modeling and securing cloud-based AI infrastructure (e.g., AWS, Azure, GCP).
* Experience with data engineering and working with large-scale datasets.
* Be an Australian Citizen
**Preferred technical and professional experience**
* Experience with Ansible, Red Hat OpenShift, Kubernates and CI/CD Pipelines.
* Experience with secure MLOps practices and tools (e.g., MLflow, Kubeflow, SageMaker).
* Experience with LangChain, OpenAI APIs, or similar LLM frameworks (highly desirable).
* Knowledge of RAG (Retrieval-Augmented Generation), vector databases, and custom embeddings.
* Experience with vector DB's or open file formats like parquet, avro or orc
* Familiarity with cloud platforms (AWS, Azure, GCP) and security tools (SIEM, EDR, IDS/IPS).
* Excellent problem-solving and communication skills.
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
AI/ML Security Architect and Engineer
Posted 3 days ago
Job Viewed
Job Description
A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe. You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio; including Software and Red Hat. Curiosity and a constant quest for knowledge serve as the foundation to success in IBM Consulting. In your role, you'll be encouraged to challenge the norm, investigate ideas outside of your role, and come up with creative solutions resulting in ground breaking impact for a wide network of clients. Our culture of evolution and empathy centers on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.
**Your role and responsibilities**
About the Role
We are seeking a highly skilled and motivated AI Security Architect/Engineer to join our growing security team. In this role, you will design, develop, and deploy AI-driven solutions to detect, prevent, and respond to cyber threats and be responsible for securing AI/ML systems, models, and data pipelines against adversarial threats, ensuring compliance with security best practices, and collaborating with cross-functional teams to build robust, trustworthy AI solutions. You will work at the intersection of machine learning, data science, and security engineering to build intelligent systems that enhance our security posture.
Key Responsibilities
* Architect and implement scalable Generative AI features, including agentic workflows, conversational AI, and autonomous agents.
* Develop and deploy machine learning models for threat detection, anomaly detection, malware classification, and behavioural analysis.
* Apply best practices in AI security, including mitigation of hallucinations, prompt injection, and bias.
* Identify and mitigate risks related to adversarial machine learning, model inversion, data poisoning, and prompt injection.
* Analyse large-scale security datasets (e.g., logs, network traffic, endpoint telemetry) to identify patterns and build predictive models.
* Research and implement AI and Machine Learning techniques to improve detection accuracy and reduce false positives.
* Design and implement security controls for AI/ML systems, including model training, inference, and data pipelines.
* Collaborate with security analysts and incident response teams to integrate AI tools into existing workflows.
* Collaborate with data scientists, ML engineers, and DevOps teams to integrate security into the AI/ML lifecycle.
* Build automation pipelines for data preprocessing, model training, evaluation, and deployment.
* Monitor model performance and retrain models as needed to adapt to evolving threats.
* Stay current with emerging threats, vulnerabilities, and research in AI security and adversarial machine learning.
* Ensure compliance with data privacy regulations (e.g., GDPR, HIPAA) and AI governance frameworks.
* Ensure AI systems are explainable, auditable, and aligned with ethical and regulatory standards.
**Required technical and professional expertise**
* Experience in full AI project lifecycle, from research and prototyping to deployment in production environments.
* Familiarity with Agile development methodologies
* Proficiency in Python and ML libraries such as TensorFlow, PyTorch, Scikit-learn, or similar.
* Experience with AI and/or data governance
* Experience with building automation solutions with AI/ML.
* Knowledge of AI ethics, fairness, and explainability.
* Strong understanding of cybersecurity principles, threat landscapes, and common attack vectors.
* Experience with threat modeling and securing cloud-based AI infrastructure (e.g., AWS, Azure, GCP).
* Experience with data engineering and working with large-scale datasets.
* Be an Australian Citizen
**Preferred technical and professional experience**
* Experience with Ansible, Red Hat OpenShift, Kubernates and CI/CD Pipelines.
* Experience with secure MLOps practices and tools (e.g., MLflow, Kubeflow, SageMaker).
* Experience with LangChain, OpenAI APIs, or similar LLM frameworks (highly desirable).
* Knowledge of RAG (Retrieval-Augmented Generation), vector databases, and custom embeddings.
* Experience with vector DB's or open file formats like parquet, avro or orc
* Familiarity with cloud platforms (AWS, Azure, GCP) and security tools (SIEM, EDR, IDS/IPS).
* Excellent problem-solving and communication skills.
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
Vice President, Cyber Incident Response Manager, Global Information Security, Australia
Posted 4 days ago
Job Viewed
Job Description
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
**What you can expect**
Cyber Incident Response and Management is part of the Cyber Response & Recovery division who provides a globally coordinated and managed response capability for information security events and incidents that may impact the confidentiality, integrity, and/or availability of the Bank's information and information systems or has privacy implications.
