|
Vice President, Attack Surface Research Analyst, Global Information Security, Sydney, Australia » Sydney, Sydney Region - Vice President, Attack Surface Research Analyst, Global Information Security, Sydney, Australia Sydney, Australia To proceed with your application, you must be at least 18 years of age. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Role Overview The Cyber Security Assurance, Attack Surface Research and Analysis team delivers hands on asset research on the Bank's network (attack surface) to identify, measure, and interpret the Bank's technology exposure and vulnerability exploitability. This role is responsible for high quality queries, datasets, and visualizations that leverage enterprise platforms and security data sources. The successful candidate will investigate infrastructure and vulnerability asset data to determine vulnerability risk for both technical and non-technical audiences. The successful candidate will be highly collaborative, analytical, detail oriented, ensuring insights are accurate and delivered on time. Work as part of a team developing methods to quickly reference systems of record (SOR's), systems of origin (SOO's) and other available data stores for a comprehensive reliable and timely view of the Bank's attack surface and vulnerability exploitability potential, with the goal of enabling answers to the following three questions as quickly as possible. Do we have it? Are we vulnerable? Is it exploitable? Key Responsibilities Create SQL and python scripts within Qualys, Tanium and BladeLogic to query datasets, to support attack surface visibility and vulnerability analysis Perform hands on analysis of large scale datasets to correlate to security and vulnerabilities Use Python and SQL to automate data ingestion, transformation, enrichment, and quality validation (ETL) Develop and maintain visualizations and reports in Power BI or MS-Reporting Services (SSRS) MS-Integration Services (SSIS) that support operational teams, cyber leadership, and risk stakeholders Understands the Bank's Data network and architecture to work in a team to answer: Do we have it? Are we vulnerable? Is it exploitable? Clearly communicate findings through written analysis and live discussions, including executive-level summaries Required Qualifications Strong analytical, problem-solving, and conceptual thinking skills Self-motivated, detail-oriented, and able to manage work independently Strong verbal and written communication skills, with the ability to clearly explain technical findings in meetings and documentation SQL database and Python development experience used for automation, data processing, and integration (not statistical or ML modeling): Strong experience with SQL Server development, including: Indexes, constraints, table switching, Transaction management, error handling, and activity logging Experience with SQL Server Integration Services (SSIS), including: DevOps integration, C# script tasks, Packaging, deployment, and conditional workflows Hands-on experience with data ingestion and ETL pipelines (batch and near-real-time) Python development experience used for automation, data processing, and integration (not statistical or ML modeling) Experience with SSRS, including subscriptions, report management, Tablix, matrix, and cascading parameters Basic Understanding of networked infrastructure, including: Servers, switches, load balancers, and related components, basic network segmentation and exposure concepts Excellent research skills with the ability to: Identify relevant data sources related to enterprise technologies, understand how systems operate and are used across the firm, persistently investigate and validate findings Strong analytical, problem-solving, and conceptual thinking skills Self-motivated, detail-oriented, and able to manage work independently Strong verbal and written communication skills, with the ability to clearly explain technical findings in meetings and documentation Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. View your "Know your Rights (https://www.eeoc.gov/sites/default/files/2023-06/22-088\_EEOC\_KnowYourRights6.12.pdf) " poster. View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) . Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work. This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason. Investment products offered through MLPF&S and insurance and annuity products offered through MLLA: Are Not FDIC Insured Are Not Bank Guaranteed May Lose Value Are Not Deposits Are Not Insured by Any Federal Government Agency Are not a condition to Any Banking Service or Activity Merrill Lynch, Pierce, Fenner & Smith Incorporated (also referred to as "MLPF&S" or "Merrill") makes available certain investment products sponsored, managed, distributed or provided by companies that are affiliates of Bank of America Corporation ("BofA Corp."). MLPF&S is a registered broker-dealer, registered investment adviser, Member SIPC and a wholly owned subsidiary of BofA Corp. Insurance and annuity products are offered through Merrill Lynch Life Agency Inc., a licensed insurance agency and wholly owned subsidiary of Bank of America Corporation. Trust, fiduciary and investment management services are provided by Bank of America, N.A., Member FDIC and wholly owned subsidiary of Bank of America Corporation ("BofA Corp."). Bank of America Private Bank is a division of Bank of America, N.A. Banking products are provided by Bank of America, N.A. and affiliated banks, Members FDIC and wholly owned subsidiaries of Bank of America Corporation. © 2026 Bank of America Corporation. All rights reserved. • Mon, 07 Sep • Bank of America | Senior Analyst: Information Security Incident Response » Sydney, NSW - Security Incident Response Analyst to support and enhance security across AWS and Azure environments. This is a senior hands...'s degree in Information Technology, Cyber Security, Engineering, or equivalent experience. Preferred Certifications AWS • Fri, 11 Sep • NTT Data | Security & Compliance Analyst » Brisbane, QLD - opportunity has become available for a Security & Compliance Analyst to join our Group IT team based in Brisbane. Reporting.... About You To be successful in this role, you will bring: Essential Bachelor's degree in Information Technology, Cyber Security, Information Systems • Fri, 11 Sep • JBS Foods | Senior Security Operations Analyst » Melbourne, VIC - Job Description Join our Security Operations Centre as a Senior Security Operations Analyst, where you will play... services environment. A tertiary qualification in Cyber Security, Computer Science, Information Technology or another relevant • Thu, 10 Sep • KPMG | Physical SOC Analyst, AWS Security » Sydney, NSW - Security Clearance, with the ability to successfully complete an Organisational Suitability Assessment. For more information... to come. Your Role Imagine being the first line of defence for AWS infrastructure. As an AWS Incident Response Team (IRT) Analyst • Wed, 09 Sep • Amazon | Related Jobs in Australia
| How to Apply for Information Security Analyst Jobs in AustraliaApplying for information security analyst jobs is simple. Start by updating your CV, highlighting relevant experience and qualifications. Use trusted job portals and company career pages to submit your applications. Here are some tips to help you succeed in your job search for information security analyst roles: | Tailor your CV for each role | | Tailor your CV for each role | | Highlight your achievements | | Network with professionals in the Information Security Analyst sector | | Include relevant certifications | | Prepare for interviews with industry-specific knowledge |
| Cyber Security Analyst » Adelaide, SA - A PLUS Agency is working with Operational Systems Pty Ltd (OPSYS) to recruit for an Experienced Cyber Security Analyst... response, threat hunting, and managed security solutions. About the Role We are seeking a dedicated Cyber Security Analyst • Tue, 08 Sep • A PLUS Australia Agency | Sr. Cyber Security Governance Analyst- NV1 » Canberra, ACT - Senior Cyber Security Governance Analyst Security clearance Must be able to obtain Negative Vetting Level 1... Essential criteria 1. Knowledge of the Information Security Manual, Protective Security Policy Framework and Essential Eight • Tue, 08 Sep • XPT Software | Senior Business Analyst - Cyber Security » Sydney, NSW - Security and Technology Risk environment. · We’re looking for an experienced Senior Business Analyst with genuine Cyber.... Experience · Significant Business Analysis experience within Cyber Security, Information Security or Technology Risk • Tue, 08 Sep • Hydrogen Group | Senior Cyber Security Analyst » Sydney, NSW - required: Minimum 5+ years of experience in Information Security, with at least 2 years in a senior analyst role. Experience...Hybrid Sydney CBD Permanent full time Join Avant's Cyber Defence team as a Senior Cyber Security Analyst and play • Tue, 08 Sep • Avant Mutual Group | Physical SOC Analyst, AWS Security, AWS Security » Melbourne, VIC - Security Clearance, with the ability to successfully complete an Organisational Suitability Assessment. For more information...) Analyst within the Physical Security Operations Centre (PSOC), you'll be the vigilant eyes and decisive mind protecting the • Tue, 08 Sep • Amazon | Analyst - Cyber Security » Brisbane, QLD - financial wellbeing and sustainability of our millions of customers. About the Role As an Analyst within our Security... or Brisbane Work Hours: Full-Time What will your day look like? As an Analyst, Cyber Security, you will: Monitor • Mon, 07 Sep • ANZ | Physical SOC Analyst, AWS Security » Melbourne, VIC - Security Clearance, with the ability to successfully complete an Organisational Suitability Assessment. For more information...) Analyst within the Physical Security Operations Centre (PSOC), you'll be the vigilant eyes and decisive mind protecting the • Mon, 07 Sep • Amazon | Vice President, Attack Surface Research Analyst, Global Information Security, Sydney, Australia » Sydney, Sydney Region - Vice President, Attack Surface Research Analyst, Global Information Security, Sydney, Australia Sydney, Australia To proceed with your application, you must be at least 18 years of age. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentAttack-Surface-Research-AnalystGlobal-Information-SecuritySydneyAustralia\_26032677) Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Role Overview The Cyber Security Assurance, Attack Surface Research and Analysis team delivers hands on asset research on the Bank's network (attack surface) to identify, measure, and interpret the Bank's technology exposure and vulnerability exploitability. This role is responsible for high quality queries, datasets, and visualizations that leverage enterprise platforms and security data sources. The successful candidate will investigate infrastructure and vulnerability asset data to determine vulnerability risk for both technical and non-technical audiences. The successful candidate will be highly collaborative, analytical, detail oriented, ensuring insights are accurate and delivered on time. Work as part of a team developing methods to quickly reference systems of record (SOR's), systems of origin (SOO's) and other available data stores for a comprehensive reliable and timely view of the Bank's attack surface and vulnerability exploitability potential, with the goal of enabling answers to the following three questions as quickly as possible. Do we have it? Are we vulnerable? Is it exploitable? Key Responsibilities Create SQL and python scripts within Qualys, Tanium and BladeLogic to query datasets, to support attack surface visibility and vulnerability analysis Perform hands on analysis of large scale datasets to correlate to security and vulnerabilities Use Python and SQL to automate data ingestion, transformation, enrichment, and quality validation (ETL) Develop and maintain visualizations and reports in Power BI or MS-Reporting Services (SSRS) MS-Integration Services (SSIS) that support operational teams, cyber leadership, and risk stakeholders Understands the Bank's Data network and architecture to work in a team to answer: Do we have it? Are we vulnerable? Is it exploitable? Clearly communicate findings through written analysis and live discussions, including executive-level summaries Required Qualifications Strong analytical, problem-solving, and conceptual thinking skills Self-motivated, detail-oriented, and able to manage work independently Strong verbal and written communication skills, with the ability to clearly explain technical findings in meetings and documentation SQL database and Python development experience used for automation, data processing, and integration (not statistical or ML modeling): Strong experience with SQL Server development, including: Indexes, constraints, table switching, Transaction management, error handling, and activity logging Experience with SQL Server Integration Services (SSIS), including: DevOps integration, C# script tasks, Packaging, deployment, and conditional workflows Hands-on experience with data ingestion and ETL pipelines (batch and near-real-time) Python development experience used for automation, data processing, and integration (not statistical or ML modeling) Experience with SSRS, including subscriptions, report management, Tablix, matrix, and cascading parameters Basic Understanding of networked infrastructure, including: Servers, switches, load balancers, and related components, basic network segmentation and exposure concepts Excellent research skills with the ability to: Identify relevant data sources related to enterprise technologies, understand how systems operate and are used across the firm, persistently investigate and validate findings Strong analytical, problem-solving, and conceptual thinking skills Self-motivated, detail-oriented, and able to manage work independently Strong verbal and written communication skills, with the ability to clearly explain technical findings in meetings and documentation Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. View your "Know your Rights (https://www.eeoc.gov/sites/default/files/2023-06/22-088\_EEOC\_KnowYourRights6.12.pdf) " poster. View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) . Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work. This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason. Investment products offered through MLPF&S and insurance and annuity products offered through MLLA: Are Not FDIC Insured Are Not Bank Guaranteed May Lose Value Are Not Deposits Are Not Insured by Any Federal Government Agency Are not a condition to Any Banking Service or Activity Merrill Lynch, Pierce, Fenner & Smith Incorporated (also referred to as "MLPF&S" or "Merrill") makes available certain investment products sponsored, managed, distributed or provided by companies that are affiliates of Bank of America Corporation ("BofA Corp."). MLPF&S is a registered broker-dealer, registered investment adviser, Member SIPC and a wholly owned subsidiary of BofA Corp. Insurance and annuity products are offered through Merrill Lynch Life Agency Inc., a licensed insurance agency and wholly owned subsidiary of Bank of America Corporation. Trust, fiduciary and investment management services are provided by Bank of America, N.A., Member FDIC and wholly owned subsidiary of Bank of America Corporation ("BofA Corp."). Bank of America Private Bank is a division of Bank of America, N.A. Banking products are provided by Bank of America, N.A. and affiliated banks, Members FDIC and wholly owned subsidiaries of Bank of America Corporation. © 2026 Bank of America Corporation. All rights reserved. • Mon, 07 Sep • Bank of America | Junior Cyber Security Analyst » Milton, QLD - Cyber Security Analyst plays a key role in protecting yourtown's systems, data, and digital infrastructure... in information technology, computer science, or cyber security, you enjoy investigating problems, learning from experienced • Mon, 07 Sep • Yourtown | Vice President, Attack Surface Research Analyst, Global Information Security, Sydney, Australia » Sydney, Sydney Region - Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Role Overview The Cyber Security Assurance, Attack Surface Research and Analysis team delivers hands on asset research on the Bank’s network (attack surface) to identify, measure, and interpret the Bank’s technology exposure and vulnerability exploitability. This role is responsible for high quality queries, datasets, and visualizations that leverage enterprise platforms and security data sources. The successful candidate will investigate infrastructure and vulnerability asset data to determine vulnerability risk for both technical and non‑technical audiences. The successful candidate will be highly collaborative, analytical, detail oriented, ensuring insights are accurate and delivered on time. Work as part of a team developing methods to quickly reference systems of record (SOR’s), systems of origin (SOO’s) and other available data stores for a comprehensive reliable and timely view of the Bank’s attack surface and vulnerability exploitability potential, with the goal of enabling answers to the following three questions as quickly as possible. Do we have it? Are we vulnerable? Is it exploitable? Key Responsibilities Create SQL and python scripts within Qualys, Tanium and BladeLogic to query datasets, to support attack surface visibility and vulnerability analysis Perform hands on analysis of large scale datasets to correlate to security and vulnerabilities Use Python and SQL to automate data ingestion, transformation, enrichment, and quality validation (ETL) Develop and maintain visualizations and reports in Power BI or MS-Reporting Services (SSRS) MS-Integration Services (SSIS) that support operational teams, cyber leadership, and risk stakeholders Understands the Bank’s Data network and architecture to work in a team to answer: Do we have it? Are we vulnerable? Is it exploitable? Clearly communicate findings through written analysis and live discussions, including executive‑level summaries Required Qualifications Strong analytical, problem‑solving, and conceptual thinking skills Self‑motivated, detail‑oriented, and able to manage work independently Strong verbal and written communication skills, with the ability to clearly explain technical findings in meetings and documentation SQL database and Python development experience used for automation, data processing, and integration (not statistical or ML modeling): Strong experience with SQL Server development, including: Indexes, constraints, table switching, Transaction management, error handling, and activity logging Experience with SQL Server Integration Services (SSIS), including: DevOps integration, C# script tasks, Packaging, deployment, and conditional workflows Hands‑on experience with data ingestion and ETL pipelines (batch and near‑real‑time) Python development experience used for automation, data processing, and integration (not statistical or ML modeling) Experience with SSRS, including subscriptions, report management, Tablix, matrix, and cascading parameters Basic Understanding of networked infrastructure, including: Servers, switches, load balancers, and related components, basic network segmentation and exposure concepts Excellent research skills with the ability to: Identify relevant data sources related to enterprise technologies, understand how systems operate and are used across the firm, persistently investigate and validate findings Strong analytical, problem‑solving, and conceptual thinking skills Self‑motivated, detail‑oriented, and able to manage work independently Strong verbal and written communication skills, with the ability to clearly explain technical findings in meetings and documentation • Mon, 07 Sep • Bank of America | Vice President, Cyber Threat Intelligence Analyst, Global Information Security, Sydney, Australia » Sydney, Sydney Region - Vice President, Cyber Threat Intelligence Analyst, Global Information Security, Sydney, Australia Sydney, Australia To proceed with your application, you must be at least 18 years of age. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentCyber-Threat-Intelligence-AnalystGlobal-Information-SecuritySydneyAustralia\_26032512) Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentCyber-Threat-Intelligence-AnalystGlobal-Information-SecuritySydneyAustralia\_26032512) Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentCyber-Threat-Intelligence-AnalystGlobal-Information-SecuritySydneyAustralia\_26032512) Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position. Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-apac/job/Sydney/Vice-PresidentCyber-Threat-Intelligence-AnalystGlobal-Information-SecuritySydneyAustralia\_26032512) Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Location: Sydney, Australia Job Description: Cyber Threat Intelligence (CTI) works with partners, both internal and external, to reduce risk to the firm and to the financial sector at large. Stakeholders include cyber-security response teams, internal lines of business, senior leadership and external organizations such as law enforcement, industry peers, key suppliers, customers and intelligence sharing partners. The Cyber Threat Intelligence (CTI) Triage team is responsible for receiving, documenting, assessing risk, and if required, escalating all incoming cyber threat information. The CTI Triage Analyst is responsible for responsible for providing timely situational awareness, monitor a wide variety of sources, looking for indications and warnings of threats and attacks. The CTI Triage Analyst rapidly translates indicators of threat into actionable information to help reduce the potential impact to the operations of the business. This is an opportunity to work with a best in class global enterprise team. The candidate will have exposure to the latest developments in technology and latest threats. Responsibilities: Work in a tactical/technical role reviewing and cultivating intelligence sources, analyzing information, creating intelligence, and hunting for exposures or related incidents. Participate with other triage analysts in a follow-the-sun model to provide consistent support for Cyber Security Operations. This will encompass weekend shift work on a rota basis. Contribute to daily internal GIS ops calls, contribute to intelligence briefings for Senior leaders. Work within the CTOC communicating with internal teams and minimizing response times for critical events. Identify, escalate and debate recommended actions that strengthen controls. Operate within an established Escalation Matrix to determine report priority and messaging to operations and senior executives throughout GIS and the lines of business, escalate issues to control teams and management in a timely manner with appropriate information regarding risk and impact. Continually and consistently review triage processes to identify reforms that could add to increased speed, efficiency and accuracy in reporting. Exercise independent judgment in methods, techniques and evaluation criteria for obtaining results. Participate in technical bridge lines to facilitate the identification, mitigation and containment of cyber-security incidents. Skills: 5 years of InfoSec experience. This is a hands-on role where the candidate will be involved in identifying and tracking cyber threats on a daily basis. The candidate should exhibit a firm understanding of the cyber threat landscape, geopolitical issues that could have cyber impacts, security vulnerabilities, exploits, malware, digital forensics, network security vulnerabilities, exploits and attacks. Experience with threat intelligence platforms, tools, and threat intelligence vendors. Experience supporting or contributing to incident response or major security investigations. Experience with JIRA/ServiceNow, Python, and other programming languages will be a strong plus. Experience working in a Security Operations, Incident Management or Fusion Center operation. Minimum 1 year working in a 24/5 or 24/7 operational environment. This position requires strong verbal and written communication skills. Bachelor's degree or higher-level education is a strong plus. Technical or information security certifications are also a strong plus. Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. View your "Know your Rights (https://www.eeoc.gov/sites/default/files/2023-06/22-088\_EEOC\_KnowYourRights6.12.pdf) " poster. View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) . Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work. This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason. Investment products offered through MLPF&S and insurance and annuity products offered through MLLA: Are Not FDIC Insured Are Not Bank Guaranteed May Lose Value Are Not Deposits Are Not Insured by Any Federal Government Agency Are not a condition to Any Banking Service or Activity Merrill Lynch, Pierce, Fenner & Smith Incorporated (also referred to as "MLPF&S" or "Merrill") makes available certain investment products sponsored, managed, distributed or provided by companies that are affiliates of Bank of America Corporation ("BofA Corp."). MLPF&S is a registered broker-dealer, registered investment adviser, Member SIPC and a wholly owned subsidiary of BofA Corp. Insurance and annuity products are offered through Merrill Lynch Life Agency Inc., a licensed insurance agency and wholly owned subsidiary of Bank of America Corporation. Trust, fiduciary and investment management services are provided by Bank of America, N.A., Member FDIC and wholly owned subsidiary of Bank of America Corporation ("BofA Corp."). Bank of America Private Bank is a division of Bank of America, N.A. Banking products are provided by Bank of America, N.A. and affiliated banks, Members FDIC and wholly owned subsidiaries of Bank of America Corporation. © 2026 Bank of America Corporation. All rights reserved. • Sun, 06 Sep • Bank of America | Vice President, Cyber Threat Intelligence Analyst, Global Information Security, Sydney, Australia » Sydney, Sydney Region - Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Location: Sydney, Australia Job Description: Cyber Threat Intelligence (CTI) works with partners, both internal and external, to reduce risk to the firm and to the financial sector at large. Stakeholders include cyber-security response teams, internal lines of business, senior leadership and external organizations such as law enforcement, industry peers, key suppliers, customers and intelligence sharing partners. The Cyber Threat Intelligence (CTI) Triage team is responsible for receiving, documenting, assessing risk, and if required, escalating all incoming cyber threat information. The CTI Triage Analyst is responsible for responsible for providing timely situational awareness, monitor a wide variety of sources, looking for indications and warnings of threats and attacks. The CTI Triage Analyst rapidly translates indicators of threat into actionable information to help reduce the potential impact to the operations of the business. This is an opportunity to work with a best in class global enterprise team. The candidate will have exposure to the latest developments in technology and latest threats. Responsibilities: Work in a tactical/technical role reviewing and cultivating intelligence sources, analyzing information, creating intelligence, and hunting for exposures or related incidents. Participate with other triage analysts in a follow-the-sun model to provide consistent support for Cyber Security Operations. This will encompass weekend shift work on a rota basis. Contribute to daily internal GIS ops calls, contribute to intelligence briefings for Senior leaders. Work within the CTOC communicating with internal teams and minimizing response times for critical events. Identify, escalate and debate recommended actions that strengthen controls. Operate within an established Escalation Matrix to determine report priority and messaging to operations and senior executives throughout GIS and the lines of business, escalate issues to control teams and management in a timely manner with appropriate information regarding risk and impact. Continually and consistently review triage processes to identify reforms that could add to increased speed, efficiency and accuracy in reporting. Exercise independent judgment in methods, techniques and evaluation criteria for obtaining results. Participate in technical bridge lines to facilitate the identification, mitigation and containment of cyber-security incidents. Skills: 5 years of InfoSec experience. This is a hands-on role where the candidate will be involved in identifying and tracking cyber threats on a daily basis. The candidate should exhibit a firm understanding of the cyber threat landscape, geopolitical issues that could have cyber impacts, security vulnerabilities, exploits, malware, digital forensics, network security vulnerabilities, exploits and attacks. Experience with threat intelligence platforms, tools, and threat intelligence vendors. Experience supporting or contributing to incident response or major security investigations. Experience with JIRA/ServiceNow, Python, and other programming languages will be a strong plus. Experience working in a Security Operations, Incident Management or Fusion Center operation. Minimum 1 year working in a 24/5 or 24/7 operational environment. This position requires strong verbal and written communication skills. Bachelor’s degree or higher-level education is a strong plus. Technical or information security certifications are also a strong plus. • Sat, 05 Sep • Bank of America | Vice President, Cyber Threat Intelligence Analyst, Global Information Security, Sydney, Australia » Sydney, NSW - , documenting, assessing risk, and if required, escalating all incoming cyber threat information. The CTI Triage Analyst... and warnings of threats and attacks. The CTI Triage Analyst rapidly translates indicators of threat into actionable information • Fri, 04 Sep • Bank of America | Vice President, Attack Surface Research Analyst, Global Information Security, Sydney, Australia » Sydney, NSW - . Join us! Role Overview The Cyber Security Assurance, Attack Surface Research and Analysis team delivers hands on asset research... and security data sources. The successful candidate will investigate infrastructure and vulnerability asset data to determine • Thu, 03 Sep • Bank of America | Cyber Security Analyst » Rydalmere, NSW - . Your Role As a Cyber Security Analyst, you will play a key role in protecting Thales Australia’s systems, networks, data..., and users through proactive monitoring, investigation, and response to cyber security threats. Operating within the Security • Thu, 03 Sep • Thales | Cyber Security Analyst » Rydalmere, NSW - . Your Role As a Cyber Security Analyst, you will play a key role in protecting Thales Australia’s systems, networks, data..., and users through proactive monitoring, investigation, and response to cyber security threats. Operating within the Security • Thu, 03 Sep • Thales | B5 Cloud Security Analyst » Sydney, Sydney Region - Are you passionate about cybersecurity, cloud technologies, and staying one step ahead of emerging threats? We are seeking a B5 Cloud Security Analyst to join a high-performing cyber security function responsible for protecting complex cloud environments across AWS and Azure. This is an exciting opportunity for someone with Security Operations Centre (SOC) experience who enjoys investigating threats, analysing security events, and working with cutting-edge cloud security technologies in a large-scale enterprise environment. About Us Our customer is a highly respected enterprise organisation with a significant focus on cyber resilience, cloud security, and continuous innovation. With a mature security program and a strong investment in modern technologies, the business offers an environment where security professionals can develop their expertise while making a meaningful impact. You'll join a collaborative team of security specialists working across incident response, threat intelligence, vulnerability management, and cloud security to defend critical business systems from evolving cyber threats. Responsibilities As a B5 Cloud Security Analyst , you will: Monitor and investigate security events across AWS, Azure, and broader cloud environments. Analyse, triage, and respond to cloud security alerts, ensuring timely escalation of potential threats and incidents. Utilise tools such as Splunk and Azure Log Analytics to identify suspicious activity and investigate security events. Detect, assess, and report cloud vulnerabilities and security risks. Tune and optimise security monitoring rules and alerts to improve detection accuracy and reduce false positives. Monitor emerging threats targeting cloud platforms, including suspicious AI usage and jailbreak attempts. Work closely with incident response, threat intelligence, vulnerability management, and security engineering teams. Maintain operational documentation and contribute to the ongoing enhancement of security processes and procedures. Stay informed of the latest cyber threats, attack techniques, and cloud security best practices. Participate in on-call and weekend support rotations as required. Your Profile To be successful in this role, you will bring: Experience & Technical Skills 2-5 years' experience within Cyber Security, Security Operations, Incident Response, or a related field. Previous experience working within a Security Operations Centre (SOC) environment. Hands-on experience using Splunk for security monitoring and investigations. Experience securing and monitoring AWS, Azure, or Google Cloud environments. Strong understanding of cloud security threats, attack vectors, vulnerabilities, and incident response methodologies. Experience investigating security alerts and escalating incidents in a structured environment. Broad understanding of enterprise technology environments and information security operations. Exposure to hybrid-cloud or large enterprise infrastructure environments. Desirable Experience Experience collaborating with Threat Intelligence, Vulnerability Management, Red Team, Purple Team, or Threat Hunting functions. Understanding of cloud automation and Infrastructure as Code technologies such as Terraform, Ansible, Puppet, Chef, SaltStack, or Packer. Familiarity with security frameworks including NIST, MITRE ATT&CK, ISO 27001, CIS Controls, PCI DSS, GDPR, and ITIL. Relevant cloud security experience across AWS, Azure Security Centre, Security Hub, or similar cloud-native security platforms. Qualifications & Certifications Degree in Cyber Security, Information Systems, Computer Science, or a related discipline. Industry certifications such as CISSP, CCSP, CISM, GIAC, AZ-500, SC-200, CKA, CKS, RHCE, or similar. Strong analytical, problem-solving, and critical thinking skills. Effective communication skills with the ability to engage technical and non-technical stakeholders. Motivated