170 Senior Security jobs in Australia

Azure Cloud Security Operations Sr Analyst, Global Information Security

Sydney, New South Wales Bank of America

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Azure Cloud Security Operations Sr Analyst, Global Information Security
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
**Job Description:**
As an Azure Senior Cloud Operations Specialist, you will play a pivotal role in our organization's growth and evolution. You will be responsible for modernizing our existing and future cloud operations workflows to simplify, optimize and ensure consistency in quality and urgency of investigations within our organization and a well-defined decision matrix for escalations to our partner organizations. You will also collaborate with partner teams to continually identify opportunities to reduce event volume, to increase event fidelity, and to engineer detections for new threats and risks.
Additionally, you will support development and maintenance of innovate training programs to quickly upskill existing cybersecurity operations professionals to operate in an Azure cloud operations environment as well as to be a representative for the organization on cloud related operations in any audit or regulatory examinations.
**Key Responsibilities:**
+ Investigate security events and incidents within cloud environments, utilizing advanced tools and techniques to identify threats and vulnerabilities.
+ Design and implement comprehensive workflows for handling security events, ensuring timely and effective response procedures.
+ Collaborate with cross-functional teams to develop and refine security policies, procedures, and best practices tailored to Azure cloud security operations.
+ Provide guidance and mentorship to junior team members, fostering their professional development and enhancing overall team capabilities.
+ Stay abreast of emerging threats, vulnerabilities, and industry trends, continually updating skills and knowledge to maintain expertise in cloud security.
**Qualifications:**
+ Extensive experience (7+ years) in cybersecurity operations, with a focus on Azure.
+ Proven expertise in investigating security events and incidents within cloud environments, demonstrating strong analytical and problem-solving skills.
+ Solid understanding of regulatory compliance requirements, particularly in highly regulated industries (e.g., healthcare, finance, government).
+ Experience in designing and implementing workflows for security event investigation and response.
+ Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams and mentor junior team members.
+ Ability to thrive in a fast-paced environment, managing multiple priorities and deadlines effectively.
**Required Skills:**
+ Understanding of Azure and its associated technologies, both from Security and Cloud Ops perspective.
+ 8+ years relevant Cyber Security experience with at least five (5) years in Cloud SOC and/or Purple Team roles.
+ Experience designing and implementing technical solutions to enhance visibility, alerting capabilities, and reduce risk within Cloud IaaS, PaaS, and M365 environments.
+ Experience reviewing applications, infrastructure, and architectural designs to identify threats and vulnerabilities.
+ Experience with a range of Azure native services and tools.
+ Experience writing and modifying Analytic Rules.
+ Experience designing and implementing SOAR capabilities within Azure.
+ Deep understanding of Cyber Security control environments and their relationship to zero-trust networks.
+ Understanding of Terraform.
+ Understanding of threat frameworks, such as MITRE ATT&CK for Cloud and D3FEND.
+ Understanding of Risk Management principles.
+ Experience in building, configuring, operating and/or securing cloud infrastructure and applications in Azure with either native cloud service provider capabilities or 3rd party vendor tools.
+ Proven ability to leverage Azure native capabilities to build custom reports and dashboards.
+ Ability to independently assess risks and identify vulnerabilities in infrastructure with an eagerness to suggest new processes, policies, and overall improvements to internal security controls.
+ Ability to perform root cause analyses.
+ Experience partnering with incident response teams, threat intelligence researchers, Red/Purple teams, and/or HUNT researchers.
+ Ability to support 24x7x365 global support through rotational on-call.
+ Highly organized and motivated self-starter who can deliver results with minimal direction.
+ Ability to navigate and collaborate effectively within a geographically complex and dispersed global corporation.
+ Excellent verbal and written communication skills with ability to distill key data points and effectively present information.
**Preferable Certifications:**
+ AZ-500: Azure Security Engineer Associate
+ CISSP
+ CISM
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Officer - Defence Sector