The role of the Senior Incident Manager is to coordinate the response and recovery activities from information security incidents. This includes collaboration with appropriate response, assist with determining the root cause of incidents and work with stakeholders and responsible parties to remediate any identified control gaps or failures; Escalate issues to management in a timely manner with appropriate information regarding severity, exposure, and action items; this role requires critical thinking and investigative mindset coupled effective written, and verbal communication skills.
This is a senior role on the team with high visibility at the global level including interacting with and providing direct updates to executives and senior leadership stakeholders. A Senior Incident Manager provides their knowledge and expertise in incident response to lead, mentor, and challenge associates on the team. The team conducts follow-the-sun (FTS) operations which you will work closely with AMRS and APAC regions.
**What you will do**
+ Establish oversight of information security events and cyber incidents and communicate analysis, containment and remediation efforts to all business partners.
+ Cyber incident response and recovery plans will be available to use and should be maintained by the team. Any issues that require management escalation will be expected to be completed in a timely manner including all appropriate information in relation to risk and action times.
+ The Cyber Incident Manager will be expected to provide status updates and post-incident findings for executives and stakeholders in non-technical terms encompassing risk, impact, likelihood, containment and remediation activities and threat actors.
+ Risk management including briefing and recommending actions to executive leadership within Global Information Security and other business partners on events and incidents.
**Your background**
+ Proven experience handling Information Security related events and incidents.
+ Experience in an operations focused role with an emphasis on cyber incident response.
+ Demonstrable experience in the coordination of containment activities related to cyber security incidents.
+ Familiarity with security vulnerabilities exploits and APT tools, techniques, and procedures.
+ Familiarity with network security vulnerabilities, exploits, malware, and digital forensics desirable.
+ An excellent verbal and written communicator who can adapt to their audience.
+ Decisive and can make difficult decisions in what can be a high-pressure environment.
+ Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results.
+ Able to handle multiple competing priorities in a fast-paced environment and act without causing an undue delay.
+ Supportive and can work well as part of a team as well as independently.
+ Ability to remain calm under pressure.
+ Ability to work in a strong team-orientated environment with a sense of urgency and resilience.
+ Must be able to think outside the box and develop solutions to accomplish seemingly impossible tasks whilst remaining risk and objective focused, with an investigative mindset.
+ Security+ or equivalent certification.
+ GCIH or equivalent certification required within six months of employment.
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
To view Bank of America's Drug-free Workplace and Alcohol Policy, CLICK HERE .
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Vice President, Incident Response Manager, Global Information Security, Australia
Posted 4 days ago
Job Viewed
Job Description
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
**Your background**
+ Proven experience handling Information Security related events and incidents.
+ Experience in an operations focused role with an emphasis on cyber incident response.
+ Demonstrable experience in the coordination of containment activities related to cyber security incidents.
+ Familiarity with security vulnerabilities exploits and APT tools, techniques, and procedures.
+ Familiarity with network security vulnerabilities, exploits, malware, and digital forensics desirable.
+ An excellent verbal and written communicator who can adapt to their audience.
+ Decisive and can make difficult decisions in what can be a high-pressure environment.
+ Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results.
+ Able to handle multiple competing priorities in a fast-paced environment and act without causing an undue delay.
+ Supportive and can work well as part of a team as well as independently.
+ Ability to remain calm under pressure.
+ Ability to work in a strong team-orientated environment with a sense of urgency and resilience.
+ Must be able to think outside the box and develop solutions to accomplish seemingly impossible tasks whilst remaining risk and objective focused, with an investigative mindset.
+ Security+ or equivalent certification.
+ GCIH or equivalent certification required within six months of employment.
**What you can expect**
Cyber Incident Response and Management is part of the Cyber Response & Recovery division who provides a globally coordinated and managed response capability for information security events and incidents that may impact the confidentiality, integrity, and/or availability of the Bank's information and information systems or has privacy implications.
The role of the Senior Incident Manager is to coordinate the response and recovery activities from information security incidents. This includes collaboration with appropriate response, assist with determining the root cause of incidents and work with stakeholders and responsible parties to remediate any identified control gaps or failures; Escalate issues to management in a timely manner with appropriate information regarding severity, exposure, and action items; this role requires critical thinking and investigative mindset coupled effective written, and verbal communication skills.
This is a senior role on the team with high visibility at the global level including interacting with and providing direct updates to executives and senior leadership stakeholders. A Senior Incident Manager provides their knowledge and expertise in incident response to lead, mentor, and challenge associates on the team. The team conducts follow-the-sun (FTS) operations which you will work closely with AMRS and APAC regions.
**What you will do**
+ Establish oversight of information security events and cyber incidents and communicate analysis, containment and remediation efforts to all business partners.
+ Cyber incident response and recovery plans will be available to use and should be maintained by the team. Any issues that require management escalation will be expected to be completed in a timely manner including all appropriate information in relation to risk and action times.
+ The Cyber Incident Manager will be expected to provide status updates and post-incident findings for executives and stakeholders in non-technical terms encompassing risk, impact, likelihood, containment and remediation activities and threat actors.
+ Risk management including briefing and recommending actions to executive leadership within Global Information Security and other business partners on events and incidents.
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
To view Bank of America's Drug-free Workplace and Alcohol Policy, CLICK HERE .
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Be The First To Know
About the latest Information security Jobs in Australia !
Vice President, Business Support Manager, Chief Operating Office, APAC Global Information Security
Posted 8 days ago
Job Viewed
Job Description
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
**Job Description:**
Global Information Security helps to assess threats and provide scalable and flexible solutions to actively manage these threats and specific risks to the Bank.
The Business Support Manager will be part of the APAC GIS COO team providing operational and delivery expertise with a focus on strategy, financials, driving information security awareness and rigor to meet business requirements and goals, while addressing the agreed risk tolerances of the business environment.
The successful candidate will be able to work both individually and as part of a team, bringing an organized and disciplined, but creative and energetic enthusiasm to building a best-in-class organization.
**Responsibilities**
+ Execute responsibilities covering Business Management, Resource & Finance Management and Process Improvements
+ Act as Operational Excellence champion in the region and work closely with the Process Excellence team and senior GIS leaders to facilitate the execution of the Enterprise Process Management Policy
+ Support global and regional ad-hoc/project-based initiatives in execution
+ Analyze and identify gaps for in-region execution of processes and controls with GIS functional teams; ensure remediation of any controls gaps linked to in-region execution
+ Facilitate strategic level discussions under the guidance of the Regional Information Security Office (RISO) leadership team to achieve organizational outcomes
+ Provide regular management business updates on actions plans aligned to strategic goals
+ Be flexible, demonstrate desire to learn and to be able deal with ambiguity and uncertainty.
+ Build effective, capable teams through continuous technical training, coaching and leadership development
**Required Skills**
+ A seasoned business manager with exceptional communication skills, attention to detail, and a drive to make time, information, and decision-making more effective.
+ Comfortable in translating complex technical details into simplified presentation proposals to communicate and gain approvals from senior leadership or business representatives;
+ You have experience with a wide range of business management activities and initiatives including but not limited to finance/budgets, key MI metrics and status reporting, stakeholder and internal/external presentations and reporting
+ Ability to work with stakeholders in business and technology groups who are based in various locations as required by the projects;
+ Be assertive, inquisitive, and creative to assure timely outcomes whilst maintaining humility, maturity, and situational sensitivity.
+ You are able to work independently and as part of a team to tight deadlines and changing priorities
+ You will have had exposure to regulatory frameworks and risk management concepts and have ideally supported business continuity management in a technology environment
+ Strong project management, multitasking and organizational skills with enhanced knowledge on productivity suites (e.g. MS Office tools, Confluence, JIRA etc)
+ Applicable knowledge of enterprise cybersecurity policies, regulations and security frameworks.
+ Certifications in Project Management and/or information security highly desirable
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
To view Bank of America's Drug-free Workplace and Alcohol Policy, CLICK HERE .
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Physical Security Architect, Data Center Design Engineering
Posted 8 days ago
Job Viewed
Job Description
AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation they rely on. We work on the most challenging problems, with thousands of variables impacting the supply chain - and we're looking for talented people who want to help.
You'll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate with people across AWS to help us deliver the highest standards for safety and security while providing seemingly infinite capacity at the lowest possible cost for our customers. And you'll experience an inclusive culture that welcomes bold ideas and empowers you to own them to completion.
AWS Design Engineering team is looking for a highly talented and motivated Physical Security Architect /Engineer to work with our enterprise data centre design team, designing the data centres of tomorrow to maximize the effectiveness of the physical security program. The duties include extra-low voltage system design and engineering, working with the data centre architectural and engineering team to assure security best practices are observed, drafting new systems into the design teams build plans, and coordinating with regional and local physical security leaders to understand the new building and security system designs, adhering to the products on the AWS approved parts list.
A successful candidate will be responsible for interpretation of Risk Assessments and Threat Analysis and AWS Physical Security Standards to assure the proper security technologies are selected to meet the unique challenges to be found in a global security program. After a new technology is inducted into the data centre physical security plan, this position will be responsible for assuring the new system is incorporated into the larger data centre basis of design.
Key job responsibilities
- Design and engineer low voltage systems.