self-starter with a genuine passion for cybersecurity and continuous learning. This is an excellent opportunity to join a highly capable security team where you'll gain exposure to enterprise-scale cloud environments, advanced threat detection capabilities, and complex cyber security challenges. Offering a hybrid working model, ongoing professional development, and the chance to work alongside industry-leading security professionals, this role is ideal for someone looking to take the next step in their cybersecurity career. Contact For a confidential discussion and further information regarding this B5 Cloud Security Analyst opportunity, please apply today or contact Zac Hallis at [email protected]. We look forward to speaking with you. • Mon, 31 Aug • ADECCO | Vice President, Senior Security Detection & Response Manager, Global Information Security, Sydney » Sydney, NSW - improvement of proactive security controls to prevent external threat actors from infiltrating company information or systems... analysis, monitoring, and escalation of security events that may impact the confidentiality, integrity, and availability of the • Fri, 28 Aug • Bank of America | Assistant Vice President, Security Detection & Response, Global Information Security, Sydney » Sydney, NSW - . Join us! Assistant Vice President, Security Detection & Response, Global Information Security, Sydney Working Pattern: This is a full... across multiple security domains. The analyst will work alongside experienced practitioners to validate detections, investigate events • Wed, 26 Aug • Bank of America | Vice President, Security Detection & Response, Global Information Security » Sydney, NSW - . Join us! Vice President, Security Detection & Response, Global Information Security, Sydney. Working Pattern: This is a full... analyst will operate across multiple security domains, validating detections, investigating threats, and executing response • Wed, 26 Aug • Bank of America | Vice President, Security Detection & Response, Global Information Security » Sydney, NSW - . Join us! Vice President, Security Detection & Response, Global Information Security, Sydney Working Pattern: This is a full-time... analyst will operate across multiple security domains, validating detections, investigating threats, and executing response • Wed, 26 Aug • Bank of America | Senior Analyst: Information Security Incident Response » Sydney, Sydney Region - Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive. We are seeking an experienced Senior Cloud Security Incident Response Analyst to support and enhance security across AWS and Azure environments. This is a senior hands-on role focused on cloud security engineering, incident response, SIEM operations, DevSecOps integration, security automation, and continuous security improvement. You will work across cloud security platforms, cloud-native security controls, security monitoring, and modern workload protection while mentoring L1 and L2 team members. Key Responsibilities Implement and manage Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWPP/CWP) solutions. Secure and support AWS and Azure cloud environments. Configure and maintain compliance, workload protection, vulnerability management, and cloud security monitoring capabilities. Perform L3 troubleshooting and root cause analysis. Lead cloud security incident response and investigations. Implement and review cloud security controls including identity and access management, network security, logging, and monitoring. Support SIEM platforms including Splunk, Microsoft Sentinel, and Palo Alto Cortex XSIAM. Develop and maintain detection rules, correlation searches, analytics content, dashboards, and alerting capabilities. Onboard and integrate log sources across cloud, endpoint, network, identity, and application environments. Support threat hunting, security monitoring, and incident investigations. Integrate security into CI/CD pipelines and Infrastructure-as-Code deployments. Secure Kubernetes, Docker, and other modern cloud workloads. Develop automation using Python, PowerShell, and APIs. Support governance, compliance, and audit activities. Mentor junior team members and maintain operational documentation and runbooks. Engage with stakeholders to support security improvement initiatives. Skills & Experience Required 7-10 years of experience in IT, Cyber Security, or related disciplines. Minimum 3 years' experience in Cloud Security Engineering. Strong hands-on experience with AWS and Azure security. Experience with CSPM and CWPP/CWP platforms. Experience with Terraform, CloudFormation, or Infrastructure-as-Code security. Experience with DevSecOps and CI/CD security practices. Experience securing Kubernetes and containerised environments. Strong understanding of cloud architecture, IAM, cloud networking, segmentation, and vulnerability management. Experience with incident response and cloud threat detection. Scripting and automation experience using Python and/or PowerShell. Highly Desirable Experience with Splunk Enterprise Security, Microsoft Sentinel, or Palo Alto Cortex XSIAM. Experience in SIEM administration, security monitoring, detection engineering, and alert tuning. Experience onboarding and troubleshooting log ingestion pipelines. Familiarity with SPL, KQL, XQL, or similar query languages. Experience with SOC operations, threat hunting, and incident investigation. Experience with Qualys, Tenable, Rapid7, or similar vulnerability management tools. Experience in Managed Security Services or Cloud Security Operations environments. Qualifications Bachelor's degree in Information Technology, Cyber Security, Engineering, or equivalent experience. Preferred Certifications AWS Security Specialty Microsoft Azure Security Engineer CISSP or CCSP Kubernetes or DevSecOps certifications Splunk certifications Microsoft SC-200 Palo Alto Cortex XSIAM certifications Workplace type : About NTT DATA NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D. Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today. Third parties fraudulently posing as NTT DATA recruiters NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an nttdata.com email address. If you suspect any fraudulent activity, please contact us ( [email protected]) . • Thu, 20 Aug • NTT America, Inc. | Senior Analyst: Information Security Incident Response » Melbourne, Melbourne Region - Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive. We are seeking an experienced Senior Cloud Security Incident Response Analyst to support and enhance security across AWS and Azure environments. This is a senior hands-on role focused on cloud security engineering, incident response, SIEM operations, DevSecOps integration, security automation, and continuous security improvement. You will work across cloud security platforms, cloud-native security controls, security monitoring, and modern workload protection while mentoring L1 and L2 team members. Key Responsibilities Implement and manage Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWPP/CWP) solutions. Secure and support AWS and Azure cloud environments. Configure and maintain compliance, workload protection, vulnerability management, and cloud security monitoring capabilities. Perform L3 troubleshooting and root cause analysis. Lead cloud security incident response and investigations. Implement and review cloud security controls including identity and access management, network security, logging, and monitoring. Support SIEM platforms including Splunk, Microsoft Sentinel, and Palo Alto Cortex XSIAM. Develop and maintain detection rules, correlation searches, analytics content, dashboards, and alerting capabilities. Onboard and integrate log sources across cloud, endpoint, network, identity, and application environments. Support threat hunting, security monitoring, and incident investigations. Integrate security into CI/CD pipelines and Infrastructure-as-Code deployments. Secure Kubernetes, Docker, and other modern cloud workloads. Develop automation using Python, PowerShell, and APIs. Support governance, compliance, and audit activities. Mentor junior team members and maintain operational documentation and runbooks. Engage with stakeholders to support security improvement initiatives. Skills & Experience Required 7-10 years of experience in IT, Cyber Security, or related disciplines. Minimum 3 years' experience in Cloud Security Engineering. Strong hands-on experience with AWS and Azure security. Experience with CSPM and CWPP/CWP platforms. Experience with Terraform, CloudFormation, or Infrastructure-as-Code security. Experience with DevSecOps and CI/CD security practices. Experience securing Kubernetes and containerised environments. Strong understanding of cloud architecture, IAM, cloud networking, segmentation, and vulnerability management. Experience with incident response and cloud threat detection. Scripting and automation experience using Python and/or PowerShell. Highly Desirable Experience with Splunk Enterprise Security, Microsoft Sentinel, or Palo Alto Cortex XSIAM. Experience in SIEM administration, security monitoring, detection engineering, and alert tuning. Experience onboarding and troubleshooting log ingestion pipelines. Familiarity with SPL, KQL, XQL, or similar query languages. Experience with SOC operations, threat hunting, and incident investigation. Experience with Qualys, Tenable, Rapid7, or similar vulnerability management tools. Experience in Managed Security Services or Cloud Security Operations environments. Qualifications Bachelor's degree in Information Technology, Cyber Security, Engineering, or equivalent experience. Preferred Certifications AWS Security Specialty Microsoft Azure Security Engineer CISSP or CCSP Kubernetes or DevSecOps certifications Splunk certifications Microsoft SC-200 Palo Alto Cortex XSIAM certifications Workplace type : About NTT DATA NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D. Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today. Third parties fraudulently posing as NTT DATA recruiters NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an nttdata.com email address. If you suspect any fraudulent activity, please contact us ( [email protected]) . • Thu, 20 Aug • NTT America, Inc. | Senior Analyst: Information Security Incident Response » Melbourne, Melbourne Region - Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive. We are seeking an experienced Senior Cloud Security Incident Response Analyst to support and enhance security across AWS and Azure environments. This is a senior hands-on role focused on cloud security engineering, incident response, SIEM operations, DevSecOps integration, security automation, and continuous security improvement. You will work across cloud security platforms, cloud-native security controls, security monitoring, and modern workload protection while mentoring L1 and L2 team members. Key Responsibilities Implement and manage Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWPP/CWP) solutions. Secure and support AWS and Azure cloud environments. Configure and maintain compliance, workload protection, vulnerability management, and cloud security monitoring capabilities. Perform L3 troubleshooting and root cause analysis. Lead cloud security incident response and investigations. Implement and review cloud security controls including identity and access management, network security, logging, and monitoring. Support SIEM platforms including Splunk, Microsoft Sentinel, and Palo Alto Cortex XSIAM. Develop and maintain detection rules, correlation searches, analytics content, dashboards, and alerting capabilities. Onboard and integrate log sources across cloud, endpoint, network, identity, and application environments. Support threat hunting, security monitoring, and incident investigations. Integrate security into CI/CD pipelines and Infrastructure-as-Code deployments. Secure Kubernetes, Docker, and other modern cloud workloads. Develop automation using Python, PowerShell, and APIs. Support governance, compliance, and audit activities. Mentor junior team members and maintain operational documentation and runbooks. Engage with stakeholders to support security improvement initiatives. Skills & Experience Required 7-10 years of experience in IT, Cyber Security, or related disciplines. Minimum 3 years' experience in Cloud Security Engineering. Strong hands-on experience with AWS and Azure security. Experience with CSPM and CWPP/CWP platforms. Experience with Terraform, CloudFormation, or Infrastructure-as-Code security. Experience with DevSecOps and CI/CD security practices. Experience securing Kubernetes and containerised environments. Strong understanding of cloud architecture, IAM, cloud networking, segmentation, and vulnerability management. Experience with incident response and cloud threat detection. Scripting and automation experience using Python and/or PowerShell. Highly Desirable Experience with Splunk Enterprise Security, Microsoft Sentinel, or Palo Alto Cortex XSIAM. Experience in SIEM administration, security monitoring, detection engineering, and alert tuning. Experience onboarding and troubleshooting log ingestion pipelines. Familiarity with SPL, KQL, XQL, or similar query languages. Experience with SOC operations, threat hunting, and incident investigation. Experience with Qualys, Tenable, Rapid7, or similar vulnerability management tools. Experience in Managed Security Services or Cloud Security Operations environments. Qualifications Bachelor's degree in Information Technology, Cyber Security, Engineering, or equivalent experience. Preferred Certifications AWS Security Specialty Microsoft Azure Security Engineer CISSP or CCSP Kubernetes or DevSecOps certifications Splunk certifications Microsoft SC-200 Palo Alto Cortex XSIAM certifications Workplace type : About NTT DATA NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D. Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today. Third parties fraudulently posing as NTT DATA recruiters NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us . • Thu, 20 Aug • NTT | Analyst, Privacy & Information Security » Sydney, Sydney Region - Herbert Smith Freehills Kramer is a world-leading global law firm, where our ambition is to help you achieve your goals. Exceptional client service and the pursuit of excellence are at our core. We invest in and care about our client relationships, which is why so many are longstanding. We enjoy breaking new ground, as we have for over 170 years. As a fully integrated transatlantic and transpacific firm, we are where you need us to be. Our footprint is extensive and committed across the world’s largest markets, key financial centres and major growth hubs. At our best tackling complexity and navigating change, we work alongside you on demanding litigation, exacting regulatory work and complex public and private market transactions. We are recognised as leading in these areas. We are immersed in the sectors and challenges that impact you. We are recognised as standing apart in energy, infrastructure and resources. And we’re focused on areas of growth that affect every business across the world. All of this is achieved by supporting the growth of our people, who help us deliver on our ambition – which is to help you achieve yours. Herbert Smith Freehills Kramer: Your goals. Our ambition The Opportunity We are seeking a proactive and detail-oriented Information Security & Privacy Analyst to support the delivery of the firm's security, privacy, risk and compliance programs across Australia and Asia. This role will report to Information Security and Privacy team and will work closely with stakeholders across Risk, IT, HR and Legal teams. You will help manage security and privacy initiatives, support client and regulatory compliance requirements, contribute to ISO 27001 certification activities, and assist with risk assessments, awareness programs and operational security processes. This role is ideal for a professional with experience in information security, privacy, risk or compliance who is passionate about protecting data, enabling secure business practices, and staying ahead of emerging technologies and evolving regulatory requirements. What you’ll do Support client security and privacy requests, audits, and certification activities. Assist in maintaining and expanding the firm's ISO 27001 certification and Information Security Management System (ISMS). Conduct and support security and privacy risk assessments for new technologies, processes, and ways of working. Assess compliance with client-specific security and privacy requirements across business teams. Support the delivery of the firm's global privacy program, including risk reviews, awareness initiatives, and regional implementation. Monitor and manage user behaviour and data leakage alerts, escalating issues as required. Deliver security and privacy training, awareness, and communications activities. Provide practical security and privacy guidance to stakeholders and support operational issue resolution. Help embed security and privacy controls into business processes and data handling practices. Build strong relationships with key stakeholders across Risk, IT, HR, and legal teams. Monitor emerging security, privacy, regulatory, and client requirements to support ongoing compliance and risk management. What you’ll bring This role focuses on governance, risk and compliance aspects of information security and privacy. It is not a technical cyber security operations role, although a strong understanding of IT and cyber security concepts is required. Degree qualified or equivalent experience in information security, privacy, risk, compliance, audit, or a related field. Experience in professional services (desirable but not required). Approximately 3 years' experience in information security, privacy, risk, compliance, or audit ( candidates with less experience and strong capability will also be considered ). Working knowledge of ISO 27001, information security management systems, or similar security frameworks and standards. Understanding of privacy and data protection requirements, particularly across Australia and Asia. Strong ability to assess, communicate, and manage security and privacy risks and controls. Excellent written and verbal communication skills, with the ability to engage both technical and non-technical stakeholders. Strong stakeholder management, relationship-building, and collaboration skills. Highly organised, detail-oriented, and able to manage competing priorities in a global environment. Relevant professional certifications, or progress towards them, such as CISA, CISM, CISSP, ISO 27001 Lead Auditor, CIPM, CIPP/E or equivalent ( desirable but not required ). Is curious about new tech and open to learning, even better if you’re excited about AI! What you can expect from us We’re a world leading international law firm with a global team of over 6,000 professionals across 26 offices. As the market leader in Australia, we are committed to high performance, collaboration, diversity and digital innovation. We are client-centred, commercially driven, and renowned for our solution-focused expertise. We will align your growth with our ambitions. We make your personal and professional growth our business. And as part of the team, our ambition is yours too. Wherever you are in your career: grow and help the firm grow with you. We will provide opportunities to learn on the job as well as a mix of learning opportunities tailored to you. Daily experiences, supportive challenges, team collaboration, mentors, and structured learning opportunities help you to expand your knowledge and reach your goals. We value your wellbeing, both at home and work and we place a strong emphasis on mental health. If you need support, you’ll have it and we’ll empower you to harness your personal strengths, navigate uncertainty, embrace opportunities, and effectively manage things within your control. For more benefits on offer such as our holistic wellbeing fund or home office allowance please click here . Join us to be part of a human, bold and outstanding team at Australia’s market leading law firm. We are committed to attracting people from all backgrounds and creating a respectful and inclusive culture where everyone thrives. We see this as essential to our success, including our ability to innovate and achieve sustained high performance. This is a key part of our Values—Human, Bold, and Outstanding. Team General Counsel and Risk Working Pattern Full time Location Sydney Contract type Permanent Contract Diversity & Inclusion We are committed to attracting people from all backgrounds and creating a respectful and inclusive culture where everyone thrives. We see this as essential to our success, including our ability to innovate and achieve sustained high performance. This is a key part of our Values—Human, Bold, and Outstanding. • Sun, 16 Aug • Herbert Smith Freehills | Related Jobs in Australia | Latest Information Security Analyst Job Opportunities in AustraliaCommon roles include: | |
|---|
|