Canberra, Australian Capital Territory KBR

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Title:
Senior Information Security Officer - Defence Sector
Your KBR future - delivering solutions and changing the world
About KBR:
We are a company of innovators, thinkers, creators, explorers, volunteers and dreamers who all share one goal - to improve the world.
KBR delivers science, technology and engineering solutions to governments and companies around the world. KBR employs approximately 34,000 people performing diverse, complex, and mission-critical roles in 33 countries.
For 65 years, KBR and its heritage companies are proud to have delivered some of Australia's largest and most complex projects.
With around 2,000 employees in 6 primary offices throughout Australia, we are committed to social and environmental sustainability and delivering projects with a digital mindset driving innovation within our business and for our customers.
We help ensure mission success on land, in the air, at sea, in space and cyberspace for our Defence customers. From individual technologies and services to comprehensive project delivery and mission execution, no other company can match the breadth and depth of KBR.
KBR comprises a talented team who provide a broad spectrum of capabilities across Australia and the Asia Pacific. Our proven project teams readily address complex and multi-disciplinary activities, providing low-risk and cost-effective solutions to the Defence force.
The Opportunity:
KBR is inviting expressions of interest from highly skilled and experienced Senior Information Security Officers to support critical Defence programs based in Brisbane or Canberra.
As a Senior Information Security Officer, you will play a vital role in ensuring the protection of Defence systems, information, and assets, supporting the ongoing delivery of secure, reliable, and compliant Defence capabilities. This is an exciting opportunity to contribute to national security outcomes and work with a diverse team of experts on high-impact Defence projects.
The key responsibilities of the role will include, but is not limited to:
+ Lead the development, implementation, and maintenance of Information Security Management Systems (ISMS) to ensure Defence compliance with ISO 27001, ACSC Essential 8, and Defence Security requirements.
+ Conduct risk assessments and vulnerability management, ensuring appropriate information security controls are in place to protect Defence systems and data across their lifecycle.
+ Develop and enforce information security policies, procedures, and best practices, ensuring Defence IT infrastructure and systems are protected against cyber threats and vulnerabilities.
+ Support the implementation and maintenance of cybersecurity frameworks and ensure compliance with national and international information security standards.
+ Provide expert advice to Defence stakeholders and project teams on information security best practices, emerging threats, and mitigation strategies.
+ Collaborate with cross-functional teams, including Defence security, engineering, and project management, to ensure robust security governance for all Defence programs.
+ Conduct security audits, assessments, and incident response activities to ensure the availability, integrity, and confidentiality of Defence information assets.
+ Maintain awareness of current cybersecurity trends and emerging threats, and continuously update security practices to protect Defence information systems.
As the ideal candidate you will bring:
+ Tertiary qualifications in Information Security, Computer Science, Information Technology, or a related discipline.
+ Minimum 5 years of experience in an Information Security role, ideally within Defence, Government, or similarly regulated industries.
+ Expertise in implementing and managing Information Security Management Systems (ISMS) and conducting security risk assessments.
+ Strong knowledge of Defence security policies, standards, and frameworks, including ISO 27001, NIST, ACSC Essential 8, and DEF(AUST) 3000.
+ Experience with security tools, such as SIEM, firewalls, endpoint protection, and vulnerability scanning tools.
+ Proven ability to communicate effectively with senior stakeholders, providing expert guidance on complex security issues.
+ Australian Citizenship is essential due to security clearance requirements.
+ NV1 security clearance (or the ability to obtain) is highly desirable.
Benefits of KBR
+ A workplace culture certified as a Great Place To Work (Aus, India, UK & US)
+ Flexible working conditions
+ Competitive salary (including annual reviews)
+ Paid Parental leave
+ Paid Reservist leave
+ Income protection
+ Corporate rewards
+ Salary packaging/Novated leasing
+ Discounted employee stock purchase plans
+ Flu shots, skin checks and private health insurance discounts
+ Career development: Online learning, mentorship and career pathways
If you're ready to shape tomorrow, let's get started. Apply Now!
KBR acknowledges the Traditional Custodians of Country throughout Australia and their continuing connections to land, sea, community and culture. We pay our respects to Elders past and present.
As a Major Service Provider of the Australian Defence Force, an AGSVA security clearance will be required and compliance to International Traffic in Arms Regulations (ITAR). As such, our hiring decisions are based on the key requirements of each role and candidates are selected based on their unique strengths and experiences.
#LI-JAW1
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Officer - Defence Sector

Brisbane, Queensland KBR

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Title:
Senior Information Security Officer - Defence Sector
Your KBR future - delivering solutions and changing the world
About KBR:
We are a company of innovators, thinkers, creators, explorers, volunteers and dreamers who all share one goal - to improve the world.
KBR delivers science, technology and engineering solutions to governments and companies around the world. KBR employs approximately 34,000 people performing diverse, complex, and mission-critical roles in 33 countries.
For 65 years, KBR and its heritage companies are proud to have delivered some of Australia's largest and most complex projects.
With around 2,000 employees in 6 primary offices throughout Australia, we are committed to social and environmental sustainability and delivering projects with a digital mindset driving innovation within our business and for our customers.
We help ensure mission success on land, in the air, at sea, in space and cyberspace for our Defence customers. From individual technologies and services to comprehensive project delivery and mission execution, no other company can match the breadth and depth of KBR.
KBR comprises a talented team who provide a broad spectrum of capabilities across Australia and the Asia Pacific. Our proven project teams readily address complex and multi-disciplinary activities, providing low-risk and cost-effective solutions to the Defence force.
The Opportunity:
KBR is inviting expressions of interest from highly skilled and experienced Senior Information Security Officers to support critical Defence programs based in Brisbane or Canberra.
As a Senior Information Security Officer, you will play a vital role in ensuring the protection of Defence systems, information, and assets, supporting the ongoing delivery of secure, reliable, and compliant Defence capabilities. This is an exciting opportunity to contribute to national security outcomes and work with a diverse team of experts on high-impact Defence projects.
The key responsibilities of the role will include, but is not limited to:
+ Lead the development, implementation, and maintenance of Information Security Management Systems (ISMS) to ensure Defence compliance with ISO 27001, ACSC Essential 8, and Defence Security requirements.
+ Conduct risk assessments and vulnerability management, ensuring appropriate information security controls are in place to protect Defence systems and data across their lifecycle.
+ Develop and enforce information security policies, procedures, and best practices, ensuring Defence IT infrastructure and systems are protected against cyber threats and vulnerabilities.
+ Support the implementation and maintenance of cybersecurity frameworks and ensure compliance with national and international information security standards.
+ Provide expert advice to Defence stakeholders and project teams on information security best practices, emerging threats, and mitigation strategies.
+ Collaborate with cross-functional teams, including Defence security, engineering, and project management, to ensure robust security governance for all Defence programs.
+ Conduct security audits, assessments, and incident response activities to ensure the availability, integrity, and confidentiality of Defence information assets.
+ Maintain awareness of current cybersecurity trends and emerging threats, and continuously update security practices to protect Defence information systems.
As the ideal candidate you will bring:
+ Tertiary qualifications in Information Security, Computer Science, Information Technology, or a related discipline.
+ Minimum 5 years of experience in an Information Security role, ideally within Defence, Government, or similarly regulated industries.
+ Expertise in implementing and managing Information Security Management Systems (ISMS) and conducting security risk assessments.
+ Strong knowledge of Defence security policies, standards, and frameworks, including ISO 27001, NIST, ACSC Essential 8, and DEF(AUST) 3000.
+ Experience with security tools, such as SIEM, firewalls, endpoint protection, and vulnerability scanning tools.
+ Proven ability to communicate effectively with senior stakeholders, providing expert guidance on complex security issues.
+ Australian Citizenship is essential due to security clearance requirements.
+ NV1 security clearance (or the ability to obtain) is highly desirable.
Benefits of KBR
+ A workplace culture certified as a Great Place To Work (Aus, India, UK & US)
+ Flexible working conditions
+ Competitive salary (including annual reviews)
+ Paid Parental leave
+ Paid Reservist leave
+ Income protection
+ Corporate rewards
+ Salary packaging/Novated leasing
+ Discounted employee stock purchase plans
+ Flu shots, skin checks and private health insurance discounts
+ Career development: Online learning, mentorship and career pathways
If you're ready to shape tomorrow, let's get started. Apply Now!
KBR acknowledges the Traditional Custodians of Country throughout Australia and their continuing connections to land, sea, community and culture. We pay our respects to Elders past and present.
As a Major Service Provider of the Australian Defence Force, an AGSVA security clearance will be required and compliance to International Traffic in Arms Regulations (ITAR). As such, our hiring decisions are based on the key requirements of each role and candidates are selected based on their unique strengths and experiences.
#LI-JAW1
This advertiser has chosen not to accept applicants from your region.

Vice President, BISO, Senior Cloud Security Specialist, Global Information Security, Australia

Sydney, New South Wales Bank of America

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Vice President, BISO, Senior Cloud Security Specialist, Global Information Security, Australia
Sydney, Australia
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge ( Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
**Job Overview:**
The Cloud Security Specialist is responsible for designing, implementing, and managing security controls across multi-cloud environments, with a specific emphasis on Azure and AWS platforms, to ensure the protection of organizational data and systems. This role requires deep expertise in cloud security, architecture principles, and industry standards. The ideal candidate will work closely with various teams to ensure the security of cloud-based applications, data, and infrastructure.
**Key Responsibilities:**
+ Lead the design and implementation of secure cloud architectures and solutions, ensuring alignment with business objectives and security requirements.
+ Maintain and update risk registers and ensure continuous monitoring of cloud security risks.
+ Act as a liaison between the security team and other departments to promote a security-first culture.
+ Security Controls -
+ Define and implement security controls and policies for cloud environments, ensuring compliance with industry standards (e.g., ISO 27001, NIST, GDPR, HIPAA) and bank security policies.
+ Continuously improve security controls and processes to enhance the organization's security posture.
+ Develop and maintain documentation for security controls, policies, and procedures.
+ Policy as Code (PaC) Implementation -
+ Policies are increasingly managed as code, requiring developers skilled in scripting and programming to define, customize, and automate these policies using tools like HashiCorp Sentinel, Open Policy Agent (OPA), and Terraform.
+ Integration with CI/CD Pipelines -
+ Developers ensure that security policies are embedded in CI/CD workflows to enforce compliance during the development and deployment phases.
+ Custom Solutions Development -
+ Off-the-shelf security tools often need customization to fit organizational requirements. Developers can write custom modules, scripts, or extensions to adapt these tools effectively.
+ Collaboration with Security Teams -
+ Developers act as a bridge between security and DevOps teams, ensuring that security policies align with operational workflows without hindering development agility.
+ Governance and Regulatory Compliance -
+ Conduct regular security assessments and audits of cloud environments to identify and mitigate risks.
+ Conduct risk assessments to identify potential security threats and vulnerabilities in cloud environments.
+ Evidence Package Creation - Package evidence of security policies deployment and effectiveness proving to non-technical audience, Audit and Governance Teams, the effectiveness of security policies.
+ Participate in internal and external audits to demonstrate compliance with cloud security requirements.
**Required Skills:**
+ 5 years of experience in cloud security.
+ Currently hold active AWS Security Specialty or Azure AZ-500 certification.
+ In-depth understanding of cloud security principles, best practices, and industry frameworks such as OWASP Top 10, NIST, CSA, CIS benchmarks.
+ Familiarity in programming and scripting languages such as Python, TF, Go, or JavaScript.
+ Experience building and implementing IaC/PaC governance strategies with appropriate tooling (e.g., Terraform, CloudFormation, OPA, HashiCorp Sentinel, etc.).
+ Strong understanding of CI/CD pipelines and DevOps practices.
+ Hands-on experience with cloud-native and third-party security solutions, including Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWPP).
+ Demonstrated capability to translate technical information into a format that a non-technical audience will understand and clear communication skills.
**Desired Skills:**
+ Relevant industry certifications such as ISC2 and SANS GIAC are highly desirable.
+ Strong communication and interpersonal skills to work effectively with cross-functional teams.
+ Ability to manage multiple projects and priorities in a fast-paced environment.
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
To view the "Know your Rights" poster, CLICK HERE ( .
View the LA County Fair Chance Ordinance ( .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
This advertiser has chosen not to accept applicants from your region.

Information Systems Security Officer

Alice Springs, Northern Territory Amentum

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

Amentum has an exciting opportunity for a **full-time** **Information Systems Security Officer** to join their team in **Alice Springs, NT - Australia.**
**Applicants must be an USA citizen who have a TS/SCI and can retain the appropriate level of security clearance and medical clearance, applicable to each role.**
**THE ROLE**
**PURPOSE AND SCOPE**
The Information Systems Security Officer (ISSO) reports directly to the Information Systems security Manager and provides support to the ISSM in the development and management of operational information systems security implementation policy, procedures, and guidelines.
The ISSO is responsible for the preparation, review, and update of authorization packages. The ISSO ensures approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.
**ESSENTIAL RESPONSIBILITIES**
**Responsibilities/Duties**
+ Conduct periodic reviews of information systems to ensure compliance with the security authorization package, notify ISSM when changes occur that might affect the authorization determination of the information system(s)
+ Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
+ Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
+ Ensure all IS security-related documentation is current and accessible to properly authorized individuals, ensure audit records are collected, reviewed, and documented (to include any anomalies)
+ Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
+ Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
+ Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
+ Prepare reports on the status of security safeguards applied to computer systems
+ Ensure compliance with all site's environmental health and safety requirements
+ Any other reasonable duties as requested
**QUALIFICATIONS**
**Minimum Essential**
+ Bachelor's degree in a related field
+ CISSP, Security + or equivalent
+ MCSA or equivalent
**Desirable**
+ Drivers License
**EXPERIENCE AND SKILLS - Minimum Essential**
+ Minimum 2 years' experience - extensive work experience in a current ISSO role with IA Certifications may suffice for degree
+ Experience in Intelligence Community Directive 503 (ICD 503) and Risk Management Framework (RMF)
+ Meets DoD 8570.1 Certification Requirements as an Information Assurance Technical Category II (IAT II) minimum (for system and network administrators)
+ Linux experience preferred
+ Prior experience in roles such as System, Network Administrator or ISSO
+ Knowledge of databases, spreadsheets and technical report writing
+ Excellent communication skills and ability to brief at all levels to include Senior Leadership
+ Demonstrated ability to work as a member of a team
+ Ability to adapt to change and contribute to continuous improvement
+ Positive outlook and willingness to collaborate with others to achieve business outcomes
+ Demonstrated customer focus
+ Ability to demonstrate an understanding and commitment to the principles of workplace diversity and equity, and EH&S
**WORK ENVIRONMENT, PHYSICAL DEMANDS, AND MENTAL DEMANDS**
+ The ability to lift items up to 10kgs independently
+ The employee is frequently required to walk, sit, use hands to handle, or feel; reach with hands and arms; climb or balance; stoop, kneel, crouch, or crawl; and talk or hear. The employee is occasionally required to stand.
**SECURITY CLEARANCE REQUIREMENT**
It is a condition of employment that employees obtain and retain the appropriate level of security clearance and medical clearance applicable to each role. The employee must be a US citizen and will require a minimum TS/SCI with poly (U.S.) clearance.
**STATEMENT OF WORK REQUIREMENTS**
All personnel assigned shall be:
+ At least 18 years of age.
+ Able to fluently read, write and speak English
**EHS REQUIREMENT**
All Amentum personnel are responsible for understanding and complying with all site environmental, health and safety requirements. While Amentum is responsible for providing a safe workplace and is responsible for ensuring compliance with requirements of the EHS Handbook, each person is responsible for:
+ Completing work tasks in a safe manner
+ Reporting any unsafe acts or conditions to their supervisor and/or PMO/EHS Manager
+ Continuous adherence to the environmental, health and safety procedures outlined in the EHS Handbook during the performance of their work
+ Red-Carding a Job - Employee right and responsibility to "STOP WORK" if a job is unsafe or possess a danger to the environment
**QUALITY REQUIREMENT**
Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Program and carry out job activities in compliance with the Quality System documents and customer contracts. Each employee must read and understand their Quality Management and Customer Satisfaction responsibilities.
**PROCEDURE COMPLIANCE**
Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to their job.
For further information contact
**Applicants will be required to undertake pre-employment checks which include referee checks, criminal History checks, a pre-employment medical assessment and drug test.**
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters ( .
This advertiser has chosen not to accept applicants from your region.

Information Systems Security Officer

Alice Springs, Northern Territory Amentum

Posted 5 days ago

Job Viewed

Tap Again To Close

Job Description

**Information Systems Security Office** **| Alice Springs, NT**
Amentum is a leader in global engineering, project management and solutions integration, trusted to modernize the most critical missions anywhere in the world. Driven to create a safer, smarter, cleaner world, we innovate as a team of inventive doers passionate about making a difference. Underpinned by a strong culture of ethics, safety and inclusivity. Amentum is fiercely committed to operational excellence and successful execution.
Are you seeking a career that offers a healthy work-life balance, a friendly company culture, and engagement with a supportive community?
Amentum has an exciting opportunity for a **full-time** **Information Systems Security Office** to join their team in **Alice Springs, NT - Australia.**
**Applicants must be an USA citizen who have a TS/SCI and can retain the appropriate level of security clearance and medical clearance, applicable to each role.**
**THE ROLE**
**PURPOSE AND SCOPE**
The Information Systems Security Officer (ISSO) reports directly to the Information Systems security Manager and provides support to the ISSM in the development and management of operational information systems security implementation policy, procedures, and guidelines.
The ISSO is responsible for the preparation, review, and update of authorization packages. The ISSO ensures approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.
**ESSENTIAL RESPONSIBILITIES**
**Responsibilities/Duties**
+ Conduct periodic reviews of information systems to ensure compliance with the security authorization package, notify ISSM when changes occur that might affect the authorization determination of the information system(s)
+ Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
+ Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
+ Ensure all IS security-related documentation is current and accessible to properly authorized individuals, ensure audit records are collected, reviewed, and documented (to include any anomalies)
+ Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
+ Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
+ Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
+ Prepare reports on the status of security safeguards applied to computer systems
+ Ensure compliance with all site's environmental health and safety requirements
+ Any other reasonable duties as requested
**QUALIFICATIONS**
**Minimum Essential**
+ Bachelor's degree in a related field
+ CISSP, Security + or equivalent
+ MCSA or equivalent
**Desirable**
+ Drivers License
**EXPERIENCE AND SKILLS - Minimum Essential**
+ Minimum 2 years' experience - extensive work experience in a current ISSO role with IA Certifications may suffice for degree
+ Experience in Intelligence Community Directive 503 (ICD 503) and Risk Management Framework (RMF)
+ Meets DoD 8570.1 Certification Requirements as an Information Assurance Technical Category II (IAT II) minimum (for system and network administrators)
+ Linux experience preferred
+ Prior experience in roles such as System, Network Administrator or ISSO
+ Knowledge of databases, spreadsheets and technical report writing
+ Excellent communication skills and ability to brief at all levels to include Senior Leadership
+ Demonstrated ability to work as a member of a team
+ Ability to adapt to change and contribute to continuous improvement
+ Positive outlook and willingness to collaborate with others to achieve business outcomes
+ Demonstrated customer focus
+ Ability to demonstrate an understanding and commitment to the principles of workplace diversity and equity, and EH&S
**WORK ENVIRONMENT, PHYSICAL DEMANDS, AND MENTAL DEMANDS**
+ The ability to lift items up to 10kgs independently
+ The employee is frequently required to walk, sit, use hands to handle, or feel; reach with hands and arms; climb or balance; stoop, kneel, crouch, or crawl; and talk or hear. The employee is occasionally required to stand.
**SECURITY CLEARANCE REQUIREMENT**
It is a condition of employment that employees obtain and retain the appropriate level of security clearance and medical clearance applicable to each role. The employee must be a US citizen and will require a minimum TS/SCI with poly (U.S.) clearance.
**STATEMENT OF WORK REQUIREMENTS**
All personnel assigned shall be:
+ At least 18 years of age.
+ Able to fluently read, write and speak English
**EHS REQUIREMENT**
All Amentum personnel are responsible for understanding and complying with all site environmental, health and safety requirements. While Amentum is responsible for providing a safe workplace and is responsible for ensuring compliance with requirements of the EHS Handbook, each person is responsible for:
+ Completing work tasks in a safe manner
+ Reporting any unsafe acts or conditions to their supervisor and/or PMO/EHS Manager
+ Continuous adherence to the environmental, health and safety procedures outlined in the EHS Handbook during the performance of their work
+ Red-Carding a Job - Employee right and responsibility to "STOP WORK" if a job is unsafe or possess a danger to the environment
**QUALITY REQUIREMENT**
Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Program and carry out job activities in compliance with the Quality System documents and customer contracts. Each employee must read and understand their Quality Management and Customer Satisfaction responsibilities.
**PROCEDURE COMPLIANCE**
Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to their job.
For further information contact
**Applicants will be required to undertake pre-employment checks which include referee checks, criminal History checks, a pre-employment medical assessment and drug test.**
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters ( .
This advertiser has chosen not to accept applicants from your region.

