Skip to content
← Back to job listings

Senior Cyber Security Analyst

Reserve Bank of Australia · Sydney, Australia

CybersecurityImported listingfull-timeabout 2 hours ago

About The Role

Senior Cyber Security Analyst (BAU)

Work Arrangement: Hybrid

Employment Type: 2 Year Fixed Term (3 positions)

Location: Sydney

Work Type: Full Time

Play an important part in shaping the future of Australia's central bank.

About the Team

The Vulnerability & Posture Management (VPM) team is part of the Reserve Bank's Cyber Security function and plays a critical role in strengthening the Bank's cyber resilience. The team is responsible for vulnerability management, security posture management, compliance assessment, secure configuration governance, exposure management, and the continual reduction of cyber risk across the Bank's technology environment.

Reporting to the Manager, Vulnerability & Posture Management, you will provide specialist vulnerability management and security hardening expertise as part of the team's Business as Usual (BAU) operations. These three two-year fixed-term positions are being recruited to backfill existing project roles and maintain the team's operational capability.

Working closely with Infrastructure, Cloud, Identity, Security Architecture, Cyber Operations, and Technology teams, you will support vulnerability remediation, security hardening, and compliance initiatives across the Bank. You will also contribute to improving vulnerability metrics, reporting, and automated compliance assessments, ensuring security controls remain effective, sustainable, and aligned with the Bank's risk appetite and regulatory obligations.

About the Role

As a Senior Cyber Security Analyst, you will play a key role within the Vulnerability & Posture Management (VPM) function, supporting Business as Usual operations that reduce cyber risk and strengthen organisational resilience.

Working closely with Cyber Security, Infrastructure, Cloud, Identity, End User Computing, and Technology teams, you will drive vulnerability remediation, security hardening, and exposure reduction activities across enterprise technology environments. You will contribute to the assessment and prioritisation of vulnerabilities, coordinate operational responses, develop and enhance security metrics and reporting, and improve compliance with the Bank's security standards and risk appetite.

This role provides an opportunity to influence enterprise-wide cyber resilience outcomes while supporting the ongoing delivery and continuous improvement of the Bank's vulnerability management, security hardening, and compliance capabilities.

Key responsibilities include

  • Support the Bank's vulnerability management and security posture management capabilities, including vulnerability identification, assessment, prioritisation, remediation governance, and reporting.
  • Coordinate responses to significant exposure events, including critical vulnerabilities, large-scale exploitation campaigns, and emerging threats.
  • Contribute to the continuous improvement of vulnerability management, compliance assessment, and exposure management processes across enterprise technology environments.
  • Provide subject matter expertise for vulnerability and posture management platforms, including Tenable and related security assessment technologies.
  • Support and enhance vulnerability management workflows within ServiceNow Security Operations (SecOps), including vulnerability response, remediation tracking, exception management, reporting, and stakeholder engagement.
  • Support remediation activities through risk-based prioritisation, considering exploitability, asset criticality, threat intelligence, and business impact.
  • Collaborate closely with Infrastructure, Cloud, End User Services, Identity, Security Architecture, Service Owners, and Asset Owners to deliver effective cyber risk reduction outcomes.
  • Partner with business, technology, and cyber security teams to promote secure configuration standards and vulnerability management practices across the enterprise.
  • Develop, maintain, and enhance security standards, operational procedures, metrics, and reporting that support cyber risk management objectives.
  • Support operational threat advisory and vulnerability response activities by assessing exposure, coordinating remediation efforts, and tracking risk reduction outcomes.
  • Contribute to ongoing Business as Usual vulnerability remediation, security hardening, compliance uplift, and continuous improvement activities across the Bank's technology environment.

About You

You are a cyber security professional with experience in vulnerability management, security posture management, and cyber risk reduction within complex enterprise environments.

To be successful in this role, you will demonstrate

  • Experience with vulnerability management platforms such as Tenable, including integration with ServiceNow SecOps or comparable remediation and workflow platforms.
  • Strong knowledge of vulnerability management, secure configuration standards, and system hardening practices.
  • Experience with exposure management, attack surface management, or risk-based vulnerability management approaches.
  • Experience with ServiceNow Security Operations (SecOps), including Vulnerability Response, Configuration Management Database (CMDB) integration, remediation workflow management, and reporting.
  • Strong understanding of cyber security frameworks, including the Essential Eight, ASD ISM, NIST CSF, and CIS Benchmarks.
  • Experience applying risk-based prioritisation methodologies using factors such as exploitability, asset criticality, and threat intelligence.
  • Strong analytical, reporting, and stakeholder engagement skills.
  • Experience supporting audits, compliance activities, and cyber risk management initiatives.
  • The ability to communicate technical risks and recommendations effectively to both technical and business stakeholders.

Highly Regarded

  • Experience with Microsoft Defender, Microsoft Sentinel, or equivalent enterprise security platforms.
  • Experience administering or supporting ServiceNow SecOps, Vulnerability Response, and related cyber security workflow automation capabilities.
  • Professional certifications such as CISSP, CISM, CRISC, GIAC, or equivalent.
  • Tertiary qualifications in Cyber Security, Information Technology, Computer Science, or a related discipline.

Be More

Working for an organisation that truly makes a difference to the people of Australia, we can offer development and career opportunities in a collaborative environment that supports your growth, wellbeing and promotes flexibility. Your individual growth and success drives the RBA forward as an organisation. Be more means you can do more, for yourself and for Australia.

Why RBA?

The RBA makes an important contribution to the Australian economy through the pursuit of national economic policy objectives and associated activities in financial markets and banking. We also issue Australia's banknotes and operate infrastructure critical to the payments system, all of which contribute to the welfare of the Australian people.

Made up of specialists across a wide range of fields, our people, values, and culture play a critical role in achieving our objectives. Striving to be Open & Dynamic, we consider and incorporate different perspectives, work across teams and are transparent with each other, whilst delivering quality together effectively and focusing on outcomes by prioritising, testing, learning, and refining as we go.

Our people conduct themselves with a high degree of integrity, while striving for excellence in the work they perform and the outcomes they achieve. We encourage intelligent inquiry and we treat one another with respect while promoting the public interest through our efforts.

We know it is the growth and success of our people that drives the RBA forward. Come and make a bigger contribution while you build and develop your own skills too, because being more means you can do more, for yourself and for Australia.

The Reserve Bank of Australia is committed to equity, diversity and inclusion through key initiatives. We welcome and encourage applicants from diverse backgrounds to apply, including Aboriginal and Torres Strait Islander peoples, culturally and linguistically diverse background, those living with a disability and from the LGBTQ+ community. We are committed to making the recruitment process fair and equitable for all our candidates.

Application Close

October 19, 2026

.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing