- Lead and evolve a high-impact vulnerability management programme
- Drive security maturity initiatives across cloud, infrastructure and application
- Join a collaborative team focused on enabling secure business outcomes
We're seeking an experienced Information Security Analyst to support the ongoing uplift of a growing cyber security function. This is a broad and hands-on role where you'll help protect critical technology assets, improve security processes, and provide practical guidance that balances security requirements with business outcomes.
Working closely with technology teams, business stakeholders, and external partners, you'll take ownership of vulnerability management activities while contributing to security reviews, risk assessments, cyber security programmes, and security operations across a complex technology environment.
This opportunity will suit a security professional who enjoys being both strategic and hands-on, with the ability to influence stakeholders while delivering practical security outcomes.
Key Responsibilities - Lead and coordinate the organisation's vulnerability management programme, including identification, prioritisation, remediation tracking, reporting, and validation of security vulnerabilities
- Conduct security reviews, risk assessments, and threat modelling activities across applications, infrastructure, cloud services, and technology solutions
- Provide pragmatic security guidance to engineering, infrastructure, and development teams
- Support the implementation, maintenance, and continuous improvement of security controls, standards, and processes
- Contribute to cyber security uplift initiatives, assurance activities, and remediation programmes
- Support incident response, investigations, and post-incident review activities
- Assist with the development and maintenance of security policies, standards, and procedures
- Partner with internal and external stakeholders to support audits, penetration testing, and security assurance programmes
- Monitor emerging threats, vulnerabilities, technologies, and industry trends to inform security strategy and decision-making
- Provide reporting and insights across security operations, vulnerabilities, risk, and security performance
About You - Proven experience as an Information Security Analyst, Cyber Security Analyst, Security Engineer, or similar security-focused role
- Experience leading or managing vulnerability management and exposure management programmes
- Strong experience conducting security assessments, risk reviews, and threat modelling activities
- Experience supporting cyber security uplift, compliance, assurance, or risk management initiatives
- Strong stakeholder engagement and communication skills
- Ability to balance security best practice with practical business outcomes
- Experience working across complex technology environments and collaborating with multiple teams
- Relevant industry certifications such as CISSP, CISM, Security+, Azure Security, or similar are highly regarded
Technical Experience: - Vulnerability Management
- Cyber Security Risk Assessment
- Threat Modelling
- Security Operations
- Cloud Security (Azure and/or AWS)
- Identity & Access Management (IAM)
- Security Monitoring and Incident Response
- NIST Cyber Security Framework (CSF)
- CIS Controls
- OWASP Security Principles
- Security Assurance and Compliance
- Security Controls and Risk Management
- Penetration Testing and Remediation Management
- Security Policy, Standards and Governance
All applications are confidential.
For more information, apply directly or contact
Tram Nguyen at
[email protected] or
022 677 1914.