Security Engineer, AWS Security

Melbourne, Victoria Amazon

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Description
Amazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to large government customers, run their operations and applications on AWS' highly secure infrastructure.
AWS Security is looking for a Security Systems Engineer to play a pivotal role in ensuring the security and integrity of our systems and infrastructure. You will work closely with our security team to implement and maintain robust security measures that adhere to Australian Government security requirements, including the Protective Security Policy Framework (PSPF) and the Information Security Manual (ISM).
Key job responsibilities
Key responsibilities may include:
* Assist in implementing and maintaining security measures to safeguard systems and infrastructure, gaining valuable hands-on experience in foundational security practices.
* Support security assessments and audits to identify vulnerabilities and risks, learning alongside experienced professionals to enhance risk mitigation skills
* Work closely with cross-functional teams to contribute ideas and support the design and deployment of security solutions, gaining exposure to collaborative project environments
* Learn to monitor security systems and assist in responding to security incidents under guidance, developing essential incident response skills.
* Contribute insights to the development of security policies and standard operating procedures, gaining exposure to policy-making processes and industry standards.
* Offer support and guidance to internal teams on security best practices, learning from experienced mentors while assisting in implementing security measures effectively.
Hold or be able to attain an Australian Government Security Vetting Agency clearance (see day in the life
A typical day for a Security Systems Engineer starts with reviewing security logs and alerts to identify potential threats, gaining valuable exposure to real-world security monitoring practices. Throughout the day, they collaborate closely with the security team to analyze security incidents and contribute to the development of response strategies, learning from experienced professionals in incident response. Additionally, they conduct security assessments on new systems and applications, honing their skills in evaluating security risks and vulnerabilities. In meetings with cross-functional teams, they actively participate in discussions on security requirements and initiatives, gaining insights into the broader organizational security landscape. Finally, they dedicate time to researching emerging security threats and technologies, staying current with industry trends and continuously expanding their knowledge base. This hands-on experience and exposure to various aspects of security operations are essential for their growth and development in the field.
About the team
Diverse Experiences
AWS values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
The team is comprised of security professionals with a cross section of national security and private sector experience, providing a range of perspectives required for creative problem solving. We value diversity of thought, creativity, and a strong Bias for Action and Earn Trust. We believe that there are no "perfect" security solutions and we develop and iterate using a continuous improvement process.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Inclusive Team Culture
AWS values curiosity and connection. Our employee-led and company-sponsored affinity groups promote inclusion and empower our people to take pride in what makes us unique. Our inclusion events foster stronger, more collaborative teams. Our continual innovation is fueled by the bold ideas, fresh perspectives, and passionate voices our teams bring to everything we do.
Mentorship & Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.
Basic Qualifications
- 3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience
- Bachelor's degree in computer science or equivalent
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
Preferred Qualifications
- 2+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Experience with AWS products and services
- Experience with programming languages such as Python, Java, C+Acknowledgement of country:
In the spirit of reconciliation Amazon acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.
IDE statement:
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Senior security Jobs in Australia !

Security Engineer, AWS Security

Melbourne, Victoria Amazon

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Description
Amazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to large government customers, run their operations and applications on AWS' highly secure infrastructure.
AWS Security is looking for a Security Systems Engineer to play a pivotal role in ensuring the security and integrity of our systems and infrastructure. You will work closely with our security team to implement and maintain robust security measures that adhere to Australian Government security requirements, including the Protective Security Policy Framework (PSPF) and the Information Security Manual (ISM).
Key job responsibilities
Key responsibilities may include:
* Assist in implementing and maintaining security measures to safeguard systems and infrastructure, gaining valuable hands-on experience in foundational security practices.
* Support security assessments and audits to identify vulnerabilities and risks, learning alongside experienced professionals to enhance risk mitigation skills
* Work closely with cross-functional teams to contribute ideas and support the design and deployment of security solutions, gaining exposure to collaborative project environments
* Learn to monitor security systems and assist in responding to security incidents under guidance, developing essential incident response skills.
* Contribute insights to the development of security policies and standard operating procedures, gaining exposure to policy-making processes and industry standards.
* Offer support and guidance to internal teams on security best practices, learning from experienced mentors while assisting in implementing security measures effectively.
Hold or be able to attain an Australian Government Security Vetting Agency clearance (see day in the life
A typical day for a Security Systems Engineer starts with reviewing security logs and alerts to identify potential threats, gaining valuable exposure to real-world security monitoring practices. Throughout the day, they collaborate closely with the security team to analyze security incidents and contribute to the development of response strategies, learning from experienced professionals in incident response. Additionally, they conduct security assessments on new systems and applications, honing their skills in evaluating security risks and vulnerabilities. In meetings with cross-functional teams, they actively participate in discussions on security requirements and initiatives, gaining insights into the broader organizational security landscape. Finally, they dedicate time to researching emerging security threats and technologies, staying current with industry trends and continuously expanding their knowledge base. This hands-on experience and exposure to various aspects of security operations are essential for their growth and development in the field.
About the team
Diverse Experiences
AWS values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
The team is comprised of security professionals with a cross section of national security and private sector experience, providing a range of perspectives required for creative problem solving. We value diversity of thought, creativity, and a strong Bias for Action and Earn Trust. We believe that there are no "perfect" security solutions and we develop and iterate using a continuous improvement process.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Inclusive Team Culture
AWS values curiosity and connection. Our employee-led and company-sponsored affinity groups promote inclusion and empower our people to take pride in what makes us unique. Our inclusion events foster stronger, more collaborative teams. Our continual innovation is fueled by the bold ideas, fresh perspectives, and passionate voices our teams bring to everything we do.
Mentorship & Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.
Basic Qualifications
- 3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience
- Bachelor's degree in computer science or equivalent
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
Preferred Qualifications
- 2+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Experience with AWS products and services
- Experience with programming languages such as Python, Java, C+Acknowledgement of country:
In the spirit of reconciliation Amazon acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.
IDE statement:
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
This advertiser has chosen not to accept applicants from your region.

Information Systems Security Officer TDY

Alice Springs, Northern Territory Amentum

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

Job Description
**Information Systems Security Office** **| Alice Springs, NT**
Amentum is a leader in global engineering, project management and solutions integration, trusted to modernize the most critical missions anywhere in the world. Driven to create a safer, smarter, cleaner world, we innovate as a team of inventive doers passionate about making a difference. Underpinned by a strong culture of ethics, safety and inclusivity. Amentum is fiercely committed to operational excellence and successful execution.
Are you seeking a career that offers a healthy work-life balance, a friendly company culture, and engagement with a supportive community?
Amentum has an exciting opportunity for a **full-time** **Information Systems Security Office** to join their team in **Alice Springs, NT - Australia.**
**Applicants must be an USA citizen who have a TS/SCI and can retain the appropriate level of security clearance and medical clearance, applicable to each role.**
**THE ROLE**
**PURPOSE AND SCOPE**
The Information Systems Security Officer (ISSO) reports directly to the Information Systems security Manager and provides support to the ISSM in the development and management of operational information systems security implementation policy, procedures, and guidelines.
The ISSO is responsible for the preparation, review, and update of authorization packages. The ISSO ensures approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.
**ESSENTIAL RESPONSIBILITIES**
**Responsibilities/Duties**
+ Conduct periodic reviews of information systems to ensure compliance with the security authorization package, notify ISSM when changes occur that might affect the authorization determination of the information system(s)
+ Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
+ Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
+ Ensure all IS security-related documentation is current and accessible to properly authorized individuals, ensure audit records are collected, reviewed, and documented (to include any anomalies)
+ Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties
+ Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
+ Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
+ Prepare reports on the status of security safeguards applied to computer systems
+ Ensure compliance with all site's environmental health and safety requirements
+ Any other reasonable duties as requested
**QUALIFICATIONS**
**Minimum Essential**
+ Bachelor's degree in a related field
+ CISSP, Security + or equivalent
+ MCSA or equivalent
**Desirable**
+ Drivers License
**EXPERIENCE AND SKILLS - Minimum Essential**
+ Minimum 2 years' experience - extensive work experience in a current ISSO role with IA Certifications may suffice for degree
+ Experience in Intelligence Community Directive 503 (ICD 503) and Risk Management Framework (RMF)
+ Meets DoD 8570.1 Certification Requirements as an Information Assurance Technical Category II (IAT II) minimum (for system and network administrators)
+ Linux experience preferred
+ Prior experience in roles such as System, Network Administrator or ISSO
+ Knowledge of databases, spreadsheets and technical report writing
+ Excellent communication skills and ability to brief at all levels to include Senior Leadership
+ Demonstrated ability to work as a member of a team
+ Ability to adapt to change and contribute to continuous improvement
+ Positive outlook and willingness to collaborate with others to achieve business outcomes
+ Demonstrated customer focus
+ Ability to demonstrate an understanding and commitment to the principles of workplace diversity and equity, and EH&S
**WORK ENVIRONMENT, PHYSICAL DEMANDS, AND MENTAL DEMANDS**
+ The ability to lift items up to 10kgs independently
+ The employee is frequently required to walk, sit, use hands to handle, or feel; reach with hands and arms; climb or balance; stoop, kneel, crouch, or crawl; and talk or hear. The employee is occasionally required to stand.
**SECURITY CLEARANCE REQUIREMENT**
It is a condition of employment that employees obtain and retain the appropriate level of security clearance and medical clearance applicable to each role. The employee must be a US citizen and will require a minimum TS/SCI with poly (U.S.) clearance.
**STATEMENT OF WORK REQUIREMENTS**
All personnel assigned shall be:
+ At least 18 years of age.
+ Able to fluently read, write and speak English
**EHS REQUIREMENT**
All Amentum personnel are responsible for understanding and complying with all site environmental, health and safety requirements. While Amentum is responsible for providing a safe workplace and is responsible for ensuring compliance with requirements of the EHS Handbook, each person is responsible for:
+ Completing work tasks in a safe manner
+ Reporting any unsafe acts or conditions to their supervisor and/or PMO/EHS Manager
+ Continuous adherence to the environmental, health and safety procedures outlined in the EHS Handbook during the performance of their work
+ Red-Carding a Job - Employee right and responsibility to "STOP WORK" if a job is unsafe or possess a danger to the environment
**QUALITY REQUIREMENT**
Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Program and carry out job activities in compliance with the Quality System documents and customer contracts. Each employee must read and understand their Quality Management and Customer Satisfaction responsibilities.
**PROCEDURE COMPLIANCE**
Each employee must read, understand and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to their job.
For further information contact
**Applicants will be required to undertake pre-employment checks which include referee checks, criminal History checks, a pre-employment medical assessment and drug test.**
Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters ( .
This advertiser has chosen not to accept applicants from your region.