- Using Blue Beam and other drafting technologies to work in collaboration with the design teams to produce designs in Revit/CAD.
- Creation of specifications and scope of work documentation template for local project managers to use for vendor bids.
- Provide technical and design support for local physical security teams.
- Coordinating with all the other disciplines in the design process of a new building (architectural, mechanical, electrical, civil).
- Supervise and approve all designs deliverables developed by the local physical security team for projects at each milestones of a project. Analyze, accept or reject alternate designs and mitigation measure develop by the local physical security teams when the standard design can't be applied.
- Act as a subject matter expert to support implementation of new technologies.
- Work regionally but also support the global PSA team to ensure alignment on decisions and standards
- Domestic and international travel for up to a week at a time
About the team
Diverse Experiences
AWS values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why AWS?
Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.
Inclusive Team Culture
Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness.
Mentorship & Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud.
Basic Qualifications
- Bachelor degree in Architectural, Electrical Engineering, or Physical Security or equivalent experience
- 10+ years' experience in physical security system design and engineering
- 5+ years' experience with one or more drafting technologies such as, AutoCad, BlueBeam
Preferred Qualifications
- Master's degree or higher in related field
- Physical Security Design experience in corrections, military, government, or museum environments
Acknowledgement of country:
In the spirit of reconciliation Amazon acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.
IDE statement:
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Information System Security Officer - Level 2 (International Assignment)

Posted 9 days ago
Job Viewed
Job Description
When it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with exceptional people sharing a common quest. Imagine a workplace where you can be yourself. Where you can thrive. Where you can find your next, right now. We've got what you're looking for.
**Job Description:**
Parsons is looking for a talented **Information System Security Office** **r** to join our growing team in **Alice Springs,** **Australia** ! In this role you will perform analyses to validate established security requirements and recommends additional security requirements and safeguards where required. **(International Assignment) - This position is in Australia** **?** **- *NO REMOTE WORK***
**What You'll Be Doing** **:**
+ Performs assessments of information systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments).
+ Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports.
+ Establishes strict program control processes to ensure mitigation of risks and supports for obtaining certification and accreditation of systems. This includes process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits.
+ Assists in the implementation of required government policy (e.g., NISPOM, DCID 6/3), and makes recommendations on process tailoring.
+ Performs analyses to validate established security requirements and recommends additional security requirements and safeguards where required.
+ Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports.
+ Periodically conducts a review of each system's audits and monitors corrective actions until all actions are closed.
+ Performs analyses to validate established security requirements and recommends additional security requirements and safeguards where required.
+ Manages program and project implementation and makes significant contributions to department goals and planning efforts.
+ Assists in the implementation of required government policy (e.g.,, NISPOM, DCID 6/3), and makes recommendations on process tailoring.
**What Required Skills You'll Bring** **:**
+ **Active Top Secret SCI** required, with the willingness and ability to obtain/maintain a CI Poly.
+ Bachelors degree with typically 2+ years of relevant experience. Candidates with a Masters degree require 1+ year(s) of relevant experience, and additional years of experience can qualify in lieu of a degree for non-degreed candidates.
+ Experience with information technology security, information systems security, and information assurance.
+ Must obtain and maintain DoD 8570 compliant IAT-II Professional Certification.
+ **(International Assignment) - This position is in Australia ?- *NO REMOTE WORK***
**Security Clearance Requirement:**
An active Top Secret SCI w/Polygraph security clearance is required for this position?
This position is part of our Federal Solutions team.
The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what's next to deliver the solutions our customers need now.
Salary Range: $86,700.00 - $151,700.00
We value our employees and want our employees to take care of their overall wellbeing, which is why we offer best-in-class benefits such as medical, dental, vision, paid time off, 401(k), life insurance, flexible work schedules, and holidays to fit your busy lifestyle!
This position will be posted for a minimum of 3 days and will continue to be posted for an average of 30 days until a qualified applicant is selected or the position has been cancelled.
Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status.
We truly invest and care about our employee's wellbeing and provide endless growth opportunities as the sky is the limit, so aim for the stars! Imagine next and join the Parsons quest-APPLY TODAY!
Parsons is aware of fraudulent recruitment practices. To learn more about recruitment fraud and how to report it, please refer to .
About Us
Parsons is a digitally enabled solutions provider focused on the defense, security, and infrastructure markets. With nearly 75 years of experience, Parsons is uniquely qualified to deliver cyber/converged security, technology-based intellectual property, and other innovative services to federal, regional, and local government agencies, as well as to private industrial customers worldwide.
Parsons is an equal opportunity, drug-free employer committed to diversity in the workplace. Minority/Female/Disabled/Protected Veteran/LGBTQ+.
For more about Parsons, visit parsons.com and follow us on Facebook, Twitter, LinkedIn, and YouTube.