Principal Security Engineer, AWS Security

Melbourne, Victoria Amazon

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Description
This position can also be based in Sydney, Australia.
We are looking for an experienced Principal Security Engineer to join the Security team in Australia. You will be on a team responsible for conducting both pre and post launch testing, offensive campaigns, emergent threat testing, creating/maintaining automated threat emulation solutions, and helping security and service teams add offensive insight to their development, deployment, monitoring, and response processes. This team partners with the larger Security organization and Service teams to continuously validate security throughout the service/system lifecycle.
You will be an expert across multiple domains such as cyber security; threat, vulnerability and risk assessments (TVRA), security tools (e.g. Splunk, Crowstrike, etc.), application of security frameworks (e.g. ISM, NIST, etc.) and/or implementation and monitoring of cyber security controls (i.e. detection, protection, alerting, etc.) and will be sought out for advice on a range of technical and business related issues. Your role will help ensure that our systems and processes are secured against the latest threats and you will lead security testing of large Amazon projects while setting standards and defining best practices for the Security team. You will proactively share knowledge across the Amazon community and will be a critical member of the organization in one or more of the core areas of security.
Key job responsibilities
* Offering recommendations and fine-tuning findings to enhance threat mitigations, ensuring robust security measures are in place.
* Setting a high standard and generating high-quality testing plans and reports, striving for excellence in security testing procedures.
* Conducting offensive security testing and engaging in ongoing vulnerability research to proactively identify potential risks.
* Systematically identifying vulnerabilities and meticulously tracking them to facilitate timely remediation efforts.
* Staying ahead of emerging threats by continuously testing systems and applications for vulnerabilities that may arise.
* Developing and maintaining automated solutions for emulating threats, enhancing efficiency and accuracy in threat detection.
* Providing security training and conducting outreach sessions with internal development teams to raise awareness and foster a security-conscious culture.
* Developing comprehensive security guidance documentation, including policies, procedures, and best practices, to serve as a reference for the organization.
* Designing and building security tools tailored to the organization's needs, enhancing the overall security posture.
* Delivering meaningful security metrics to stakeholders and continuously improving the metrics for better insight into the security landscape.
Hold or be able to attain an Australian Government Security Vetting Agency clearance (see day in the life
Engineers in this role must show exemplary judgment in making technical trade-offs between short versus long term security and business goals. They must also demonstrate resilience and navigate difficult situations with composure and tact. Conflicts should be addressed by listening, finding the best way forward and persuading one's colleagues. Successful engineers in this role will regularly analyze their own performance with a critical eye. A broad understanding of the business and its interconnections is required. This position will also provide training, advice, and mentorship to other engineers.
Basic Qualifications
* Minimum 10+ years of experience in delivering cyber security solution to large enterprises or to Government customers.
* Proven ability to provide technical and strategic oversight for a high-performing team of security professionals.
* Demonstrated experience creating effective security strategies that balance prevention and detection, drive risk reduction and mitigation.
Preferred Qualifications
* Bachelor's degree in Computer Science or Engineering* Masters' degree or PhD in Cybersecurity or related domain.
* Worked on large-scale cloud programs to deliver security outcomes.
Acknowledgement of country:
In the spirit of reconciliation Amazon acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.
IDE statement:
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Senior Security Jobs